Quantcast
Channel: Exchange Server 2010 forum
Viewing all 15005 articles
Browse latest View live

Cannot add mailbox folder permission at all

$
0
0

Hi everyone,

I am experiencing a very weird issue when tried adding a permission to a mailbox folder using EMS. My setup is hybrid (O365 + Exchange 2010 SP3). Before you ask, both mailbox are resides on premise.

PS C:\Users\Administrator> Add-MailboxFolderPermission -Identity USERA:\calendar -AccessRights reviewer -UserUSERB
Add-MailboxFolderPermission : The user "USERB" was found in Active Directory but isn't valid to use for permissi
ons. Try an SMTP address instead.
At line:1 char:28
+ Add-MailboxFolderPermission <<<<  -Identity USERA:\calendar -AccessRights reviewer -UserUSERB
    + CategoryInfo          : NotSpecified: (0:Int32) [Add-MailboxFolderPermission], InvalidInternalUserIdException
    + FullyQualifiedErrorId : EC93F86A,Microsoft.Exchange.Management.StoreTasks.AddMailboxFolderPermission

PS C:\Users\Administrator> Add-MailboxFolderPermission -Identity USERA:\calendar -AccessRights reviewer -User SMTPADDRESS Add-MailboxFolderPermission : The user "SMTPADDRESSis either not valid SMTP address, or there is no match
ing information.
At line:1 char:28
+ Add-MailboxFolderPermission <<<<  -Identity USERA:\calendar -AccessRights reviewer -UserSMTPADDRESS 
    + CategoryInfo          : NotSpecified: (0:Int32) [Add-MailboxFolderPermission], InvalidExternalUserIdException
    + FullyQualifiedErrorId : 54AA5D19,Microsoft.Exchange.Management.StoreTasks.AddMailboxFolderPermission

FYI, I also try using set mailbox but it is already a regular type.

PS C:\Users\Administrator> Set-Mailbox -Identity USERB -Type regular
Set-Mailbox : Couldn't convert the mailbox because the mailbox "USERB" is already of the type "Regular".
At line:1 char:12
+ Set-Mailbox <<<<  -Identity USERB -Type regular
    + CategoryInfo          : NotSpecified: (FQDN/USERB:ADObjectId) [Set-Mailbox], TaskArgument
   Exception
    + FullyQualifiedErrorId : DC658045,Microsoft.Exchange.Management.RecipientTasks.SetMailbox

Just to add, I can add other user such as USERC to USERA mailbox folder permission.

PS C:\Users\Administrator> Add-MailboxFolderPermission -Identity USERA:\calendar -AccessRights reviewer -User USERC


FolderName   : Calendar
User         : USERC
AccessRights : {Reviewer}
Identity     : USERC
IsValid      : True

I am at lost here.




Exchange 2010 Hybrid Office 365 SSL certificate issue

$
0
0

We have an Exchange 2010 Office 365 hybrid setup operating. It has been working for about 4 years now and is fully patched up. All mailboxes are located in Exchange Online. Autodiscover is pointing to our hybrid on premise server as recommended by Microsoft. The SSL certificate on the on premise server was about to expire so we replaced it with a newly purchased one. We removed the old certificate completely from the on premise Exchange and also double checked it was removed from the certificate store. I applied a new certificate which applied fine.

The problem is that when our Outlook 2016 clients and connecting to the on premise Exchange server they are getting the certificate error. Stating that the certificate has expired. You can press view certificate and it is showing the old, expired certificate that was removed and deleted. I can’t for the life of me work out why this is still occurring and how it is seeing this certificate which has been removed from the EMC and the server’s certificate store.
Any help appreciated.

