RE: SCCM 2007 R2 & IIS7
- From: Andy <Andy@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Date: Wed, 24 Sep 2008 03:59:01 -0700
After further testing we have identified that IIS was dropping the HTTP
request in favour of the HTTPS we have setup for Native Mode.
The Certificate installed on the client sitting on the remote Forest\Domain
is incorrect, how do we create a client Certificate for a remote
Forest\Domain and install it?
"Andy" wrote:
I am going through a pilot deployment across a lot of remote sites, each with.
their own forest, own domain all due to be managed from a central location,
we have site servers running Server 2008, PKI and IIS 7 (setup with Native
Mode enabled).
The clients on the main Forest\Domain have been communicating fine with the
MP but those in the remote Forest\Domain have hit an issue with what seems to
be IIS7 related.
* The client is reporting “Failed to sucessfully complete HTTP request.
(StatusCode at WinHttpQueryHeader: 403)”
When we browse to the IIS MP from said site, we get the IIS splash page but
get a 403 when we attempt to browse further down, which I am assuming is down
to anonymous Auth and the changes in IIS 7’s builtin groups. Have tried
changing the anonymous auth account in IIS Manager (to a domain account) and
ACL'd folder accordingly.
Am I correct in assuming WebDav is used for client chatter? If so, has
anyone seen this issue?
* Dir browsing is enabled and I've followed the Microsoft Guidance on WebDav
setup.
We have clients local to the MP communicating perfectly with the MP with no
errors.
- References:
- SCCM 2007 R2 & IIS7
- From: Andy
- SCCM 2007 R2 & IIS7
- Prev by Date: Extending Schema later after deployment
- Next by Date: Re: Extending Schema later after deployment
- Previous by thread: SCCM 2007 R2 & IIS7
- Next by thread: Extending Schema later after deployment
- Index(es):
Relevant Pages
|