cdshreve
asked on
Exchange across 2 AD sites - Issuesgetting set up.
I am putting in a new exchange environment in a new AD site we just set up. We are treating it ad a DR site but it will be active as far as exchange is concerned - so that I can put DAGs across the sites. I am aiming at getting it seamless for access to both sites from both sites. I would like to keep the same external URL for both sites can I do that?
Site A
I have currently 2 CAS servers in an array (not using it because WIN NLB would not work with the vmware) and 4 hub/mbx servers.
externalurl - webmail.company.com/owa (/ecp /oab ...etc)
internalurl = default from install ie Server.company.com/owa
Site B
I have 2 CAS servers installed and 4 hub/mbx servers.
externalurl - webmail.company.com/owa (/ecp /oab ...etc)
internalurl = default from install ie Server.company.com/owa
From Site B CAS server:
I can get to OWA on the cas servers on site B for all users on site B if I use the internal url.
I can not get to OWA on the cas servers on site B for all users on site A if I use the internal url.
I can get to users on Site A using the external url, but not Site B users
From Site A Client
I can get to the internalurl for site B OWA and it redirects me (manually) back to the site A Cas servers.
I can access the mailbox of a Site B homed user from my Outlook 2010 client.
Please help if you can!
Thanks
Site A
I have currently 2 CAS servers in an array (not using it because WIN NLB would not work with the vmware) and 4 hub/mbx servers.
externalurl - webmail.company.com/owa (/ecp /oab ...etc)
internalurl = default from install ie Server.company.com/owa
Site B
I have 2 CAS servers installed and 4 hub/mbx servers.
externalurl - webmail.company.com/owa (/ecp /oab ...etc)
internalurl = default from install ie Server.company.com/owa
From Site B CAS server:
I can get to OWA on the cas servers on site B for all users on site B if I use the internal url.
I can not get to OWA on the cas servers on site B for all users on site A if I use the internal url.
I can get to users on Site A using the external url, but not Site B users
From Site A Client
I can get to the internalurl for site B OWA and it redirects me (manually) back to the site A Cas servers.
I can access the mailbox of a Site B homed user from my Outlook 2010 client.
Please help if you can!
Thanks
ASKER
So I'll have to get new certificates for what ever I choose as my second site name, ie DRWebmail.company.com or Webmail2.company.com and the silent redirection will make the OWA seamless. I was trying to avoid having 2 different external url's. I guess I could rout everything from the outside to the primary site and have the CAS in that site do the redirection.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
ok so /owa /ecp /ews and/ active sync are all empty now in the external URL field and I can get to them directly (internalurl) but not by using the external for the primary site. It tells me the mailbox is unavailable. ugh.
Thank you for helping out, it is VERY much appreciated...
Thank you for helping out, it is VERY much appreciated...
leaving for the day, i can catch this up tomorrow again. I know it is bit confusing, might need to read some old docs which i created long back...
ASKER
I initially started getting an error from outlook clients (once I installed the new CAS servers in the new site) that when they tried to create a new message - and they may have been connected to the new CAS servers - they would get a certificate error. I applied the changeg below and here is the result:
AWXXX = original site
KWXXX = new site
http://blogs.technet.com/b/danielkenyon-smith/archive/2010/05/13/the-name-on-the-certificate-is-invalid-or-does-not-match-the-name-of-the-site-part-2.aspx
__________________________ __________ __________ __________ __________ __________ __________
PS C:\> Get-WebServicesVirtualDire ctory
Name Server InternalUrl
---- ------ -----------
EWS (Default Web Site) AWCAS01 https://cas1.Company.com/EWS/Exchange...
EWS (Default Web Site) AWCAS02 https://cas1.Company.com/EWS/Exchange...
EWS (Default Web Site) KWCAS01 https://webmail.Company.com/EWS/Excha...
EWS (Default Web Site) KWCAS02 https://webmail.Company.com/EWS/Excha...
PS C:\> Get-OabVirtualDirectory
Server Name Internal Url External Url
------ ---- ------------ ------------
AWCAS02 OAB (Default Web Site) https://webmail.Company.com... https://webmail.Company.com...
AWCAS01 OAB (Default Web Site) https://webmail.Company.com... https://webmail.Company.com...
KWCAS01 OAB (Default Web Site) https://kwcas01.Company.com...
KWCAS02 OAB (Default Web Site) https://kwcas02.Company.com...
PS C:\> Get-ActiveSyncVirtualDirec tory
Name Server InternalUrl
---- ------ -----------
Microsoft-Server-ActiveSyn c (Default... AWCAS01 https://webmail.Company.com/Microsoft...
Microsoft-Server-ActiveSyn c (Default... AWCAS02 https://webmail.Company.com/Microsoft...
Microsoft-Server-ActiveSyn c (Default... KWCAS01 https://webmail.Company.com/Microsoft...
Microsoft-Server-ActiveSyn c (Default... KWCAS02 https://webmail.Company.com/Microsoft...
PS C:\> Get-ClientAccessServer | Select-Object autodiscoverServiceInterna lURI
AutoDiscoverServiceInterna lUri
-------------------------- ----
https://cas1.Company.com/Autodiscover/Autodiscover.xml
https://cas1.Company.com/Autodiscover/Autodiscover.xml
https://webmail.Company.com/autodiscover/autodiscover.xml
https://webmail.Company.com/autodiscover/autodiscover.xml
PS C:\>
__________________________ __________ __________ __________ __________ ________
Thanks for any help you can give....
AWXXX = original site
KWXXX = new site
http://blogs.technet.com/b/danielkenyon-smith/archive/2010/05/13/the-name-on-the-certificate-is-invalid-or-does-not-match-the-name-of-the-site-part-2.aspx
__________________________
PS C:\> Get-WebServicesVirtualDire
Name Server InternalUrl
---- ------ -----------
EWS (Default Web Site) AWCAS01 https://cas1.Company.com/EWS/Exchange...
EWS (Default Web Site) AWCAS02 https://cas1.Company.com/EWS/Exchange...
EWS (Default Web Site) KWCAS01 https://webmail.Company.com/EWS/Excha...
EWS (Default Web Site) KWCAS02 https://webmail.Company.com/EWS/Excha...
PS C:\> Get-OabVirtualDirectory
Server Name Internal Url External Url
------ ---- ------------ ------------
AWCAS02 OAB (Default Web Site) https://webmail.Company.com... https://webmail.Company.com...
AWCAS01 OAB (Default Web Site) https://webmail.Company.com... https://webmail.Company.com...
KWCAS01 OAB (Default Web Site) https://kwcas01.Company.com...
KWCAS02 OAB (Default Web Site) https://kwcas02.Company.com...
PS C:\> Get-ActiveSyncVirtualDirec
Name Server InternalUrl
---- ------ -----------
Microsoft-Server-ActiveSyn
Microsoft-Server-ActiveSyn
Microsoft-Server-ActiveSyn
Microsoft-Server-ActiveSyn
PS C:\> Get-ClientAccessServer | Select-Object autodiscoverServiceInterna
AutoDiscoverServiceInterna
--------------------------
https://cas1.Company.com/Autodiscover/Autodiscover.xml
https://cas1.Company.com/Autodiscover/Autodiscover.xml
https://webmail.Company.com/autodiscover/autodiscover.xml
https://webmail.Company.com/autodiscover/autodiscover.xml
PS C:\>
__________________________
Thanks for any help you can give....
ASKER
Ended up adding the new URLs to our SAN cert.
http://technet.microsoft.com/en-us/library/bb310763%28v=exchg.141%29.aspx
Focus on redirection section.