<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-798194812750898417.post3650234639186509815..comments</id><updated>2011-12-12T15:36:29.080-08:00</updated><category term='SCOM'/><category term='clustering'/><category term='MCM'/><category term='High Availability'/><category term='SQL'/><category term='Outlook'/><category term='books'/><category term='IE9'/><category term='certifications'/><category term='Windows Server 2008'/><category term='Windows'/><category term='Windows7'/><category term='Apple'/><category term='OWA 2007'/><category term='Group Policy'/><category term='dogfood'/><category term='ASP.NET'/><category term='Lync Mobile'/><category term='troubleshooting'/><category term='Coupon'/><category term='Windows Server 2008 R2'/><category term='family'/><category term='archiving'/><category term='Beta'/><category term='Networking'/><category term='virtual'/><category term='WSUS'/><category term='performance'/><category term='Microsoft Exchange 2007'/><category term='8525'/><category term='VMM'/><category term='training'/><category term='Federation'/><category term='x64'/><category term='humor'/><category term='patch'/><category term='Office 365'/><category term='IPv6'/><category term='Edge'/><category term='certificates'/><category term='Lync'/><category term='64-bit'/><category term='VHD'/><category term='VDI'/><category term='Visio'/><category term='MVP'/><category term='SP1'/><category term='Hyper-V'/><category term='System Center'/><category term='cloud'/><category term='IIS'/><category term='Best Practices'/><category term='TechEd'/><category term='LDAP'/><category term='iPhone'/><category term='VMware'/><category term='IE8'/><category term='OWA 2010'/><category term='Outlook 2007'/><category term='ActiveSync'/><category term='Microsoft Exchange 2010'/><category term='Hacking'/><category term='Siri'/><category term='Core'/><category term='Vista'/><category term='Windows Mobile'/><category term='Twitter'/><category term='Microsoft'/><category term='Windows 8'/><category term='ImagineCup'/><category term='SCCM'/><category term='PaaS'/><category term='CCR'/><category term='Exchange'/><category term='contests'/><category term='Review'/><category term='SP3'/><category term='TEC'/><category term='Security'/><category term='PowerShell'/><category term='Blackberry'/><category term='ISA'/><category term='UM'/><category term='Terminal Services'/><category term='ADLDS'/><category term='Forefront'/><category term='Microsoft Exchange 2003'/><category term='Storage'/><category term='SP2'/><category term='scripts'/><category term='RDP'/><category term='s'/><category term='Commentary'/><category term='Windows 8 Server'/><category term='MOM'/><category term='VSS'/><category term='vacation'/><category term='Outlook 2010'/><category term='SharePoint'/><category term='Exchange Cached Mode'/><category term='Search'/><category term='Office 2010'/><category term='Registry'/><category term='RemoteFX'/><category term='tip'/><category term='OCS'/><category term='PKI'/><category term='Active Directory'/><category term='slideshow'/><category term='UC Roundtable'/><category term='Exchange 2010'/><category term='Time'/><category term='Disaster Recovery'/><category term='Lync Server'/><category term='printers'/><category term='utilities'/><title type='text'>Comments on The EXPTA {blog}: How to Securely Deploy iPhones with Exchange Activ...</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://www.expta.com/feeds/3650234639186509815/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default'/><link rel='alternate' type='text/html' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html'/><author><name>Jeff</name><uri>http://www.blogger.com/profile/05278298222887921824</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='29' src='http://3.bp.blogspot.com/-mKrGWrtfsxg/TlZs-c7teRI/AAAAAAAAGYA/sL9yxhj7rIs/s220/Me_Cairo_MVP.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>9</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-798194812750898417.post-1198525065049419870</id><published>2011-12-12T15:36:29.080-08:00</published><updated>2011-12-12T15:36:29.080-08:00</updated><title type='text'>If you need to access EAS over the ASA VPN, they w...</title><content type='html'>If you need to access EAS over the ASA VPN, they will still need to do that.  The solution presented would still not change.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/1198525065049419870'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/1198525065049419870'/><link rel='alternate' type='text/html' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html?showComment=1323732989080#c1198525065049419870' title=''/><author><name>Jeff</name><uri>http://www.blogger.com/profile/05278298222887921824</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='29' src='http://3.bp.blogspot.com/-mKrGWrtfsxg/TlZs-c7teRI/AAAAAAAAGYA/sL9yxhj7rIs/s220/Me_Cairo_MVP.jpg'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html' ref='tag:blogger.com,1999:blog-798194812750898417.post-3650234639186509815' source='http://www.blogger.com/feeds/798194812750898417/posts/default/3650234639186509815' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-566670614'/></entry><entry><id>tag:blogger.com,1999:blog-798194812750898417.post-8546617582965285116</id><published>2011-12-12T11:49:18.032-08:00</published><updated>2011-12-12T11:49:18.032-08:00</updated><title type='text'>Thanks Jeff for the insightful step-by-step guide....