Quantcast
Channel: Exchange Server 2013 - Mail Flow and Secure Messaging forum
Viewing all 3660 articles
Browse latest View live

Exchange Server 2013 email rejections from free ISP accoounts

$
0
0

We have an Exchange 2013 box, and we are getting random mail no deliveries to mostly free email isps (gmail, hotmail, yahoo, and aol) where errors are like:

Generating server: OPCSEX.opcs.local
Receiving server: mailin-04.mx.aol.com (64.12.91.196)

XXXXXX@aol.com
8/31/2014 2:56:52 PM - Remote Server at mailin-04.mx.aol.com (64.12.91.196) returned '550 4.4.7 QUEUE.Expired; message expired'
8/31/2014 1:49:53 PM - Remote Server at mailin-04.mx.aol.com (64.12.91.196) returned '451 4.4.0 Primary target IP address responded with: "554 mtaig-mcb02.mx.aol.com ESMTP not accepting connections." Attempted failover to alternate host, but that did not succeed. Either there are no alternate hosts, or delivery failed to all alternate hosts. The last endpoint attempted was 64.12.91.196:25'

When I research I am reading thinks like the mail record should be a cname, not a record. That dosent make sense to me. Is there a tool that can help me track down the issue, or that verifies that all my DNS records are correct?

Thanks



Issues when Exchange 2010 receives email from the WAN

$
0
0
The spam was running in proxy mode but switch to transparent mode queuing problems presented with emails with attachments and data channel is saturated. 

To rule out problems antispam appliance was removed it and mail was routed from the Edge Firewall to HUB Exchange server, and likewise there were problems with receiving emails and data binding remained saturated finally the configuration back placing the Appliance in Proxy mode so that the receiving of e remedied and the bond was released. 

Depending on which indicated considerations / reviewing configurations RECOMMEND level Default Receive Connector or the transport layer of the Exchange Organization to receive directly from the WAN on an Exchange 2010 HUB server, considering that the diagnosis is that they are generating timeout in receiving emails with attachments so it is necessary that the sending server need to restart transmission.



Exchange 2013 setup

$
0
0

I'm setting up a new Exchange 2013 system

http://technet.microsoft.com/en-us/library/jj218640(v=exchg.150).aspx

step 5

I'm confused by this:

"Regardless of the choice you make, you need to make sure you configure a private DNS zone for the address space you configure. For more information about administering DNS zones, seeAdministering DNS Server.

The information at the url doesn't really help!!

If the external DNS is set shouldn't all users internal or external be able access say https://remote.mydomain.com/owa (or /ecp) ??

Next section Configure Internal and External URL's to be the same - isn't that possible by simply changing the details in Server > Virtual Directories and editing the Internal & External URL for OWA etc ?


JK

Exchange 2013 sp1 smtp NTLM auth for child domain users

$
0
0

i have exchange organization with exchange 2007 sp 3 & exchange 2013 sp1.

there are  all users in Exchange 2013 server (mail flow is through Exchange 2013 server)

i have single forest, 2 site (site1, site2), root domain root.local and 1 child domain ch.root.local

DC  for child domain is located in site2 (dc.ch.root.local)

multirole exchange 2013 server is installed in root domain.

i am traing to configure smtp receive connector with NTLM auth and have one problem.

when user in child domain try send email through this receive connector i see in log

<,AUTH NTLM,

>,334 <authentication response>,

*,SMTPSubmit SMTPAcceptAnyRecipient BypassAntiSpam AcceptRoutingHeaders,Set Session Permissions

*,CH\user1,authenticated

*,,Setting up client proxy session failed with error: 535 5.7.3 Unable to proxy authenticated session because either the backend does not support it or failed to resolve the user

*,,"Setting up client proxy session failed with error: 451 4.4.0 Primary target IP address responded with: ""535 5.7.3 Unable to proxy authenticated session because either the backend does not support it or failed to resolve the user."" Attempted failover to alternate host, but that did not succeed. Either there are no alternate hosts, or delivery failed to all alternate hosts. The last endpoint attempted was 192.168.1.15:465"


but authentication is succesfull for users from root domain.


why do it can be?
Thanks.






