Exchange 2013 with CU3 and silent redirection to different AD site

After updating
Exchange 2013 CU2 to Exchange 2013 CU3, OWA silent site redirection feature become not available. The customer has two Exchange 2013 sites. Before we updated to CU3, user whose mailbox located on site A, could be automatically redirected to OWA on
site A, after he logged on to OWA on site B. IE gives Error page and bring out link to the OWA page on site A. Here is screenshot about issue workaround.
Hopefully someone will help with some hint because it is quite anoying.
All other stuff works good, Outlook anywhere, autodiscover, only this remained.
Thanks in advance,
Fajar

Hi Angela,
According to your description, OWA request cannot be automatically redirected after upgrade.
YESS after upgrade Exchange 2013 CU2 to CU3. CU2 not problem.
1. Will OWA work well if you manually click the OWA URL  in the web page?
If i click manual, OWA Url in web page, OWA work well...
PS Command "Get-OWAVirtualDirectory | fl CrossSiteRedirectType"
ONLY HAVE ON EXCHANGE 2010 NOT ON EXCHANGE 2013.
2. Do you can login OWA in site A?
My Mailbox on Site-A, if i login OWA Site A (owa-A.domain.com), OWA work well & i can access my email.
But... if i login from OWA Site-B (owa-B.domain.com), OWA not automatic silent redirect to Site-A, and i must click link below "Use following link to open to mailbox with the best performance https://owa-a.domain.com/owa/auth.owa
My friend Mailbox on Site-B, if he login to OWA Site B (owa-B.domain.com), OWA-B work well & he can access email.
But.. if he login from OWA Site-A (owa-A.domain.com), OWA not automatic silent redirection to Site-B, and he must click link below "Use following link to open to mailbox with the best performance https://owa-b.domain.com/owa/auth.owa
3. Check the IIS log on site B CAS server and find if there is any error about the redirection.
whether there is a bug in CU3?
Hopefully someone will help with some hint because it is quite anoying on our custommer.
Regards,
Fajar

Similar Messages

  • Exchange 2013 with CAS and HLB in different sites

    Hello...
    Coming son, we'll deploy Exchange 2013 with high availability in all roles. The CAS and Hub Transport roles, are with a HLB; and the Mailbox with DAG. The infrastructure is formed by:
    Citi1:
    - AD Site 1
    - 1 Hardware Load Balance: HLB01 to load balance the CAS and Hub Transport of Exc01 and Exc02
    - 2 Exchange: Exc01 and Exc02 multiroles Exchange Server 2013
    - 1 DAG for Citi1 databases: conformed by the Exc01 and Exc02
    Citi2:
    - AD Site 2
    - 1 Hardware Load Balance: HLB02 to load balance the CAS and Hub Transport of Exc03 and Exc04
    - 2 Exchange: Exc03 and Exc04 multiroles Exchange Server 2013
    - 1 DAG for Citi2 databases: conformed by the Exc03 and Exc04
    The Active Directory is one forest with one domain. The Domain Controllers are Windows Server 2012. The Site1 and Site 2 are connected by a WAN link. The accepted domain is domain.com. The smtp address is @domain.com
    How to make that users of Citi1 always connect throught the HLB01 to their mailboxes; and the users of Citi2 always connect throught the HLB02 to their mailboxes if the autodiscover.domain.com is the same for all users?
    I have not found documentation about
    this architecture. Please help me.
    Thank you very much.
    Best regards, Javier Uribe

    Hi javier,
    In this issue, I guess you can try to use site affinity for the Autodiscover service for intranet-based traffic.
    To use site affinity, you specify which Active Directory sites are preferred for clients to connect to a particular Autodiscover service
    instance. 
    You configure site affinity by using the
    Set-ClientAccessServer cmdlet. This cmdlet lets you specify the preferred Active Directory sites for connecting to the Autodiscover service on a specific Client Access server. After you configure site affinity for the Autodiscover service,
    the client will connect to the Autodiscover service as you specified.
    According to your needs, you might want to allow users in the site1 to use site1, users in site2 to use site2 to access the Autodiscover Service.
    You can configure site scope for Client Access servers in the Site1 by following command.
    Set-ClientAccessServer -Identity "site1-cas" -AutodiscoverServiceInternalURI "https://internal.domain.com/autodiscover/autodiscover.xml" –AutodiscoverServiceSiteScope “site1”
    The Command for Site2.
    Set-ClientAccessServer -Identity "site2-cas" -AutodiscoverServiceInternalURI "https://internal.domain.com/autodiscover/autodiscover.xml" –AutodiscoverServiceSiteScope “site2”
    Hope it helps
    Best regards

