- Home
- Products
- Integration
- Tutorial
- Barcode FAQ
- Purchase
- Company
r Users in Visual C#
r Users PDF-417 2d Barcode Generator In Visual C# Using Barcode printer for Visual Studio .NET Control to generate, create PDF 417 image in VS .NET applications. www.OnBarcode.comPDF-417 2d Barcode Reader In C#.NET Using Barcode reader for Visual Studio .NET Control to read, scan read, scan image in Visual Studio .NET applications. www.OnBarcode.comam Mi
Bar Code Generation In C#.NET Using Barcode maker for VS .NET Control to generate, create bar code image in VS .NET applications. www.OnBarcode.comBarcode Scanner In Visual C#.NET Using Barcode scanner for .NET Control to read, scan read, scan image in VS .NET applications. www.OnBarcode.comDenve
Generate PDF-417 2d Barcode In VS .NET Using Barcode printer for ASP.NET Control to generate, create PDF-417 2d barcode image in ASP.NET applications. www.OnBarcode.comPDF 417 Creation In VS .NET Using Barcode maker for .NET Control to generate, create PDF-417 2d barcode image in .NET framework applications. www.OnBarcode.comiU ser s
Make PDF417 In Visual Basic .NET Using Barcode encoder for VS .NET Control to generate, create PDF 417 image in Visual Studio .NET applications. www.OnBarcode.comMake PDF-417 2d Barcode In C# Using Barcode generator for Visual Studio .NET Control to generate, create PDF-417 2d barcode image in Visual Studio .NET applications. www.OnBarcode.comDenver
Draw Code 128B In Visual C#.NET Using Barcode creator for .NET Control to generate, create ANSI/AIM Code 128 image in Visual Studio .NET applications. www.OnBarcode.comMaking ECC200 In Visual C#.NET Using Barcode printer for .NET framework Control to generate, create Data Matrix ECC200 image in .NET framework applications. www.OnBarcode.comMiami
Creating Barcode In Visual C#.NET Using Barcode maker for Visual Studio .NET Control to generate, create barcode image in VS .NET applications. www.OnBarcode.comMonarch Encoder In Visual C#.NET Using Barcode maker for Visual Studio .NET Control to generate, create Ames code image in VS .NET applications. www.OnBarcode.comCertificate Priniciple Name: *.Fabrikam.com
GS1 - 12 Printer In .NET Using Barcode creator for Reporting Service Control to generate, create UPC-A Supplement 5 image in Reporting Service applications. www.OnBarcode.comBarcode Decoder In .NET Framework Using Barcode recognizer for .NET framework Control to read, scan read, scan image in .NET framework applications. www.OnBarcode.comCertificate Priniciple Name: *.Fabrikam.com
QR Code Creator In .NET Framework Using Barcode encoder for Reporting Service Control to generate, create QR-Code image in Reporting Service applications. www.OnBarcode.comCreating Bar Code In VS .NET Using Barcode generator for Reporting Service Control to generate, create barcode image in Reporting Service applications. www.OnBarcode.comOutlook Anywhere Hostname: Mail.fabrikam.com Web Service URLs Mail.fabrikam.com/ews/.. Mail.fabrikam.com/oab/.. Creating GS1 128 In Java Using Barcode drawer for Android Control to generate, create EAN 128 image in Android applications. www.OnBarcode.comPDF-417 2d Barcode Generator In Java Using Barcode encoder for Android Control to generate, create PDF417 image in Android applications. www.OnBarcode.comOutlook Anywhere Hostname: Failover.fabrikam.com Web Service URLs Failover.fabrikam.com/ews/.. Failover.fabrikam.com/oab/.. PDF417 Scanner In None Using Barcode recognizer for Software Control to read, scan read, scan image in Software applications. www.OnBarcode.comPrint EAN / UCC - 13 In None Using Barcode creation for Office Excel Control to generate, create GTIN - 13 image in Microsoft Excel applications. www.OnBarcode.comFIGURE 4-37 Fabrikam wildcard example
In this scenario the wildcard certificate allows Fabrikam to use a single namespace. The design will change slightly on Fabrikam s requirement to either try to use both datacenters actively, or treat Miami as a failover site. If Miami is only a failover site, it will be used only when all service is lost in Denver. In this case, the external DNS record for AutoDiscover needs to be updated to resolve to a Client Access server in Miami. Users accessing OWA with Mail.fabrikam.com will resolve via external DNS to a Client Access server in Denver. If externalURL is configured on the Client Access servers in Miami, users with mailboxes in Miami will be redirected. The other option is to leave externalURL 194 ChapTEr 4 Client Access in Exchange 2010
