PPCGeeks Forums HTC Arrive HTC HD2 HTC Thunderbolt HTC Touch Pro 2 HTC Evo 4G HTC Evo 3D Samsung Galaxy S II Motorola Droid X Apple iPhone Blackberry
Go Back   PPCGeeks > Windows Mobile > WM HTC Devices > HTC Apache > HTC Apache Development
Register Community Search

Notices


Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 11-19-2007, 10:51 AM
obsidian440's Avatar
Lurker
Offline
Pocket PC: storm
Carrier: verizon
 
Join Date: Nov 2007
Posts: 3
Reputation: 0
obsidian440 is a n00b
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
I want to say thanks to everyone who worked on the wm6 upgrade and the kitchen, I really appreciate your work in bringing this update to those of us who love our phones but our carriers don't.

That said, I'm having trouble getting my direct push to work again with my exchange server. We are using 2007 with a self-signed ssl cert. On wm5 I was able to use the registry changes along with importing the cert manually to make it work. With my new upgrade I am now getting the message "server cert is wrong". I was unable to find any real answer searching google and these forums. I have tried to manually import the cert and doing the registry change but I'm still running into the same problem.

To be more specific, without the registry change, I get a message stating the server is the wrong name, with the registry it just tells me the certificate is wrong. I have checked all date/time settings on both my server and my phone, both match exactly. I have full access to the exchange server and phone. Any ideas ? Are there any new registry tweaks that can be done ?
Or is this just a case of having a self-signed cert and I should buckled down and buy a real one ?
Reply With Quote
  #2 (permalink)  
Old 11-19-2007, 08:06 PM
PRSPower's Avatar
Lurker
Offline
Pocket PC: TP2
Carrier: Verizon
 
Join Date: Jan 2007
Posts: 19
Reputation: 0
PRSPower is a n00b
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quote:
Originally Posted by obsidian440 View Post
I want to say thanks to everyone who worked on the wm6 upgrade and the kitchen, I really appreciate your work in bringing this update to those of us who love our phones but our carriers don't.

That said, I'm having trouble getting my direct push to work again with my exchange server. We are using 2007 with a self-signed ssl cert. On wm5 I was able to use the registry changes along with importing the cert manually to make it work. With my new upgrade I am now getting the message "server cert is wrong". I was unable to find any real answer searching google and these forums. I have tried to manually import the cert and doing the registry change but I'm still running into the same problem.

To be more specific, without the registry change, I get a message stating the server is the wrong name, with the registry it just tells me the certificate is wrong. I have checked all date/time settings on both my server and my phone, both match exactly. I have full access to the exchange server and phone. Any ideas ? Are there any new registry tweaks that can be done ?
Or is this just a case of having a self-signed cert and I should buckled down and buy a real one ?
I previously used a self signed cert on my exchange box, and ran into all sorts of head aches. I am not sure how to fix the problem you are having, but I can tell you that GoDaddy's $20 per year SSL cert is the best $20 you could ever spend. Especially if you are supporting multiple people using WM5 or WM6 with direct push. I have users that are using Motorola Q's and self-signed certs are terrible when trying to make a Q happy.
Reply With Quote
  #3 (permalink)  
Old 11-19-2007, 08:33 PM
phuangk's Avatar
PPCGeeks Regular
Offline
Pocket PC: HTC P4000, UTStarcom 6700, HTC S720, Moto Q, Moto Q9c
Carrier: TELUS
 
Join Date: Oct 2007
Posts: 57
Reputation: 10
phuangk is a n00b
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quote:
Originally Posted by obsidian440 View Post
I want to say thanks to everyone who worked on the wm6 upgrade and the kitchen, I really appreciate your work in bringing this update to those of us who love our phones but our carriers don't.

That said, I'm having trouble getting my direct push to work again with my exchange server. We are using 2007 with a self-signed ssl cert. On wm5 I was able to use the registry changes along with importing the cert manually to make it work. With my new upgrade I am now getting the message "server cert is wrong". I was unable to find any real answer searching google and these forums. I have tried to manually import the cert and doing the registry change but I'm still running into the same problem.

To be more specific, without the registry change, I get a message stating the server is the wrong name, with the registry it just tells me the certificate is wrong. I have checked all date/time settings on both my server and my phone, both match exactly. I have full access to the exchange server and phone. Any ideas ? Are there any new registry tweaks that can be done ?
Or is this just a case of having a self-signed cert and I should buckled down and buy a real one ?
Certificate issue mainly happened on WM5 Smartphone device (correct me if i am wrong). I think there are 2 ways to load the certificate onto your phone.
1. Load certificate with the certificate loader (you can download certificate loader from Microsoft website) http://technet.microsoft.com/en-us/l.../aa997575.aspx
2. Load certificate manually by using cab method. http://blogs.msdn.com/windowsmobile/..._cab_file.aspx

