Exchange 2013 cros site blank page OWA/ECP

Hello,
I have an issue with a fresh installation of Exchange 2013 SP1.
The are two AD site in different cities, connected by WAN link (site-to site VPN organized by Cisco ASA).
I installed two Exchange servers in Site A (MBX1 and MBX2, both with MBX+CAS roles), and one Exchange server MBX3 in Site B (also both with MBX+CAS roles).
Each Exchange hosts its own mailbox database (DB1, DB2, DB3 respectively), there are no DAG.
Users spread over all databases. For example, user1 has mailbox in DB1, user2 - in DB2, user3 in DB3.
When user1 opens OWA/ECP on CAS server MBX1 or MBX2, he successfully get into his mailbox.
But, if user1 opens OWA/ECP on CAS server MBX3, he get blank page (no error at all).
And vise versa:
When user3 opens OWA/ECP on CAS server MBX3, he successfully get into his mailbox.
But, if user3 opens OWA/ECP on CAS server MBX1 or MBX2, he get blank page (no error at all).
I know, that Exchange 2013 is able to proxy request cross site.
Where are no custom redirects set on IIS.
Also I check IIS (Back End Site) for right certificate.
There are no error in Windows Event log and IIS event Log.
All ports are allowed between sites.
Everything looks good.
What I did wrong? May be I need to enable cross-site OWA proxy in Exchange somewhere?
Or it is a CISCO ASA misconfiguration?
Any help would be appreciated!
Thank You!
Pavel

Hi,
Firstly, I’d like to confirm if all your Exchange server are internet facing servers.
We can try to clear the Forms based authentication on the non-internet facing server.
And here is a similar thread you can refer to:
http://social.technet.microsoft.com/Forums/exchange/en-US/85983a21-3922-46f4-b64a-d53c0a2271a7/issues-with-crosssite-cas-redirect-of-owa-users?forum=exchange2010
Thanks,
If you have feedback for TechNet Subscriber Support, contact
[email protected]
Angela Shi
TechNet Community Support

Similar Messages

  • Implementing Exchange 2013 DR Site

    Hi All ,
    We have current Exchange 2013 with 2 Mailboxes & 2 CAS servers , we would like to implement Exchange 2013 DR Site , to make only passive copy on DR Site once we have a problem with primary site the mailbox users connecting
    to DR Site .
    How can achieve this requirements ?
    Thank you . 

    Hi,
    If your organization has a third location with a network infrastructure that is isolated from network failures that affect the two datacenters in which your DAG is deployed, then you can deploy the DAG’s witness server in that third location, thereby configuring
    your DAG with the ability automatically failover databases to the other datacenter in response to a datacenter-level failure event.
    If there isn't a third location for FSW server, you can failover to DR site manually. For more details, you can refer to the following article.
    http://technet.microsoft.com/en-gb/library/dd351049(v=exchg.150).aspx
    Hope this is helpful to you.
    Best regards,
    If you have feedback for TechNet Subscriber Support, contact
    [email protected]
    Belinda Ma
    TechNet Community Support

  • New Exchange 2013 SP1 install, can't get ECP to display

    Hi all,
    I stood up a new exchange 2013 environment in my lab running on Server 2012.  Everything looks like it should be working.  All services running, no errors in the event log, I'm able to get into ECS.  When I try and launch the ECP, it spins
    for a little bit then I get a page can't be displayed.  I've checked that exchange sees it: 
    I'm stumped.  I've been scouring forums and can't pinpoint the issue.  I know I could just blow my lab away and try to re-install from scratch but I'm so close to getting this stood up and don't want to just give up.  Plus, I'm curious as
    to what the cause is and how it's tied into Exchange functionality.
    Also, when I try to browse to OWA, the page can't be displayed as well.  I've tried to disable Enhanced IE security to no avail.
    Any suggestions are appreciated.
    Thanks.

