Hi
I have FE/BE server...
both windows 2003 sever SP1 and Exchange 2003 SP1
FE:
Srv2 192.168.0.2
BE:
Srv1 192.168.0.1
CA, DNS on Srv1:
mail A 192.168.0.2
mail MX 192.168.0.2
srv2 A 192.168.0.2
srv1 A 192.168.0.1
NS: srv1.domain.com
Exchange mail server url for internal and external:
https://mail.domain.com/exchange
My problem:
it got past the 440 timeout error by:
(Resetting IUSR_<servername> and IWAM_<servername> account on Domain
Controller and
editing IIS-->ExchWeb-->Enable Anonymous Access--> Domain/ IUSR_<servername>
on FE
server)
now: I get the login screen but no login account works!
I Tried resetting the accounts and or creating a new user, no login will
work.
I also tried the admin login no luck.
Sound like a authentication error again:
The page must be viewed over a secure channel
The page you are trying to access is secured with Secure Sockets Layer
(SSL).
Type https:// at the beginning of the address you are attempting to reach
and press ENTER.
HTTP Error 403.4 - Forbidden: SSL is required to view this resource.
Internet Information Services (IIS)
I did also at IIS: (on Exadmin, Exchange):
in "Authentication and access control" enable:
Basic Authentication (password sis sent in clear text)
and also in Secure communication enable:
Require secure channel (SSL)
Require 128-bit encryption
I get the login screen but no login account works!
I can login to:
https://srv1.domain.com/exchange
and
https://srv1/exchange
with no problem! (but not forms-based)
but I can't login to:
https://srv2.domain.com/exchange
and
https://srv2/exchange
and
https://srv1.domain.com/exchange
and
https://mail.domain.com/exchange
please help...... how I can solve this problem?
Thanks
Diego Pereira - 24 Oct 2005 19:59 GMT
BlueSky
Your topology have a firewall between srv2 and srv1?
Is necessary to open authentication ports from srv2 to your dcs.
regards,
Diego Pereira.
> Hi
> I have FE/BE server...
[quoted text clipped - 62 lines]
> please help...... how I can solve this problem?
> Thanks
BlueSky - 25 Oct 2005 18:46 GMT
No I dont have firewall between srv2 and srv1... but I have ISA2004 on the
same srv2 (front-end)
I solved the problem by disabling SSL form the Exchange virtual directory on
IIS of BE server.....
The internal user now have no problem.. but the external user....!!!
Please see my new post (OWA- SSL- Form Based Authentication....)
Thanks
> BlueSky
>
[quoted text clipped - 72 lines]
>> please help...... how I can solve this problem?
>> Thanks
Diego Pereira - 25 Oct 2005 19:56 GMT
You need create a rule on ISA Server to alow comunication between local host
(srv-2) and Exchange b.e
regards.
Diego Pereira.
> No I dont have firewall between srv2 and srv1... but I have ISA2004 on the
> same srv2 (front-end)
[quoted text clipped - 83 lines]
>>> please help...... how I can solve this problem?
>>> Thanks
BlueSky - 26 Oct 2005 08:38 GMT
Thanks for your reply....
I'm useing ISA 2004?
can you help me to create this rule (comunication between local host (srv-2)
and BE Exchange?...
which rule I should exactly create?
web servre rule
secure web server rule
mail server rule
new server publishing rule? which one?
Many thanks
> You need create a rule on ISA Server to alow comunication between local
> host
[quoted text clipped - 93 lines]
>>>> please help...... how I can solve this problem?
>>>> Thanks