Solved

Exchange 2010 -

Posted on 2014-09-23
5
11 Views
Last Modified: 2016-06-14
I have multiple domains in an Exchange 2010 setup.  One domain is in Europe and one is in the US.  How can i stop a European user from going to the US OWA server and logging in ?  Currently, if a European user goes to the US OWA site and enters europeandomain/username and his password, he connects.  I want to change this so only US users can log into the US OWA server using the US domain.  Thanks
0
Comment
Question by:iskrob
  • 2
  • 2
5 Comments
 
LVL 16

Expert Comment

by:Rajitha Chimmani
ID: 40339905
The best way is to block the URL access at user desktop level. CAS redirection or proxying will still allow them to access the US OWA website.
0
 

Author Comment

by:iskrob
ID: 40339928
The problem with that is they may not be at one of my devices.  Blocking the URL will only work if it's my device.  I need to block it at the OWA or authentication level.
0
 
LVL 16

Accepted Solution

by:
Rajitha Chimmani earned 500 total points
ID: 40339975
You might have to modify the permissions on OWA virtual directory. But, you need to create group which has all users from US domain. In IIS, open the permissions for OWA directory on US domain CAS server, remove Authenticated users and add the same permissions for the group that you created. It has to be tested though.
0
 

Author Comment

by:iskrob
ID: 40339999
That sounds like a good idea.  I'll give that a try.  I could just use domain users instead of authenticated users.  Domain users would limit the users allowed to sign on just to my domain.  Thank you
0

Featured Post

Do email signature updates give you a headache?

Constantly trying to correctly format email signatures? Spending all of your time at every user’s desk to make updates? Want high-quality HTML signatures on all devices, including on mobiles and Macs? Then, let Exclaimer solve all your email signature problems today!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Follow this checklist to learn more about the 15 things you should never include in an email signature from personal quotes, animated gifs and out-of-date marketing content.
This article explains in simple steps how to renew expiring Exchange Server Internal Transport Certificate.
In this video we show how to create a User Mailbox in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Recipients >> Mailb…
To show how to generate a certificate request in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.:  First we need to log into the Exchange Admin Center. Navigate to the Servers >> Certificates…

929 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now