Re: FE/BE migration help !



The certificate should be installed on both nodes.

Nue
"WayCoolKennel" <WayCoolKennel@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:26A046E4-F17C-4B84-8605-718F433A7734@xxxxxxxxxxxxxxxx
In addition,

I can seem to figure out how to install SSL on the cluster.. I mean I can
go
to IIS manager and add a cert... but it seems to me it should be done
through
ESM so it gets done for the cluster and not the node ?????

I would think there would be some documentation for this.. but dont seem
to
see it anywhere... hmm....

"WayCoolKennel" wrote:

Ok.. hmm... I dunno.. where does it get the redirection from... I do
have a
redirect for the default site on the existing server and FBA enabled..
that
way folks enter a friendly URL (i.e. http://exchange.mydomain.com) it
redirects to https://exchange.mydomain.com/exchange .

Obviously with FBA enabled the /exchange virtual directory is set to
require
SSL. And I have setup the owa_redirect as in here:

http://support.microsoft.com/kb/839357/en-us

Where/how does the existing server get the redirect information from for
a
mailbox that lives on the new cluster...

I have no problem exporting and importing the SSL cert.. but wont I get
an
error ??? I mean the





"Nuevo" wrote:

Export the SSL certificate from the existing server and import it to
the new
server, not something that is stictly within normal licensing but
you'll
have to do it eventually. The redirect should not be using https you
may
want to troubleshoot a little further.

Nue
"WayCoolKennel" <WayCoolKennel@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in
message
news:2FEF6588-410C-4B7B-BA79-E83E1B48EDE6@xxxxxxxxxxxxxxxx
Thanks Nuevo...

I appear to have that fixed.. was a versioning issue (SP2 vs no SP on
the
new cluster VS)

So..that is all fixed.. OWA now works fine on the cluster albeit
without
SSL....

I see that if I try to login via OWA/FBA to the original Exchange
server..
it seems to know to redirect me to the exchange server that has the
mailbox
(new cluster) .. but that fails due to the new box not having SSL
installed..
IOW its redirects with https instead of http...

This is cool... so far.. but I would prefer not to have to buy a cert
for
the new cluster as it will eventually be a BE server etc...

Whats next ???

"Nuevo" wrote:

The first thing you need to fix is OWA on the cluster. It should be
working
out of the box just like a stand alone server. Don't proceed forward
until
this is resolved.

Are you getting any errors in the event logs? Have you tried to
recreate
the
HTTP VS cluster resource? Does OWA work if you failover to the
passive
node?

Nue
"WayCoolKennel" <WayCoolKennel@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in
message
news:DF135D3A-9694-4F8D-93A2-55530EAAFE9F@xxxxxxxxxxxxxxxx
Hi all,

Need a bit of direction if possible. I have a single server
Exchange
Admin
group.. running Exchange Ent 2003 sp2 on Win 2003 sp1 ...

This single server is configured with SSL, FBA, ActiveSync(push)
etc...

What I would like to do is move all the mailboxes etc.. to a new
Exchange
cluster I have setup and make the current server a Front End
server ..
since
all the clients and OWA users are already pointed to it.

My question is what is the best migration path to do this... The
mailbox
part is obviously not difficult since I have already tested moving
mailboxes
to the new cluster and Outlook finds the new mailbox location no
problem
albeit needing to restart outlook.

The big issue is that the moved mailboxes are then BROKEN via OWA
and
Activesync... the new cluster is not running SSL on OWA.. and as
a
general
rule OWA seems to be broken on the cluster all together..

I do have an HTTP virt server in as a cluster resource etc... but
if I
try
to connect via web browser it asks for credentials then fails with
500
internal server error...

Anyway.. I cannot seem to find a document that describes this
process
at
all... the important thing is that I need VERY VERY litttle
downtime.....

Anyone know of a document/white paper that describes this ? Or
any
suggestions?








.



Relevant Pages

  • Re: FE/BE migration help !
    ... If I could just get it to just take them to the mailbox on the new cluster ... existing server then I could designate it as a FE server .. ... redirect for the default site on the existing server and FBA enabled.. ...
    (microsoft.public.exchange.admin)
  • Re: NLB Cluster - Ping fails or long time to reply from outside local subnet - SOLVED
    ... Windows Server 2008 Readiness Team ... cluster on a separate DLink card in multicast mode. ... I thought that the litmus test was that the router functions fine ... member of the NLB cluster, setup NLB on it, plug the NICs ...
    (microsoft.public.windows.server.clustering)
  • Re: NLB Cluster - Ping fails or long time to reply from outside local subnet - SOLVED
    ... Once again, ARP is an RFC standard, if you are having to make static entries in unicast mode, then your network device is not in compliance. ... Windows Server 2008 Readiness Team ... I was feeling nervous about our teaming-capable adapter as I read it might be sending out heartbeats, so I disabled it AND configured the cluster on a separate DLink card in multicast mode. ... I thought that the litmus test was that the router functions fine when no NLB is installed, but when it is, things start going screwy. ...
    (microsoft.public.windows.server.clustering)
  • Re: NLB Cluster - Ping fails or long time to reply from outside local subnet - SOLVED
    ... One server with no cluster configured - all works ok. ... When static ARP mappings are added all works ok. ... I thought that the litmus test was that the router functions fine when ...
    (microsoft.public.windows.server.clustering)
  • Re: NLB Cluster - Ping fails or long time to reply from outside local subnet - SOLVED
    ... Windows Server 2008 Readiness Team ... NLB is installed, but when it is, things start going screwy. ... The servers are a couple of switches away from the router so I ... 'exterior' to the NLB cluster itself. ...
    (microsoft.public.windows.server.clustering)