Mostrando entradas con la etiqueta Exchange 2010. Mostrar todas las entradas
Mostrando entradas con la etiqueta Exchange 2010. Mostrar todas las entradas

sábado, 5 de marzo de 2016

Renew expired Exchange Outlook Web App and Microsoft Outlook Certificate Este certificado ha expirado o no es válido todavía, "La fecha del certificado de seguridad es válida", "El nombre del certificado de seguridad no es válido o no coincide con el nombre del sitio"

Spanish Keywords:
 

Trabaja para Exchange 2010 también en Windows Small Business Server 2011.
 
Si están usando un certificado autofirmado estos pasos no son necesarios pues el mismo servidor de Exchange va a autorenovar los certificados.  Y es más probable qué los errores de certificados sean por qué el nombre del certificado no coincide con el publicado externamente.
 
Por ello es necesario verificar si el certificado expiro o sí el nombre de publicación no coincide.
 
Si usamos entidades certificadoras para verificar si el certificado expiró:  
  • En el sitio de owa, al dar clic en "error de certificado" obtienes algo similar
    • "Este certificado ha expirado o no es válido todavía"
 
  • Cuándo usas Microsoft Outlook para conectar al servidor de Microsoft Exchange obtienes algo similar:  Error junto a "La fecha del certificado de seguridad es válida"
 
Para reparar este error en una sesión del servidor Exchange
  1. Abre la consola de Exchange
  2. Navega en el árbol de la consola y da clic en "Configuración de Servidor" 
  3. En la parte inferior se puede identificar el certificado expirado marcado con una x roja

  • Das botón derecho en el certificado y das clic en "Renovar Certificado"
  • Se da un nombre a la solicitud de certificado 
  • El archivo se creará en la carpeta qué indiquemos después de dar clic en renovar
Una vez qué tengamos el archivo se abre el sitio web de la entidad certificadora y se pega el texto dentro del archivo siguiendo las instrucciones de:
Cuarto Paso: Crear el certificado a partir de la solicitud en la siguiente entrada de este blog
Exchange 2007 and Exchange 2010 Issue a Certificate with a Windows 2008 CA and enable RPC over HTTP

Sin embargo es más sencillo utilizar el siguiente comando de Exchange Management Shell:
  1. (para Windows 2008) Clic en Inicio, "Todos los Programas", "Microsoft Exchange 200x", abre el que dice "Exchange Management Shell"
  2. Cuándo tengas acceso al Shell de Exchange, ejecuta el siguiente comando:
    [PS] C:\Windows\System32> certreq -submit -attrib "CertificateTemplate:WebServer"
inmediatamente se solicita el path del archivo generado cert2016.req o el nombre qué le hayan puesto



A continuación les solicita la entidad certificadora a la cuál se va a renovar el certificado,

 
 
Una vez que seleccionamos la entidad certificadora (mismo Servidor de Exchange o algún servidor dentro del dominio) se genera un archivo nuevo .cer
 
 
Se regresa a la consola de Exchange y aparecerá el nuevo certificado, sin embargo es necesario dar clic derecho en el mismo y asignar los servicios IIS, POP, SMTP e IMAP.

 



Al dar clic en asignar habrá 4 confirmaciones diciendo qué se va a reemplazar el certificado a todas debe responder "sí" reemplazar o "sí a todo"

Una vez terminado los errores de OWA y Outlook desaparecerán.  Reiniciar el caché del navegador o un reinicio del PC permitirá quitar los errores

Si el error es provocado por un error en el nombre, el mensaje será como el que sigue: "El nombre del certificado de seguridad no es válido o no coincide con el nombre del sitio"
 
Para resolverlo hay que ejecutar a partir del "Tercer Paso: Crear el certificado de Exchange para que funcione con un nombre principal y varios alias internos/externos" de la siguiente entrada de este blog Exchange 2007 and Exchange 2010 Issue a Certificate with a Windows 2008 CA and enable RPC over HTTP

Con estos procedimientos evitas los mensajes de error de certificado de Microsoft Outlook cuándo se conecta a un servidor de exchange que también tiene Outlook Web App, Outlook Anywhere y donde el nombre del equipo y el del dominio interno no coincide con el del alias de internet.

Saludos
B.

 

viernes, 4 de marzo de 2016

0xc007041d Microsoft Exchange Messaging and Collaboration Services

Issue 1:
0xc007041d - El servicio no ha respondido a la petición o inicio del control en un tiempo adecuado. (EXIFS)
Dispositivo: Programa de instalación de Microsoft Exchange
Nº de Id.: c107041d
Programa de instalación de Microsoft Exchange

Source:
http://www.techrepublic.com/forums/discussions/issues-with-upgrading-from-exchange-2003-standard-to-2003-enterprise/
Ok?the problem seemed to be with Microsoft Exchange Messaging and Collaboration Services since during the reinstall it was showing a red x. Also, from Event ID 1002 as shown below the EXIFS was the main problem. I mentioned this issue again to the last MS Engineer I spoke with and it happens that today he also had a customer with similar problem on SBS 2003 but he said it is most likely the same issue I am having. So he asked to go to:
C:\Windows\System32\Drivers
Rename the following files exifs.sys and exifssmsg.dll. to *.old
After renaming both files I ran the Reinstall of MS Exchange 2003 Enterprise and everything was ok?.the ESM now shows Enterprise and I see Event ID 1217.