</title><content type='html'>Thanks Jeff for the insightful step-by-step guide. Was wondering if you had any thoughts on how this might change if we used Cisco ASA SSL VPN with two factor authenication?</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/8546617582965285116'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/8546617582965285116'/><link rel='alternate' type='text/html' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html?showComment=1323719358032#c8546617582965285116' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html' ref='tag:blogger.com,1999:blog-798194812750898417.post-3650234639186509815' source='http://www.blogger.com/feeds/798194812750898417/posts/default/3650234639186509815' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-196799286'/></entry><entry><id>tag:blogger.com,1999:blog-798194812750898417.post-4289029589010278336</id><published>2011-10-12T08:16:23.716-07:00</published><updated>2011-10-12T08:16:23.716-07:00</updated><title type='text'>EAS does not offer any mechanism for users to chan...</title><content type='html'>EAS does not offer any mechanism for users to change their expired password or unlock their account.  The user will need to change their expired password using normal channels (logging in from a domain joined workstation or using OWA, assuming it&amp;#39;s configured to do so).</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/4289029589010278336'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/4289029589010278336'/><link rel='alternate' type='text/html' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html?showComment=1318432583716#c4289029589010278336' title=''/><author><name>Jeff</name><uri>http://www.blogger.com/profile/05278298222887921824</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='29' src='http://3.bp.blogspot.com/-mKrGWrtfsxg/TlZs-c7teRI/AAAAAAAAGYA/sL9yxhj7rIs/s220/Me_Cairo_MVP.jpg'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html' ref='tag:blogger.com,1999:blog-798194812750898417.post-3650234639186509815' source='http://www.blogger.com/feeds/798194812750898417/posts/default/3650234639186509815' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-566670614'/></entry><entry><id>tag:blogger.com,1999:blog-798194812750898417.post-5072544793442331195</id><published>2011-10-12T06:47:51.046-07:00</published><updated>2011-10-12T06:47:51.046-07:00</updated><title type='text'>Excellent Stuff.  My Q.

How do you deal with 90 d...</title><content type='html'>Excellent Stuff.  My Q.&lt;br /&gt;&lt;br /&gt;How do you deal with 90 day password changes in AD and the iphone user is locked out.   Is there a technical solve for this?</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/5072544793442331195'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/5072544793442331195'/><link rel='alternate' type='text/html' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html?showComment=1318427271046#c5072544793442331195' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html' ref='tag:blogger.com,1999:blog-798194812750898417.post-3650234639186509815' source='http://www.blogger.com/feeds/798194812750898417/posts/default/3650234639186509815' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1476730348'/></entry><entry><id>tag:blogger.com,1999:blog-798194812750898417.post-5393732926028691715</id><published>2011-06-23T11:18:02.284-07:00</published><updated>2011-06-23T11:18:02.284-07:00</updated><title type='text'>Your document is very clear and detailed, however ...</title><content type='html'>Your document is very clear and detailed, however we cant get auth to work. I think we are missing something in the exchange server setup or maybe ad. Whenever we turn on the &amp;quot;require cert auth&amp;quot; in exchange, our phones get error that cant connect to mail server. The cert generation part is different too, i dont see an option to put in the company name and most of that other stuff. any ideas?</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/5393732926028691715'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/5393732926028691715'/><link rel='alternate' type='text/html' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html?showComment=1308853082284#c5393732926028691715' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html' ref='tag:blogger.com,1999:blog-798194812750898417.post-3650234639186509815' source='http://www.blogger.com/feeds/798194812750898417/posts/default/3650234639186509815' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-991196978'/></entry><entry><id>tag:blogger.com,1999:blog-798194812750898417.post-4245047343214542895</id><published>2011-04-04T13:14:55.712-07:00</published><updated>2011-04-04T13:14:55.712-07:00</updated><title type='text'>Loved the article but was wondering there is a way...