ActiveSync

 ActiveSync for Exchange 2007
My users are not able to access emails from their smartphones when using with SSL.
. Port 443 is opened on firewall
2. i am using third pary CA(DigiCert) for owa but i am not aware about active sync
3. when i used this command in shell
Get-ActiveSyncVirtualDirectory | fl Server,ExternalUrl
The answer i got is MAIL 
(mail.abc.com) (abc.com is my domain)
please do refer the screenshots and guide me where i am going wrong.
what ports other than 443 should be opened in firewall.

My domain lets say is abc.com and host name of my exchange is mail.
The Microsoft Connectivity Analyzer is testing Exchange ActiveSync.
The Exchange ActiveSync test failed.
Additional Details
Elapsed Time: 3931 ms.
Test Steps
Attempting the Autodiscover and Exchange ActiveSync test (if requested).
Testing of Autodiscover for Exchange ActiveSync failed.
Additional Details
Elapsed Time: 3930 ms.
Test Steps
Attempting each method of contacting the Autodiscover service.
The Autodiscover service couldn't be contacted successfully by any method.
Additional Details
Elapsed Time: 3930 ms.
Test Steps
Attempting to test potential Autodiscover URL https://abc.com/AutoDiscover/AutoDiscover.xml
Testing of this potential Autodiscover URL failed.
Additional Details
Elapsed Time: 2921 ms.
Test Steps
Attempting to resolve the host name abc.com in DNS.
The host name resolved successfully.
Additional Details
IP addresses returned: -------
Elapsed Time: 701 ms.
Testing TCP port 443 on host abc.com to ensure it's listening and open.
The specified port is either blocked, not listening, or not producing the expected response.
Tell
me more about this issue and how to resolve it
Additional Details
A network error occurred while communicating with the remote host.
Elapsed Time: 2220 ms.
Attempting to test potential Autodiscover URL https://autodiscover.abc.com/AutoDiscover/AutoDiscover.xml
Testing of this potential Autodiscover URL failed.
Additional Details
Elapsed Time: 671 ms.
Test Steps
Attempting to resolve the host name autodiscover.abc.com in DNS.
The host name couldn't be resolved.
Tell
me more about this issue and how to resolve it
Additional Details
Host autodiscover.abc.com couldn't be resolved in DNS InfoDomainNonexistent.
Elapsed Time: 671 ms.
Attempting to contact the Autodiscover service using the HTTP redirect method.
The attempt to contact Autodiscover using the HTTP Redirect method failed.
Additional Details
Elapsed Time: 20 ms.
Test Steps
Attempting to resolve the host name autodiscover.abc.com in DNS.
The host name couldn't be resolved.
Tell
me more about this issue and how to resolve it
Additional Details
Host autodiscover.abc.com couldn't be resolved in DNS InfoDomainNonexistent.
Elapsed Time: 20 ms.
Attempting to contact the Autodiscover service using the DNS SRV redirect method.
The Microsoft Connectivity Analyzer failed to contact the Autodiscover service using the DNS SRV redirect method.
Additional Details
Elapsed Time: 316 ms.
Test Steps
Attempting to locate SRV record _autodiscover._tcp.abc.com in DNS.
The Autodiscover SRV record wasn't found in DNS.
Tell
me more about this issue and how to resolve it
Additional Details
Elapsed Time: 316 ms.

Similar Messages

  • Cannot send email via ActiveSync when user connect from Internet (Exchange 2010 SP3 RU5)

    Hi All. 
    This is the first time I encounter this kind of issue, whenever user connect from the internet they cannot send email from their Phone or Windows Mail App, but they can retrieve email 
    But when they connect from Internal Network they can send email. I already test ActiveSync from internet using www.testexchangeconnectivity.com and it pass all tests. 
    I also check the Firewall and all the necessary ports already opened (we even open all ports) , the default TTL on the firewall 3600 second. 
    From what I read ActiveSync use some kind of HTTP POST or in MS terminology "PING" command, but still have no idea what kind of configuration that should be made to the Firewall so it can pass this "PING" command. Because from what I
    see in Android Logcat the problem always related to this PING command 
    10-07 08:12:38.714 I/Exchange(31971): Interrupt with reason 1
    10-07 08:12:38.714 I/Exchange(31971): Ping task ending with status: -1
    10-07 08:12:38.904 D/Exchange(31971): created outputstream
    10-07 08:12:39.204 W/Exchange(31971): IOException sending mail
    10-07 08:12:39.204 E/Exchange(31971): Generic error for operation SendMail: status 200, result -100
    10-07 08:12:39.204 W/Exchange(31971): Aborting outbox sync for error -99
    10-07 08:12:39.274 I/Exchange(31971): Ping task starting for 3
    10-07 08:12:39.304 D/SyncManager(644): failed sync operation [email protected] u0 (com.android.exchange), com.android.email.provider, USER, latestRunTime 71219435, EXPEDITED, reason: 10040, SyncResult: stats [ numIoExceptions: 1]
    10-07 08:12:39.304 D/SyncManager(644): not retrying sync operation because SYNC_EXTRAS_DO_NOT_RETRY was specified [email protected]  u0 (com.android.exchange), com.android.email.provider, USER, latestRunTime 71220078, EXPEDITED, reason: 10040