Issue 2: Removing Exchange 2003
After that a new error message apperas 0xc0070425
source:
https://support.microsoft.com/en-us/kb/818466
https://support.microsoft.com/en-us/kb/924170


You rename old to dll again and old to sys, and press "Continue"

The installer succesfully uninstall Exchange 2003 from an older on-premise server

domingo, 5 de julio de 2015

Experiencing an OWA HTTP 500 Error?

Source: http://www.msexchange.org/blogs/walther/news/exchange-2010-sp1-experiecing-an-owa-http-500-error-554.html

I’ve seen this issue a couple of times after applying Exchange 2010 SP1 on Client Access servers. I’m presented with the OWA FBA page and enter my credentials and then boom it throws an “HTTP 500” error instead of opening the mailbox.


You tried to issue an “IISReset /NoForce” and even rebooted the server and still see the symptom.
So the issues is typically caused by the “Microsoft Exchange Forms-Based Authentication” service being in a stopped state. Starting the service immediately fixes the issue.
Why it sometimes doesn’t start automatically after a reboot of the servers is a very good question. I’ll do some more research in order to find the root cause.
Until later,
Henrik WaltherTechnology Architect/WriterMCM: Exchange 2007 | MVP: Exchange Architecture
I’ve seen this issue a couple of times after applying Exchange 2010 SP1 on Client Access servers. I’m presented with the OWA FBA page and enter my credentials and then boom it throws an “HTTP 500” error instead of opening the mailbox.
image

image
You tried to issue an “IISReset /NoForce” and even rebooted the server and still see the symptom.
So the issues is typically caused by the “Microsoft Exchange Forms-Based Authentication” service being in a stopped state. Starting the service immediately fixes the issue.
image
Why it sometimes doesn’t start automatically after a reboot of the servers is a very good question. I’ll do some more research in order to find the root cause.
Until later,
Henrik Walther
Technology Architect/Writer
MCM: Exchange 2007 | MVP: Exchange Architecture 

jueves, 27 de febrero de 2014

ISP Blocked SMTP Traffic on port 25: How do I change the SMTP port on MS Exchange 2007/ 2010 SMTP Send Connector and how to authenticate the send conector with a hosting external user?

Spanish Keywords: El Proveedor de Internet ha  bloqueado el tráfico SMTP en el puerto 25: ¿Cómo cambio el puerto SMTP en Exchange 2007/2010 y cómo configuro la autenticación del conector de envío de Exchange con un usuario externo localizado en nuestro hosting de email.?

Los ISPs en su afán de controlar el SPAM de bots y clientes descuidados en su seguridad, bloquean de manera arbitraria el puerto SMTP saliente de organizaciones e individuos.

En el caso de organizaciones con Exchange 2007 o superior se puede utilizar los conectores de envío de exchange para no utilizar el puerto 25 como destino de las conexiones SMTP, por ejemplo en networksolutions se contrata un hosting con un relay smtp que permite conexiones al puerto 25 (smtp default), 2525 y 587.

Cómo se tiene bloqueado el tráfico SMTP 25, se agrega un Send Conector (conector de envío) normalmente autenticado con una cuenta del hosting.

1. Abre el Shell de Exchange (No la consola, la consola de Shell de Exchange), luego Escribe
Get-SendConnector
2. Obtienes así la lista con los nombres de los conectores de salida. Para cambiar el puerto de conexión predeterminado desde 25 a otros como 2525 o 26 o 587 (clásicos de algunos hosting como godaddy y networksolutions), escribe
Set-SendConnector "Conector Windows Small Business Server" -Port 587

Para agregar el usuario y password para la autenticación en el hosting se edita el conector cambiando las propiedades del conector "Windows Small Business Server" en Organization Configuration - Hub Transport>

En la pestaña Network se marca en "Route mail through the following smarthosts...", se da clic en Add y se agrega por ejemplo mail.hosting.com

Más abajo existe un botón "Change" junto a la opción "SmartHost Authentication"

ingresas las credenciales que pondrías normalmente en Outlook, y en adelante el tráfico smtp será direccionado al puerto alterno y podrá hacer relay con la combiniación de usuario contraseña especificados, saltando el bloqueo del ISP, y permitiendo integrar Exchange con un hosting externo.

Por otro lado se puede configurarse por ejemplo en Windows Small Business Server 2011 el conector POP3 apropiado para descargar el correo, y tener todos los buzones basados en Exchange localmente.


martes, 10 de abril de 2012

MAPI exception network error Migrating Exchange 2003 to 2010 on Windows SBS 2011

Fuente: http://www.experts-exchange.com/Software/Server_Software/Email_Servers/Exchange/Q_26444649.html 
Hello.

I finally found a solution.

Simply turn off the RPC filter in ISA 2004. Then is Local move request function without uninstalling ISA server.

Problem is in different RPC specification between W2k3, W2k3SP1, W2k3SP2...

I found some patches from MS, but in my case on it no longer matters.

http://social.technet.microsoft.com/Forums/en/exchange2010/thread/724ac92a-ee7f-40e0-9d7e-6d88b76dd1e5
As I migrate mailboxes from 2003 to 2010 I'm finding that when a move fails due to exceeding the baditem limit, the problem items are almost always calendar items from years back.

.\MoveMailbox –Identity user -TargetDatabase 'Mailbox Database 2012040517' -BadItemLimit 999999