Welcome to ISAserver.org
Forums |
Register |
Login |
My Profile |
Inbox |
RSS
|
My Subscription |
My Forums |
Address Book |
Member List |
Search |
FAQ |
Ticket List |
Log Out
OWA LOGON
|
Users viewing this topic:
none
|
Logged in as: Guest
|
Login | |
|
OWA LOGON - 21.Jun.2004 4:09:00 PM
|
|
|
Ian2004
Posts: 43
Joined: 1.Jun.2004
Status: offline
|
I got the message :
You could not be logged on to Outlook Web Access. Make sure your domain\user name and password are correct, and then try again.
I can log on locally on Exchange server machine. I have followed the steps of "KIT" including certificate and publishing rule. The log shows Destination Host IP is 0.0.0.0.
|
|
|
|
RE: OWA LOGON - 22.Jun.2004 12:13:00 AM
|
|
|
tshinder
Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
|
Hi Ian,
Are you logging on from an external client? Remember, you never loop back through the firewall to access internal clients.
HTH, Tom
|
|
|
|
RE: OWA LOGON - 22.Jun.2004 5:19:00 AM
|
|
|
Ian2004
Posts: 43
Joined: 1.Jun.2004
Status: offline
|
Yes, I am logging on from an external client on Internet.
|
|
|
|
RE: OWA LOGON - 23.Jun.2004 12:59:00 AM
|
|
|
tshinder
Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
|
Hi Ian,
Are you using SSL to SSL bridging?
What is the name on the "To" tab of the rule?
What happens when you ping that name from the ISA firewall? What IP address does the ping command report?
Thanks! Tom
|
|
|
|
RE: OWA LOGON - 25.Jun.2004 5:30:00 AM
|
|
|
Ian2004
Posts: 43
Joined: 1.Jun.2004
Status: offline
|
Hi Tom,
Yes, I am by following the steps in Chapter 10 of the Kit.
The name on the "To" tab of the rule is owa.mydomain.com.
When pinging owa.mydomain.com from the ISA firewall, IP address that the ping command report is 10.0.0.2. Thanks.
Ian
|
|
|
|
RE: OWA LOGON - 25.Jun.2004 5:41:00 PM
|
|
|
tshinder
Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
|
Hi Ian,
Does the ISA firewall have two NICs?
The source address, as it appears to the OWA Web site, should be the IP address ont he internal interface of the ISA firewall.
Thanks! Tom
|
|
|
|
RE: OWA LOGON - 25.Jun.2004 5:42:00 PM
|
|
|
tshinder
Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
|
quote: Originally posted by Ian2004: Hi Tom,
Yes, I am by following the steps in Chapter 10 of the Kit.
The name on the "To" tab of the rule is owa.mydomain.com.
When pinging owa.mydomain.com from the ISA firewall, IP address that the ping command report is 10.0.0.2. Thanks.
Ian
Hi Ian,
What type of authentication are you using? FBA at the ISA firewall only and NO FBA at the Exchange Server?
Thanks! Tom
|
|
|
|
RE: OWA LOGON - 26.Jun.2004 4:58:00 AM
|
|
|
Ian2004
Posts: 43
Joined: 1.Jun.2004
Status: offline
|
Hi Tom,
I have tried both: use FBA on Exchange server or without. The results are the same. I am thinking to reinstall. BTW, do you think that Exchange SP1 can cause some problems? Do you think I should follow the steps in ISA2004EXCHKITFINALv1.1? Is it the newest version? Thanks.
Ian
|
|
|
|
RE: OWA LOGON - 27.Jun.2004 7:13:00 PM
|
|
|
Ian2004
Posts: 43
Joined: 1.Jun.2004
Status: offline
|
Hi Tom,
I just re-installed Exchange machine but still have the same problem. For this time, I have not install Exchange SP1 yet. Thanks.