  • Migration Exchange 2010 to Exchange 2013 with CAS Array and DAG

    Dear All,
    I am starting the migration of Exchange 2010 2 servers (CAS/Mailbox) with DAG no CAS Array to Exchange 2013 with 2 servers CAS array and 2 Mailbox servers with DAG. I read on some blogs that no requirement of CAS array on Exchange 2013. My concern how to
    configure NLB on CAS servers for the client to connect.
    Please guide and have any deployment guide for this, kindly share.
    Thanks

    Hi ,
    As you said there is no use and meaning of having the cas array in exchange 2013 and also thanks a lot to Microsoft for introducing an single namespace facility in exchange 2013.
    My suggestion and Microsoft recommendation should be to go with hardware load balancers for exchange 2013 rather than using the windows NLB and round robin method.
    Why we need to go for HLB ?
    Disadvantages
    of some load balancing methods :
    Windows
    NLB :-
    If you use Windows NLB then it can provide redundancy on server level failure and not on application level.
    DNS
    round robin :-
    In case if we use the windows round robin method for load balancing then it wouldn't provide server level
    and application level redundancy during the failures.At the Same time we need to manually adjust the DNS records during the server failure but on the client end dns caches will create the issues.
    Configuring NLB for exchange 2013 : 
    http://msexchangeguru.com/2013/08/14/windowsnlb/
    NLB configurations for exchange 2010 and 2013 will be same.
    Configuring round robin for exchange 2013 : 
    http://exchangeserverpro.com/exchange-2013-client-access-server-high-availability/
    Advisable method is to have the CAS and MBX roles on the same box if NLB not comes it to play.Because windows failover clustering and NLB cannot be configured on the same box.In exchange 2013 cas role is a stateless server role so there is no need to have
    that role on a separate box.
    Thanks & Regards S.Nithyanandham

  • I am trying to use sync outlook 2013 with icloud and am receiving this error - Setup can't continue because Outlook isn't configured to have a default profile.  Check your Outlook settings and try again - can anyone help me out

    i am trying to sync outlook 2013 with icloud and am receiving this error - Setup can't continue because Outlook isn't configured to have a default profile.  Check your Outlook settings and try again - can anyone help me out

    Here are two threads you may want to review. I'm sure there are others. Good luck!
    https://discussions.apple.com/thread/3427840?start=0&tstart=0
    http://www.slipstick.com/outlook/icloud-outlook-problems-syncing-calendar/

  • How come the volume of other programs are lowered while one FaceTime? I exchange media with friends and colleagues and I can barely hear anything. There should be a way we can manually control the volume of different programs

    How come the volume of other programs are lowered while one FaceTime? I exchange media with friends and colleagues and I can barely hear anything. There should be a way we can manually control the volume of different programs

    I own the movies and I want them to stay in my iTunes library basically forever.
    But in both cases the file name no longer shows in the movie list, so I don't know how to re-download it from the Cloud.
    iTunes prefs > Store > Show iTunes in the Cloud purchases.
    This will show all your iTunes purchases in your library with a cloud icon down arrow. Click the icon to redownload or click on Play to stream without downloading.
    Also see this , -> Download past purchases
    and techncially, you don't "own" the movie, You simply have a license to use it.
    Yet the first thing iTunes does when you hit the delete key is tell you that it will remove the movie forever from all devices and the library.
    Actually, no it does not tell you that.
    FYI: You should keep copies of all yoru iTnue spurahses as the labels/movie studios/copyright owners can pull their product at anytime and it won't be available to redownload.
    Suggestions here -> http://www.apple.com/feedback/

  • Hi there. I have 3GS and tried to up-date it today (19 Feb 2013) with iTunes and now I can't activate it! it shows the "Your iPhone could not be activated. tha activation server is unavailable...". The iPhone has never been jailbroken!!!

