External Remote Desktop Gateway/RDWeb

the FQDN in the cert has to match the FQDN of the server, period. (or that would not be terribly secure otherwise). I have not ever

used a wildcard cert, but I think that might help here.

social DOT technet DOT microsoft DOT com/Forums/en-US/winserverTS/thread/23c58ea5-1c2d-4129-b609-58110e3e7295/

Weird permission things to look at:

Check if the "TS Web Access Computers" security group on the RDSH server has incorrect permissions in DCOM and/or WMI:

social DOT technet DOT microsoft DOT com/Forums/en/winserverTS/thread/173d4546-e12f-47c1-ac66-8b4f69826892