Access to exchange 2003 for user's from Internet - options
Exchange Server Forum Index Exchange Server
Discussion forums for Microsoft Exchange Server users.
Microsoft Outlook
 
 FAQFAQ   MemberlistMemberlist     RegisterRegister 
 ProfileProfile   Log in to check your private messagesLog in to check your private messages   Log inLog in 
 
Google
 
Web ExchangeServerHelp.com
Access to exchange 2003 for user's from Internet - options

 
Post new topic   Reply to topic    Exchange Server Forum Index -> Setup
Author Message
Fred
Guest





Posted: Mon Jan 24, 2005 8:10 am    Post subject: Access to exchange 2003 for user's from Internet - options Reply with quote

Hi.

Thanks in advanced for any help.

I need to provide access from Internet to internal Exchange server.

Exchange 2003 Standard running on Windows 2003 Standard Server. (1 Server in
Domain currently) Server has 2 ip address 10.10.10.12(main)
10.10.10.8(backup for removing Spam Marshall for testing). IP Address for
incoming SMTP xx.xx.xx.219. The Firewall I am using doesn't do Port Mapping,
but it Does NAT very efficently. The incoming smtp mail 1st hits a Spam
Marshall Appliance(10.10.10.11) which then forwards the smtp traffic to
Exchange server(10.10.10.12) - Firewall basically allows incoming smtp,
OWA(https), Citrix client. Using Outlook 2003 on Windows XP Sp1 plus patch
331320 for outlook or SP2. external domain is domain.com(so mail.domain.com
points to xx.xx.xx.219). Internally the server names is mail, domain is
domain.local. Our Web site(www.domain.com) is run off site by someone else
and this will not be changed.

Firewall Static NAT's xx.xx.xx.219 to 10.10.10.11
Firewall Static NAT's xx.xx.xx.220 to 10.10.10.12

Currently have OWA setup and running and using SSL. User go
https://xx.xx.xx.220/exchange . - User would perfer to use Outlook client
instead - they got kinda spoiled by old email system ability to use the
same client external or internally with just a IP address change whened they
logged in.

So I setup IMAP access - got it to work, but I can't configure SSL on it due
to Phone/voice mail uses same connector. I supposed I could create another
connector but user don't like this way either.

So I though maybe just use Outlook client and figure out what ports I need
or use RPC over HTTP.

I tried RPC over HTTP since I found the Articles to set it up 1st. Didn't
work.
So I tried just plain outlook client, by disabling filters on firewall, so
that all traffic would reach the exchnage server, (just for testing), while
this was hit or miss wether or not it would connect anyway. When it did it
was slow. At least I think it was.

I log into OWA and install certificate on W/S before trying to connect using
RPC over HTTP.When testing RPC over HTTP I tried from home and from internal
Office, when typing outlook /rpcdiag, I never saw it connect using RPC over
HTTP. trying from home does work at all until I shutdown filtering on
firewall, then its hit or miss if it works.

I used article 833401 on setting up RPC over HTTP on single server.

Tried Articles 822594 - RPC over HTTP is not successful or reverts to TCP

rpcping.exe -t ncacn_http -s ExchangeServerName -o
RpcProxy=ProxyServerName -P "user,domain,*" -H 1 -u 10 -a connect -F 3 -E -R
none

I think I should see this, but all I see is last line

RPCPinging proxy server ServerName with Echo Request Packet
Send ping to server
Error 12175 returned in the WinHttpSedRequest
Ping Failed


I used Article 827330 for troubleshooting. Steps 1 through 7 work as
expected according to article.


Step 8 says to use RPCDUMP to verify port configuration. The registry
setting is there for NTDS. Artciles doesn't say what to expect though
When I run rpcdump /v and I see some of this.

ProtSeq:ncacn_http
Endpoint:6004
NetOpt:
Annotation:
IsListening:NOT_PINGED
StringBinding:ncacn_http:10.10.10.12[6004]
UUID:12345678-1234-abcd-ef00-01234567cffb
ComTimeOutValue:RPC_C_BINDING_MIN_TIMEOUT
VersMajor 1 VersMinor 0

ProtSeq:ncacn_http
Endpoint:6004
NetOpt:
Annotation:
IsListening:NOT_PINGED
StringBinding:ncacn_http:10.10.10.12[6004]
UUID:12345778-1234-abcd-ef00-0123456789ab
ComTimeOutValue:RPC_C_BINDING_MIN_TIMEOUT
VersMajor 0 VersMinor 0

ProtSeq:ncacn_http
Endpoint:6004
NetOpt:
Annotation:MS NT Directory NSP Interface
IsListening:NOT_PINGED
StringBinding:ncacn_http:10.10.10.12[6004]
UUID:f5cc5a18-4264-101a-8c59-08002b2f8426
ComTimeOutValue:RPC_C_BINDING_MIN_TIMEOUT
VersMajor 56 VersMinor 0

