Quantcast
Channel: Exchange Server 2013 - Setup, Deployment, Updates, and Migration 论坛
Viewing all 7008 articles
Browse latest View live

I Want to Migrate My Mails from Novel Group Wise to Exchange 2013.

$
0
0

Hi Guys,

Most probably I am going to deliver one project in nearest future, which included to move Mailboxes and mail data from Novel Group-wise to Exchange 2013. i want to know what should be the approach and what are the per-requisites that need to be consider to perform Migration steps in above scenario? please let me know how the mail-flow work to/from Group-wise to exchange 2013 and vice-verse. please suggest me some initial steps and URLs for this requirement. i want to be clarified logically before i suggest any solution on this to my customer.

step by step docs will be more helpful to achieve this goal..

Regards,

Aanand Singh


CU6 Update failing prerequisite check WinMgmt "Access is denied."

$
0
0

I'm attempting to upgrade Exchange 2013 and am seeing the following error message. I've been unable to get past it and haven't found any helpful information in my research on what to do. Thoughts?

Welcome to Microsoft Exchange Server 2013 Unattended Setup
Languages
Mailbox role: Transport service
Client Access role: Front End Transport service
Mailbox role: Client Access service
Mailbox role: Unified Messaging service
Mailbox role: Mailbox service
Management tools
Client Access role: Client Access Front End service

Performing Microsoft Exchange Server Prerequisite Check

    Configuring Prerequisites                                                                         FAILED
     The following error was generated when "$error.Clear();
          if (Get-Service WinMgmt* | ?{$_.Name -eq 'WinMgmt'})
          {
            Set-Service WinMgmt -StartupType Automatic
            Start-SetupService -ServiceName WinMgmt
          }
        " was run: "Service 'Windows Management Instrumentation (WinMgmt)' cannot be configured due to the following err
or: Access is denied".

    Prerequisite Analysis                                                                             COMPLETED

The Exchange Server setup operation didn't complete. More details can be found in ExchangeSetup.log located in the
<SystemDrive>:\ExchangeSetupLogs folder.

Need help with making a certificate to possibly eliminate an error and removing others

$
0
0

I'm currently using a self-signed certificate for exchange 2013 and will get a paid one when I move to 2016.

I recently removed my exchange 2007 from my 2013-2007 coexistence and have been getting some possible certificate errors after the removal.

Cannot start Microsoft Outlook. Cannot open the Outlook window. The set of folders cannot be opened. Network problems are preventing connection to Microsoft Exchange.

If I need to make a new self-signed certificate, what URL's and Friendly name/FQDN should it have? I'll eventually have a 2013-2016 coexistence and then just 2016 so advice about that would be helpful as well.

The current certificate does have the 2007 server named in it but isn't the friendly/FQDN.

I have an OWA deployment for those off site and local users using Outlook 2016.

I currently have 4 certificates on Exchange. Some have overlapping services tied to them but I have 1 tied to the all the services the others are tied to and is the one picked up by the Outlook clients and used by OWA.

Do I only need 1 certificate? Am I OK to remove the other certificates that have services covered by the one I mentioned?

I'm new to certificates and don't want 100 people hunting me down when their Outlook quits working entirely if I remove a needed certificate or make a new one that doesn't have everything it needs.

Thanks!


Exchange 2013 - CU2 Install Fail - Error code is 1603

$
0
0

Error:
Unable to remove product with code 4934d1ea-be46-48b1-8847-f1af20e892c1. Fatal error during installation. Error code is 1603. Last error reported by the MSI package is 'Unable to install because a previous Interim Update for Exchange Server 2013 Cumulative Update 1 has been installed.  Please use Add/Remove Programs to uninstall the Interim Update before running this setup again.'.

The install hangs here after it has disabled a number of services. I have to go back in and re-enable the services to bring Exchange back online. However, smtp still does not respond devices other than itself.

1. How do I get SMTP back online with that server

2. How can I get CU2 installed. My understanding is that uninstalling CU1 means removing Exchange entirely which I do not want to do.

I have a 2 server environment with 2 databases and a single DAG.


DH

Recover disabled mailboxes from Exchange 2013

$
0
0

We recently did a hardware migration of MS Exchange 2013 CU11 to a new Exchange 2013 CU21 server. This involved using the move mailbox wizard to move all of the mailboxes. The process was completed successfully and after waiting a few weeks, we finished by uninstalling Exchange 2013 from the old server. Nothing else was done to the old server, and the old databases and logs are still in place.
The client has now advised us that there were a number of disabled mailboxes that they had forgotten about, and now need to have recovered. We tried to use the recovery database option on the new server to mount the old databases but this failed, as the Windows server version is different.
As only CU21 and CU22 are available for download, how should we proceed to reinstall Exchange 2013 on the old server in order to recover the disabled mailboxes? I presume we use setup /mode:recoverserver but will this work with CU22 and will this allow us to recover the disabled mailboxes? The retention period was set for 1 year so they "should" be there.
Many thanks,
Pat

Wildcard Problem - IMAP e POP

$
0
0

Hi, 

I'm having a trouble with Exchange 2013. 

I'm trying to remove an old Certificate, and I want to assign IMAP and POP service to a Wildcard. 

I'm doing the procedure "Set-PopSettings -X509CertificateName webmail.domain.it" but, when I check with Get-PopSettings I can see that the X509CertificateName is already being set, but when I use Enable-ExchangeCertificate it return me the classic error "

WARNING: This certificate with thumbprint AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA and subject '*.domain.com' cannot used for POP SSL/TLS connections because the subject is not a
 Fully Qualified Domain Name (FQDN). Use command Set-POPSettings to set X509CertificateName to the FQDN of the service."

Have you ever seen this problem?

Thank you.

AA

Cross forest migration from Exchange 2016 to Exchange 2013

$
0
0

Is it technically possible to migrate Exchange 2016 mailboxes to an Exchange 2013 organization in a cross forest migration scenario?

thanks in advance.

