FedEx Ship Manager Through TMG 2010

Shipping Dept needs to connect to FedEx through the FedEx Ship Manager software to download tracking numbers. TMG 2010 appears to be blocking the traffic. All traffic to FedEx must use Port 443.
One rule allows traffic to the following sites from the shipping dept computer. The next rule denies traffic to the sites.
The DNS address and port of the FedEx Tunnel Gateway Server is: cafegip.ts.dmz.fedex.com:443
IP addresses for the FedEx tunnel server cluster are:
199.81.196.27 (sni-vip1.dmz.fedex.com)
199.81.197.170 (sni-vip2.dmz.fedex.com)
199.81.216.140 (sni-vip3.dmz.fedex.com)
199.81.217.140 (sni-vip4.dmz.fedex.com)
199.81.216.60 (sni-vip-wtc-temp.dmz.fedex.com becoming sni-vip4.dmz.fedex.com)
204.135.8.17 (sni-vip5.dmz.fedex.com)
204.135.8.16 (sni-vip6.dmz.fedex.com)
Has anyone found a way to make this work?

The answer appears to be that TMG 2010 was allowing SSL v2 traffic and the receiving system (FedEx) was rejecting that traffic.
Resources used to solve the issue are listed below.
http://blog.msedge.org.uk/2011/12/forefront-tmguag-useful-tools-and.html
http://support.microsoft.com/kb/982876/en-us
http://support.microsoft.com/kb/2545464/en-us
Download and apply RemoveWeakVersions2k8.reg from here: https://skydrive.live.com/?cid=A2E64DE91BFCAD09&id=A2E64DE91BFCAD09%21527
Download and apply SetNetBTNodeType.reg from here: https://onedrive.live.com/?cid=A2E64DE91BFCAD09&id=A2E64DE91BFCAD09!527

Similar Messages

  • Filling out form in FedEx Ship Manager is very slow...

    All of a sudden trying to fill out a shipping doc in FedEx Ship Manager is very slow. Each letter typed ends up with athe spinning beach ball for 5 or 6 seconds. Safari version Version 6.1 (8537.71). Never had an Safari issue before with this site and Firefox works fine. (Ended up using FF to get the shipment done) 
    Any ideas what is going on?

    Same here, I create many, many Fedex labels on a daily basis for work. In Mountin Lion things were working excellent, just upgraded to Mavericks and Fedex is unusable. Firefox (even in its latest version 25) works perfect with Fedex and on Mavericks too. This is definitely a problem caused by Mavericks and has nothing to do with FedEx. I think it is related to how security for JavaScript has been changed, or how Sandboxing in tabs and JavaScript relate to each other in the new version of Safari. No updates to the latest Java will fix it, because the fields on the FedEx form are populated through JavsScript coding and in this case Java is not being invoked at all. Thats why you may have different versions of Java installed, or not even have it installed, yet in Safari 7.0 those forms from FedEx and evidently form some other sites will beachball. So the only solution currently is to use another browser, which is really a lame solution. If Apple wants to make us use Safari more often, step up to the plate and show an improvement in the browser, not regressions. Mind you this is a huge regression! I have been creating labels in Fedex for some 7-8 years now and there has never been an update to Safari that would cause such a disaster. And by the way, I use Webkit nightlies. Granted the developers there tend to break things, but are very responsive and provide a fix usually within day or two. Those are the same guys that develop the new versions of Safari core and rendering, so I'm curious as to who would be voicing support here in the discussion. One thing is clear, even todays nightly of Webkit is also beachballing, so the problem is not directly related to Webkit.

  • Publis a monitoring camera through TMG 2010

    Hi, I have a monitoring IP-camera inside my LAN what I want to publish through TMG 2010 to access from outside. The camera has a build in webserver running (currently) on port 80. Insuide the LAN (no restrictions) everybody who has a login to the cam can
    watch. So the cam is working pretty well. Now I created a web publishing rule in TMG 2010 for the Cam but it seems not to be enough. I easily can connect to the log-on screen of the cam, I can log in, but than I get an empty (black) picture(Cam healthy light
    on the screen is yellow instead of green, means the video is not working)! No stream is visible. The cam should not use any other (additional) ports, I checked that by using wireshark. What can be the problem that TMG blocks the stream?

