Presentation is loading. Please wait.

Presentation is loading. Please wait.

Module 4 Managing Client Access. Module Overview Configuring the Client Access Server Role Configuring Client Access Services for Outlook Clients Configuring.

Similar presentations


Presentation on theme: "Module 4 Managing Client Access. Module Overview Configuring the Client Access Server Role Configuring Client Access Services for Outlook Clients Configuring."— Presentation transcript:

1 Module 4 Managing Client Access

2 Module Overview Configuring the Client Access Server Role Configuring Client Access Services for Outlook Clients Configuring Outlook Web App Configuring Mobile Messaging

3 Lesson 1: Configuring the Client Access Server Role How Client Access Works How Client Access Works with Multiple Sites Deployment Options for a Client Access Server Demonstration: How to Configure a Client Access Server Securing a Client Access Server Considerations for Deploying a Client Access Server Configuring Certificates for Client Access Servers Options for Configuring POP3 and IMAP4 Client Access Configuring the Client Access Server for Internet Access

4 How Client Access Works RPC/MAPI HTTPS IMAP4 POP3 HTTPS IMAP4 POP3 Mailbox Server Mailbox Server Domain Controller Domain Controller Client Access Server Client Access Server RPC/MAPI 1 1 3 3 2 2 4 4

5 How Client Access Works with Multiple Sites Multiple Internet Access Points Multiple Internet Access Points Single Internet Access Point Single Internet Access Point Client request is redirected Client request is redirected Client request is proxied Client request is proxied Proxying is used for Outlook Web App, Exchange ActiveSync, and Exchange Web Services Redirection is used only for Outlook Web App

6 Deployment Options for a Client Access Server Client Access servers: Must be deployed in each Active Directory site that has Mailbox servers Must have a fast connection to Mailbox servers and domain controllers Need to be accessible from the Internet using the client protocol in Internet-facing sites You can deploy Client Access servers: On a single server with other Exchange Server roles On a dedicated server to provide scalability On multiple dedicated servers in an array

7 Demonstration: How to Configure a Client Access Server In this demonstration, you will review: The Client Access settings for an organization The Client Access server settings

8 Notes Page Over-flow Slide. Do Not Print Slide. See Notes pane.

9 Securing a Client Access Server To secure a Client Access server: Install server certificates, and ensure that SSL is required Configure authentication settings: Integrated Windows authentication Digest authentication Basic authentication Forms-based authentication Protect the server with an application layer firewall

10 Considerations for Implementing Client Access Server Certificates When implementing Client Access certificates, consider: Whether to use an internal or public CA The client access protocols in use The server names used by messaging clients

11 Demonstration: How to Configure Certificates for Client Access Servers In this demonstration, you will review: The New Exchange Certificate Wizard How to approve a certificate request The Subject Alternative Names in the certificate

12 Notes Page Over-flow Slide. Do Not Print Slide. See Notes pane.

13

14

15 Options for Configuring POP3 and IMAP4 Client Access OptionDescription Bindings Configure local server addresses Authentication Configure authentication options Connection settings Configure server connection settings Retrieval settings Configure message formats and calendar retrieval settings User access Configure whether a user can use the protocol

16 Configuring the Client Access Server for Internet Access To enable Internet access to Client Access services: Configure external URLs Configure the external DNS names Configure access to Client Access virtual directories Implement SSL certificates with multiple subject alternative names Plan for Client Access server access with multiple sites

17 Lesson 2: Configuring Client Access Services for Outlook Clients Services Provided by a Client Access Server for Outlook Clients What Is RPC Client Access Services? What Is Autodiscover? Configuring Autodiscover What Is the Availability Service? What Are MailTips? Demonstration: How to Configure MailTips What Is Outlook Anywhere? Demonstration: How to Configure Outlook Anywhere Troubleshooting Outlook Client Connectivity

18 Services Provided by a Client Access Server for Outlook Clients ServiceDescription RPC Client Access Service Enables MAPI connectivity to user mailboxes Autodiscover Enables automatic configuration for Outlook and mobile clients Availability Provides free or busy information MailTips Provides notifications regarding issues with sending a message Offline Address Book download Provides offline address book download for Outlook clients Exchange Control Panel Provides an administrative interface for accessing mailbox and recipient information Exchange Web Services Provides a developer interface for accessing all Exchange server content and settings Service Outlook Anywhere Enables RPC over HTTPS access to user mailboxes