    Hi ronaldosy,
    How about the work flow of Outlook or OWA on PC internally/externally?
    If only phone has this issue, I suggest ask ActiveSync Forum for help so that you can get more professional suggestions. For your convenience:
    http://social.technet.microsoft.com/Forums/exchange/en-US/home?forum=exchangesvrmobility
    Best Regards,
    Allen Wang

  • ActiveSync stops working after migrating from Exchange 2007 to Exchange 2013

    We have started the migration from Exchange 2007 to Exchange 2013. We've followed best practices and everything is working great except ActiveSync. I've performed Exchange migrations in the past so this is nothing new for me. I've also been referring to
    a great guide which has been a big help,
    http://www.msexchange.org/articles-tutorials/exchange-server-2013/migration-deployment/planning-and-migrating-small-organization-exchange-2007-2013-part1.html.
    Once a user is migrated from Exchange 2007 to 2013, ActiveSync stops working properly. Email can be pulled to the device (Nokia Lumia 625 running Windows Phone 8) by performing a manual sync. But DirectPush is not working. The strange part is it's not affecting
    everyone who's been migrated. Anyone who is still on Exchange 2007 is not affected.
    At first I thought it was our wildcard certificate. 99% of our users are running Outlook 2013 on Windows 7 or higher but we do have a few terminal servers still running Outlook 2010. Outlook 2010 was giving us certificate errors. I realized it was the wildcard
    certificate. Rather than making changes to the OutlookProvider I simply obtained a new SAN certificate. Although that resolved the issues for Outlook 2010 users, ActiveSync was still a problem.
    Rebooting the phones and removing the email account from the user's device and re-adding it didn't resolve the issue either.
    Then I performed an iisreset on the CAS server. This didn't help either. I didn't know it at the time, but I was getting closer...
    I tried using the cmdlet Test-ActiveSyncConnectivity but it gave me the following error:
    WARNING: Test user 'extest_0d9a45b025374' isn't accessible, so this cmdlet won't be able to test Client Access server
    connectivity.
    Could not find or sign in with user DOMAIN.com\extest_0d9a45b025374. If this task is being run without
    credentials, sign in as a Domain Administrator, and then run Scripts\new-TestCasConnectivityUser.ps1 to verify that
    the user exists on Mailbox server EX02.DOMAIN.COM
    I started reviewing how Exchange 2013 proxied information from the CAS to the mailbox server and realized the issue may in fact be on the mailbox server.
    I performed an iisreset on the mailbox server and all of a sudden ActiveSync started working again. Awesome!
    I can't explain why. The only thing I can assume is when some users were migrated from 2007 to 2013 something wasn't being triggered on the Exchange 2013 side. Resetting IIS resolved the issue. I guess I'll have to do an IIS reset after I perform a batch
    of migrations. Disabling ActiveSync and re-enabling it for the affected users didn't help - only the IISRESET resolved the issue.
    If anyone has any information as to why this happens, please chime in. Also, if anyone knows why I can't run the Test-ActiveSyncConnectivity cmdlet, I'd appreciate the help.
    Thanks.

