Dedicated APN, proxy and Exchange

Hi there,
In our company, we connect to our corporate network via a private (O2) APN. All internet access passes through our corporate proxy server. Using iPCU I have successfully setup devices to connect to our APN using our proxy. However, when proxy settings are deployed I can't receive corporate mail from Exchange and I can't find anywhere where I can enter proxy exceptions for the exchange server.
Has anyone had this problem and can you help? Note - this is using proxy over 3G and NOT WiFi.
If I remove the proxy settings from my mobileconfig profile Exchange mail can be happily sent and received although it is not then possible to access the internet.
Your help is greatly appreciated!

If anyone is interested in this, I have found a workaround but it is very messy...
Basically, if you setup your iPhone and back it up in iTunes and then edit the backup file - specifically the SystemConfiguration/preferences.plist - you can add proxy exceptions in there. You then need to reset all content and settings on device and then restore to the backup you have just edited to get those settings onto the phone.
Word of warning though - carrier updates prompted by iTunes appear to remove added exceptions if you accept them.
I hope that helps someone else.
Really though, it should be part of the iPhone Configuration Utility to just add proxy exceptions in.

Similar Messages

  • Plz add setting apn proxy and port in BlackBerry Q10

    In pakistan all cariers network setting must define proxy and Port number but I no see any thing in setting

    We ha e three threads ongoing with this same topic now.
    1. If any post helps you please click the below the post(s) that helped you.
    2. Please resolve your thread by marking the post "Solution?" which solved it for you!
    3. Install free BlackBerry Protect today for backups of contacts and data.
    4. Guide to Unlocking your BlackBerry & Unlock Codes
    Join our BBM Channels (Beta)
    BlackBerry Support Forums Channel
    PIN: C0001B7B4   Display/Scan Bar Code
    Knowledge Base Updates
    PIN: C0005A9AA   Display/Scan Bar Code