19 What Is RPC Client Access Services? Mailbox Server Role Mailbox Server Role Client Access Server Role Client Access Server Role MAPI

20 Autodiscover provides information that you can use to configure Outlook 2007 client profiles What Is Autodiscover? Outlook 2007 Autodiscover Process: The client locates the Autodiscover service The Autodiscover service on the client sends each Client Access server an HTTP Post command The appropriate Client Access server responds by returning an XML file Outlook downloads the required configuration information from the Autodiscover service 1 1 2 2 3 3 4 4

21 Configuring Autodiscover To configure Autodiscover: Use the Exchange Management Shell Configure site affinity for Exchange Servers in multiple sites Configure DNS records for external clients Use Outlook's Test E-mail AutoConfiguration feature to test

22 What Is the Availability Service? Availability service makes free/busy information available for Outlook 2007 and Outlook Web App clients Exchange Server 2010 Exchange Server 2010 Exchange Server 2010 Exchange Server 2010 Exchange Server 2003 Exchange Server 2003 1 1 2 2 4 4 5 5 3 3

23 What Are MailTips? Exchange Server 2010 provides: Default MailTips Custom MailTips MailTips provide information about a message delivery before the message is sent The Client Access server provides the MailTips to the client

24 Demonstration: How to Configure MailTips In this demonstration, you will see how to: Review and configure the default MailTips for an Exchange organization Configure custom MailTips Verify that the MailTips work as expected

25 Outlook Anywhere enables RPC connections over HTTPS to an Exchange Server 2010 server What Is Outlook Anywhere? Mailbox Server Client Access Server Outlook 2003 or Outlook 2007 Client Global Catalog Servers RPC HTTPS LDAP

26 Demonstration: How to Configure Outlook Anywhere In this demonstration, you will see how to: Configure Autodiscover settings Configure an Client Access server for Outlook Anywhere Configure an Outlook 2007 profile for Outlook Anywhere Verify Outlook Anywhere connectivity

27 Notes Page Over-flow Slide. Do Not Print Slide. See Notes pane.

28

29 Troubleshooting Outlook Client Connectivity To troubleshoot Outlook Client connectivity: Verify network connectivity Verify DNS name resolution Verify Exchange Server availability Test the client autoconfiguration process Verify Client Access server certificates Verify client configuration

30 Lab A: Configuring Client Access Servers for Outlook Anywhere Access Exercise 1: Configuring Client Access Servers Exercise 2: Configuring Outlook Anywhere Logon information Estimated time: 60 minutes Virtual machine 10135A-VAN-DC1, 10135A-VAN-EX1, 10135A-VAN-EX2, 10135A-VAN-CL1 User nameAdministrator Password Pa$$w0rd

31 Lab Scenario You are working as a messaging administrator in A. Datum Corporation. Your organization has decided to deploy Client Access Servers so that the servers are accessible from the Internet for a variety of messaging clients. To ensure that the deployment is as secure as possible, you must secure the Client Access server, and configure a certificate on the server that will support the messaging client connections. You also need to configure the server to support Outlook Anywhere connections.

32 Lab Review In this lab, you configured the Client Access server to use a certificate from an internal CA. How would the steps change if you used a public CA? How would the steps in the lab change if you had two company locations, and you had to configure Client Access server access to both locations?

33 Lesson 3: Configuring Outlook Web App What Is Outlook Web App? Configuration Options for Outlook Web App What Is File and Data Access for Outlook Web App? Demonstration: How to Configure Outlook Web App Demonstration: How to Configure Outlook Web App Policies Demonstration: How to Configure User Options by Using the ECP

34 What Is Outlook Web App? Outlook Web App provides: Web-based access to all Exchange mailbox components Secure HTTPS access from the Internet An alternative to deploying a messaging client Access to Exchange Server 2010 features that are not available in Outlook 2007

35 Configuration Options for Outlook Web App Configuration Option Description Server certificates Required to enable SSL SSL settings Enables secure access to Outlook Web App Authentication Determines which clients can connect Segmentation settings Determines the available features in Outlook Web App Gzip compression Enables compression of messages and attachments Web beacon settings Manages Web beacon access