Cross Forest Mailbox Migration - source Exchange OWA does not find mailbox after migration is completed.

$
0
0

Greetings all

We are merging 2 companies (forest A source, Forest B target) and migrating all the mailboxes from Exchange 2013 in forest A to Exchange 2016 in forest B (Exch A will be decomissioned). A Two way trust has been established. The Prepare-moverequest script is issued correctly and the New Move is initiated using the ECP "migrate to this forest" from the target forest B Exchange 2016. The mailbox is eventually synched. Until this point access to the mailbox using OWA in Exch A is still functional. However when we finalize/complete the migration and it is definitely removed from Exch A, OWA in Exch A says "something went wrong" when trying to access the mailbox reporting it cannot locate it instead of proxying. Usually (at least between same domain migration) you get redirected or proxied to the target Exchange which has the mailbox. However the Outlook client from the source domain A does update itself and connects to the new Exch Server in forest B correctly so the mailbox is available and online. After the mailbox move we use ADMT to migrate the user from A to B with SID history but filtering MSExch attributes retaining the original user in the source AD. This should not however change the behavior of the source OWA after the mbox has been migrated. Additionally, the source Exch server converts the user mbox into a contact which is the correct behavior so I don't know why from the source OWA it does not proxy correctly towards the target Exch B (maybe some incorrect attribute?). Any pointers are appreciated - thanks!


--- Luca Forattini


Exchange 2013 CU12

$
0
0

I'm am looking for an ISO of EX2013 CU12. Version 15.0 (Build 1178.4)  I'm on this release and need to mail enable a new domain.  MS has removed this release from the web.  

Thanks. 

Exchange 2013 - Hybrid deployment - On-premise mailbox + Online archive (EOA) mailbox i O365

$
0
0

We are successfully using a hybrid setup with on-Premise Exchange 2013 and archive mailboxes in an Office 365 tennant.

Users are synced to "cloud" with Azure AD Sync and have been granted Office 365 Exchange Online Archiving (EOA) licenses.

Our users with online archives can however not utilize retention policies, and need to manually move data from on-Premise mailbox to archive.
We have tried exporting retention policies from on-Premise and imported to O365, but the Policy button is not present under the Folder ribbon in Outlook.
I have an O365 mailbox as a second account in Outlook. When I browse this mailboxes' folders, the Policy button is present.

The users have been granted a Retention Policy which has been imported to the O365 tennant.

Has anyone got a similar setup to work with using retention policies for automatic archiving of e.g. 1 year old emails?


export Mailbox To Pst File

$
0
0

Hi Everyone,

i am trying to export some mailbox in my exchange2010 Sp3 to Pst , but when excute the below command i got the Error:

New-mailboxExportRequest -Mailbox "admin" -filepath \\ server\Pst\admin.pst

i got the following Error:

The call to 'net.tcp://server name/Microsoft.Exchange.MailboxReplicationService server name' timed out. Error details: This request operation sent to net.tcp:// server name//Microsoft.Exchange.MailboxReplicationService did not receive a reply within the configured timeout (00:01:00).

i tried to increase TimeOut on Client Access folder in Web.config file  i make (DataImportTimeout=00:20:00)but not successfully.

 

Note: (Pst) folder has been shared and give Group (exchange trust subsytem) full permission.

thank in advance 

Exchange 2016 w/ CU 6 ONLY.

$
0
0

We NEED an image of 2016 CU (cumulative update) 6, please! The link I downloaded was CU 10 using our volume license and it’s not going to migrate from 2008 unless we had R2 – which we do not. Microsoft’s site does not have CU 6. How can we get CU6? Our migration is on hold for the moment until this is resolved and I download CU 6. Please assist.

Exchange Server 2013 CU22 aborts with Exception: Failure configuring SearchFoundation through installconfig.ps1

$
0
0

Hello,

I have tried to update one of our Exchange 2013CU21 Servers with CU22, but in step 10 of 18 "Mailbox role: Transport service" I get the following exception. Does anybody know what could cause this?

Der folgende Fehler wurde generiert, als "$error.Clear(); 
            if ($RoleProductPlatform -eq "amd64")
            {
                try
                {
                    # Need to configure the ETL traces before the fast service is installed. This will ensure that when the service comes up
                    # it will have the necessary trace session setting available to read from the registry
                    $fastPerfEtlTraceFolderPath = Join-Path -Path $RoleBinPath -ChildPath "\Search\Ceres\Diagnostics\ETLTraces"
                    $fastDiagnosticTracingRegKeyPath = 'HKLM:\SOFTWARE\Microsoft\Office Server\16.0\Search\Diagnostics\Tracing'
                    if(-not(Test-Path -Path $fastPerfEtlTraceFolderPath))
                    {
                        $null = New-Item $fastPerfEtlTraceFolderPath -Type 'Directory' -Force 
                    }
                    
                    if (-not(Test-Path -Path $fastDiagnosticTracingRegKeyPath))
                    {
                        $null = New-Item -Path $fastDiagnosticTracingRegKeyPath -Force
                    }
                    
                    $null = New-ItemProperty -Path $fastDiagnosticTracingRegKeyPath -Name 'TracingPath' -PropertyType 'string' -Value $fastPerfEtlTraceFolderPath -Force
                    $null = New-ItemProperty -Path $fastDiagnosticTracingRegKeyPath -Name 'TracingFileName' -PropertyType 'string' -Value 'DocumentProcessingTrace' -Force
                    $null = New-ItemProperty -Path $fastDiagnosticTracingRegKeyPath -Name 'DocumentParserSuccessLogMessage' -PropertyType 'Dword' -Value 1 -Force
                    $null = New-ItemProperty -Path $fastDiagnosticTracingRegKeyPath -Name 'DocumentParserLoggingNoInitialisation' -PropertyType 'Dword' -Value 1 -Force
                    
