BlackBerry Connect and Exchange unsigned Certificate - Touch HD General

Dear All,
i would like to seek some help from you all.
first regarding my Blackberry Connect. there is limited size (34kb per email) to send email, i try to find myself in registry to modify the string but i failed. anyone that know how to change to unlimited size of email to send.
Secondly, i tried to configure to sync my windows mobile 6.1 to exchange server 2007. the problem is, the server dont have trusted certificate and windows mobile cannot sync without trusted certificate. is there any way that i can sync to my exchange 2007 without signed certificate?
I dont know where to ask, since i use Blackstone, so i ask here.. please help me..

Related

Activesync and Exchange server

I have an O2 XDA mini S.
I have spent about 12 hours trying to configure it, and am having a complete nightmare. Am completly stuck and hoping someone can help me.
I have put in all the settings on the XDA and told it to sync with our exchange server. The device connects and you can see it syncronising eg Calander 6/6, emails 60/60.
So it all looks like it is working I then go into my outlook email folder on the device and all my folders are there but they're all empty. I have altered the syncronisation options so it syncronise all my folders for the last 3 days, but still nothing.
Strangely if I create a calander appointment on the XDA it does get syncronised back to the calendar on the exchange server. The same if I send an e-mail, the e-mail does get sent and ends up on my exchange servers sent items.
So basically anything created on the XDA gets synced back to the exchange server, but anything created on the exchange server does not get synced across to the XDA. Even though when you connect it looks like it does.
We are using Exchange 2003 SP2, and ActiveSync Version 4.1.
Any help would be very much appreciated as we have bought 5 of these XDA's for all the top brass at my company and they are breathing down my neck asking when they are going to be set up.
Hi,
I'm sure you have already checked, but are the folders set to synchronise within Outlook on the device.
Menu/Tools/Manage Folders and put a cross in the appropriate boxes.
Apologies if you had already done this.
Regards,
White.
Thanks for the reply and yes I have already done that.
To clarify some of my earlier statements I am trying to do this wirelessly using GPRS, but to rule out any firewall problems (we use ISA 2004), I have plugged the device into my PC using a USB connection I have then changed the server address to the local address and the same thing happens.
The only slightly odd thing I'm doing is using an HTTP connection as I can't get the certificates to be accepted on the device for an HTTPS connection.
Duplicate post deleted,
Sorry.
Regards,
White.
Try this link
http://www.msexchange.org/tutorials...ng-Part1-Microsoft-DirectPush-technology.html
for me it works fine so I will try to help... but lets try the link first.
Have checked through our configuration with regard to the above link and everything is fine.
I just don't understand as the XDA appears to connect okay, and seem to be uploading from the server, it can also send things back to the server. It just doesn't actually recive anything.
It's so frustrating eg it will say reciving 0/61 e-mails it will then go to 61/61, eg like it has dowloaded them, but when you look nothing is there. It must be talking to the server though as it knows how many e-mails there are.
Not much help here..............
..............but I gave up with our exchange server !! 8-(
I, too, couldn't get past the certificate error.
Really pi**es me off !! Yet I can lie in bed @ home and VPN onto the server desktop via my XDA and my home WiFi switch/router and read my emails via the server's IE via the company intranet.....<shrug>
I HATE MS sooooooooooooooooo much !!
Enough redundant posting already !!
I agree
I agree it's crazy about the certificates, it's just bizarre that it doesn't give you the option to accept the certificate anyway. As I'm stuck with using HTTP now which is obviously not very secure. Well I would be stuck using HTTP if I could get it to work, but as posted before it just doesn't.
So stuck with dowloading my e-mails using IMAP, and syncing my calandar using a usb cable, which is not ideal.
