We are being targeted by Microsoft...
mails stuck in queue from some addresses(domailns) exchange 2013
Remote Server at mx.linkdatacenter.net (41.178.51.174) returned '400 4.4.7 Message delayed'
29-04-2014 16:05:29 - Remote Server at mx.linkdatacenter.net (41.178.51.174) returned '441 4.4.1 Error encountered while communicating with primary target IP address: "421 4.4.2 Connection dropped due to SocketError." Attempted failover to alternate host, but that did not succeed. Either there are no alternate hosts, or delivery failed to all alternate hosts. The last endpoint attempted was 41.178.51.174:25'
Received: from MAILSERVER.quenbyindia.com (10.0.11.15) by
mailserver.quenbyindia.com (10.0.11.15) with Microsoft SMTP Server (TLS) id
15.0.847.32; Tue, 29 Apr 2014 17:40:03 +0530
Received: from MAILSERVER.quenbyindia.com ([fe80::8121:c3:1805:591]) by
mailserver.quenbyindia.com ([fe80::8121:c3:1805:591%11]) with mapi id
15.00.0847.030; Tue, 29 Apr 2014 17:39:50 +0530
From: Udupa <udupa@quenbyindia.com>
To: "'tamer@babycoca.com'" <tamer@babycoca.com>
Subject: Business proposal.
Thread-Topic: Business proposal.
Thread-Index: Ac9jozo0L44z0fO4QAqTP4OJ3yw//A==
Date: Tue, 29 Apr 2014 12:09:50 +0000
Message-ID: <340c425ad32048c388cf578b82336a9c@mailserver.quenbyindia.com>
Accept-Language: en-IN, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.0.11.109]
Content-Type: multipart/alternative;
boundary="_000_340c425ad32048c388cf578b82336a9cmailserverquenbyindiaco_"
MIME-Version: 1.0
Issue when Creating a Federation Trust with MFG (Microsoft Federation Gateway)
I am trying to create a Federation Trust with MFG (Microsoft Federation Gateway). However, I am running into a problem. I see in the following that link (http://technet.microsoft.com/en-us/library/ff607475(v=exchg.141).aspx) that I have to run this command:
Set-ExchangeServer -Identity "MAIL01" -InternetWebProxy "<Webproxy URL>"
Please note that I have the following in our Exchange 2010 SP3 environment:
Two CAS/HT Servers (CAS Array between the two)
Two mailbox servers (DAG between the two)
One mailbox server (for stand-alone mailbox/archive databases)
We use windows load balancing and the internal/external VIP name is "mail.domain.com"
1. What do I put for the "Web Proxy URL"?
2. Do I have to run the Set-ExchangeServer -Identity "MAIL01" -InternetWebProxy "<Webproxy URL>" command on every server?
Single SSL Certificate for multiple domains
Hi,
How can I implement multiple domains with a single SSL certificate in exchange server? As many hosting providers do. they only use one ssl certificate and are hosting multiple domains.
Please guide me.
Thanks
Exchange issue
Hi All,
We have a mailbox that is 25Gb in size and whenever opened it will crash the exchange and no emails will go thorugh.
everything will stop and the queue will shows as there are no emails for delivery and as soon as you close outlook so that mailbox stop downloading information from the server then the queue suddnly shows 400-500 emails in the queue.
Luckly we know the mailbox causing the issue but how can we see the issue and troubleshoot it ?
I know all smtp emails are handled by hub transport server but what about local delivery ?
thing that are within the internal network , would that be done using the datastore or mailbox server role.
Thanks
TLS 1.2 on exhange 2010 an Server 2008 R2
guys I need assistance with TLS 1.2, I need my back office to use TLS 1.2.
How can I get this done and how can I implement this change?
I want to implement it on exchange 2010, server 2008 R2.
thank you, your response is appreciated.
Exchange 2013 Journal Rules Crash TransportService
Hello, everyone.
We have a problem with one Exchange Server, version 2013 [Version 15.0 (Build 913.22)]. There are a few journal rules enabled on this server (15). Whenever an email is sent to multiple recepients, of which some or all have journaling enabled, the transport service crashes and the message ends up in poison queue. When we disable journal rules, the same message is successfully sent and delivered.
Any directions as to where the problem might be? There is only one Exchange server in organization.
Thanks,
Tomislav
CAS and MBX on 1 server - what about OWA and security?
Hello everyone,
first of all: I'm new to Exchange (2013) servers and I don't know much about it, but I'm willing to learn more. ;-)
What I understood by now is that the CAS and mailbox role should be installed on the same server. They can be installed separately but everyone seems to recommend to install them on the same server. I'm fine with recommendations! They lead the way to a working environment.