IMAP4 Connection Limits

$
0
0
I have an Exchange 2010 SP3 server and another Linux server running Fetchmail which uses IMAP to connect to Exchange every minuted to pull email. Fetchmail is randomly have errors connecting. My current theory is that Exchange has some kind of limit for IMAP as far as number of connections in a set amount of time. However when I look at connection limits in the EMC they all look sufficient. I'm wondering if there are limits set somewhere in the registry that are no displayed in the EMC that I would need to change to correct the issue.

So far Outlook and other clients show no issues connecting with IMAP, but I have two Linux servers with Fetchmail that are having this issue.

Vincent Sprague

Exchange 14.03.0123.004 AD compatibility

$
0
0
Does anyone know if 14.3.1234 is compatible with Windows Server 2008 R2 SP1 forest functional level?  Currently at function level 2003 but need to raise the level to 2008 R2 before we can add our new 2016 exchange server.

451.4.4.0 Primary target IP address responded with: "421.4.4.2 Connection dropped due to socketerror."

$
0
0
Mail lingers in the Exchange 2010 queue viewer.

Error: 451.4.4.0 Primary target IP address responded with: "421.4.4.2 Connection dropped due to socketerror."

-hotmail.nl

-hotmail.com

-live.nl

-outlook.com.

The other mailflow is still normal.

This is going on since 7-7-2018 and the queue is running all over.

Users get notified within the Outlook client: The delivery of your message to the following recipients or groups has been delayed:

This message is not delivered yet. There is still trying to deliver the message.The server will try to deliver this message in the next 1, 19 and 59 minutes. You will receive a message if the message could not be delivered after that time.



A tip to convert the False "StartTLS" setting of the connector to True did not help.

Set-Send Connector -Identity <sendConnectorName> -IgnoreSTARTTLS $ true (MSExchangeTransport services restarted after the change)

The problem is still present.



Greets

/\/\arcel

OWA and Activesync not working from outside after rebuild TMG server

$
0
0

Hi Everyone,

I am encountering issue with OWA and active sync , after clean installation for the TMG server.

I think the problem from the routing , i need your help , i  added missing IP to route table but this not working for 

please find my configuration below and advise me accordingly to avoid issue:

LAN IP:                                                     External : 10.30.30.20    255.255.255.0 gateway 10.30.30.10

10.20.20.250

255.255.255.0

no getaway 

internal DNS:

172.16.0.200

before hard failure is working fine with above setting.

Note: exchange (172.16.0...) server connected to different IP series than TMG(10.20.20..) 

if need further info let me know

Thanks

Exchange 2010: Auditing Event & Server Role

$
0
0
I'm just implementing an Exchange event audit solution. I haven't used 2010 or greater. I'm finding that 2010< have sever roles: Hub Transport, Client Access, and Mailbox Server. The software I have collects information such as: email created, deleted, folder created deleted, message downloaded, read. I'm wondering which server role is responsible for collecting this information. I believe it is the Client Access Role.

Handful of Public Folders not replicating

$
0
0

I've got a small handful of subfolders that are not replicating between the two Public Folder databases. I've increased logging but so far no errors stand out. The server that is missing the data does appear to not be generating any "Event 3030: Replication Incoming Messages" and only has "Event 3020: Replication Outgoing Messages". I've attempted to Update Content and Update Hierarchy with no success.

In addition, on the server that DOES have all the folders, I am unable to launch ExFolders. It gives an error: "An error occurred while trying to establish a connection to the Exchange server. Exception: Cannot open mailbox." I have already checked ADSIedit for an old CN=Server container but it is not present.

The server that is missing data runs ExFolders just fine, connecting to both public folders databases.

Edit: At least some of the folders that are failing to replicate are mail enabled and are experiencing additional problems receiving incoming mail.


Exchange services not starting help!

