Solved

Hybrid Exchange 2013 with Legacy Exchange 2007 published in TMG

Posted on 2014-02-21
2
809 Views
Last Modified: 2014-03-31
I have a site with Legacy Exchange 2007 and Exchange 2013 as a hybrid server for mailboxes connected in Office 365.

We have only migrated some mailboxes as we use features that restrict Exchange 2007 and we need to use.

I am trying to figure out the rules needed to publish Exchange Online and Exchange 2007.  Previously we were using Forms for Exchange 2007 and I have it setup with a rule that has a web listener with forms and basic authentication.  Can someone direct me to how this should now be setup with Exchange 2013 as I am seeing that you should point at the Exchange Hybrid 2013 and it will redirect 2007 this does work internally just not through TMG obviously because of forms authentication.

Also how does the rule get create to redirect the user to Exchange online as our Federated server is what gets loaded when you go directly microsoftonline and type the domain user in it sends you to the federated server to authenticate which works at logging you into Exchange online.

Much appreciated
0
Comment
Question by:ITSystemSol
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 42

Accepted Solution

by:
Vasil Michev (MVP) earned 500 total points
ID: 39877059
So you have AD FS as well? I am assuming you have published it already and is working as expected?

Exchange Online uses basic auth to authenticate on behalf of the user. Obviously you must pass-thru these requests at the TMG, as it cannot use Forms auth. Here are the corresponding endpoints:

/adfs/services/trust/2005/usernamemixed/
/adfs/services/trust/2005/windowstransport/
/adfs/services/trust/

Here is some more detailed info:

http://blog.auth360.net/2011/09/03/tmg-pre-authentication-options-with-office-365/
0
 

Author Comment

by:ITSystemSol
ID: 39882187
What about for users still on-premise, I always get the access denied.

Our scenario is Legacy Exchange 2007 with Exchange 2013 hybrid and a number of our users in Exchange online,
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

It’s the first day of March, the weather is starting to warm up and the excitement of the upcoming St. Patrick’s Day holiday can be felt throughout the world.
In-place Upgrading Dirsync to Azure AD Connect
To add imagery to an HTML email signature, you have two options available to you. You can either add a logo/image by embedding it directly into the signature or hosting it externally and linking to it. The vast majority of email clients display l…
Migrating to Microsoft Office 365 is becoming increasingly popular for organizations both large and small. If you have made the leap to Microsoft’s cloud platform, you know that you will need to create a corporate email signature for your Office 365…
Suggested Courses

627 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question