    Hi,
    In Exchange 2013, the Public Folder is changed to Public Folder mailbox instead of Public Folder in Exchange 2007 database.
    Due to the changes in how public folders are stored, legacy Exchange mailboxes are unable to access the public folder hierarchy on Exchange 2013 servers. However, user mailboxes on Exchange 2013 servers or Exchange Online can connect to legacy
    public folders. Exchange 2013 public folders and legacy public folders can’t exist in your Exchange organization simultaneously. This effectively means that
    there’s no coexistence between versions.
    For this reason, it’s recommended that prior to migrating your public folders, you should
    first migrate your all legacy mailboxes to Exchange 2013. For more information about migrating public folder from previous versions, please refer to:
    http://technet.microsoft.com/en-us/library/jj150486(v=exchg.150).aspx
    (Please note the What do you need to know before you begin part in this link)
    Regards,
    Winnie Liang
    TechNet Community Support

  • Since upgrade to iOS 7 Email error on over 100KB emails "Cannot Send Mail  The message was rejected by the server because it is too large." Connecting to Exchange via Activesync

    Hi,
    Following the upgrade to iOS 7.0.3 on all our iPhone and iPad devices, it has been identified that when sending emails around 100KB in size and over an error message appears on the device stating “Cannot Send Mail  The message was rejected by the server because it is too large.” See error message below. The send/receive limit is over 10MB so this is not the issue.
    We are in an Exchange Environment using Microsoft Activesync. This issue is not evident in iOS 6. This has been tested on an iPhone 3GS running version iOS 6.1.3. We have been unable to repeat the issues seen on iOS 7 on the older OS. It is not possible to roll back to the older operating system as Apple are no longer signing the software.
    We use Microsoft Active Sync to connect to our Exchange servers through a TMG. The issue is very inconsistent, some identical emails go through, some fail. This is not an issue with the send/receive limit as this is over 10MB. The error message when it fails on the TMG is Status: 413 Request Entity Too Large, which we believe is from IIS on the CAS server.
    Does anyone have any suggest course of actions to take?
    Many Thanks

    This resolution have to attend at the server not with the ios device. My employer's mail administrator reject me to correct it from the server. As his concern is, if ither ios devices works why don't mine? So I am helpless than changing my iphone. It works fine for early versions of ios and with androids. And also one of my friends iphone4 with ios 7 (similar as mine) works too. So I guess it's something wrong with my iPhones settings. But basic question I cannot understand is it works in my phone before this ios7 upgrading. And currently working with my yahoo account too. Favourable reply expected.

  • Unable to SEND mail using Activesync in Exchange 2010 server on iPhone or Windows Mobile 6.1

    Hi All,
    We've been setting up a new SBS 2011 server for a client this week. Everything is working, except the staff have 4 x iPhones to connect with Exchange ActiveSync.
    There are 2 x iPhone 4's and 2 x iPhone 3Gs's. We can setup the Exchange accounts on each of the phones and they are all able to sync mail and calender etc with the server.
    The problem we have is when any of them try to send mail from the phone, it gives an error : "Cannot Send Mail - An error occurred while delivering this message" and it sits in the outbox on the phone.
    The newsgroups and forums are littered with people having issues with IOS4 and Exchange 2010 but most of these are from June-August 2010 when IOS4 version was around 4.00 or 4.01
    A lot of these people had iPhone 3 handsets running with IOS 3.1.3 which worked with Exchange 2010 but when they upgraded to IOS 4, they had this problem sending mail.
    It seems that for most of them, the fix came in the form of IOS version 4.1 which fixed the send issue for them.
    We have a variety of Hansets and IOS versions (including an iPhone 3Gs running IOS 3.1.3) but are unable to send mail from any of them:
    iPhone 3Gs    IOS 3.1.3
    iPhone 3Gs    IOS 4.3.3
    iPhone 4       IOS 4.3.3
    iPhone 4       IOS 4.3.5
    I was surprised that the iPhone 3Gs running 3.1.3 was unable to send either as nearly all the forums etc I read with this issue said the iPhone 3's worked with that IOS version.
    Today we used a test iPhone 4 handset from our office to connect to an almost identical Small Business Server 2011 we setup two weeks ago for another client.
    The test iPhone 4 was able to connect, Sync and Send email on that server but when set it to connect to this SBS 2011 server, it gets the "Cannot Send Mail" message the same as the others. So clearly the handset is working (on the other server at least),
    it must be something misconfigured in this Exchange server right?
    We ran the Exchange Remote Connectivity Analyser on the Exchange server and got green ticks across the board.
    Outlook Web App and Outlook Anywhere both work normally. Everything we can test on the Exchange server works except sending from any iPhone.
    Having said all that, I just setup a Windows Mobile 6.1 handset to sync with the Exchange 2010 server as a test, and it appears to have the same issue.
    It will connect & Sync Mail, Contacts and Calendar but if trying to send an email from the phone, it will just sit in the outbox.
    Does anyone have some insight into what the problem may be?