                    # Max trace folder size 50 * 100 = 5GB
                    $null = New-ItemProperty -Path $fastDiagnosticTracingRegKeyPath -Name 'MaxTraceFileSize' -PropertyType 'Dword' -Value 50 -Force
                    $null = New-ItemProperty -Path $fastDiagnosticTracingRegKeyPath -Name 'MaxTraceFileCount' -PropertyType 'Dword' -Value 100 -Force
                    
                    $null = New-ItemProperty -Path $fastDiagnosticTracingRegKeyPath -Name 'UseGeneralSwitch' -PropertyType 'Dword' -Value 1 -Force
                    $null = New-ItemProperty -Path $fastDiagnosticTracingRegKeyPath -Name 'GeneralSwitch' -PropertyType 'Dword' -Value 1 -Force                    
                }
                catch
                {
                    # ETl tracing is not critical. Info only log
                    Write-ExchangeSetupLog -Info ("An exception ocurred while trying to Configure the FAST ETL traces. Exception: " + $_.Exception.Message);
                }

                try
                {
                    $fastFusionRegKeyPath = 'HKLM:\SOFTWARE\Microsoft\Office Server\16.0\Search\FlightControl' 

                    if (Test-Path -Path $fastFusionRegKeyPath)
                    {
                        Remove-ItemProperty -Path $fastFusionRegKeyPath -Name 'fusion_new_enabled' -Force -ErrorAction SilentlyContinue
                        Remove-ItemProperty -Path $fastFusionRegKeyPath -Name 'fusion_old_enabled' -Force -ErrorAction SilentlyContinue
                        Remove-ItemProperty -Path $fastFusionRegKeyPath -Name 'fusion_compare_outputs' -Force -ErrorAction SilentlyContinue
                    }
                }
                catch
                {
                    # Removing new fusion keys is not critical. Info only log
                    Write-ExchangeSetupLog -Info ("An exception ocurred while trying to remove the fast new fusion reg keys. Exception: " + $_.Exception.Message);
                }
                
                $fastInstallConfigPath = Join-Path -Path $RoleBinPath -ChildPath "Search\Ceres\Installer";
                $command = Join-Path -Path $fastInstallConfigPath -ChildPath "InstallConfig.ps1";
                $dataFolderPath = Join-Path -Path $RoleBinPath -ChildPath "Search\Ceres\HostController\Data";

                # Remove previous SearchFoundation configuration
                &$command -action u -silent;
                try
                {
                    if ([System.IO.Directory]::Exists($dataFolderPath))
                    {
                        [System.IO.Directory]::Delete($dataFolderPath, $true);
                    }
                }
                catch
                {
                    $deleteErrorMsg = "Failure cleaning up SearchFoundation Data folder. - " + $dataFolderPath + " - " + $_.Exception.Message;
                    Write-ExchangeSetupLog -Error $deleteErrorMsg;
                }

                # Re-add the SearchFoundation configuration
                try
                {
                    # the BasePort value MUST be kept in sync with dev\Search\src\OperatorSchema\SearchConfig.cs
                    &$command -action i -baseport 3800 -dataFolder $dataFolderPath -silent;
                }
                catch
                {
                    $errorMsg = "Failure configuring SearchFoundation through installconfig.ps1 - " + $_.Exception.Message;
                    Write-ExchangeSetupLog -Error $errorMsg;
                    
                    # Clean up the failed configuration attempt.
                    &$command -action u -silent;
                    try
                    {
                        if ([System.IO.Directory]::Exists($dataFolderPath))
                        {
                            [System.IO.Directory]::Delete($dataFolderPath, $true);
                        }
                    }
                    catch
                    {
                        $deleteErrorMsg = "Failure cleaning up SearchFoundation Data folder. - " + $dataFolderPath + " - " + $_.Exception.Message;
                        Write-ExchangeSetupLog -Error $deleteErrorMsg;
                    }
                }
                
                # Set the PowerShell Snap-in's public key tokens
                try
                {
                    $PowerShellSnapinsPath = "HKLM:\SOFTWARE\Microsoft\PowerShell\1\PowerShellSnapIns\";
                    $FastSnapinNames = @("EnginePSSnapin", "HostControllerPSSnapIn", "InteractionEnginePSSnapIn", "JunoPSSnapin", "SearchCorePSSnapIn");
                    $officePublicKey = "71E9BCE111E9429C";
                    $exchangePublicKey = "31bf3856ad364e35";
                    foreach ($fastSnapinName in $FastSnapinNames)
                    {
                        $fastSnapinPath = $PowerShellSnapinsPath + $fastSnapinName;
                        $assemblyNameProperty = Get-ItemProperty -Path $fastSnapinPath -Name "AssemblyName" -ErrorAction SilentlyContinue;
                        if ($assemblyNameProperty -ne $null -and (-not [string]::IsNullOrEmpty($assemblyNameProperty.AssemblyName)))
                        {
                            $newAssemblyName = $assemblyNameProperty.AssemblyName -ireplace ($officePublicKey, $exchangePublicKey);
                            Set-ItemProperty -Path $fastSnapinPath -Name "AssemblyName" -Value $newAssemblyName;
                        }
                    }
                }
                catch
                {
                    # Info only log
                    Write-ExchangeSetupLog -Info ("An exception ocurred while configuring Search Foundation PowerShell Snapin. Exception: " + $_.Exception.Message);
                }
            }
        " ausgeführt wurde: "System.Exception: Failure configuring SearchFoundation through installconfig.ps1 - Error occurred while configuring Search Foundation for Exchange.System.ServiceModel.EndpointNotFoundException: Es konnte keine Verbindung mit "net.tcp://localhost:3801/ceres/hostcontroller/nettcp" hergestellt werden. Der Verbindungsversuch hat für einen Zeitraum von 00:00:02.0258890 angedauert. TCP-Fehlercode 10061: Es konnte keine Verbindung hergestellt werden, da der Zielcomputer die Verbindung verweigerte 127.0.0.1:3801.  ---> System.Net.Sockets.SocketException: Es konnte keine Verbindung hergestellt werden, da der Zielcomputer die Verbindung verweigerte 127.0.0.1:3801
   bei System.Net.Sockets.Socket.DoConnect(EndPoint endPointSnapshot, SocketAddress socketAddress)
   bei System.Net.Sockets.Socket.Connect(EndPoint remoteEP)
   bei System.ServiceModel.Channels.SocketConnectionInitiator.Connect(Uri uri, TimeSpan timeout)
   --- Ende der internen Ausnahmestapelüberwachung ---