    Hi,
    As this thread has been quiet for a while, we will mark it as ‘Answered’ as the information provided should be helpful. If you need further help, please feel free to reply this post directly so we will be notified to follow it up. You can also choose to unmark
    the answer as you wish.
    BTW, we’d love to hear your feedback about the solution. By sharing your experience you can help other community members facing similar problems. Thanks for your understanding and efforts.
    Best regards,
    Susie

  • Barcode use for Delivery doc number insert into FedEx Ship Manager

    Hi Experts,
    I'm new to scanners and a client asked if they can use a scanner to insert the delivery document number into FedEx Ship Manager. (They already have a add-on that will then popuolate the rest of the Delivery details in FedEx Ship Manager)
    Is this possible?
    What Scanners is supported by SAP?
    Any help would be appreciated.
    Marli

    Hi Marli,
    Most of the time the client would be happy with a simple wedge scanner, either wired or wireless, to scan a barcoded Delivery Number into FedEx Ship Manager.  They can be programmed to automatically hit return after the scan to initial the import.  A wedge scanner is compatible at a hardware level, think of it like a keyboard.  The scanner basically "types" the number into the field. 
    You would also need to make a barcode on your print out for the Delivery (or Pick or Pack). The PLD includes a Barcode format, as does Crystal Reports (Right click,convert to Barcode).  Just duplicate the Doc Num, and change the format.
    Hope it helps..
    Daryl

  • Login error when publishing OWA 2010 through TMG 2010

    Its configuration publish OWA 2010 with TMG 2010 but when logged through the internet must enter the correct net name: domain.com\administrator and password to login.
    administrator login name or login [email protected] not login. And all the other mailbox account not login.
    This is a picture of my configuration. You do know how to fix it help me okay. Thanks.

    Hi Xuan,
    It depends on your selected authentication method.
    I recommend you refer to the following article, it will give you some hints:
    http://www.msexchange.org/articles-tutorials/exchange-server-2010/management-administration/enabling-forms-based-authentication-external-internal-owa-2010-users-exchange-2010-published-using-forefront-tmg-2010-part2.html
    Please note: Since the website is not hosted by Microsoft, the link may change without
    notice. Microsoft does not guarantee the accuracy of this information. And the
    changes made in the above blog is not supported officially by Microsoft.
    Best regards,
    Niko Cheng
    TechNet Community Support

  • MAC client is not able to authenicate to through TMG 2010

    when i connect form mac it say server is not respoding
    please find bellow the errors
    Allowed Connection
    server01 5/9/201311:35:21 PM
    Log type:
    Web Proxy (Reverse)
    Status:
    401 Unauthorized
    Rule:  2010 ActiveSync
    Source:
    External (92.98.139.120:52526)
    Destination:
    Local Host (133.4.23.83:443)
    Request:
    POST http://user.com/EWS/Exchange.asmx
    Filter information:
    Req ID: 14641c31; Compression: client=Yes, server=No, compress rate=0% decompress rate=0% ; FBA cookie: exists=no, valid=no, updated=no, logged off=no, client type=unknown, user activity=yes
    Protocol:
    https
    User:
    anonymous
    Additional information
    Client agent: Mac OS X/10.8.ExchangeWebServices/3.0.1 (158); Mail/6.6 (1510)
    Object source: Internet (Source is the Internet. Object was added to the cache.)
    Cache info: 0 (Response includes the WWW-AUTHENTICATE header. Response should not be cached.)
    Processing time: 16 MIME type
    error
    Denied Connection
    server01 5/9/2013 11:35:21 PM
    Log type:
    Web Proxy (Reverse)
    Status: 12202 Forefront TMG denied the specified Uniform Resource Locator (URL).
    Rule:
    2010 ActiveSync
    Source:
    External (92.98.139.120:52527)
    Destination:
    Local Host (133.4.23.83:443))
    Request:
    POST http://user.com/EWS/Exchange.asmx
    Filter information:
    Req ID: 14641c34; Compression: client=Yes, server=No, compress rate=0% decompress rate=0% ; FBA cookie: exists=no, valid=no, updated=no, logged off=no, client type=unknown, user activity=yes
    Protocol:
    https
    User:
    anonymous
    Additional information
    Client agent: Mac OS X/10.8  ExchangeWebServices/3.0.1 (158); Mail/6.6 (1510)
    Object source: Internet (Source is the Internet. Object was added to the cache.)
    Cache info: 0x8 (Request includes the AUTHORIZATION header.)
    Processing time: 1 MIME type:

