Windows Vista Tips

Windows Vista Tips > Newsgroups > ActiveSync > Self signed certs sync issue, WM5 + SBS2003

Reply
Thread Tools Display Modes

Self signed certs sync issue, WM5 + SBS2003

 
 
Rosewood
Guest
Posts: n/a

 
      02-22-2006
Let me dog pile on this one too!

SBS2003 using self signed certs. WM5 device on the WLAN trying to sync with
the exchange server. Sync works fine until SSL is enabled.

1) At first I got "0x80072f17" which means it didn't like my server's
certificate. I tried to disable cert checking in the registry
(HKCU\Software\Microsoft\Activesync\Partners\Secur e , DWORD value of 0) and
that didn't do it so...

2) I exported my personal cert from my PC that was issued by my sbs2003
server. (Issued to my name, Issued by my current domain, valid expieration
date, with the intended purposes of EFS, Secure Email, and Client
Authentication) and imported that into my WM5 device. It showed up in the
certs window. I did a soft reboot, removed the server from activesync, soft
reboot again, synced and this time I got a different error, 0x80072F0D,
saying that my cert is invalid.



....

So, how do I make a valid certificate and get it out there so I can sync
using SSL?


 
Reply With Quote
 
 
 
 
John Mahala
Guest
Posts: n/a

 
      02-22-2006
Check out http://cert.startcom.org/. You will be able to create signed
certificates for your Exchange server. The catch is that the root
certificate needs to be installed onto your WM5 device. Luckily, you
can download one from them to install on your device. (I found that I
needed to rename the file extension from .der to .cer in order to
install it.)

-jpmahala


"Rosewood" <> wrote in message
news:Or54C1#:

> Let me dog pile on this one too!
>
> SBS2003 using self signed certs. WM5 device on the WLAN trying to sync with
> the exchange server. Sync works fine until SSL is enabled.
>
> 1) At first I got "0x80072f17" which means it didn't like my server's
> certificate. I tried to disable cert checking in the registry
> (HKCU\Software\Microsoft\Activesync\Partners\Secur e , DWORD value of 0) and
> that didn't do it so...
>
> 2) I exported my personal cert from my PC that was issued by my sbs2003
> server. (Issued to my name, Issued by my current domain, valid expieration
> date, with the intended purposes of EFS, Secure Email, and Client
> Authentication) and imported that into my WM5 device. It showed up in the
> certs window. I did a soft reboot, removed the server from activesync, soft
> reboot again, synced and this time I got a different error, 0x80072F0D,
> saying that my cert is invalid.
>
>
>
> ...
>
> So, how do I make a valid certificate and get it out there so I can sync
> using SSL?


 
Reply With Quote
 
Rosewood
Guest
Posts: n/a

 
      02-22-2006
1) Thank you John for your reply

2) I went to our server's secure site in IE on a computer that didn't have
the certificate already. I installed the certificate then used the mmc
certs tool to export it. I then exported into my WM5 device. At that point
I could go to the server's secure site w/o cert prompt.

3) Cleared old AS settings and soft reset.

4) Setup server to use SSL and away it went.


"Rosewood" <> wrote in message
news:Or54C1%...
> Let me dog pile on this one too!
>
> SBS2003 using self signed certs. WM5 device on the WLAN trying to sync
> with the exchange server. Sync works fine until SSL is enabled.
>
> 1) At first I got "0x80072f17" which means it didn't like my server's
> certificate. I tried to disable cert checking in the registry
> (HKCU\Software\Microsoft\Activesync\Partners\Secur e , DWORD value of 0)
> and that didn't do it so...
>
> 2) I exported my personal cert from my PC that was issued by my sbs2003
> server. (Issued to my name, Issued by my current domain, valid
> expieration date, with the intended purposes of EFS, Secure Email, and
> Client Authentication) and imported that into my WM5 device. It showed up
> in the certs window. I did a soft reboot, removed the server from
> activesync, soft reboot again, synced and this time I got a different
> error, 0x80072F0D, saying that my cert is invalid.
>
>
>
> ...
>
> So, how do I make a valid certificate and get it out there so I can sync
> using SSL?
>



 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Sync Options - Problem with Active Sync Retaining Options Richard Dean ActiveSync 0 04-28-2005 04:54 PM
2 PC Calendar Sync Issue: Outlook does not recognize name Cloudhopper ActiveSync 3 07-12-2004 03:23 AM
ActiveSync/Multiple Contact List Sync Issue Jason Goldberg ActiveSync 2 06-24-2004 05:13 AM
Re: Remote sync with Outlook via WiFi or other alternatives int_spy ActiveSync 1 06-18-2004 07:32 AM
Re: Remote sync with Outlook via WiFi or other alternatives Rob ActiveSync 0 06-17-2004 06:46 PM



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59