In news:D75AC95F-5931-4A17-BA5D-3E22A87B0D97[ at ]microsoft.com, Laljeev <laljeevm[ at ]newsgroup.nospam> requesting assistance, typed the following:
[Quoted Text] > Hi > > We are using mail.company.com and mail2.company.com as our webmail > addresses, which is published and registered with ISP's DNS. To > secure it we are using wild card certificate, but facing problem with > some Mobiles which are not compatible with WildCard certificate. So > our requirement is can we configure mail.company.com which is > pointing to 2 different IPs, so that we can go for domain name > certificate instead of wildcard. > > Actually now we configured mail.mycompany.com on ISA01 and > mail2.mycompany.com with ISA02 on different IPs. If any technology > like round robin is possible in this case, then it would be helpful > for us. So that we can ask ISP's to configure like that. > > Thanks in advance for your suggestions.
Are mail.company.com and mail2.company.com two different mail servers or they both go to one? If two servers, do they both receive mail for the company? If so, may I assume there are two MX records, and they are either weighted the same, or 'mail' is set to a lower MX weight (so it is used first) and 'mail2' is a higher weight (so it is used as second)?
Just use the one name, mail.company.com. Don't use two. This is less confusing for all users to connect, whether Windows Mobile or OWA (webmail). With one, you can use the two IP addresses on the public side, and ISA will respond based on the array responding. If not sure how to setup an array, see this: http://www.isaserver.org/tutorials/Configuring_ISA_Server_Arrays.html
Get a non-wildcard cert. (I actually didn't know they offered wildcard certs). For the cert to work with Windows Mobile, get one that Windows Mobile supports out of the box of you will need to install a copy of the root cert on each device. Here's a list that WM supports out of the box: http://blogs.technet.com/vik/pages/third-party-certificates-compatible-with-windows-mobile-powered-devices.aspx
You can use two ISA servers and set them up in an array so they both respond to requests under mail.company.com. Follow the instructions to setup ISA 2006 (you want to use the latest version of ISA for increased WM support) to publish OWA. What versions of Exchange? I listed both... http://www.msexchange.org/tutorials/Publishing-Exchange-2007-OWA-ISA-Server-2006.html http://www.petri.co.il/publishing_owa_with_isa2004.htm
Now you want to support and publish ActiveSync for WM with ISA 2006: http://www.isaserver.org/tutorials/Publish-Microsoft-Exchange-Active-Sync-EAS-ISA-Server-2006-Part1.html
I hope that gives you a good start.
--Â Ace
This posting is provided "AS-IS" with no warranties or guarantees and confers no rights.
Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCT Microsoft Certified Trainer
For urgent issues, you may want to contact Microsoft PSS directly. Please check http://support.microsoft.com for regional support phone numbers.
|