Last updated: 14/01/2016
This article shows you how to install an SSL certificate using the Exchange Management Shell (EMS). If you didn't generate a certificate request (CSR) yet, and didn't order a certificate, please see « Exchange 2007 SSL Certificate Request Instructions ».
The documentation for installing an SSL certificate on other versions of Microsoft Exchange can be found in the following articles:
You may have to install the Certificate Authority's root and intermediate SSL certificates if they haven't been installed on the server before. Please check out the « How to install root and intermediate SSL certificates on Microsoft IIS » for instructions.
Import-ExchangeCertificate -Path C:\Desktop\mail_server_com.crt | Enable-ExchangeCertificate -Services "SMTP, IMAP, POP, IIS"The -Services parameter can be any of SMTP, IMAP, POP, IIS and UM. You can also disable a certificate by setting the -Services parameter to "None".
Get-ExchangeCertificate -DomainName mail.server.comThis should output a certificate thumbprint, a list of services for which it is enabled, and the Common Name of your certificate. If your certificate was not properly enabled, you can rerun the Enable-ExchangeCertificate cmdlet with the certificate's thumbprint:
Enable-ExchangeCertificate -ThumbPrint [paste thumbprint here] -Services "SMTP, IMAP, POP, IIS"