However, your problem looks like you can load certificate, but you are loading the wrong certificate onto your phone. Maybe try to request a new certificate and load it again? Sorry I am not expert on this...
Reply With Quote
  #4 (permalink)  
Old 11-19-2007, 11:49 PM
obsidian440's Avatar
Lurker
Offline
Pocket PC: storm
Carrier: verizon
 
Join Date: Nov 2007
Posts: 3
Reputation: 0
obsidian440 is a n00b
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quote:
Originally Posted by phuangk View Post
Certificate issue mainly happened on WM5 Smartphone device (correct me if i am wrong). I think there are 2 ways to load the certificate onto your phone.
1. Load certificate with the certificate loader (you can download certificate loader from Microsoft website) http://technet.microsoft.com/en-us/l.../aa997575.aspx
2. Load certificate manually by using cab method. http://blogs.msdn.com/windowsmobile/..._cab_file.aspx

However, your problem looks like you can load certificate, but you are loading the wrong certificate onto your phone. Maybe try to request a new certificate and load it again? Sorry I am not expert on this...
Thanks for the try guys! I figured it might be an easy registry fix like wm5. I tried updating the self-signed last night before posting, I even double check ed that it was a certified trusted root , right from the server, but still no good. I guess I gotta convince the company to buy certs, or just go back to 5.
Reply With Quote
  #5 (permalink)  
Old 11-20-2007, 10:13 AM
schettj's Avatar
morsus mihi
Offline
Pocket PC: iPhone 4
Carrier: AT&T
Location: Not from around these parts
 
Join Date: Oct 2006
Posts: 3,017
Reputation: 3616
schettj is still contributing even after becoming a VIPschettj is still contributing even after becoming a VIPschettj is still contributing even after becoming a VIPschettj is still contributing even after becoming a VIPschettj is still contributing even after becoming a VIPschettj is still contributing even after becoming a VIPschettj is still contributing even after becoming a VIPschettj is still contributing even after becoming a VIPschettj is still contributing even after becoming a VIPschettj is still contributing even after becoming a VIPschettj is still contributing even after becoming a VIP
Mentioned: 2 Post(s)
Tagged: 0 Thread(s)
Quote:
Originally Posted by obsidian440 View Post
To be more specific, without the registry change, I get a message stating the server is the wrong name, with the registry it just tells me the certificate is wrong. I have checked all date/time settings on both my server and my phone, both match exactly. I have full access to the exchange server and phone. Any ideas ? Are there any new registry tweaks that can be done ?
Or is this just a case of having a self-signed cert and I should buckled down and buy a real one ?
Did you select the enterprise protocols OEM? I have no idea if it comes into play there or not, but its something to try - I use a self-signed cert for ssl via email/imap, and my ROM build (with that oem included) was able to handle it as usual by popping up the warning and proceeding when I hit OK.
Reply With Quote
  #6 (permalink)  
Old 11-20-2007, 11:23 AM
StarDestroyer's Avatar
Lurker
Offline
Pocket PC: ppc6700
 
Join Date: Sep 2007
Posts: 13
Reputation: 0
StarDestroyer is a n00b
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quote:
Originally Posted by obsidian440 View Post
That said, I'm having trouble getting my direct push to work again with my exchange server. We are using 2007 with a self-signed ssl cert. On wm5 I was able to use the registry changes along with importing the cert manually to make it work. With my new upgrade I am now getting the message "server cert is wrong". I was unable to find any real answer searching google and these forums. I have tried to manually import the cert and doing the registry change but I'm still running into the same problem.
I run Exchange 2003 and use CAcert for my certificates. Unfortunately, CAcert's root certificates aren't included in mainstream browsers or in Windows mobile by default. So I found a way around it... I found instructions on an MS blog about how to create a .cab file for importing a certificate. I also managed to make an OEM for the CAcert root certificates. You can either sign up with CAcert and put one of the certificates on your exchange server or use the instructions to create a .cab or OEM of your self signed cert and try that... I am using the OEM method successfully on the latest kitchen.
Reply With Quote
  #7 (permalink)  
Old 11-20-2007, 01:06 PM
obsidian440's Avatar
Lurker
Offline
Pocket PC: storm
Carrier: verizon
 
Join Date: Nov 2007
Posts: 3
Reputation: 0
obsidian440 is a n00b
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quote:
Originally Posted by schettj View Post
Did you select the enterprise protocols OEM? I have no idea if it comes into play there or not, but its something to try - I use a self-signed cert for ssl via email/imap, and my ROM build (with that oem included) was able to handle it as usual by popping up the warning and proceeding when I hit OK.
I'll give this a shot, didn't even notice it when I was building the OS.

Quote:
Originally Posted by StarDestroyer View Post
I run Exchange 2003 and use CAcert for my certificates. Unfortunately, CAcert's root certificates aren't included in mainstream browsers or in Windows mobile by default. So I found a way around it... I found instructions on an MS blog about how to create a .cab file for importing a certificate. I also managed to make an OEM for the CAcert root certificates. You can either sign up with CAcert and put one of the certificates on your exchange server or use the instructions to create a .cab or OEM of your self signed cert and try that... I am using the OEM method successfully on the latest kitchen.
This is just another way of adding the cert into the phone right ? Because I have had success in past versions by just dumping the cert onto my SD card and then opening it in file explorer. I checked where it installed on the device and it was put into the trusted root certs.

