Quantcast
Channel: Exchange Server 2013 - Mail Flow and Secure Messaging forum
Viewing all 3660 articles
Browse latest View live

Exchange resource forest & user forest secure email issue

$
0
0

Hi,

We have a forest that contains Exchange 2013 and the bulk of our users, we have a forest trust to a domain that contains more users that is separate for political reasons.  I have a pki setup in the primary forest and is working as expected for all users.

I'd like for users at both sides to be able to encrypt and send emails to each but at the moment outlook complains that it can't find the certificates for those on the other domain.

Is this possible?

Thanks

Exchange 2013 to 2010, email stuck in queue when send to large distribution group

$
0
0

Hi,

We have a exchange 2010 sp3 cu10 and exchange 2013 cu9 and migrate some user from 2010 to 2013

When exchange 2010 user send to  a distribution group (which all members still in 2010), it works

But when exchange 2013 user send to distribution group:

- if the group only have few memebers, it can send to target mailbox

- if the group have many memebers (more than 1000), email will stuck in exchange 2013 and cannot route to exchange 2010. The error is "421 4.4.1 Connection time out"

Image Image

Tried to change the receive connector timeout setting, and increase recipient limit by set-transportservices command but still have problem

Any idea?

Thanks


Andy Chong

Mails not getting delivered

$
0
0

Hi Team,

we are facing issues with some users not receiving emails from external domain.

Issue:

we received request from user that he needs additional smtp address and it needs to be primary address as well, keep old as primary address.

After making the changes user was able to receive email from internal users but not from external users. Currently we have 2 users facing this issue.

NDR message says The following organization rejected your message: mx record name 

#5.2.0 smtp;550 5.2.0 mailbox unavailable.> #SMTP#.

Please advise how to fix this issue.

Thanks

Abhishek saxena


Abhishek Saxena

New-Mailboxsearch -sender option not working

$
0
0

Hi all, I've been asked to search for an old email in ALL the mailboxes of the organization.

I've already tried with delivery reports and message tracking log cmdlets (it's the same, and I'm limited to last 30 days)

Then I came across with this New-mailboxsearch cmdlet.

https://technet.microsoft.com/en-us/library/dd298064%28v=exchg.160%29.aspx

but when i try to find somethingit doesn't recognize the "sender" parameter.

[PS] C:\Windows\system32>New-MailboxSearch -Name "search1" -sender sender@company.com
A parameter cannot be found that matches parameter name 'sender'.
    + CategoryInfo          : InvalidArgument: (:) [New-MailboxSearch], ParameterBindingException
    + FullyQualifiedErrorId : NamedParameterNotFound,New-MailboxSearch
 

So, is there a way to make this work? if not, is another way so search for a mail in ALL mailboxes, different than messagetracking logs, or delivery report tool?

thank you all,

PD: My version is Exchange 2013 standard.


SUBMISSION QUEUE attacked by a Spam yahoo.com.tw

$
0
0

After I mistakenly open my Server for Open Relay , I get Span mail filling my Submission queue , the mail are of diffent doamins and ip addresss coming from my own domain. I have done the following:

1. Closed the Relaying

2. Enabled Spam agents ( Sender,Content and receipient Filters)

Still the mail keep on besubmitted in this form

QUEUE

[PS] C:\Windows\system32>Get-Queue

Identity                   DeliveryType Status MessageCount Velocity RiskLevel OutboundIPPool NextHopDomain
--------                   ------------ ------ ------------ -------- --------- -------------- -------------
bmcmail\3                  DnsConnec... Sus... 5148         -17.47   Normal    0              yahoo.com.tw
bmcmail\4                  DnsConnec... Sus... 3560         -2.29    Normal    0              kimo.com
bmcmail\5                  DnsConnec... Sus... 625          -0.42    Normal    0              ymail.com
bmcmail\6                  DnsConnec... Sus... 199          -0.1     Normal    0              yahoo.com.hk
bmcmail\10                 DnsConnec... Sus... 1            0        Normal    0              yah.com.tw
bmcmail\27                 DnsConnec... Sus... 1            0        Normal    0              yahoo.coom.tw
bmcmail\30                 DnsConnec... Sus... 0            0        Normal    0              yam.tw
bmcmail\34                 DnsConnec... Sus... 0            0        Normal    0              hoo.com.tw
bmcmail\35                 DnsConnec... Retry  43           -0.05    Normal    0              163.com
bmcmail\50                 DnsConnec... Retry  1            0        Normal    0              yaahoo.com.tw
bmcmail\51                 DnsConnec... Retry  36           -0.04    Normal    0              rocketmail.com
bmcmail\52                 DnsConnec... Retry  1            0        Normal    0              yahoo.tw
bmcmail\53                 DnsConnec... Retry  1            0        Normal    0              yahoo
bmcmail\Submission         Undefined    Ready  19287        -42.77   Normal    0              Submission

