FortiGate 60B
Firmware v4.0, build 0194,100121 (MR1 Patch 3)
Windows Small Biz Server 2003, IIS set to forward the default web site to " /exchnge" which works perfectly for OWA
I have IPSec working fine on an iPhone 3GS, using the Cisco IPSec client on the iPhone. The VPN connection works fine on the iPhone for accessing both internal network resources (tested via website with LAN address) and external resources (Safari opens google.com fine). Everything seems to be working perfectly, but I cannot get the iPhone Exchange settings to work. When setting up the Exchange connection everything appears to be fine until the iPhone gets to the verifying server identity bit. It says:
" Cannot Verify Server Identity
[NAME] can' t verify the identity of [SERVER]. Would you like to continue anyway?"
It gives an option to see details. When I choose that, it shows the server' s real name, not what used for [SERVER] above, so I know it is actually talking to the Exchange server. There is a button " Accept" which I assume means to accept the SSL cert that Windows Small Biz server uses for OWA. It' s an outdated cert but it works for OWA so it should work for ActiveSync/iPhone. After choosing " Accept" there are no more error messages given on the iPhone until you actually open Mail and try to check mail for the account. Then it tells you that the Exchange server is unavailable.
Has anyone *actually* gotten iPhone Exchange/ActiveSync to work with a FortiGate firewall, 60B or otherwise? I' ve searched these forums high and low, posts from the past year, to no avail. I cannot find anyone here who has actually gotten it to work. All posts talk about the IPSec VPN but not about Exchange. It would be a HUGE help to me in my job if I can get this working, otherwise we will have to spend thousands of dollars that we do not have right now on a different firewall that supports ActiveSync.
TIA