You really should be using a commercial certificate rather than a self signed certificate for anything public facing. Self Signed certificates of any description are useless unless you have control over 100% of all clients, which you will not with SMTP and OWA traffic.
A suitable certificate is $60/year from GoDaddy.
http://CertificatesForExchange.com/Simon.