Still celebrating National IT Professionals Day with 3 months of free Premium Membership. Use Code ITDAY17

x
?
Solved

Accessing OWA inside the firewall

Posted on 2009-04-13
9
Medium Priority
?
292 Views
Last Modified: 2012-05-06
My company has a website with a  link to our Exchange server OWA https://mail.company.com/exchange.  This works fine if you are outside the firewall, but you cannot access it if you are inside the firewall. You must use the private FQDN servername/exchange. It would be nice to set DNS to allow this. I read the posts about how to do this, but I'm still confuded.
0
Comment
Question by:llhuff
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 5
  • 4
9 Comments
 
LVL 65

Expert Comment

by:Mestha
ID: 24133721
Split DNS.
You need a zone on your internal network for example.com, with the zone populated with the public IP address of your public web site and the internal IP address of your Exchange server.

http://www.amset.info/netadmin/split-dns.asp

Simon.
0
 

Author Comment

by:llhuff
ID: 24138881
I set up a new DNS zone "example.com" with host As for "mailmx" using both pubilic and private IPs. Now I am unable to open our public website "example.com" inside the firewall and still cannot access "mailmx.example.com"
0
 
LVL 65

Expert Comment

by:Mestha
ID: 24140367
As my instructions stated, you need to replicate what you have in your public DNS. That means if you access the external web site with www.example.com then you need to add an entry for www in that zone and enter your public IP address. If you are accessing the public web site with example.com then you need to create a new A record with a blank host and put in your external IP address.

Does the host name that you entered actually resolve? If you ping mail.example.com does it respond with the internal IP address of the Exchange server?

Simon.
0
Prepare for your VMware VCP6-DCV exam.

Josh Coen and Jason Langer have prepared the latest edition of VCP study guide. Both authors have been working in the IT field for more than a decade, and both hold VMware certifications. This 163-page guide covers all 10 of the exam blueprint sections.

 

Author Comment

by:llhuff
ID: 24141714
Yes, the "www" host does take me to the public website now, but the "mailmx" host still times out.
Ping of "mailmx.example.com" recieve reply from public IP
New DNS forward zone
example.com
          www = public IP xxx.xxx.xxx.xxx
           mailmx = pvt IP xxx.xxx.xxx.xxx
0
 
LVL 65

Expert Comment

by:Mestha
ID: 24142629
Have you attempted to use hosts files or anything that could override the DNS entry?
Do you have more than one DNS server? Is the zone on all of them?

Simon.
0
 

Author Comment

by:llhuff
ID: 24148167
I cleaned out the hosts file just "127.0.0.1" now but it made no difference.
0
 
LVL 65

Expert Comment

by:Mestha
ID: 24150626
The host still doesn't resolve correctly?

Simon.
0
 

Author Comment

by:llhuff
ID: 24151012
I tried several hosts file entires, but no luck.
0
 
LVL 65

Accepted Solution

by:
Mestha earned 1500 total points
ID: 24156649
You shouldn't have any hosts files entries.
You aren't using a proxy server in Internet Explorer by any chance? That could cause a problem like this.

Just to be clear, you have created an entry in the dns zone for the host name, type A, so that you have an entry for host.example.com, which is pointing to the internal IP address of the server? This shouldn't be that difficult to get working, unless there is something odd about the DNS configuration of your network.

Simon.
0

Featured Post

Get free NFR key for Veeam Availability Suite 9.5

Veeam is happy to provide a free NFR license (1 year, 2 sockets) to all certified IT Pros. The license allows for the non-production use of Veeam Availability Suite v9.5 in your home lab, without any feature limitations. It works for both VMware and Hyper-V environments

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A couple of months ago we ran into an issue that necessitated re-creating our Edge Subscriptions. However, when we attempted to execute the command: New-EdgeSubscription -filename C:\NewEdgeSub_01.xml we received an error indicating that the LDAP se…
Want to know how to use Exchange Server Eseutil command? Go through this article as it gives you the know-how.
The basic steps you have just learned will be implemented in this video. The basic steps are shown to configure an Exchange DAG in a live working Exchange Server Environment and manage the same (Exchange Server 2010 Software is used in a Windows Ser…
To add imagery to an HTML email signature, you have two options available to you. You can either add a logo/image by embedding it directly into the signature or hosting it externally and linking to it. The vast majority of email clients display l…

722 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question