Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

Restricting Blackberry Access to Exchange 2003

Posted on 2011-09-16
18
Medium Priority
?
223 Views
Last Modified: 2012-05-12
I have some staff who use blackberries to access company e-mail.   We do not have a BES server.  Staff simply point their e-mail configuration on the BB to the https website that is our OWA "portal".   I thought if I went into a person's Exchange account, and disabled the OWA  Protocol under Exchange features it would stop the BB from syncing e-mail.   It does stop the person from connecting via the Internet browser to OWA, but my test person is still getting her BB synced.  In frustration, I also disabled POP3 and IMAP4 protocols without success.    I have been able to control Apple devices and Androids via the Mobile Services setting.   That was easy.   Anyone know how to shutdown a BB sync?
0
Comment
Question by:jhunter9999
  • 10
  • 7
18 Comments
 
LVL 4

Expert Comment

by:ctc1900
ID: 36550093
Could it be that user is using the Blackberry Desktop Redirector from his/her local computer?

http://docs.blackberry.com/en/smartphone_users/deliverables/12617/About_deskop_redirector_28449_11.jsp
0
 

Author Comment

by:jhunter9999
ID: 36550130
Negative
0
 
LVL 37

Expert Comment

by:Jamie McKillop
ID: 36551219
Hello,

Basically, there are only four ways the mail could get on the device:

1. OWA directly or through a BIS account that connects to OWA. If you have disabled OWA for this user, that shouldn't be a possibility
2. Email forwarding/redirection. This could be done by using the Desktop Redirector or by setting up Outlook rules.
3. ActiveSync. BlackBerries don't have ActiveSync built-in but there are 3rd part apps that add ActiveSync to BB devices.
4. Through a POP/IMAP account setup on the BB.

If you have disabled OWA, ActiveSync, POP, and IMAP on the account, the user must be forwarding the emails.

JJ
0
Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

 

Author Comment

by:jhunter9999
ID: 36551625
Thanks for the feedback.

Since all else has failed, I've again visted her desktop.   She has no Outlook rules at all, and she does not use her Blackberry Manager as it crashes her desktop.   She does not appear to have a program called Desktop Redirector.   Normally found in start/programs?  Also she shuts her computer off before leaving work, but still get e-mails on her BB at night and weekends.  

I'm going to find another victim to test with.....
0
 

Author Comment

by:jhunter9999
ID: 36551644
Any possiblity it takes more than an hour for the setting change in her exchange account to propogate and become active?   I've tested her ability to get to OWA via http/Internet so I would assume the AD and Exchange have updated the setting.  
0
 
LVL 37

Expert Comment

by:Jamie McKillop
ID: 36551658
If she is using BIS, it is possible that the connection remains open even though you disabled the protocol. Are you able to ask her how she setup her BB to receive company email?

JJ
0
 

Author Comment

by:jhunter9999
ID: 36551675
Yes, I walked through the settings on the BB with her.  Standard stuff to our OWA link, login, password, etc.   I did have her do a power cycle of the BB at one point thinking along the lines of your open connection idea. I used to have a BB myself getting corporate e-mail (before Android) so I'm pretty familiar with the setup.
0
 
LVL 37

Expert Comment

by:Jamie McKillop
ID: 36551689
Ask her if setup BIS with her telcom provider. You could try do an IIS reset on your Exchange server to kill any open connections.

JJ
0
 
LVL 37

Expert Comment

by:Jamie McKillop
ID: 36551699
Oh, one other thing to check. Check her mailbox in ADUC to make sure it isn't set to forward copies to another mailbox.

JJ
0
 

Author Comment

by:jhunter9999
ID: 36551736
She has left for the day, so I'll have to followup on Monday.   I could restart IIS on Monday morning.   Probably wouldn't hurt to bouce the service now, but she is gone, it's almost go-home time for me, AND ,my head hurts from working 4 hours on something that should take 5 minutes!!     I did check the ADUC for copy forwarding = Nope.

More than grateful, will follow-up on Monday.
0
 

Author Comment

by:jhunter9999
ID: 36561753
Testing continues...
Restrarted IIS - Still getting e-mails on her BB.  Yes, did setup with Verizon Wireless website to originally setup the BB account.
Hooked up with a second BB person this morning:  Same thing, disabled everything, checked back an hour later and she was still getting BB sync.
0
 
LVL 37

Expert Comment

by:Jamie McKillop
ID: 36561797
Just to clarify, these users cannot access OWA currently?

JJ
0
 

Author Comment

by:jhunter9999
ID: 36562102
Correct, the IE Webpage is blocked for these users that I disable in Exchange. - I just went to her office and tried/confirmed it again.
0
 
LVL 37

Expert Comment

by:Jamie McKillop
ID: 36562137
How did you block it?

JJ
0
 

Author Comment

by:jhunter9999
ID: 36562157
Just by disabling OWA in Exchange Features / Protocols / Outlook Web Access within her specific account.   Doing so blocks the user from access OWA from a webpage, but NOT from their BB.  
0
 
LVL 37

Expert Comment

by:Jamie McKillop
ID: 36562240
OK, I'm at a loss to explain this. If OWA is disabled, they shouldn't be able to use BIS. The only other way would be the desktop redirector, which you say they aren't using. What happens if you power down the user's PC? Does email still sync?

JJ
0
 

Accepted Solution

by:
jhunter9999 earned 0 total points
ID: 36562595
Well, thanks for your time.   Yes, when her desktop is off, she still gets synced.  
0
 

Author Closing Comment

by:jhunter9999
ID: 36715395
Not resolved, but I'm finding other tech sites indicating the same problem.   Nobody seems to have a great answer.
0

Featured Post

Veeam and MySQL: How to Perform Backup & Recovery

MySQL and the MariaDB variant are among the most used databases in Linux environments, and many critical applications support their data on them. Watch this recorded webinar to find out how Veeam Backup & Replication allows you to get consistent backups of MySQL databases.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to effectively resolve the number one email related issue received by helpdesks.
If you have come across a situation where you need to find some EDB mailbox recovery techniques, then here you will find the same. In this article, we will take you through three techniques using which you will be able to perform EDB recovery. You …
To show how to create a transport rule in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Mail Flow >> Rules tab.:  To cr…
The video tutorial explains the basics of the Exchange server Database Availability groups. The components of this video include: 1. Automatic Failover 2. Failover Clustering 3. Active Manager
Suggested Courses

916 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question