Multiple Exchange accounts and client certificates not working...?

Hi all,
I have a problem with my company iPad's. I'm trying to configure 2 Exchange accounts with certificate based authentication on my iPad with the iPhone config utility. For that i have created 2 client certificates.
When I configure just 1 mailbox, does not matter which one of the 2, with the iPhone config util, it al works ok with client authentication.
When I configure 2 mailboxes, on the iPad, without client certificate authentication it al works ok.
When I configure 2 mailboxes with the 2 client certificates with the iPhone config util, both exchange accounts have the same mailbox. When I configure for example mailbox Jim and Harry with the corresponding certificates and I load it into the iPad. The exchange account of Jim has Jim his mailbox, but the exchange account of Harry also has the mailbox of Jim. And sometimes it is vice versa.....
Can anybody help me in this, we are using 4th gen iPad with MS Exchange ActiveSync 2003 SP2 en MS Forefront TMG with Kerberos delegation.
Please advice.
Cheers,
Eddy

Hi Eddy,
I have the feeling that the SSL connection after being established is only using the first authenticated certificated to connect to the exchange server.
Have you had a look over this Microsoft page:
http://technet.microsoft.com/en-us/magazine/ff472472.aspx
Are you able to test 2 accounts on one pad in a test environment preferably with SSL inspection off?
Do you have any information in the Forefront logs of the users being authenticated from the iPad? Or is one user authenticated twice?
Cheers,
IhalpU

Similar Messages

  • I am tryting to add my exchange email and it's not working, any ideas?

    I am trying to add my exchange email to my iphone and it's not working, any ideas?

    Contact your IT professional.

  • HTTPS connection with client certificate not working in spartan

    Spartan does not show certificate for the user to select
    when I click the https link.
    The certificates (taken from a smartcard) are indeed present in the user CertStore.
    It works with IE 11 and Chrome.
    Has somebody any suggestions ?
    Thanks.

    in fact you are more using a reverse-proxy than a proxy since it is on the server part..
    You have to put all the SSL server part on the reserve-proxy itself and not on the final RSS feed. Then, the reverse-proxy will authenticate your client and gets its certificate. After that, either this proxy will open a plain connection (no ssl) towards the RSS, or you can also open a ssl connection but this means you must create a client certificate for the proxy. It just depends on the security level you need, and I used this solution many times in professional hosting.
    hope it helps !

  • SOAP Axis adapter_Encryption via Client Certificate not working

    Dear Experts,
    Could anyone please share the steps to enable encryption via client certificate in SOAP AXIS receiver adapter.
    I am able to do the same using normal SOAP adapter but with AXIS framework the steps are not working.
    I have come across few sdn links to configure axis framework for authentication using wsse security standard but this seems to be different as it requires user and password whereas with certificates we are not given any user/password.
    Please provide some valuable inputs.
    Thanks.

    Hi Shikha,
    see the -
    Advanced Usage Questions
        8. How can I configure a channel to use the encryption and ....
    of the FAQ attached to the note -
    1039369 - FAQ XI Axis Adapter
    Regards
    Kenny

  • X.509 client certificate not working through Reverse proxy

    Dear expert,
    We are working on fiori infrastructure. Our current scope is to enable X.509 authentication for both internet and intranet. However, the intranet scenario for X.509 authentication is working fine but internet is not, we got error message of "Base64 decoding of certificate failed". For landscape, the only difference between internet and intranet is we have apache reverse proxy in DMZ. We are using gateway as fron-end server, business suite and HANA in the back-end.
    As X.509 authentication works fine under intranet scenario, we assume that the configuration for X.509 for both front-end and back-end are correct. With that assumption, the issue would exist in reverse proxy. We are using apache 2.4.7 with openssl 1.0.1e, but we have upgraded the openssl to the latest version 1.0.1h for SSL certificate generation. Below are the apache configuration for X.509.
    Listen 1081
    <VirtualHost *:1081>
    SSLEngine on
    SSLCertificateFile  "D:/Apache24/conf/server.cer"
    SSLCertificateKeyFile  "D:/Apache24/conf/server.key"
    SSLCertificateChainFile  "D:/Apache24/conf/server-ca.cer"
    SSLCACertificateFile "D:/Apache24/conf/client-ca.cer"
    SSLVerifyClient optional
    SSLVerifyDepth  10
    SSLProxyEngine On
    SSLProxyCACertificateFile "D:/Apache24/conf/internal-ca.cer"
    SSLProxyMachineCertificateFile "D:/Apache24/conf/server.pem"
    AllowEncodedSlashes On
    ProxyPreserveHost on
    RequestHeader unset Accept-Encoding
    <Proxy *>
         AddDefaultCharset Off
         SSLRequireSSL
         Order deny,allow
         Allow from all
    </Proxy>
    RequestHeader set ClientProtocol https
    RequestHeader set x-sap-webdisp-ap HTTPS=1081
    RequestHeader set SSL_CLIENT_CERT  ""
    RequestHeader set SSL_CLIENT_S_DN  ""
    RequestHeader set SSL_CLIENT_I_DN  ""
    RequestHeader set SSL_CLIENT_CERT "%{SSL_CLIENT_CERT}s"
    RequestHeader set SSL_CLIENT_S_DN "%{SSL_CLIENT_S_DN}s"
    RequestHeader set SSL_CLIENT_I_DN "%{SSL_CLIENT_I_DN}s"
    ProxyPass / https://ldcinxd.wdf.sap.corp:1081/  nocanon Keepalive=on
    proxyPassReverse /  https://ldcinxd.wdf.sap.corp:1081/
    We are out of mind on how to resolve this issue. Please kindly help if you have any idea on it.
    thanks,
    Best regards,
    Xian' an

