Re: EX2K3 SP2: RPC over HTTPS without AD2003?

Re: EX2K3 SP2: RPC over HTTPS without AD2003?

am 30.05.2007 07:18:17 von Jon Doe

Thanks for the replies. What I've read is that the Cisco ASA devices support
MAPI through WebVPN (or Clientless SSL VPN) as an Outlook/Exchange proxy. In
the absense of RPC over HTTPS as an option for now, I'd like to see if this
will be able to allow users not directly connected to the LAN connect to a
MAPI client using the ASA's MAPI support.


"John Oliver, Jr. [MVP]" wrote in message
news:D0FD830C-F828-4498-8863-8F345275585F@microsoft.com...
> SSL VPN? What are you trying to accomplish here? If you create your VPN
> you can pass SSL connections through the VPN but its overkill IMHO.
> Regardless, for RPC over HTTP to work, you will need to upgrade all your
> AD to 2003 and all DC's must be at least 2003.
>
> --
> John Oliver, Jr
> MCSE, MCT, CCNA
> Exchange MVP 2007
> Microsoft Certified Partner
>
>
> "Jon Doe" wrote in message
> news:ItKdnQoCRZvjRMHbnZ2dnUVZ_tOmnZ2d@comcast.com...
>> Ok, I guess it's not RPC over HTTPS but SSL VPN through the Cisco ASA. I
>> understand there's a way to use SSL VPN to tunnel into an Exchange
>> server. Anyone know anything about this? Any info would be greatly
>> appreciated.
>>
>> Thanks!
>>
>> "Michael Dragone" wrote in message
>> news:0CC25CDE-A645-4280-AD92-B30D47BAAAB6@microsoft.com...
>>> You will need an "AD2003" domain.
>>> The Cisco ASA won't remove this requirement.
>>>
>>> "Jon Doe" wrote in message
>>> news:abednZKeGbdQqcHbnZ2dnUVZ_hmtnZ2d@comcast.com...
>>>>
>>>> Hello,
>>>>
>>>> I was hoping to get some insight here. I am currently running Exchange
>>>> 2003 SP2 in a AD2000 domain. Everything I've heard so far indicates
>>>> that I would need to upgrade to AD2003 before I can implement RPC over
>>>> HTTPS.
>>>>
>>>> We are about to implement a Cisco ASA 5500 device and was told that
>>>> this will allow us to implement it even without AD2003. Any of you
>>>> heard of this? IS this possible without AD2003?
>>>>
>>>> Thanks much!
>>>
>>
>>
>

Re: EX2K3 SP2: RPC over HTTPS without AD2003?

am 30.05.2007 21:30:51 von jcoliverjr

From Cisco's link on the ASA,

http://www.cisco.com/en/US/products/ps6120/products_configur ation_example09186a00806ea271.shtml

it states "Users can achieve secure browser-based access to corporate
resources at anytime". From what I read and understand per the link, this
is only for OWA not MAPI. I did not read anything about MAPI through this
browser based WebVPN.

--
John Oliver, Jr
MCSE, MCT, CCNA
Exchange MVP 2007
Microsoft Certified Partner


"Jon Doe" wrote in message
news:fOGdnUi9b9PKlMDbnZ2dnUVZ_tSunZ2d@comcast.com...
> Thanks for the replies. What I've read is that the Cisco ASA devices
> support MAPI through WebVPN (or Clientless SSL VPN) as an Outlook/Exchange
> proxy. In the absense of RPC over HTTPS as an option for now, I'd like to
> see if this will be able to allow users not directly connected to the LAN
> connect to a MAPI client using the ASA's MAPI support.
>
>
> "John Oliver, Jr. [MVP]" wrote in message
> news:D0FD830C-F828-4498-8863-8F345275585F@microsoft.com...
>> SSL VPN? What are you trying to accomplish here? If you create your VPN
>> you can pass SSL connections through the VPN but its overkill IMHO.
>> Regardless, for RPC over HTTP to work, you will need to upgrade all your
>> AD to 2003 and all DC's must be at least 2003.
>>
>> --
>> John Oliver, Jr
>> MCSE, MCT, CCNA
>> Exchange MVP 2007
>> Microsoft Certified Partner
>>
>>
>> "Jon Doe" wrote in message
>> news:ItKdnQoCRZvjRMHbnZ2dnUVZ_tOmnZ2d@comcast.com...
>>> Ok, I guess it's not RPC over HTTPS but SSL VPN through the Cisco ASA. I
>>> understand there's a way to use SSL VPN to tunnel into an Exchange
>>> server. Anyone know anything about this? Any info would be greatly
>>> appreciated.
>>>
>>> Thanks!
>>>
>>> "Michael Dragone" wrote in message
>>> news:0CC25CDE-A645-4280-AD92-B30D47BAAAB6@microsoft.com...
>>>> You will need an "AD2003" domain.
>>>> The Cisco ASA won't remove this requirement.
>>>>
>>>> "Jon Doe" wrote in message
>>>> news:abednZKeGbdQqcHbnZ2dnUVZ_hmtnZ2d@comcast.com...
>>>>>
>>>>> Hello,
>>>>>
>>>>> I was hoping to get some insight here. I am currently running Exchange
>>>>> 2003 SP2 in a AD2000 domain. Everything I've heard so far indicates
>>>>> that I would need to upgrade to AD2003 before I can implement RPC over
>>>>> HTTPS.
>>>>>
>>>>> We are about to implement a Cisco ASA 5500 device and was told that
>>>>> this will allow us to implement it even without AD2003. Any of you
>>>>> heard of this? IS this possible without AD2003?
>>>>>
>>>>> Thanks much!
>>>>
>>>
>>>
>>
>
>