    Hi,
    Please use the https://localhost/ecp URL to logon from the local CAS server and check if you can access EAC.
    What's more, I have a test in my environment using Exchange 2013, when I use
    https://exc2013cas.contoso.com/ecp to logon EAC, the same error occurs. But when I use
    https://exc2013cas/ecp to logon, EAC works well. In your case, I recommend you use the
    https://skunkms1/ecp URL to logon EAC and check the result.
    Hope this can be helpful to you.
    Best regards,
    If you have feedback for TechNet Subscriber Support, contact
    [email protected]
    Amy Wang
    TechNet Community Support

  • Exchange 2013 // Error 500 when login OWA through ARR2.5 or other reverse proxy solution

    We install a new Exchange 2013 server with CU2 in our Exchange organization with a single Exchange 2007 server. We use a reverse proxy solution for publishing Outlook WebApp and sync. Internal Outlook WebApp works fine, but when we login from internet,
    we get the error:
    ":-( Something went wrong"
    In the address bar, we see the following URL:
    https://webmail.company.com/owa/auth/errorfe.aspx?httpCode=500
    When we try to login on https://webmail.company.com/ecp, it works fine. But OWA fails.
    Login on legacy mailboxes works fine. When we login on the new Outlook WebApp URL, we automatically forwarded to the legacy URL.
    We try the following reverse proxy solutions:
    Citrix Secure Gateway 3.3 on a Windows 2008 server
    ISS ARR on a Windows 2012 server (http://blogs.technet.com/b/exchange/archive/2013/07/19/reverse-proxy-for-exchange-server-2013-using-iis-arr-part-1.aspx)
    Is there anyone that knows how I can troubleshoot this problem?

    Hi
    Mostly looks like this is host (A) issue.You can check the below things
    Just check of the mail host (A) record is created on internal DNS server and ensure its pointed to new Exchange 2013 server.
    If the mail host (A) record is pointing to old exchange 2007 server just modify it and make it to point to new Exchange 2013 server
    Check the DWS directory in edit binding if loopback 127.0.0.1 is added if not add them
     Please mark as helpful if you find my contribution useful or as an answer if it does answer your question.That will encourage me - and others - to take time out to help you.
    Regards,
    Sathish

  • Exchange 2013 Multi Site Not SR/HA

    This is the first time we have deployed a multi site Exchange organization.  Here is the scenario and I am wondering if it is the correct one or if I should have done it a different way.
    We have a VPN setup between our corporate location and a satellite campus.  The satellite campus has it's own namespace and is a tree in our forest.  We have Exchange 2013 SP1 setup at the corp location.  We installed two Exchange 2013 SP1 servers
    at the satellite location in that domain in the same Exchange organization.  I was able to create a few linked users mailboxes (newly acquired and in process of user migration into our forest) and mail delivers between the two without issue.  But
    lately every new user will not receive email and they will be in the queue.  Does not matter if the email is from a corp user or a local user on the same mailbox server.
    We decided to do this because we want them to have all of their Exchange resources, email, CAS services and UM local to them, but they are still part of our system.  I am having a hard time finding why this is happening.  I also noticed that the emails
    sent from one satellite user to another is actually going through the corp hub transport server and not their local.  Sites and Services is setup with the correct subnets for each site.  I have verified the send and receive connectors.
    Is this scenario the best way to configure our organization or should we simply have created a second organization of their own and tried to share calendars, etc between the two?  All of our other services are centrally located so it only made sense that
    this should also work but before going live I wanted to see if this was the optimal way.  This is not a high availability or site resiliency plan.  No DAGs are used.  We are just one company with two separate very remote disjoint locations and
    even though we have a small VPN for services we would like to keep as much as possible local to that site.
    I have not been able to find information on this scenario.  Everything seems to point to SR/HA scenarios.  Any advice would be greatly appreciated.

    You can't create a second organization when the domain is in the same forest, so you shouldn't have done that.
    You're saying that SMTP messages are stuck in the queue?  That can be caused by any number of problems, but my experience is that it is most likely one of the following.  Look at the SMTP queue and see if any error code is listed, and post that
    here.
    1. In the main site, the site to which the messages are being sent, someone has modified the Default receive connector(s) in a way that the Exchange server can't connect.  The most likely issues would be modifying the PermissionGroups or RemoteIPRanges
    properties.  Best practice is to not modify the Default receive connector (except maybe to add AnonymousUsers to the PermissionGroups to allow inbound mail), and instead create a new connector for the special purpose with the connection limitations supplied.
    2. You have a firewall or relay device between the servers that's "helping" your SMTP connections (Cisco PIX firewalls are notorious for this, disable "SMTP Fixup") or breaking authentication.  The servers must be able to connect on port 25 without
    any molestation of the transactions.
    Ed Crowley MVP "There are seldom good technological solutions to behavioral problems."