36 What Is File and Data Access for Outlook Web App? With file and data access, you can configure: File and data access for Outlook Web App enables users to access attachments and files stored on other servers WebReady document viewing Direct file access Different settings when users connect from public or private computers Access to files stored on Windows SharePoint Services servers and Windows file shares Restrict access to files based on file types or internal servers

37 Demonstration: How to Configure Outlook Web App In this demonstration, you will see how to configure: A server to require SSL Outlook Web App virtual directories Authentication options for Outlook Web App virtual directories Gzip compression settings Segmentation settings Web beacon settings

38 Notes Page Over-flow Slide. Do Not Print Slide. See Notes pane.

39

40 Demonstration: How to Configure Outlook Web App Policies In this demonstration, you will see how to: Configure an Outlook Web App policy Assign an Outlook Web App policy to a user account

41 Notes Page Over-flow Slide. Do Not Print Slide. See Notes pane.

42 Demonstration: How to Configure User Options Using the ECP In this demonstration, you will see how to: Configure the Exchange Control Panel virtual directory Configure user mailbox settings through the Exchange Control Panel

43 Notes Page Over-flow Slide. Do Not Print Slide. See Notes pane.

44 Lesson 4: Configuring Mobile Messaging What Is Exchange ActiveSync? Demonstration: How to Configure Exchange ActiveSync Options for Securing Exchange ActiveSync Demonstration: How to Configure Exchange ActiveSync Policies Demonstration: How to Manage Mobile Devices

45 What Is Exchange ActiveSync? Mailbox Server Client Access Server Exchange ActiveSync Client Mailbox Server Client Access Server 1 1 3 3 2 2

46 Demonstration: How to Configure Exchange ActiveSync In this demonstration, you will see how to: Configure the Exchange Server settings for Exchange ActiveSync Configure a mobile device for Exchange ActiveSync

47 Notes Page Over-flow Slide. Do Not Print Slide. See Notes pane.

48

49 Options for Securing Exchange ActiveSync To secure Exchange ActiveSync : Configure Exchange ActiveSync policies for security Wipe lost or stolen devices Enable self-service mobile device management Ensure that SSL is required for the Exchange ActiveSync virtual directory Install CA root certificates on client devices

50 Demonstration: How to Configure Exchange ActiveSync Policies In this demonstration, you will see how to: Configure Exchange ActiveSync mailbox policies Configure user accounts for Exchange ActiveSync

51 Notes Page Over-flow Slide. Do Not Print Slide. See Notes pane.

52 Demonstration: How to Manage Mobile Devices In this demonstration, you will see how to: Manage mobile devices as an administrator Perform self-service mobile device management using the Exchange Control Panel

53 Lab B: Configuring Client Access Servers for Outlook Web App and Exchange ActiveSync Exercise 1: Configuring Outlook Web App Exercise 2: Configuring Exchange ActiveSync Logon information Estimated time: 50 minutes Virtual machine 10135A-VAN-DC1, 10135A-VAN-EX1, 10135A-VAN-EX2, 10135A-VAN-CL1 User nameAdministrator Password Pa$$w0rd

54 Lab Scenario To enable client access to the server, your organization has decided to enable both Outlook Web App and Exchange ActiveSync for its users. However, the security officer at A. Datum Corporation has defined security requirements for the Outlook Web App and Exchange ActiveSync deployment. Therefore, you need to enable the security features for both Outlook Web App and Exchange ActiveSync.

55 Lab Review What additional steps can you take to enhance the security for the Outlook Web App and Exchange ActiveSync connections in your organization? How would you modify the procedures in this lab if you needed to ensure that users cannot download attachments using Outlook Web App?

56 Module Review and Takeaways Review Questions Common Issues and Troubleshooting Tips Real-World Issues and Scenarios Best Practices Tools

57 Notes Page Over-flow Slide. Do Not Print Slide. See Notes pane.


Download ppt "Module 4 Managing Client Access. Module Overview Configuring the Client Access Server Role Configuring Client Access Services for Outlook Clients Configuring."

Similar presentations


Ads by Google