Mail-enabled Public Folder Gets lots of spam.

$
0
0

hello all,

i don't know if this is to be expect but a public folder that we use is currently (has always) been receiving a large amount of spam emails, i can get some details about the public folder via powershell but i wondered if there was any way of cutting down on the amount of spam that it receives.

i am guessing the settings for this being a public folder differ from those of a standard mailbox, but still are there any settings that allow me to set SCL reject / quarantine levels on a public folder?

Many Thanks

when creating Certificate request what settings for POP IMAP

$
0
0

when Creating a request for Certificate POP and IMAP are in the list along with autodiscover etc

default value is Server Host name ie. EXCH2013

what should these be set to ?

I'm configuring remote.mydomain.com - should I set these to remote.mydomain.com ?


JK

Too much SPAM!

$
0
0
We have Exchange 2013 SP1 CU6 on 2 servers, 1 Mailbox/hub, and 1 Edge Transport. Recently the level of SPAM that's getting through the edge has gone through the room. Where I used to get 2 or 3 a day, now I'm getting around 40. I've checked the logs and the SPAM filters seem to be blocking junk, also the RBL's are blocking a ton of mail, yet some messages that are obvious junk are still getting through with a 2 or below SCL. We have not enabled whitelisting, and the filters are up to date. Any suggestions?

Mike Pietrorazio

EXCH 2013 - How to deal with email left at ISP during downtime

$
0
0

We are using Exchange 2013 on one server with both roles and default connectors for send/receive. Prior to Exchange 2013 we used SBS2003/Exchange 2003 that used a POP3 Connector to receive mail from our ISP. Maybe we do not have something setup correctly, but now if there is any downtime (Router changes, power out, server rebooting, etc.) mail will get left at the ISP. When everything is back online, Exchange 2013 does not retrieve the mail. Do we have to enable POP services and or other settings?

How do we deal with this issue?

Thank you.



Zip files Exceedingly compressed size message of 30 megabytes are quarantined

$
0
0

I get this message when I received a zip file over 30 megabytes.

------------------

FILE QUARANTINED

The original contents of this file have been replaced with
this message because of its characteristics.
File name: '172-16-1-4-04SEP14.ZIP'
Malware name: 'Exceedingly compressed size'

-------------------

I have 3 question

1. How do I turn off the function in Exchange 2013 of blocking ZIPs over 30 megabytes?

2. Where is the "quarantine" located that the error message is referring to?

3. If I want to how can I raise the value to 50 megabytes?

Please do not post information about Forefront on this. This is not a Forefront problem


Moses Hull of Alexant Systems


Exchange 2013: Purpose of POP3 Service

$
0
0
IF we are sending and receiving mail using SMTP/MX records, what is the purpose of the POP3 service in Exchange 2013? When would we use that?

There's a problem with the recipient's mailbox. Please try resending this message.

$
0
0

I have a user who cannot receive a message from a particular external sender. That senders assistant (same domain and server as the external sender with the issue) is able to forward the exact same message to my user and it arrives as it should. In message tracking, I can see the message came in through my smart host, through my front end and to the users mailbox server, where an NDR was generated.  We had the assistant forward us the NDR and it says:

There's a problem with the recipient's mailbox. Please try resending this message. If the problem continues, please contact your helpdesk.

From my 3rd party smart host/spam filter, I have a copy of the message in audit and when I forward it to myself, the same thing happens - it generates an NDR when it arrives at my Exchange mailbox server.  This makes me conclude that my end users mailbox isn't corrupt, rather it's something in the message header that our server doesn't like (I've seen this happen with other senders as well, but it is extremely rare and random).

Details/facts of my environment:
-Current production messaging system is Exchange 2003.
-Working on Exchange 2010 co-existence.
-This problem between this sender and us has been an issue before the introduction of Exchange 2010.
-I'm hoping to begin end user mailbox migrations to 2010 and will have the sender try again at that time, but I still have testing to do with our voice messaging system before I can begin moving end user mailboxes.