But now I'm confused. My company offers to connect to the OWA via the internet. So there must be a server with a public IP address. (We don't have a load balancer and please to recommend using one! I know that hardware load balancers are a good thing, but ... internal politics, money etc.) But I don't want to expose a server with mailboxes to the internet - if every Exchange 2013 server has the CAS and mailbox role.
How should a infrastructure look like if we want to follow the recommendations, have external access to OWA and don't want to have a server with mailboxes and external IP (and as I mentioned before NO load balancer, maybe DNS RR).
I'm grateful for every answer (that doesn't include a load balancer)!
Matthias
Ex2010 Hybrid to O365 mail flow delay
Hi,
Recently migrate the exchange to office 356. Unfortunately we are facing mail flow delay issue from on-premise ex2003 to Hybrid server ex2010. So I disabled 2 settings to make the mail flow from ex2003 to 2010. (Tarpitting and MaxAcknowledgementDelay).
Now the problem come, after disable this 2 settings. The mail flow now stuck at hybrid 2010 to o365. Anyone facing the same issue?
Regards,
Wayne
The store ID provided isn't an ID of an Item.
One of our user is getting the below error while opening his mailbox. I have tried OWA and outlook but all same.
Moved the mailbox to different server but same error. tried disconnecting and reconnecting but no use. Tried the mailbox repair but same result. Can any body help?
MS Filtering Engine Update -Unsuccessful
Hi all
Its me again.
I am trying to update the inbuilt malware definitions according to the instructions in article.
http://technet.microsoft.com/en-us/library/jj657471.aspx
& $env:ExchangeInstallPath\Scripts\Update-MalwareFilteringServer.ps1 -Identity <FQDN of server>
I am getting the following two events see below on all the mailbox servers. I obviously cannot go into production Exchange 2013 RTM on Windows 2012 Servers and Domaincontrollers.
Log Name: Application
Source: Microsoft-Filtering-FIPFS
Date: 1/29/2013 2:50:45 PM
Event ID: 6027
Task Category: None
Level: Error
Keywords:
User: NETWORK SERVICE
Computer: Removed To Protect The Innocent
Description:
MS Filtering Engine Update process was unsuccessful in contacting the Primary Update Path. Update Path:http://forefrontdl.microsoft.com/server/scanengineupdate
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Filtering-FIPFS" Guid="{1BE3A000-EA09-4AB8-B0A0-30BBB6793D80}" />
<EventID>6027</EventID>
<Version>0</Version>
<Level>2</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2013-01-29T12:50:45.262896300Z" />
<EventRecordID>120660</EventRecordID>
<Correlation />
<Execution ProcessID="2584" ThreadID="3752" />
<Channel>Application</Channel>
<Computer>Removed To Protect The Innocent
<Security UserID="S-1-5-20" />
</System>
<EventData>
<Data Name="UpdatePath">http://forefrontdl.microsoft.com/server/scanengineupdate</Data>
</EventData>
</Event>
Log Name: Application
Source: Microsoft-Filtering-FIPFS
Date: 1/29/2013 2:53:25 PM
Event ID: 6024
Task Category: None
Level: Information
Keywords:
User: NETWORK SERVICE
Computer: Removed To Protect The Innocent
Description:
MS Filtering Engine Update process is checking for new engine updates.
Scan Engine: Microsoft
Update Path:
http://forefrontdl.microsoft.com/server/scanengineupdate
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Filtering-FIPFS" Guid="{1BE3A000-EA09-4AB8-B0A0-30BBB6793D80}" />
<EventID>6024</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2013-01-29T12:53:25.654390000Z" />
<EventRecordID>120667</EventRecordID>
<Correlation />
<Execution ProcessID="2584" ThreadID="3752" />
<Channel>Application</Channel>
<Computer> Removed To Protect The Innocent
<Security UserID="S-1-5-20" />
</System>
<EventData>
<Data Name="EngineName">Microsoft</Data>
<Data Name="UpdatePath">http://forefrontdl.microsoft.com/server/scanengineupdate</Data>
</EventData>
</Event>
Log Name: Application
Source: Microsoft-Filtering-FIPFS
Date: 1/29/2013 2:56:07 PM
Event ID: 6030
Task Category: None
Level: Information
Keywords:
User: NETWORK SERVICE
Computer: Removed To Protect The Innocent
Description:
MS Filtering Engine Update process is attempting to download a scan engine update.
