New to the world of commercial certs, thanks in advance for any advice/guidance.
Our only outbound service is email, hosted on MS Exchange 2016 (2019 in medium-term future). Internally we have several services with browser interfaces. Most of these are hosted on MS Server 2016 boxes (also 2019 in medium-term future) but one is on RHEL 7.
I am trying to solve two problems: externally, many email recipients report delivery to junk/spam mail, although we're not on any blacklists and our reputation is neutral; and internally, browsers complain about the self-signed certs and some deny access entirely.
My reading suggests that I want a wildcard TLS/SSL certificate. Looks like I can install on multiple servers, both internal and external, as long as they all know the private key that generated the original CSR.
Am I reading internet info correctly, and do you see any red flags in what I'm trying to do? Thanks very much.