    Hi there. I have 3GS and tried to up-date it today (19 Feb 2013) with iTunes and now I can't activate it! it shows the "Your iPhone could not be activated. tha activation server is unavailable...". The iPhone has never been jailbroken!!!
    - have tried restor
    - have tried recovery mode
    - have tried on 2 PCs
    ... can someone tell me what to do! I'm tryin for 5hours now!

    no! i havent change my carrier still the same

  • Just got ipad2 and it goes to different page/site without touching the screen

    just got ipad2 and it goes to different page/site without touching screen

    Try a reset. See if that solves the problem
    Reset the iPad by holding down on the sleep and home buttons at the same time for about 10-15 seconds until the Apple Logo appears - ignore the red slider - let go of the buttons.

  • Setup a simple sales funnel with exchange 2013 public folders and outlook 2010 -2013

    BCM for Outlook is big and has too many choices. What we want is a combination of contacts and tasks within a public folder so we can see what others are doing. If possible I want
    to make a connection between an contact and a task. The task should have some extra fields like branches responsible organization members status etc. Does anyone have a simple solution which is easy to implement in a small organization of 10 people?

    Hello,
    First of all thank you for your answer. The Outlook version I'm using is 14.0.7113.5005 and the Exchange versuin is CU3. As I'm testing it on XP client it is probably the issue in the PS. I'll try it with Win7 client probably tomorrow. I wonder if there
    exists any kind of workaround for XP clients.
    Thank you in advance,
    Peter

  • Exchange 2013 with TMG 2010 and Go Daddy

    Hi all;
    actually I'm new to exchange server 2013 and I need some help:
    recently I installed exchange 2013 in our domain with contains TMG 2010
    what I need is sending emails out.
    currently I can send emails internaly
    I have static IP and TMG and registered domain in Go daddy.
    could someone help me by steps what to do?
    in TMG?
    in Exchange administration?
    in Go Daddy?what records needed and how?
    and should I do any configurations in my DNS?
    please I'm stuck in this.
    Thanks

    Sorry, my fault. Try these links:
    http://blogs.technet.com/b/exchange/archive/2012/11/21/publishing-exchange-server-2013-using-tmg.aspx
    http://www.isaserver.org/articles-tutorials/configuration-general/publishing-exchange-2013-outlook-web-app-forefront-threat-management-gateway-tmg-2010.html
    CRM Advisor

  • OWA receives mail long before Outlook (Exchange 2013 with Outlook 2010 and 2013)

    I recently upgraded my Exchange environment to Exchange 2013 SP1. The Outlook users are now experiencing a delay when receiving email. When they do arrive they appear in batches, often 20-45 minutes after they were sent, from a mailbox on the same server.
    Additionally, the mail appears instantly when you monitor the inbox using OWA. The users are experiencing this on both Outlook 2010 and 2013 clients configured in both cached and non-cached modes. This appears to be a problem with Outlook connecting to Exchange.
    Any suggestion about how to correct this would be greatly appreciated. Thanks!

    Hi,
    From your description, when users use OWA, they can receive emails normally. But if they use Outlook 2010 or Outlook 2013, there is a delay in receiving emails.
    I recommend you use the Outlook safe mode to determine whether the problem is caused by add-ins. Also, please make sure users have installed the Outlook latest Service Pack.
    If the issue persist, please create a new profile and check the result.
    Hope it helps.
    Best regards,
    Amy Wang
    TechNet Community Support

  • Exchange 2013 + 2007 OWA coexistance not redirecting properly (HTTP 400)

