Link to home
Start Free TrialLog in
Avatar of alipri
alipri

asked on

OWA problems over firewall router

Hello - I'm having some problems getting Outlook Web Access to work on machines outside of our internal network.

The server is running SBS2K, and Exchange Server works fine.  I set up OWA using SSL (from our internal certifcate authority) and it works fine for all machines internally.  

I understand that our firewall has to be configured to let the requests through - so on the routers Virtual Server i have set up the forwarding address for TCP port 443 to port 443 on the Exchange server.

However, if i use the internal i.p. address of the firewall router in a web browser (192.168.0.254) and then type /exchange:

https://192.168.0.254/exchange

I get a Cannot Find Server error page.  Obviously this is the same if i use the external IP address of the router.

If i type the server IP directly:

https://192.168.0.253/exchange

then it works...  

I have checked that the router is forwarding correctly (using hyperterminal) and port 443 shows as open using a port scan on the external IP address.

Just to check whether it was a problem with SSL - i took away the need for authentication, then port forwarded to port 80 and the same problem occurs.

Also if you type in https://192.168.0.253:443 it takes you to the default web page in IIS.  However if you type in https://192.168.0.254:443 then again, it cannot find the page.

I know i'm rambling...but can anybody help?
Avatar of scampgb
scampgb
Flag of United Kingdom of Great Britain and Northern Ireland image

Hi alipri,

Just to be clear;
you're trying to connect to your Exchange server from INSIDE your network by specifying the IP of your firewall, which is configured for port forwarding?

This is highly unlikely to work.  The firewall is designed to NAT the traffic between it's Internal and External interface, not route traffic internally.
If you look at the firewall logs, it might mention that it's ignoring the request :-)

What happens if you try to connect to https://55.55.55.253 externally?
Where the IP is the external IP of your Firewall that is configured to port forward.

Avatar of alipri
alipri

ASKER

Hello there - yep trying to connect from inside the network as you said.  However, the same things happen if i change my DNS server to an external one, then go to the url of the router.

If i connect to the router IP externally (using http not https) then i get to the administration screen for the router (the router has a http web server on it)
ASKER CERTIFIED SOLUTION
Avatar of scampgb
scampgb
Flag of United Kingdom of Great Britain and Northern Ireland image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of alipri

ASKER

Hello - thanks for the advice - i'll try accessing from an external server

this is the modem:

http://www.zoom.com/techsupport/adsl/adsl_5551.shtml
Avatar of alipri

ASKER

Thank you that man! D'OH!
alipri,
Thanks for the "A".  I take it that you've got it sorted now?
Glad I could help :)