    Further to this .. I found the solution on a MS Exchange 2010 support forum.
    It was not a certificate or firewall issue, looks as thought the “Accepted Domains” in Exchange Mgmt Console –
    Org Config – Hub Transport cannot have any spaces in the name field.
    I had some spaces and the emails were not downloading fully and able to send. Once I removed the spaces from the Name field and
    restarting the Exchange and IIS services emails were now being sent and received ok.
     Check
    out :
    http://social.technet.microsoft.com/Forums/en-US/exchangesvrmobility/thread/321eae51-9cbd-4a5e-85c1-68d8f7b523c3
     This
    is good one to add to your knowledge bank in case you come across it in the future.
    Rgds Gerry

  • IPhone and Ipad activeSync go crazy

    Hi all,
    We are experiencing strange problem with some users using iphone and Ipad in our company
    (We allow users to sync their professional mailbox on their iphone)
    i will try to be the clearest as possible:
    we have multiple exchange CAS server, our front CAS receive the information and send request to other CAS servers. recently we shut down a CAS server (exchange is still installed on it we only shut it down before uninstalling it)
    since this shutdown i have 2 colleague (for the moment) that are reporting this problem:
    when they refresh their mailbox, the iphone flush all downloaded mails in inbox and redownload everything ...... here is what i can find on my CAS server logs (it's a small exemple):
    2010-10-05 12:52:20 172.16.122.10 POST /Microsoft-Server-ActiveSync/default.eas User="USERID"&DeviceId=ApplxxxxxxxLA4S&DeviceType=iPhone&Cmd=Sync&Log=PrxTo:CAS SERVER2.DOMAINNAME.NET_ 443 DOMAIN\"USERID" 192.168.XX.XX Apple-iPhone3C1/801.293 200 0 0 93
    2010-10-05 12:52:22 172.16.122.10 POST /Microsoft-Server-ActiveSync/default.eas User="USERID"&DeviceId=ApplxxxxxxxLA4S&DeviceType=iPhone&Cmd=Sync&Log=PrxTo:CAS SERVER3.DOMAINNAME.NETError:NameResolutionFailure 443 DOMAIN\"USERID" 192.168.XX.XX Apple-iPhone3C1/801.293 500 0 0 15
    2010-10-05 12:52:22 172.16.122.10 POST /Microsoft-Server-ActiveSync/default.eas User="USERID"&DeviceId=ApplxxxxxxxLA4S&DeviceType=iPhone&Cmd=Sync&Log=PrxTo:CAS SERVER3.DOMAINNAME.NETError:NameResolutionFailure 443 DOMAIN\"USERID" 192.168.XX.XX Apple-iPhone3C1/801.293 500 0 0 31
    2010-10-05 12:52:22 172.16.122.10 POST /Microsoft-Server-ActiveSync/default.eas User="USERID"&DeviceId=ApplxxxxxxxLA4S&DeviceType=iPhone&Cmd=Sync&Log=PrxTo:CAS SERVER3.DOMAINNAME.NETError:NameResolutionFailure 443 DOMAIN\"USERID" 192.168.XX.XX Apple-iPhone3C1/801.293 500 0 0 15
    2010-10-05 12:52:22 172.16.122.10 POST /Microsoft-Server-ActiveSync/default.eas User="USERID"&DeviceId=ApplxxxxxxxLA4S&DeviceType=iPhone&Cmd=Sync&Log=PrxTo:CAS SERVER3.DOMAINNAME.NETError:NameResolutionFailure 443 DOMAIN\"USERID" 192.168.XX.XX Apple-iPhone3C1/801.293 500 0 0 15
    2010-10-05 12:52:22 172.16.122.10 POST /Microsoft-Server-ActiveSync/default.eas User="USERID"&DeviceId=ApplxxxxxxxLA4S&DeviceType=iPhone&Cmd=Sync&Log=PrxTo:CAS SERVER2.DOMAINNAME.NET_ 443 DOMAIN\"USERID" 192.168.XX.XX Apple-iPhone3C1/801.293 200 0 0 109
    2010-10-05 12:52:22 172.16.122.10 POST /Microsoft-Server-ActiveSync/default.eas User="USERID"&DeviceId=ApplxxxxxxxLA4S&DeviceType=iPhone&Cmd=Sync&Log=PrxTo:CAS SERVER4.DOMAINNAME.NET_ 443 DOMAIN\"USERID" 192.168.XX.XX Apple-iPhone3C1/801.293 200 0 0 46
    2010-10-05 12:52:23 172.16.122.10 POST /Microsoft-Server-ActiveSync/default.eas User="USERID"&DeviceId=ApplxxxxxxxLA4S&DeviceType=iPhone&Cmd=Sync&Log=PrxTo:CAS SERVER2.DOMAINNAME.NET_ 443 DOMAIN\"USERID" 192.168.XX.XX Apple-iPhone3C1/801.293 200 0 0 62
    2010-10-05 12:52:23 172.16.122.10 POST /Microsoft-Server-ActiveSync/default.eas User="USERID"&DeviceId=ApplxxxxxxxLA4S&DeviceType=iPhone&Cmd=Sync&Log=PrxTo:CAS SERVER2.DOMAINNAME.NET_ 443 DOMAIN\"USERID" 192.168.XX.XX Apple-iPhone3C1/801.293 200 0 0 46
    2010-10-05 12:52:23 172.16.122.10 POST /Microsoft-Server-ActiveSync/default.eas User="USERID"&DeviceId=ApplxxxxxxxLA4S&DeviceType=iPhone&Cmd=Sync&Log=PrxTo:CAS SERVER4.DOMAINNAME.NET_ 443 DOMAIN\"USERID" 192.168.XX.XX Apple-iPhone3C1/801.293 200 0 0 46
    2010-10-05 12:52:23 172.16.122.10 POST /Microsoft-Server-ActiveSync/default.eas User="USERID"&DeviceId=ApplxxxxxxxLA4S&DeviceType=iPhone&Cmd=Sync&Log=PrxTo:CAS SERVER2.DOMAINNAME.NET_ 443 DOMAIN\"USERID" 192.168.XX.XX Apple-iPhone3C1/801.293 200 0 0 62
    2010-10-05 12:52:23 172.16.122.10 POST /Microsoft-Server-ActiveSync/default.eas User="USERID"&DeviceId=ApplxxxxxxxLA4S&DeviceType=iPhone&Cmd=Sync&Log=PrxTo:CAS SERVER4.DOMAINNAME.NET_ 443 DOMAIN\"USERID" 192.168.XX.XX Apple-iPhone3C1/801.293 200 0 0 31
    2010-10-05 12:52:24 172.16.122.10 POST /Microsoft-Server-ActiveSync/default.eas User="USERID"&DeviceId=ApplxxxxxxxLA4S&DeviceType=iPhone&Cmd=Sync&Log=PrxTo:CAS SERVER2.DOMAINNAME.NET_ 443 DOMAIN\"USERID" 192.168.XX.XX Apple-iPhone3C1/801.293 200 0 0 46
    I'm not having the problem with my iphone 4 IOS 4.1 (8B117) but iphone with older firmware and ipad have the problem.
    pocketPC device don't have the problem ....
    Looks like the activesync profile in older IOS don't support to have a error 500
    if someone can help i will apreciate