Scan Engine: Microsoft
Update Path:
http://forefrontdl.microsoft.com/server/scanengineupdate.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Filtering-FIPFS" Guid="{1BE3A000-EA09-4AB8-B0A0-30BBB6793D80}" />
<EventID>6030</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2013-01-29T12:56:07.715314800Z" />
<EventRecordID>120668</EventRecordID>
<Correlation />
<Execution ProcessID="2584" ThreadID="3748" />
<Channel>Application</Channel>
<Computer> Removed To Protect The Innocent
<Security UserID="S-1-5-20" />
</System>
<EventData>
<Data Name="EngineName">Microsoft</Data>
<Data Name="UpdatePath">http://forefrontdl.microsoft.com/server/scanengineupdate</Data>
</EventData>
</Event>
Log Name: Application
Source: Microsoft-Filtering-FIPFS
Date: 1/29/2013 3:48:03 PM
Event ID: 7003
Task Category: None
Level: Information
Keywords:
User: NETWORK SERVICE
Computer: Removed To Protect The Innocent
Description:
MS Filtering Engine Update process has successfully scheduled all update jobs.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Filtering-FIPFS" Guid="{1BE3A000-EA09-4AB8-B0A0-30BBB6793D80}" />
<EventID>7003</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2013-01-29T13:48:03.321784200Z" />
<EventRecordID>120776</EventRecordID>
<Correlation />
<Execution ProcessID="2584" ThreadID="21120" />
<Channel>Application</Channel>
<Computer>Removed To Protect The Innocent</Computer>
<Security UserID="S-1-5-20" />
</System>
<EventData>
</EventData>
</Event>
Regards
Bright
“The Microsoft Exchange Administrator has made a change that requires you quit and restart Outlook” in Exchange 2013
In Exchange 2013, Outlook finds a new connection point made up of the user’s mailbox GUID + @ + the domain portion of the user’s primary SMTP address. This change makes
it much less likely that users will see the dreaded message “Your administrator has made a change to your mailbox.”
http://technet.microsoft.com/en-us/library/dd298114(v=exchg.150).aspx
Although the error message in the topic has been already improved a lot in Exchange 2013, the users may still encounter them in some specific scenarios. We have collected them and let’s discuss them in this thread.
Symptom
=======================================
Consider the following scenario:
- Exchange 2013 was installed for a migration from Exchange 2007/2010.
- The legacy Exchange server is removed after successful migration.
- Exchange 2013 may be updated to Exchange 2013 SP1.
Some users were being randomly prompted with a popup in their outlook client with the following message when connecting with Exchange 2013 server:
“The Microsoft Exchange Administrator has made a change that requires you quit and restart Outlook”
Cause
=======================================
The issue may be caused due to Public Folders.
The msExchHomePublicMDB attribute on Exchange 2013 databases was set to deleted legacy public folder object.
Solution
=======================================
Removed the Public Folder from all the Exchange
2013 Databases. To do it, we can use ADSIedit.msc and remove the arrtibute - msExchHomePublicMDB from all the Databases:
1. Open ADSIEdit.
2. Connect to the Configuration container.3.
Expand Configuration, expand CN=Configuration,DC=Domain,DC=com.4. Expand CN=Services -> CN=Microsoft Exchange -> CN=Domain -> CN=Administrative Groups -> CN=Exchange
Administrative Group -> CN=Databases.5. In the right hand pane you will see a list of databases.6.
Right-click the listed database object -> Properties.7. Check whether the msExchHomePublicMDB value is set to an unavailable value. If you see reference to the old database,
please clear the value.8. Click OK.9. Check the rest of the databases to make sure
that they are not populated in the same way.
References:
Please click to vote if the post helps you. This can be beneficial to other community members reading the thread.
Front end transport service benefit
***Don't forget to mark helpful or answer***
Email Address Policy dont change umlauts (ü -> ue)
when I try tocreatemailboxesfor users
exchangeautomatically boxunlautschangebutdo notaddthe "e"
example:
Müller=Muller@domain.com
I need toaddresslooks like thisMueller@domain.com
I'm tryingto use the%Rü"ue"%rÜUe% of RO "oe"%RO"Oe"%m@domain.com
but thenthe address looksueUeoeOeMuller@domain.com
Please help
Thank you in advance
Exchange 2013 LED=441 4.4.1 Error encountered when trying to communicate with primary IP address
Hello,
Im running Exchange 2013 on Server 2012R2, and all has been fine for a while until some users complained that ome of there external recipients are not receiving their mails. if I look in the mail que I indeed see the messages stuck with the comment:
[{LRT=14-4-2015 14:36:14};{LED=441 4.4.1 Error encountered while communicating with primary target IP addre
ss: "Failed to connect. Winsock error code: 10013, Win32 error code: 10013." Attempted failover to alternat
e host, but that did not succeed. Either there are no alternate hosts, or delivery failed to all alternate
hosts.