    Hi Samuli,
    Really thanks for your reply.
    Yes, we have tried your suggestion above in the apache configure file above, but when testing the HANA service, we got error message "Certificate could not be authenticated".
    Yes, web dispatcher makes the X.509 authentication much easier as under intranet scenario, no DMZ between browser and web dispatcher. Client certificate pass through web dispatcher directly and it works perfectly this way. Not sure why it doesn' t work through apache reverse proxy.
    Best regards,
    Xian' an

  • Email account and Internet service not working after migration onto a new (upgraded 3rd party) 2012 MBP. Hardware or software issue.

    I just purchased a refurb Mac Book Pro from the Apple on-line store. When I received the machine (serial number)  I purchased 3rd party (OWC) parts. All of these were installed by the authorized, local Apple repair store I have had excellant results with past issues with my 2006 MBP. The parts installed are: 16 meg ram, 240 SSD and a 1 T installed replacing the optical drive.
    Feeling ready now, I had the Apple store do the migration from my 2006 MacBook Pro (OS 10.6.8) over to the 2012.
    When trying to get the new machine into the production flow, I cannot get email to work. It will launch but I cannot access accounts.
    During the One to One, then moved over to the Genius Bar appointment, they reentered the account(s) data. Nothing.
    Also at this time they noticed that the Internet connection was not working.
    A new internet account was set up and it worked. They (Genius) launched email and the Internet connection crashed. This was repeated about 5 times.
    The computer was left with Apple to reinstall the OS (10.8) - their best suggestion as a fix and I have now had a call to say that the install did not correct the problem. Now they are questioning the install of the 3rd party parts as the possible problem.
    I'm to go back into the Apple store to discuss the next steps.
    I would really, really appreciate anyones thoughts / suggestions on this problem. Is it software or hardware? Should I re-install the original ram and 500 m hard drive to start over with the migration? I'll be honest here and state - I'm not a technician in computers or this side of technology. That is why I have reliable parties do the install and trouble shoot. Not a comfortable feeling being at their mercy.
    Advanced thanks to all who believe they have answers.

    Back from the Apple store with my 2012 MacBook Pro.
    After one re-install of the OS - no better - a clean install was performed - purging all of the data that they had migrated over from my 2006 MBP last week.
    The belief is, that the migrated data from my 2006 MBP was too great of a leap for the new 10.8. My (a lot) software was too dated and there in was a "blip" of some sort in some / one of the programs.
    So - all of the OWC parts and pieces that I had installed are not the issue - as they all show up on the About this Mac - and other things are functional. Yeah.
    I now have my 2012 back (with upgrades) in the original form (OS and programs) and I will start a one by one migration of programs that I do need and use. Being cautious not to make one large transfer.... weeding out programs that will no longer be needed or will work on the OS 10.8. I will manually set up the email accounts one by one.
    Fingers crossed.

  • Client certificate not working in E51 after FW upd...

    In our company we have several E51 phones for using our mobile web services. In some cases we need to use client cetrificates for maximum security.
    The situation is: with older firmware versions (100.x/200.x) the certificate and TLS handshakes are working fine, but after upgarding to the latest version (300.x) the browser starts complaining "The operation cannot be completed" when trying to open the https connection. The problem seems to occur in the handshake phase, so debugging and analyzing the problem is very difficult. It's notable that the certificate itself is valid (working with older fw) and is installed just fine. Some cert details: Type: X.509 Algorithm: SHA1RSA
    Normal TLS connections without client certs work. The phones have been formatted and no backups have been restored after formatting, so the problem cannot be about old settings messing up the configuration.
    Has any other had similar problems and have you been able to solve it somehow?