  • Exchange 2013 (lab): emails stuck in OWA Drafts

    Hello I have setup for testing purposes an Exchange 2013 CU5 on a 2012R2 which is also DC and DNS.Network wise I have two virtual interfaces one for the internal network (10.10.10.x/24) and another one linked to the Ethernet physical interface of my computer
    which gets its properties from DHCP (usually my gateway router).
    Everything seem to work normally but when I try to send emails to the outside world I only get a copy of it inside the Drafts folder. :-)
    I thoroughly checked the DNS service (inside the Exchange too), A, PTR records and SOA, I tested the DNS server and nslookuped some internet addresses all resolving fine.The DNS service registers both interfaces DNS servers (the internal one which
    is the DC and the external one which comes through DHCP).
    Through Test-ServiceHealth in Exchange Management Shell I checked all required services are up and running.
    With Setspn -L hostname  I verified all required services are registered correctly on my server.
    I also checked Event Viewer and besides some performance counters errors about exchange nothing else in there too.
    I haven't registered an MX record because I don't need to receive mail just to send in that  early stage.Am I right in that?
    Any ideas are welcome and thanks in advance.

    When you see this piling up in drafts, it is not even making it to transport. 
    OWA sends mail via drafts folder.  So can you please restart the "Microsoft Exchange Mailbox Transport Submission"  service and see what happens.
    This is also a very bizarre setup.  DCs do not normally have multiple interfaces, and while Exchange is supported on a DC (apart from DAG) its still not recommended.  
    You probably want to simplify this as you troubleshoot - can  you remove the internal interface from the test box, and clean up DNS and host files etc.
    Cheers,
    Rhoderick
    Microsoft Senior Exchange PFE
    Blog:
    http://blogs.technet.com/rmilne 
    Twitter:   LinkedIn:
      Facebook:
      XING:
    Note: Posts are provided “AS IS” without warranty of any kind, either expressed or implied, including but not limited to the implied warranties of merchantability and/or fitness for a particular purpose.

  • Exchange 2013 Public Folder Calendars in OWA

    Hello,
    I have a Public Folder calendar that I need to publish via OWA in Exchange 2013.  I understand that you cannot view any public folder that is not mail enabled in OWA.  If I make this specific calendar mail enabled will I be able to view the calendar
    in OWA?  I think I still have to convert this to a shared mailbox.  If that is the case, what are the best steps to perform that?

    Hi,
    Yes I agree with Ed Crowley. In Exchange 2013 Cumulative Update 1, Microsoft have allowed to display public folders. However, two major restrictions exist. First, OWA can only display modern public folders. In other words, you have to complete your
    migration to Exchange 2013 and then execute a public folder migration before OWA can be used. No access is possible to legacy public folders. Second, OWA can only display “mail public folders”, or public folders that contain “mail and post items” (as they
    are referred to by Outlook). Other folders (calendars, contacts, tasks, notes, InfoPath, and journal items) are unsupported.
    Regards,
    Santhosh,
    www.jijitechnologies.com

  • Exchange 2013 SP1: Public Folders in OWA

    Hello!
    Tell me please should I be able to use Public Folders in OWA 2013 SP1? I can see them on People tab of OWA, I can send mail to them, but I don't see them on Mail tab (in the folder tree):
    Thank you in advance,
    Michael

    Hello,
    In Exchange 2013 OWA, we can only see public folders on Directory by default. If you add public folder under Favorites, please follow the Martina's suggestion.
    Besides, you can't create or delete public folders.
    If you have any feedback on our support, please click
    here
    Cara Chen
    TechNet Community Support

