Apr 14, 2020

Autodiscover VIP on LTM

Hello everyone, sorry if this has been covered before but I can't find the exact answer I am looking for...


My client has a hybrid email setup - Exchange 2013 hybrid servers and Microsoft Exchange Online. They have a specific requirement where they want to block any connections to autodiscover unless Pre-Authenticated by a client or if it is from the Exchange Online IP range and it is targeting specific URIs.


What I want to do is set up a VIP that uses the following Psuedo logic:


If autodiscover request if from Exchange Online IP range

then if

targetURI matches /autodiscover/autodiscover.svc/wssecurity or /autodiscover/autodiscover.svc or /ews/exchange.asmx/wssecurity or /ews/mrsporxy.svc

do not Pre-Auth



end if


Any ideas?


