Exchange 2010 OWA, Autodiscover and POP3/IMAP4 Setting verification through TMG

AID: 8637
  • Status: Published

3525 points

  • By
  • TypeTutorial
  • Posted on2011-11-22 at 06:26:23
I have seen a number of questions relating to Exchange 2010 OWA, Autodiscover and POP3/IMAP4 Settings using a TMG server so I thought that I would write this article for you to verify your settings. I will only list the most important tabs and not every single one of them.

ASSUMPTIONS

1. In this article I will assume that you have already created listeners etc. on TMG but it is not working because of some settings that might be missing, so this is to ensure that your settings are correct.
2. I also assume that you have already installed and configured your UCC SSL Certificate from an external Authoritative Certificate Provider.


VERY IMPORTANT NOTES:

ON TMG OUTLOOK ANYWHERE PUBLISHING RULE
On "Outlook Anywhere Publishing Rule - Public Name Tab" ensure that you have your autodiscover.domain.com and exchange.domain.com  (the exchange one could be your mail.domain.com or what ever you use for your cas array) entered, as this is the primary reason why Outlook Anywhere does not work

ON BOTH EXCHANGE AND TMG
You have to use the same authentication methods on both sides


ON EXCHANGE 2010 SERVER
1. Open EMC and expland Server Configuration > Client Access
1.-Expand-EMC.PNG
  • 7 KB
  • Expand EMC
Expand EMC


OWA Settings
2. Select your CAS Server and on the bottom tabs select Outlook Web App
3. Now right click on owa (Default Web Site) and click on properties
4. Now ensure that your settings are as follow:


OWA - General Tab
NB: Use your external url as internal URL and External URL
2.-OWA---General-Tab.PNG
  • 15 KB
  • OWA - General Tab
OWA - General Tab


OWA - Authentication Tab
3.-Authentication-Tab.PNG
  • 17 KB
  • OWA - Authenticaion Tab
OWA - Authenticaion Tab


OWA - Public Computer File Access Tab
4.-OWA---Public-Computer-File-Ac.PNG
  • 14 KB
  • OWA - Public Computer File Access Tab
OWA - Public Computer File Access Tab


OWA - Private Computer File Access Tab
5.-OWA---Private-Computer-File-A.PNG
  • 14 KB
  • OWA - Private Computer File Access Tab
OWA - Private Computer File Access Tab


Autodiscover Settings
5. Open EMC and expland Server Configuration > Client Access
1.-Expand-EMC.PNG
  • 7 KB
  • Expand EMC
Expand EMC

6. Right click on your CAS Server and click properties
7. Select the Outlook Anywhere tab and ensure that you have your External host name entered and have Basic Authentication selected.
6.-Autodiscover-Settings-on-CAS-.PNG
  • 13 KB
  • Autodiscover Settings on CAS Server Properties - Outlook Anywhere Tab
Autodiscover Settings on CAS Server Properties - Outlook Anywhere Tab



POP3 and IMAP4 Settings

POP3
8. Open EMC and expland Server Configuration > Client Access
1.-Expand-EMC.PNG
  • 7 KB
  • Expand EMC
Expand EMC

9. Select your CAS Server and select the POP3 and IMAP4 tab
10. Right click POP3 and click properties

POP3 - Binding Tab
7.-POP3-Binding-Tab.PNG
  • 16 KB
  • POP3 - Binding Tab
POP3 - Binding Tab


POP3 - Authentication Tab
8.-POP3-Authentication-Tab.PNG
  • 13 KB
  • POP3 - Authentication Tab
POP3 - Authentication Tab


IMAP4
11. Open EMC and expland Server Configuration > Client Access
1.-Expand-EMC.PNG
  • 7 KB
  • Expand EMC
Expand EMC

12. Select your CAS Server and select the POP3 and IMAP4 tab
13. Right click IMAP4 and click properties

IMAP4 - Binding Tab
9.-IMAP4-Binding-Tab.PNG
  • 16 KB
  • IMAP4 - Binding Tab
IMAP4 - Binding Tab


IMAP5 - Authentication Tab
10.-IMAP4---Authentication-Tab.PNG
  • 13 KB
  • IMAP4 - Authentication Tab
IMAP4 - Authentication Tab