  • Exchange 2013 using ARR reverse proxy OWA options won't open

    Hi,
    I've been using the exchange team's blog post (http://blogs.technet.com/b/exchange/archive/2013/08/05/part-3-reverse-proxy-for-exchange-server-2013-using-iis-arr.aspx)
    as a guidelin on configuring my ARR deployment in my lab.
    Everything was working perfectly right until i got the last part of the blog on restricting the pattern matches.
    The rewrite rules all work fine and everything is working as expected with the excpetion of the fact that i cannot access the options in OWA. ECP itself works great if i access it via the
    https://ecp.domain.com/ecp url, but as soon as i use the https//mail.domain.com/ecp it just wont display anything.
    Looking at the failed request logs it just shows that it executes a 302 rewrite to ecp.domain.com, which is what i would expect it to base done rewrite rule matching
    https://mail.domain.com/ecp to the ecp.domain.com server farm.
    If i look at the iis logs it looks like it's getting into some sort of loop (the section below is about a 10% of a single attempt to access the options pages:
    2014-06-28 12:25:38 xxx.xxx.xx.xxx GET /ecp/ rfr=owa&X-ARR-CACHE-HIT=0&X-ARR-LOG-ID=6983c585-b0ea-4fd0-9bb1-fc747ee8e992 443 - xxx.xxx.xx.xxx Mozilla/4.0+(compatible;+MSIE+7.0;+Windows+NT+6.2;+WOW64;+Trident/6.0;+.NET4.0E;+.NET4.0C)
    - 302 0 0 15
    2014-06-28 12:25:38 xxx.xxx.xx.xxx GET /ecp rfr=owa/&X-ARR-CACHE-HIT=0&X-ARR-LOG-ID=d32a3a4f-d8a6-4712-91d4-56360be33793 443 - xxx.xxx.xx.xxx Mozilla/4.0+(compatible;+MSIE+7.0;+Windows+NT+6.2;+WOW64;+Trident/6.0;+.NET4.0E;+.NET4.0C)
    - 302 0 0 0
    2014-06-28 12:25:38 xxx.xxx.xx.xxx GET /ecp rfr=owa//&X-ARR-CACHE-HIT=0&X-ARR-LOG-ID=14797897-f1ad-454a-b73c-fde041a43d2b 443 - xxx.xxx.xx.xxx Mozilla/4.0+(compatible;+MSIE+7.0;+Windows+NT+6.2;+WOW64;+Trident/6.0;+.NET4.0E;+.NET4.0C)
    - 302 0 0 0
    Did anyone ever run into something like this? Or have an idea where i may have made a mistake? I've tried everything i could think of.
    The rewrite rules i have in place are basically exactly the same as the exchange team's blog but just in case i overlooked somehthing, please se the image below.
    thanks in advance for your time

    Hello,
    I wanted to see if anyone has any suggestions on reverse proxy options that can do pre-authentication like TMG use to do? I am currently trying to deploy out a new Excahnge 2013 setup in coexistence with an existing Exchange 2010 environment
    which will then be migrated over. And one of the requirements is to block certain users from accessing webmail externally while still allowing others to access webmail. That is currently achieved by using a TMG server but that is going to be decommissioned
    along with Exchange 2010.
    I have been searching online but so far I have not found anything that seemed to meet this requirement. I have seen that IIS Web Application Proxy tied in with AD FS would do the job. But there is some issue there with Excahnge 2010 still being active that
    won't allow it to work. Some suggestions I have seen online involved changing permissions on the IIS directory or modifying web config files but those options didn't seem like they provided a consistent result.
    So I am looking for some sort of option that is either inexpensive or some means of leveraging existing Microsoft technologies to achieve my goal any suggestions would be helpful.
    Nicholas,
    How about IIS ARR?
    http://blogs.technet.com/b/exchange/archive/2013/07/19/reverse-proxy-for-exchange-server-2013-using-iis-arr-part-1.aspx
    http://blogs.technet.com/b/exchange/archive/2013/08/02/part-2-reverse-proxy-for-exchange-server-2013-using-iis-arr.aspx
    Twitter!: Please Note: My Posts are provided “AS IS” without warranty of any kind, either expressed or implied.