Anyway once again any insight or help would be great.
http://support.microsoft.com/kb/817379/en-us
Method 2 is what I've had to do to my exchange server to get anything working.
Thanks
Have already made the changes discussed in the article, as before I did that it was erroring out, now it appears to dowload the e-mails but nothing happens.
Thanks for the tip!
I needed this info!
Further info............
....................O2 have told me via dataservices support there is a problem with self-certification - This has come from Microsoft who have said there is an issue.
O2 and MS are working on a fix but no timeframe as yet - a number of users have reported the issue.
Third party certificates are OK apparently - I have tracked down a free source - www.cacert.org but whilst i have got a personal email certificate for my PC I can't get throught the documentation to obtain a certificate for the Exchange server at work. This is because, I think, we don't have a domain that's linked to it - we just VPN to an IP address......if anyone can help work out how to submit a valid certificate request, I'd be very grateful
Further info............
....................O2 have told me via dataservices support there is a problem with self-certification - This has come from Microsoft who have said there is an issue.
o2 and MS are working on a fix but no timeframe as yet - a number of users have reported the issue.
Third party certificates are OK apparently - I have tracked down a free source - www.cacert.org but whilst i have got a personal email certificate for my PC I can't get throught the documentation to obtain a certificate for the Exchange server at work. This is because, I think, we don't have a domain that's linked to it - we just VPN to an IP address......if anyone can help work out how to submit a valid certificate request, I'd be very grateful
so you are unable to set up the sync between your O2 and the exchange server? or you cant get the HTTPS to work at all?
my colleague is using a QTEK9100 and he managed to get the push mail to work. the sync with exchange server seems to be working. he couldnt get it work before this because exchange server need to have HTTPS enable, so we endup getting a digital cert from a vendor.
so now he is happily getting email push to his qtek. and sync works fine as well. i am yet to get my unit so i cant say much about the setting need to be done but there must be something missing here.
Hi.
I have Exchange 2k3 SP2 using my own certificates, an XDA Mini and XDA Exec with O2 GPRS all using push email fine. No issues with O2, Exchange, Microsoft or anything - it just works!
The only thing I did need to do on the XDA's was to import a copy of my Certificate Servers root certificate.
Have been using this with Exchange push for a couple of weeks and before then used the same setup with XDA IIi's using Exchange Activesync.
Merlin
Hi.
I have Exchange 2k3 SP2 using my own certificates, an XDA Mini and XDA Exec with O2 GPRS all using push email fine. No issues with O2, Exchange, Microsoft or anything - it just works!
The only thing I did need to do on the XDA's was to import a copy of my Certificate Servers root certificate.
Have been using this with Exchange push for a couple of weeks and before then used the same setup with XDA IIi's using Exchange Activesync.
Merlin
Lucky You, RB............
.............I, too have imported the server certificate but neither I nor O2 could get it to install on mine or their machines.....that's when they told me about the issue..................
It's a valid certificate cos our server works as it should !
The real crazy thing is, I can VPN to our server using my XDA via my home WiFi router, see the server desktop via mstsc and open my exchange mailbox using the company intranet in IE - all on my XDA in my bed !!!
Security ?!!? Pah!!!!
Hi
Which certificate have you imported, the certificate on the exchange server or the ROOT certificate from your Cert Server?
You need the ROOT CERTIFICATE not the Exchange Web Server certificate
Merlin
We're running...........
........SBS 2003 SP2 with Exchange Server
The certificate is the only one we have for the server as a whole.............
If you click on the certificate and look at the certification path tag, what does it say...(Can you post a screen shot of it?)

