Re: Entourage via the Internet

Tech-Archive recommends: Fix windows errors by optimizing your registry



Len Hill wrote:
hi,

please can anyone inform me if there is a way of accessing Exchange mail on an SBS2003 server with Entourage on a Macbook as the e-mail client in a similar way to Outlook 2003 via the Internet on a PC?

It looks straightforward to setup Exchange when the Macbook is connected to the network but I have a client that needs to access his e-mail on Entourage when he is out of the office.

Any pointers would be greatly appreciated!

Many thanks,
Len

You've hit the fun one, Len. Yes, this is doable, but you have to do some work with the internal DNS in the SBS network to get it done.

The problem is this: Entourage can only understand one "address" to use to connect to the server. If you have it set up and working on the internal network, great, but how is it going to locate the internal address when it's outside of the network?

Actually, there are two ways to do this. The first is to set up the MacBook with a VPN connection and have the user make a VPN connection prior to opening Entourage while on the road. If the DNS is configured properly in the VPN session, Entourage will have no problem contacting the internal name of the server and making the connection.

The other method is to use the public DNS name of the server in the Entourage configuration. When you do this, however, by default it will only work from outside the network and not internally. That's because, in most cases, when you look up the external address from the internal network, you're going to get the public IP of the server, not the internal IP of the server, and this is most likely going to cause the connection to fail (guaranteed to fail if ISA is on the SBS box).

The solution to this is to set up a "split DNS" configuration on your SBS box. Assuming that your internal network is named .lan or .local, you'd create a DNS zone for your public DNS name (say domain.com instead of domain.lan) and create A records in DNS for the public name of your server (say, mail.domain.com) to point to the internal IP address of the server. This way, when any machine on the internal network looks up the public DNS record, they get the internal IP address of the server. For Entourage, this allows the software to have one address that will result in contacting different IP addresses depending on whether it's connected to the local network or the external network.

the problem with this solution is that now you have to manage the DNS name space for domain.com on your SBS box for all internal users. If you create the zone for domain.com in your SBS DNS configuration, and don't put all the public records and their public IP addresses in there, DNS lookups for those records will fail. And if you change public IP addresses on a regular basis, this can be quite a bit of overhead work.

I have this configuration set up for 4 different networks, including my own. My PowerBook is configured to connect to the public DNS name of my exchange server, and my internal network has a zone for the public DNS domain with a record for my Exchange server using the internal IP address. This way, I can fire up Entourage from my PowerBook no matter where I am and pull my mail down successfully.

HTH...

-Eriq

--
Eriq Neale - SBS MVP, Small Business Specialist, MCSE, Mac Guy
EON Consulting - www.eonconsulting.net
Author of Microsoft Small Business Server 2003 Unleashed
Listen to the eOnCall Radio broadcast at AIRTunZ
(www.airtunz.com) or hear past episodes at www.eoncall.com
.



Relevant Pages

  • Re: Urgent! New router and big disaster
    ... The SBS DNS server, running on ... its IP it means that your problem is now DNS. ... forward ports to it reliably in the router. ... I should have been more clear about internet connection.. ...
    (microsoft.public.windows.server.sbs)
  • Re: Cannot connect to RWW from home PC
    ... DNS stuff says your mail server is responding with reply that is not MS ... When we setup this new SBS2003 setup we installed without ISA as it does ... not seeing any problems anywhere regards internet or email - we also run ...
    (microsoft.public.windows.server.sbs)
  • Re: Non-domain connection problem
    ... For some reason the DNS is persistent. ... connect new PC to the internet from the non-domain network: ... In server 2000 gpoedit.msc showed them but in SBS it is different. ...
    (microsoft.public.windows.server.sbs)
  • Re: resolve incorrect IP from RRA server.
    ... dynamic address, 10.5.101.123 from DHCP server. ... This is because the addtional DNS records that get registered cause major problems with AD functionality, especially the additional IPs registered by RRAS. ... However, if you choose to keep RRAS on the DC, then you have to force DNS to only register the internal static interface, and no others. ... If it is the internet gateway, it is recommended to purchase an inexpensive, or cable/DLS router, or even better, a Cisco or similar firewall to perform the task, which if it is compromised by an internet attacker remotely, can further compromise the rest of the internal network. ...
    (microsoft.public.windows.server.dns)
  • Re: Cannot connect to RWW from home PC
    ... DNS stuff says your mail server is responding with reply that is not MS ... When we setup this new SBS2003 setup we installed without ISA as it does ... not seeing any problems anywhere regards internet or email - we also run ...
    (microsoft.public.windows.server.sbs)