InfiniTec - Henning Krauses Blog

Don't adjust your mind - it's reality that is malfunctioning

Formbased authentication and Exchange 2007

If you have tried to access an Exchange 2007 mailbox or public folder via WebDAV with Formbased Authentication enabled, you might have found out, that it does not work in the current bet: Although you get the necessary cookies, the next request fails with a 440-Login Timeout.

This happens because of the way the Exchange virtual directories are set up - the /Exchange virtual directory runs in another application pool than the /exchweb virtual. This results in different encryption keys being used for the encoding of the cookies.

To work around this, ensure that /OWA and the /Exchange and /Public virtual folders are running in the same application domain.

However, these changes are unsupported and may break uninstallation of Exchange 2007.

This issue has been fixed in post-beta 2 releases.

Btw, the Exchange version I have tested this on is 8.0.605.16.


Posted by Henning Krause on Thursday, September 21, 2006 12:00 AM, last modified on Monday, November 29, 2010 8:59 PM
Permalink | Post RSSRSS comment feed

Comments (1) -

On 1/8/2009 2:47:58 PM James Hancock United States wrote:

James Hancock

I'm using the final version of Exchange Server 2007 with SP1 and this is still happening. Anyone have a work around?