Pushmail Exchange 2003 SP2 not working with ISA 2004 (Full Version)

All Forums >> [ISA Server 2004 General ] >> Exchange Publishing



Message


lgohl -> Pushmail Exchange 2003 SP2 not working with ISA 2004 (16.May2008 8:07:49 AM)

Hi,

Situation:
-       PIX firewall configured with an public ipadres that listens only on 443 (SSL)
-       ISA 2004 configured with an extra IP adres on the Public interface
-       Created a DNS record mmail.company.org and is working on internet
-       PIX will redirect all incoming SSL (mmail.company.org) to the extra Ipadres on the ISA Public interface
-       Created a Mail Server Publishing Rule, as described here: http://www.microsoft.com/technet/solutionaccelerators/mobile/deploy/msfp_b.mspx
-       Created a Web listener, as described here: http://www.microsoft.com/technet/solutionaccelerators/mobile/deploy/msfp_b.mspx
-       Configured the ISA Server 2004 Idle Session Timeout, as described here: http://www.microsoft.com/technet/solutionaccelerators/mobile/deploy/msfp_b.mspx
-       Configured extra itimes such as:
o    Requests appear to come from the original client
o    ISA Server 2004 Idle Session Timeout
o    Host file entry on the ISA server te resolve mmail.company.org internaly
o    configured delegation of basic credentails (Forward Basic authentication credentials (Basic delegation) on the Users Tab of the mail server publishing rule)
o    This rule applies to requests from the following user set: All Authenticated Users (on the Users Tab of the mail server publishing rule)
o    Paths:
§   /exchange/*
§   /exchweb/*
§   /Microsoft-Server-Activesync/*
§   /OMA/*
§   /public/*

When I try to connect with a nokia phone I get the following error:

Failed Connection Attempt xxxxx  5/16/2008 11:58:40 AM
Log type: Web Proxy (Reverse)
Status: 1790 The network logon failed. 
Rule: OMA
Source: External ( xx.xxx.xxx.xxx:0)
Destination: (mmail.company.org xxx.x.x.xx:443)
Request: OPTIONS

https://mmail.company.org:443/Microsoft-Server-ActiveSync?User=username%5Chans&DeviceId=IMEI353094024638500&DeviceType=IMEI353094024638500
 
Filter information: Req ID: 0d912fdd 
Protocol: https
User: anonymous
 Additional information
Client agent: NokiaN95/1.0
Object source: Internet Processing time: 1
Cache info: 0x0 MIME type:

I read the folowing topics/posts and articles:
-       http://forums.isaserver.org/Still_can't_get_OMA%2FActiveSync_to_Work/m_2002038744/tm.htm
-       http://www.microsoft.com/technet/solutionaccelerators/mobile/deploy/msfp_b.mspx
-       http://msexchangeteam.com/archive/2006/04/03/424028.aspx
-       http://blogs.isaserver.org/shinder/2006/05/03/isa-2006-enables-fba-and-activesync-rpchttp-on-the-same-web-listener/
-       http://searchexchange.techtarget.com/generic/0,295582,sid43_gci1268254,00.html
-       http://forums.isaserver.org/Publishing_OWA_FBA_and_OMA_using_ISA_2004/m_2002024983/tm.htm
-       http://forums.isaserver.org/Configuration_issues_with_OWA_and_Active_Sync/m_2002054030/tm.htm

What is causing the “1790 The network logon failed” error and what can I do more to resolve this issue?

Thanx,

Louis




lgohl -> RE: Pushmail Exchange 2003 SP2 not working with ISA 2004 (19.May2008 6:37:40 AM)

Hi,
 
I now see the following mentioned in the ISA log:
 
Description: ISA Server could not establish an SSL connection with the published server mmail.company.org because the name on the SSL server certificate used by the published server does not match the name of the server imimail.company.org, specified in the publishing rule.
Verify that the internal name specified in the publishing rule is correct. If the problem persists contact the Web server administrator.

 
Do I need to put the same ssl cert on the Exchange website? We have OWA in place with a different SSL cert. How do I change the SSL cert for pushmail without affecting the OWA SSL cert?
 
Thanx,
 
Louis




lgohl -> RE: Pushmail Exchange 2003 SP2 not working with ISA 2004 (20.May2008 2:53:00 AM)

Anyone?
 
Thanx,
 
Louis




Page: [1]