• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 23
  • Last Modified:

Exchange 2010 -

I have multiple domains in an Exchange 2010 setup.  One domain is in Europe and one is in the US.  How can i stop a European user from going to the US OWA server and logging in ?  Currently, if a European user goes to the US OWA site and enters europeandomain/username and his password, he connects.  I want to change this so only US users can log into the US OWA server using the US domain.  Thanks
0
iskrob
Asked:
iskrob
  • 2
  • 2
1 Solution
 
Rajitha ChimmaniCommented:
The best way is to block the URL access at user desktop level. CAS redirection or proxying will still allow them to access the US OWA website.
0
 
iskrobAuthor Commented:
The problem with that is they may not be at one of my devices.  Blocking the URL will only work if it's my device.  I need to block it at the OWA or authentication level.
0
 
Rajitha ChimmaniCommented:
You might have to modify the permissions on OWA virtual directory. But, you need to create group which has all users from US domain. In IIS, open the permissions for OWA directory on US domain CAS server, remove Authenticated users and add the same permissions for the group that you created. It has to be tested though.
0
 
iskrobAuthor Commented:
That sounds like a good idea.  I'll give that a try.  I could just use domain users instead of authenticated users.  Domain users would limit the users allowed to sign on just to my domain.  Thank you
0

Featured Post

Making Bulk Changes to Active Directory

Watch this video to see how easy it is to make mass changes to Active Directory from an external text file without using complicated scripts.

  • 2
  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now