Quantcast
Channel: Exchange Server 2013 - General Discussion forum
Viewing all 13303 articles
Browse latest View live

problem buying certificate for Exchange 2013 that hosting 2 email domain

$
0
0

hi ,

in my organization Exchange users are using outlook to connect to exchange ; some of users are inside organization and joined to our AD domain but some of them are outside users  (connect using VPN) and not joined to our domain.

my internal domain (AD Domain) is internal.com and my Public Domain ispublic.com , my company owns the "public.com"name but we do not own "internal.com" so i cant use my internal AD CA server for issuing Certificate for VPN server and i cant request a SAN Certificate for "Internal.com" domain , i just can request Certificate for "public.com".

is there anyway that i could use 2 certificate (one from internal CA and One from Public CA) for 2 different group of users (non-domain joined and domain joined Devices)?

or is there anyway other way that i can request certificate from a public CA just for Public.com and all users(domain Joined and not-Domain Joined Devices) use that? (without adding SAN for internal.com)

thanks


Exchange 2013 - Recoverable Items behavior with Litigation Hold enabled

$
0
0

Hi all,

I am looking for some answers that I was not able to find on the internet, maybe because the setup is little specific.

In a nutshell:

- Exchange 2013 CU4/SP1 test environment. Installed on Windows Server 2012 R2.

- One DB for the main mailboxes, one DB for the archive mailboxes.

- All users have Litigation Hold enabled on their mailboxes with retention of 10 years. Also there is a default policy tag to archive items after 90 days.

The question: When a user deletes something from the main mailbox the item is not really permanently deleted because of the Litigation Hold. So even though it will not count towards its mailbox quota, the message will remain taking space in the main DB (in the Recoverable Items folder). After the 90 days archive retention has passed, is Exchange supposed to "move" this message from the Recoverable Items of the main DB into the Recoverable Items of the archive DB? In other words, after the archive retention period has passed, should messages deleted from the main mailbox take up space in the main DB or the archive DB?

If Litigation Hold is not enabled, from what I read on the internet, the archiving policy should move the messages to the Recoverable Items of the archive mailbox/DB. However my tests show that the messages remain in the main DB. I am not sure if this is due to the Litigation Hold and if this is behavior by design in Exchange 2013.

If someone can please shed some light how should messages act in this scenario, I would appreciate it very much. Thanks a lot in advance.

Darko Dimitrovski.

Exchange 2003 to 2010 Public folder replica cannot be removed.

$
0
0

Thank you for viewing my post:

Problem: Can’t remove the replica for the SYSTEM CONFIGURATION public folder

I have almost completed the transition / migration from Exchange 2003 to 2010. (Finally!) I have moved all the mail boxes changed all the IP`s on the FW and Mail sweeper and updated the DNS records. (But In stuck at removing the replica for the system configuration public folder.)

I have moved the public folders to 2010 using scripts. On Exchange 2003 I have been able to remove all replicates for the public folders except for the SYSTEM CONFIGURATION public folder.  When I try to remove the replica I get prompted for a password followed by an access denied error.

My question is can I just ignore this error and continue with removing the routing group connectors and then decommission / demote the exchange 2003?  If I should resolve this issue before deleting the routing group connectors what can I do to resolve the issue?  I have tried many things but everything I have tried so far will not allow me to remove the replica for the System Configuration public folder.

Any help would be appreciated.

Thank you again for taking the time to view my post.

problem recovering Exchange services

$
0
0

Exchange 2013 cu4

my original setup is: 1 DAG with 2 MB and 2 CAS  servers

i created a Veeam backup of 1 DC (seized FSMO role), 1 CAS, 1 MB server. created also a private VLAN (so that when restoring this servers they won't clash with the production ones). was also able to restore the Veeam backups (HyperV VMs) to the hypervisor inside this private VLAN.

i was able to bring up all restored servers and they are up and running.

however, in the CAS server, the "Frontend Transport" service refuses to start. all other Exchange services are running.

i get event ID errors 106, 1036, and 5009.

to add, i didn't backup the databases intentionally. so i'm trying to start Exchange without the databases because i don't have enough hd space for them. i plan to create a dummy database after Exchange starts but i'm unable to due to some Exchange services not working. i also haven't checked the MB server yet, just concentrating first on the CAS server.

also, the ip address the restored servers are now using is way different from their original settings. i have reflected that changed in the DNS and am able to ping each server by the new ip address and by name.

how does one troubleshoot fronted transport not starting?

SMTP Relay with DNS Round Robin

$
0
0

On Exchange Server 2016 we can't deploy NLB. If you don't have HLB...only solution is DNS round robin

Do applications work with DNS round robin ??

Block spoofing mails

$
0
0

We have Exchange 2007 on Windows 2003 server.

There is installed Symantec mail security for exchange

We are getting mails to internal user from outside send from there own mail adress

How to prevent this spoofing ?

