I have two servers (Essentials 2012 and Exchange 2013) behind a firewall. port 443 is routed to essentials.
I have set up arrconfig following TechNet jj200172 (in fact I followed this link closely for the entire setup).
Our client has a single external static ip & two certificates (godaddy) . I’ll call them arr.help.ca and mail.help.ca
On the lan, I has split dns so that Outlook trying to reach "http mail.help.ca" gets the local ip. In fact all is working fine on the Lan.
From the WAN "https arr.help.ca" present the essentials web page, with desktop and shared folders working fine, but...
From the Wan "https mail.help.ca/owa" presents the owa logon page, but also the browser warning that the cert is incorrect.
The problem is the cert presented is arr.help.ca, not mail.help.ca
The cert chain is fine (i.e. the godadddy intermediate cert is trusted),
both certs are not expired,
the cert subjects are correct.
Any idea's on how to troubleshoot this?