    Hi,
    Firstly please confirm that other os client can access successfully to judge if the issue is related to MAC.
    Please also check the link below to see if it is helpful.
    http://social.technet.microsoft.com/Forums/en-US/3d85b13d-a3d5-4a22-822f-6e09e9d20d5b/mac-outlook-2011-through-tmg?forum=Forefrontedgegeneral
    Best Regards
    Quan Gu 

  • TMG 2010 publishing Exchange 2010 OWA cannot change password if user must change password at first logon is set

    Hi,
     I have an odd issue whereby if I set "user must change password" on an AD account, the end user cannot logon, they're simply taken back to the OWA login page as if their password is incorrect.
    My setup is as follows:
    outer TMG -- uses a listener for email.contoso.com and is configured for no authentication.This uses a publishing rule to publish the inner TMG server. This server is not a domain member.
    inner TMG - uses a listener for email.contoso.com and is configured for NLTM\kerberos negotiation with forms authentication (Windows Active Directory). This server is a domain member and use a publishing rule to publish the internal CAS. Allow users to change
    password is selected in the publishing rules.
    Exchange 2010 SP1 - uses integrated windows and basic authentication. Has the appropriate registry key configured to allow users to change their AD password on first logon.
    I've registered an snp for "http/email.contoso.com mailserver-dc1", all SSL certificates being used are valid and my configuration used to allow users to login and change their password with "user must change password on first login"
    set in AD.
    If I launch a web browser on an internal server and point it to email.contoso.com I'm immediately presented with a generic Windows authentication request (similar to what's seen in ADFS) rather than the standard OWA page. No matter what I do, I cannot login
    and change my password using the correct URL. However if I point my browser at
    http://192.168.4.10/owa I'm prompted to login and I can change my password using the sam credentials.
    The only recent changes made are:
    - Disabling SSL 3.0 and enabling TLS  (http://www.isaserver.org/articles-tutorials/configuration-security/improving-ssl-security-forefront-threat-management-gateway-tmg-2010-published-web-sites.html)
    - Replacing the TMG listener certificates so that they now use SHA2 rather than SHA2 (certificates are trusted on each TMG server)
    Looking on the outer TMG and the DC logs I can see schannel errors which I believe are related to the problem. TMG monitoring also shows "Failed connection attempt: 1907 The user'spassword must be changed before logging on for the first time"
    I've checked that my inner TMG and DC are using the same certificate for server authentication and gone through this guide:
    http://blogs.technet.com/b/keithab/archive/2012/02/29/setting-up-and-troubleshooting-ldaps-authentication-in-forefront-tmg-2010.aspx
    If I try to use ldp.exe on the inner TMG, I get the error in the pic below
    Thanks
    IT Support/Everything

    Hi,
    You could try to analyze the TMG tracing and try the troubleshoot steps in the blog below.
    TMG 2010 – FBA, troubleshooting the change password feature 
    http://blogs.technet.com/b/isablog/archive/2012/05/07/tmg-2010-fba-troubleshooting-the-change-password-feature.aspx
    Best Regards,
    Joyce

