I have a RD Farm, all in 2008R2. Consisting of Gateway, Connection Broker, multiple Session Hosts. They belong to an AD Domain, xyz.local. The machines have AD names, CB.xyx.local, GW.xyz.local, SH1.xyz.local, SH2.xyz.local.
The internal DNS system has a Zone for the External Domain, MyDomain.com. There are host records for the farm, rdpfarm.mydomain.com pointing to the Internal IP of the farm.
The farm is accessible on the Internet at rdpfarm.mydomain.com via Public DNS.
We have a VeriSign Public UCC Certificate, that has the public MyDomain.com SAN's for the hostnames for all the machines, CB.MyDomain.com, GW.MyDomain.com, SH1.MyDomain.com, SH2.MyDomain.com, and the farm name is the Common Name rdpfarm.MyDomain.com.
(Note, as of soon, internal Domain names are no longer allowed on UCC Certificates)
I have tried everything I can find to get the Gateway and/or the Connection Broker to answer using the rdpfarm.MyDomain.com name and match the Certificate, without success.
As I recall in Exchange Server we face a similar problem, but there is a method in Exchange to cover this. If there is one for an RD farm, I cannot find it.
Any help here would be greatly appreciated.