....Begin redacted NDR detail....
Remote Server returned '< #5.2.1>'
Original message headers:
Received: from fe.mydomain.com ([192.168.1.10]) by
 mailboxsrv.mydomain.com with Microsoft SMTPSVC(6.0.3790.4675);      Thu, 4 Sep
 2014 12:49:48 -0700
Received: from exc2010.mydomain.com ([192.168.1.50]) by
 fe.mydomain.com with Microsoft SMTPSVC(6.0.3790.4675);        Thu, 4 Sep
 2014 12:49:47 -0700
Received: from smtp.mydomain.com (192.168.1.49) by exch2010.mydomain.com
 (192.168.1.50) with Microsoft SMTP Server (TLS) id 14.3.210.2; Thu, 4 Sep 2014
 12:49:47 -0700
Received: from pps.filterd (PPMail.mydomain.com [127.0.0.1])   by
 PPMail.gsblaw.com (8.14.5/8.14.5) with SMTP id s84Jkb0n023682       for
 <myuser@mydomain.com>; Thu, 4 Sep 2014 12:49:47 -0700
Received: from na01-by2-obe.outbound.protection.outlook.com
 (mail-by2on0098.outbound.protection.outlook.com [TheirIP])    by
 PPMail.gsblaw.com with ESMTP id 1p6da7h0jw-1 (version=TLSv1/SSLv3
 cipher=AES256-SHA bits=256 verify=NOT)       for <Myuser@mydomain.com>; Thu, 04 Sep
 2014 12:49:42 -0700
Received: from Theirexchange.theirdomain.com (TheirinternalIP) by
 Theirexchange.theirdomain.com (TheirinternalIP) with Microsoft SMTP
 Server (TLS) id 15.0.1019.16; Thu, 4 Sep 2014 19:49:38 +0000
Received: from Theirexchange.theirdomain.com ([10.141.86.14]) by
 Theirexchange.theirdomain.com ([TheirinternalIP]) with mapi id
 15.00.1019.015; Thu, 4 Sep 2014 19:49:38 +0000
Content-Type: multipart/mixed;
        boundary="_000_9a166afd24964edda2d5439ba3dbe712DM2PR08MB445namprd08pro_"
From: Mr Sender <sender@theirdomain.com>
To: My User <myuser@mydomain.com>, "Another external recipient (someoneelse@anotherdomain.us)"
        <mike@vinco.us>
Subject: FW: A Subject
Thread-Topic: A Subject
Thread-Index: Ac/C2zn97ruwXQpoQtGNrjKOr1NckgFmNoeAAAEpQ2A=
Date: Thu, 4 Sep 2014 19:49:37 +0000
Message-ID: <9a166afd24964edda2d5439ba3dbe712@DM2PR08MB445.theirexchange.theirdomain.com>
References: <3340b0a848f04e3bbb488b4eda93d54e@DM2PR08MB445.theirexchange.theirdomain.com>
 <83FC8FC0E8B91C4594608EA214C0BBAD54BBB844@S1P5DAG8C.EXCHPROD.USA.NET>
In-Reply-To: <>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: yes
X-MS-TNEF-Correlator: <9a166afd24964edda2d5439ba3dbe712@DM2PR08MB445.theirexchange.theirdomain.com>
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [internetIP]
x-microsoft-antispam: BCL:0;PCL:0;RULEID:;UriScan:;
x-forefront-prvs: 0324C2C0E2
x-forefront-antispam-report: SFV:NSPM;SFS:(10009015)(6009001)(189002)(199003)(377454003)(164054003)(64706001)(66066001)(19609705001)(15202345003)(50986999)(19300405004)(19625215002)(90102001)(80022001)(20776003)(83322001)(101416001)(99936001)(76176999)(54356999)(81542001)(21056001)(19580395003)(86362001)(4396001)(92566001)(16236675004)(85852003)(551944002)(74502001)(83072002)(87936001)(74662001)(31966008)(107886001)(81342001)(76482001)(46102001)(85306004)(105586002)(33646002)(15975445006)(99396002)(76576001)(74316001)(77982001)(79102001)(95666004)(108616004)(2656002)(106356001)(99286002)(24736002);DIR:OUT;SFP:1101;SCL:1;SRVR:DM2PR08MB446;H:DM2PR08MB445.namprd08.prod.outlook.com;FPR:;MLV:sfv;PTR:InfoNoRecords;MX:1;A:1;LANG:en;
MIME-Version: 1.0
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10432:5.12.52,1.0.27,0.0.0000
 definitions=2014-09-04_03:2014-09-04,2014-09-04,1970-01-01 signatures=0
X-Proofpoint-Spam-Reason: safe
Return-Path: sender@theirdomain.com
X-OriginalArrivalTime: 04 Sep 2014 19:49:47.0046 (UTC) FILETIME=[61900460:01CFC879]