    I am also having this problem where the certificate dialog (Windows Security is usually the title) is never prompted to the user. I tried it on several computers which are all part of the domain. The same computers can also login on another ADFS, so I have
    working certificates.
    I just get a page where a text says I should select a certificate but I never get the dialog to do so.
    Any updates on this issue?

  • Like i said Microsoft outlook keeps coming up in my iTunes and a box with server name i ,v tried all the server names on my account and it will not work and now my iTunes account is  stuffed

    I,m sorry but i,v a enough of all these **** problems Microsoft has been on help with helping me fix this problem i,v tried everything to fix it and i do know that i,m not talking to Apple like i said this outlook from Microsoft keeps coming up every time i start my iTunes up and then it has a box with enter server name and i,v tried all the server names on my laptop and it will not accept any of them I,v spent a heep of money already with computer people and my laptop is now more stuffed and i don,t trust anyone any more my computer bloke stufhfed my iTunes account up as well and tried to tell me i had to upload a new iTunes and i fixed it up and i,v never done a computer coruse in my life sorry for the all the chat but i,m just sick of all the scams just to get money out of you one more thing my iCould is not backing up to my iCloud as well so where is all my dtuff gone to so much for security

    Ande i,v got on idea where to see your relpys here this is all new to me like where are your messages here thank you

  • After install my user login account and password is not working

    I took my Mac book Pro to apple store for repair after it shuts down. They told me the laptop is formatted so I have re install all softwares i.e Mac office, iTone, etc. Unfortunately after downloading the softwares, I couldn't complete the installation because the computer can not recongnise my admin login password ( step required to complete installation). I did not change my passward and userlogin information? Could you please advice?
    Thank you

    Resetting User Password in Lion, Mountain Lion & Mavericks
    Boot into your Recovery Partition by hold down the Command and R keys whilst booting.
    When the Recovery screen appears, go to the Utilities menu and open Terminal.
    In Terminal, type:
    resetpassword
    ...a small app will open and allow you to choose the user for whom you want to change the password. If you are the admin, be certain that you choose your admin user. Type in your new password twice and give yourself a good hint. Click OK (or Done or whatever) and reboot, enjoying the use of your new, hopefully memorable, password.
    Good luck,
    Clinton

  • Just updated ipod 8gb touch to 4.2.1 and cannot sync applications, even though logged into iTunes 10.2 and they are there and logged into ipod with same account and syncing does not work

    appreciate any assistance

    I had also faced the same problem. After weeks of hunting, I found many apps compatible with ios 4.2.1
    Gun Bros
    Super KO Fight
    Gravity Guy
    I Must Run
    Men vs Machines
    Hit Tennis 2
    Optime Games
    Air Hockey Gold
    Real Tennis
    Football Kicks
    Frisbee Forever
    Spy Mouse
    Ninjump
    Office Jerk: Zombies
    The Walking Dead
    Angry Birds
    Angry Birds Season
    Office Jerk: Holidays
    Real Skijump
    MotoGP 2010
    Real Racing GTI 2010
    Asphalt Audi RS 3
    GTA Chinatown Wars
    Max Adventures
    Samurai Dojo
    Deer Hunter Challenge
    Cricket: Defend the Wicket
    Airport Madness Control
    There are lots more...Some of these games will probably be unavailable as it must've been upgraded
    Also check out this site: https://sites.google.com/site/appleclubfhs/support/advice-and-articles/finding-a pps-for-older-devices
    Hope this helps!

  • I set up my iCloud account on iPad with an exchange account and aol account.  I can see exchange and aol emails but not those from .me account or apple email.  I got it to show all 3 accounts on my iPhone with no problem.  Hat am I missing?

    I set up my iCloud account on iPad with an exchange account and aol account.  I can see exchange and aol emails but not those from .me account or apple email.  I got it to show all 3 accounts on my iPhone with no problem.  Hat am I missing?

    I'm having a similar problem, but I do have the key and is not working anyway.
    My old pc was running on windows 7 and my new one is an apple running on Lion.
    My phone is an Iphone IV and I can see all the bookmarks there.
    In order to sync, what I did was click on the "I don't have the device with me", I entered the key that was provided and the process finish ok. It says congratulations, etc, etc.
    But the bookmarks are not there, I tried merging data and replacing data on this computer options but is the same.
    Any suggestions?

