Solved

Hybrid Exchange 2013 with Legacy Exchange 2007 published in TMG

Posted on 2014-02-21
2
794 Views
Last Modified: 2014-03-31
I have a site with Legacy Exchange 2007 and Exchange 2013 as a hybrid server for mailboxes connected in Office 365.

We have only migrated some mailboxes as we use features that restrict Exchange 2007 and we need to use.

I am trying to figure out the rules needed to publish Exchange Online and Exchange 2007.  Previously we were using Forms for Exchange 2007 and I have it setup with a rule that has a web listener with forms and basic authentication.  Can someone direct me to how this should now be setup with Exchange 2013 as I am seeing that you should point at the Exchange Hybrid 2013 and it will redirect 2007 this does work internally just not through TMG obviously because of forms authentication.

Also how does the rule get create to redirect the user to Exchange online as our Federated server is what gets loaded when you go directly microsoftonline and type the domain user in it sends you to the federated server to authenticate which works at logging you into Exchange online.

Much appreciated
0
Comment
Question by:ITSystemSol
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 41

Accepted Solution

by:
Vasil Michev (MVP) earned 500 total points
ID: 39877059
So you have AD FS as well? I am assuming you have published it already and is working as expected?

Exchange Online uses basic auth to authenticate on behalf of the user. Obviously you must pass-thru these requests at the TMG, as it cannot use Forms auth. Here are the corresponding endpoints:

/adfs/services/trust/2005/usernamemixed/
/adfs/services/trust/2005/windowstransport/
/adfs/services/trust/

Here is some more detailed info:

http://blog.auth360.net/2011/09/03/tmg-pre-authentication-options-with-office-365/
0
 

Author Comment

by:ITSystemSol
ID: 39882187
What about for users still on-premise, I always get the access denied.

Our scenario is Legacy Exchange 2007 with Exchange 2013 hybrid and a number of our users in Exchange online,
0

Featured Post

MS Dynamics Made Instantly Simpler

Make Your Microsoft Dynamics Investment Count  & Drastically Decrease Training Time by Providing Intuitive Step-By-Step WalkThru Tutorials.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Find out what you should include to make the best professional email signature for your organization.
In-place Upgrading Dirsync to Azure AD Connect
Migrating to Microsoft Office 365 is becoming increasingly popular for organizations both large and small. If you have made the leap to Microsoft’s cloud platform, you know that you will need to create a corporate email signature for your Office 365…
Exchange organizations may use the Journaling Agent of the Transport Service to archive messages going through Exchange. However, if the Transport Service is integrated with some email content management application (such as an antispam), the admini…

738 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question