We have a wildcard certificate set up on our ISA Server and and certificate setup on our internal network for the front-end exchange server which host the exchange active-sync. Is there a way on Windows Mobile 5.0 to tell it the cert name is different than the cert on the exchange server, like in Outlook where you specify the msstd:*.domain.com?
WM 5.0 does NOT support wildcard certificates of any kind. Also unfortunately the Disable Certificate checking tool meant for WM 2003 doesn't work for WM 5.0
To disable certificate checking on WM 5.0 you might want to manually disable certificate checking by installing a 3rd party registry editor like Resco and changing the DWORD Value under HKCU\Software\Microsoft\Activesync\Partners\[Secure] to 0
For wildcards there is no solution except for disabling certificate checking on WM 5.0 so that the device doesn't care who the certificate is issued to.
abdulzis I have a device that uses MS Mob 5.0 are you certain that this change would have the same outcome as using the ms certchk tool for enabling and disabling this. and is there another way to edit this reg entry without using that program.
ORIGINAL: abdulzis To disable certificate checking on WM 5.0 you might want to manually disable certificate checking by installing a 3rd party registry editor like Resco and changing the DWORD Value under HKCU\Software\Microsoft\Activesync\Partners\[Secure] to 0 **Do this at your own risk***
I have a feeling this is going to fix a problem I have with Exchange ActiveSync. Problem is I can't work out which key to change. The [Secure] I assume is the key for the Exchange bit which is fine but I can't work out which DWORD to set to 0 or should I create a new key in which case what should it be.
I think that the key which abdulzis has given for the disablecert is not correct ..... I am working on it and will be giving soon. abdulzis if you can find the correct one then pls provide us.. Thanks in advance
Sorry for the confusion. I actually ran the disable cert check on a PPC 2003 emulator, Ran the remote registry editor in VS 2005 and found that tool adds this key to the PPC registry --->HKCU\Software\Microsoft\Airsync\Connection\Secure=0. But for 2005 its under HKCU\Software\Microsoft\Activesync\Partners\
That still does not work. I am getting the error Syncronization could not be completed. Try again later. Support code: 0x80072f17. I can go to OWA on the device.
just got an upgrade for my IPAQ and I have the same issue, because its a selfsinged cert I cant sync, OMA works fine other than a warning, I even tried importing the certificate, no luck there :(
UPDATE: Just got it to work (well sort of)
heres what I did, I exported my self certificate from the server and then imported it to the PDA using the HP Utility and rebooted. I then tried syncing - no luck Changed the server name to the IP and it connected, but gave an error about the certificate being "Wrong name" changed it back - and I got a 8range error. so I unticked all 4 boxes, and sync'd locally - worked I then unticked the 4 exchange options from the local sync list and sync without them there. I then added Tasks - worked, Added Email Worked - resync with the folder selections I wanted. Added Contact - Worked, Added Calender Failed with 80070490 error.
So I now have a way to get my emails but not the calender, atleast its a start. If anyone has any ideas on the calender side i would be most greatful, I hope my instructions help someone else get this working, give me a shout if you need clarification on any point its 11pm and I am tired :)
< Message edited by donaldsmarshall -- 29.Oct.2005 5:51:17 PM >