  • E-mail and Exchange Active Sync

    Planning on configuring E-mail in your Xperia phone? Or do you experiencing problems syncing your E-mails? If yes this might be the topic for you.
    Below you’ll find some guides on how to setup E-mail sync and troubleshoot any problems.
    POP3/IMAP
    POP4/IMAP E-mail accounts are the most commonly used. This guide will show you the steps of configuring your E-mail manually if your E-mail server doesn’t support auto setup. Please note that the Next button won’t be lit if you have typed an incorrect E-mail address containing characters or symbols that are not supported.
    Configuring POP3 or IMAP E-mail
    Go to the E-mail application and enter your E-mail address and password. Now press Manual setup.
    Chose the kind of E-mail server your provider is using. If uncertain check this with your E-mail provider.
    Under Incoming settings enter your username, password and server details. If you’re uncertain about these details contact your E-mail provider. But in general your username is the same as your E-mail address but some providers may use a specific user name for your account.
    Here you can also set if the server should delete the E-mails if you delete them in your phone. This setting is by default always set to Never.
    Next step is Outgoing settings. If your E-mail provider also has an SMTP server you can enter the details for sending E-mails here. This normally requires a sign-in on the SMTP server. If yes, check the Require sign-in box and enter your E-mail address and password. As above if you’re uncertain about any of these details contact your E-mail provider.
    If your E-mails provider lacks an SMTP server you can check if your network operator provides an SMTP server and use their details. Using your network operators SMTP generally doesn’t require sign-in.
    Now it’s time to set how and when to check for new E-mails. Set and check the options you desire.
    The last step of the setup is to enter an account name and your name (signature).
    Troubleshooting POP3/IMAP E-mail
    First make sure that you have a working Internet connection in the phone.
    You can download Internet and MMS settings for your phone by going to Setting > Xperia > Internet settings.
    If you have a working Internet connection but still not able to connect to your E-mail server or sync your E-mails check that no Proxy server within your APN settings may be blocking this. You can check this by going to Settings > More (Wireless & networks) > Mobile networks > APN or Access Point Names > Your Internet APN. Check if any details are set for Proxy and Proxy port. If yes you can try to delete them (temporarily) and save the APN. Now check if you’re able to connect or sync with your E-mail server.
    You can also verify suspected Internet connection issues by trying via a Wi-Fi network instead.
    E-mail disappearing?
    By default our E-mail application is set to only mirror the server. So if an E-mail on the server is deleted it will also be removed from the phone at the next sync.
    Syncing sent E-mail?
    This is not possible on POP3 configurations. To be able to sync sent E-mails in the phone you must have configured an IMAP or Exchange Active Sync account.
    Problem sending E-mail?
    If you’re not using the same SMTP server as network operator in your phone you might experiencing problems sending E-mail via mobile networks. If this is the case you can connect to a Wi-Fi network to send E-mail or check with your SMTP provider if the outgoing port can be encrypted.
    If none of the tips above helps you, you can try to download a third party E-mail application from Google Play store. This can be easy way to rule out where a specific problem may be located.
    Exchange ActiveSync
    Our Xperia phones come with the built-in Android native client for synchronizing your corporate E-mails, calendar and contacts. Here are some things worth double checking if you would experience any problems with Exchange sync.
    Begin with checking your sync account details and if you haven’t configured the Exchange ActiveSync account yet see the instructions bellow.
    Configuring a Exchange ActiveSync account
    Go to the E-mail application and enter your corporate address and password. Then press next.
    Don’t worry if the setup might fail at this point because most Exchange servers don’t have auto setup enabled. In this case just press Manual setup. Please note that the Next button won’t be lit if you have typed an incorrect E-mail address containing characters or symbols that are not supported.
    Now our E-mail application needs to know what kind of account you want to configure. Press Exchange ActiveSync.
    This will bring you to the incoming settings screen. Enter domain\user name, password and server address. If you’re uncertain about your details contact your IT department to check which credentials to use. You will also need to know if you should accept all SSL certificated or use a client certificate.
    When all details are correct you will have to setup how and when to sync. So enter and check the options you desire.
    When you see this screen the setup is complete.
    If your Exchange server requires certain security settings you might see the following pop-up after finishing the setup. If this is the case you must approve the security update in order to sync E-mail, calendar and contacts.
    Pressing OK will give you a screen showing you what permissions you need to give the E-mail application. These permissions/ security settings are set from the Exchange server and depend on your corporate IT policy.
    Troubleshooting Exchange Active Sync
    First make sure that you have a working Internet connection in the phone.
    You can download Internet and MMS settings for your phone by going to Setting > Xperia > Internet settings.
    If you have a working Internet connection but still not able to connect to your E-mail server or sync your E-mails check that no Proxy server within your APN settings may be blocking this. You can check this by going to Settings > More (Wireless & networks) > Mobile networks > APN or Access Point Names > Your Internet APN. Check if any details are set for Proxy and Proxy port. If yes you can try to delete them (temporarily) and save the APN. Now check if you’re able to connect or sync with your E-mail server.
    You can also verify suspected Internet connection issues by trying via a Wi-Fi network instead.
    ActiveSync protocol version
    You can check which Exchange ActiveSync protocols that are supported by your phone model in its white paper. http://developer.sonymobile.com/downloads/whitepapers/
    Compare this with your server to make sure they’re compatible.
    “SERVER REQUIRES UNSUPPORTED SECURITY FEATURES”
    If you get the error message above your Exchange server is using security settings which are not supported by the Android native Exchange ActiveSync application. Which security settings that your phone model supports depend on firmware version and phone model. If your company runs on security settings that the Android native mail application doesn’t support and you don’t plan to alter the security settings, an alternative is to download any of the dedicated Exchange ActiveSync applications from Google Play store.
    New meetings don’t sync?
    If you have entered a new meeting in the phone and it doesn’t sync make sure that the meeting has been put into the correct account. When creating a new meeting in the calendar application make sure that you’ve chosen your ActiveSync account as calendar when creating the meeting.
    How to use GAL (Global Address List)?
    In most of our models you can access the GAL by opening the contacts application and tap the search icon. This will search the Global Address List on your exchange server. Our mail application also searches GAL when typing something in the To: field. Unfortunately we don’t have any default support at the moment for browsing the complete Global Address List.
    For more information about what is supported by our Contacts, Calendar and E-mail applications please see this link (Xperia Z, Xperia ZL, Xperia ZR and Xperia Tablet Z). Or this link (Xperia Z1, Xperia Z ultra and Xperia Z1 Compact).
     - Community Manager Sony Xperia Support Forum
    If you're new to our forums make sure that you have read our Discussion guidelines.
    If you want to get in touch with the local support team for your country please visit our contact page.

    Hi and welcome to the community! Since you're new please be sure that you have checked out our Discussion guidelines.
    Are you sure that your account is really configured for the ActiveSync protocol? Because we've seen this occur only when using IMAP with Hotmail/Outlook.com.
    I suggest that you make sure that the account is configured as POP3 or EAS. Or use their own dedicated app.
     - Community Manager Sony Xperia Support Forum
    If you're new to our forums make sure that you have read our Discussion guidelines.
    If you want to get in touch with the local support team for your country please visit our contact page.