Push Email with Exchange Server?

Hi all, im kind of new to this but i just read about push email with exchange server and i was wondering how i could use it with my mda vario. I've already installed an updated rom with push email but i dont know how to use it. can any one fill me in on this? thanks for any help.
You need a Exchange 2003 server with at least SP2 installed. Also a UMTS/GPRS connection because is not working over WIFI.
Bitfrotter 8)
Go to www.mail2web.com, sign up there. Than put the settings from the website in the Exchange Server settings in Active Sync on your PPC. Set your current email address to automatically forward your email to your mail2web email address. Enable GPRS and enable push email from the Comm Manager and bingo, push email is yours.
Ok, ive already signed up with mail2web but i want to automatically retrieve hotmail emails. i don't see an option on hotmail to forward all my emails to mail2web. am i missing something here? sorry, im inexperienced and all and these are probably lame questions and all. but please help me out. after reading that article i got hyped up in doing this. thanks for any replies.
Bitfrotter said:
You need a Exchange 2003 server with at least SP2 installed. Also a UMTS/GPRS connection because is not working over WIFI.
Bitfrotter 8)
Click to expand...
Click to collapse
I've gotten DirectPush to work over WiFi... Maybe that was an earlier ROM version though... I don't recall the circumstances under which I got it to work.
MS says that Direct Push does not work over WiFi. WiFi does not allow disconnected connections (in other words, a connection that allows for the data stream to be suspended). If WiFi did it, it would require a continuous connection that would drain the batteries at a very rapid pace.
Setting up Exchange for Direct Push is pretty easy. I set up ours in about 5 minutes.
One of the coolest things you can do with a correctly configured Exchange 2003 system is with the Mobile Admin pack (free download from MS). It allows you to tell the PDA that it needs to "self-destruct" in case the phone is stolen. A remote wipe will do a hard-reset on the phone, deleting all data not stored on an external SD.
I usually get my email on the MDA faster than Outlook on my desktop.
If any Exchange admins are out there, I can post how to set it up if anyone needs help.
exchange/activesync
Yes please!
Hotmail has deleted the possibility of forwarding mail automatically a few years ago in the free version, only Hotmail Plus subscribers can use this option. With gmail however it is still free. So a basic hotmail account will not be able to use Push over Exchange. You can however sign in to MSN Messenger on your device and will then be notified as soon as an email arrives on the hotmail server. This will cost you extra data charges though, since contacts coming online will also result in data transfer to your device.
Romp said:
MS says that Direct Push does not work over WiFi. WiFi does not allow disconnected connections (in other words, a connection that allows for the data stream to be suspended). If WiFi did it, it would require a continuous connection that would drain the batteries at a very rapid pace.
Setting up Exchange for Direct Push is pretty easy. I set up ours in about 5 minutes.
One of the coolest things you can do with a correctly configured Exchange 2003 system is with the Mobile Admin pack (free download from MS). It allows you to tell the PDA that it needs to "self-destruct" in case the phone is stolen. A remote wipe will do a hard-reset on the phone, deleting all data not stored on an external SD.
I usually get my email on the MDA faster than Outlook on my desktop.
If any Exchange admins are out there, I can post how to set it up if anyone needs help.
Click to expand...
Click to collapse
that would be awesome if you know of a tutorial anywhere on this..
so by creating an exchange server as romp said, you can sync any email including hotmail? well that's really a bummer that microsoft disabled forwarding on hotmail. Its mainly my primary email which all my friends/family know. so it would be a miracle if anyone knew how to sync hotmail without subscribing to their hotmail plus.
Well, getting outside emails are a bit more complex. This is usually for a business, but there are plenty of POP-to-Exchange plug ins that would allow getting Hotmail emails. Of course, you would need the Hotmail Plus for the POP.
http://www.slipstick.com/exs/popconnect.htm
My answer was more concerning the Exchange Direct push question, not the hotmail one.
Where I work (yes, I did set up the Exchange system) we have GFI spam filtering and virus filtering (www.gfi.com) and they have a POP2Exchange bridge included. It just checks the account, downloads any POP emails, and drops it in the right mailbox.
Exchange is a complete system, not just mail. It has webmail, Windows Mobile direct push, calendar, contacts, and more. Unless you are in a company with Exchange or Small Business Server, its not a cheap thing to do for a home network.
If you DO have Exchange at your office, run to the IT guy and hurt him until he sets your phone up on it. Its all the functionality of Blackberry and more, built into Exchange.
