ECP Internal URL redirect issue in Exchange 2019

Pradeep Kabbur 20 Reputation points
2024-10-22T13:45:48.67+00:00

Hello,

I have a situation where Internal URL is redirecting to External URL but unable to login to the URL.

We also found that URL should work from Internal It works in few servers of internal network but does not work for other server with same IP subnet.

External URL is blocked from Internal network. So we are unable to get into ECP.

We also observed that sometime it works some times it wont. We use DUO for MFA>

Any suggestions will be great help to solve this long pending issue

Exchange Server
Exchange Server
A family of Microsoft client/server messaging and collaboration software.
1,404 questions
0 comments No comments
{count} votes

Accepted answer
  1. Jake Zhang-MSFT 8,010 Reputation points Microsoft Vendor
    2024-10-23T02:46:28.5+00:00

    Hi @Pradeep Kabbur ,

    Welcome to the Microsoft Q&A platform!

    Based on your description, you are dealing with inconsistencies related to URL redirection and internal network access, which is further complicated by using DUO for multi-factor authentication (MFA). Here are some suggestions that may help you troubleshoot and resolve this issue:

    1. Make sure the DNS configuration is consistent across all servers in the same IP subnet. Inconsistent DNS settings may result in different resolution paths for the same URL.
    2. Since external URLs are blocked by the internal network, make sure firewall rules are applied consistently across all servers. Some servers may have different firewall settings.
    3. If you use a load balancer, check its configuration. The load balancer may direct traffic from some servers differently, which can explain the inconsistent behavior.
    4. Verify that the DUO MFA settings are configured correctly and applied consistently. Inconsistent MFA settings may cause authentication issues.
    5. Sometimes, browser cache and cookies may cause inconsistent behavior. Try clearing the cache and cookies, or use an incognito window to see if the problem persists.
    6. Make sure the network configuration, including routing and subnetting, is set up correctly and consistently across all servers.
    7. Ensure that all servers are running the same version of software and have the same patches applied. Differences in software versions can cause unexpected behavior.
    8. If you use SSL/TLS, ensure that the certificates are properly installed and not expired. Inconsistent certificate configuration can cause connectivity issues.
    9. Manually test URL access using tools such as curl or wget from the server and see if there are any differences in the responses.

    Please feel free to contact me for any updates. And if this helps, don't forget to mark it as an answer.

    Best,

    Jake Zhang


0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.