blank and proxy all requests, but this assumes that the correct authentication type, Windows Integrated, is enabled in each location. Users in Miami will have their Outlook Anywhere connections set to failover.fabrikam. com, but there will be no certificate warning because we changed the global setting for certprincipalname to *.fabrikam.com with the following Windows PowerShell cmdlet: Set-outlookprovider EXPR certprincipalname msstd:*.fabrikam.com
Note that during a move mailbox for user from Denver to Miami, the Outlook Anywhere connection may use a Client Access server in Denver and cross-site access the mailbox in Miami (and vice versa for moves in the opposite direction). SaME CONFIGUraTION IN BOTh SITES
In this design we use the same configuration in both Denver and Miami. By doing this, we can only use this design for using Miami as a failover site. As you can see from the illustration in Figure 4-38, external DNS can only resolve to one site, so an administrator must manually update the DNS entries in a failover scenario. If Fabrikam could make this one Active Directory site, it s possible to make this configuration work for single database moves. Outlook 2003/2007 Configured: RPC Proxy End Point: mail.fabrikam.com Msstd:*.fabrikam.com
Active
er lov Fai
Denver
Miami
Certificate Priniciple Name: mail.fabrikam.com SAN Names: mail.fabrikam.com autodiscover.fabrikam.com Outlook Anywhere Hostname: mail.fabrikam.com Web Service URLs mail.fabrikam.com/ews/.. mail.fabrikam.com/oab/.. Certificate Priniciple Name: mail.fabrikam.com SAN Names: mail.fabrikam.com autodiscover.fabrikam.com Outlook Anywhere Hostname: mail.fabrikam.com Web Service URLs mail.fabrikam.com/ews/.. mail.fabrikam.com/oab/.. FIGURE 4-38 Fabrikam same configuration deployed in both site examples
Planning Client Access to Exchange
ChapTEr 4
SaN CErTIFICaTE aND MSSTD
This configuration is very similar to the wildcard architecture except that it uses a certificate that supports SANs. The main reasons to use this design are the expense of using a wildcard certificate and also the maximized compatibility. Most newer clients work with wildcard certificates, but some older clients, such as Windows mobile 5.x and some Web browsers, may not work at all. The certificate must list all of the possible service points, and the subject name must be set to mail.fabrikam.com. By default the MSSTD setting matches the ExternalHostname when enabling Outlook Anywhere. For this architecture to work, we must change the global setting for certprincipalname to mail.fabrikam.com with the following Windows PowerShell cmdlet: Set-outlookprovider EXPR certprincipalname msstd:mail.fabrikam.com
This way users will not get a certificate warning because the MSSTD setting matches the certificate principal name in both sites. Figure 4-39 shows this architecture. Outlook 2003/2007 Configured: RPC Proxy End Point: mail.fabrikam.com (Denver Mailboxes) failover.fabrikam.com (Miami Mailboxes) Msstd:mail.fabrikam.com Denver U
sers
Mi am iU ser s
Denver
Miami
Certificate Priniciple Name: mail.fabrikam.com SAN Names: mail.fabrikam.com failover.fabrikam.com autodiscover.fabrikam.com Outlook Anywhere Hostname: mail.fabrikam.com Web Service URLs mail.fabrikam.com/ews/.. mail.fabrikam.com/oab/.. Mailbox
Certificate Priniciple Name: mail.fabrikam.com SAN Names: mail.fabrikam.com failover.fabrikam.com autodiscover.fabrikam.com Outlook Anywhere Hostname: mail.fabrikam.com Web Service URLs mail.fabrikam.com/ews/.. mail.fabrikam.com/oab/.. Move
FIGURE 4-39 Fabrikam SAN certificate and MSSTD example
ChapTEr 4
Client Access in Exchange 2010
In the event of a failover, Outlook Anywhere 2007/2010 users will not see that they are connecting to failover.fabrikam.com because this is automatically configured with AutoDiscover. Outlook 2003 users will not have to change their profiles because the mail.fabrikam.com end point they were using still exists as a SAN on the certificate and the Certificate Principal Name has not changed. In this case, it is possible that after a mailbox move or site failure the user will have a Client Access server that accesses his mailbox across sites. A total site failure in Denver would require administrators to reconfigure AutoDiscover and mail URLs to the Client Access servers in Miami.
|
|