  • Exchange 2013 Multi site

    Hi
    I have Active directory 2012 R2  with sites ( A ,B)
    Site A
    I have 2 cas servers
    I have 2 MBX servers with DAG
    ALL users in site B has issue from slow outlook profiles , we suggest to create a CAS server there in B site and memeber of DAG 
    SO in site B we will have cas server + MBX member DAG
    Regarding users in B site how can i enforce the to connect the exchange throw the cas server located in B site ?
    How can i confirm that all smtp trafic will go from B site throw cas server located there then to the cas server located in A site then to the firewall ?
    is this scenario provide performance wise?
    all users for site B will have a DB and will be mounted on MX in B site .
    Please need suggestions .
    I need to have high performance for outlook profiles located in B site
    we have wan link between site A and site B but it is slow .
    Do I need to create another DAG ?
    when shall we have multiple DAG in our exchange organization ?
    Thanks
    MCP MCSA MCSE MCT MCTS CCNA

    Hi,
    Based on your description, CAS servers in site A are Internet-facing, CAS server in Site B are non-internet facing.
    In this case, all outbound mail for site B users will go from CAS in site B to CAS in site A and then to firewall and Internet.
    All inbound mails will go from CAS in site A to CAS in site B and then go to Mailbox server.
    Here is an article which may help you for your reference.
    http://technet.microsoft.com/en-gb/library/aa996349(v=exchg.150).aspx
    Best regards,
    If you have feedback for TechNet Subscriber Support, contact
    [email protected]
    Belinda Ma
    TechNet Community Support
    Thanks for you reply Belinda ,
    Is it need any configuration from my side ?
    MCP MCSA MCSE MCT MCTS CCNA

  • Sharepoint 2013 Blog site landing page

    On a blog site, you are shown categories, archives, then your posts, then blog tools and rss feeds. Is there an easy way to increase the width of the post size. If you increase the size of the web part the posts do not increase.

    Use the developer tools and identify the class and increase the width.

  • Exchange 2013 CU7 OWA 400 Bad Request after successful login

    Scenario:
    Exchange 2007/2013 Migration
    One
    Exchange 2007 Server [removed]
    One
    Exchange 2013 Server Std, Windows 2012
    All mailboxes moved to 2013
    - November 27-30 2014
    All public folders moved to
    2013 - December 2, 2014
    Exchange
    2007 is still running and has not been removed from the domain, yet. [update]
    Exchange
    2007 removed from domain - 12-13-14
    SSL
    Certs are current for: Autodiscover.ExtDom.com, ex13.ExtDom.com, ex13.IntDom.com
    Applied
    CU6 (Dec 3, 2014) to fix Mobile access issues. Since applying CU6, OWA does not work with the exception of mobile browsers (Chrome - Nexus 7) or Safari 5.1.7 on Windows 7. These browsers get the OWA 2010 theme (Yellow).
    User
    logs into OWA with Domain\UserName and PWD(IE). After clicking Sign In, page returns Bad Request. No errors logged in w3scv logs.
    [update]
    CU7 applied 12-11-2014
    All
    users can connect using Outlook 2013 or Mobile (iPhone & Android)
    Exchange
    Admin Center (ECP) still works!
    Browsers
    tested: IE10 (windows 7 x64),Chrome 39.0.2171.71m, Opera 26.0, FireFox 34.0.5, Safari 5.1.7
    Attempted:
    https://ex13.ExtDom.com/owa
    https://ex13.IntDom.com/owa
    https://ex13.ExtDom.com/owa?ExchClientVer=15
    https://ex13.IntDom.com/owa?ExchClientVer=15
    https://localhost/owa
    (on Ex 2013 server)
    https://localhost/owa?ExchClientVer=15
    (on Ex 2013 Server)
    Fixes
    attempted:
    remove
    | create Virtual Directories for OWA
    Change
    authentication through Exchange PowerShell - Integrated/Basic from FBA/Basic
    reverted
    since change didn’t work.
    Run
    UpdateCas.ps1
    Run
    UpdateConfigFiles.ps1
    IISReset
    (iisReset /NoForce fails)
    OWA
    (Default Web Site) displays as Version 15.0 (Build 995.29) in EAC. [update] Build 1044.25 (CU7)
    Links
    used for troubleshooting:
    http://community.spiceworks.com/topic/514617-exchange-2013-unable-to-login-to-owa-ecp
    https://social.technet.microsoft.com/Forums/ie/en-US/f8aa95d4-19e4-483c-8c4b-b039ab0d0127/400-bad-request-when-logging-in-to-owa-exchange-2013?forum=exchangesvrclients
    http://tecfused.com/2013/09/23/exchange-2013-ecp-double-login-error-400/
    https://social.technet.microsoft.com/Forums/lync/en-US/c25ce81c-76ea-471a-93ae-eeaf9e5015ac/exchange-2013-owa-error-400-bad-request?forum=exchangesvradmin
    http://support.microsoft.com/kb/2871485/en-gb