  • How do I install a new Exchange account with the same address as my old Exchange account and have my bcc mail not go to the old account?

    I have an iPhone 5s running iOS8 and an iPad, up to date.  I have recently changed my mail server but not my email address.  My "old" mail account is an Exchange account and I have also set up a "new" Exchange account with the same address but with the new mail server details.  When I receive outside, third party emails they are routed correctly to the "new" Exchange account but when I bcc myself or receive other emails from any account with my domain name the emails are routed to my "old" Exchange account.  I have changed the default account settings to the "new" Exchange account.  Also, if I send myself an email from my laptop, through the new mail service provider, it is routed correctly on my laptop but incorrectly on my iPhone and iPad.  It appears as though the Apple products have cached my email address and routing and won't look to pick up the new mail server details. I don't see anything in the mail account settings or contacts that allows me to refresh or clear the cache.  The result is I now have mail in 2 accounts. If I can get the misdirected mail from the odl account to the new one I will then make the old account inactive.  Anyone have any ideas on this one?
    Thanks in advance for your time and ideas,
    DAA

    Can you set up a rule in your old account to forward mail to your new account and then delete it from the old account?
    (1012)

  • HT5622 I have just received a new iphone 5s and need to set the Apple ID with my work email.  I used my work email on my personal iphone 4s to set up an icloud account and it will not let me use my work email as the Apple ID on my new iphone. What do I do

    I have just received a new iphone 5s and need to set the Apple ID with my work email.  I used my work email on my personal iphone 4s to set up an icloud account and it will not let me use this email as the Apple ID on my new iphone.  As it is a work phone I need to use this email address as my Apple ID.  How do I do this?

    when you open the app store scroll down to the bottom it will display the apple id currently in use, change it to your normal apple id email

  • I have changed my Apple ID name and I want to change it on iCloud, however I am not able to delete the previous account because I need to turn off the Find my iPhone - and for that I need to log in with the old name and that is not working. Help anyone?

    I have changed my Apple ID name and I want to change it on iCloud, however I am not able to delete the previous account because I need to turn off the Find my iPhone - and for that I need to log in with the old name and that is not working. Help anyone?

    Hey tulgan,
    This link will provide information on what to do after you change your Apple ID:
    Apple ID: What to do after you change your Apple ID
    http://support.apple.com/kb/HT5796
    Welcome to Apple Support Communities!
    Take care,
    Delgadoh

  • HT5622 valid apple id but not icloud account.  I tried downloading on a different computer and logging in and it did not work.  I have restarted my computer several times.  I have changed my password several times.  I have tried to access the icloud page.

    repeating error message reads: "valid apple id but not icloud account." when trying to start my icloud account.  I tried downloading on a different computer and logging in and it did not work.  I have restarted my computer several times.  I have changed my password several times.  I have tried to access the icloud page.  Nothing has worked.  Now I have this stupid app and some of my music is still not being shared on both of my computers.

    I have the same problem signing in...but, I finally got a screen saying you have to set up a account on a device..like an ipad to get a iCloud sign in ...my apple id is [email protected]   and this screen reset to [email protected]
    If you don't have an apple device you may be out of luck.  I don't know.  I'm still waiting for help just as you are...good luck to both of us though.

Maybe you are looking for

  • Firefox 3.6.8 and memory issues

    After the last update to 3.6.6, I disabled plugin-container per the instructions given on the forum, and my RAM problems went away. However, after the automatic update to 3.6.8, the memory problems came back, with memory usage going up to 92%. I down

  • Itunes wont Sync to iPhone 4 on IOS5

    My iPhone is on the current firmware and un-jb . My iTunes is the latest version according to the Apple Update and yet my iTunes wont sync to my phone. Keeps coming up saying the device is not connected , however the phone icon appears in the left ha

  • MPEG-2 Encoding.. Gamma and/or Black Level?

    Hello, I am using MegaPEG.X Pro to encode MPEG-2 from my QT files that have been output from my FCP5 sequence. The MPEG-2 files from MegaPEG.X look much darker (deeper blacks) than the original DV Movie when viewed side by side in QT. In FCP I used t

  • Restricted to generic papers - Specific canon papers grayed out?

    I am attempting to print a "Profile Target Image" so that I can receive a Profile for my printer.  I'm using Photoshop CS4 and checked the "no color management" for Photoshop and have also disable color management for the printer. I.  I begin by chec

  • About connecting applets to servlets

    Hi friens, I already posted regarding this problem twice but there were no replies. i am really desperate as it is eating up my time. I thought once more i will elaborate it. I am using the following code to connect an applet to servlet on my tomcat.