Re: RPC over HTTPs
- From: "Jim McBee [MVP Exchange]" <jmcbee@xxxxxxxxxxxxxxxxxx>
- Date: Thu, 25 May 2006 10:02:23 -1000
Bart:
It is obvious that you have done your research on this. When you
connect to the Exchange server using IE using the http://exchangeserver/rpc
URL, do you get a message indicating that the CA that issued the certificate
is not trusted? If so, THAT will break RPC over HTTPS for sure. Make sure
that the CA's certificate is installed on the client. Maybe I'm thinking of
something too simple, though.
Did you make the manual changes to the DC/GC that you are supposed to
make in the Registry? There used to be a KB article on configuring RPC over
HTTPS in a single server environment, but that information has been rolled
up in to the "RPC over HTTP Deployment Scenarios" gude. You can get to it
here:
http://support.microsoft.com/Default.aspx?kbid=833401
I just spent an entire day troubleshooting a very similar problem but it
turned out the workstation was having network problems. :-)
--
Jim McBee
Blog: http://mostlyexchange.blogspot.com
Free eBook: http://nexus.realtimepublishers.com/ttgsm.htm
"Bart" <Bart@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:D23E1540-9521-498C-8A57-36B3919AAB6E@xxxxxxxxxxxxxxxx
I followed the MS and some non-MS tips on how to setup RPC over HTTPs, but
so
far no luck.
The server runs Exchange 2003 with the latest patches. It is also a
Win2003
DC.
My client computer has Outlook 2003 with all latest patches. IE on that
machine can access the https:// address that is supposed to give access to
exchange.
Using /rpcdiag tells me that the 'directory' type is connecting through
https, but the 'mail' type fails.
When outside the firewall, I can see the 'mail' connection tries to
connect
with the NETBios name, rather than the FQDN (The 'directory' type
connection
uses the FQDN). I added the NETBios name to the hosts file and checked
that
it is pingable with its NETBios name).
Running the same Outlook machine from inside the firewall does connect
successfully, but an inspection of the /rpcdiag window shows that it is
cheating (using TCP/IP instead of HTTPS for the 'Mail' type connection,
and
HTTPS for the 'directory' type connection. )
Could there be an issue with the certificates? Because 'mail' is using the
NEtbios name, does that mean it will want a certificate with that as the
full
name?
Thanks.
.
- Follow-Ups:
- Re: RPC over HTTPs
- From: Bart
- Re: RPC over HTTPs
- Prev by Date: Re: Exchange Activesync and Outlook 2007 with Business Contact Manager
- Next by Date: Re: Satellite connection via RPC over HTTP times out
- Previous by thread: Re: Exchange Activesync and Outlook 2007 with Business Contact Manager
- Next by thread: Re: RPC over HTTPs
- Index(es):
Relevant Pages
|
Loading