Solved

Can't setup "OWA" access on a droid phone.

Posted on 2013-02-04
5
484 Views
Last Modified: 2013-03-06
Hi Experts!

We have a really strange problem with a newly installed server (SBS 2011) and OWA access via droid smartphones.

Here's the deal.  I know this isn't a firewall issue, etc., because I can use OWA from anywhere using a web browser and log in as any user and it works fine.

When I try and setup the user accounts from a droid smartphone (I've tried SEVERAL different brands/models), I can't get the user accounts to setup.  Sometimes they'll setup, but not sync, other times they won't setup at all.  However, I can setup the admin account on those droid devices and they work just fine.

So, why will the admin account work fine, but the user accounts won't?

Thoughts?

Thanks!
0
Comment
Question by:tganus
  • 3
5 Comments
 
LVL 1

Expert Comment

by:xterminator
Comment Utility
I have seen this happen with user logon rights set.
The 'Logon To' feature of these users were set to a single computername inside the network. OWA wasn't working, set them to 'allow to logon to any computer' and OWA started working.
As the Admin account is working, it doesn't sound like an certificate issue.
0
 

Author Comment

by:tganus
Comment Utility
I checked this setting on the user in question and he already showed "Log into all computers" under his accounts Properties.
I also tried disabling the requirement for a device password in Exchange Activesync setting but this had no effect.

It's frustrating, my iphone accepts his info, server address, everything, I get the cert error, and then get the checkmarks showing all the information was accepted and verified but then I get a "Cannot get mail - The Connection to the server failed" error when refreshing the inbox.
0
 
LVL 45

Expert Comment

by:Craig Beck
Comment Utility
Have you actually allowed those user accounts the right to use ActiveSync or OWA?
0
 

Accepted Solution

by:
tganus earned 0 total points
Comment Utility
After some searching I found it was a silly checkbox on each user's security tab.

First you open AD USers and Computers, then click View and check the "Advanced Features" option. This let's you view other tabs for each objects properties, including a Security Tab for users.

Under this security tab you click the "Advanced" button to open a new dialog, at the bottom of which is a "Include Inheritable Security Settings." I checked this and suddenly all the group memberships and access rights were applied properly, letting Active Sync work. My test account didn't have any problems because as a new user this was already checked properly.
0
 

Author Closing Comment

by:tganus
Comment Utility
Researched the problem more fully and found it wasn't an exchange error at all, but an Active Directory permissions issue.
0

Featured Post

Highfive Gives IT Their Time Back

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

Join & Write a Comment

This article explains in simple steps how to renew expiring Exchange Server Internal Transport Certificate.
Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
The video tutorial explains the basics of the Exchange server Database Availability groups. The components of this video include: 1. Automatic Failover 2. Failover Clustering 3. Active Manager
how to add IIS SMTP to handle application/Scanner relays into office 365.

771 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now