ON TMG SERVER

OWA SETTINGS ON TMG
1. Open Forefront TMG Management by doing the following: Click Start > All Programs > Microsoft Forefront TMG > Forefront TMG Management
2. Now Expand Forefront TMG > Firewall Policy
11.-TMG---Firewall-Policy-Naviga.PNG
  • 6 KB
  • TMG - Firewall Policy Navigation
TMG - Firewall Policy Navigation

3. Ensure that your OWA Publishing rule has the following settings:

OWA Publishing Rule - Action Tab
12.-TMG---OWA-Publishing-Rule---.PNG
  • 13 KB
  • TMG - OWA Pub Rule Action Tab
TMG - OWA Pub Rule Action Tab


OWA Publishing Rule - From Tab
13.-TMG---OWA-Publishing-Rule---.PNG
  • 12 KB
  • TMG - OWA Publishing Rule - From Tab
TMG - OWA Publishing Rule - From Tab


OWA Publishing Rule - To Tab
NB:
I have got my CAS Array IP in the "Computer name or IP address" field
14.-TMG---OWA-Publishing-Rule---.PNG
  • 15 KB
  • TMG - OWA Publishing Rule - To Tab
TMG - OWA Publishing Rule - To Tab


OWA Publishing Rule - Traffic Tab
15.-TMG---OWA-Publishing-Rule---.PNG
  • 13 KB
  • TMG - OWA Publishing Rule - Traffic Tab
TMG - OWA Publishing Rule - Traffic Tab


OWA Publishing Rule - Listener Tab
NB:
Will show you the Listener tabs in more detail at the end of this article.
16.-TMG---OWA-Publishing-Rule---.PNG
  • 16 KB
  • TMG - OWA Publishing Rule - Listener Tab
TMG - OWA Publishing Rule - Listener Tab


OWA Publishing Rule - Public Name Tab
17.-TMG---OWA-Publishing-Rule---.PNG
  • 15 KB
  • TMG - OWA Publishing Rule - Public Name
TMG - OWA Publishing Rule - Public Name


OWA Publishing Rule - Paths Tab
18.-TMG---OWA-Publishing-Rule---.PNG
  • 16 KB
  • TMG - OWA Publishing Rule - Paths Tab
TMG - OWA Publishing Rule - Paths Tab


OWA Publishing Rule - Authentication Delegation Tab
19.-TMG---OWA-Publishing-Rule---.PNG
  • 12 KB
  • TMG - OWA Publishing Rule - Authentication Delegation Tab
TMG - OWA Publishing Rule - Authentication Delegation Tab


OWA Publishing Rule - Application Settings Tab
20.-TMG---OWA-Publishing-Rule---.PNG
  • 12 KB
  • TMG - OWA Publishing Rule - Application Settings Tab
TMG - OWA Publishing Rule - Application Settings Tab


OWA Publishing Rule - Bridging Tab
21.-TMG---OWA-Publishing-Rule---.PNG
  • 18 KB
  • TMG - OWA Publishing Rule - Bridging Tab
TMG - OWA Publishing Rule - Bridging Tab


OWA Publishing Rule - Users Tab
22.-TMG---OWA-Publishing-Rule---.PNG
  • 12 KB
  • TMG - OWA Publishing Rule - Users Tab
TMG - OWA Publishing Rule - Users Tab


OWA Publishing Rule - Schedule Tab
23.-TMG---OWA-Publishing-Rule---.PNG
  • 14 KB
  • TMG - OWA Publishing Rule - Schedule Tab
TMG - OWA Publishing Rule - Schedule Tab


OUTLOOK ANYWHERE SETTINGS ON TMG
Once again:
1. Open Forefront TMG Management by doing the following: Click Start > All Programs > Microsoft Forefront TMG > Forefront TMG Management
2. Now Expand Forefront TMG > Firewall Policy
11.-TMG---Firewall-Policy-Naviga.PNG
  • 6 KB
  • TMG - Firewall Policy Navigation
TMG - Firewall Policy Navigation

3. Ensure that your Outlook Anywhere RPC/HTTPS Publishing rule has the following settings:

Outlook Anywhere Publishing Rule - Action Tab
24.-TMG---Outlook-Anywhere-Publi.PNG
  • 13 KB
  • TMG - Outlook Anywhere Publishing Rule - Action Tab
TMG - Outlook Anywhere Publishing Rule - Action Tab