    After uninstalling the exchange server it disappear from the Exchange domain the problem disappear .... problem solved .... and it was a Microsoft pb AHAH

  • Sending email using Exchange ActiveSync

    I had no problems setting up my first generation iPhone to connect to my employer's Exchange server using activesync. Autodiscovery worked fine, and email is pushed to me over a wifi connection (I am currently on vacation in a hotel in Mexico, so have only wifi, not cellular access).
    However, I cannot send email; as soon as I try I get 'Cannot Send Mail. An error occurred while delivering this message'. The message just sits in the outbox on my phone. It does not appear anywhere - the outbox, or anywhere else - on my desktop (mail.app via IMAP) view of the server.
    Anyone have any ideas?

    Never mind... it turns out that policies on the Exchange server were stopping me from sending any email because my account was over quota. The generic error message on the Phone was no help at all - but when I tried sending email from the Exchange Web Client, I got a more helpful error message, and was able to go clear out some old attachments, and now it all works.
    I'm away from my office at the moment, and using a 3rd party SMTP server for mail relay - and even at work, because I use SMTP to send email, I'm not sure that I get that error message (my account was well over quota, so this didn't happen recently, I don't think) - but because the iPhone is doing things 'the exchange way' it catches the error; it just doesn't do anything very helpful with it.