  • Active Directory Sites and Exchange 2013 Deployment

    I've recently took over responsibility of an Exchange 2013 Organization that is deployed as follows:
    Active Directory consists of 4 Sites. AD Site A, B, C, D  Exchange 2013 Enterprise resides in 2 of the 4 AD Sites as follows:
    AD Site A - ExchangeServer 1 and ExchangeServer 2
    AD Site B - Exchange Server 3
    AD Site C - No Exchange Servers
    AD Site D - No Exchange Servers
    All 4 AD Sites are 4 different Physical locations/datacenters. All 3 Exchange 2013 servers are multi-role servers.
    The Forest in which Exchange resides in consists of an empty Root domain, a Production (child) domain and a Test (child) domain. Exchange resides in the Production (child) domain.
    Issue: AD Site A contains DC's from all 3 domains: Root Domain, Production child Domain (this is where Exchange lives) and Test child Domain. I notice that Exchange in AD Site A is using DC's from the Root Domain for it's "DefaultGlobalCatalog",
    "DefaultConfigurationDomainController" and "DefaultPreferredDomainControllers" This to me does not seem to be very efficient as any Address Book queries will have to be referred to by the Root Domain DC's to the Production child domain
    where Exchange lives. All of the AD User accounts and mailboxes are in the Production child domain.
    In a situation such as this, would it be advisable to build 2 additional AD sites specifically for Exchange? Rather than re-IP Exchange or risk the impact of moving several other (non exchange) servers to another AD site, I would add the IP address
    of the Exchange servers /32 to the new Exchange dedicated AD Sites and erect a DC in these new sites adding its IP address /32. Any thoughts on this idea? If the subnet that exchange resides on is (for example) 10.60.3.0 /16 in AD Site A, and
    I build a new AD site for Exchange and add the IP address of the Exchange server such as 10.60.3.141/32 for this new Exchange AD Site boundary, I can still leave the 10.60.3.0 /16 unaffected in AD Site A, correct?
    I'm looking for Microsoft's best practices in terms of laying out AD and domain controllers pertaining to Exchange server 2013.

    Hi Anthouyray,
    Thank you for your question.
    We could use the following command to exclude domain controller which is root domain controller:
    Set-ExchangeServer –Identity  <exchange servername> -StaticExcludeDomainControllers <root domain controller>
    Then we could restart the service of “Microsoft Exchange Active Directory Topology” to check if the issue persist.
    If there are any questions regarding this issue, please be free to let me know.
    Best Regard,
    Jim
    Please remember to mark the replies as answers if they help, and unmark the answers if they provide no help. If you have feedback for TechNet Support, contact [email protected]
    Jim Xu
    TechNet Community Support

  • Exchange 2003 and Exchange 2010 Coexistence Activesync Issue

    Hello,
    I am currently on the progress of migrating mails from Exchange 2003 SP2 to Exchange 2010 SP3. Before I can do actual migration, I need to make sure that OWA and Activesync works when Exchange 2010 becomes Internet facing.
    Right now Exchange 2003 is Internet facing while Exchange 2010 is internal LAN only. OWA login from Exchange 2010 to a mailbox in Exchange 2003 works fine. However, trying to open a mailbox in Exchange 2003 from Exchange 2010 Activesync fails.
    Activesync login from Exchange 2010 to a mailbox in Exchange 2010 works fine, as well as logging in from Exchange 2003 to mailbox in Exchange 2003.
    Tests using AccessMyLAN ActiveSync Tester using Exchange 2010 as entry point are inconclusive. The test shows the app successfully contacting ActiveSync version 6.5 which is Exchange 2003, but results in "Activesync detected, but not correctly configured."
    Tests using Test-ActiveSyncConnectivity from Exchange 2010 reveals Error HTTP 400 when contacting Exchange 2003. The cmdlet also shows it successfully contacting Activesync version 6.5 (Exchange 2003).
    I have searched around, installed hotfix KB937031, enabled Integrated Windows Authentication on Exchange 2003 Microsoft-Server-Activesync, disabled Require SSL for Microsoft-Server-Activesync and exchange-oma, yet I still can't connect to a mailbox inside
    Exchange 2003 through ActiveSync 2010. Website Multiple Identities for port 80 has been set correctly. Exchange 2003 has Forms-Based Authentication Enabled and is the one thing we haven't tried disabling yet.
    We want to make sure everything works first, then make Exchange 2010 Internet facing, and finally do the mail migration. We do not want to migrate everyone in a single sitting. Please if anyone have ideas any help is welcomed!

    Exchange 2010 will proxy ActiveSync for Exchange 2003.  For OWA, it will redirect, so you need a legacy redirect URL.  You can test all of this internally without changing your Internet connection.  For ActiveSync you can use a WiFi connection.
    Ed Crowley MVP "There are seldom good technological solutions to behavioral problems."

  • Direct Connection ABAP Proxy and Java Proxy possible ????

    Hi Folks ,
    As i read as direct connection possible between 2 SAP systems only ..
    and also i read as WS Direct Connection u2013 (Java) ..
    What it means ?? is it ABAP Proxy to Java Proxy using Direct connection ??  Like Java Client Proxy and ABAP Server proxy
    I am not clear on this.. Could you please explain or help me on this . ??
    Siva..

    Hi ,
    +You can do both for java proxies as well Abap proxies.+
    As per the following points
    1. Point-to-point connection is a new capability available with SAP NW PI 7.1. It allows applications or systems to send messages using WS-RM without going through a middleware, e.g. PI, but still using a centralized tool to design and
    configure the interfaces and connection properties.
    2. SAP XI 3.0/PI 7.00 or higher releases can be licensed based on the total volume of messages in
    gigabytes (GB) that is processed per month. The size of the payload is determined in the integration
    server. The information is then aggregated according to sender and receiver system.
    Question :
    1. If Message exchange between 2 SAP applications using direct connection .. Then dont we need to consider about licencing cost for volume of messages per month ?
    2. So if i use ABAP Client Proxy to Java Server proxy  scenario.. can i use direct connection  ? Eg., SAP ECC to java application ?
    In both the cases PI Runtime is not required  .. Am i right ?
    Please clarify..
    Siva..

