How to tell whether you are using a self-signed certificate
To determine whether you are using a self-signed certificate on the Exchange 2010 server that hosts the Client Access Server role, follow these steps:
- Start Exchange Management Console on an Exchange 2010 server.
- Select Server Configuration in the console tree.
- Select the server that hosts the Client Access Server role in the work pane.
- The value under the Self-Signed column indicates whether a self-signed certificate is installed, as noted in the following illustration.
Why the redirection occurs
Exactly as in Exchange 2007, when more than one Client Access server is installed, the Exchange setup creates an Autodiscover Service Connection Point (SCP) record in Active Directory Domain Services (AD DS) for each Client Access server. When a domain-connected client connects to AD DS, the Outlook client (Outlook 2007 or a later version) authenticates to AD DS and then tries to locate the Autodiscover SCP objects that were created during the Exchange setup. After the client obtains the instances of the Autodiscover service, the client connects to the first Client Access server in the list that is enumerated and sorted, and then the client obtains the Autodiscover information from that Client Access server.
In an environment where Exchange 2010 and Exchange 2007 are both present, the Outlook client uses the first SCP in the list (probably Exchange 2007) to contact the Autodiscover service. Even a new client or those who log on to their Exchange 2010 mailbox for the first time will use the Exchange 2007 SCP record because it is usually the first record in the list of SCP records.
Depending on the Exchange version for the user�s mailbox, the Exchange 2007 Client Access server may redirect the request in the following scenarios:
- Exchange 2007: If the user has an Exchange 2007 mailbox, the Exchange 2007 SP2 Client Access server handles the Autodiscover request.
- Exchange 2010: If the user has an Exchange 2010 mailbox, the Exchange 2007 SP2 Client Access server redirects the request to an Exchange 2010 Client Access server. The redirect response from the Exchange 2007 SP2 Client Access server includes the URL for the Exchange 2010 Client Access server.
Autodiscover reference
For more information about the Autodiscover service for Exchange 2007, please see the following articles.
White Paper: Exchange 2007 Autodiscover Service
http://technet.microsoft.com/en-us/library/bb332063.aspx
Understanding the Autodiscover Service
http://technet.microsoft.com/en-us/library/bb124251(EXCHG.140).aspx