Activesync autoconfiguration for Exchange? - Networking

When you are setting up a new server source in AS, it has some options for doing things automatically (I assume based on our email domain name). This has never worked for me (I am the sys admin for our Windows network). Do I have to be running Exch2007 to get this functionality, or is it some sort of DNS issue that is making this fail? The front-end server that we use is not mail.domain.com We use webmail.domain.com.
Any thoughts are appreciated. We are going to be allowing our users to bring their own service and devices to our cell phone mix, and I want to make connecting with WM devices as easy as possible. I'm trying to reduce the number of blackberry devices we use.
Thanks!
Brandon

Microsoft Exchange 2007 Autodiscovery
Autodiscovery allows a user to enter their email address and password into Outlook 2007 or Windows Mobile 6 Pocket Outlook to have their profile or activesync relationship automatically configured to access an Exchange 2007 server.
In short, you add a DNS record for the host "autodiscover" in the domain you want to use Autodiscovery in. If you want it to work internally just add it to your company's DNS server. If you want it to work externally you have to add it to your external DNS server.
One important note is that you must have a multi-domain SSL certificate from a known public provider. This is because you need 4-hosts on the certificate (2-domains with 2-hosts each) I purchased a multi-domain certificate from GoDaddy.com for $58 for 1-year.
Search keywords: +Exchange +2007 +Autodiscover

Related

activesync 4.1 and exchange server 2003

I'm trying to synchronizise with the exchange server at my work.
But for some reason it doesn't work. I've filled in everything in the right way (address, domein etc.) the fault code is 80070002.
Can somebody help me with this?
same here at home (no firewalls)
Works fine for me. Exchange server needs just some configuration.
Priit said:
Works fine for me. Exchange server needs just some configuration.
Click to expand...
Click to collapse
What kind of configuration?
First, your Outlook Web Access (yes, OWA!) can not use forms based authentication nor SSL encryption. If you don want to use these (you most probably want to use SSL) then you need to create another virtual OWA directory without SSL and force ActiveSync (and Outlook Mobile Access) to use it.
More information at
http://support.microsoft.com/default.aspx?scid=kb;en-us;817379
Check if you can access OMA (Outlook Mobile Access) using http://yourserver/oma and check also Exchange server logs.
I thought this wasn't supported on WM5 until AKU 2.0 comes out (hopefully soon)
So ur saving I have to turn Forms authentication off and ssl off on OWA for my mobile device to work ?
sounds a bit of a poor show.
I need Forms based auth ideally as it goes through firewalls where as the other type does not.
Ours works here and we use SSL.
For the server name make sure you are using the fully qualified domain name that you use from the internet. IE: mail.domain.com. You don't have to put the /exchange on the end.
username, password and domain are all the same as what you use to log in.
OH, and the certificate you use on the server should be for mail.domain.com and not servername.
Hope this helps.
@spartanrob: DirectPush needs AKU2.0. You have always had possibility to sync manually. Or if your operator provides e-mail to SMS then you have the same functionality already today.
@Karzi:
No, I'm not saying you have to turn off SSL and/or forms-based auth., but you need to create another virtual OWA directory, which does not require SSL and forms-based authentication. You can limit access to this directory to localhost only so there will be no security concerns.
@MrHappy:
Your server is probably set up in that way.
Please go read this it helped me with the same error
http://hardware.mcse.ms/archive35-2005-11-248477.html
Basicly says that you have to download the cert from https://server.domain.com/certsrv then install the certificate on your desktop and your handheld then activesync will work....
I was hesitant but it worked for me.... it changed the path in the cert from my ip to my server.domain.com