    Hi,
    Does it work if you disable the FBA and only use the basic authentication?
    Please also let us know the authentication settings on the Default Web site.
    Thanks,
    Simon Wu
    TechNet Community Support

  • Exchange 2013 issue / OWA time-out and WiFi/Cell problem.

    Hi everybody,
    I'm having some issues with an Exchange 2013 server.
    When some users try to logon to the OWA page it keeps loading the page and ends with a time-out.
    This only applies to 6 or 7 users, other users can login and open the page.
    I tried to replace the signed certificate to solve this problem, and did a online analyzer check, most tests come out good.
    I can't seem to find the source of this problem.
    There are also multiple users that are having trouble to receive e-mail through the wifi on phones and tablets at home but when they switch to 3g it works fine.
    You might need more information, just ask.. i don't know where to search anymore.
    I tried inheritance on the AD, disabled SSL in the IIS, restarted the server, replaced the signed cert. etc.
    Update:
    I set the selfsigned cert in the IIS default web page,, to check if it responds to the certificate and it does, so the issue doesn't come from the certificate.
    This issue probably came up after CU1, and i've read something about healthboxes..
    I'm going to install CU6 and hope for good result.
    Kind regards,
    Tim

    I've installed CU6, only one of the six users have gained access to OWA or ECP.
    Al the other users won't get a logon screen, just a blank page.
    So there is no option to insert a username or password to login, the page keeps loading and ends with "the page cannot be displayed"
    But on my working spot i can open owa or ecp without any issues.
    I've recreated the virtual directory for ECP and OWA with powershell, and checked the certificate.
    I checked if the same certificate was connected to the back-end port 444, and this is set correct.
    I even reconnected the cert on 444 with the following.
    Open the Command Prompt
    Run-
    netsh http show sslcert
    This will show the certs, copy and paste this information into notepad.  Under     IP:port   : 127.0.0.1:443, note the certificate hash and application ID.
    Run this command-  (Yes, I know there is no :444 listed in the output from the earlier command.)
    netsh http delete sslcert ipport=0.0.0.0:444
    Run this command.  Replace certhas with the certificate hash and appid with the application ID you saved in notepad.
    netsh http add sslcert ipport=0.0.0.0:444 certhash=123123123123123 appid="{123123123123-1231231235}"
    I used powershell to set the login authentication,
    et-Owavirtualdirectory -identity "YourMailBoxServerName\owa (Exchange Back End)" -WindowsAuthentication $True -Basicauthentication $false -Formsauthentication $false
    set-Owavirtualdirectory -identity "YourCASserverName\owa (Default Web Site)" -WindowsAuthentication $True -Basicauthentication $false -Formsauthentication $false
    and iisreset /noforce
    I unchecked the "require SSL" on the default website and left it enabled on the owa and ecp etc.
    Checked if HTTP over Proxy is installed, but this one is need to install exchange 2013.
    I've checked all ECP/OWA directories in in the IIS, the directories point to the Exchange V15 folders, this should be correct.
    Something is really broken, i really can use the help..
    I'm going to try to install Exchange 2013 SP1, but i don't know if this one is needed when CU6 has been installed.
    The strange thing is, it seem to be location based, not user based.
    I can login perfectly, but when i try this at one of the employees, it ends up blank.
    When i try to connect on a location dat does not work, at the exact time i press the enter-key to open the page, the eventviewer logs the following:
    Event 4634 - An account was logged off.
    For the issue on the smartphones and tablets, everything worked fine a few months ago, and happens to users on different ISP connections.
    I already checked the inheritance settings on the users in the AD.
    Kind regards,
    Tim