Legacy edge server not delivering external mails to exchange 2013 ..

$
0
0

Hi guys,


I have mixed exchange organisation

2 Exch2K7 CAS - both turned off

8 Exch2K7 MBX - all turned off

2 Exch2K7 HT - 1 turned off and 1 running

1 Exch2K7 Edge - running

4 Exch2013 MBX - all running

2 Exch2013 CAS - both running

All mailboxes are on the exchange 2013 MBX servers.

Exchange online protection (EOP) is used to protection incoming mails form the internet


everything runs fine until i decided to remove the legacy servers completely (i will retain legacy edge for a while). First I decided to do an edge subscription btw the legacy edge server and Exch2013 MBX servers and that's where the problem started. Suddenly, i can only send mails to the internet successfully but incoming internet mails are bounced back with the NDR 

=====

Delivery has failed to these recipients or groups:

test07@mydomain.comA problem occurred during the delivery of this message. The mail routing configuration for this recipient may be producing a mail loop. This could be a temporary situation. Please try to resend the message later. If the problem continues, contact your helpdesk and refer them to theDSN code 5.4.6 in Exchange Online article for tips on how they can resolve this issue.

The following organization rejected your message: DB3FFO11FD034.mail.protection.outlook.com.



Diagnostic information for administrators:

Generating server: sterlingbank.com

test07@mydomain.com DB3FFO11FD034.mail.protection.outlook.com Remote Server returned '<DB3FFO11FD034.mail.protection.outlook.com #5.4.6 smtp;554 5.4.6 Hop count exceeded - possible mail loop>'

Original message headers

============

From EOP I can see that mails are delivered to the edge server but users dont receive the mails ..I appreciate all the help here ..

Richard




..forever is just a minute away*

Outbound Internet Mail

$
0
0

Hi!

My outgoing email is not working i have tried everything and the mail for outgoing to internet is not working.

I can recieve email to from internal and external.

I can send mail internally.

But i cannot send email external. can someone please help me with this?

How to get a summarized mail traffic report in exchange 2013

$
0
0

Hi all

How to calculate the exchange 2013 SMTP mail traffic in terms of hour,day,month,top senders,largest message and top recipients list . Same time we would like to have those summarized mail traffic report for all the mailbox servers in the form of graphical view as well as in a csv file  ?

Please all of us share your thoughts and possibilities .

Regards

S.Nithyanandham


Thanks S.Nithyanandham

Exchange 2013 CAS-MBX / Exchange 2007 Edge Mail flow

$
0
0

I am in the process of migrating from Exchange 2007 to Exchange 2013.  I have installed my 2013 Cas/MBX into my environment with the existing 2007 Hub/MBX and existing 2007 Edge.  Mail flow on the 2007 side is unchanged (working) but on the 2013 side I am able to receive mail but I can't send (from test mailbox).  It just sits in the que on the 2013 CAS/MBX until it expires.

Any ideas?  My Exchange 2007 servers are both upgraded to SP3 Rollup 13 so the versions should be fine.


Use on-prem Exchange 2013 to relay to Office 365 mailboxes with no hybrid config?

$
0
0

Hi folks,

We had Exchange 2010 and a hybrid deployment during our migration to Office 365. Now we have finished migrating all the mailboxes, public folders, etc. to Office 365 and I have removed the hybrid configuration and decommissioned the Exchange 2010 infrastructure. However, I have added one on-prem Exchange 2013 server for management tasks such as adding and removing email addresses, etc. as per the recommendations in this article: http://blogs.technet.com/b/exchange/archive/2012/12/05/decommissioning-your-exchange-2010-servers-in-a-hybrid-deployment.aspx. It has the mailbox and CAS roles installed. I had to add the mailbox role to get the EAC to run, but it hosts no mailboxes.

