Blog Post

Exchange Team Blog
1 MIN READ

Re: Released: August 2025 Exchange Server Security Updates

chaoqun's avatar
chaoqun
Copper Contributor
Aug 25, 2025

Thank you for your reply. EMS has been initiated by  admin, and the self-signed certificate is currently expired. However, on another machine that has not installed the KB5063223 patch, the certificate can be queried through  command.  
So do you suggest updating the auth certificate?

Published Aug 25, 2025
Version 1.0

2 Comments

  • Neill's avatar
    Neill
    Brass Contributor

    You should definitely get the auth cert renewed ASAP, it's not hard to do.
    Otherwise you'll get odd symptoms like OWA/EAC not working properly, hybrid issues etc.

    Quite possible the update has introduced a glitch or that it's purposely not showing expired certs for some reason.
    EAC would show the cert as Invalid if it is expired or CRL can't be verified, can't remember what the command line shows by default.

    • Gandalfse's avatar
      Gandalfse
      Copper Contributor

      I get same result when i query from a remote exchange management shell not on a server.