Initially i thought it might had to do with the PTR but I checked and the reverse lookup is fine, also the mail server ip's are not blacklisted. I've tried every suggestion on all forums I could find from changing MTU sizes to disabling TLS but nothing seems to work the majority of the mail goes out just fine but to a couple of domains it doesn't any input would be greatly appreciated.
I have only the internal DNS server configured on the NIC, only one NIC is available and OWA, Outlook and Activesync clients work just fine.
Exchnage server site to site delivery
Replacement for Forefront TMG gateway?
Hi, as Forefont TMG is discontinued, UAG is too expensive. Any good replacement at similar cost level?
thanks
[SOLVED] Slow mail flow sending in chunks every 20 to 30 minutes.
Hello, I wanted to share an issue I observed with slow mailflow on our new Exchange 2013 CU8 Hybrid environment. It is my hope that this can help someone out there, that like me, thought moving to Exchange 2013 was a huge mistake.
Brief overview of my mail servers and typical mailflow
- Hosted spam filter service --> Palo Alto firewall --> On-Prem Exchange 2010 SP3 CAS server --> On-Prem Exchange 2010 SP3 HUB transport & mailbox server <--> Hybrid Exchange 2013 cu8 (CAS&Mailbox roles) <--> Palo Alto firewall<--> hosted exchange online mailboxes
Ever since initial setup I experienced delays with mail flow. Email would become queued at our Hybrid Exchange 2013 cu8 server when attempting to send to the exchange online hosted mailboxes, but it would eventually send. I observed several interesting items (below).
- mail would become stuck in the on-prem Hybrid exchange 2013 server queue, and then send out of the queue in chunks , after about 20 to 30 minutes of waiting
- when mail started to send "in chunks", all mail would be delivered out of the queue in seconds
- after about 45 minutes or so, mail would start queuing again and repeat the process
- On prem and external-to-our-organization mail would queue mail destined to exchange online mailboxes. Hosted mailboxes would send to other hosted mailboxes instantly, but the hosted accounts queued mail when sending back to on-prem mailboxes.
Here is what the delayed mail headers would be like (local addresses removed for my benefit)
Initially I thought it could be "the DNS bug" described in the slow-mail-flow thread over here. While I followed the steps and manually specified our DNS settings, we continued to experience the problem.
LOGS and Errors
I enabled verbose logging on the Hybrid on-prem Exchange 2013 connectors
My log file path is:
D:\Exchange2013\TransportRoles\Logs\FrontEnd
D:\Exchange2013\TransportRoles\Logs\HUB
Found errors:
\Logs\Hub\ProtocolLog\SmtpSend errors:
*,,Connector is configured to send mail only over TLS connections and remote doesn't support TLS
\Logs\Hub\Connectivity errors:
*,Session Failover; previous session id = 08D250C62FEB1479; reason = SocketError
Indeed the above errors was related to an invalid TLS certificate setup on our on-prem Exchange 2010 SP3 mailbox server. After fixing the certificate, we still experienced the slow mail queue, but had no more errors in our exchange logs.
The above troubleshooting took about a week to hammer out. During that time I asked our network engineer to take another look at the network config, and he noticed that he had set the Palo Alto firewall to allow port 25 traffic incoming traffic, but hedid not allow port 25 outgoing traffic. After he changed the rule to allow outgoing port 25, our problem was gone. Somehow the firewall ended up being the issue all along, and even though plenty of Microsoft articles start with "check
your firewall", I was assured that our firewall was OK and email even eventually found a way out (I have some thoughts on that - did the messages send when incoming port 25 traffic opened up? your thoughts welcome). Thanks for reading and I hope someone
out there finds this information useful.
Send connectors to different smart hosts
We have multiple clients in our multi tenant hosted Exchange. Is there an easy way to setup different smart hosts for each client? Right now it is either outbound through the MX record or a smart host. We can setup a send connector to route to a specific domain, but I would like to define the internal domain to use a specific smarthost.
Example
we hold these domains
ABC.com
XYZ.com
DEF.com
I want this to happen
ABC.com - smarthost - trendmicro.com
XYZ.com - smarthost - barracuda.com
DEF.com - smarthost - spamassassin.com
Thanks
Todd
The Microsoft Exchange Mail Submission service (MSExchangeMailSubmission) isn't running. Mail stuck in Drafts.
Hello,
Just in the process of getting Exchange server 2013 setup on a windows Server 2012r2 environment I have set it up and was able to send and receive email, but then it stopped working I check the services and saw "MSExchangeMailSubmission" service was not running i have tired to start it but with no luck been messing around for quite a few hours and have read over many forums. any help would be much appreciated.
i currently have 2 mailbox users, and am able to access thw OWA page externally and am also able to set up the accounts in outlook. when i do send an email it staying the the drafts folder.
Thanks
if you need more info let me know.