You are currently offline, waiting for your internet to reconnect

Your browser is out-of-date

You need to update your browser to use the site.

Update to the latest version of Internet Explorer

Error message when you import a third-party certificate into Exchange Server 2010: "The certificate status could not be determined because the revocation check failed"

SYMPTOMS
A valid third-party certificate is imported into a Microsoft Exchange Server 2010 Client Access server (CAS). Then, the following status message is displayed in the Exchange Management Console:
The certificate status could not be determined because the revocation check failed.
If you run the Get-ExchangeCertificate cmdlet in the Exchange Management Shell, you receive the following status for the third-party certificate:
Status: RevocationCheckFailure
However, if you click the Certificate Revocation List (CRL) link that is specified on the certificate, you can still access the third-party certificate through the Exchange server.
CAUSE
This issue occurs because Exchange Server 2010 uses Microsoft Windows HTTP Services (WinHTTP) to manage all HTTP and HTTPS traffic, and WinHTTP does not use the proxy settings that are configured for the Internet browser.

To view the WinHTTP proxy settings, at a command prompt, run the following command:
netsh winhttp show proxy
RESOLUTION
To resolve this issue, you must configure the WinHTTP proxy setting and the server FQDN in the WinHTTP bypass list.

Note If you do not configure both the proxy setting and the server FQDN in the WinHTTP bypass list, the Exchange Management Shell and the Exchange Management Console cannot contact the Remote PowerShell.

To resolve this issue, open a command prompt, type the following command, and then press ENTER:
netsh winhttp set proxy proxy-server="http=myproxy" bypass-list="*.host_name.com"
The myproxy placeholder represents the proxy server name, and host_name represents the Exchange Server 2010 host name.
REFERENCES
For more information about WinHTTP and about how to set the proxy on the Exchange 2010 server, visit the following Web pages:For more information, click the following article number to view the article in the Microsoft Knowledge Base:
260210 Description of WinSock Proxy Auto Detect support
XCH14 XCH2010 CA
Properties

Article ID: 979694 - Last Review: 09/10/2011 15:32:00 - Revision: 2.0

  • Microsoft Exchange Server 2010 Coexistence
  • Microsoft Exchange Server 2010 Enterprise
  • Microsoft Exchange Server 2010 Standard
  • kbdigitalcertificates kbexpertiseinter kbtshoot kbsurveynew kbprb KB979694
Feedback
>