Solved

How to setup OWA securely

Posted on 2007-11-27
9
234 Views
Last Modified: 2010-03-06
Hi
i have exchange 2003 and OWA works internally using http. i want to set it up to work externally using https. how do i do this??? i have a checkpoint firewall
0
Comment
Question by:mikeleahy
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 3
  • 2
9 Comments
 
LVL 104

Expert Comment

by:Sembee
ID: 20356976
Purchase an SSL certificate - you can get a 30 day trial certificate from RapidSSL.com - they also have instructions on their web site.
Once you have done that, enable forms based authentication on the HTTP protocol under Servers in ESM. Open port 443 on your firewall and ensure that you have a good password policy. Not really a great deal to it.

Simon.
0
 
LVL 31

Expert Comment

by:merowinger
ID: 20356999
Sembee is right....he's always right :)
AddOn: When u have a own certificate authority u can create your own certificate....but its not trusted on each user browsers,
as rapidssl certificates
0
 
LVL 104

Expert Comment

by:Sembee
ID: 20357038
I would not call an OWA deployment using a self or home generated SSL certificate secure.

Simon.
0
Salesforce Has Never Been Easier

Improve and reinforce salesforce training & adoption using WalkMe's digital adoption platform. Start saving on costly employee training by creating fast intuitive Walk-Thrus for Salesforce. Claim your Free Account Now

 
LVL 31

Expert Comment

by:merowinger
ID: 20357053
yes its not the best solution, but you dont have to pay something!
0
 

Author Comment

by:mikeleahy
ID: 20357054
is it secure using a 3rd party cert?? how do i enable forms based authentication on the http protocol . i have only 1 exchange server
0
 
LVL 104

Expert Comment

by:Sembee
ID: 20357062
When you can get SSL certificates for US$20 a year, the "savings" of a home grown certificate become noting, once you have trained your staff to accept the SSL certificate and worried about the fall out from the security warnings. A commercial SSL certificate does not have that problem. It also looks more professional.

I gave you the path to forms based authentication in ESM. You simply enable the option.

Simon.
0
 

Author Comment

by:mikeleahy
ID: 20993497
what cert would do for me i.e. rapidssl, rapidssl wildcard or rapidssl + platinum support.

i have enabled forms based support in ESM. does the certificate have to be installed on each laptop or whats the story ? if forms are enabled, and a cert is on the pc and port is opened then all they have to do is open https:\\mail.xxx.ie\exchange

am i correct

0
 
LVL 104

Accepted Solution

by:
Sembee earned 125 total points
ID: 20997186
A standard SSL certificate will be fine - so a standard RapidSSL certificate will be fine. If you purchase a commercial trusted SSL certificate then you don't have to install the certificate on to every device - that is part off the point.

Simon.
0
 

Author Comment

by:mikeleahy
ID: 21548248
worked great. thanks
0

Featured Post

Free Tool: Subnet Calculator

The subnet calculator helps you design networks by taking an IP address and network mask and returning information such as network, broadcast address, and host range.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A list of top three free exchange EDB viewers that helps the user to extract a mailbox from an unmounted .edb file and get a clear preview of all emails & other items with just a single click on mailboxes.
Unified and professional email signatures help maintain a consistent company brand image to the outside world. This article shows how to create an email signature in Exchange Server 2010 using a transport rule and how to overcome native limitations …
This video discusses moving either the default database or any database to a new volume.
This video demonstrates how to sync Microsoft Exchange Public Folders with smartphones using CodeTwo Exchange Sync and Exchange ActiveSync. To learn more about CodeTwo Exchange Sync and download the free trial, go to: http://www.codetwo.com/excha…

752 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question