$
0
0

Colleague was troubleshooting an exchange outage and used the following commands to set a preferred and static domain controller and global catalog

Set-ADServerSettings -PreferredServer DC02.mydomain.local

Set-ExchangeServer -Identity -StaticDomainController DC02.mydomain.local

Set-ExchangeServer -Identity -StaticGlobalCatalogs  DC02.mydomain.local

Now the exchange services will not start at all. My exchange management shell also doesn't connect to the Exchange server since services are'nt running and just stays on "Connecting to DC02.mydomain.local" so I can't revert the above back to $null as Microsoft articles suggest

Is there any way for me to manually change this setting back WITHOUT using powershell or the Exchange Management Console (doesn't launch either) so that my exchange server can search for a usable domain controller and gc? 

Thanks for any input! 



Sometimes emails go to the wrong mailbox

$
0
0

Hi,

Super strange issue here, sometimes UserA's email end up appearing in UserB's junk folder.

UserA does have delegate permissions to UserB's mailbox - but that shouldn't cause this.

UserA is the only person the email is to and UserA also have the email.

There are no forwards on.

There are no rules in place or OoF.

There are no duplicate emails addresses, aliases, GUIDs and it does not happen to all emails. It did it this week for 4 emails in the period of an hour and then has not done it again since (yet, I say yet as this is not the first time).

Looking in the message tracking logs, I can only see the emails from the external sender being delivered in to UserA's mailbox - nothing to UserB's.

This is Exchange 2010 SP3 RU21.

Anti Spam is not enabled.

I have no idea how this is happening. UserA has been with the company for years so this mailbox was definitely upgraded from 2003 version which may have something to do with it - however, I have looked through ADSIedit and can't see anything that would indicate this behaviour.

I am getting approval to turn on mailbox auditing for these two mailboxes - but that may take a while and once on, the issue could take a while to happen again.

Any ideas what else this could be?

Thanks - James.

certificate not trusted

$
0
0

I have a user that his windows 8 computer is not joined to the domain ,

and we use an internal certificate that issued by an internal ca in our company .

so the certificate is not trusted by this user as he is not joined to the domain 

so installing the certificate in his computer and adding it in trusted root certificate authority for user account and computer account  didn't solve the issue 

so any advice please 

Group mail

$
0
0

HI,

An email to one of the DL results in delivery to of the uses who is not part of the DL at all.

When the user expands the DL including the Nested DLs, (in the outlook ), the name doesn't resolves to this mystery user at all.

I checked all the DL/Nested DL mailbox's property for forwarders, but there is no forwarder set. I checked the inbox rule for all the uses in the DL/Nested DL, there is rule set to forward the emails to this Mystery user !!!

Count sent and received emails per user with Powershell

$
0
0

Hi 

I have download the PS script from http://get-cmd.com/?p=2664 to get weekly report of sent and received email counts.

Script is available for download on MS portal too https://gallery.technet.microsoft.com/scriptcenter/Count-sent-and-recceived-f9c66cf7

but when i am testing - I am getting difference in result for Sent email count ( Actual sent items count in users outlook is different the output displayed in report.

can someone please help.

-Atul 

 


TheAtulA


Script to check if messages are forwarded

$
0
0

Hi,

I am looking for an Exchange 2010 Powershell way to check if messages send to a specific address (.e.g. example@internal.local) are forwarded to another external address (e.g. external@external.com). This is done by an Exchange Transport Rule.

I need to check this with Powershell. What i have done is the following:

$Messages = Get-MessageTrackingLog -resultsize unlimited -recipients example@internal.local | select InternalMessageID | select -uniq

Then I check with some code if this message is forwarded based on the InternalMessageID, however I assumed the InternalMessageID would be unique in the whole email flow, but it is not. Since we have 2 CAS/HUB servers the InternalMessageID changes when it goes to the second server. I cannot track this change. There doesn't seem to be an unique ID for an email which is constantly the same in the whole email flow in Exchange 2010.

What would be a way to create a Powershell script to check if the messages send to this address are forwarded? I am flexible on using any information from the MessageTrackingLog. I cannot filter on the subject because from different emails they are sometimes the same. I also cannot use the SourceContext, because that changes as well.