MASSAGE:

Identity: bmcmail\4\13018045879210
Subject: ¢eIC±±¨îÂà¯]«ö¼¯´Î¢eAlyssa
Internet Message ID: <MDTWUFNOIGOXBVRUVWLY@163.com>
From Address: afdrrcvudnvtk@163.com
Status: Ready
Size (KB): 12
Message Source Name: SMTP:Default BMCMAIL
Source IP: 118.165.147.65
SCL: 0
Date Received: 11/3/2015 12:12:54 PM
Expiration Time: 11/5/2015 12:12:54 PM
Last Error:
Queue ID: bmcmail\4
Recipients:  a931111a@kimo.com;2;2;[{LRT=};{LED=};{FQDN=};{IP=}];0;CN=BTC,CN=Connections,CN=Exchange Routing Group (DWBGZMFD01QNBJR),CN=Routing Groups,CN=Exchange Administrative Group (FYDIBOHF23SPDLT),CN=Administrative Groups,CN=bmcexchange,CN=Microsoft Exchange,CN=Services,CN=Configuration,DC=bmc,DC=net,DC=bw;0

Please help get rid of the submission queue for this as it is blocking my legitimate mail

Error message when I configure the 2nd Exchange Edge server 2013

$
0
0

Dear all,

Please help me to resolve the issue. I have been trying to clone the Edge server but an error message comes up after I perform the command bellow:

[PS] C:\installation>./ImportEdgeConfig.ps1 -CloneConfigData:"C:\installation\CloneConfigData.xml" -IsImport $false -Clo
neConfigAnswer:"C:\CloneConfigAnswer.xml"

Validation succeeded for SourceIPAddress element of type IPAddress
Validation succeeded for SourceIPAddress element of type IPAddress
Validation succeeded for Bindings element of type Bindings
Validation Failed for Fqdn element of type FQDN   <--------- the error message
Answer File is successfully created: C:\CloneConfigAnswer.xml

Thus, imlementing ./ImportEdgeConfig.ps1 -CloneConfigData:"C:\installation\CloneConfigData.xml" -IsImport $true -CloneConfigAnswer:"C:\installation\CloneConfigAnswer.xml" command is not possible due to the error message above

Exchange 2013 "IP-AllowListEntry" not working

$
0
0

Hello,

we are using "Spamhaus ZEN" RBL for our Exchange.
There are a few IP-Adresses that I want to whitelist, this should work with "Add-IPAllowListEntry -IPAddress x.x.x.x"
The Command works successfully and returns the results with "Get-IPAllowListEntry"
Settings for IPAllowListConfig are "-Enabled True" and "-ExternalMail Enabled True"

My problem is that mails are being blocked even if they are on the whitelist.
Can someone tell me why that is happening?
I tried to restart TransportService and even whole Exchange server without success.

Regards

gugaua

Move message to file location (not to mailbox)

$
0
0

Hi,

is it possible to create a transport rule or anything similar to immediately move message to a file location, even before the message is processed and moved into a mailbox?

This way I want to prevent problems like full mailbox, too large messages/attachments, etc.

And also want to prevent manual interception of the messages.

Next step would be to use the messages from the file location to be processed elsewhere (ESB or similar).

Thanx for any suggestions!


Exchange 2013 CAS receive connector gives "451 4.7.0 Temporary server error. Please try again later. PRX1"

$
0
0

Hi,

We have an very strange issue with Exchange 2013 (CU8, issue was the same with CU7) and receive connector on CAS. We have 1 CAS server,1 Edge and 2 Mailbox servers. This started to happen when 2010 was uninstalles/removed. Everything worked before 2010 was removed. 