  • OWA :( something went wromg -exchange 2013

    hi 
    I have another fresh exchange 2013
    i cant login to owa with error :    :) something went wrong
    It seems authentication issue 
    Ecp is working with no issues .
    Identity                      : EXCHCASSRV1\owa (Default Web Site)
    Name                          : owa (Default Web Site)
    InternalUrl                   : https://exchcassrv1.corp.net/owa
    ExternalUrl                   : 
    ClientAuthCleanupLevel        : High
    InternalAuthenticationMethods : {Basic, Fba}
    BasicAuthentication           : True
    WindowsAuthentication         : False
    DigestAuthentication          : False
    FormsAuthentication           : True
    LiveIdAuthentication          : False
    AdfsAuthentication            : False
    OAuthAuthentication           : False
    ExternalAuthenticationMethods : {Fba}
    Identity                      : EXCHCASSRV2\owa (Default Web Site)
    Name                          : owa (Default Web Site)
    InternalUrl                   : https://exchcassrv2.corp.net/owa
    ExternalUrl                   :
    ClientAuthCleanupLevel        : High
    InternalAuthenticationMethods : {Basic, Fba}
    BasicAuthentication           : True
    WindowsAuthentication         : False
    DigestAuthentication          : False
    FormsAuthentication           : True
    LiveIdAuthentication          : False
    AdfsAuthentication            : False
    OAuthAuthentication           : False
    ExternalAuthenticationMethods : {Fba}
    Identity                      : EXCHMBXSRV1\owa (Exchange Back End)
    Name                          : owa (Exchange Back End)
    InternalUrl                   :
    ExternalUrl                   :
    ClientAuthCleanupLevel        : High
    InternalAuthenticationMethods : {Ntlm, WindowsIntegrated}
    BasicAuthentication           : False
    WindowsAuthentication         : True
    DigestAuthentication          : False
    FormsAuthentication           : False
    LiveIdAuthentication          : False
    AdfsAuthentication            : False
    OAuthAuthentication           : False
    ExternalAuthenticationMethods : {Fba}
    Identity                      : EXCHMBXSRV2\owa (Exchange Back End)
    Name                          : owa (Exchange Back End)
    InternalUrl                   :
    ExternalUrl                   :
    ClientAuthCleanupLevel        : High
    InternalAuthenticationMethods : {Ntlm, WindowsIntegrated}
    BasicAuthentication           : False
    WindowsAuthentication         : True
    DigestAuthentication          : False
    FormsAuthentication           : False
    LiveIdAuthentication          : False
    AdfsAuthentication            : False
    OAuthAuthentication           : False
    ExternalAuthenticationMethods : {Fba}
    [PS] C:\Windows\system32>^A
    need help
    MCP MCSA MCSE MCT MCTS CCNA

