Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chris Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Exchange 2000 Front-End (member) server does not work!

Status
Not open for further replies.
Apr 30, 2002
6
US
Can you install Exchange 2000 onto a W2K 'member' server and use it as a Front-End mail server? I have installed Exchange 2000 (plus Service Pack 2)just that way but when I try to access my mail using the Front End (via my IE browser), it uses the Userid/Password to log in locally to the member server. Of course this fails with the message "Error: Access is Denied" after three attempts. I get a Event (system) log entry like the one below for every attempt. My boss wants the Front End Exchange server outside the firewall and with minimal exposure to hacker attacks by opening up only the required ports. He comes from a Windows/NT4 environment using Exchange 5.5. He did not expect that a second install of (Enterprise!!) Exchange was required since in the Exchange 5.5 environment he simply copied the OWA html pages to IIS. Of course it is not that simple with Exchange 2000. My guess is that if I promote this server to a domain controller, I will be able to access my mail. But now I have exposed the Active Directory to the outside world. Is there a better way? Would I need to setup a bastion host, etc?

Lastly, if I point to my back-end Exchange server using a browser or Outlook, I can successfully access my mail. I have done all of the steps required by the Technet article (Chapter 6 - Installing the Front-End Servers) except the part about SSL and Certificates.

Thanks for your input.

James

System Event entry:

Event Type: Warning
Event Source: W3SVC
Event Category: None
Event ID: 100
Date: 7/8/2002
Time: 2:30:59 PM
User: N/A
Computer: RIGGSOWA
Description:
The server was unable to logon the Windows NT account 'user1' due to the following error: Logon failure: unknown user name or bad password. The data is the error code.
For additional information specific to this message please visit the Microsoft Online Support site located at: Data:
0000: 2e 05 00 00 ....
 
"He did not expect that a second install of (Enterprise!!) Exchange was required since in the Exchange 5.5 environment he simply copied the OWA html pages to IIS."

You can still use 5.5 OWA with Exchange 2000.

Have you followed this paper?

Dan
Microsoft Exchange Support @ Microsoft
 
Dan,
Thanks for information. I am reviewing the document that you suggested. I did fail to mention that my bosses experience concerning Exchange 5.5/OWA came from his previous job. The company that we work for is implementing Exchange 2000 for the first time and has no previous Exchange product. Also, since I submitted the question I was able to get the Front-End Exchange to work somewhat. I added identifiers in the virtual server “Exchange FE VS” (Microsoft suggested name)in Exchange System Manager – Servers – servername= – Protocols – HTTP – Exchange FE VS.
Of course when I point directly to the BE exchange from the browser I get into my mail box each time AND I am able to LOGOFF. If I point to I can get to my mailbox but I am not able to logoff. I get ‘This page cannot be displayed’ and the System Event log on the FE server gets the event listed below. Should I be configuring IIS to make this work? I have checked several Microsoft Press manuals and they don’t seem to pull everything together concerning the full implementation of FE/BE with CA, & SSL etc. I’ll continue to search for the answers.

Thanks

James

= = System Event log entry = =

Event Type: Warning
Event Source: W3SVC
Event Category: None
Event ID: 36
Date: 7/10/2002
Time: 3:01:44 PM
User: N/A
Computer: RIGGSOWA
Description:
The server failed to load application '/LM/W3SVC/100/root'. The error was 'The specified metadata was not found.
'.
For additional information…
 
Are both servers Exchange 2000 SP2? Dan
Microsoft Exchange Support @ Microsoft
 
Dan,

Yes, both FE and BE Exchange 2000 servers are member servers with Service Pack 2 installed. I have not been able to resolve the LOGOFF problem. Before configuring for SSL I would like to get this problem resolved. The document that you pointed out was informative but not heavy on the configuration end. I am trying to pull things from many different technical manuals. Any help would be appreciated. I have no problem with re-installating Exchange 2K Service Pack 2, etc. I know that SP2 was a big code change.

Should my FE server be configured to point back to the BE in ESM or IIS? I thought that the installation itself would take care of FE/BE communication pointing. Also, what should my ESM and IIS tree structure look like. I ask this because under ESM there exists an "Exchange Virtual Server" wher if you try to view 'Properties' it states that "You must use the IIS Admin to manage the Virtual Server's settings". But IIS Admin does not have a "Exchange Virtual Server" entry, only the one I created called "Exchange FE VS".
Thanks - James
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top