Hi guys, I have now set up OWA via SSL for the first time. Thanks for the great article, Tom! A problem remains with it which I am not able to locate right now: when I try to connect to the OWA site from the outside, I'm presented with the certificate, but as soon as I accept the connection, I get a 403 error. As I can only test from behind another ISA server, I had a look at the logs there and found out that the remote browser issues a GET for the web enrollment services with the internal name of my OWA server, which is of course bound to fail: 192.168.130.201, anonymous, Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0; Q312461), -, 9/13/2003, 01:01:49, -, SMS-CO-02, -, myexternal.owa.name, xxx.xxx.xxx.xxx, 443, 0, 400, 2330, SSL-tunnel, -, -, myexternal.owa.name:443, -, Inet, 995, -, -, - 192.168.130.201, anonymous, Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0; Q312461), -, 9/13/2003, 01:01:54, -, SMS-CO-02, -, myexternal.owa.name, xxx.xxx.xxx.xxx, 443, 0, 375, 2330, SSL-tunnel, -, -, myexternal.owa.name:443, -, Inet, 995, -, -, - 192.168.130.201, anonymous, CryptRetrieveObjectByUrl::InetSchemeProvider, -, 9/13/2003, 01:03:01, -, SMS-CO-02, -, myinternal.exchange.hostname, -, 80, 30, 218, 0, http, -, GET, http://myinternal.exchange.hostname/CertEnroll/myinternal.exchange.hostn ame_services.crt, -, Inet, 11004, -, -, - 192.168.130.201, anonymous, CryptRetrieveObjectByUrl::InetSchemeProvider, -, 9/13/2003, 01:03:22, -, SMS-CO-02, -, myinternal.exchange.hostname, -, 80, 20, 218, 0, http, -, GET, http://myinternal.exchange.hostname/CertEnroll/myinternal.exchange.hostn ame_services.crt, -, Inet, 11004, -, -, - Any ideas on this? Thanks, Mark