  • Internet Access through TMG for all HO & Branch office

    Dear Experts!,
    I am new to the Forefront TMG 2010. Have requirement to implement internet access.
    Head office : 192.168.11.x/24 (192.168.11.1 is the TMG server)
    Branch Office 1: 192.168.12.x/24
    Branch Office 2 : 192.168.14.x/24
    Branch Office 2 : 192.168.16.x/24
    Forefront TMG 2010 standard edition.
    Having 3 NIC's two have different ISP network addresses and one has 192.168.11.1.
    Branch office are connected using MPLS network, the requirement is all branch site internet must be accessed through TMG 2010 server which is homed in Head Office. How to achieve ?
    What needs to be done in external firewall and in TMG for enabling internet access.
    Thanks!
    Regards, Ganesh, MCTS, MCP, ITILV2 This posting is provided with no warranties and confers no rights. Please remember to click Mark as Answer and Vote as Helpful on posts that help you. This can be beneficial to other community members reading the thread.

    Hi Ganesh,
    Hope this helps
    1 - If you wish to give internet as Proxy to users.
    Ensure the Below subnet is able to reach TMG Internal Interface that is 192.168.11.1
    Subnet
    Branch Office 1: 192.168.12.x/24
    Branch Office 2 : 192.168.14.x/24
    Branch Office 2 : 192.168.16.x/24
    Configuration
    Enable Proxy in TMG and configure Proper Ports as per your requirements
    On the Client IE – Ensure you put Proxy IP as TMG and Port configured in TMG configuration.
    Enable a Rule
    Access Rule
    Source : Internal
    Destination : External
    Ports : HTTP / HTTPS
    Users : Authenticated Users
    2 As normal Internet as Gateway to users
    You need to request your MPLS provider to change the Default Route of below subnet to 192.168.11.1. By doing this, all the internet request from the below subnet to internet will hit TMG.
    Subnet
    Branch Office 1: 192.168.12.x/24 Default Route 192.168.11.1
    Branch Office 2 : 192.168.14.x/24 Default Route 192.168.11.1
    Branch Office 2 : 192.168.16.x/24 Default Route 192.168.11.1
    IF you have any L3 Switch then you can also make Default gateway as L3 for all the subnet and from L3 device point it to TMG
    Enable a Rule
    Access Rule
    Source : Internal
    Destination : External
    Ports : HTTP / HTTPS
    Users : All Users ( Important )
    Two ISP
    In network Rules : You need to use NAT
    You will have a Rule which NATS internal to  External
    On external - Choose which ISP interface should be used  and Apply NAT rule

  • Error the service FWSRV of TMG 2010 on Windows server 2008 R2 Enterprise

    Please help me about a issue of TMG 2010:
    My company installed TMG 2010 on Windows server 2008 R2 Enterprise but it happen error " Due to an unexpected error, the service fwsrv stopped responding to all requests. Stop the service or the corresponding process if it does not respond, and
    then start it again. Check for related error messages."
    and " The Firewall service stopped because an application filter module C:\Windows\SYSTEM32\ntdll.dll generated an exception code C0000005 in address 0000000077A72F86 when function CompleteAsyncIO was called. To resolve this error, remove recently
    installed application filters and restart the service."
    I have reinstall but there error also appear again. My company use about 2000 clients access through TMG 2010.
    i have try update windows and TMG latest but can not solved this issue.
    i hope everyone help me as soon as. thank you so much.

     
    HI Luis,
    Not sure whether this will fix your issues however give it a try and let us know so that other can also provide suggestion.
    Disable
    Antivirus
    Monitoring Tools / Hardware Diagnostics tools which comes with Server vendor
    Try -
    http://support.microsoft.com/kb/2649961
    http://support.microsoft.com/hotfix/KBHotfix.aspx?kbnum=2649961&kbln=en-us
    Ensure you have enough space for Log to be stored

  • Site column Person or Group not working through TMG

    We published our Sharepoint 2010 Site through TMG 2010, everything is working fine, except some users cannot edit the site column Person/Group in the document library. The Word 2013 opens and in the field we just see not currently available. I
    have some users with Word 2013 where it's working fine, so I think this must be some word settings.
    Any ideasß

