Configure the EAS server to accept Kerberos tickets.

  1. Open IIS manager on the EAS server.
  2. On the Connections pane, expand Sites and select Microsoft-server-activesync.
  3. In the main pane, under IIS, select Authentication and enable Windows Authentication.

    Certs_SEG_AD_EAS_11

Next, Configure IIS for Certificate Authentication on the SEG.