Server stack trace: 
   bei System.ServiceModel.Channels.SocketConnectionInitiator.Connect(Uri uri, TimeSpan timeout)
   bei System.ServiceModel.Channels.BufferedConnectionInitiator.Connect(Uri uri, TimeSpan timeout)
   bei System.ServiceModel.Channels.ConnectionPoolHelper.EstablishConnection(TimeSpan timeout)
   bei System.ServiceModel.Channels.ClientFramingDuplexSessionChannel.OnOpen(TimeSpan timeout)
   bei System.ServiceModel.Channels.CommunicationObject.Open(TimeSpan timeout)
   bei System.ServiceModel.Channels.ServiceChannel.OnOpen(TimeSpan timeout)
   bei System.ServiceModel.Channels.CommunicationObject.Open(TimeSpan timeout)
   bei System.ServiceModel.Channels.ServiceChannel.CallOpenOnce.System.ServiceModel.Channels.ServiceChannel.ICallOnce.Call(ServiceChannel channel, TimeSpan timeout)
   bei System.ServiceModel.Channels.ServiceChannel.CallOnceManager.CallOnce(TimeSpan timeout, CallOnceManager cascade)
   bei System.ServiceModel.Channels.ServiceChannel.EnsureOpened(TimeSpan timeout)
   bei System.ServiceModel.Channels.ServiceChannel.Call(String action, Boolean oneway, ProxyOperationRuntime operation, Object[] ins, Object[] outs, TimeSpan timeout)
   bei System.ServiceModel.Channels.ServiceChannelProxy.InvokeService(IMethodCallMessage methodCall, ProxyOperationRuntime operation)
   bei System.ServiceModel.Channels.ServiceChannelProxy.Invoke(IMessage message)

Exception rethrown at [0]: 
   bei System.Runtime.Remoting.Proxies.RealProxy.HandleReturnMessage(IMessage reqMsg, IMessage retMsg)
   bei System.Runtime.Remoting.Proxies.RealProxy.PrivateInvoke(MessageData& msgData, Int32 type)
   bei Microsoft.Ceres.HostController.WcfTypes.IHostController.GetHostInformation()
   bei Microsoft.Ceres.Exchange.PostSetup.HostControllerManager.ConnectHost(Uri uri, Boolean secure, String userIdentity, Int16 timeoutInSeconds)
   bei Microsoft.Ceres.Exchange.PostSetup.DeploymentManager.DeployAdminNode(String installDirectory, String localHostControllerNetTcpUrl, Int32 hostControllerPort)
   bei Microsoft.Ceres.Exchange.PostSetup.DeploymentManager.Install(String installDirectory, String dataDirectoryPath, Int32 basePort, String logFile, Boolean singleNode, String systemName, Boolean attachedMode)
   bei CallSite.Target(Closure , CallSite , RuntimeType , Object , Object , Object , Object , Object , Object , Boolean )
   bei Microsoft.Exchange.Configuration.Tasks.Task.ThrowError(Exception exception, ErrorCategory errorCategory, Object target, String helpUrl)
   bei Microsoft.Exchange.Management.Deployment.WriteExchangeSetupLog.InternalProcessRecord()
   bei Microsoft.Exchange.Configuration.Tasks.Task.<ProcessRecord>b__b()
   bei Microsoft.Exchange.Configuration.Tasks.Task.InvokeRetryableFunc(String funcName, Action func, Boolean terminatePipelineIfFailed)".

Exchange hybrid migration + offline address book

$
0
0

My understanding is that during hybrid mailbox migration, it doesn't impact OAB and migrated users don't need to re-download whole OAB (chocking the network). 

Outlook downloads OAB as per it's own schedule and new point for download is changed to Exchange online post migration as per URL retrieved by outlook, so the environment has 2 points of OAB for On-premise hosted mailbox from on-premise and for Exchange online migrated mailbox's from Office365.

However I am looking for any technote on same to show same to client, has anybody come across any technote which they can point me to


Arhaan

Prerequisite check failing for CU22 on one of two Exchange 2013 Servers

$
0
0

We have 2 Exchange 2013 servers, two locations, 1 domain.

My account is part of schema admins, domain admins, enterprise admins, and Exchange Organization Admins.

Both Exchange servers are running on CU20 with KB4092041 security patch.

Tried CU21 on both servers has no issues during the prereq/readiness check in the installer, didnt install though.

CU22 has no issue on one Exchange server, however on the other one, I receive all kinds of errors:

Anyone have any ideas why CU21 wouldnt throw any errors for either server, but would throw all kinds of errors like AD not existing and Exchange roles not installed on the other server? Exchange is working fine at both sites.

Error:

The Mailbox server role isn't installed on this computer.


Error:

The Mailbox server role isn't installed on this computer.


Error:

Global updates need to be made to Active Directory, and this user account isn't a member of the 'Enterprise Admins' group.


Error:

You must be a member of the 'Organization Management' role group or a member of the 'Enterprise Admins' group to continue.


Error:

You must use an account that's a member of the Organization Management role group to install or upgrade the first Mailbox server role in the topology.


Error:

You must use an account that's a member of the Organization Management role group to install the first Client Access server role in the topology.


Error:

You must use an account that's a member of the Organization Management role group to install the first Client Access server role in the topology.


Error:

You must use an account that's a member of the Organization Management role group to install or upgrade the first Mailbox server role in the topology.


