[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now

x
?
Solved

RPC OVER HTTP WORKS INTERNALLY BUT NOT EXTERNALLY

Posted on 2006-06-27
15
Medium Priority
?
476 Views
Last Modified: 2010-03-06
I setup RPC over HTTP on my Exchange 2003 box that runs windows 2003 server.  RPC over HTTP works internally but not externally.  Can anyone give me some clue??  I do have a firewall and its a sonicwall. Do I need to add specific ports.  I added ports 6001, 6002, and 6004 and forwarded them to my exchange server.
0
Comment
Question by:Matt Pessolano
  • 6
  • 5
  • 4
15 Comments
 
LVL 31

Expert Comment

by:LeeDerbyshire
ID: 16992909
Depending on whether your using HTTP or HTTPS, you will need to forward port 80 or 443.
0
 
LVL 6

Expert Comment

by:Michael S
ID: 16992935
Those ports don't need to be forwarded on your firewall - they are ports that Exchange uses internally.

You need to have SSL forwarded with a certificate installed in IIS, and configure RPC over HTTPS to point to your external DNS.

Follow this link for more info:

http://www.amset.info/exchange/rpc-http-server.asp

Jay
0
 
LVL 1

Author Comment

by:Matt Pessolano
ID: 16993078
i deleted those other post and forwarded port 80 to my exchange server and I get the login prompt but then it never connects
0
Visualize your virtual and backup environments

Create well-organized and polished visualizations of your virtual and backup environments when planning VMware vSphere, Microsoft Hyper-V or Veeam deployments. It helps you to gain better visibility and valuable business insights.

 
LVL 31

Expert Comment

by:LeeDerbyshire
ID: 16993183
Have a look under the Tutorials section of this link:
http://www.msexchange.org/pages/search.asp?query=rpc
There are lots of RPC/HTTPS articles there.
0
 
LVL 31

Expert Comment

by:LeeDerbyshire
ID: 16993346
Come to think of it, do you have a computer (say a laptop) that can be connected to the server either directly via the LAN, and also from the Internet?  Since you said that it works internally, it would be good if you could use a computer that is known to work internally, and then try to get it to connect externally.  That way, you can be sure that all your settings are right, and that you need to look at the firewall.
0
 
LVL 1

Author Comment

by:Matt Pessolano
ID: 16993419
yea I do that is what I am using.  A laptop.  
0
 
LVL 31

Expert Comment

by:LeeDerbyshire
ID: 16993507
Is there any way you can get the laptop connected externally, get the IP address, and then temporarily allow all traffic from that IP to the server - just to see if there is a firewall problem?  As far as I know, this doesn't require any other ports beside the HTTP/S ones, but it's possible that a sophisticated firewall might need to be told more about the kind of traffic going through it.
0
 
LVL 6

Expert Comment

by:Michael S
ID: 16993547
You have to have an SSL certificate in order for it to work externally.  It is a misnomer to call it RPC over HTTP, when it is in reality RPC over HTTPS.  If you try to connect just over HTTP, you'll be banging your head against a wall for days.
0
 
LVL 1

Author Comment

by:Matt Pessolano
ID: 16993566
no right now im just doing rpc/http  im still not getting anywhere
0
 
LVL 1

Author Comment

by:Matt Pessolano
ID: 16993572
i tried the firewall portion as well. Im allowed access.  Does the global catalog server have to be windows 2003 in order for this to work?
0
 
LVL 6

Expert Comment

by:Michael S
ID: 16993646
On the computer that you say works internall, go to Start/Run and type in outlook.exe /rpcdiag.

Under the Conn heading if it is working properly it will say HTTPS.  If it is not working properly it will say TCP/IP.
0
 
LVL 1

Author Comment

by:Matt Pessolano
ID: 16994158
when i type that in Outlook just pops up.  I dont get anything else.
0
 
LVL 31

Expert Comment

by:LeeDerbyshire
ID: 16994361
Make sure that you don't already have OL running.  The /rpcdiag switch will open OL as normal, but there should be another window appearing on the screen somewhere.
0
 
LVL 1

Author Comment

by:Matt Pessolano
ID: 16994381
it says tcp/ip
0
 
LVL 6

Accepted Solution

by:
Michael S earned 2000 total points
ID: 16994447
I would start over and follow this link:

http://www.amset.info/exchange/rpc-http.asp

You will need an SSL certificate.  You can either use your own CA or download a temporary one from www.rapidssl.com

Simon's guide works very well, along with the one at http://www.petri.co.il/configure_rpc_over_https_on_a_single_server.htm

Good luck!
0

Featured Post

Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Eseutil Hard Recovery is part of exchange tool and ensures Exchange mailbox data recovery when mailbox gets corrupt due to some problem on Exchange server.
Exchange administrators are always vigilant about Exchange crashes and disasters that are possible any time. It is quite essential to identify the symptoms of a possible Exchange issue and be prepared with a proper recovery plan. There are multiple…
In this video we show how to create an email address policy in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.:  First we need to log into the Exchange Admin Center. Navigate to the Mail Flow…
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…
Suggested Courses
Course of the Month19 days, 3 hours left to enroll

834 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question