Solved

OWA problems over firewall router

Posted on 2004-09-23
6
1,163 Views
Last Modified: 2012-06-27
Hello - I'm having some problems getting Outlook Web Access to work on machines outside of our internal network.

The server is running SBS2K, and Exchange Server works fine.  I set up OWA using SSL (from our internal certifcate authority) and it works fine for all machines internally.  

I understand that our firewall has to be configured to let the requests through - so on the routers Virtual Server i have set up the forwarding address for TCP port 443 to port 443 on the Exchange server.

However, if i use the internal i.p. address of the firewall router in a web browser (192.168.0.254) and then type /exchange:

https://192.168.0.254/exchange

I get a Cannot Find Server error page.  Obviously this is the same if i use the external IP address of the router.

If i type the server IP directly:

https://192.168.0.253/exchange

then it works...  

I have checked that the router is forwarding correctly (using hyperterminal) and port 443 shows as open using a port scan on the external IP address.

Just to check whether it was a problem with SSL - i took away the need for authentication, then port forwarded to port 80 and the same problem occurs.

Also if you type in https://192.168.0.253:443 it takes you to the default web page in IIS.  However if you type in https://192.168.0.254:443 then again, it cannot find the page.

I know i'm rambling...but can anybody help?
0
Comment
Question by:alipri
  • 3
  • 3
6 Comments
 
LVL 15

Expert Comment

by:scampgb
ID: 12135575
Hi alipri,

Just to be clear;
you're trying to connect to your Exchange server from INSIDE your network by specifying the IP of your firewall, which is configured for port forwarding?

This is highly unlikely to work.  The firewall is designed to NAT the traffic between it's Internal and External interface, not route traffic internally.
If you look at the firewall logs, it might mention that it's ignoring the request :-)

What happens if you try to connect to https://55.55.55.253 externally?
Where the IP is the external IP of your Firewall that is configured to port forward.

0
 

Author Comment

by:alipri
ID: 12135706
Hello there - yep trying to connect from inside the network as you said.  However, the same things happen if i change my DNS server to an external one, then go to the url of the router.

If i connect to the router IP externally (using http not https) then i get to the administration screen for the router (the router has a http web server on it)
0
 
LVL 15

Accepted Solution

by:
scampgb earned 500 total points
ID: 12135743
alipri,
> yep trying to connect from inside the network as you said.  However,
> the same things happen if i change my DNS server to an external one,
> then go to the url of the router.

You're still actually connecting from Inside the network here though.  You do need to do this test from a machine "in the real world".

If you're getting an admin screen for the router, then it's not configured to port forward properly.
You need to check the config on the router.

If you can post the make and model (better still, a link to the manual!) I'll try and suggest how to do it.

0
Do email signature updates give you a headache?

Do you feel like all of your time is spent managing email signatures? Too busy to visit every user’s desk to make updates? Want high-quality HTML signatures on all devices, including on mobiles and Macs? Then, let Exclaimer solve all your email signature problems today!

 

Author Comment

by:alipri
ID: 12136323
Hello - thanks for the advice - i'll try accessing from an external server

this is the modem:

http://www.zoom.com/techsupport/adsl/adsl_5551.shtml
0
 

Author Comment

by:alipri
ID: 12136887
Thank you that man! D'OH!
0
 
LVL 15

Expert Comment

by:scampgb
ID: 12136959
alipri,
Thanks for the "A".  I take it that you've got it sorted now?
Glad I could help :)
0

Featured Post

How does your email signature look on mobiles?

Do your employees use mobile devices to reply to emails? With mobile becoming increasingly important to the business world, it is in your best interest to make sure that your email signature looks great across all types of devices.

Join & Write a Comment

Resolve Outlook connectivity issues after moving mailbox to new Exchange 2016 server
Exchange server is not supported in any cloud-hosted platform (other than Azure with Azure Premium Storage).
In this video we show how to create a Distribution Group in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Recipients >>…
In this video we show how to create a Resource Mailbox in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: Navigate to the Recipients >> Resources tab.: "Recipients" is our default selection …

746 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now