Microsoft Exchange Driving Me Crazy

I have done a search on this site and HOFO and cant seem to come to a solution. I'm about to go crazy.
I know my company uses Microsoft Exchange. I also have webmail access for my email as well as VPN access.
At this point, I'm unsure what to do with all of the info. I was hoping some of you could help me out. I am on yahoo messenger as curiosity7277466 or I am definitely open to calling you or talking via email. I have been really looking forward to making this work. Hopefully someone here can make my first post here a success. Thanks!
Rudy
it's pretty easy.
*IF* your company has an Outlook Web Access (OWA) Email Server setup so that you can access webmail from the net, you should be able to setup your outlook/exchange email as well.
I bought my 8125 a few nights ago - and while sitting in the store, entered my OWA info and, boom, had my contacts, email, etc. within a few minutes.
Open ActiveSync on your device and click on menu/configure server.
enter your server email address - it should be in the format of mail.doman.com. so, for example, it could look like one of the following:
mail.xda-developers.com
inetmail.yourcompany.com
The point is it will use the same web address that you use for webmail from outside the company. If you use https://mail.xda-developers.com to gain access to your OWA, you'll use mail.xda-developers.com as your server address. You'll likely need to select the SSL connection.
Hit next.
Your use name is your Active Directory user name. The password is your corporate password; and the domain is your AD domain.
You may typically know your user credentials as domain\user name, yet you do need to keep the separate on this screen. Enter user name, passowrd, and domain. Click on the save passwork box.
Hit next. Select your preferences and hit finish.
that's it. you're done.
enjoy.
The key question is which version of Exchange is being used, and what has been exposed to the Internet.
Browsing to Outlook Web Access is the usual clue. Exchange 2003 OWA looks very different from the previous versions - it is very similar to Outlook.
First thing I would try is OMA - Outlook Mobile Access. You can try it from a desktop before you start playing around with your handheld.
https://servername.domain.com/oma
You should get a prompt with username and password.
Enter your username in the format of domain\username and then your regular domain password.
You should then get a list of options in plain text. You can now read your email etc.
Move over to your handheld and enter the same URL and the same thing should happen.
If that doesn't work then you will have to speak to your Exchange administrators to see whether the options have been enabled. There are a number that aren't enabled by default which can stop OMA working.
As Exchange Active Sync works through the OMA virtual directory, if OMA doesn't work then I would be surprised is EAS works.
Exchange ActiveSync setup is as previously posted - but without support enabled on the server, it will never work.
Simon.
The best bet is for you to call your help desk. They may not know but they could probably open a ticket to the Exchage team and you will get a correct answer from them.
There are many different ways to expose the Exchange Front End server to the internet that just guessing will drive you crazy. Some companies expose the whole exchange web directories and other only expose OWA
With all the Firewall Settings Web Proxies and ISA configurations out there it will be hard to tell if you can use Active Sync.
URLs follow this method of connecting to the different IIS Web inerfaces of Exchange
mycompany.domain.com/exchange = OWA
mycompany.domain.com/OMA = WAP based OWA
mycompany.domain.com/ActiveSync = is for ActiveSync
So they have to expose ActiveSync to allow you to use it.
[/img]

Sinchronize pda with web exchange

Hi Guyz,
i have an HTC Trinity with latest rom released from italian distributor, just flashed three days ago.
Everythings are working fine but i cannot set a configuration for sinchronization of my company's web exchange server.
We have Exchange Server 2003 with SP2 and gate 443 already enable, but nothing....with Active Sync, during server's configuration, i cannot see any web server at typed address.
Web addressm user id and password are right.
Someone can give me a procedure for this setup? Any suggestion??
Many thanks.
Marco
Hi there, take a look at this:
http://www.msexchange.org/tutorials/Configuring-Mobile-Devices-Exchange2003.html
and this:
http://www.msexchange.org/tutorials/Managing-Mobile-Access-Exchange-Server-2003.html
or (absolutely recommended) try olx mobile access at www.gangl.de. this works perfect an it's easy to configure. Don't mind the german website for the application ist in english. 30-days trial for download.
Best regards.
There is a known Issue connecting with Exchange with ActiveSync and OMA
If your Exchange server is set up to use Forms-Base authentication(must be used to enable compression of static and dynamic data from the exchange server), ActiveSync and OMA will fail. This is a know issue. ActiveSync and OMA use WebDav to authenticate the user with NTFS permissions. Forms-Based authentication blocks this. Another virtual directory must be made for devices that use WebDav to authenticate with. Two places that discuss this issue and how to work around it are...
http://www.petri.co.il/problems_with_forms_based_authentication_and_ssl_in_activesync.htm
and at Microsoft:
http://support.microsoft.com/Default.aspx?kbid=817379
Sean Beeson