  • Error: there is a problem connection to the GPRS service in your registered home network, error trying to make data connection. this may be casued by a voice call, a wired activesync connection or inncorrect network setting

    like 2 weeks ago i called in to att to see how much is the data plan and it would end up costing $30.
    so i was like screw that. well they figured that i got a new phone replacing the LG shine. so they asked
    for to call this number so they can recieve data which would updated the system that i have a plam treo 750.
    ever since this conflict i can't send picture messages. i get that problem. everytime i attempt to send a picture
    i recieve this.
    - there is a problem connection to the GPRS service in your registered home network.
    - then i get a test that says error trying to make data connection. this may be casued by a voice call,
    a wired activesync connection or inncorrect network setting.
    please someone help me.
    btw. hard reset and soft reset did not work for me.
    Post relates to: Treo 750 (AT&T)

    problem fix, i had to call in. customer serivce. and when i called to ask about the plan. they blocked it. so i had to unblock my internet.
    Post relates to: Treo 750 (AT&T)

  • ActiveSync Tasks and Calendar

    I cannot seem to get ActiveSync(AS) to transfer all of my tasks and appoinments from my desktop to my Treo 750.  And...if I mark a task as completed on my Treo, it doesn't mark it completed on my desktop.  I have Active Sync 4.2 and Outlook 2000, therefore I can't install AS 4.5 unless I go to Outlook 2003 or above.  Should I try this?  Spend another $100 on an already $400 phone!!  I have already....
    Reinstalled AS
    Hard & soft reset multiple times
    Looked under my AS options as to which unit overides which.  It doesn't give me any ability to change any settings in my tasks.
    I am ready to go back to just having a plain phone and PDA!!
    Post relates to: Treo 750 (AT&T)

    I had the same problem.  Here is what worked for me.  Open the mail app and delete your exchange account (Settings > Delete Account).  Then re-add your Exchange account.  After this my Exchange contacts showed up again. 

  • How do I stop ActiveSync from deleting emails on server

    Hi, 
    We came across a problem where users are deleting emails from their activesync devices accidentally. We need to stop it besides providing them activesync facility.
    Is there any way we can restrict sync of email deletion from activesync devices so the sync from Device to Server remains disabled. What we want is 
    Server --> Device Sync Enable
    Device --> Server SYnc Disable
    Hasan

    Hi
    You will have to look at a POP3 account that leaves the mail on the server.
    I have not seen a setting in active sync that stop mail from being deleted. If you make a change on your phone it will update the mailbox.
    Mails will be in the deleted items. How are users "accidently" deleting mail when you actually have to press the delete/trash button?

  • Can I force mail to be sent in HTML format (ActiveSync, EX2010)

    We use a corporate disclaimer, signature, logo at the end of all our emails, but when emails are sent via iPhone, the recipient only receives a "?" in place of the signature.
    I'm assuming this is due to the message being sent out in either Rich Text or Plain Text. 
    Is there a way for me to have our corporate owned iPhones send messages in HTML so that this signature will appear in all outgoing email?  I have set my ActiveSync rules to allow HTML, but I'm thinking that is only for incoming, since this isn't working for me.
    I appreciate your help in advance.

    We are facing the same issue.  We have a transport rule that grabs the user's info out of Active Directory and populates the fields we tell it to and then adds an image of our company logo at the bottom.  We have looked at how other companies have done it and it seems like they are attaching several images to each message.  I would rather avoid that kind of overhead.
    The signature works fine in Outlook, but when Apple users send a message, the link for the image shows up as a link instead of the image.  If you use any html formatting in the email, it gets sent as html and the signature shows up fine.  I tested this by just changing some text to bold.  Several of our execs use iPhones and Macs and asking them to do this just to 'trick' it into html format isn't going to work.

  • How to configure ASA to allow activesync connections ?

    To allow Activesync connections (between smartphones and an internal Exchange server) thru an ASA, I think about 3 or 4 potential solutions :
    1) do a NAT on the Exchange server and allow  activesync TCP connections from any IP to the Exchange server : I tested that and this works, but it is not the most secure solution we can imagine;
    2) use a Clienless VPN SSL  ASA configuration : I tried it, but got problems certaintly related to the fact that the Activesync client, installed on my Android/Samsung smartphone, does not seem to be able vto pass properly thru the ASA Portal to reach the Exchange server;
    3) use an Anyconnect VPN ASA configuration : I tried it , but did not manage to install or use any of the Samsung Anyconnect client available on Android Market; by the way, I saw, in the Anyconnect VPN Client Admin Guide 2.4, that an ActiveSync MSI is available from CISCO (
    anyconnect-wince-ARMv4I-activesync-AnyConnectRelease_Number-k9.msi), but I don't see any details about how it is supposed to be used except that it is for Windows environment only, so, not for an Android phone, but I have Windows Mobile smartphones to integrate too, so, maybe it can help me in this case ;
    4) if Clientless nor Anyconnect solutions can't work, it might be better to use the ASA Cut-Through proxy function to get a more secure solution than the first one listed above; but I was not successful either with this cut-through proxy function
    Any ideas or examples about how to allow activesync connections thru ASA would be welcomed
    thanks in advance