Can't See Exchange 2007 server in 2010 console and vice versa

$
0
0

I installed Ex2007 (CAS/HT/MBX roles) in domainA with no issues.  I extended the schema and prepared the domain for Ex2010.  I installed a 2010 server with the CAS role into the environment (again, no issues).  I cannot see the 2007 server or the database in the 2010 console and vice versa.  I'm logging into both servers with the same "ExchangeAdmin" domain account, which has Schema Admins, Enterprise Admins, and Organization Management (Exchange).

If I run powershell commands on either server, it reflects both servers (i.e. get-clientaccessserver).

If I run get-transportserver, get-mailboxserver, or get-mailboxdatabase, it returns the information as expected.

Both servers are running the latest SP and RUs for 2007 and 2010 (as of July 2018).

Domain level is Win2003 with a 2008r2 DC.

Any thoughts are appreciated!


Exchange logs 1009 MSExchangeMailSubmission. Then nothing I can do but reboot to get mail flowing again

$
0
0
Hello all. 

I hope all is well. First time writing but I hope you can help. Here is the setup

Host: Hyper-v 2012
Guest:
Server 2008 R2
Exchange 2010 CAS SP3 UR 21
Enclosed in it's own vlan
12GB Memory
1TB HDD
400GB free space

Updates installed on 7/11/18 
KB4022206
KB4340556
KB4338818
KB4022136
KB4339093
KB890830
kb4022202
KB4022208

On the following day we noticed that the Exchange server stopped all incoming and outgoing mail. At first I did a reboot and things were good for a day. The next day it started happening again and it made me think that it was an update. However, all updated that installed the following night did not pertain anything that would cause the system to stop like that. I did some research and the error message stated that my system was running out of space. This is not the case since we have over 400 GB of free space. There is 1 partition so the OS and Exchange DB both lives on the same drive. 

The error was event 1009 MSExchangeMailSubmission
The Microsoft Exchange Mail Submission service is currently unable to contact any Hub Transport servers in the local Active Directory site. The servers may be too busy to accept new connections at this time.  

I also read that I can restart the Transport service. However that hangs and still requires me to reboot the server. Once restarted, all is well for an unknown amount of time. I am seeing it will last for about 5 hours after each reboot before we restart again. 

It is getting to the point of frustration and any help will be greatly appreciated. 

Thank you. 
~P


Upgrade Exchange 2010 SP1 to SP3 on SBS 2011 fails on Stopping Services W3Svc

$
0
0
Trying to upgrade the Exchange 2010 service pack to SP3 on a Windows SBS 2011. About 15 minutes into the Stopping Services phase, it throws this error.

[07/15/2018 21:13:59.0440] [2] [ERROR] Unexpected Error
[07/15/2018 21:13:59.0440] [2] [ERROR] Service 'W3Svc' failed to reach status 'Stopped' on this server.
[07/15/2018 21:13:59.0518] [2] Ending processing Stop-SetupService
[07/15/2018 21:13:59.0534] [2] [ServiceControl.ps1] Service 'W3Svc' failed to reach status 'Stopped' on this server.
[07/15/2018 21:13:59.0534] [2] [ServiceControl.ps1] Unable to stop all services for roles: Bridgehead ClientAccess Mailbox AdminTools.
[07/15/2018 21:13:59.0534] [2] [ServiceControl.ps1] Script completed with one or more errors.
[07/15/2018 21:13:59.0534] [1] The following 1 error(s) occurred during task execution:
[07/15/2018 21:13:59.0534] [1] 0.  ErrorRecord: Service 'W3Svc' failed to reach status 'Stopped' on this server.
[07/15/2018 21:13:59.0534] [1] 0.  ErrorRecord: Microsoft.Exchange.Configuration.Tasks.ServiceDidNotReachStatusException: Service 'W3Svc' failed to reach status 'Stopped' on this server.
[07/15/2018 21:13:59.0549] [1] [ERROR] The following error was generated when "$error.Clear();
          & $RoleBinPath\ServiceControl.ps1 -Operation:DisableServices -Roles:($RoleRoles.Replace('Role','').Split(',')) -SetupScriptsDirectory:$RoleBinPath;
          & $RoleBinPath\ServiceControl.ps1 Stop $RoleRoles.Replace('Role','').Split(',')
        " was run: "Service 'W3Svc' failed to reach status 'Stopped' on this server.".
[07/15/2018 21:13:59.0549] [1] [ERROR] Service 'W3Svc' failed to reach status 'Stopped' on this server.
[07/15/2018 21:13:59.0549] [1] [ERROR-REFERENCE] Id=AllRolesPreFileCopyComponent___2f7e3804a2b340c69e930798211fb8fd Component=EXCHANGE14:\Current\Release\Shared\Datacenter\Setup
[07/15/2018 21:13:59.0549] [1] Setup is stopping now because of one or more critical errors.
[07/15/2018 21:13:59.0549] [1] Finished executing component tasks.
[07/15/2018 21:13:59.0643] [1] Ending processing Start-PreFileCopy
[07/15/2018 21:24:58.0461] [0] End of Setup