  • Exchange 2007 and exchange 2010 Federation

    Hi all I am trying to federate between Three organisations
    org A exchange 2007 with exchange 2010 cas
    org B exchange 2010.
    org C exchange 2010.
    I cannot share my calendar from org A to Org B
    I can share Org B to Org A and Org B to Org C.
    when I try from Org A to Org B or Org C
    When I try to share free/busy fro the exchange 2007 with exchange 2010 cas. The user gets an error
    "calendar sharing is not available with the following entries because of permission settings on your network."
    -availabilityaddressspace. Autodiscover works TXT works. I have added a user from Org B as a contact in exchange.
    The exchange 2010 server is not the CAS server for the exchange environment and I is not a proxy for exchange 2007. Is this where I am failing ?
    Heeeelp

    Hi Nigel,
    How is the impact, just one user or all users, Outlook or OWA?
    If just one user, it seems like an issue on the Outlook Client side.
    Please trying to re-create new profile to fresh the caches.
    Please runing Outlook under safe mode to avoid some AVs, add-ins and firewall.
    Found a similar thread for your reference:
    Calendar Sharing not available error message
    http://social.technet.microsoft.com/Forums/exchange/en-US/d9b33281-d7bb-4608-8025-16fb26643d0d/calendar-sharing-not-available-error-message?forum=exchangesvrclientslegacy
    Hope it is helpful
    Thanks
    Mavis
    Mavis Huang
    TechNet Community Support

  • Server name, port from OSB proxy and BPEL processes

    How do I read the server name, port and any other server related information from OSB proxy and BPEL processes?

    http://www.experts-exchange.com/Software/Server_Software/Application_Servers/Java/BEA_WebLogic/Q_24480613.html
    ObjectName service = new ObjectName("com.bea:Name=RuntimeService,Type=weblogic.management.mbeanservers.runtime.RuntimeServiceMBean");
    InitialContext ctx = new InitialContext();
    MBeanServer server = (MBeanServer)ctx.lookup("java:comp/env/jmx/runtime");
    ObjectName rt = (ObjectName)server.getAttribute(service,"ServerRuntime");
    System.out.println("Server Name : "+server.getAttribute(rt,"Name"));
    System.out.println("Server Address : "+server.getAttribute(rt,"ListenAddress"));
    System.out.println("Server Port : "+server.getAttribute(rt,"ListenPort"));
    ctx.close();
    By the way, it tool 10 seconds on google ...

  • CSS and Exchange Mobile ActiveSync not working

    I have a question relating to a CSS and Exchange Mobile devices The customer has 2 Exchange Client Access Servers CAS1 and CAS2 and has problems with ActiveSync on mobile devices. (OWA is working fine) I am trying to test Exchange ActiveSync (using the Microsoft test site https://www.testexchangeconnectivity.com) When I perform an ‘Exchange ActiveSync Autodiscover’ it works fine, but when I use the test ‘Exchange ActiveSync’, it fails Has anyone had this problem before or can suggest a fix please http://mobile.thamesriver.co.uk The config is underneath Any help would be appreciated Kind Regards Tony !*********************** SSL PROXY LIST *********************** ssl-proxy-list TRC_List   ssl-server 10   ssl-server 10 vip address x.x.x.x   ssl-server 10 cipher rsa-with-rc4-128-md5 x.x.x.x 80   ssl-server 10 rsakey myrsakey   ssl-server 10 rsacert myrsacert   active !************************** SERVICE ************************** service mobile1   ip address 10.1.230.200   keepalive type tcp   protocol tcp   port 80   active service mobile2   ip address 10.1.230.201   keepalive type tcp   protocol tcp   port 80   active service CASservice1_HTTP   protocol tcp   port 80   keepalive type tcp   ip address 10.1.230.200   string cashttp1   active   service CASservice2_HTTP   protocol tcp   port 80   keepalive type tcp   ip address 10.1.230.201   string cashttp2   active   service CASservice1_EPM   protocol tcp   port 135   keepalive type tcp   ip address 10.1.230.200   string EPM1   active service RPC_Address1   port 59533   keepalive type tcp   ip address 10.1.230.200   protocol tcp   active service RPC_Address2   port 59533   keepalive type tcp   ip address 10.1.230.201   protocol tcp   active service RPC_Mailbox1   protocol tcp   keepalive type tcp   ip address 10.1.230.200   port 59532   active service RPC_Mailbox2   protocol tcp   keepalive type tcp   ip address 10.1.230.201   port 59532   active service ssl_module1   keepalive type none   add ssl-proxy-list TRC_List   type ssl-accel   slot 3   active !*************************** OWNER *************************** owner TRC   content AuthHead     add service mobile1     add service mobile2     vip address x.x.x.x     protocol tcp     port 80     url "//mobile.thamesriver.co.uk/Microsoft-Server-ActiveSync"     active   content EPM     balance aca     add service CASservice1_EPM     add service CASservice2_EPM     protocol tcp     port 135     url "/*"     vip address x.x.x.x     advanced-balance sticky-srcip     sticky-inact-timeout 1     active   content OWA     balance aca     add service CASservice1_HTTP     add service CASservice2_HTTP     protocol tcp     port 80     url "/*"     vip address x.x.x.x     advanced-balance sticky-srcip-dstport     active   content RPC-Address     balance aca     add service RPC_Address1     add service RPC_Address2     port 59533     protocol tcp     advanced-balance sticky-srcip     vip address x.x.x.x     active   content RPC-Mailbox     balance aca     add service RPC_Mailbox1     add service RPC_Mailbox2     advanced-balance sticky-srcip     vip address x.x.x.x     port 59532     protocol tcp     active     content ssl-rule     vip address x.x.x.x     protocol tcp     port 443     add service ssl_module1     active !*************************** GROUP *************************** group RDP   add service TSservice1   add service TSservice2   add service TSservice3   add service TSservice4   add service TSservice5   add service TSservice6   add service TSservice7   vip address 172.26.100.190   active group WWW   add service CASservice1_HTTP   add service CASservice2_HTTP   vip address x.x.x.x   active TRC_CSS#

