Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations wOOdy-Soft on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

OWA - done but how does internet connect ? 1

Status
Not open for further replies.

tmandu

IS-IT--Management
Feb 27, 2001
100
US
Ok, I succesfully have brought up OWA from a workstation on our NT LAN. I can log into my email via OWA. My question is simple. How do I now get the ability to log on through the internet outside the lan(like from home)? I believe I am behind the firewall/router ? Do I have to open port 80 on the firewall router somehow ? Do I need an MX record if so how do I get one ?

There are no sound instructions on how to do this anywhere I have searched for 2 days . THanks
 
You don't need an MX record, you need a DNS entry for the web server. You need to open the firewall on port 80 with a pass through to the web server (like a static inside outside if you use Cisco).

Then tie down your OWA server. Then you should be ok.
 
Thanks, do you mean I take the ip address of the webserver and put its ip number somwhere on the server - where ?

We have a CISCO 1700 Series Router -- I can get the book out but it you know how to do open port 80 - i would appreciate it.

Last - if my users do not need a password to get into their workstations and do not need a password for outlook, is there any way to have security for owa when they are on the internet ??

Thanks - I really appreciate it.
 
I found this on the internet and it helped me somewhat-maybe it will save some people some time and effort
it is a step by step explanation on how to get OWA going - my only complaint was that is was written apparently for owa to be on the same server as exchange ??

 
Hi

I am also having problems installing owa. I dont know how to configure it as it is on a different server than exchange and also how to connect through internet to owa. I can access owa from desktops inside organisation but not from outside. Please help this has been driving me mad for days now.

Thanks

Claire
 
My OWA went in on another server which was not a primary domain controller. I set it up as just a server. I am having the same difficulty as you are. If you got to the cgnet website I pointed to it does give some tips. Again this is for a server that has OWA running on the save server Exchange is running.

When I loaded OWA on my separate server I did not get the entry of IUSR_Machine_name on the primary domain controller (where Exchange is running). I did however get this created on my separate OWA server. I found it when I logged on locally to the OWA server and went to user manager. I did try the steps in the cgnet site and I know this is on the right path(DNS entry , etc). My last thing to check is whether or not port 80 is open on my router. THis could take me 1 day just to find out by hit or miss.

If you find anything else let me know - sorry I could not be of more help.




 
You will need either a free public IP address and map it to the network IP address of the OWA server or you can map all http requests to your OWA server if you don't have Proxy running.

I'm not sure how to do mappings on your Cisco router, but it shouldn't be too difficult. Once you have the IP mapped, just go to (where XX is the public IP address).

If you want to get fancy, have your ISP create a zone file to map your public IP for the OWA server to a name server like outlook.domian.com.

Hanson
 
you have to telnet to your router
as such telnet 10.1.1.1 (<---- if that's the rout'ers ip)

you have to creat e an access list
access-list 1 permit 10.0.0.0 0.255.255.255
access-list 100 permit ip 10.0.0.0 0.255.255.255 any
access-list 199 permit ip host 10.1.1.2 25 (for SMTP)
access-list 199 permit ip host 10.1.1.2 110 (for POP3)
access-list 199 permit ip host 10.1.1.2 80 (for HTTP)
route-map nonat permit 10
match ip address 1


this creates the access list to permit traffic on your subnet

then opens up the email server at ip 10.1.1.2 this is done on the router if there is no firewall.

if there is a firewall
then you need to:

create an object for the mail server
then allow traffic to flow on port 80,25 and 110 it depends on what kind of firewall software your company uses.

 
Hi

Thanks for the replies, we have 5 public addresses that our isp provides we cant get onto the router as we lease it off them. they have given me an ip address i can use, we have checkpoint fw1 installed so do i just need to create owa as an object and allow smtp, ftp etc.

The owa is in the DMZ and exchange is in our private network. Do i need 2 network cards?. Im getting really confused!
 
Sunnybaz - just a few questions from a neophyte.

1.I can telnet to the router and I understand in your example the substitution of the 10.1.1.1 for my routers ip.
But then you start to use 10.0.0.0.0 ?? next to the subnet mask 255.255.255. Do I use my first number form my ip
Lets say my ip on the router is 198.555.6.3.
woudl it be 198.0.0.0.0.255.255.255.255

2.)I beleive the firewall is in the router CISCO1700.Not on the PDC server with software. I haven't tried the commands via telnet all the way, so I dont even know if commands like access-list will work with my router.

3. since we are already accessing the internet wouldnt port 80 already be opened ?

4. I used a server that I set up as &quot;server&quot; rather than backup domain controller and loaded OWA but not exchange on it. The IUSR did not 'appear on the main PDC after install.
I found in only when I logged on directly to the server as administrator on OWA server (called OWAMAIL) OWAMAIL is the name of the computer that OWA server is loaded on.

Normally this server(OWAMAIL) boots up and is a member of the primary master domain. So did I configure this the wrong way, should I have made it a BDC also.


Create an object for the mail server - I have no i9dead what this means.

desperate ! I have a server sitting here doing nothing .

If you want I can give you a hotmail email and then I can give you more specifics. THanks.

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top