We have a seperate Receive connector for mail relay from scanner/software etc. If we try to send to external addresses (user@external.com) we got this response:

"
451 4.7.0 Temporary server error. Please try again later. PRX1"

If we send with internal address (user@internal.com) its works. Anonymous access is configured. The strange thing is that when we test and send a test-message with both internal and external address (user@internal.com; user@external.com), both is delivered OK. 

Used this commands to test:
This command works:
Send-MailMessage -From test@internal.com -To user@external.com,user@internal.com -Subject TestMail -SmtpServer serverip

This command gives errorcode:
Send-MailMessage -From test@internal.com -To user@external.com -Subject TestMail -SmtpServer serverip

Send-MailMessage : Error in processing. The server response was: 4.7.0 Temporary server error. Please try again later.
PRX1
At line:1 char:1
+ Send-MailMessage -From test@internal.com -To user@external.com -Subject Te ...
+ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    + CategoryInfo          : InvalidOperation: (System.Net.Mail.SmtpClient:SmtpClient) [Send-MailMessage], SmtpExcept
   ion
    + FullyQualifiedErrorId : SmtpException,Microsoft.PowerShell.Commands.SendMailMessage

We have created an case with Microsoft, but the response from MS is very bad/nothing.

Anyone that have seen this behavior?

Thanks

Lars Erik

Online Message Encryption (OME) and Hybrid

$
0
0

Hi Guys,

My company is moving away from Notes to Office 365/Hybrid. The time has come to implement the On-Prem portion of the solution and we have run into a couple of issues setting up message classification/OME.

We have successfully implemented OME using message classification and transport rules for our Exchange Online users (20,000 E3 and counting). This configuration is working well.

I've copied the Exchange Online message classification details and associated IDs. Applying basic On-Prem transport rules work perfectly however I can't seem to get the following working:

1. External mail which routes via Exchange Online isn't being encrypted using existing transport rules (this works perfectly for O365 users) 

2. Above applies for On-Prem users mailing 365 users (mail with message classification applied)

2. What is the best way to apply OME for mail that doesn't leave the On-Prem solution?? (On-Prem to On-Prem)

- All users will have an E3 license

- Exchange 2013 CU8

Many thanks,

Matt

SMTP Receive connector - 5.7.1. client was not authenticated

$
0
0

Hello,

We are in process of migrating from Exchange 2010 to 2013. We have number of applications that are sending email through Exchange server. When those application servers point to Exchange 2013 we are experiencing "5.7.1. Client was not authenticated" errors occasionally.

This is really weird issue as we have about 75% success rate and 5.7.1 is intermittent issue that I can't figure it out. I also have ticket opened with Microsoft support. Microsoft support technician made some changes through adsiedit but this did not resolve the issue. It is rather difficult to troubleshoot because it is intermittent issue and while testing with Microsoft we do see success but being about 75% working and 25% not it is difficult to reproduce the issue with MS support technician on the phone. Also, it is not one specific application server that is causing this issue but more or less all of them.

Our setup is:

2 CAS servers and 2 MBX servers (Exchange 2013 Enterprise RU8) - Anonymous authentication is enabled on the connector - CAS servers are load balanced through A10 same as our Exchange 2010

SMTP Relay was created and all servers IP's that need to send email (even just internal within exchange organization were added to the list - in Exchange 2010 we didn't need to add servers that route email internally to the SMTP relay)

Tracing successful messages I can see that all servers are delivering email so I can't pinpoint to specific server causing this failure. I reopened case with Microsoft and am waiting for their reply.

Has anybody experienced similar issue? Any suggestions would be more than welcome.

Thanks,

Vic


Vic Sabljic Sr. Data Centre Analyst



I need to move specific message from Junk to Inbox for all users

$
0
0
I need to move specific message from Junk to Inbox for all users

Autoforward emails coming from certain domains or going to certain domains to a public folder/mailbox

$
0
0

Good Day,

I am have been asked by a team, that they need to have any emails going to/from certain domains to a public folder/mailbox.

EG. email@domainA.com going user@company.com >> needs to be autoforwarded to mailbox@company.com

EG. user@company.com sending email to email@domainA.com >> to store a copy of this sent email to mailbox@company.com

I know this should be achieved via mail flow settings in Exchange 2013, but I am not sure if it can be done the way they want it.