Up 'til now, I have used an IIS server to relay SMTP system messages to our Office 365 mailboxes (no mail to other domains), but this is not that reliable, and I would rather use the on-prem Exchange 2013 server to accomplish this task if I can.

I've created various types of send connectors to attempt this using *.contoso.com as the address space, and smarthosting to the address listed in our domain's MX record, but they are not working. I'm wondering since the server is part of our domain (contoso.com), whether it will route messages bound for that domain to a different host? I don't really see anything in the queues, so not sure where to begin troubleshooting.

I'm not sure if this can be done, and none of my searches are turning up anything on it; every other post advises using IIS.

Any help? Thanks,

ianc

One users not able to send to another internal user.

$
0
0

Hello All

We have a user that isn't able to send one of our users from our Hong Kong site an email. She doesn't get an bounce back. I looked at the email header and got this....

User A can't send User B an email but User C is in the same office as User B - User A can send User C an email. 

Delivery Report for  Tammy Tang ‎(tammytang@earnestpartnershk.com)‎

Submitted
8/28/2014 5:02 PM ATL-MAIL-VM02.earnest.local
The message was submitted to atl-casht-01.earnest.local.

Transferred
8/28/2014 5:03 PM atl-casht-01.earnest.local
The message was successfully handed off to a different e-mail system. This is as far as we can track it.

We have another user in the same Hong Kong and the user is able to send her an email. 

Thanks 

clients not receiving our daily mails who has subscribed to mail.protection.outlook.com ..

$
0
0

from few days we are receiving cmplaints from may of our subscribed clients that they are not getting daily alert mail...Where as we checked in our logs that the mails are accepted by the servers whose Mx is hostname.com.mail.protection.outlook.com .. but all clients subscribing to this service are not getting our mails in their inbox.. mails are accepted without any fault to Client mail server.. Following is the log for your ref from our sendmail server.Note- we have valid SPF record also our mail server is not blacklisted anywhere. Mail contains HTML embedded info about our services for which client is subscribed.

to=<xxxx@xxxxx.co.za>, delay=00:00:08, xdelay=00:00:08, mailer=esmtp, pri=206583, relay=xxxxx-co-za.mail.p...ction.outlook.com. [xxx.xxx.154.23], dsn=2.0.0, stat=Sent (<VPOP31.4.0e.20140910113951.917.f85.2.34364a7d@CMS1> [InternalId=58007828300753, Hostname=xxxxxxx.eurprd03.prod.outlook.com] Queued mail for delivery)

kindly suggest the work around for the problem.

Exchange 2013 setup

$
0
0

I'm setting up a new Exchange 2013 system

http://technet.microsoft.com/en-us/library/jj218640(v=exchg.150).aspx

step 5

I'm confused by this:

"Regardless of the choice you make, you need to make sure you configure a private DNS zone for the address space you configure. For more information about administering DNS zones, seeAdministering DNS Server.

The information at the url doesn't really help!!

If the external DNS is set shouldn't all users internal or external be able access say https://remote.mydomain.com/owa (or /ecp) ??

Next section Configure Internal and External URL's to be the same - isn't that possible by simply changing the details in Server > Virtual Directories and editing the Internal & External URL for OWA etc ?


JK

Error to send to gmail.com

$
0
0
Friends, I have an Exchange 2013 and a sudden he no longer send emails to gmail.com

Googled the error but not its resolving, see:

mx.google.com rejected your message to these email addresses:

mx.google.com generated this error: [2002:3207:4784 :: 3207:4784 16] The sender does not meet basic guidelines ipv6 sending of authentication and RDNs resolution of sending ip. Please review https://support.google.com/mail/answer/81126for more information. e49si9606932eep.111 - gsmtp
Your message was not delivered due to permission problems or safety. She may have been rejected by a moderator, the address only accepts mail from certain senders, or another restriction prevented delivery.


Can you help me?

Silvio Tavares - Analista de Sistemas

Viewing all 3660 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>