I moved back down to the 3.5 AKU but I'll give it another shot today. Gives me an excuse not to answer emails at night!
Reply With Quote
  #8 (permalink)  
Old 11-20-2007, 02:20 PM
StarDestroyer's Avatar
Lurker
Offline
Pocket PC: ppc6700
 
Join Date: Sep 2007
Posts: 13
Reputation: 0
StarDestroyer is a n00b
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Quote:
Originally Posted by obsidian440 View Post
This is just another way of adding the cert into the phone right ? Because I have had success in past versions by just dumping the cert onto my SD card and then opening it in file explorer. I checked where it installed on the device and it was put into the trusted root certs.

I moved back down to the 3.5 AKU but I'll give it another shot today. Gives me an excuse not to answer emails at night!
Yes, it is just another method of getting the cert installed. I've used the .cab version successfully on every version of Windows Mobile I've had on my phone (including the original Sprint ROM and updated official Sprint ROM) with the exception of the latest (1117) kitchen. I can't personally vouch that it works in that kitchen as I now use the OEM method (I started using that in the 1108 kitchen).

Though I guess if the cert if properly installed as a trusted cert in Windows Mobile, then this may not be the solution. Have you tried accessing your exchange server using Pocket IE? Active Sync and Pocket IE are supposed to use the same APIs for accessing the server so if you can't access it from IE w/out SSL errors, it won't work in Active Sync.
Reply With Quote
  #9 (permalink)  
Old 11-20-2007, 07:13 PM
GaMedic's Avatar
Ditch Doctor
Offline
Pocket PC: XV6800
Carrier: VZW
Location: Georgia, USA
 
Join Date: Oct 2007
Posts: 1,172
Reputation: 3637
GaMedic is still contributing even after becoming a VIPGaMedic is still contributing even after becoming a VIPGaMedic is still contributing even after becoming a VIPGaMedic is still contributing even after becoming a VIPGaMedic is still contributing even after becoming a VIPGaMedic is still contributing even after becoming a VIPGaMedic is still contributing even after becoming a VIPGaMedic is still contributing even after becoming a VIPGaMedic is still contributing even after becoming a VIPGaMedic is still contributing even after becoming a VIPGaMedic is still contributing even after becoming a VIP
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Not a bug but, more like a benefit

I noticed that after I cooked this ROM that I am getting EVDO signal. I have NEVER, in 1 1/2 years of owning my PPC 6700, received EVDO signal here at my home. I don't know if this is a result of his build or if a tower was added at the precise time that I uploaded this ROM lol. Just wanted to mention as I thought it was odd. I did upgrade my radio about 2-3 weeks ago to 1.43 but only had 1-2 extra reception bars on 1x.

Please disregard this post. It is apparently an new tower. I don't want to get this forum off topic because I jumped the gun prior to checking on what I was posting. If any of the moderators want to delete this post and any referring to it please feel free to do so.
__________________
Step by Step tutorial for unlocking your device and cooking your own ROM!!!

Feel free to if choose to do so.
My ROM for Verizon, Sprint, Alltel, US Cellular and Cricket 20931 Base!!

The THANKS button is over there------------------------------------------------>

Last edited by GaMedic; 11-20-2007 at 09:17 PM. Reason: Update
Reply With Quote
  #10 (permalink)  
Old 11-20-2007, 08:16 PM
luv2chill's Avatar
Retired Staff
Offline
Pocket PC: Apache (PPC6700); Titan (Mogul)
Carrier: Sprint
Location: Lawrence, KS
 
Join Date: Nov 2006
Posts: 1,524
Reputation: 143
luv2chill is keeping up the good workluv2chill is keeping up the good work
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Send a message via ICQ to luv2chill Send a message via AIM to luv2chill Send a message via MSN to luv2chill Send a message via Yahoo to luv2chill Send a message via Skype™ to luv2chill
Quote:
Originally Posted by Ga. Medic View Post
I noticed that after I cooked this ROM that I am getting EVDO signal. I have NEVER, in 1 1/2 years of owning my PPC 6700, received EVDO signal here at my home. I don't know if this is a result of his build or if a tower was added at the precise time that I uploaded this ROM lol. Just wanted to mention as I thought it was odd. I did upgrade my radio about 2-3 weeks ago to 1.43 but only had 1-2 extra reception bars on 1x.
That's great, but just as an FYI it definitely is not related to this ROM. Your carrier must have turned up a new EV-DO tower.
Reply With Quote
Reply

  PPCGeeks > Windows Mobile > WM HTC Devices > HTC Apache > HTC Apache Development


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -4. The time now is 09:47 AM.


Powered by vBulletin® ©2000 - 2025, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.6.0
©2012 - PPCGeeks.com