Solved

Exchange 2016 OWA is not opening on chrome.

Posted on 2016-11-12
6
3,018 Views
Last Modified: 2016-12-12
I have just installed Exchange 2016 Version 15.1 ‎(Build 544.27)‎ ; even at the hosted server (windows 2016) I am unable to open OWA/ECP at google chrome Version 54.0.2840.99 m (64-bit).
Chrome says: ERR_SPDY_INADEQUATE_TRANSPORT_SECURITY

I am using SSL certificates: https://www.ssls.com/ssl-certificates/comodo-positivessl-multi-domain 
I am using the same kind of certificate protected exchange 2013 servers on chrome without any issue.

I have found the related links:

https://social.technet.microsoft.com/Forums/en-US/a858858c-71f4-4968-a49b-25559019148f/exchange-2016-owa-will-not-open-in-firefox-or-chrome
https://www.experts-exchange.com/questions/28592968/SSL-Certs-Google-SHA1.html

https://www.nartac.com/Products/IISCrypto

https://support.mozilla.org/en-US/questions/1143320 

Please guide the recommended procedure to resolve the issue.
0
Comment
Question by:Akash Bansal
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 2
6 Comments
 
LVL 15

Assisted Solution

by:Todd Nelson
Todd Nelson earned 500 total points
ID: 41884629
Take a look at these articles. Known issues with Exchange 2016 and Windows 2016.

https://blogs.technet.microsoft.com/exchange/2016/11/04/update-on-windows-server-2016-and-exchange-server-2016/

https://exchangeserverpro.com/dont-deploy-exchange-server-2016-windows-server-2016-now-due-stability-issues/

Recommendation is to install Exchange 2016 on Windows 2012 R2.
0
 
LVL 2

Author Comment

by:Akash Bansal
ID: 41884638
Thanks for the links.

As per the link you shared the issue comes when you configure DAG not in a standalone installation. I have also configured a standalone setup. My issue i guess is due to http2 protocol enabled by default. Pls guide me further.


Extract from links shared in previous comment:

Magnus
November 7, 2016 at 5:21 am
If running a standalone Exchange 2016 on WS2016 without DAG, there should be no issues?

Reply
Bharat Suneja [MSFT]
November 7, 2016 at 7:27 am
That’s correct.

Reply
Eliseo Villafuerte
November 7, 2016 at 9:06 pm
Yes, no issue when Windows 2016 is used to deploy Exchange 2016 CU3 in non-DAG configuration. So I deployed on WS2012R2 to enable HA. Will wait patiently for the fix.
0
 
LVL 15

Assisted Solution

by:Todd Nelson
Todd Nelson earned 500 total points
ID: 41884649
In the three separate lab scenarios I have--all Exchange 2016 CU3 stand-alone servers on Windows 2016 RTM--there isn't one that functions properly.

I'll probably stick with Exchange 2016 on Windows 2012 R2 in production for future installs until CU4/5.
0
Is Your AD Toolbox Looking More Like a Toybox?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

 
LVL 2

Accepted Solution

by:
Akash Bansal earned 0 total points
ID: 41885272
I download and ran the IIS Crypto 2 tool, Clicked the best Practices button & hit apply, rebooted and all is fixed.
I don't know what the tool did; couldn't find the log report after the reboot.

https://www.nartac.com/Products/IISCrypto

Now I can open the owa/ECP at the chrome as well.
Though all looks cool & smooth now, I still cautious & in dilemma if I put it in production or not.
Though this server would be having up to 10 mailboxes & would be standalone for ever.
0
 
LVL 2

Author Closing Comment

by:Akash Bansal
ID: 41894674
Mr. Todd Nelson gave the best recommendation. I agree with him.
As it's a small standalone installation, I dare to go with the existing plan.
The steps I performed fixed the current issue so I choosed my solution.
0
 
LVL 2

Author Comment

by:Akash Bansal
ID: 41921974
https://www.nartac.com/Products/IISCrypto

Before applying Best practice:
default-certificate-settings-in-2016
After applying best practice:
after-best-practice-certificate-settings-in-2016
0

Featured Post

Office 365 Training for IT Pros

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

MS Outlook is a world-class email client application that is mainly used for e-communication globally.  In this article, we will discuss the basic idea about MS Outlook, its advanced features, and types of MS Outlook File formats.
Optimized for private cloud infrastructures and datacenters, Nano Server is minimalistic, yet super-efficient, OS for services such as Hyper-V and Hyper-V cluster. Learn how you can easily deploy Nano Server and unlock its power!
This video discusses moving either the default database or any database to a new volume.
Exchange organizations may use the Journaling Agent of the Transport Service to archive messages going through Exchange. However, if the Transport Service is integrated with some email content management application (such as an antispam), the admini…

710 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question