Peter Røge / Denmark

Exchange 2007 Rollup Update Issue

$
0
0

I have a customer that is running Exchange 2007. After applying the PS commandget-exchangeserver | select name, admindisplayversion it indicates that it is running at Version 8.3 (build 83.6). When I look into the installed updates it shows that all rollup updates up to 18 (8.3.459.0) are installed.

How can we fix it so that it is running at Rollup 18?

Thanks

Distribution Group Adding accept Only From

$
0
0

Hi,

We have Exchange 2013 CU9, we have total 800 Distribution Group and I want to add"Exective"group into Delivery Management to all distribution group to avoid the restriction to any group. So when "Exective"group wants to send email to any distribution list to all company, They don't get bounce back. Is there any cmdlet or script help me to setup this task. 




Tool for Email alias Creation?

$
0
0

Hello Cool People,

I was wondering if there is an automated way to create an email alias for a mailbox in Exchange 2013? So we have this mailbox used by a group of people and they keep on requesting for additional email alias for this mailbox.  Lets say I have MailboxXYZ@company.com and here comes user1 requesting to add ABC@company.com, a few minutes later here comes user2 requesting to add 123@company.com and 456@company.com. So we  go to ECP and add this alias to MailboxXYZ@company.com.

What we are trying to do (if possible) is to give these users a simple script or a tool to just input the email alias they want to add to MailboxXYZ@company.com and give a message whether the alias was successfully added to the mailbox or if the alias they are trying to add is already existing  on the long list of alias on that mailbox. 

 I should also mention that the user  has only full access to the MailboxXYZ@company.com.  I was thinking of PS but haven't really touch  PS yet.  I hope someone can shed some light on this. 

Thanks in Advance.

Exchange 2013 Moderator

$
0
0

HI,

I have issue to understand Moderator Feature in exchange 2013 for Federated domain. I know I can set up a moderator to send message to whole company and exclude group who don't need moderator approval.

MY QUESTION IS.

Does moderator will work for external trust company as well, DO we need to switch to "Senders inside and outside of my organization" federated company will be affected by the moderator.

Exchange Server 2013 CU8 Event 4625 Null Sid Audit Failure for Distribution Groups

$
0
0

We are receiving quite of a few of these. We have a hybrid topology with o365 (Not sure if that matters, but, it's info)

An account failed to log on.

Subject:
 Security ID:  SYSTEM
 Account Name:  ServerName$
 Account Domain:  Domain
 Logon ID:  0x000

Logon Type:   8

Account For Which Logon Failed:
 Security ID:  NULL SID
 Account Name:  DistributionGroupName
 Account Domain:  

Failure Information:
 Failure Reason:  Unknown user name or bad password.
 Status:   0xC000006D
 Sub Status:  0xC0000064

Process Information:
 Caller Process ID: 0xc58
 Caller Process Name: C:\Program Files\Microsoft\Exchange Server\V15\Bin\MSExchangeFrontendTransport.exe

Network Information:
 Workstation Name: Servername
 Source Network Address: -
 Source Port:  -

Detailed Authentication Information:
 Logon Process:  Advapi 
 Authentication Package: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0
 Transited Services: -
 Package Name (NTLM only): -
 Key Length:  0

This event is generated when a logon request fails. It is generated on the computer where access was attempted.

The Subject fields indicate the account on the local system which requested the logon. This is most commonly a service such as the Server service, or a local process such as Winlogon.exe or Services.exe.

The Logon Type field indicates the kind of logon that was requested. The most common types are 2 (interactive) and 3 (network).

The Process Information fields indicate which account and process on the system requested the logon.

The Network Information fields indicate where a remote logon request originated. Workstation name is not always available and may be left blank in some cases.

The authentication information fields provide detailed information about this specific logon request.
 - Transited services indicate which intermediate services have participated in this logon request.
 - Package name indicates which sub-protocol was used among the NTLM protocols.
 - Key length indicates the length of the generated session key. This will be 0 if no session key was requested

Exchange 2013 Disconnected Mailbox missing

$
0
0

Hi All,

I am hopefully going to try and successfully explain this extremely bizarre scenario which I have encountered.

So standard user mailbox with an In Place Archive enabled against it was disabled and now I cannot find it in the list of disconnected mailboxes (I can see the archive mailbox in there but not his actual mailbox).

I have tried running the usual Update-StoreMailboxState commands as I know the disconnected mailboxes dont always populate immediately, and as mentioned his archive mailbox appeared but not his actual mailbox so I am confident that the command has refreshed it, also, it was disconnected about 12 hours ago from now so it should have at least appeared. 

So that is the situation but I shall give some more background info;

3 Exchange 2013 servers in a DAG.

3 Exchange mailbox Databases, one mounted on different Exchange servers for resilience.

Each database has its own In Place Archive database as well.

The user was having some quirky issues so I tried moving him to a different database however the move was stuck in the Syncing phase, when I checked the details of the move I could see some errors relating to "Could not open System Attendant" and a few others, tried Stopping the move and then it became stuck in the Stopping state. Read online and someone said to restart Exchange IS service, done this but to no avail.

I then decided to just Disable the mailbox and reconnect it again, done this but as mentioned I cannot see the user now, not on the original Source database or the Target database.

