Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 580
  • Last Modified:

Exchange 2010 autodiscover issue

i have all the outlook clients 2007 and 2010 getting the error below

"Your Out of Office settings cannot be displayed, because the server is currently unavailable.  Try again later"

Ive read this is a problem with the autodisover record and I can see that because I modified the internal OWA address to be the same as the external address.

https://mail.bluestone.com/exchange

the reason i made the the OWA addresses the same is because the internal name is emailsvr.bluestone.local  so the outlook clients kept coming up with certificate errors that the certificate didnt have that name on it.

Ive read I can modify the internal autodiscover record to point to autodiscover.bluestone.com but when i try to do this it lets me add the record but it comes up as autodiscover.bluestone.com.bluestone.local

if someone can tell how to fix this issue that would be great.  thanks
0
justinoleary911
Asked:
justinoleary911
  • 4
  • 3
  • 2
  • +1
1 Solution
 
Stelian StanNetwork AdministratorCommented:
0
 
justinoleary911Author Commented:
ok this is for exchange 2007, i have 2010 and this is to test autodiscover.  Im asking how to input an autodiscover record for autodiscover.bluestone.com internally.
0
 
Larry LarmeuManaging DirectorCommented:
You have to create a DNS zone for bluestone.com on your internal DNS server and then add an A record for autodiscover.
0
Concerto's Cloud Advisory Services

Want to avoid the missteps to gaining all the benefits of the cloud? Learn more about the different assessment options from our Cloud Advisory team.

 
justinoleary911Author Commented:
ok do i create another primary zone a secondary zone, can you be more specific?
0
 
Stelian StanNetwork AdministratorCommented:
Run:
Get-ClientAccessServer |fl identity,autodiscoverserviceinternaluri

and

Set-ClientAccessServer -Identity "your CAS" -AutoDiscoverServiceInternalUri https://emailsvr.bluestone.local/Autodiscover/Autodiscover.xml
0
 
Larry LarmeuManaging DirectorCommented:
Needs to be a primary zone.  Secondary zone only holds a copy of data from another DNS server.

You could also do what clonyxlro and it would work but it would not allow you to use the autodiscover.bluestone.com URL, so it depends on what exactly you are trying to achieve.
0
 
Simon Butler (Sembee)ConsultantCommented:
Do you have autodiscover.bluestone.com on your SSL certificate? If not, then don't use that URL internally.
If you are using a single name SSL certificate then you need to have a split DNS system, then configure Exchange to use that name everywhere.

This guide will show you how to configure Exchange in that scenario.
http://exchange.sembee.info/2007/install/singlenamessl.asp
It is for Exchange 2007, so misses EWS, which will also need to be modified.

Simon.
0
 
justinoleary911Author Commented:
i do have autodiscover.bluestone.com on the san certificate Im using. this should fix the outlook issue, correct?
0
 
Larry LarmeuManaging DirectorCommented:
If you have that on your SAN certificate you should create the DNS zone, A record for autodiscover, and then follow the guide Sembee proveded to set up your SRV records.  After that you should be good to go.  Once you are done with those steps you can hold control, right click on the Outlook icon in the tray, and click Test AutoConfiguration and it will tell you what URLs are being provided for AutoConfig.
0
 
Simon Butler (Sembee)ConsultantCommented:
If you have autodiscover on the SSL certificate, then you don't need SRV records.
Either create an A record or SRV record, but NOT both.

Simon.
0
 
justinoleary911Author Commented:
thank you
0

Featured Post

Fill in the form and get your FREE NFR key NOW!

Veeam is happy to provide a FREE NFR server license to certified engineers, trainers, and bloggers.  It allows for the non‑production use of Veeam Agent for Microsoft Windows. This license is valid for five workstations and two servers.

  • 4
  • 3
  • 2
  • +1
Tackle projects and never again get stuck behind a technical roadblock.
Join Now