Error:

You must use an account that's a member of the Organization Management role group to install or upgrade the first Client Access server role in the topology.


Error:

You must use an account that's a member of the Organization Management role group to install the first Mailbox server role in the topology.


Error:

Setup encountered a problem while validating the state of Active Directory: Exchange organization-level objects have not been created, and setup cannot create them because the local computer is not in the same domain and site as the schema master. Run setup with the /prepareAD parameter on a computer in the domain 'domain' and site GB, and wait for replication to complete. See the Exchange setup log for more information on this error.


Error:

The forest functional level of the current Active Directory forest is not Windows Server 2003 native or later. To install Exchange Server 2013, the forest functional level must be at least Windows Server 2003 native.


Error:

Either Active Directory doesn't exist, or it can't be contacted.


Warning:

Setup will prepare the organization for Exchange 2013 by using 'Setup /PrepareAD'. No Exchange 2007 server roles have been detected in this topology. After this operation, you will not be able to install any Exchange 2007 servers.


Warning:

Setup will prepare the organization for Exchange 2013 by using 'Setup /PrepareAD'. No Exchange 2010 server roles have been detected in this topology. After this operation, you will not be able to install any Exchange 2010 servers.




Questions regarding updating Exchange 2013 to the latest Cu

$
0
0

I have an Exchange 2013 SP1 server that is behind on Cu updates.

The only ones available to download are Cu21 and Cu22.

My question is is there any other prerequisites that need to be done before they're installed?

Any known issues going from an older Cu to the latest Cu?

Do I just run the Cu exe or do I need to use CMD or powershell with additional information? 

Having issues getting the send connectors configured

$
0
0

We recently lost an exchange server.  I build a new one and went through the process of removing the old one and adding in the new one.  The servers are both working fine but I need a hand in getting the send connector to use either server to send mail.

We are utilizing DKIM and have already done the DKIM signing process.  I have one connector configured with SMTP * cost 1 and has both servers listed in the source server list.  When I look at the Queue Viewer on both machines you can see that there is only mail flowing through one of the servers.  I was expending a 50/50 split or at least some traffic.  Maybe I missed a step somewhere when adding the new server into the farm?  According to the logs it was routing email when I was testing it.  My test machines use a different IP range than production machines.  The logs stop about the time that I changed the IP address.  Realizing this, I added a second nic and assigned the original IP address on the original VLAN.  Emails still arn't flowing even with the original IP address.

Anyone have a link to a document with pictures that describes how to set up these connectors?  Are there any log files that I can check to troubleshoot this?

Thanks.

Autodiscover Issues cannot resolve SCP or DNS

$
0
0

Hi

We are having intermittent issues with Outlook Client for some not working and also web portal not working for some.

I am struggling to find out where the problems are stemming from as each user seems to have a different issue.

Here are the results on a connectivity test it looks like we cant resolve SCP or DNS and finally we get the xml from HTTPS.

I have looked at SCP service binding information which is pointing to https://cas.itn.co.uk/autodiscover/autodiscover.xml;

I could access that link this morning and retrieved the XML with error code 600 however since this afternoon with zero changes all of a sudden I can no longer browse to that location!!!

Then if I go to https://autodiscover-s.outlook.com/Autodiscover/Autodiscover.xml

I get

<?xml version="1.0" encoding="UTF-8"?>

-<Autodiscover xmlns="http://schemas.microsoft.com/exchange/autodiscover/responseschema/2006">


-<Response>


-<Error Id="1220493987" Time="16:48:11.7485757">

<ErrorCode>600</ErrorCode>

<Message>Invalid Request</Message>

<DebugData/>

</Error>

</Response>

</Autodiscover>

here are results of connectivity analyzer - I hope someone can help!

The Microsoft Connectivity Analyzer is attempting to test Autodiscover for racheal.hitchcock@itn.co.uk.
 Autodiscover was tested successfully.
 
Additional Details
 
Elapsed Time: 9357 ms.
 
Test Steps
 
Attempting each method of contacting the Autodiscover service.
 The Autodiscover service was tested successfully.
 
Additional Details
 
Elapsed Time: 9357 ms.
 
Test Steps
 
Attempting to test potential Autodiscover URL https://itn.co.uk:443/Autodiscover/Autodiscover.xml
 Testing of this potential Autodiscover URL failed.
 
Additional Details
 
Elapsed Time: 4007 ms.
 
Test Steps
 
Attempting to resolve the host name itn.co.uk in DNS.
 The host name resolved successfully.
 
Additional Details
 
IP addresses returned: 65.52.128.33
Elapsed Time: 301 ms.
Testing TCP port 443 on host itn.co.uk to ensure it's listening and open.
 The port was opened successfully.
 
Additional Details
 
Elapsed Time: 227 ms.
Testing the SSL certificate to make sure it's valid.
 The certificate passed all validation requirements.
 
Additional Details
 
Elapsed Time: 470 ms.
 
Test Steps
 
The Microsoft Connectivity Analyzer is attempting to obtain the SSL certificate from remote server itn.co.uk on port 443.
 The Microsoft Connectivity Analyzer successfully obtained the remote SSL certificate.
 
Additional Details
 
Remote Certificate Subject: CN=*.itn.co.uk, OU=Web, O=Independent Television News Limited, L=London, C=GB, Issuer: CN=GeoTrust RSA CA 2018, OU=www.digicert.com, O=DigiCert Inc, C=US.
Elapsed Time: 411 ms.
Validating the certificate name.
 The certificate name was validated successfully.
 
Additional Details
 
Host name itn.co.uk was found in the Certificate Subject Alternative Name entry.
Elapsed Time: 0 ms.
Certificate trust is being validated.
 The certificate is trusted and all certificates are present in the chain.
 
Test Steps
 
The Microsoft Connectivity Analyzer is attempting to build certificate chains for certificate CN=*.itn.co.uk, OU=Web, O=Independent Television News Limited, L=London, C=GB.
 One or more certificate chains were constructed successfully.
 