Earlier on in the log, it shows that the indicated service was already disabled along with the exchange services. When I try to manually disable W3Svc from the command line, it says it cannot disable the service because it is already in the process of being disabled. Should I just find the process in task manager and kill it there?


Additional Mailbox

$
0
0

Hi All,

How can one on O365 access mailboxes on On-Prem? The user had Full Mailbox permissions before move to O365

Can't remove Federation Trust

$
0
0

We have an old Federation Trust I just want to get rid of. The certificates expired a long time ago. Using the EMC, I tried to remove the federation trust and get the error below:

Domain.com
Failed

Error:
The URI "domain.com" for domain "domain.com" on application identifier "0000000040021E01" couldn't be released. Detailed information: "An error occurred accessing Windows Live. Detailed information: "Unable to connect to the remote server".".

An error occurred accessing Windows Live. Detailed information: "Unable to connect to the remote server".

Unable to connect to the remote server

A connection attempt failed because the connected party did not properly respond after a period of time, or established connection failed because connected host has failed to respond.

Exchange Management Shell command attempted:
Remove-FederatedDomain -DomainName 'domain.com'

Elapsed Time: 00:00:21

I don't know what made me think it would be as easy as using the EMC and just selecting Remove. Any idea where I can start looking?


Exchange 2013 Search-Mailbox Query returning 0 items

$
0
0

We are currently having an issue exporting and deleting emails from User Mailboxes.

Earlier this year we upgraded from Exchange 2007 to Exchange 2013, we formerly used Export-Mailbox with -deleteContent switch. This is no longer supported in Exchange 2013.

My current understanding is you need to use two separate cmdlets: New-MailboxExportRequest and Search-Mailbox.

We have completed all Mailbox-Exports and now need to delete the content that was exported to free up disk space.

Our current command is:

Search-Mailbox <username> -SearchQuery {"Received -gt 07-01-2016" + "Received -lt 06-30-2017"} -DeleteContent 

And to check that the mail we are trying to delete exists and it's estimated size we use:

Search-Mailbox <username> -SearchQuery {"Received -gt 07-01-2016" + "Received -lt 06-30-2017"} -TargetMailbox Administrator -TargetFolder DeleteContent

We have used variation of the search-query, we have checked from OWA portal that the mail we are trying to delete / select exists, however the ResultItemCount and ResultItemSize always return as 0.

I have used "Get-MailboxDatabaseCopyStatus * | FT -auto" command to check ContentIndexState and all Mailbox Databases return result Healthy.

I have also checked that the Administrator user performing the Search is a member of "Mailbox Search" & "Mailbox Import Export" Roles.


Viewing all 15005 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>