Treo 700w and SSL Exchange access



I have OWA running on a front end exchange server connecting to a back
end server running 2003 (both windows and exchange). I have users
doing client certs over ssl. I installed the root and client cert on
the Treo 700w. Using IE on the treo, I am prompted for my personal
cert, I choose it, then I log in. It all works great.

Trying to configure Active Sync results in the dreaded 0x85010004 code
with "Require Client Certificates". If I turn off "Require Client
Certificates" in the IIS configuration and still use SSL, the Treo can
sync. Does the windows 5.0 software not support email using a personal
certificate?

Does anybody have this configuration working? I'd really rather not
have OWA running to the outside world without a client certificate
issued by me. I've read through the MS whitepaper regarding this, but
it doesn't mention how to do client certificates. The only option in
the Account Setup on the Treo is a Require SSL checkbox, but no way to
choose which one.

.



Relevant Pages

  • RE: OWA, IIS and SSL
    ... with downloading a client certificate. ... >When a client computer that is running Microsoft Internet ... >latest versions of Internet Explorer; ... >|>Are you using client certificates for your SSL ...
    (microsoft.public.inetserver.iis.security)
  • Re: Unable to authenticate via kerberos to IIS site accepting clie
    ... authenticated user" have no relation to the size of the request. ... Client Certificates are negotiated before server even sees the data, ... and Kerberos protocol of Integrated Authentication can affect the size ...
    (microsoft.public.inetserver.iis.security)
  • Re: IIS6.0 + SSL Breaks down!
    ... Ok, I asked the IIS SSL developer, and he gave me the details. ... bad public specification on SSL make SSL Client Certificates ...
    (microsoft.public.inetserver.iis)
  • Re: IIS6.0 + SSL Breaks down!
    ... Well, about me saying I was using client certificates, I did it in the first ... me question now seems to be: how can I increase the "SSL ReadAhead" ... IIS needs to complete SSL ...
    (microsoft.public.inetserver.iis)
  • Re: SSL & Ignore client certificates
    ... authentication, but data transferred between the server and the client will ... "Ignore client certificates" and you will set "Require client certificates" ...
    (microsoft.public.inetserver.iis.security)

Loading