Syncing and Exchange Server

Since I've had this phone I've failed to sync with the Sync Centre. It just results in errors every time.
However, because I will be syncing everything that will be on my exchange server, how can I set up this exchange server on the X1? I don't mean the email address only, I need it to connect to my exchange calender, contacts, mail - everything.
I sync to my exchange server via mail2web with no problems - keep in mind if you are syncing to a pc as well you need to select only one location for calendar & contacts.
Isn't it possible to put in the exchange server details directly into teh phone without using 3rd party software?
Is it true that vodafone have removed the exchange feature from their handset?
I'm getting this error.. 0x85010014
Jammy2 said:
Isn't it possible to put in the exchange server details directly into teh phone without using 3rd party software?
Is it true that vodafone have removed the exchange feature from their handset?
Click to expand...
Click to collapse
you don't need 3rd party to set up exchange activesync, it's out of the box.
Jammy2 said:
I'm getting this error.. 0x85010014
Click to expand...
Click to collapse
this is relating to the SSL. Either you have setup an activesync w/o SSL connection, or your PDA clock might be wrong that makes the SSL certificate invalid.
That's assuming your exchange server side is okay.
I've just discovered that everything part from mail will sync if I don't specify my exchange in Vista. When I do that's where the errors show up.
As for exchange on the phone, I will get "network waiting" when I disable SSL. This actually appears to be an issue with many WM devices. What do you mean when you say my clock might be wrong?
The simple Version:
Authentication inside of Active Directory runs over "Tickets" for every User. If the clocks between 2 Ressources are too tifferent, the Ticket becomes invalid, cause the time is an important component of the encryption.
The savest way is to let the phone sync its clock with the exchange server - after Active Sync configuration
For doing this you only need working SSL-encrypted "Outlook Web Access" and your Exchange account have to be "Active Sync"-enabled (an admin has to do this).
Windows Mobile shows you all information yout need to set Active Sync up.
Ah, so the exchange server needs to be active sync enabled?
At the moment I am syncing everything from outlook on my pc, not directly to the server as the device was designed to do
Mine works with my Exchange 2007 server without a problem, out of the box. I just entered my server address, my domain username and password.
Are you sure the server is set up correctly. The exchange server has to have OMA (Outlook Mobile Access) set up. Are there any other devices syncing with the server correctly? Is port 443 open?
Something to note I had to install the security certificate of the server on my phone before it could sync.
I use mine with an Exchange 2007 too. After installing the server
all the necessary features are turned on automatically:
- OWA (Outlook Web Access - website)
- OMA
- Active Sync user role for every account
The OWA-website has to be accessible for public. And the server certificate (for SSL) has to be installed if it is selfsigned
(it is if your browser shows a certificate warning on computers
outside of the company network). Copy it from the browser to
your phone and (double)click it for install. Alternativly ask your network administrator for help.
If the cert is bought from an official worldwide trusted cert
seller like thawte or verizon this should not be neccessary.

Exchange Sync Problem

Hi @ll,
we have a bad problem with our HTC mini clients after active sync settings was change for a couple of hours to personal client certificate. Normally and this settings was change back to our exchange server, the mobile clients sync with basic authentication domain username, domain password and domain name + server adress like the exchange owa: for example: https://webmail.domain.com.
Problem what we know have is, that the mobile client couldn't go back to that basic settings. They coulnd't sync anymore. I can delet the mobile outlook account on the device and reconfigured it, it works. But by more than 250 devices is that a realy bad option. Is there a chance or function to delete a special file or something like a sync cache to get that fixed? thanks to all idears.
You don't tell what version of exchange server use.
If your organization use 2007/2010 Exchange servers it will be the best solution to configure autodiscover service.By the way you should already configured that solution.
After configure autodiscover(it should be running by default) and certificates users should only remove Exchanage sync and reconfigure with typing their user name and passwords.
The key point is to make autodiscover working properly.
What type of firewall you are using ?

Categories

Resources