Additional Details
 
A total of 1 chains were built. The highest quality chain ends in root certificate CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US.
Elapsed Time: 18 ms.
Analyzing the certificate chains for compatibility problems with versions of Windows.
 Potential compatibility problems were identified with some versions of Windows.
 
Additional Details
 
The Microsoft Connectivity Analyzer can only validate the certificate chain using the Root Certificate Update functionality from Windows Update. Your certificate may not be trusted on Windows if the "Update Root Certificates" feature isn't enabled.
Elapsed Time: 1 ms.
Testing the certificate date to confirm the certificate is valid.
 Date validation passed. The certificate hasn't expired.
 
Additional Details
 
The certificate is valid. NotBefore = 3/7/2018 12:00:00 AM, NotAfter = 9/22/2018 12:00:00 PM
Elapsed Time: 0 ms.
Checking the IIS configuration for client certificate authentication.
 Client certificate authentication wasn't detected.
 
Additional Details
 
Accept/Require Client Certificates isn't configured.
Elapsed Time: 1516 ms.
Attempting to send an Autodiscover POST request to potential Autodiscover URLs.
 Autodiscover settings weren't obtained when the Autodiscover POST request was sent.
 
Additional Details
 
Elapsed Time: 1491 ms.
 
Test Steps
 
The Microsoft Connectivity Analyzer is attempting to retrieve an XML Autodiscover response from URL https://itn.co.uk:443/Autodiscover/Autodiscover.xml for user racheal.hitchcock@itn.co.uk.
 The Microsoft Connectivity Analyzer failed to obtain an Autodiscover XML response.
 
Additional Details
 
A Web exception occurred because an HTTP 404 - NotFound response was received from Unknown.
HTTP Response Headers:
strict-transport-security: max-age=31536000; preload; includeSubDomains
Content-Length: 22560
Cache-Control: no-cache, must-revalidate, max-age=0
Content-Type: text/html; charset=UTF-8
Expires: Wed, 11 Jan 1984 05:00:00 GMT
Server: Microsoft-IIS/10.0
X-Powered-By: PHP/5.6.36,ASP.NET
Date: Tue, 24 Jul 2018 15:34:36 GMT
Elapsed Time: 1490 ms.
Attempting to test potential Autodiscover URL https://autodiscover.itn.co.uk:443/Autodiscover/Autodiscover.xml
 Testing of this potential Autodiscover URL failed.
 
Additional Details
 
Elapsed Time: 4198 ms.
 
Test Steps
 
Attempting to resolve the host name autodiscover.itn.co.uk in DNS.
 The host name resolved successfully.
 
Additional Details
 
IP addresses returned: 40.97.130.24, 40.97.128.232, 40.97.113.184, 40.97.166.168, 2603:1036:3:106::8, 2603:1036:3:11a::8, 2603:1036:3:12e::8, 2603:1036:4:4b::8
Elapsed Time: 72 ms.
Testing TCP port 443 on host autodiscover.itn.co.uk to ensure it's listening and open.
 The specified port is either blocked, not listening, or not producing the expected response.
  <label for="testSelectWizard_ctl12_ctl06_ctl00_ctl01_ctl01_tmmArrow">Tell me more about this issue and how to resolve it</label>
 
Additional Details
 
A network error occurred while communicating with the remote host.
Elapsed Time: 4126 ms.
Attempting to contact the Autodiscover service using the HTTP redirect method.
 The Autodiscover service was successfully contacted using the HTTP redirect method.
 
Additional Details
 
Elapsed Time: 1150 ms.
 
Test Steps
 
Attempting to resolve the host name autodiscover.itn.co.uk in DNS.
 The host name resolved successfully.
 
Additional Details
 
IP addresses returned: 40.97.130.24, 40.97.128.232, 40.97.113.184, 40.97.166.168, 2603:1036:3:106::8, 2603:1036:3:11a::8, 2603:1036:3:12e::8, 2603:1036:4:4b::8
Elapsed Time: 11 ms.
Testing TCP port 80 on host autodiscover.itn.co.uk to ensure it's listening and open.
 The port was opened successfully.
 
Additional Details
 
Elapsed Time: 20 ms.
The Microsoft Connectivity Analyzer is checking the host autodiscover.itn.co.uk for an HTTP redirect to the Autodiscover service.
 The redirect (HTTP 301/302) response was received successfully.
 
Additional Details
 
Redirect URL: https://autodiscover-s.outlook.com/Autodiscover/Autodiscover.xml
HTTP Response Headers:
Pragma: no-cache
X-FEServer: DM5PR2001CA0004,DM5PR2001CA0004
X-RequestId: f8aa5061-ea14-4732-ac83-0a30be107ff6
Strict-Transport-Security: max-age=31536000
Connection: close
Content-Length: 0
Cache-Control: no-cache
Date: Tue, 24 Jul 2018 15:34:40 GMT
Location: https://autodiscover-s.outlook.com/Autodiscover/Autodiscover.xml
Server: Microsoft-IIS/10.0
X-Powered-By: ASP.NET
Elapsed Time: 7 ms.
Attempting to test potential Autodiscover URL https://autodiscover-s.outlook.com/Autodiscover/Autodiscover.xml
 Testing of the Autodiscover URL was successful.
 
Additional Details
 
Elapsed Time: 1111 ms.
 
Test Steps
 
Attempting to resolve the host name autodiscover-s.outlook.com in DNS.
 The host name resolved successfully.
 
Additional Details
 
IP addresses returned: 40.97.166.34, 40.97.131.146, 40.97.130.210, 40.97.147.210, 2603:1036:3:8e::2, 2603:1036:3:11c::2, 2603:1036:3:17::2, 2603:1036:3:40::2
Elapsed Time: 11 ms.
Testing TCP port 443 on host autodiscover-s.outlook.com to ensure it's listening and open.
 The port was opened successfully.
 