    duh!
    I'll try that again....
    I have a question relating to a CSS and Exchange Mobile devices
    The customer has 2 Exchange Client Access Servers CAS1 and CAS2 and has problems with ActiveSync on mobile devices.
    OWA is working fine
    I am trying to test Exchange ActiveSync (using the Microsoft test site https://www.testexchangeconnectivity.com) I perform an ‘Exchange ActiveSync Autodiscover’ it works fine, but when I use the test ‘Exchange ActiveSync’, it fails
    When
    Has anyone had this problem before or can suggest a fix please
    http://mobile.thamesriver.co.uk config is underneath
    The
    Any help would be appreciated
    Kind Regards Tony
    !*********************** SSL PROXY LIST ***********************
    ssl-proxy-list TRC_List
      ssl-server 10
      ssl-server 10 vip address x.x.x.x
      ssl-server 10 cipher rsa-with-rc4-128-md5 x.x.x.x 80
      ssl-server 10 rsakey myrsakey
      ssl-server 10 rsacert myrsacert
      active
    !************************** SERVICE **************************
    service mobile1
      ip address 10.1.230.200
      keepalive type tcp
      protocol tcp
      port 80
      active
    service mobile2
      ip address 10.1.230.201
      keepalive type tcp
      protocol tcp
      port 80
      active
    service CASservice1_HTTP
      protocol tcp
      port 80
      keepalive type tcp
      ip address 10.1.230.200
      string cashttp1
      active
    service CASservice2_HTTP
      protocol tcp
      port 80
      keepalive type tcp
      ip address 10.1.230.201
      string cashttp2
      active
    service CASservice1_EPM
      protocol tcp
      port 135
      keepalive type tcp
      ip address 10.1.230.200
      string EPM1
      active
    service RPC_Address1
      port 59533
      keepalive type tcp
      ip address 10.1.230.200
      protocol tcp
      active
    service RPC_Address2
      port 59533
      keepalive type tcp
      ip address 10.1.230.201
      protocol tcp
      active
    service RPC_Mailbox1
      protocol tcp
      keepalive type tcp
      ip address 10.1.230.200
      port 59532
      active
    service RPC_Mailbox2
      protocol tcp
      keepalive type tcp
      ip address 10.1.230.201
      port 59532
      active
    service ssl_module1
      keepalive type none
      add ssl-proxy-list TRC_List
      type ssl-accel
      slot 3
      active
    !*************************** OWNER ***************************
    owner TRC
      content AuthHead
        add service AuthHead1
        add service AuthHead2
        vip address x.x.x.x
        protocol tcp
        port 80
        url "//mobile.thamesriver.co.uk/Microsoft-Server-ActiveSync"
        active
      content EPM
        balance aca
        add service CASservice1_EPM
        add service CASservice2_EPM
        protocol tcp
        port 135
        url "/*"
        vip address x.x.x.x
        advanced-balance sticky-srcip
        sticky-inact-timeout 1
        active
      content OWA
        balance aca
        add service CASservice1_HTTP
        add service CASservice2_HTTP
        protocol tcp
        port 80
        url "/*"
        vip address x.x.x.x
        advanced-balance sticky-srcip-dstport
        active
      content RPC-Address
        balance aca
        add service RPC_Address1
        add service RPC_Address2
        port 59533
        protocol tcp
        advanced-balance sticky-srcip
        vip address x.x.x.x
        active
      content RPC-Mailbox
        balance aca
        add service RPC_Mailbox1
        add service RPC_Mailbox2
        advanced-balance sticky-srcip
        vip address x.x.x.x
        port 59532
        protocol tcp
        active
      content ssl-rule
        vip address x.x.x.x
        protocol tcp
        port 443
        add service ssl_module1
        active
    !*************************** GROUP ***************************
    group RDP
      add service TSservice1
      add service TSservice2
      add service TSservice3
      add service TSservice4
      add service TSservice5
      add service TSservice6
      add service TSservice7
      vip address 172.26.100.190
      active
    group WWW
      add service CASservice1_HTTP
      add service CASservice2_HTTP
      vip address x.x.x.x
      active
    TRC_CSS#