    Hi,
    Generally ASA with CSC will support HTTP,FTP,SMTP,POP3 Scaning and Filtering.
    From version ASA IOS 8.4.2 and CSC  6.6.1125.0, it will support HTTPS filtering also.
    But here one limitation is that Https filtering will not support earlier versions of internet explorer 9, i.e if you want HTTPS filtering you must use Internet explorer 9 or after versions( As you know that Windows XP machines won't support internet explorer 9). But with firefox HTTPS filtering will support from versions 4.
    For your reference use below 8.4.2 release guide
    http://www.cisco.com/en/US/docs/security/asa/asa84/release/notes/asarn84.html
    Release notes for CSC version 6.6.1125
    http://www.cisco.com/en/US/docs/security/csc/csc66/release/notes/cscrn66.pdf
    Basic configuration of the CSC
    http://www.cisco.com/en/US/docs/security/csc/csc6.1.1569.0/administration/guide/cscappa.pdf
    Sending traffic to the CSC module (using ASDM and CLI)
    http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00808dea62.shtml
    The troubleshooting guide:
    http://www.cisco.com/en/US/docs/security/csc/csc63/administration/guide/csc8.html#wp1147829
    Hope this will help you...
    Do rate help ful posts..
    Regards,
    Janardhan

  • Can Exchange activesync be used for calendar and contacts without BES?

    I thought it could- just got a Z10 and am having trouble syncing with a cloud service that uses EAS Tech support just told me that I have to be on BES for that? Wasn't what I thought. Knowledge base article KB34208 "Sync time frame for calendar events when using a Microsoft Exchange ActiveSync connection " Says nothing about BES in the Environment section? http://btsc.webapps.blackberry.com/btsc/viewdocument.do?externalId=KB34208&sliceId=2&cmd=displayKC&d... Hoping guy was wrong- I really need to be able to get my desktop info onto phone and this is convoluted enough- syncing to cloud and then to phone but want to keep the phone (4th BB and a PB). Help please.

    you dont need BES10. you can do EAS directly from the device to the Exchange Server.
    zeki

  • Is it possible to only allow given MAC addresses to access ActiveSync in Exchange 2013?

    We are designing a new Exchange 2013 environment for a client and one of their requests was to only allow known mobile devices to access ActiveSync.
    I can see that you can allow or block remote devices based on IP Address, model, etc. but we'd need to allow devices based on their MAC Addresses.
    Is it possible to use the built-in features of Exchange 2013 or IIS ARR to provide this feature?
    Cheers for now
    Russell

    We are designing a new Exchange 2013 environment for a client and one of their requests was to only allow known mobile devices to access ActiveSync.
    I can see that you can allow or block remote devices based on IP Address, model, etc. but we'd need to allow devices based on their MAC Addresses.
    Is it possible to use the built-in features of Exchange 2013 or IIS ARR to provide this feature?
    Cheers for now
    Russell
    No, but you can use DeviceId.
    The ActiveSyncAllowedDeviceIDs parameter specifies one or more Exchange ActiveSync device IDs that are allowed to synchronize with the mailbox. A device ID is a text string that uniquely identifies the device. Use the
    Get-MobileDevice cmdlet to see the devices that have Exchange ActiveSync partnerships with the mailbox.
    To enter multiple values and overwrite any existing entries, use the following syntax:
    <value1>,<value2>.... If the values contain spaces or otherwise require quotation marks, you need to use the following syntax:
    "<value1>","<value2>"....
    To add or remove one or more values without affecting any existing entries, use the following syntax:
    @{Add="<value1>","<value2>"...; Remove="<value1>","<value2>"...}.
    https://technet.microsoft.com/en-us/library/bb125264(v=exchg.150).aspx
    Twitter!: Please Note: My Posts are provided “AS IS” without warranty of any kind, either expressed or implied.

