Quantcast
Channel: Exchange Server 2013 - Mail Flow and Secure Messaging forum
Viewing all 4249 articles
Browse latest View live

Not able to send email externally

$
0
0

Hello,

I have a weird situation going on. My web developer has create a feedback website where it emails a guest after they submit their feedback. It's setup to where it bcc a group inside the company and emails the guest.

So, long story short, guest submits their feedback and the bcc group receives the email. I can see that from the tracking log via powershell. What it's not doing is emailing the guest at an external domain like gmail or yahoo. I've tried to track the message for the external domain via powershell but all I see is that it's only reaching the internal domain. I've checked our Barracuda system and I don't see it hitting the outbound filters.

I forgot to add that it's sending from an internal address that we setup, website@domain.com. It works fine for other apps/website that requires us to email to an external domain. 

Is there something else that I need to check or is there a setting that I need to take a look?


What is MessageInfo = QDE

$
0
0

Hi, Ex Experts!

Help me, please!

Using Get-MessageTrackingLog i saw "MessageInfo" field with agent "QDE" value eq "00:24:23" (25 min message not send to internet), after 25 min message completely sent.

What is "QDE"?


Exchange and SPF record

$
0
0

Hi all,

we are in the plans of implementing SPF record for our domains. Currently we have 10 accepted domains in our Exchange (domainA-domainJ).

Our mail route for Incoming is the following:

Internet-Spamfilter(3rd part provider)-ExchangeOnPrem-ExchangeOnline

Outgoing
ExchangeOnline-Internet

We have internal system that is also sending mail using relay of On-Prem Exchange

ExchangeonPrem-ExchangeOnline-Internet

We have also external system (outside corporate network)that is sending out mail using 3rd party system. It is sending using ourxx@domain.com as FROM address.

As far as I understand, our SPF record should look like this:

v=spf1 mx a ip4:222.222.211.211 a:server1.domain.com include:server2.domain.com include:spf.protection.outlook.com -all

Where 222.222.211.211 is external IP of our OnPrem Exchange server and server1/2.domain.com is external systems relaying.

Is it correct to use this record for all our accepted domains?

Thanks!

p.s.

Been trying to post this in Exchange Online forum, but no response yet since last week. So I'm trying here since reply is usually faster :)


Please mark as helpful if you find my contribution useful or as an answer if it does answer your question. That will encourage me - and others - to take time out to help you. Thank you! Off2work

Exchange Adding new users

$
0
0

Hi When I add a new user to my Exchange 2007 server I get the following error when sending to this new user:

550 5.1.1 <blichtig@webermessick.com>: Recipient address rejected: User unknown in virtual mailbox table
Last-attempt-Date: Wed, 13 Apr 2016 21:57:13 -0700

This happens when I send from a outside email account. Everyone else is working fine. It is only when we create a new email account on out Exchange Server. Any help would be much appreciated?

Email bouncing back “Denied by policy TLS conversation required Diagnostic Code SMTP 550 denied by policy”

$
0
0

Dear Team,

One of the domain is not able to send us email they are receiving the below message in the NDR.

“Denied by policy TLS conversation required Diagnostic Code SMTP 550 denied by policy”

is anything wrong from my end i need to change something?i am using exchange server 2013

Regards

Jack


TechGUy,System Administrator.


Exchange 2010 Migration - WAN Optimization

$
0
0

Hello!

We want to migrate Mail-boxes from an Exchange 2010 server to another Exchange 2010 server in another subsidiary over the WAN. At both sides is a Riverbed WAN-Optimizer.
Problem is that the traffic will not be optimized.

Somebody knows a solution for this or had that problem, too?

Exchange 2010 uses MRS to move the mailboxes. Does MRS uses encryption?
If yes, could that be deactivated?

