You have two options:
1. When using the normal connection from outlook to exchange open all high ports as dynamic port numbers will be used.
2. Set up an environment to use RPC over HTTPS, then you will only need to open port 443 but this will also mean that you will be sending a https tunnel with RPC in it over your https network connect tunnel...