Microsoft has put out a very useful document for sys admins and CIOs on deploying Exchange SP2 with the MFSP.

Deploying Windows Mobile 5.0 with Windows Small Business Server 2003

You can find it here: http://www.microsoft.com/downloads/d...displaylang=en

It deals with:
Exchange setup for MSFP
Adding the optional Admin tool needed for remote device kill
Security certificates

TOC below

INTRODUCTION 1
WINDOWS MOBILE 5.0 1
MESSAGING AND SECURITY FEATURE PACK 1
DEVICE DEPLOYMENT 3
CHECKLIST OF REQUIREMENTS 3
STEP 1 - INSTALLING ACTIVESYNC 4.1 4
Option A - Manual Installation 5
Option B - Automatic Installation using Group Policy 5
STEP 2 - ENABLING MOBILE SERVICES FOR USERS 11
STEP 3 - CONFIGURING THE FIREWALL AND WEB SERVICES 12
STEP 4 - DEPLOYING AN SSL CERTIFICATE 13
Choosing the Type of Certificate 13
Configuring the Certificate 15
Option A - Configuring Self-Signed Certificates 15
Option B - Configuring Third-Party Certificates 16
STEP 5 - CONFIGURING WINDOWS SBS FOR MSFP 20
Installing Exchange Server 2003 Service Pack 2 21
Installing Exchange Server ActiveSync Web Administration Tool 21
Enabling Direct Push 21
STEP 6 - CONFIGURING DEVICE SYNCHRONIZATION 22
STEP 7 - TESTING THE DEPLOYMENT 24
Testing Over-the-Air Synchronization 24
Testing Direct Push 24
REMOTE MANAGEMENT 26
PERFORMING REMOTE DEVICE WIPE 26
IMPLEMENTING DEVICE SECURITY POLICY 27
TROUBLESHOOTING 28
INSTALLING ACTIVESYNC ON CLIENT COMPUTERS 28
INSTALLING EXCHANGE SERVER 2003 SP2 28
CONFIGURING ACTIVESYNC 29
SYNCHRONIZING THE MOBILE DEVICE 30
Some Users are Not Able to Synchronize 30
No User is Able to Synchronize 31
Check for Certificate-related Problems 31
Check the Application Event Log 31
Check the Firewall Configuration 32
ACCESSING EXCHANGE SERVER ACTIVESYNC WEB ADMINISTRATION 32
DEPLOYING SSL CERTIFICATES 33
Obtaining a Certificate 33
Creating a Certificate Signing Request 34
Installing a Self-Signed Certificate 34
CONFIGURING DEVICES 35
Direct Push Messages 35
Device Policy 35
Synchronizing 35