Link to home
Start Free TrialLog in
Avatar of CanOfWorms
CanOfWormsFlag for United States of America

asked on

Activesync not working for mailboxes on 2003 server in coexistance

I have an Exchange 2003 and Exchange 2010 server in co-existence. Currently users whos mailboxes are on the 2010 server can use OWA and ActiveSync. Users with Mailboxes on 2003 can not.  When trying to access OWA: 404 - File or directory not found. When trying to access and ActiveSync connection: An HTTP 401 Unauthorized response was received from the server. This may be the result of invalid credentials or a configuration problem on the Exchange Server

I have installed the patch needed on 2003. http://support2.microsoft.com/?kbid=937031
I have set Windows Integrated Authentication on the Microsoft-Server-ActiveSync

What to try next?
ASKER CERTIFIED SOLUTION
Avatar of Gareth Gudger
Gareth Gudger
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of CanOfWorms

ASKER

Hi Gareth, Thank you for your post. I did do IIS reset on 2003, ended up breaking IIS and I had to reboot to sort it out. (http ssl service wouldnt start)

The legacy record confuses me. I have not created it. The 2003 server is known as webmail.domain.com. I configured the 2010 server to also be known as webmail.domain.com.

Do i need to create this record, I guess actually use legacy.domain.com, and have a second public IP? I forwarded the public IP webmail.domain.com resolves to the 2010 server.

Thanks for your assistance, greatly appreciated.
Right if you need coexistence you will need a second public IP and a different DNS record for 2003. It doesn't necessarily have to be "legacy" just something different than 2010. The way you have 2010 is correct.

Once you have the record created in external DNS and pointing to the second public IP (which now NATs to 2003 on the firewall) you need to use the cmdlet above for the OWA legacy support.

Secondly, you will need to swap out the certificate on the 2003 server as well, so it contains the new name. You can make this record part of your UC SAN cert.

Check my article I posted as well.
It makes sense now that you say it. Mailboxes on 2003 need to be connected to using activesync directly and can not be proxyed through the 2010 server. That solves my issue. Thanks for your help.