RE: Activesync + OWA + SSL Cert key



Hi,

Thanks for the reply, however as I mentioned I cannot go any further with
the Internet and Email wizard, the msg I get when I try to attach the cert is:

"no certificate has been requested for the default site in IIS. Please use
the web server certificate wizard..."

Am I right that the steps I should take is, go through the WSC wizard to
request a cert. Get the 3rd party cert and instead of installing it through
the wsc wizard on the default website I should run the Internet and Email
wizard first and then the wsc wizard???

Will I need to recreate my cert again or can I use the existing cert already
created by the third party CA?

Thanks in advance,

Lyj


"chace zhang" wrote:

Hi lyj,

Thank you for posting here.


According to your description, I understand that you have difficult when
you deploy a third-party Certificate. You want to use a third-party
certificate from a CA that has a root certificate present on the root store
of Windows Mobile powered devices. For a listing of CAs offering Windows
Mobile-compatible certificates, refer to the following URL:
http://go.microsoft.com/fwlink/?LinkId=61499

Based on my experience, after receiving the certificate (.cer) file from
the CA, install the certificate on the Windows SBS server. To do this,
perform the following steps on the Windows SBS server:
1. Open the Server Management console.
2. Click the Internet and E-mail link.
3. Click the Connect to the Internet link to start the Configure E-mail and
Internet Connection Wizard.
4. On the welcome page, click Next
5. On the Connection Type page, click Do not change connection type and
click Next.
6. On the Firewall page, click Do not change firewall configuration and
click Next.
7. On the Web Server Certificate page, click Use a Web server certificate
from a trusted authority, click Browse, navigate to and double-click the
certificate file provided by the CA, and finally click Next.

8. On the Internet E-mail page, click Do not change Internet e-mail
configuration and click Next.
9. On the Completing the Configure E-mail and Internet Connection Wizard
page, click Finish.

Perform the following steps to configure the firewall and Web services:
1. Open the Server Management console and click the Internet and E-mail
link.
2. Click the Connect to the Internet link to start the Configure E-mail and
Internet Connection Wizard (CEICW).
3. On the welcome page, click Next.
4. On the Connection Type page, click Do not change connection type and
click Next.
5. On the Firewall page, click Enable Firewall and click Next.
6. On the Services Configuration page, select the services that are in use
on your network and click Next.
7. On the Web Services Configuration page, select Outlook Mobile Access and
any other services that need to be enabled. Click Next.
Selecting Outlook Mobile Access enables over-the-air sync with Windows
Mobile devices. Click Next.

8. On the Web Server Certificate page, click Do not change current Web
server certificate, and click Next.
9. On the Internet E-mail page, click Do not change Internet e-mail
configuration and click Next.
10. On the Completing the Configure E-mail and Internet Connection Wizard
page, click Finish.

Note: As mentioned earlier, if you are using an external or third-party
firewall, you need to ensure that incoming traffic on port 443 is directed
to the Windows SBS server.

Actually a White Paper about how to deploy Windows Mobile 5.0 with Windows
Small Business Server 2003 is published.
More information, please refer to this article:
http://www.microsoft.com/downloads/details.aspx?FamilyID=8be70d72-1e5a-4128-
a30c-dafeeb43544d&displaylang=en



Hope this helps, I'm looking forward to your update.

Have a nice day!


Best Regards,

Chace Zhang (MSFT)

Microsoft CSS Online Newsgroup Support

Get Secure! - www.microsoft.com/security

=====================================================
This newsgroup only focuses on SBS technical issues. If you have issues
regarding other Microsoft products, you'd better post in the corresponding
newsgroups so that they can be resolved in an efficient and timely manner.
You can locate the newsgroup here:
http://www.microsoft.com/communities/newsgroups/en-us/default.aspx

When opening a new thread via the web interface, we recommend you check the
"Notify me of replies" box to receive e-mail notifications when there are
any updates in your thread. When responding to posts via your newsreader,
please "Reply to Group" so that others may learn and benefit from your
issue.

Microsoft engineers can only focus on one issue per thread. Although we
provide other information for your reference, we recommend you post
different incidents in different threads to keep the thread clean. In doing
so, it will ensure your issues are resolved in a timely manner.

For urgent issues, you may want to contact Microsoft CSS directly. Please
check http://support.microsoft.com for regional support phone numbers.

Any input or comments in this thread are highly appreciated.

=====================================================

This posting is provided "AS IS" with no warranties, and confers no rights.


.



Relevant Pages

  • Re: Exchange public folder admin, OWA and SSL
    ... DONT follow the 3rd party's instructions for installing certificate on IIS.. ... Run the CEICW ("connect to the internet" wizard) and use this to add the ...
    (microsoft.public.windows.server.sbs)
  • Re: Certificate Services
    ... The easiest way to do this is to re-run the "Connect to the Internet" ... When you get to the dialog that talks about SSL/Web Server ... the wizard will use that certificate to configure the various SSL-enabled ...
    (microsoft.public.windows.server.sbs)
  • Re: Outlook 2003 Over HTTPS
    ... Are you asking how do I make a new certificate that relects my real ... running the wizard to connect to the internet. ... >certificate did not match the internet domain name exactly. ... Jim B. SBS MVP ...
    (microsoft.public.windows.server.sbs)
  • RE: SSL for Exchange stops WSUS
    ... Do you use a commercial certificate that was bought from third party ... When we run the CEICW wizard and choose create a new web server certificate ... This newsgroup only focuses on SBS technical issues. ...
    (microsoft.public.windows.server.sbs)
  • Re: Failure installing SSL certificate on SBS2003PremSP1 (incl. ISA200
    ... Basically I generate the certreq.txt as per CtoI wizard help instructions, ... even instead of IIS. ... Basically I think the SBS web listener needs to be ... If the certificate is properly installed in IIS, it should be available to ISA, since both are working off the same certificate store. ...
    (microsoft.public.windows.server.sbs)