    Hello.  I am using this document to funnel our new Exchange 2013 external traffic through an IIS ARR reverse proxy, much like we already do for MIcrosoft
    Lync 2013 on this machine.  
    http://blogs.technet.com/b/exchange/archive/2013/08/02/part-2-reverse-proxy-for-exchange-server-2013-using-iis-arr.aspx
    I followed this guide to a T. especially the part on the page 2 that I linked above about creating the legacy.domain.com server farm and URL rewrite rule.  This
    IIS ARR proxy seems to work fine for Outlook Anywhere, ActiveSync, OWA if the user's mailbox is on the Exchange 2013 server, but it does not work if an OWA user logs in with a mailbox on 2007.
    When the user has a mailbox on 2007, after logging into OWA they get HTTP 400 error.  The URL bar in the browser is changed to https://legacy.domain.com/owa/auth/owaauth.dll
    The Exchange 2007 server IIS logs show this:
    70.x.x.x, -, 11/1/2014, 9:45:48, W3SVC1, MAIL, 10.1.1.3, 0, 523, 132, 400, 0, POST, /owa/auth/owaauth.dll, -,
    I can't figure out why this is happening.  DNS is correct.  legacy.domain.com points to the 2007 Exchange server.  webm.domain.com points to the
    Exchange 2013 server.
    Any ideas?

    Doing more testing, I almost think the Exchange 2007 server keeps redirecting.  So the HTTP 400 is because when you hit legacy.domain.com, it redirects
    to webm.domain.com which redirects back to legacy.domain.com and vice versa.
    I put a test.txt file in the Exchange 2007 owa virtual directory and I cannot access it in any browser.  I tried https://legacy.domain.com/owa/test.txt and
    It redirects me to https://webm.domain.com(Exchange 2013).  I can however go
    one level (or more) deep on the legacy server and get a file such as https://legacy.doamin.com/owa/8.3.342.1/themes/base/logon.css and
    in the browser I see the code (both externally AND internally, so I know DNS and firewall is working).
    I can't find anywhere on IIS 6.0 on the Exchange 2007 server where any kind of redirection is taking place though.  Virtual Directory properies for owa say
    "A directory located on this computer: "C:\Program Files\Microsoft\Exchange Server\ClientAccess\owa"  Enable default content page is checked with default.aspx but I looked at default.aspx in notepad and I don't see ANY code telling it to
    redirect.
    In Exchange 2007 management console OWA internal URL and External URL both sayhttps://legacy.domain.com/owa .
    I have no idea what is causing this redirection.  I did an iisreset and also recycled the OwaAppPool and no change.

  • Exchange 2013 with Outlook 2010 asking sometime for credentials

    Hi Everyone,
    I'm running Exchange Server 2013 on a Windows Server 2012.
    Some of my user are sometime asked for credentials.
    It happens both at outlook launch and when outlook is running.
    And when we just cancel the credentials windows without password, outlook is connected to exchange again.
    Everyone is running Office 2010 with SP1.
    I have tried to put Outlook anywhere to NTLM and Negotiation authentication but it doesn't work either.
    Any idea ?
    Thanks in advance

    I am getting this same problem. I checked all the steps in "Configure Mail Flow and Client Access" to no avail. When I click cancel in the credentials request popup, Outlook carries on and seems happy. Before long the credentials request returns
    though.
    We are running Exchange 2010 and have just added an Exchange 2013 Server. The errors I am getting are with new 2013 mailboxes and migrated mailboxes.
    I ran "Test E-mail AutoConfiguration" and in the log, I see it first tries to contact our Exchange 2010 Server. After this fails, it then contact our Exchange 2013 Server.
    SMTP=[email protected]
    Attempting URL
    https://smtp.domain.com/autodiscover/autodiscover.xml found through SCP
    Autodiscover to
    https://smtp.domain.com/autodiscover/autodiscover.xml  starting
    GetLastError=0; httpStatus=401
    GetLastError=0; httpStatus=302
    Autodiscover to
    https://smtp.domain.com/autodiscover/autodiscover.xml  Failed (0x800C8204)
    Autodiscover URL redirection to
    https://mail.domain.com:443/autodiscover/user..domain.com/autodiscover.xml starting
    GetLastError=0; httpStatus=401
    GetLastError=0; httpStatus=200
    Autodiscover to
    https://mail.domain.com:443/autodiscover/user..domain.com/autodiscover.xml Succeeded (0x00000000)
    Any help will appreciated 

  • 2 exchange 2013 multirole server and 1 addess for Outlook Anywhere. How to?

