it is possible to use the URL that the certificate is configured for as long as that URL is pointing to the ip address that is NAT to your exchange server.
there are ways to get around that limitation as well, but id need more details on your setup. i for instance am using an exchange proxy server in front of three different exchange back end servers