    Hello,
    I have a similar problem (same Setting).
    I get the error message that the sharepoint "saving/storing location" could not be interpreted (translation
    from the German error message), after I was prompted for the user credentials. I do not get an error message on server side.
    The TMG Settings:
    Rule applies to published site: wi-sharepoint
    Request appear to come from the Forefront TMG computer
    Listener : https; 8443
    Public name (changed): something.tech.at
    Authentication: NTLM auth.
    Bridging: Redirect top HTTP: port 81
    Apply link translation to this rule
    This setting works if I connect via a browser (from inside and outside)
    But trying to connect via Workspace 2010 I get an error from outside (from inside it works)
    The log from the TMG:
    SourceExternal: 80.081.215.166:4881 (changed)
    Destination: Lcoal Host (192.168.50:81)
    Request: POST
    http://wi-sharepoint:81/...
    On the Sharepoint I configured AAM:
    http://wi-sharepoint
    DEFAULT => http://wi-sharepoint
    http://wi-sharepoint:81
    Internet => http://wi-sharepoint:81
    I also tried to add:
    http://something.tech.at
    => http://something.tech.at
    and
    http://something.tech.at
    => http://something.tech.at
    but it was not working correctly.
    Hope you can help.
    Thanks,
    Florian

  • No Fedex Ship Mananger For Mac OS X ?

    One of my relatives is about to switch to the Mac unless there is Fedex Ship Manager available for the Mac. I know about using Parallels, but he doesn't want to have to use Parallels. Any ideas?
    Thanks,
    Mason

    I emailed them, they just told me that there software was not compatible with Mac OS X and that I would need to have a PC for it to work. I've found some other possible solutions (VMware Fusion, CrossOver,.....). I'm still going to try and get him to use Parallels as it seems to be the easiest solution.
    Thanks,
    Mason

  • Exchange 2013 with TMG 2010 and Go Daddy

    Hi all;
    actually I'm new to exchange server 2013 and I need some help:
    recently I installed exchange 2013 in our domain with contains TMG 2010
    what I need is sending emails out.
    currently I can send emails internaly
    I have static IP and TMG and registered domain in Go daddy.
    could someone help me by steps what to do?
    in TMG?
    in Exchange administration?
    in Go Daddy?what records needed and how?
    and should I do any configurations in my DNS?
    please I'm stuck in this.
    Thanks

    Sorry, my fault. Try these links:
    http://blogs.technet.com/b/exchange/archive/2012/11/21/publishing-exchange-server-2013-using-tmg.aspx
    http://www.isaserver.org/articles-tutorials/configuration-general/publishing-exchange-2013-outlook-web-app-forefront-threat-management-gateway-tmg-2010.html
    CRM Advisor

  • Exchange 2010 URL and TMG 2010

    Hi All,
    Would like to know whether can I publish my Exchange OWA through TMG 2010 with the URL on Internal and External the same (Example: mail.contoso.com) and using single-Nic?

    Hi
    With a single NIC deployment, you will only be able to use the web publishing feature of TMG for Exchange. This means be able to publishing OWA, Outlook Anywhere and ActiveSync.
    Same URL for Internal and Public Internet
    100 % you can have same URL for Both and belwo are the DNS changes you many need to do.
    You need to create a Split Brain DNS
    Create a New Primary DNS Zone with the same name as you public Domain
    Add a A record and point that to internal IP address of the Exchanges server OWA
    On the Public Internet Add A record pointing to Public IP address which is used on webpublishing
    TMG - Link
    http://technet.microsoft.com/en-us/library/ee796231.aspx 
    Other Post -
    http://social.technet.microsoft.com/Forums/windowsserver/en-US/c38035f8-b975-4c58-99b2-952f3de9db74/configuring-splitbrain-dns