    Hello everybody.
    I'm coming to you with a question about my new Exchange 2013 infrastructure. 
    I have 2 Exchange 2013 SP1 servers. Both are multirole (CAS + MBX). My servers are Server12 and Server13. 
    I created a DAG which IP adderss is 192.168.3.30 (Servers IP are 3.31 and 3.32). Everything's working fine. 
    For CAS High Availability, I followed this thread : http://exchangeserverpro.com/exchange-2013-client-access-server-high-availability/
    On my firewall, I use NAT to send https flow from my public IP address (mail.domain.fr, external domain
    published on internet) to point to mail.domain.org (internal domain, non published on Internet). The mail.domain.org alias is my record defined in my internal DNS to
    point to my 2 multirole server, as shown in the tutorial above.
    I encounter a problem with external outlook anywhere. My problem comes with Outlook Anywhere which is not working fine when I redirect https flow to my cluster IP address (192.168.3.30) (DAG's address, corresponding to my servers). If I do the same redirection,
    but pointing to only one of my servers, it's working fine. In Exchange, external outlook Anywhere directory points to mail.domain.fr
    But anyway, if this servers goes down, I have to change manually the NAT on my firewall. And I don't want to :). 
    How can I do ? Can I do something without a physical load-balancer? 
    Thanks

    You cannot point Outlook Anywhere to your DAG cluster IP address. It must be pointed to the actual IP address of either server.
    For no extra cost DNS round robin is the best you will get, but it does have some drawbacks as it may give the IP address of a server you have taken down for maintenance or the server has an issue.
    You could look to implement a load balancer but again if you are doing this for high availability then you want more than one load balancer in the cluster - otherwise you've just moved your single point of failure.
    Having your existing NAT and just remembering to update it to point to the other server during maintenance may suit your needs for now.
    If you can go into more detail about what the high availability your business is looking to achieve and the budget we can suggest the best method to meet those needs for the price point.
    Have a great day
    Oliver
    Oliver Moazzezi | Exchange MVP, MCSA:M, MCITP:Exchange 2010,Exchange 2013, BA (Hons) Anim | http://www.exchange2010.com | http://www.cobweb.com | http://twitter.com/OliverMoazzezi

  • Active Sync not Working - Exchange 2013 with Exchange 2007

    Hi
    Recently we introduced Exchange 2013 servers to our existing Exchange 2007 organization. The servers are just configured with default self-signed certificate and URLs are pointing to server FQDNs.
    Everything is at default as far as configuration is concerned in Exchange 2013.
    After just introducing the Exchange 2013 CAS servers was checking the ActiveSync functionality using a new mailbox created on Exchange 2013. We have not yet published our Exchange 2013 servers to
    Internet (before even doing that, want to ensure ActiveSync is working). We're connecting using our Private network and trying to make a connection to CAS FQDN. Checked a iOS7 (iPad) and a Windows Phone device, both of them configure successfully (with the
    certificate warning, which is obvious) but when it comes to synchronizing the contents they fail saying "Cannot Get Mail. Connection to Server Failed"
    Checked the IIS Logs on CAS server and found that the device makes a successful connection - as is indicated by successful configuration but thereafter nothing happnes on the device and no error
    logged in Event Viewer as well. Could it be that the mailbox server is denying the connection....how to check. How to go ahead with the troubleshooting.
    Everything else expect ActiveSync is working perfectly. Tries accessing the ActiveSync VD using the link
    HTTPS://Server_FQDN/Microsoft-Server-ActiveSync, this pops-up a window asking for credentials – which is normal behavior indicating ActiveSync virtual directory is good.
    Thanks
    Taranjeet Singh
    zamn

