Exchange 2016 - Hybrid - Exchange Delegation Federation certificate expired

%3CLINGO-SUB%20id%3D%22lingo-sub-1926488%22%20slang%3D%22en-US%22%3EExchange%202016%20-%20Hybrid%20-%20Exchange%20Delegation%20Federation%20certificate%20expired%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1926488%22%20slang%3D%22en-US%22%3E%3CP%3EHi%20All%3C%2FP%3E%3CP%3EHope%20everyone%20is%20keeping%20well.%3C%2FP%3E%3CP%3EThe%20%22%3CSPAN%3EExchange%20Delegation%20Federation%22%20certificate%20has%20expired%20on%20my%20Exchange%202016%20server.%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CSPAN%3EMail%20flow%20between%20Exchange%20Online%20and%20Exchange%20on-prem%20still%20appears%20to%20be%20flowing%20fine.%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CSPAN%3EWhich%20is%20the%20best%20way%20to%20renew%20this%3F%20Will%20re-running%20the%20HCW%20recreate%20the%20certificate%3F%20Also%20will%20mail%20between%20Exchange%20Online%20and%20Exchange%20on-prem%20stop%20working%20eventually%3F%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%3CSPAN%3EAppreciate%20any%20advice.%3C%2FSPAN%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-1926488%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3E2016%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EExchange%20Online%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EExchange%20Server%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3Ehybrid%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EOffice%20365%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1929461%22%20slang%3D%22en-US%22%3ERe%3A%20Exchange%202016%20-%20Hybrid%20-%20Exchange%20Delegation%20Federation%20certificate%20expired%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1929461%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F119208%22%20target%3D%22_blank%22%3E%40Navishkar%20Sadheo%3C%2FA%3E%26nbsp%3BGood%20Morning%2C%26nbsp%3B%3C%2FP%3E%3CP%3Ehad%20to%20do%20this%20once%20and%20I%20just%20followed%20this%20MS%20Doc%3A%3CBR%20%2F%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fde-de%2Fexchange%2Frenew-the-federation-certificate-exchange-2013-help%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3Ehttps%3A%2F%2Fdocs.microsoft.com%2Fde-de%2Fexchange%2Frenew-the-federation-certificate-exchange-2013-help%3C%2FA%3E%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EHCW%20can%20only%20establish%20the%20FederationTrust%20but%20not%20renew%20the%20MFG%20cert.%20MailFlow%20won't%20be%20affected.%20This%20only%20has%20impact%20on%20the%20FederationTrust%2FOrganizationRelationship%20from%20onPrem%20to%20Exo.%3C%2FP%3E%3C%2FLINGO-BODY%3E
Regular Contributor

Hi All

Hope everyone is keeping well.

The "Exchange Delegation Federation" certificate has expired on my Exchange 2016 server.

Mail flow between Exchange Online and Exchange on-prem still appears to be flowing fine.

Which is the best way to renew this? Will re-running the HCW recreate the certificate? Also will mail between Exchange Online and Exchange on-prem stop working eventually?

 

Appreciate any advice.

1 Reply

@Navishkar Sadheo Good Morning, 

had to do this once and I just followed this MS Doc:
https://docs.microsoft.com/de-de/exchange/renew-the-federation-certificate-exchange-2013-help

 

HCW can only establish the FederationTrust but not renew the MFG cert. MailFlow won't be affected. This only has impact on the FederationTrust/OrganizationRelationship from onPrem to Exo.