Outlook Anywhere Publishing Rule - From Tab
25.-TMG---Outlook-Anywhere-Publi.PNG
  • 12 KB
  • TMG - Outlook Anywhere Publishing Rule - From Tab
TMG - Outlook Anywhere Publishing Rule - From Tab


Outlook Anywhere Publishing Rule - To Tab
26.-TMG---Outlook-Anywhere-Publi.PNG
  • 15 KB
  • TMG - Outlook Anywhere Publishing Rule - To Tab
TMG - Outlook Anywhere Publishing Rule - To Tab


Outlook Anywhere Publishing Rule - Traffic Tab
27.-TMG---Outlook-Anywhere-Publi.PNG
  • 13 KB
  • TMG - Outlook Anywhere Publishing Rule - Traffic Tab
TMG - Outlook Anywhere Publishing Rule - Traffic Tab


Outlook Anywhere Publishing Rule - Listener Tab
28.-TMG---Outlook-Anywhere-Publi.PNG
  • 16 KB
  • TMG - Outlook Anywhere Publishing Rule - Listener Tab
TMG - Outlook Anywhere Publishing Rule - Listener Tab


Outlook Anywhere Publishing Rule - Public Name Tab
NB:
YOU MUST HAVE YOUR autodiscover.domain.com AND exchange.domain.com (the exchange one could be your mail.domain.com or what ever you use for your cas array and both would be your external url's)
29.-TMG---Outlook-Anywhere-Publi.PNG
  • 16 KB
  • TMG - Outlook Anywhere Publishing Rule - Public Name Tab
TMG - Outlook Anywhere Publishing Rule - Public Name Tab


Outlook Anywhere Publishing Rule - Paths Tab
30.-TMG---Outlook-Anywhere-Publi.PNG
  • 16 KB
  • TMG - Outlook Anywhere Publishing Rule - Paths Tab
TMG - Outlook Anywhere Publishing Rule - Paths Tab


Outlook Anywhere Publishing Rule - Authentication Delegation Tab
31.-TMG---Outlook-Anywhere-Publi.PNG
  • 13 KB
  • TMG - Outlook Anywhere Publishing Rule - Authentication Delegation Tab
TMG - Outlook Anywhere Publishing Rule - Authentication Delegation Tab


Outlook Anywhere Publishing Rule - Application Settings Tab
32.-TMG---Outlook-Anywhere-Publi.PNG
  • 12 KB
  • TMG - Outlook Anywhere Publishing Rule - Application Settings Tab
TMG - Outlook Anywhere Publishing Rule - Application Settings Tab


Outlook Anywhere Publishing Rule - Bridging Tab
33.-TMG---Outlook-Anywhere-Publi.PNG
  • 18 KB
  • TMG - Outlook Anywhere Publishing Rule - Bridging Tab
TMG - Outlook Anywhere Publishing Rule - Bridging Tab


Outlook Anywhere Publishing Rule - Users Tab
34.-TMG---Outlook-Anywhere-Publi.PNG
  • 13 KB
  • TMG - Outlook Anywhere Publishing Rule - Users Tab
TMG - Outlook Anywhere Publishing Rule - Users Tab



POP3 AND IMAP4 SETTINGS ON TMG
These settings are pretty standard, and ones again you would just need to ensure that Authentication is set to the exact same on TMG and Exchange.

EXCHANGE LISTENER SETTINGS ON TMG

Listener Settings on TMG - Authentication Tab
35.-TMG---Listener-Settings---Au.PNG
  • 14 KB
  • TMG - Listener Settings - Authentication Tab
TMG - Listener Settings - Authentication Tab


Listener Settings on TMG - Forms Tab
36.-TMG---Listener-Settings---Fo.PNG
  • 12 KB
  • TMG - Listener Settings - Forms Tab
TMG - Listener Settings - Forms Tab


Listener Settings on TMG - SSO Tab
37.-TMG---Listener-Settings---SS.PNG
  • 12 KB
  • TMG - Listener Settings - SSO Tab
TMG - Listener Settings - SSO Tab


Listener Settings on TMG - Connections Tab
38.-TMG---Listener-Settings---Co.PNG
  • 14 KB
  • TMG - Listener Settings - Connections Tab
TMG - Listener Settings - Connections Tab


Listener Settings on TMG - Certificates Tab
39.-TMG---Listener-Settings---Ce.PNG
  • 12 KB
  • TMG - Listener Settings - Certificates Tab
TMG - Listener Settings - Certificates Tab


LAST THOUGHT:
In order for you certificate to be installed correctly you need to install the certificate on the local machine on TMG and in AD.

