[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now


OWA not working with Cisco PIX firewall

Posted on 2006-05-17
Medium Priority
Last Modified: 2008-03-06
Hello all,  thanks in advance for any suggestions.

We have a 2003 exchange server that the OWA is working fine when accessing our dmz IP address from internally.  Externally it quit working yesterday sometime after morning (had an fellow employee get in yesterday morning.)  only 1 permit statement that had nothing to do with the exchange server was added.  Can access if I point it to the ip address on the dmz from internally but not to the public ip address.  We are using a static translation for the public facing ip address to the dmz ip address.  I check xlate and it only had the 1 entry for the IP in question.  We have acl's on our dmz network but I don't think it should be using those.  we do have an acl on our outside interface to allow any to the host ip of the exchange server on port 443.  This is incrementing when we try to access it.  But we still only get a "page cannot be displayed"  i did a tracert from a dialup internet account and it hits about 15 hops til it dies at destination unreachable.thanks for any info you can provide :)
Question by:Truity Credit Union
  • 4
LVL 22

Expert Comment

ID: 16703126
did you try a clear xlate on the pix?


Author Comment

by:Truity Credit Union
ID: 16703162
I did a show xlate on the pix and the entries looked correct, but no I haven't.  nothing was changed from yesterday.  I'll give that a try

Author Comment

by:Truity Credit Union
ID: 16703420
that didn't help.
Industry Leaders: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!


Author Comment

by:Truity Credit Union
ID: 16703758
I've heard a dual gateway setup between interfaces on an exchange server can cause this to happen.  Any thoughts here?  We removed the internal gateway and added routes for each internal network to point back to the old internal gateway.  But this didn't help.

Author Comment

by:Truity Credit Union
ID: 16704170
I think the dual gateway setup fixed the problem, my laptop had some issues and we used another test box and those gateway fixes on the exchange server must have fixed this problem.

thanks for the help

Accepted Solution

GranMod earned 0 total points
ID: 16901617
PAQed with points refunded (250)

Community Support Moderator

Featured Post


Modern healthcare requires a modern cloud. View this brief video to understand how the Concerto Cloud for Healthcare can help your organization.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Are you looking for the options available for exporting EDB files to PST? You may be confused as they are different in different Exchange versions. Here, I will discuss some options available.
This article will help to fix the below errors for MS Exchange Server 2016 I. Certificate error "name on the security certificate is invalid or does not match the name of the site" II. Out of Office not working III. Make Internal URLs and Externa…
In this video we show how to create an Accepted Domain in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Mail Flow >> Ac…
Exchange organizations may use the Journaling Agent of the Transport Service to archive messages going through Exchange. However, if the Transport Service is integrated with some email content management application (such as an anti-spam), the admin…
Suggested Courses
Course of the Month19 days, 6 hours left to enroll

834 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question