  • ActiveSync issue for a single user

    Hello,
       We are finishing a migration to Exchange 2010 from 2007.  Everything is connecting fine so far for all users except one.  This user is the owner of the company, and a long time ago, like more than 20 years, instead of creating a copy
    of the Built-in administrator account, he renamed it for himself.
       Anyway, he is the only user that is unable to connect via ActiveSync.  The event viewer on the Exchange server says "User '[email protected]' cannot synchronize their mobile phone with their mailbox because Exchange ActiveSync has been
    disabled for this user.   But of course, in the EMC, it says that he is enabled, and I ran the command in the Management Shell to ensure it was enabled. 
       I did some research and found that checking the Include Inheritable Objects is supposed to help with this, but I did that and it still didn't work.  It also became unchecked again after a while. 
        I'm not sure where to go next at this point.  Every other mailbox on the server ActiveSyncs no problem.  It's just this one.
    Thanks.

    Create a new AD account for him that isn't a member of any built-in admin level groups and disconnect the existing mailbox and reconnect it to the new AD Account.
    Mail Enabling the admin account is just not going to work well in 2010/2013 or beyond and its not a good security practice to use it except for elevated tasks. Hopefully the owner appreciates that.
    You could mess with the AdminSDHolder stuff and allow the ActiveSync partnership to be created but I highly recommend against that.
    http://eightwone.com/2011/08/31/exchange-activesync-and-inheritable-permissions-issue/
    Twitter!:
    Please Note: My Posts are provided “AS IS” without warranty of any kind, either expressed or implied.

  • Calendar does not sync via ActiveSync. Mail and Contacts work fine.

    I recently started using ActiveSync to connect to my corporate Exchange server. Mail and contacts synchronize properly, but calendar items are not downloaded from the server. The iPhone can write to the calendar by adding a new appointment of accepting a new meeting request. I can also see the full list of calendars in my Exchange mailbox when using the iPhone. Simply put, the calendar items are the only part that's missing.
    My IT team has confirmed that calendar items will sync to Windows Mobile devices using ActiveSync.
    Here are the steps I've taken to solve the problem:
    1. I enabled and disabled calendar using the On/Off slider.
    2. I removed and reconfigured the Exchange account on the iPhone
    3. I confirmed that all calendar items in Exchange had the Message Class set to "IPM.Appointment"
    4. I restored the iPhone to factory settings and used a new test Exchange account to confirm that corrupted calendar items were not an issue.
    5. Confirmed that the capitalization of my e-mail address in the Exchange Account Info on the iPhone matches the primary SMTP entry in the Exchange GAL.

    Guys, I did a bit of research with my other iPhone/Exchange - buddies and this is what we found out:
    1. Friend sends me an calendar event from his PC / Exchange Account
    2. Calendar event displays as tentative on both my iPhone and on my PC / Exchange Account
    3. I accept the calendar event on my PC / Exchange Account
    4. Calendar event turns to "busy" on my PC / Exchange Account
    5. Calendar event disappears from my iPhone
    6. I double-click the event on my PC / Exchange Account and click "Accept" again
    7. Calendar event reappears on my iPhone
    Funny enough, this does not happen with all events - it seems to depend on the Exchange server and/or Outlook version in use. For those affected: Is your Exchange Server 2003 or 2007, and what version is the Exchange Server of the person who sent you the event in the first place?

Maybe you are looking for

  • Query working fine in 9i but throwing an error in Oracle 10g

    Hi All, I am having a query which contains large number of When clauses inside a case statement. The Same SQL is working fine in 9i, but not working in 10G. If we try to remove one of the When clause in the query, its working fine else it is giving t

  • Document displays ok in Acrobat 8 (Mac), but not in Acrobat X (Mac)

    I got a pdf document from a friend and, upon opening in X Pro (for Mac), at least 98% of the text is gone. Opening the exact same file in ver. 8 (for Mac), it displays properly. I've never encountered this problem before - any suggestions? Here's a s

  • How can I reboot my Ipad when I do not have access to the power off screen?

    My device slide off my couch while in its cover. IT was working afterwards, for about 5 min. I sat it down while I took something out of the oven and was back maybe 5min. or so later. When i try to access it, all I see is a black screen. I cannot unl

  • Unable to update iPhoto in my MacBook

    Hi Friends, My MacBookPro was previously used by a friend of mine and after I started using it I used to store my photos in iPhoto. Recently received an update for iPhoto and when tried it asks my the old user account password. So now I'm clear that

  • Dynamic Action in Apex - Select list to Text field

    Hi, I have two text items. Need to create dynamic action for the following, 1. Order_type - Drop down values having CONSUMER & WHOLESALE. 2. Order_number - Text field When a user selects CONSUMER, order number should automatically change to '1-' and