If this article was helpful please vote for it and leave a comment?

Cheers,
Hendrik Wiese
    Asked On
    2011-11-22 at 06:26:23ID8637
    Tags

    Exchange 2010

    ,

    OWA

    ,

    Autodiscover

    ,

    POP3/IMAP4

    ,

    TMG

    Topic

    Exchange Email Server

    Views
    2198

    Comments

    Add your Comment

    Please Sign up or Log in to comment on this article.

    Join Experts Exchange Today

    Gain Access to all our Tech Resources

    Get personalized answers

    Ask unlimited questions

    Access Proven Solutions

    Search 3.2 million solutions

    Read In-Depth How-To Guides

    1000+ articles, demos, & tips

    Watch Step by Step Tutorials

    Learn direct from top tech pros

    And Much More!

    Your complete tech resource

    See Plans and Pricing

    30-day free trial. Register in 60 seconds.

    Loading Advertisement...

    Top Exchange Experts

    1. demazter

      724,144

      Sage

      1,580 points yesterday

      Profile
      Rank: Genius
    2. alanhardisty

      714,931

      Sage

      4,220 points yesterday

      Profile
      Rank: Genius
    3. jjmck

      275,745

      Guru

      1,030 points yesterday

      Profile
      Rank: Genius
    4. Rajkumar-MCITP

      268,093

      Guru

      0 points yesterday

      Profile
      Rank: Guru
    5. apache09

      245,757

      Guru

      1,500 points yesterday

      Profile
      Rank: Genius
    6. akicute555

      178,820

      Guru

      0 points yesterday

      Profile
      Rank: Wizard
    7. amitkulshrestha

      171,436

      Guru

      0 points yesterday

      Profile
      Rank: Genius
    8. acbrown2010

      159,135

      Guru

      1,000 points yesterday

      Profile
      Rank: Genius
    9. Akhater

      153,366

      Guru

      0 points yesterday

      Profile
      Rank: Genius
    10. Neilsr

      137,804

      Master

      0 points yesterday

      Profile
      Rank: Genius
    11. jordannet

      127,611

      Master

      10 points yesterday

      Profile
      Rank: Wizard
    12. GreatVargas

      101,542

      Master

      2,800 points yesterday

      Profile
      Rank: Wizard
    13. HendrikWiese

      95,084

      Master

      2,050 points yesterday

      Profile
      Rank: Sage
    14. limjianan

      94,700

      Master

      0 points yesterday

      Profile
      Rank: Genius
    15. endital1097

      93,710

      Master

      10 points yesterday

      Profile
      Rank: Genius
    16. Anuroopsundd

      92,000

      Master

      0 points yesterday

      Profile
      Rank: Sage
    17. davorin

      91,351

      Master

      0 points yesterday

      Profile
      Rank: Sage
    18. Radweld

      88,729

      Master

      0 points yesterday

      Profile
      Rank: Guru
    19. chakko

      88,498

      Master

      0 points yesterday

      Profile
      Rank: Genius
    20. R--R

      86,699

      Master

      0 points yesterday

      Profile
      Rank: Wizard
    21. e_aravind

      85,998

      Master

      0 points yesterday

      Profile
      Rank: Genius
    22. Exchange_Geek

      85,704

      Master

      0 points yesterday

      Profile
      Rank: Sage
    23. lucid8

      81,809

      Master

      0 points yesterday

      Profile
      Rank: Sage
    24. KalluSureshKumar

      76,534

      Master

      0 points yesterday

      Profile
      Rank: Master
    25. tigermatt

      73,020

      Master

      0 points yesterday

      Profile
      Rank: Genius

    Hall Of Fame