ProtSeq:ncacn_http
Endpoint:6004
NetOpt:
Annotation:MS NT Directory DRS Interface
IsListening:NOT_PINGED
StringBinding:ncacn_http:10.10.10.12[6004]
UUID:e3514235-4b06-11d1-ab04-00c04fc2dcd2
ComTimeOutValue:RPC_C_BINDING_MIN_TIMEOUT
VersMajor 4 VersMinor 0

ProtSeq:ncacn_http
Endpoint:6002
NetOpt:
Annotation:MS Exchange Directory RFR Interface
IsListening:NOT_PINGED
StringBinding:ncacn_http:10.10.10.12[6002]
UUID:1544f5e0-613c-11d1-93df-00c04fd7bd09
ComTimeOutValue:RPC_C_BINDING_MIN_TIMEOUT
VersMajor 1 VersMinor 0

ProtSeq:ncacn_http
Endpoint:6002
NetOpt:
Annotation:MS Exchange System Attendant Cluster Interface
IsListening:NOT_PINGED
StringBinding:ncacn_http:10.10.10.12[6002]
UUID:f930c514-1215-11d3-99a5-00a0c9b61b04
ComTimeOutValue:RPC_C_BINDING_MIN_TIMEOUT
VersMajor 1 VersMinor 0

ProtSeq:ncacn_http
Endpoint:6002
NetOpt:
Annotation:MS Exchange System Attendant Private Interface
IsListening:NOT_PINGED
StringBinding:ncacn_http:10.10.10.12[6002]
UUID:83d72bf0-0d89-11ce-b13f-00aa003bac6c
ComTimeOutValue:RPC_C_BINDING_MIN_TIMEOUT
VersMajor 6 VersMinor 0

ProtSeq:ncacn_http
Endpoint:6002
NetOpt:
Annotation:MS Exchange System Attendant Public Interface
IsListening:NOT_PINGED
StringBinding:ncacn_http:10.10.10.12[6002]
UUID:469d6ec0-0d87-11ce-b13f-00aa003bac6c
ComTimeOutValue:RPC_C_BINDING_MIN_TIMEOUT
VersMajor 16 VersMinor 1

ProtSeq:ncacn_http
Endpoint:6001
NetOpt:
Annotation:Exchange 2003 Server STORE EMSMDB Interface
IsListening:NOT_PINGED
StringBinding:ncacn_http:10.10.10.12[6001]
UUID:a4f1db00-ca47-1067-b31f-00dd010662da
ComTimeOutValue:RPC_C_BINDING_MIN_TIMEOUT
VersMajor 0 VersMinor 81

ProtSeq:ncacn_http
Endpoint:6001
NetOpt:
Annotation:Exchange Server STORE ADMIN Interface
IsListening:NOT_PINGED
StringBinding:ncacn_http:10.10.10.12[6001]
UUID:99e64010-b032-11d0-97a4-00c04fd6551d
ComTimeOutValue:RPC_C_BINDING_MIN_TIMEOUT
VersMajor 4 VersMinor 0

ProtSeq:ncacn_http
Endpoint:6001
NetOpt:
Annotation:Exchange Server STORE ADMIN Interface
IsListening:NOT_PINGED
StringBinding:ncacn_http:10.10.10.12[6001]
UUID:99e64010-b032-11d0-97a4-00c04fd6551d
ComTimeOutValue:RPC_C_BINDING_MIN_TIMEOUT
VersMajor 3 VersMinor 0

ProtSeq:ncacn_http
Endpoint:6001
NetOpt:
Annotation:Exchange Server STORE ADMIN Interface
IsListening:NOT_PINGED
StringBinding:ncacn_http:10.10.10.12[6001]
UUID:89742ace-a9ed-11cf-9c0c-08002be7ae86
ComTimeOutValue:RPC_C_BINDING_MIN_TIMEOUT
VersMajor 2 VersMinor 0

ProtSeq:ncacn_http
Endpoint:6001
NetOpt:
Annotation:Exchange Server STORE ADMIN Interface
IsListening:NOT_PINGED
StringBinding:ncacn_http:10.10.10.12[6001]
UUID:a4f1db00-ca47-1067-b31e-00dd010662da
ComTimeOutValue:RPC_C_BINDING_MIN_TIMEOUT
VersMajor 1 VersMinor 0

ProtSeq:ncacn_http
Endpoint:6004
NetOpt:
Annotation:IPSec Policy agent endpoint
IsListening:NOT_PINGED
StringBinding:ncacn_http:10.10.10.12[6004]
UUID:12345678-1234-abcd-ef00-0123456789ab
ComTimeOutValue:RPC_C_BINDING_MIN_TIMEOUT
VersMajor 1 VersMinor 0



Fred

Back to top
 
Post new topic   Reply to topic    Exchange Server Forum Index -> Setup All times are GMT
Page 1 of 1

 
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum




Windows Server Dedicated Servers
Contact Us
New Topics Powered by phpBB