Additional Details
 
Elapsed Time: 44 ms.
Testing the SSL certificate to make sure it's valid.
 The certificate passed all validation requirements.
 
Additional Details
 
Elapsed Time: 75 ms.
 
Test Steps
 
The Microsoft Connectivity Analyzer is attempting to obtain the SSL certificate from remote server autodiscover-s.outlook.com on port 443.
 The Microsoft Connectivity Analyzer successfully obtained the remote SSL certificate.
 
Additional Details
 
Remote Certificate Subject: CN=outlook.com, O=Microsoft Corporation, L=Redmond, S=Washington, C=US, Issuer: CN=DigiCert Cloud Services CA-1, O=DigiCert Inc, C=US.
Elapsed Time: 21 ms.
Validating the certificate name.
 The certificate name was validated successfully.
 
Additional Details
 
Host name autodiscover-s.outlook.com was found in the Certificate Subject Alternative Name entry.
Elapsed Time: 1 ms.
Certificate trust is being validated.
 The certificate is trusted and all certificates are present in the chain.
 
Test Steps
 
The Microsoft Connectivity Analyzer is attempting to build certificate chains for certificate CN=outlook.com, O=Microsoft Corporation, L=Redmond, S=Washington, C=US.
 One or more certificate chains were constructed successfully.
 
Additional Details
 
A total of 1 chains were built. The highest quality chain ends in root certificate CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US.
Elapsed Time: 17 ms.
Analyzing the certificate chains for compatibility problems with versions of Windows.
 Potential compatibility problems were identified with some versions of Windows.
 
Additional Details
 
The Microsoft Connectivity Analyzer can only validate the certificate chain using the Root Certificate Update functionality from Windows Update. Your certificate may not be trusted on Windows if the "Update Root Certificates" feature isn't enabled.
Elapsed Time: 1 ms.
Testing the certificate date to confirm the certificate is valid.
 Date validation passed. The certificate hasn't expired.
 
Additional Details
 
The certificate is valid. NotBefore = 9/13/2017 12:00:00 AM, NotAfter = 9/13/2018 12:00:00 PM
Elapsed Time: 0 ms.
Checking the IIS configuration for client certificate authentication.
 Client certificate authentication wasn't detected.
 
Additional Details
 
Accept/Require Client Certificates isn't configured.
Elapsed Time: 21 ms.
Attempting to send an Autodiscover POST request to potential Autodiscover URLs.
 The Microsoft Connectivity Analyzer successfully retrieved Autodiscover settings by sending an Autodiscover POST.
 
Additional Details
 
Elapsed Time: 959 ms.
 
Test Steps
 
The Microsoft Connectivity Analyzer is attempting to retrieve an XML Autodiscover response from URL https://autodiscover-s.outlook.com/Autodiscover/Autodiscover.xml for user racheal.hitchcock@itn.co.uk.
 The Autodiscover XML response was successfully retrieved.
 
