Link to home
Start Free TrialLog in
Avatar of gbksphere
gbksphere

asked on

Exchange 2010 Activesync will not connect to phone

A couple of accounts will not connect to Exchange Activesync.  Any advice is much appreciated.

Fact:
Exchange 2010 SP1 installed on Windows 2008 R2.  Exchange Activesync is configured correctly and 99% of other accounts work both on Android and iPhones.  Configuration variables to connect phones are certain.  Activesync for the accounts in question are enabled.  We do not use POP.  We do have SSL in place.

Issue:  
A couple of accounts cannot connect to cell phones, both Android and iPhone.  Tried different phones and still same problem.  Getting server connection error and config variables are certain since we can connect to other accounts successfully.  SSL checkbox is checked.

Everything is pointing to the actual account settings.  Is there anything that I might have missed?  Pls advise.
Avatar of Jamie McKillop
Jamie McKillop
Flag of Canada image

Hello,

A couple of things to check:

Run get-casmailbox <user> |  select ActiveSyncAllowedDeviceID and make sure this is blank.

Run Get-ActiveSyncDeviceStatistics -mailbox <email address> and make sure there are less than ten devices returned. Exchange 2010 has a limit of ten device partnerships. You will need to clear out any old partnerships if you reach ten.

JJ
ASKER CERTIFIED SOLUTION
Avatar of Frosty555
Frosty555
Flag of Canada image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of gbksphere
gbksphere

ASKER

Thank you for all the responses.  I managed to resolve the issue after fiddling with the issue for 2 hrs.  Frosty55 comment pointed me in the direction which eventually assisted me to resolve the problem.  The accounts in question were not admin accounts.  The problem turned out to having something to do with permission.  The steps I took eventually was to remove all security groups associated with the accounts except for domain users.  Then ticked the inherited permissions from parent.  Force replication throughout the DCs.  Went back and unticked the inherited permission.  Force replication again.  Connect to cell phones successfully after second try after clearing app cache/data on the phone (android).  Went back to AD and re-added all security groups the accounts had.