Exchange 2007 SP3 + Active Sync

Posted on 2014-11-11
Medium Priority
Last Modified: 2014-11-13
I am looking for a solution, where users via their devices, that use Microsoft's active sync go through say webmail01.xyz.com.

When they go through OWA they go through webmail02.xyz.com.  I want this URL  not to use active sync at all.

Can this be done via Exchange 2007 SP3?

Question by:techgenious
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 3
LVL 34

Expert Comment

ID: 40435997
Theoretically, you could, but I have to ask, is there a specific reason why?


Author Comment

ID: 40436093
Yes  more for security reasons to separate the two.
How can it be done ?

Author Comment

ID: 40436102
It was asked by management and they want them separated due to security reasons ?
Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

LVL 34

Accepted Solution

it_saige earned 2000 total points
ID: 40436123
Simply changing the url does not change the security landscape.  Management has to understand, that whether one address or many are used, ultimately, the service requests for OWA and ActiveSync, get answered by the same mechanism, your CAS [or Client Access Server].  The key is securing each of the services path's to the CAS [e.g. - Using SSL, WindowsIntegrated Authentication and FBA (Forms Based Authentication)].

More on Securing an Exchange 2007 Client Access Server:

More on Hardening Exchange Server 2007:


Author Comment

ID: 40436567
Thanks Saige let me check those articles.

The overall issue they have is, if you are able to obtain my user ID & password you can get into our network.
We want to have a infrastructure where, if the device is not configured to enter our network, then they cannot get in.

configuring their email with the stolen user ID & Password and getting the users email.  We want it where devices are also are authorized the internal network.

Featured Post

Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Unified and professional email signatures help maintain a consistent company brand image to the outside world. This article shows how to create an email signature in Exchange Server 2010 using a transport rule and how to overcome native limitations …
This article will help to fix the below errors for MS Exchange Server 2013 I. Certificate error "name on the security certificate is invalid or does not match the name of the site" II. Out of Office not working III. Make Internal URLs and Externa…
The basic steps you have just learned will be implemented in this video. The basic steps are shown to configure an Exchange DAG in a live working Exchange Server Environment and manage the same (Exchange Server 2010 Software is used in a Windows Ser…
how to add IIS SMTP to handle application/Scanner relays into office 365.
Suggested Courses

770 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question