I'll write that tutorial, g0nk.
ok so if we go the mail2web route... i dont need to install exchange 2003 on a pc myself? does it only work on windows server 2003?
im interested in doing this at my job but i want to make sure it is not too difficult
edit.. well we have our own domain email addresses so the [email protected] is not an option..
any suggestions?
Romp said:
Exchange is a complete system, not just mail. It has webmail, Windows Mobile direct push, calendar, contacts, and more.
If you DO have Exchange at your office, run to the IT guy and hurt him until he sets your phone up on it. Its all the functionality of Blackberry and more, built into Exchange.
I'll write that tutorial, g0nk.
Click to expand...
Click to collapse
1) Agreed
2) I am the IT guy and it don't work on our server - the rootcertificate won't install to the PPC - an MS acknowledged problem............
3) Please forward ASAP !! Thanks !! :lol:
Is it a self published cert? Because you CAN get any externally issued cert to work just fine. We use a $15 GoDaddy cert with no problems.
The big screw up most people have with the cert (myself included) is that the cert is not correctly installed, even though it says it is.
Cheaper certs are called "Chained" certs. All certs need a path back to one of the big cert companies. So, companies like GoDaddy get approved to be second level cert issuers. IE on the PC will look at the cert and track it back to the main cert issuer. For example, the cert on GoDaddy goes from GoDaddy, to Starfield, to VeriCert. The VeriCert certificate is installed on all PCs.
Anyway, the problem is that the PC can follow an undefined cert path, the PPC can't. If you install the cert on the server, IE on the PC can figure out the whole path, PPC can't. So, the big thing is to make sure the MIDDLE CERTS are installed on the server. Even though everything seems fine, chances are that the middle ones are not (in this case STARFIELD)
The easiest way to find out if the cert is valid or not is try to get to your webmail on PIE. If you get a message about the cert, your server is not set up completely.
For my server, I had no luck until I found the Intermediary Cert and installed it. https://certificates.starfieldtech.com/Repository.go
Once that was done, my GoDaddy cert worked on the PPC and syncs went perfectly. Once the server has all the certs in the cert path installed, the PPC can validate each level. Until then, its clueless. Most people think you need to install the cert on the PPC. Its the server that needs it.
Does the self published cert only cause problems with direct push? I've got the "old" polling method working. I created a root CA on my server to sign the cert created for the web server and then turned that root CA into a CAB which was installed on the PPC. I should say that my phone doesn't have an AKU 2.xx rom on yet so I've not tested push mail.
This is all outlined in the following doc :
http://www.microsoft.com/technet/itsolutions/mobile/deploy/msfpdepguide.mspx
Also look at http://support.microsoft.com/kb/817379 if you are running a non sbs2003 exchange server in a configuration that doesn't have a front end/back end exchange server configuration. As there are some minor tweeks needed to the registry and to the default web server setup.
If you can do a remote Activesync, then DirectPush will work just fine.
A newbie Direct Push question:
I upgraded my 8125 ROM to the official Cingular June 19 version, and direct push SEEMS to be working great my my Hosted Exchange provider. When new email comes in to my Exchange server and/or a task / calendar / contact is changed on the desktop Outlook client, those get pushed quickly to the 8125.
Problem is, it doesn't seem to work in reverse. For example, IF I get an email pushed to me on my PDA, I read it and delete it on my PDA.....that deletion action is NOT getting syncronized back to my Exchange server. Is that by design, or is indeed something wrong?
Thanks in advance!
not sure if it helps, but you can change when pocket outlook deletes mail, there are 3 options:
on connect/disconnect
immediately
manually
I dunno if changing that will help you at all, but its in the pocket outlook options.
I'll shut up now, in case I misunderstood
jmel said:
not sure if it helps, but you can change when pocket outlook deletes mail, there are 3 options:
on connect/disconnect
immediately
manually
I dunno if changing that will help you at all, but its in the pocket outlook options.
I'll shut up now, in case I misunderstood
Click to expand...
Click to collapse
I appreciate your reply, but my question is beyond that......it centers around Driect Push.....my thinking is, regardless of that setting you referred to, once the email is deleted on the PDA, the PDA should "reverse-push" that deletion to the Exchange server, and mine does not seem to be doing that.
I hope that is a little clearer?
No, his answer was right. The reverse of the Push is not the same. You have to set the options as Jmel suggested. Its basically to save data.
This allows you to go through your mail, delete all your spam and crap, then update the server. Doing so immediately would be a waste. Recieving/sending emails is considered vital, deleting them...not so much.

