Solved

Outlook Web Access Authentication

Posted on 2001-06-07
4
470 Views
Last Modified: 2011-10-03
I've recently setup an Exchange Server behind our comapny firewall and am presently configuring it to allow Outlook Web Access for users who wish to check their email from outside the company WAN. The port allowing access through the firewall is working correctly and brings up the login asp page for OWA, however a logon box appears asking for usename, password and domain. When you enter your information, the logon box reappears after a few seconds and prompts for a password again. If you enter your password a further time, the window then goes white with the address bar url address looking like it has authenticated you. The access to this service is via https and we use SSL/clear text authentication.

Attempting to access the same service over the LAN/WAN (ie not through a dialup connection) takes the user straight into their inbox. The url access for this is also done via https but to the servers internal IP.

What is puzzling me is why it's asking for a domain logon account to access email?

Anyone help?
0
Comment
Question by:central_scrutiniser
  • 2
4 Comments
 
LVL 4

Expert Comment

by:bluezoo7
ID: 6165641
When a user connects over the local LAN, they are authenticating to your domain by logging in. Then when they connect to OWA, they already have the credentials they need to access their mail.

When a user connects via the Internet they have not authenticated to the domain. OWA (and Exchange) requires a domain username, password (and mailbox alias if different than the username) to allow this unauthenticated connection access to the mailbox.

BZ7

0
 
LVL 4

Accepted Solution

by:
bluezoo7 earned 300 total points
ID: 6165674
Doh! Please treat the above comment as an answer!

BZ7
0
 

Author Comment

by:central_scrutiniser
ID: 6166851
No, our login environment is Netware based with the NT server running purely as a PDC for a Winframe server. Over the LAN I can login as a user without domain authentication because the Netware UID and passwords are the same on both Netware and NT. Once that cached password is passed onto the OWA it authenticates them automatically to the NT server.

I tried a DUN connection from a friends machine last night and got through to the server on entering the domain id first time.

Went back and check my machine, bloody cookies! My jury is still out on cookies so I disable them by default. OWA seems to require them turned on to cookie the domain id on the local machine. All working now.

Dude, I'm going to give you the points anyway for a quick response to the question.

Party on :0)
CS
0
 

Expert Comment

by:abdallah1973
ID: 13382155
hi,
q.1)we have a win2000 server and exchange 5.5, on the real ip address, that is 192.168.0.2, it is behind the cisco 506E firewall. now , Is it possible to configure the POP3 email account of outside employees of our company with our server(as whole network is behind cisco firewall).
q.2)our employees outside kuwait can check their outlook account through webaccess when we gave them administrative rights or made them member of administrative group? otherwise they don't get the outlook webaccess. ? acn you suggest a solution.


with regards,
abdallah kurdi
kuwait
0

Featured Post

Networking for the Cloud Era

Join Microsoft and Riverbed for a discussion and demonstration of enhancements to SteelConnect:
-One-click orchestration and cloud connectivity in Azure environments
-Tight integration of SD-WAN and WAN optimization capabilities
-Scalability and resiliency equal to a data center

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article explains in simple steps how to renew expiring Exchange Server Internal Transport Certificate.
Scam emails are a huge burden for many businesses. Spotting one is not always easy. Follow our tips to identify if an email you receive is a scam.
The video tutorial explains the basics of the Exchange server Database Availability groups. The components of this video include: 1. Automatic Failover 2. Failover Clustering 3. Active Manager
how to add IIS SMTP to handle application/Scanner relays into office 365.

792 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question