Do you add a redirect from http to https for OWA?
  v9.0 Posted at 3/03/2017 6:24 AM by Tiago Araujo

Do you configure redirection from HTTP to https for Outlook Web App (OWA)? To simplify OWA access for your users, you want to configure the Outlook Web App page to automatically redirect users to https. The HTTP redirect procedure in IIS Manager simplifies OWA URL and forces to SSL connection from http://mail.domain.com to https://mail.domain.com/owa.

Step 1: Use IIS Manager to simplify OWA URL and force redirection to SSL

  1. Start IIS Manager.
  2. Expand the local computer, expand Sites, and then click Default Web Site.
  3. At the bottom of the Default Web Site Home pane, click Features View if this option isn't already selected.
  4. In the IIS section, double-click HTTP Redirect
  5. Select the Redirect requests to this destination check box.
  6. Type the absolute path of the /owa virtual directory. For example, type https://mail.domain.com/owa​.
  7. Under Redirect Behavior, select the Only redirect requests to content in this directory (not subdirectories) check box.
  8. In the Status code list, click Found (302).
  9. In the Actions pane, click Apply.
  10. Click Default Web Site.
  11. In the Default Web Site Home pane, double-click SSL Settings.
  12. In SSL Settings, clear Require SSL.

Step 2: Remove redirection from virtual directories

  1. Open a Command Prompt window.
  2. Navigate to:

    <Window directory>\System32\Inetsrv.

  3. Run the following commands:

    appcmd set config "Default Web Site/autodiscover" /section:httpredirect /enabled:false -commit:apphost
    appcmd set config "Default Web Site/ecp" /section:httpredirect /enabled:false -commit:apphost
    appcmd set config "Default Web Site/ews" /section:httpredirect /enabled:false -commit:apphost
    appcmd set config "Default Web Site/owa" /section:httpredirect /enabled:false -commit:apphost
    appcmd set config "Default Web Site/oab" /section:httpredirect /enabled:false -commit:apphost
    appcmd set config "Default Web Site/powershell" /section:httpredirect /enabled:false -commit:apphost
    appcmd set config "Default Web Site/rpc" /section:httpredirect /enabled:false -commit:apphost
    appcmd set config "Default Web Site/rpcwithcert" /section:httpredirect /enabled:false -commit:apphost
    appcmd set config "Default Web Site/Microsoft-Server ActiveSync" /section:httpredirect /enabled:false -commit:apphost

  4. Finish by running the command:


Step 3: Test that HTTP to HTTPS redirect is working

  1. Open Internet Explorer and type in http://mail.domain.com
  2. DONE - You are then redirected to https://mail.domain.com/owa 
Figure: Bad Example, no redirect in place for OWA
Figure: Good Example, redirect from HTTP to https for OWA

Related rules

    Do you feel this rule needs an update?

    If you want to be notified when this rule is updated, please enter your email address:


    Note: Social Media login for Yotpo is not working in IE or Safari, please use Chrome. We are waiting for Yotpo to fix it.