Additional Details
 
Autodiscover Account Settings
XML response:
<?xml version="1.0"?>
<Autodiscover xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://schemas.microsoft.com/exchange/autodiscover/responseschema/2006">
  <Response xmlns="http://schemas.microsoft.com/exchange/autodiscover/outlook/responseschema/2006a">
    <User>
      <DisplayName>Hitchcock, Racheal</DisplayName>
      <LegacyDN>/o=ExchangeLabs/ou=Exchange Administrative Group (FYDIBOHF23SPDLT)/cn=Recipients/cn=18c4723ffd8f48b5a7dae1b5f1acc4e3-Hitchcock,</LegacyDN>
      <DeploymentId>82024f5b-3097-4495-82a6-477c705efa26</DeploymentId>
    </User>
    <Account>
      <AccountType>email</AccountType>
      <Action>settings</Action>
      <Protocol Type="mapiHttp">
        <Port>0</Port>
        <DirectoryPort>0</DirectoryPort>
        <ReferralPort>0</ReferralPort>
        <MailStore>
          <ExternalUrl>https://outlook.office365.com/mapi/emsmdb/?MailboxId=bd839d4a-31f7-42ce-a8ef-cbb3959ebb1c@itn.co.uk</ExternalUrl>
        </MailStore>
        <AddressBook>
          <ExternalUrl>https://outlook.office365.com/mapi/nspi/?MailboxId=bd839d4a-31f7-42ce-a8ef-cbb3959ebb1c@itn.co.uk</ExternalUrl>
        </AddressBook>
      </Protocol>
      <Protocol>
        <Type>WEB</Type>
        <Port>0</Port>
        <DirectoryPort>0</DirectoryPort>
        <ReferralPort>0</ReferralPort>
        <Internal>
          <OWAUrl AuthenticationMethod="LiveIdFba, OAuth">https://outlook.office365.com/owa/</OWAUrl>
          <Protocol>
            <Type>EXCH</Type>
            <ASUrl>https://outlook.office365.com/EWS/Exchange.asmx</ASUrl>
          </Protocol>
        </Internal>
        <External>
          <OWAUrl AuthenticationMethod="Fba">https://outlook.office365.com/owa/itn.co.uk/</OWAUrl>
          <Protocol>
            <Type>EXPR</Type>
            <ASUrl>https://outlook.office365.com/EWS/Exchange.asmx</ASUrl>
          </Protocol>
        </External>
      </Protocol>
      <Protocol>
        <Type>EXHTTP</Type>
        <Server>outlook.office365.com</Server>
        <ASUrl>https://outlook.office365.com/EWS/Exchange.asmx</ASUrl>
        <OOFUrl>https://outlook.office365.com/EWS/Exchange.asmx</OOFUrl>
        <OABUrl>https://outlook.office365.com/OAB/45c6052f-47d9-4b56-9ba5-310d5d442644/</OABUrl>
        <UMUrl>https://outlook.office365.com/EWS/UM2007Legacy.asmx</UMUrl>
        <Port>0</Port>
        <DirectoryPort>0</DirectoryPort>
        <ReferralPort>0</ReferralPort>
        <SSL>On</SSL>
        <AuthPackage>Basic</AuthPackage>
        <EwsUrl>https://outlook.office365.com/EWS/Exchange.asmx</EwsUrl>
        <EmwsUrl>https://outlook.office365.com/EWS/Exchange.asmx</EmwsUrl>
        <SharingUrl>https://outlook.office365.com/EWS/Exchange.asmx</SharingUrl>
        <EcpUrl>https://outlook.office365.com/owa/</EcpUrl>
        <EcpUrl-um>?path=/options/callanswering</EcpUrl-um>
        <EcpUrl-aggr>?path=/options/connectedaccounts</EcpUrl-aggr>
        <EcpUrl-mt>options/ecp/PersonalSettings/DeliveryReport.aspx?rfr=olk&amp;exsvurl=1&amp;IsOWA=&lt;IsOWA&gt;&amp;MsgID=&lt;MsgID&gt;&amp;Mbx=&lt;Mbx&gt;&amp;realm=itn.co.uk</EcpUrl-mt>
        <EcpUrl-ret>?path=/options/retentionpolicies</EcpUrl-ret>
        <EcpUrl-sms>?path=/options/textmessaging</EcpUrl-sms>
        <EcpUrl-publish>?path=/options/calendarpublishing/id/&lt;FldID&gt;</EcpUrl-publish>
        <EcpUrl-photo>?path=/options/myaccount/action/photo</EcpUrl-photo>
        <EcpUrl-connect>?path=/options/socialnetworks&amp;ignore1=&lt;Action&gt;&amp;ignore2=&lt;Provider&gt;</EcpUrl-connect>
        <EcpUrl-tm>options/ecp/?rfr=olk&amp;ftr=TeamMailbox&amp;exsvurl=1&amp;realm=itn.co.uk</EcpUrl-tm>
        <EcpUrl-tmCreating>options/ecp/?rfr=olk&amp;ftr=TeamMailboxCreating&amp;SPUrl=&lt;SPUrl&gt;&amp;Title=&lt;Title&gt;&amp;SPTMAppUrl=&lt;SPTMAppUrl&gt;&amp;exsvurl=1&amp;realm=itn.co.uk</EcpUrl-tmCreating>
        <EcpUrl-tmEditing>options/ecp/?rfr=olk&amp;ftr=TeamMailboxEditing&amp;Id=&lt;Id&gt;&amp;exsvurl=1&amp;realm=itn.co.uk</EcpUrl-tmEditing>
        <EcpUrl-extinstall>?path=/options/manageapps</EcpUrl-extinstall>
        <ServerExclusiveConnect>On</ServerExclusiveConnect>
      </Protocol>
    </Account>
  </Response>
</Autodiscover>
HTTP Response Headers:
request-id: e3187c83-af3d-4766-aeff-711b6cc60d2d
X-CalculatedBETarget: am0pr07mb4324.eurprd07.prod.outlook.com
X-RUM-Validated: 1
X-DiagInfo: AM0PR07MB4324
X-BEServer: AM0PR07MB4324
Cache-Control: private
Content-Type: text/xml; charset=utf-8
Set-Cookie: X-BackEndCookie2=hitchcockr@itn.co.uk=u56Lnp2ejJqBns/HycmdyZnSm8rJzdLLyMjP0sbOmczSy8zJzc7Gz5zOnsaagZaLkdGckNGKlIHNz87H0s/H0s3Mq87KxczLxcvOgZqKjY+Nm8/I0Y+NkJvRkIqLk5CQlNGckJKBzw==; expires=Thu, 23-Aug-2018 15:34:41 GMT; path=/Autodiscover; secure; HttpOnly,X-BackEndCookie=hitchcockr@itn.co.uk=u56Lnp2ejJqBns/HycmdyZnSm8rJzdLLyMjP0sbOmczSy8zJzc7Gz5zOnsaagZaLkdGckNGKlIHNz87H0s/H0s3Mq87KxczLxcvOgZqKjY+Nm8/I0Y+NkJvRkIqLk5CQlNGckJKBzw==; expires=Thu, 23-Aug-2018 15:34:41 GMT; path=/Autodiscover; secure; HttpOnly
Server: Microsoft-IIS/10.0
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
X-FEServer: DM5PR0101CA0022
Date: Tue, 24 Jul 2018 15:34:41 GMT
Content-Length: 5209
Elapsed Time: 727 ms.
The Microsoft Connectivity Analyzer is attempting to retrieve XML Autodiscover response from URL https://autodiscover-s.outlook.com/Autodiscover/Autodiscover.xml for user racheal.hitchcock@itn.co.uk.
 The Autodiscover XML response was successfully retrieved.
 

 

How to install a HCW tool in exchange server 2013 with server that have 3 CAS server ?

$
0
0

Now I have a question about how to install HCW tool if there are 3 CAS servers ?

Very happy if anyone answered this question

Dirty shut-down in hybrid deployment

$
0
0

Hi,

I started moving to a hybrid Exchange solution as part of our Office 365 upgrade to an E3 tenant. During the migration process, I sought help from the MS team when the shared mailboxes chose not to migrate. The MS involvement directly led to the dirty shutdown of the Exchange database and as they couldn't fix it, I bypassed the need to migrate the shared mailboxes and established other on-line facilities. As a 22 No. E3 license tenant MS clearly see us as expendable and the help available is zero when things get difficult.

4 months down the track, the set-up is working as a quasi online-only mail server but I am conscious that we still have an on-premises Exchange server taking resources but doing nothing of value that I can see. The unmounted database is now well out of date so if remounted, it would have some interesting conflicts.

Is there any reason to keep the on-premises Exchange server? If we remove it, will Active Directory have melt-down or do I need to disentangle it in some way? Any suggestions would be much appreciated as I am somewhat baffled by the mess I now have!

TIA,

Duncan


Viewing all 7008 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>