    Hey Guys
    Just to update here my initial testing revieled that if I run Test-ActiveSyncConnectivity by not specifying the -URL parameter like this:
    Test-ActiveSyncConnectivity -MailboxCredential (get-credential User1) |FL
     the command fails for an obvious reason as shown in the result. The command is getting the mailbox server name in the ActiveSync URL returned automatically:
    ClientAccessServer         
    : SITE-MBX-02.ABC.COM
    Scenario                   
    : Options
    ScenarioDescription        
    : Issue an HTTP OPTIONS command to retrieve the Exchange ActiveSync protocol version.
    PerformanceCounterName     
    : DirectPush Latency
    Result                     
    : Failure
    Error                      
    : The OPTIONS command returned HTTP 200, but the Exchange ActiveSync header
                               (MS-Server-ActiveSync) wasn't returned. The request likely did not reach a
    Client Access
    server, either because
    - A proxy server intervened (check the headers below for any that may have been
    returned by a proxy)
    -The virtual directory could not be reached:
    https://SITE-MBX-02.ABC.COM/Microsoft-Server-ActiveSync
                         - The virtual directory does not point to a Client Access server:
    https://SITE-MBX-02.ABC.COM/Microsoft-Server-ActiveSync
    If however, I manually provide the -URL parameter value with FQDN of CAS server:
    Test-ActiveSyncConnectivity -URL
    https://SITE-CAS-02.ABC.COM/Microsoft-Server-ActiveSync
    -MailboxCredential (get-credential User1) |FL
    it succeeds.
    We have our CAS and Mailbox servers installed on separate systems - no colocation.
    This is strange and makes me curious to find out, where does the command without -URL parameter is getting the ActiveSync URL that has mailbox server in it. I checked that the new Exchange 2013 CAS servers have InternalURL parameteres populated with their
    own FQDNs and the ExternalURL is empty for now.
    Need help in drilling down this further.
    Thanks
    Taranjeet Singh 
    zamn

  • Connection beetween Exchange 2013 with outlook client 2007 SP3

    Hi All,
    My company reinstall exchange 2013 when the previous mailbox DB error. When I implemeted a new server. I configured step by step carefully. if we use outlook 2010 connect to exchange server, send/receive work normally. But someone, uses outlook 2007 SP3,
    they have somer error. They work with "cached mode", the connection from outlook to exchange server connected normally, but mail items sometime disappear in outlook client, when i check in the OWA, the mailbox item appear on this. 
    I tested with "online mode", the mailbox items push into outlook.I switched to "cached mode", this items haven't in outlook. Everybody who's meet the problem, please help me the solution can resolve the problem? Many thanks.
    Quoc Dao

    Hi,
    Would you please let me know edition information of the Windows Server? Is it a Windows Server 2012, Windows
    Server 2012 R2 or other?
    On current situation, please refer to following KB and check if can help you.
    Sometimes e-mail messages do not appear in your
    Cached mode Inbox even though they were synchronized down from your mailbox
    By the way. Based on your description, this issue seems to be more related to Outlook 2007. If this issue still
    exists, I suggest that you should post in
    Outlook forum. I believe we will get a better assistance there.
    If any update, please feel free to let me know.
    Hope this helps.
    Best regards,
    Justin Gu
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

Maybe you are looking for

  • Can't find DLL entry point RegisterGpibGlobalsforThread in ni4882.dll

    I'm attempting to collect data using a gpib-usb interface and display the data in an Excel Spreadsheet using Visual Basic for Applications and NI 488.2 ver 3.1.2 software in Windows 7 64 bit.  The macros in the spreadsheet worked fine using the gpib-

  • Tables for posting period check

    Hi, Can somebody tell me the tables for posting period check for tcodes F-63 and MIR7. I need to check whether the posting period is open when uploading data to these tcodes. Arun Mohan

  • Lose Airport connection only with battery

    I have encountered the following really odd problem on three different Aluminum Powerbooks running Tiger (but no difficulty when the same machines ran Panther): I connect to an Airport base station (it's one of the graphite base stations, 802.11b). W

  • MulticastTest for Load balancing issue

    Hi,           We are currently facing issues with Load balancing using IIS Proxy plug-in.           __WebLogicBridgeConfig list of dynamic servers does not return both servers. MulticastTest is the first resolution suggested by Bea Support on this pa

  • Old dylib's  in X11 app

    After install it(from .dmg file) , I am trying to run the last version of Wireshark , and I get erros in the console regarding required dylib versions like : [0x0-0x28e28e].org.wireshark.Wireshark[3805] Reason: Incompatible library version: wireshark