Event ID 4010, error, MSExchange Messaging Policies

$
0
0

Exchange 2013 CU12 in hybrid mode with Office 365 and using EOP.I receive several of these events daily in the exchange servers event logs. they all have random 5 or 6 character domain names ending in .us

Like:

aqdame.us
aufdo.us
azweus.us
eikur.us
ekuem.us
ezsaex.us
iuroqe.us
iyeebo.us
koinqe.us
ociof.us
oowkeu.us
teeqca.us
ubkuth.us
uccezz.us
unleac.us
vafabi.us
wpakiz.us
wuuwl.us
xoseiv.us
ihoten.us
ousqez.us
paubug.us
peuxoi.us
gerdel.us
usiikl.us
kaofog.us
yojwif.us

the rest of the event looks like this:

Transport engine failed to evaluate condition due to Filtering Service error. The rule is configured to ignore errors. Details: 'Organization: '' Message ID '<0.0.0.8D.1D1963D56A28882.172B09@kpafog.us>' Rule ID '1f84f16b-d702-4afd-9b25-0b3372cfb166' Predicate '' Action ''. FilteringServiceFailureException Error: Microsoft.Exchange.MessagingPolicies.Rules.FilteringServiceFailureException: FIPS text extraction failed with error: 'MIME content error: Cannot decode content stream because unrecognized content transfer encoding was used to encode it.'. See inner exception for details ---> Microsoft.Exchange.Data.Mime.MimeException: MIME content error: Cannot decode content stream because unrecognized content transfer encoding was used to encode it. at Microsoft.Exchange.Data.Mime.MimePart.GetContentReadStream() at Microsoft.Exchange.UnifiedContent.Exchange.EmailMessageSerializer.SerializeMimeDocument(UnifiedContentSerializer serializer, EmailMessage email, HashSet`1 serializedMimeParts) at Microsoft.Exchange.UnifiedContent.Exchange.EmailMessageSerializer.Serialize(EmailMessage message, UnifiedContentSerializer serializer, Boolean bypassTextTruncation) at Microsoft.Filtering.FipsDataStreamFilteringRequest.ToFilteringRequest(Boolean bypassBodyTextTruncation) at Microsoft.Exchange.MessagingPolicies.Rules.FipsFilteringServiceInvoker.CreateFipsRequest(ScanConfiguration config, FilteringServiceInvokerRequest filteringServiceInvokerRequest) at Microsoft.Exchange.MessagingPolicies.Rules.UnifiedContentServiceInvoker.BeginTextExtraction(FilteringServiceInvokerRequest filteringServiceInvokerRequest, TextExtractionCompleteCallback textExtractionCompleteCallback) --- End of inner exception stack trace --- at Microsoft.Exchange.MessagingPolicies.Rules.UnifiedContentServiceInvoker.GetUnifiedContentResults(FilteringServiceInvokerRequest filteringServiceInvokerRequest) at Microsoft.Exchange.MessagingPolicies.Rules.MailMessage.get_BodyContent() at Microsoft.Exchange.MessagingPolicies.Rules.MessageBodies.Microsoft.Exchange.MessagingPolicies.Rules.IContent.Matches(MultiMatcher matcher, RulesEvaluationContext context) at Microsoft.Exchange.MessagingPolicies.Rules.TextMatchingPredicate.Evaluate(RulesEvaluationContext context) at Microsoft.Exchange.MessagingPolicies.Rules.OrCondition.Evaluate(RulesEvaluationContext context) at Microsoft.Exchange.MessagingPolicies.Rules.AndCondition.Evaluate(RulesEvaluationContext context) at Microsoft.Exchange.MessagingPolicies.Rules.RulesEvaluator.EvaluateCondition(Condition condition, RulesEvaluationContext evaluationContext) at Microsoft.Exchange.MessagingPolicies.Rules.TransportRulesEvaluator.EvaluateCondition(Condition condition, RulesEvaluationContext evaluationContext). Message-Id:<0.0.0.8D.1D1963D56A28882.172B09@kpafog.us>'

I suspect it is a type of spam/malware that EOP is not catching and FIPS cannot process either.

I have tried to filter these out with a rule but no success yet.

Any help would be grateful.

Transport Rule to restrict Character Limit to Specific Domain.

$
0
0

Hello

What we want to do is restrict the content of emails sent to our Text\SMS delivery Domain to stop one email being coverted into 3,4,5 or more texts.

The Character Limit for a Single SMS is 160, I cant see any way of doing this using a Transport Rule ("Where the Recipient Domain is SMSDomain.com), or DLP.

Has anyone written a custom Transport Agent or Rule that has achieved this or similar?

We have looked at using the Disclaimer to Prepend or Append an **EOM** string, but we really want to configure a hard Character Limit.  

NOTE: The Message must still be delivered , just only the first 160 Characters.