Ian
|
|
|
|
RE: OWA LOGON - 27.Jun.2004 7:25:00 PM
|
|
|
tshinder
Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
|
Hi Ian,
Do you see any errors in the ISA fireall's Event Log or the Exchange Server's log?
Thanks! Tom
|
|
|
|
RE: OWA LOGON - 28.Jun.2004 3:34:00 PM
|
|
|
Ian2004
Posts: 43
Joined: 1.Jun.2004
Status: offline
|
There are some messages on ISA:
Event Type: Warning Event Source: MSSQL$MSFW Event Category: (8) Event ID: 19011 Date: 6/28/2004 Time: 9:19:02 AM User: N/A Computer: CASPER Description: The description for Event ID ( 19011 ) in Source ( MSSQL$MSFW ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: (SpnRegister) : Error 1355.
Event Type: Warning Event Source: Microsoft Firewall Event Category: Packet filter Event ID: 14044 Date: 6/27/2004 Time: 8:08:57 AM User: N/A Computer: CASPER Description: The packet filter is dropping Internet Protocol (IP) packets. For more information about this event, see ISA Server Help.
For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 1f 00 00 00 ....
|
|
|
|
RE: OWA LOGON - 30.Jun.2004 7:10:00 PM
|
|
|
tshinder
Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
|
Hi Ian,
Interesting re: the packet filter dropping packets. What is the IP addressing information on the Internal and External interfaces of the ISA firewall?
Thanks! Tom
|
|
|
|
RE: OWA LOGON - 1.Jul.2004 6:19:00 AM
|
|
|
Ian2004
Posts: 43
Joined: 1.Jun.2004
Status: offline
|
Hi Tom,
The following is the IP information.
Lan: IP: 192.168.0.1 255.255.255.0 DG: DNS:192.168.0.1
Wan: IP: 10.0.0.2 255.0.0.0 DG: 10.0.0.1
BTW, currently I have done the tests on SMTP, POP3, POP3S, IMAP4, IMAP4S, CA Enrollment Website, Web server and Web application. They are all working except OWA. OWA works fine locally on Exchange server with or without FBA(no compresion) enabled on Exchange machine. Thanks.
Ian
|
|
|
|
RE: OWA LOGON - 5.Jul.2004 6:25:00 PM
|
|
|
tshinder
Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
|
Hi Ian,
The LAN interface NEVER is configured with a default gateway. NEVER.
Fix that and see what happens.
Thanks! Tom
|
|
|
|
RE: OWA LOGON - 6.Jul.2004 6:15:00 AM
|
|
|
Ian2004
Posts: 43
Joined: 1.Jun.2004
Status: offline
|
Hi Tom,
You can see my post that the LAN interface is not configured with a default gateway. I got ISA re-installed again and now it works. Thank you for your help.
Currently I move to "Secure Outlook MAPI Client Access with Secure Exchange RPC Server Publishing" using "KIT". I have some questions:
1. Publishing Exchange RPC Server seems the same procedure as publishing SMTP server, is it right? 2. The article mentions that remote Outlook 200x should be all valid clients. I tried to use Outlook 2002 as the client but it failed to connect to Exchange Server. Is there any differences in setup between OL 2002 and OL 2003? Thaks a lot.
Ian
|
|
|
|
RE: OWA LOGON - 6.Jul.2004 10:43:00 PM
|
|
|
tshinder
Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
|
Hi Ian,
Ouch! I misread your note. Sorry about that.
Yes, the back to back RPC publishing is relatively simple. Its just a matter of getting the name resolution right. The only client that I find challanging at times is the OL 2000 client. OL 2002 and OL 2003 have always been relatively straightforward.
HTH, Tom
|
|
|
|
New Messages |
No New Messages |
Hot Topic w/ New Messages |
Hot Topic w/o New Messages |
Locked w/ New Messages |
Locked w/o New Messages |
|
Post New Thread
Reply to Message
Post New Poll
Submit Vote
Delete My Own Post
Delete My Own Thread
Rate Posts |
|