?
Solved

Exchange 2010 issues after migration from SBS 2003

Posted on 2014-01-31
6
Medium Priority
?
283 Views
Last Modified: 2014-11-12
Hi
Have installed Exchange 2010 on Server 2008R2 and migrated users mailboxes from SBS 2003 which is still co-existing on the network.

I have 2 issues:

1. Although owa works from the internet, iphones won't connect and application log shows Event id 1033 MSExchange Activesync "The setting ExternalProxy in the web.config file was not valid. The previous value was null and has been changed to ."

2. When opening Outlook on the Client machines, a security alert is seen. "The name on the security certificate is invalid or does not match the name of the site". The certificate is for xyz.externaldomain.com however the exchange server is ex2010.intdomain.local

Any help appreciated

Thanks

Julian
0
Comment
Question by:J-B
  • 2
  • 2
  • 2
6 Comments
 
LVL 63

Expert Comment

by:Simon Butler (Sembee)
ID: 39825414
Do you have a trusted SSL certificate on the server?
If so, have you changed all URLs within Exchange to match the name on the trusted SSL certificate?

http://semb.ee/hostnames

On the ActiveSync error, that is unusual. Has any attempt been made to customise the ActiveSync configuration in any way?

Have you installed Exchange 2010 SP3 plus the latest rollup?

Simon.
0
 

Author Comment

by:J-B
ID: 39826341
Yes I have a trusted cert on the server from RapidSSL for new.domain.co.uk

I have made all the URL's internally on exchange match the name of the trusted SSL cert

Exchange 2010 SP3 is installed but no rollup packages.


This is the only error message I am getting when running the Microsoft Remote Connectivity Analyser using the Activesync option

"Analyzing the certificate chains for compatibility problems with Windows Phone devices.
       Potential compatibility problems were identified with some versions of Windows Phone.
        Tell me more about this issue and how to resolve it
       
      Additional Details
       
The certificate is only trusted on Windows Mobile 6.0 and later versions. Devices running Windows Mobile 5.0 and 5.0 with the Messaging and Security Feature Pack won't be able to sync. Root = CN=GeoTrust Global CA, O=GeoTrust Inc., C=US.
Elapsed Time: 4 ms. "

OWA access is working fine, and the iPhone will now accept and validate the settings when the account is entered however with a series of ticks, however when I check for mail i am getting the error "The connection to the server failed".

The only port I have open is 443

Julian
0
 

Author Comment

by:J-B
ID: 39826464
Right, I have it working :) But only with a newly created account.

So I guess its a permission / Active directory issue on the accounts that were moved over from SBS 2003
0
Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

 
LVL 63

Expert Comment

by:Simon Butler (Sembee)
ID: 39826495
Check that permission inheritance is enabled on the accounts that were moved from SBS 2003.

Simon.
0
 
LVL 74

Accepted Solution

by:
Jeffrey Kane - TechSoEasy earned 2000 total points
ID: 39834635
Follow this article to reapply the appropriate permissions to migrated accounts:
http://technet.microsoft.com/en-us/library/gg615504.aspx

(FYI, this is a step in the migration process, but is often missed)

Jeff
0
 
LVL 74

Expert Comment

by:Jeffrey Kane - TechSoEasy
ID: 39834640
For the certificate issue, follow the solution referenced here:
http://www.experts-exchange.com/Q_27417843.html
0

Featured Post

2018 Annual Membership Survey

Here at Experts Exchange, we strive to give members the best experience. Help us improve the site by taking this survey today! (Bonus: Be entered to win a great tech prize for participating!)

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

The Exchange database may sometimes fail to mount owing to various technical reasons. A dismounted EDB file can be the source of many Exchange errors including mailbox inaccessibility for users. Resolving the root cause of mounting problems becomes …
This article explains how to move an Exchange 2013/2016 mailbox database and logs to a different drive.
To show how to create a transport rule in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Mail Flow >> Rules tab.:  To cr…
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…

588 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question