Thank you

Bare linefeeds clogging journaling

$
0
0

Hi,

We have a problem where emails that we receive from an automated service contain bare linefeeds and cannot be sent to the journaling mailbox.  Our Exchange server reports “Last Error: 400 4.4.7 The server responded with: 550 5.6.2 SMTPSEND.BareLinefeedsAreIllegal; message contains bare linefeeds, which cannot be sent via DATA. The failure was replaced by a retry response because the message was marked for retry if rejected.”

I fully understand why this is happening and have contacted the sender.  Unfortunately they are a multi-national corporation and are showing little interest in my mail queue problem.  We also have no choice but to interact with them as they are part of the industry we operate in.

My question is; Is there anything I can do to stop these messages from being archived, or is there any way I can disable the bare-linefeed check on the journal send connector?  Alternatively, I'm open to any other suggestions that you may have.

Thanks in advance.

ReWrite recipient address on outbound mail

$
0
0

Hi everone, 

We have a solution, where the user send a mail to a SMS gateway including an API key or password. Now, I want to make a rule that add this information before the message is sent to SMS gateway. 

Example:

The user sends a mail to 12345678@sms.suresms.com, 

After the TransportRule or AddressRewrite the recipient should look like this

12345678.SecretKey@sms.suresms.com. 

We run on Exchange Online. I have tried to add TransportRule and replace header but that didnt seem to work. As far as I understand the rewriteaddress is not available on Exchange Online. 

Anybody have any idea how to complete this? 

Thanks

Should have been in Exchange Online, and I cannot move it :-(



Messages Getting Stuck In Hybrid Setup

$
0
0

Hello all,

     We running O365 in a Hybrid environment.  We have been migrating users in small batches from our on-prem Exchange 2010 environment.  With this setup emails come in to our Exchange 2010 servers first and those emails going to users on the cloud will flow to the Hybrid server 2013 and up to O365.  We have had an instance where messages began to fill up on the CAS queues for the SMTP Relay to the hybrid server.  We restarted the Hybrid and that resolved the backup and all was well again.  We made sure updates were installed and all was good.  Then the issue happened again yesterday.  It began to backup and a restart resolved it.  Has anyone seen this issue?  Any thoughts on resolution?  Thanks for the help.

How to restrict SMTP for Anonymous users

$
0
0

Hi,

I want to Restrict my SMTP for Anonymous user in Exchange 2013.  SMTP should be require authentication for sending emails

Thanks

External relay not working without recipient domain added as accepted domain

$
0
0

Hi,

I am running Exchange 2013 CU5 on a multi-role server. I have to relay a lot of email from the client's ERP system to external recipients. I set up a receive connector as per the MS documentation, ticked the Anonymous Users security setting and ran the following command:

Get-ReceiveConnector "Connector Name" | Add-ADPermission -User 'NT AUTHORITY\Anonymous Logon' -ExtendedRights "MS-Exch-SMTP-Accept-Any-Recipient"

The problem I am having is that the email does not relay unless I add the recipient email domain as an accepted domain. That will not be a problem if it was only a few recipients, but there are hundreds of different recipients with random email domains, so to add them all as accepted domains is not really viable.

Is this behavior by design, or am I missing a trick? Another client running Exchange 2010 with even more recipients for external relay worked fine after I set up their anonymous relay connector.

Any ideas will be appreciated!

Thanks!

Thomas

Exchange 2013 issues - (new send email Stuck in Drafts not send)

$
0
0
Exchange 2013 issues - (new send email Stuck in Drafts folder not send)

Sending to distribution groups Exchange 2013

$
0
0
Hi Guys
After coming into work today to find that users are not able to send emails to distribution groups that previously worked before (for years), all emails are from internal users to internal groups. No bounce-back emails are being generated by exchange and no other errors are obvious as everything looks normal.

Nothing has/had been changed on the server. All individual/multi person emails are working as normal.

All I can find online is problems sending from external emails to internal group and authentication issues, nothing on internal-internal.

Has anyone seen this before or have any idea what is causing this?

Exchange 2013
Windows Server 2012 R2
Viewing all 3660 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>