Autodiscover, CalDAV, CardDAV and ActiveSync fails when using digest authentication with Windows Authentication


When trying to access autodiscover, or authenticate to ActiveSync, CardDAV or CalDAV, it fails for mailboxes that are configured to authenticate against Active Directory.


Digest authentication has been enabled for the synchronization service (HTTPMail Service). When this is enabled, connections to the server are given digest as an authentication option. Digest authentication is not possible with Active Directory since it requires the password to be known.


To resolve, disable digest authentication. This can be done in the administration program. Expand the Servers->localhost->Services and Connectors branch, right click on the Synchronization icon and select Properties from the popup menu. Then disable the checkbox labelled Enable Digest authentication. To ensure usernames and passwords are transmitted securely you should configure the service to only be contactible over SSL.

Product:MailEnable (Ent-Any)
Module:autodiscover synchronization
Class:PRB: Product Problem or Issue
Revised:Thursday, January 19, 2017