  • Intermittent ActiveSync issues with iPhone4 through TMG

    Hi,
    I've got a few iPhone 4's which are connecting to Exchange 2007 through TMG 2010 (SSL Certs + AD Creds).
    On the face of things, all this works. I can Sync email, get calendar updates etc, but for one or two users (myself included) I keep getting intermittent syncing issues including.
    1. Only the headers will download, meaning I can open an email, but will just get the "Loading..." animation until I eventually get the message "This message has not been downloaded from the server."
    2. After finally getting up to date with email, the phone will suddenly start syncing from scratch again, going back as far as is configured in the mail settings. eg 1 day, 3 days etc. and will eventually get up to date, working fine for a while but eventually resyncing from scratch again.
    3. It seems to be busy syncing when there's nothing to sync until TMG eventually throws a "10053 An established connection was aborted by the software in your host machine".  Something I'll shortly mention in a TMG forum
    4. There are times it claims its checking for mail, but I can see on our Cisco firewall and TMG it hasn't attempted to contact us at all after a few minutes I'll see it make contact and it will sync fine.
    Meanwhile, in between these errors, it seems to be absolutely fine...  until it isn't.
    Any ideas?  I've tried wiping the phone, clearing it out from user exchange profiles, etc but it hasn't worked.
    Thanks
    Paul

    Well it really went from bad to worse with regard to the mic. Pretty much stopped working entirely for phonecalls although seemed fine for video, audio recording and skype. Headset made no difference either so I can only assume that it the issue lies between the main mic and the noise cancelling mic (doubt they are used for video, skype etc)
    After along conversation with apple they are sending out a new phone with UPS as part of the advanced replacement service although I do have to pay £30 for the privilege, still better than having to wait for repair etc!
    Regards

  • Forefront TMG 2010 Error from management console

    Hi,
    I am having a problem connecting to a TMG 2010 array from an installation of TMG management console we are receiving the error 'Refresh Failed' 'Error 0x80070057' ' The Parameter is incorrect'.
    The only article i can find on this error is this http://support.microsoft.com/kb/2591719 which doesn't seem to apply to our setup or this problem but I have applied Service pack 2 anyway but still get same error. The only other thing i can find is
    a few people saying the management console needs to be at the same version as the TMG servers you are trying to connect to but I cannot see how this can be done as when I try to run the service pack on the machine with only the management console I get an
    error as the full installation is not there.

    Hi,
    Firstly, have you found any related information in the event logs?
    Nest, you can check the version of the TMG server from the TMG help menu, TMG system node or using Control Panel. For more detailed information, please refer to the link below:
    How to Determine Which Version of TMG
    Server 2010 Is Installed
    In addition, what hotfix rollup or Server pack have you installed? Please refer to the recommended order below:
    Forefront TMG 2010 Service Pack, Rollup, and
    Version Number Reference
    Best regards,
    Susie

Maybe you are looking for

  • Passing value from ADF to BPEL, and to PL/SQL

    1. I have created BPEL which take 2 inputs and concatenate them. 2. have created a PL/SQL procedure for invoking this BPEL( working fine). Now i need to create a simple ADF page which contain 2 text box, 2 for input and 1 for result(concatenate), thi

  • Base value in migo

    Dear all, I'm creatng a import po Gross Price-1,314,117.00 IMP INSURANCE IN VAL-1,280.00 Landed Price-13,153.97 IN Basic customs-66,427.55 IN CVD-223,196.57 Ecess on In CVD-6,695.90 Customs ECess on TD-8,889.61 IN additional duty-65,350.43 Neg.Landed

  • Error: "This version of the application is not configured for billing through Google Play."

    We are preparing update of app for Google Play and during testing of new version (just downloaded as APK from ftp to device) we've encountered this error. In short it means, that we can't buy new issues, nor download previously bought one. I'm not ab

  • InDesign only showing part of the image

    I'm doing a job for a client in InDesign CS5. I have not worked in CS5 before, so don't know if this is a bug or if I'm doing something wrong. It seems to happen randomly and I have checked the preferences and tried using different settings for the D

  • FF4, gets stuck on software update panel , have tried deleting update folder

    since downloading FF4 ( win7), when it tries a s/w update ( manual or auto) it starts up the sofwatre update process and then jsut dispalyas progress bar getting nowhere saying connecting to update server. this is windows 7