At the moment I am running a recovery through the DPM backup software but due to "poor design" shall we say its going to take 6 days to recover the EDB.

Is there anything else I can check? 

I have triple checked the Disconnected mailboxes both via EAC and Shell, also run the Update-StoreMailboxState commands against the mailbox guid as well as the database a few times, also just tried to run the Connect-Mailbox command anyway just to see if it could find it but came back saying that a disconnected mailbox with this name could not be found.

Any help is much appreciated. Thanks

Limit Admin user privilege?

$
0
0

Hello,

I'm writing a small script that will allow a user to run it from their desktop for them to be able just to "add a secondary email" on a specific mailbox.  These users are not a member of any admin group in exchange and adding them to the existing group is not a idea given the it has more rights that they need to have. 

Basically, all I wan't is for these users to execute the "set-mailbox"  and "-emailaddresses" cmdlet


Is there a way  to achieve this?  

Thanks,

Lorenze

Troubleshooting erroneously filtered messages

$
0
0

We migrated from Exchange 2007 to 2013 a little under a month ago.. Ever since one user has been complaining that several of his emails have been ending up in the Outlook Junk Mail folder.  All of the messages are tagged with: "This message was marked as spam using a junk filter other than the Outlook Junk E-Mail filter."

Problem is, I can't find anything that could possibly be filtering these messages.  We use a Barracuda spam appliance, and the messages clear it with no problem (in fact most of them are whitelisted - the most notable offender is emails from our phone provider containing voicemail messages - 100% of these are filtered in testing).  I've never installed the Anti-Spam agents on the exchange server, and a quick glance via powershell indicates they aren't enabled.

I've verified that the filtering is happening outside of his PC.  The messages show up in Junk Mail on his smartphone immediately even with his PC disconnected.

Any other places I can look to try to figure this out?  Any obvious things I might be overlooking?

Email Log

$
0
0
Hi all, how do i check my email log that is not send using owa?

How we Archiving the 5000 User mailbox?

$
0
0

HI,

 I have a question from exchange experts.My exchange database is near to full the size and i want to archive the old database to free the size ,How we Archive the 5000 User mailbox in a database (other than archive database) in a single action/command and later move this database to another location to free the storage for the mailboxes.

Count members of a distribution group

$
0
0

Exchange 2010 sp3

My goal is to count the members (including nested DG's) of our distribution groups.  I found Paul Cunningham's script and it works great but I have 1 problem.  

http://exchangeserverpro.com/get-distribution-group-member-counts-with-powershell/ 

In powershell:

I have some groups that are over the 5,000 limit placed on what I believe is ADWS. I get this error:
Get-ADGroupMember : The size limit for this request was exceeded
FullyQualifiedErrorId : The size limit for this request was exceeded,Microsoft.ActiveDirectory.Commands.GetADGroupMember


Exchange 2013 Availability monitoring

$
0
0

Hi All,

I'm sort of stuck on the Exchange 2013 Probe Monitors, Monitors such as Imap, ActiveSync, Pop3 and FrontEndTransport keep failing. To fix/check the issue I'm following the below links:

http://technet.microsoft.com/en-us/library/ms.exch.scom.activesync(v=exchg.150).aspx

http://technet.microsoft.com/en-us/library/ms.exch.scom.imap(v=exchg.150).aspx

For example typing in Invoke-MonitoringProbe ActiveSync\ActiveSyncCTPProbe -Server server1.contoso.com | Format-List

I will get the following error:

WARNING: Index was out of range. Must be non-negative and less than the size of the collection.
Parameter name: index

Not sure why I'm getting this error.

For Imap testing i.e. typing in Invoke-MonitoringProbe IMAP\ImapCTPProbe -Server server1.contoso.com | Format-List

I will get the following error:

WARNING: No mailboxes were found to use in the CTP probe.

I'm absolutely stumped on why I'm getting these errors.

I'm running my Exchange servers on Hyper-V 2012 (My Hyper-V 2012 is clustered and managed by VMM 2012 SP1)

I have 8 Exchange 2013 Enterprise CU6 nodes, with 2 DAGS

Each Exchange server is running 4 cores of Processor and 24Gig of Ram (Not using Dynamic Memory)

If someon can shed some light on this issue it would be most appreciated.

Regards

Mike

Delegate out of office permissions

$
0
0

Hi, 

Our helpdesk are members of the "Recipient management" group but they are unable to gain access to end users mailboxes to turn on the OOF via the ECP. 

Does anyone know what role will allow them to do this? 


www.techielass.com

Exchange Edge server alternative

$
0
0

We are using exchange 2013 for the email solution and we are still using Exchange 2007 in the edge environment only for mail flow. Since we are using Edge server only for mail flow, spam filtering and other scanning we are using cloud product. Since we are using Edge 2007 only for mail flow, we are planning to remove the edge servers for mail flow. 

What are the best solution in this case if i need to remove Edge servers and what are the steps needed for successful mail flow after edge 2007 removal?

Viewing all 13303 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>