Sinchronize pda with web exchange

Hi Guyz,
i have an HTC Trinity with latest rom released from italian distributor, just flashed three days ago.
Everythings are working fine but i cannot set a configuration for sinchronization of my company's web exchange server.
We have Exchange Server 2003 with SP2 and gate 443 already enable, but nothing....with Active Sync, during server's configuration, i cannot see any web server at typed address.
Web addressm user id and password are right.
Someone can give me a procedure for this setup? Any suggestion??
Many thanks.
Marco
Hi there, take a look at this:
http://www.msexchange.org/tutorials/Configuring-Mobile-Devices-Exchange2003.html
and this:
http://www.msexchange.org/tutorials/Managing-Mobile-Access-Exchange-Server-2003.html
or (absolutely recommended) try olx mobile access at www.gangl.de. this works perfect an it's easy to configure. Don't mind the german website for the application ist in english. 30-days trial for download.
Best regards.
There is a known Issue connecting with Exchange with ActiveSync and OMA
If your Exchange server is set up to use Forms-Base authentication(must be used to enable compression of static and dynamic data from the exchange server), ActiveSync and OMA will fail. This is a know issue. ActiveSync and OMA use WebDav to authenticate the user with NTFS permissions. Forms-Based authentication blocks this. Another virtual directory must be made for devices that use WebDav to authenticate with. Two places that discuss this issue and how to work around it are...
http://www.petri.co.il/problems_with_forms_based_authentication_and_ssl_in_activesync.htm
and at Microsoft:
http://support.microsoft.com/Default.aspx?kbid=817379
Sean Beeson

Lost my Push Email

Can anyone suggest what I should look at to solve this?
Running HTC standard WM 6.0 -- CommMgr says that DirectPush is "on" but the only way I can get my MS Exchange email is to manually click "send/receive" for this account. I have 5 other email accounts all of which download per my settings, but MS Exchange does not? I'm baffled as to where to look to correct this.
Thanks!
did you open ActiveSync (A.S.) on your phone to see if there are any error messages? also, while in A.S., you should confirm that the sync "Schedule" has not changed to manual... and lastly, check with your Exchange Admin to confirm no changes occurred on the server side.
I once experienced that the SSL sertificate that was used to secure the communication with the server had expired on date. This caused push to stop working. There was a remark about this when I opened ActiveSync.
pananza said:
I once experienced that the SSL sertificate that was used to secure the communication with the server had expired on date. This caused push to stop working. There was a remark about this when I opened ActiveSync.
Click to expand...
Click to collapse
Where did you find a replacement certificate? I've had that msg but was unable to figure out where to find the updated certificate. Thanks.
brucewilsonpa said:
Where did you find a replacement certificate? I've had that msg but was unable to figure out where to find the updated certificate. Thanks.
Click to expand...
Click to collapse
You need to have your exchange administrator install a new and valid certificate. Not much you can do. If your exchange server is using a self-issued SSL sertificate you can use the Enroll Certificate function in Active Sync on your PC to install the issuer (most often domain controller) as a trustet root certificate.
brucewilsonpa said:
Where did you find a replacement certificate? I've had that msg but was unable to figure out where to find the updated certificate. Thanks.
Click to expand...
Click to collapse
if your company uses OWA, e.g., Outlook Web Access, you should be able to export the certificate from IE. I've done this before; the trick is to know which certificate is used to authenticate your access to the email server.

Exchange Server Security Certificate Update???

Hi all,
We have some HTC Hero's in my office and they have been connecting fine to the MS Exchange Servers for our e-mails fine through active sync.
But yesterday the IT Guys updated the Security Certificates and now we get an error message telling us that the site is not trusted anymore.
We have been sent some updated certificates for windows mobile phones, they are .p7c file, and some files called certificate.cer and intcertificate.cer.
My question is do these files work ok on the android O/S and they arent going to mess up the phone?
Thanks for any support you can offer,
I've not had a problem like this following our exchange certificates being updated. They've just worked
Only thing I could suggest is that you have SSL turned on in your exchange account settings on the Hero.
Hi,
In my organisation, the certificate for OWA is signed by a self signed CA. The first time I synched my Hero, it told me the certificate was invalid. I clicked on the Allow button, it never bothered me again.
I didn't find anyway to import external certificate (CA or server), but it doesn't seem to be needed.
Hi,I have the same question about sync to exchange2007.
At first ,you choice the allow button,it not bother you only at the live session.
If you restart you Hero, it told again, It's so unconfortable.
How to join the .cer file in the android? If the system believe the .cer,maybe it's working well.
Does anyone know the answer to this one?

Categories

Resources