OWA not working external

Carpe--Diem
Carpe--Diem used Ask the Experts™
on
I recently move my data center (ohh the joys)

my exchange 2003 OWA works inside the network but not publicly. The server has a new local ip address and a new public IP for port 80 and 443. Have have been told public ip address is working fine by the networking team. The server also has a SSL cert to a DNS which I have changed to point to the new public IP.

So i am stuck. Network team say its and exchange issue. However I can log on to OWA internally by just typing the server address into IE, i do get a certificate error.

is there any setting son the server that will stop it working external. Its just a bog standard install.
Comment
Watch Question

Do more with

Expert Office
EXPERT OFFICE® is a registered trademark of EXPERTS EXCHANGE®
James HIT Director

Commented:
Did you update the OWA public IP address with your web host.
You would have to update the 'A' record.

If you ping your OWA address, what IP does it return?
can you try using new IP Address/exchange from external.. seems your External DNS records may not be updated with new IP Address.

Author

Commented:
its not the A record because that works, I have also tried the public IP address and I have been told by the networking team that they can see the requests being passed to the server.
Angular Fundamentals

Learn the fundamentals of Angular 2, a JavaScript framework for developing dynamic single page applications.

Did you change the IP in the IIS..
James HIT Director

Commented:
Just try pinging your Public URL: mail.domain.com and see if the correct IP is returned.

Author

Commented:
nope, were abouts.

IIS default website is set to All Unassigned.. and it only has one network card (at the moement)

Author

Commented:
DNS is fine, but I am also testing with the public IP to make sure
Benjamin MOREAUProject Manager

Commented:
...have you checked your gateway address  ? Maybe you have to change your gateway adress on your network card ?

Author

Commented:
gateway and dns server seem fine, i can get on the internet and SMTP traffic is getting through.. I am testing the access extneral not internaly using public adddress, as it may just loop back from the same firewall.
Did you restart the server after changing IP Address....

Also do ipconfig /flushdns on the server..
Benjamin MOREAUProject Manager

Commented:
Connect on this website et check that the public ip address displayed is the same than the public IP you try to join.

Maybe there is a problem with NAT.

Author

Commented:
Server has been rebooted a few times. Done a flush dns. Might just actually restart thevserver tomorrow anyway.

Author

Commented:
Not sure what you mean morau37
Benjamin MOREAUProject Manager
Commented:
You say that your network team confirm that TCP paquets are correctly send to your server but that you can't connect to OWA outside of your network.

I think that there is a problem with NAT one-to-one or with your gateway... The paquets are correctly joining your server (your network team says that) but nothing go outside of your network. Maybe your server use different gateway (or route) for LAN -> WAN than the route used for WAN -> LAN (maybe you have 2 gateway on your network)

You can also check if you have a firewall on your server. If yes, try to disable it.


There is a lot of "maybe"...but check your routing :)

Author

Commented:
I think your right, the network team said packets were going to the server but my server was not responding. Perhaps it is but just not the same way it came in.

They did setup new subnets with vlans.

If i give them a tracert to the internet from the server and ask them to compare it to the incoming path then it should be the same.

My internet now comes via another site in another country via a private network with about 20 sites on it. Last week i had my own simple network

Author

Commented:
Okay we have moved forward slighty.

The network team have done something on the firewall and now OWA works external. But when you try and sync from say an iPhone or my Andriod handset you just get a message server error please contact administrator.

this happens on every handset.
Benjamin MOREAUProject Manager

Commented:
Ok,

Now, your Firewall is OK. Owa & ActiveSync use the same ports...so, if OWA works, AS will work.

Maybe you have pb on your Exchange server.

Firts, test your external conf with this website : https://www.testexchangeconnectivity.com/

Then, test activesync connectivity on your server : http://technet.microsoft.com/en-us/library/bb123540.aspx

Author

Commented:
I am now getting username/passsword incorrect.... I know its correct.

but when i run the first link it says.

 ExRCA is analyzing intermediate certificates that were sent down by the remote server.
  One or more intermediate certificates were missing or invalid.
   Additional Details
  There's a missing intermediate certificate in the certificate chain. Subject = CN=RapidSSL CA, O="GeoTrust, Inc.", C=US. For more information, see Knowledge Base Article 927465.

Author

Commented:
OWA works fine. Just not iPhone or Andriod.

however when i go to https:\\ihatethisserver\oma i get this message -

A System error has occurred while processing your request. Please try again. If the problem persists, contact your administrator.
Solved. There was proably a networking issue but there was also another issue with OMA. I followed KB 817379 and that solved it.

http://support.microsoft.com/kb/817379

Do more with

Expert Office
Submit tech questions to Ask the Experts™ at any time to receive solutions, advice, and new ideas from leading industry professionals.

Start 7-Day Free Trial