Thanks



After running Hybrid Configuration Wizard, Outlook doesn't work anymore.

$
0
0

Hello,

we are trying to enable hybrid environment and have shot ourselves in the knee, I guess.

Our problem:

Outlook isn't connecting to Exchange at all anymore, always throwing the error

There is a problem with the proxy server's security certificate. The security certificate is not from a trusted certifying authority. Outlook is unable to connect to the proxy server 'exchangeserver.contoso.local(Error Code 8)

The problem came up after we tried to execute the Hybrid Configuration Wizard in our environment. It worked fine before we executed the Hybrid Configuration Wizard.

What can we do to fix this and send/receive email again?

Kind regards,

Alexander

What we have:

As of now we have an on-premise Exchange 2013 with a self-signed certificate on the name exchangeserver.contoso.com, three mail domains (contoso.de, contoso.com and fabrikam.com) and mailboxes in all three domains.

The on-premise Exchange server is behind a NAT router. We have a linux smarthost (I think with postfix). All three domains have the smart host's IP as their MX record, and the smarthost then forwards the mails to our router. Our router relays all packets received from the smarthost's IP address to the mail server, and the Exchange send connector is set to deliver mail via our smarthost.

Sending and receiving mails worked fine until yesterday from our internal NAT network. For our laptops we have a VPN connection to send/receive email during travel; for our mobiles we have port 443 of our NAT router forwarded to the Exchange server. (Exchange mailboxes have to be configured manually on the mobiles, because the NAT router only has an IP, which the security certificate does not match and which does not work with Exchange AutoDiscover.)

Furthermore we have a small O365 organization with mail domain contoso.onmicrosoft.com for testing purposes only.

What we want:

Our international sales reps should be able use Outlook and their mobiles without a VPN connection and without manual configuration, so we want to make a hybrid environment, where the international sales reps are hosted in O365. All mail from/to the company should still come in and leave via our smarthost (which contains a customized auto-answer, a spam filter, antivirus and other security-related stuff). So we will have mailboxes for all three domains hosted on the on-premise Exchange, and single mailboxes for contoso.com hosted on O365. O365 should send/receive via our Exchange server or at least our smarthost.

I have already configured Azure AD connect which is running fine. I was unable to migrate a test mailbox to our O365 server, but I think this is a certificate issue (not completely sure).

On line archiving questions

$
0
0

Hello Everyone,

I have a question that my super presented to me, and I don't feel I can answer it correctly and I thought I would ping you all to see if this could be possible.

My question is this,

I understand that we can make multiple Archive databases and assign users to the databases, but is it possible to move email from a certain date from an online archive database over to a secondary Archive database?

To elaborate, User A has been with the company for 10 years, has a 2gb inbox with email in an archive database for past years [ all emails older than 2 years are moved to the online archive ]. We bring up another archive database that is housed not on the server, but a NAS device. What we are trying to determine is if it would be possible to move emails in the online archive that are older than say 5-7 years to the secondary online archive on the NAS device.

Hopefully this is clear enough to understand.

Thanks,

~Jason


Messages queued in "SMTP Delivery to Mailbox" during outage

$
0
0

Here's the scenario:

2 Exchange 2013 Servers configured with combined CAS and Mailbox roles.

While simulating an outage on one server (ServerA) by restarting it, any inbound mail (e.g. from the Internet) sits in the "SMTP Delivery to Mailbox" queue in Retry on ServerB until the ServerA is back up.  I would expect the mail to be delivered successfully as the mailbox databases all mounted successfully on ServerB when ServerA went down. 

It's looks almost as if the "SMTP Delivery to Mailbox" queue has somehow cached the active mailbox information, i.e. "When I last checked the mailbox databases were active on ServerA, so I'll keep trying to deliver there".

Any thoughts on what is going on here?


Tony www.activedir.org Blog: www.open-a-socket.com

unable to send email sometime from outside network

$
0
0

Hi everyone,

We are facing some issue in sending email using outlook 2013.

We are using Exchange 2013 in coexistence with Exchange 2010 and our migrations are going ON.

Some of our migrated clients are facing issue in sending emails from MS Outlook using Outlook Anywhere from outside internet.

Sometimes outlook becomes disconnected and users are unable to send and receive emails.

Sometimes outlook becomes Connected and users are unable to send emails but can receive.