  • RWS.Proxy and ECP.Proxy health checks, localhost, and SSL

    RWS.Proxy and ECP.Proxy health sets are both failing. In both of the errors, I find the following:
    [000.000] Starting HTTP request task
    [000.000] Waiting 59000 ms
    [000.000] Issuing GET against https://localhost/ecp/
    [000.000] Awaiting GET response
    [000.000] Performing SSL validation
    [000.000] Performing SSL validation
    [000.000] Failed with exception: The underlying connection was closed: An unexpected error occurred on a receive.
    [000.000] Starting HTTP request task
    [000.000] Waiting 59000 ms
    [000.000] Issuing GET against https://localhost/ecp/ReportingWebService/
    [000.000] Awaiting GET response
    [000.000] Performing SSL validation
    [000.000] Performing SSL validation
    [000.000] Failed with exception: The underlying connection was closed: An unexpected error occurred on a receive.
    We require SSL on all connections. We use a third party certificate with multiple SANs. Since the probe is trying to use https://localhost, it fails because the name doesn't match.
    I figure I have a few options: first, is there a way to change the URL that the probe uses to check. This seems to me to be the 'rightest' way I could fix this. Second could I alter the binding of the site so that the localhost hostname uses a dedicated,
    self signed, trusted cert? Last, is there any way to simply disable the specific probes? We're a single server low volume setup and I'm not convinced that I need the probes anyway.
    IS this a common issue? Outside of the warnings that SCOM throws at me, it is also causing a large volume of logs to be generated.
    Justin Cervero - MS Enterprise Admin - Appalachian State University

    Hi,
    I am afraid it’s hard coded. Just like the “Test-Outlookwebsiervices” command, it will also try the “localhost” and reports errors about certificate host name mismatch issue.
    We can safely ignore this report.
    Thanks,
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact
    [email protected]
    Simon Wu
    TechNet Community Support

  • Unable to uninstall or remove ADFS Service Proxy and Web Agents from Server 2012

    I have a Server 2012 machine that's a primary host for company websites. An inexperienced developer (with FAR more access than he should've had; yes, epic fail) was able to install ADFS Service Proxy and ADFS 1.1 Web Agents (for SAML) on the server. He didn't
    complete the configuration, realizing he'd over stepped his boundaries. He did install the rollup update 3 to ADFS though. However, now I'm unable to uninstall the components. It's not listed in the updates and the option to remove from Roles/Features is grayed
    out.
    Any help would be awesome!

    Hi,
    Thank you for your sharing!
    Your post is very beneficial to other people who have similar issues.
    Please feel free to let us know if you encounter any issues in the future.
    In addition, here is a dedicated ADFS forum below:
    Claims based access platform (CBA), code-named Geneva Forum
    http://social.msdn.microsoft.com/Forums/vstudio/en-US/home?forum=Geneva
    Best Regards,
    Amy

  • Using IIS AAR as a reverse proxy for Exchange 2010 & Lync 2013

    hi
    i am planning to use IIS AAR as reverse proxy solution for both Exchange 2010 & Lync 2013 . need clarifications on the below.
    Is it production ready proof solution of using IIS AAR as a reverse proxy solution , if yes what is the sizing considerations for the same.
    Can we have exchange reverse proxy and lync reverse proxy on the same IIS ARR server.
    Is there any special consideration(license/certificates/cal licenses) needs to be taken care while using this solution
      4.  Deployment Guide available?

    hi steve.. thanks for reply..
    1 have gone through that.. however having both exchange & lync reverse proxy on single server is unanswered and the reason for having this in exchange forum is to have consideration from exchange prospective as well ... 
    I am also wondering this.  Can both exist on the same set of proxy servers?  I also plan to have a load balanced solution.  Has anyone had any luck with doing that?

