Exchange 2007 SP 3 RU3v2. OWA is hosted externally thorugh a TMG Forefront server.
When accessing links to internal resources (specifically PDF files hosted on interfal file servers). Users are not redirected from the "warning you are leaving this page" box. When you click the Ok button on the redirect message it just brings up a white page. These computers should have access to the file as they are using a vpn connection and can access them by directly browsing.
When accessing webmail though the internal server directly, these links work just fine. It is almost like TMG is not passing credentials back correctly to the file server when pulling up the file.
Ok i am a little confused! Are the users connecting through TMG from the internet directly OR are they connecting to a VPN configured on the TMG? If they are just connecting directly to the TMG from the internet, then obviously yes you have to publish that server because TMG will only allow access to resources that have been published.
_____________________________
Ibrahim Benna - Microsoft Exchange MVP Forum Moderator Navantis
Connecting to a 3rd party VPN (NetMotion) then to OWA via TMG (redundant, I know, but they link the warm fuzzy logon page). I can reproduce the problem when locted in my office and on the network connecting to OWA via TMG. I can open the file fine via my Outlook or the direct link to OWA on our CAS server but get the issue if I browse to the TMG hosted OWA and try it.
TMG is doing exactly what it is supposed to do...You are connecting to OWA through TMG and if you try to access another site through OWA, it will still go through TMG. What happens when you actually go directly to the link for the file without going through OWA (make sure all your browsers are closed). In addition, what is the point of having a VPN connection and then go through TMG??? Why not just enabled Forms based authentication on the Exchange server so they still get the same logon page?!
_____________________________
Ibrahim Benna - Microsoft Exchange MVP Forum Moderator Navantis
What happens when you actually go directly to the link for the file without going through OWA (make sure all your browsers are closed). -- Opens just fine
In addition, what is the point of having a VPN connection and then go through TMG??? --Initially we were told by our installing consultant that they wouldn't be able to log onto it with out doing so. We've since discovered otherwise (along with many other things we were told). I guess that's what happens when there are working relationship issues that develop..
Didn't know there were Forms based authentication options. Any good resources you know of for how to turn it on?
What happens when you actually go directly to the link for the file without going through OWA (make sure all your browsers are closed). -- Opens just fine
This was the exact result I was expecting actually because it makes perfect sense as to what is happening. The solution for you is to publish the server hosting the files through TMG if you would like for the users to click on their links in OWA and get access to the files - no two ways around it!!
quote:
Didn't know there were Forms based authentication options. Any good resources you know of for how to turn it on?
Yes Forms based authentication (FBA) has always been available in Exchange and in fact is turned on by default on Exchange 2007/2010. It may be that it has been disabled for your organization on the Exchange server since you are coming through TMG. I would not recommend that you change your current configuration until you fully understand the possible consequences for your users, and it may require some reconfiguration on your firewall and\or Exchange (it is working now, not in the best way but it IS working - let it be is my advice - if it ain't broke, don't try to fix it)! But here are some resources you can read in the meantime:
May be there is some problem in your web browser so set internet explorer as your default web browser and even if you have some problem then you an contact outlook PST Experts.