Exchange 2010 Users are working fine but these issue are only faced by migrated users.


SYED WASIL UDDIN Infrastructure Consultant/System Engineer Premier Systems (Pvt.) Ltd.

Last Error: A storage transient failure has occurred during content conversion.

$
0
0

Exchange 2013 version :

Enterprise
Version 15.0 (Build 1130.7)

2 CAS servers

4 Mailbox servers

Hybrid Exchange and EOP is used for on-premise exchange

Mails get stuck in the Submission queue with error : A storage transient failure has occurred during content conversion.

Changed RemoteDomain setting 'TNFEEnabled' from $Null to $False -> NOK

Changed RemoteDomain TNFEEnabled from $False to $True -> OK, but external receipients are receiving mails with 'Winmail.dat'

Current setting TNFEEnabled = $Null

Hybrid Receive Connector

$
0
0

Hi Guys and Girls

i need to set a receive connector on our edge server so that we can receive emails from our 365 mailbox (this is because all mail needs to route through our on prem)

what is the command to set the is up as i do not know Microsoft IP/ server names that the O365 emails will be coming form?

new-ReceiveConnector -name <name>

Thank you in advance

Maintenance Mode - arise mail queues

$
0
0

Hi all,

I have the following landscape:

A mixed Org. (2007/2013) and a site Dallas and site Texas with some Exchange 2007 and one Exchange 2013 Server per site. 

My Problem is, when I set the Exchange 2013 in Texas in Maintenance Mode, here at Dallas queues arise to the Texas site. Even after some time the queues didn't reduce. I thought the Exchange 2013/2007 Server in Dallas will then try to connect to the remaining exchange 2007 Server in Texas, but that isn't the case, due to that I bring the Server back to online and then queues will be cleared.

Does anybody have an idea to fix that issue? 

Thanks a lot.



External User receiving many NDRs

$
0
0

Hi,

I have a problem with NDRs on Exchange 2013. A user received an external email and the sender keeps receiving many NDRs. Since last Wednesday he got about 650 NDRs of that message.

The strange thing about this, is that my user received  the message, but the sender (external one) keeps receiving NDRs of "message exceeded the limit"

My problem here is not related to the message, but about this repeating of the NDR to the sender.

Please Help.

Outlook 2013 Will not load New Inbox emails

$
0
0
I have one user that is having problems with Outlook, it will not load new emails, I have uninstalled Office, deleted the profile, and still having the same problem. Our OWA site works and she is getting her emails there but no on Outlook. She is running Windows 7 Pro 64 bit.

Added Proofpoint SPAM Filter, now certain domains are not being delivered to users

$
0
0

Hi, 

So, we have a new client that recently got Proofpoint.  We created the account in Proofpoint, loaded up all the users, and placed the proofpoint IP's in the receive connector named mail.XXXXX.org frontend transpoort

Emails are passing through the filter (as clean, and listed as delivered by the proofpoint service).  Most emails are making to the end user, however, certain domains are not (any user from that domain, not just certain ones).

I am puzzled, but I am also not a in-depth exchange guy.

The fear is there are other domains that the client is not receiving, and we just don't know it yet.  

Any suggestions? Please.

Setting up a mail buffer

$
0
0

Hi All,

I would like to know if it's possible to setup a kind of buffer for outbound mails.
We would like to be able to have a copy of the mails and, if needed, we can resend the e-mails.

I've looked into the following options, but it seems they're not what we're looking for:

- Catch All mailbox: get's a copy, but resending e-mails as the Catch-All mailboxuser, not the original sender
- Journalling: same as the above.

Are there any other options?

Thanks in advance.

Kind regards,

Matthijs

Exchange 2013 DLP with Outlook 2010 clients: End-User Experience

$
0
0

Hello,

We will soon be upgrading from Exchange 2003 to 2013, but our client software will remain at Outlook 2010. I'm curious to know how the DLP features of Exchange 2013 will impact the users since the Policy Tips in Outlook 2013 are not available in 2010. In place of the Policy Tips, how are Outlook 2010 users made aware of DLP rules and potentially problematic message content? If they send a message with content that violates a DLP rule and will ultimately be blocked by the server are they even made aware? I would hate to think that the message appears to have been sent successfully to the user but in actuality never reaches the recipient and the user has no idea.

Thanks,

sleepy

Viewing all 4249 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>