  • Upgrading from SBS 2008 and Exchange Server 2007 and Adding Modest Failover Protection

    I haven't seen anyone describe this scenario, so maybe it can't be done, but it seems it should work. Can someone either confirm this is viable or set me straight and tell me it's not wise (and if not, why not).
    I currently have SBS 2008 (2008 Server + Exchange Server 2007 + some other components). I use redirected folders so all my user data is stored primarily on the server, and then sync'd with their local harddrives for roaming use and as an additional
    backup precaution. I want to upgrade to a modern version of Exchange (don't care too much about the underlying server OS, but seems like a good time to upgrade everything). I also want to improve the reliability for rapid recovery in the event of a system
    failure. I have always felt nervous with SBS because it only runs on a single server.
    My plan is:
    Install Windows Server 2012 Standard on a new server machine
    Join that new server to the existing SBS domain and sync the users, etc.
    Install Exchange Server 2013 on the new 2012 Server
    Migrate the existing Exchange data and account info to the new server
    Demote the SBS Server and promote the new server to primary DC
    Reformat the old SBS server and install Windows Server 2012 on it too, and join it to the domain as a second DC
    Set up DFS Replication and keep all my user data folders between the two servers (so if one server fails, the other can take over, just not automatically like with a cluster)
    Install Exchange Server 2013 on the reformatted 2012 Server box (so second instance on the domain) and set it up to sync with the first Exchange Server 2013 via DAG (so if either computer crashes, the other can take over for both Exchange Server and file
    services)
    Wouldn't that give me a complete slow-response failover system without the need for setting up a cluster (I know a cluster would provide instant failover protection, but I don't need that kind of speed - a manual switchover in the rare event of a server
    failure is acceptable for us)? I could do this using cheap hardware for each server, because unless both servers fail at the same time, clients can point to the other server. And because it's not a formal cluster, I don't need to buy anything for a shared
    SAN. This seems like such an obvious more cost-effective solution for a small network, I don't understand why this isn't a common approach, which makes me wonder if there is some reason it won't work.
    Any suggestions or feedback? Are Redirected Folders still recommended for users on a Server 2012-based domain?
    Thanks,
    Colin
    Colin

    Ed, thanks again for your help. OK, so here's my updated plan (I realize I should probably check on some of these pieces on the Server group, instead of this Exchange group).
    Constraints/objectives:
    None of the machines are truly server grade hardware, but only 5 people on the network, so performance is generally not an issue, unless a given server is just pegged on CPU or HD due to its own internal maintenance tasks and can't respond to user requests.
    Haven't seen any problems, since upgrading server from 4GB RAM to 8GB a few years ago.
    Not going to buy any new hardware at this time, but do have several unused consumer-grade computers I can deploy as wimpy or moderate servers.
    Main issue is to limit repair time in the event of a system failure (instant failover is not required, but want to be able to restore network functions within less than 24 hours in the event of a hardware failure) and minimize time spent on IT
    maintenance.
    Because of light IT maintenance (not anyone's primary job and we're too small to justify a dedicated IT person or to pay for outside help), almost every touch takes me research and time to re-learn what I haven't done in weeks, months, or years -- so also
    want to keep all IT tasks as simple as possible.
    We philosophically want to invest now for the next 5 years and avoid ongoing cloud fees (so zero interest in Windows Server Essentials with Exchange Online)
    A little nervous about using VM's, just because I never have before, but I do respect that's probably the right way to do many of these things...
    Currently I have SBS 2008 (Windows Server 2008 R2, Exchange Server 2007, WSUS 3, all with latest SP's, also includes SharePoint and other stuff, but I don't really care about most of it) on a single 8GB consumer grade system, which functions as a file
    server and Exchange server. We use Redirected Folders and Offline files for all users, which works great for us and provides additional file redundancy (if server goes down, all of each user's files are also on their own machine and they can even continue
    to work just fine w/o the server, losing only ability to send and receive e-mail). It has been sufficient, but I want to upgrade our version of Exchange and I am nervous that if that current one server fails, it would take me a long time to restore everything
    from backup, easily many days, especially if I need to buy any replacement hardware. It is RAID1, so a single drive failure is easy to handle, but that's the only hardware redundancy for the current server.
    New Plan:
    Install Windows Server 2012 R2 Standard on a new modest machine (16GBR RAM, Core i7, 1TB RAID1 (may upgrade to 3 or 4 TB), 256 GB SSD boot drive, this had been my old personal computer)
    Join that new server to the existing SBS domain (2008 R2/Exchange 2007), make it a DC, sync the users, etc.
    Install Windows Server 2012 R2 Standard on a wimpy computer (4GB RAM Core i3 processor), leave it as a member server
    Install Exchange Server 2013 on the wimpy new 2012 R2 Server (and nothing else, this will be dedicated to Exchange to make the most of such a wimpy machine)
    Migrate the existing Exchange data from the old SBS Exchange 2007 server and account info to the new server
    (or should I just create new accounts and copy the data from the user end through Outlook -- is that safer and cleaner than attempting any kind of server-level Exchange data migration?)
    Demote the old SBS Server and promote the new 16GB server to primary DC. Now it's OK to take the old SBS server off the network.
    Reformat the old SBS server and install Windows Server 2012 R2 on it too, and join it to the domain as a second DC (and possibly DCPROMO it to be the main server)
    Install Exchange Server 2013 in a VM on the reformatted 2012 R2 Server box (so second instance on the domain for Exchange redundancy) and set it up to sync with the first Exchange Server 2013 via DAG OR set up another physical wimpy member server and install
    it there. In any case, do NOT install Exchange directly on either DC.
    Set up DFS Replication or a Failover Cluster (still need to research this, but I had planned on DFS, thinking Cluster required shared drive, but Ed corrected me on this) between the two DC's for redirected files and keep all my user data folders between
    the two servers. We don't need automatic failover, like with a cluster, a manual switch would be acceptable, but if no additional cost or risk to clustering the two DC's, then the auto-failover protection that provides would be better than DFS.
    I think this incorporates all of your points, Ed. Does this sound right now? What's your advice on #5 (how to best migrate user data)?
    Thanks so much for all your help,
    Colin