    Hi,
    Since your ECP can work fine, please run the following command and post the results here:
    Get-EcpVirtualDirectory | FL Identity,*Authentication*,*URL*
    Please note to set the Authentication method by using EMS or EAC instead of IIS manager. Just restart IIS service after changing any authentication settings in Exchange.
    Regards,
    Winnie Liang
    TechNet Community Support
    [PS] C:\Windows\system32>Get-EcpVirtualDirectory | FL Identity,*Authenticat
    Identity                      : EXCHCASSRV1\ecp (Default Web Site)
    InternalAuthenticationMethods : {Basic, Fba}
    BasicAuthentication           : True
    WindowsAuthentication         : False
    DigestAuthentication          : False
    FormsAuthentication           : True
    LiveIdAuthentication          : False
    AdfsAuthentication            : False
    OAuthAuthentication           : False
    ExternalAuthenticationMethods : {Fba}
    InternalUrl                   :
    https://exchcassrv1/ecp
    ExternalUrl                   :
    https://exchcassrv1/ecp
    Identity                      : EXCHCASSRV2\ecp (Default Web Site)
    InternalAuthenticationMethods : {Ntlm, WindowsIntegrated}
    BasicAuthentication           : False
    WindowsAuthentication         : True
    DigestAuthentication          : False
    FormsAuthentication           : False
    LiveIdAuthentication          : False
    AdfsAuthentication            : False
    OAuthAuthentication           : False
    ExternalAuthenticationMethods : {Fba}
    InternalUrl                   :
    https://exchcassrv2.corp.net/ecp
    ExternalUrl                   :
    [PS] C:\Windows\system32>
    Also find the same from EXCHCASSRV2:
    [PS] C:\Windows\system32>Get-EcpVirtualDirectory | FL Identity,*Authentication*,*URL*
    Identity                      : EXCHCASSRV1\ecp (Default Web Site)
    InternalAuthenticationMethods : {Basic, Fba}
    BasicAuthentication           : True
    WindowsAuthentication         : False
    DigestAuthentication          : False
    FormsAuthentication           : True
    LiveIdAuthentication          : False
    AdfsAuthentication            : False
    OAuthAuthentication           : False
    ExternalAuthenticationMethods : {Fba}
    InternalUrl                   :
    https://exchcassrv1/ecp
    ExternalUrl                   :
    https://exchcassrv1/ecp
    Identity                      : EXCHCASSRV2\ecp (Default Web Site)
    InternalAuthenticationMethods : {Ntlm, WindowsIntegrated}
    BasicAuthentication           : False
    WindowsAuthentication         : True
    DigestAuthentication          : False
    FormsAuthentication           : False
    LiveIdAuthentication          : False
    AdfsAuthentication            : False
    OAuthAuthentication           : False
    ExternalAuthenticationMethods : {Fba}
    InternalUrl                   :
    https://exchcassrv2.corp.net/ecp
    ExternalUrl                   :
    [PS] C:\Windows\system32>
    MCP MCSA MCSE MCT MCTS CCNA

  • Exchange 2013 migration between AD sites

    Hello,
    I am preparing a migration from one Exchange 2013 Cu6 server to another 2013 CU6 server in the same domain in a different  AD site. Each server is HT and MB server, hosting its own DB. There is no DAG between the 2 servers.
    I am planning to use coexistence between the servers during the migration when I move mailboxes from one server to the other. The move should be transparent to the users. Outlook should detect the move and find it automatically.
    I configured one namespace for all URLs, identical on both servers like "mail.organization.nl" for AS, OA, OWA, ECP and autodiscover.
    Would this work? I read here it will: The article is referrning to a DAG spanned over 2 sites, which I do not have.
    http://blog.netwrix.com/2014/03/21/configuring-exchange-2013-for-site-resilience-2/
    Any advice on performing this migration without issues?
    Thanks

    Hello,
    I am preparing a migration from one Exchange 2013 Cu6 server to another 2013 CU6 server in the same domain in a different  AD site. Each server is HT and MB server, hosting its own DB. There is no DAG between the 2 servers.
    I am planning to use coexistence between the servers during the migration when I move mailboxes from one server to the other. The move should be transparent to the users. Outlook should detect the move and find it automatically.
    I configured one namespace for all URLs, identical on both servers like "mail.organization.nl" for AS, OA, OWA, ECP and autodiscover.
    Would this work? I read here it will: The article is referrning to a DAG spanned over 2 sites, which I do not have.
    http://blog.netwrix.com/2014/03/21/configuring-exchange-2013-for-site-resilience-2/
    Any advice on performing this migration without issues?
    Thanks
    Mailbox Moves are pretty seamless, so not a concern.
    As far as the CAS namespaces. How are you handling that ? Load balancing between the CAS? Round Robin DNS? Or are you going to cut everything over at once and change DNS to point to the new server? Are both CAS accessible from the internet?
    Twitter!:
    Please Note: My Posts are provided “AS IS” without warranty of any kind, either expressed or implied.

Maybe you are looking for