</title><content type='html'>Loved the article but was wondering there is a way to provide the web page via isa server?</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/4245047343214542895'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/4245047343214542895'/><link rel='alternate' type='text/html' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html?showComment=1301948095712#c4245047343214542895' title=''/><author><name>ochimo</name><uri>http://www.blogger.com/profile/02165237413979173336</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html' ref='tag:blogger.com,1999:blog-798194812750898417.post-3650234639186509815' source='http://www.blogger.com/feeds/798194812750898417/posts/default/3650234639186509815' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1653988093'/></entry><entry><id>tag:blogger.com,1999:blog-798194812750898417.post-3499886496567900284</id><published>2010-06-30T14:15:59.568-07:00</published><updated>2010-06-30T14:15:59.568-07:00</updated><title type='text'>Now when iPhone 4.0 has been released I tested all...</title><content type='html'>Now when iPhone 4.0 has been released I tested all the ActiveSync policies to see which ones that worked. Here&amp;#39;s a summary: http://www.sysadminlab.net/activesync/iphone-os-4-and-exchange-activesync-policies-what-really-works</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/3499886496567900284'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/3499886496567900284'/><link rel='alternate' type='text/html' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html?showComment=1277932559568#c3499886496567900284' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html' ref='tag:blogger.com,1999:blog-798194812750898417.post-3650234639186509815' source='http://www.blogger.com/feeds/798194812750898417/posts/default/3650234639186509815' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-583340548'/></entry><entry><id>tag:blogger.com,1999:blog-798194812750898417.post-7979749994008864442</id><published>2010-02-17T03:57:54.153-08:00</published><updated>2010-02-17T03:57:54.153-08:00</updated><title type='text'>Highly interesting topic Jeff - and you&amp;#39;re rig...</title><content type='html'>Highly interesting topic Jeff - and you&amp;#39;re right; Apple isn&amp;#39;t anywhere near providing actual documentation. (Their guide should almost be labeled foilware...)&lt;br /&gt;I covered parts of SCEP (for device certificates) and the over-the-air provisioning process over at my blog (http://mobilitydojo.net/2010/01/20/sinking-our-teeth-into-scep/), but I didn&amp;#39;t cover the entire scenario like how to setup the CA, and configuring ISA and/or Exchange. From your description it looks like you might be looking at cradling the iPhones and using iPhone Configuration Utility, or accessing the certsrv site via WiFi, am I right?&lt;br /&gt;Anyways, looking forward to proper documentation of how this should be done :)</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/7979749994008864442'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/7979749994008864442'/><link rel='alternate' type='text/html' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html?showComment=1266407874153#c7979749994008864442' title=''/><author><name>Andreas</name><uri>http://mobilitydojo.net</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html' ref='tag:blogger.com,1999:blog-798194812750898417.post-3650234639186509815' source='http://www.blogger.com/feeds/798194812750898417/posts/default/3650234639186509815' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-818646466'/></entry><entry><id>tag:blogger.com,1999:blog-798194812750898417.post-4290952944557146501</id><published>2010-02-14T13:57:37.933-08:00</published><updated>2010-02-14T13:57:37.933-08:00</updated><title type='text'>Hi Jeff
This sounds good, as it is similar to a re...</title><content type='html'>Hi Jeff&lt;br /&gt;This sounds good, as it is similar to a requirement I have.  My exchange server is on a Windows 2003 SBS, but access is via a Cyberguard firewall.  What must I do to enable my iPhone to get past the firewall to the server?  I sit just port forwarding, and if so, which port? 445?&lt;br /&gt;Rod Rocket</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/4290952944557146501'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/798194812750898417/3650234639186509815/comments/default/4290952944557146501'/><link rel='alternate' type='text/html' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html?showComment=1266184657933#c4290952944557146501' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.expta.com/2010/02/how-to-securely-deploy-iphones-with.html' ref='tag:blogger.com,1999:blog-798194812750898417.post-3650234639186509815' source='http://www.blogger.com/feeds/798194812750898417/posts/default/3650234639186509815' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1609762347'/></entry></feed>
