Create Authentication and Authorization Servers
1. Logon to UAG01 and launch Microsoft UAG Management. Click Admin > Authentication and Authorization Servers
2. Click Add

4. Click Close
Disable ValidateRwsCert Registry Key
If you are using a certificate that contain only the external FQDN in the internal publishing App server. You will need to perform this step to disable certificate checking between UAG and publishing App server.
1. Logon to UAG01, go to Start > Run > Enter “regedit”. Navigate to HKEY_LOCAL_MACHINE\SOFTWARE\WhaleCom\e-Gap\Von\URLFilter\Comm\SSL and set the key value of ValidateRwsCert to 0
2. Restart the IIS service on Forefront UAG server
Create Trunk with Outlook Web App Publishing
1. Logon to UAG01, launch the Microsoft UAG Management. Navigate to HTTPS Connections and Click here to create an HTTPS trunk
2. On the welcome page, Next
3. Select Portal and check the Publish Exchange application via the portal because we are going to set the OWA as portal home page
4. Enter the trunk setting
5. Enter the authentication server
6. Choose the imported certificate
7. Use Forefront UAG access policies
8. Leave endpoint policies as default and click Next
9. Choose Microsoft Exchange 2010 with Outlook Web Access. Outlook Anywhere and Exchange ActiveSync will be configured later
10. Enter application name
11. Select Endpoint Policies

12. Configure a farm of application server
13. Enter the load-balanced web servers for Exchange and choose balance request using cookie-based affinity
14. Configure verification method to use establish a TCP connection

15. Do not use SSO because pass-through authentication will be used

16. Add the portal and toolbar link

17. Authorize all users

18. Click Finish
19. Exchange 2010 OWA portal has been created successfully
No comments:
Post a Comment