  • Need in depth knowledge about Certficate request and install for Reverse proxy and CAS role

    Hi,
    I have few confusions about Exchange 2010/13 certificate request and install. As per my understanding best practise is to assign public CA certificate to Reverse proxy and Local CA certificate to CAS servers but need to know that what should be the format
    of certificate request? Do we need to order public certificate just for mail.domain.com and add SAN for other web services URLs and is it required to add CAS array and server names to this certificate ? In what case we will add server names and what will happen
    if we don't add in it ? How the outlook clients connecting from internet will be using this certificate? I have very limited knowledge in certificates and it always pisses me off. Please help me with explanations and articles. I tried to google and gone through
    many articles but didn't get a fair idea. Thanks in advacnce. :) 

    Hi,
    Here are my answers you can refer to:
    1. Use the New-ExchangeCertificate cmdlet to generate a new certificate request:
    New-Exchangecertificate -domainname mail.domain.com, autodiscover.domain.com -generaterequest:$true -keysize 1024 -path "c:\Certificates\xxxx.req” -privatekeyexportable:$true –subjectname "c=US o=domain.com, CN=server.domain.com"
    2. CAS array name doesn’t need to be added in the certificate:
    http://blogs.technet.com/b/exchange/archive/2012/03/23/demystifying-the-cas-array-object-part-1.aspx
    3. It depends on the situation that you configured to add the server name.
    4. Outlook clients use certificate for authentication.
    If you have any question, please feel free to let me know.
    Thanks,
    Angela Shi
    TechNet Community Support

  • Reverse Proxy and OWA

    Hi,
    Setup:
    3 CAS servers - Exchange 2010
    1 IIS ARR reverse proxy
    I followed these two
    1 2 write-ups on how to setup Exchange 2010 OWA to use IIS ARR as a reverse proxy. The problem I'm having is
    when all three servers are online in the server farm OWA doesn't work properly. You can log in fine, but it appears to not load fully and you can't click on anything (eg Calendar, emails, forward, reply, etc). If I were to take all the servers offline except
    for one (doesn't matter which one), OWA functions normally.
    Since some users also access OWA internally I have configured IIS on each CAS server to redirect to HTTPS and the OWA virtual directoy. I don't think this is causing the problem, but I thought I should mention it.
    I followed the articles exactly. I'm not sure what could be causing the problem.
    Thanks

    Hi,
    According to your description, there may be some problem on the configuration of your IIS ARR.
    Thus, let’s troubleshoot ARR using Failed Request Tracing Rules to find the root cause.
    For the detail steps, please refer to the following article:
    http://www.iis.net/learn/troubleshoot/using-failed-request-tracing/using-failed-request-tracing-rules-to-troubleshoot-application-request-routing-arr
    And we can also check if the URL rewrite rules are working as expected:
    For more steps, please refer to the partition named Verifying if the above rules are working as expected in the reference below:
    http://blogs.technet.com/b/exchange/archive/2013/08/05/part-3-reverse-proxy-for-exchange-server-2013-using-iis-arr.aspx
    Thanks,
    Angela
    Angela Shi
    TechNet Community Support

Maybe you are looking for

  • How to i get m3u's to show up in the music section like they did before?

    Now when you try to play an m3u it starts in the internet songs section instead of the music section like it did before, is there any way to revert it  back to opening in the music section instead?

  • Target_blank vs window.open

    I have a series of links in which I would like to open into a new page but when trying it out on a different computer it seems that the "window.open" behavior doesn't work on older browsers without Java (?) and it opens a new window but does not keep

  • Is server authentication mandatory for using SSL?

    Is server authentication mandatory for using SSL sockets, or is there a way around it? In other words, how can I take advantage of SSL sockets without dealing with any kind of certificates? Do I have any other options?

  • Opening two PDF's

    I have two monitors and when I open one pdf it opens on my second monitor which is where I want it to open. But when I have one pdf open and want to open a second pdf it opens on my other monitor. I want the pdf's to open on the same monitor just sta

  • [SOLVED]Xfce4 slowed down after backup

    I have Xfce4 and something went wrong with it after making backup on the external drive. It is very slow now, it takes 15 seconds to open something i clicked, the mouse pointer is OK, also the clock. How to fix this? If i damaged system files, how to