How to make more secure Exchange 2019 OWA

Dmitry Horushin 61 Reputation points
2021-05-28T09:37:41.45+00:00

Hi,
We are currently using basic authentication / FBA for OWA, but it looks unsecure in the modern world.
What are best practices to secure OWA?

We tested 2 options:

Best regards,
Dmitry Horushin.

Exchange Server Management
Exchange Server Management
Exchange Server: A family of Microsoft client/server messaging and collaboration software.Management: The act or process of organizing, handling, directing or controlling something.
7,345 questions
{count} votes

3 additional answers

Sort by: Most helpful
  1. Andy David - MVP 141.5K Reputation points MVP
    2021-05-28T11:02:00.613+00:00

    I would integrate with ADFS ( and use a MFA solution as well)

    1 person found this answer helpful.

  2. Dmitry Horushin 61 Reputation points
    2021-06-06T08:21:57.527+00:00

    Hi
    Thank you.
    My superior wants to test a configuration with Kerberos authentication when requests of external OWA users are accepted by Azure based proxy servers. He believes that this configuration is easy to configure and maintain that a configuration with ADFS and MFA. But we miss a documentation how to set up OWA with Kerberos.

    Our further steps:

    • set up an Azure proxy for external users;
    • set up a second Exchange 2019 server to see how it works with load balancer;
    • install the next Exchange 2019 CU and test how it affects the configuration.

    If you can help to find Microsoft recommendations/best practices how to secure Exchange OWA on-premises, it will be wonderful.
    Best regards,
    Dmitry Horushin.


  3. Andy David - MVP 141.5K Reputation points MVP
    2021-06-07T11:41:17.62+00:00