Forum Widgets
Latest Discussions
Discontinuation of support for Session Border Controllers in Exchange Online Unified Messaging
In July 2018, we will no longer support the use of Session Border Controllers (SBC) to connect 3 rd Party PBX systems to Exchange Online Unified Messaging (UM). We're making this change to provide a higher quality of service for voicemail, using Exchange standard and Skype for Business protocols. Customers considering a new deployment of this scenario should be aware that they will have a little less than a year to complete one of the migrations below. Customers with existing deployments remain fully supported until July 2018, including moving voicemail-enabled mailboxes from Exchange on-premises and voicemail-enabling new mailboxes. The following configurations are not affected by this change: Skype for Business Server (on-premises) connected to Exchange Online UM 3 rd party voicemail solutions that deposit voicemail messages into Exchange Online mailboxes through APIs, rather than an SBC connection All forms of Exchange Server UM (on-premises) There are several alternative solutions for impacted customers, one or more of which must be implemented prior to July 2018. Option #1: Complete migration from 3 rd party on-premises PBX to Office 365 Cloud PBX. Option #2: Complete migration from 3 rd party on-premises PBX to Skype for Business Server Enterprise Voice on-premises. Option #3: For customers with a mixed deployment of 3 rd party PBX and Skype for Business, connect the PBX to Skype for Business Server using a connector from a Microsoft partner, and continue using Exchange Online UM through that connector. For example, TE-SYSTEMS anynode UM connector can be used for that purpose. Option #4: For customers with no Skype for Business Server deployment or for whom the solutions above are not appropriate, implement a 3rd party voicemail system. Although only a small number of customers are affected by this change, we know that planning for changes to voice platforms requires time to evaluate options, and to implement the selected option. We encourage you to start this process soon. For more information, please visit the following pages: Exchange Online Unified Messaging Exchange Online UM support for 3 rd party PBX via SBC Cloud PBX Skype for Business Server Enterprise Voice Note: this post is also on the Exchange Team (EHLO) blog.43KViews0likes62CommentsExchange Server error in '/owa' application
ASSERT: HMACProvider.GetCertificates:protectionCertificates.Length<1 Description: An unhandled exception occurred during the execution of the current web request. Please review the stack trace for more information about the error and where it originated in the code. Exception Details: Microsoft.Exchange.Diagnostics.ExAssertException: ASSERT: HMACProvider.GetCertificates:protectionCertificates.Length<1 Source Error: An unhandled exception was generated during the execution of the current web request. Information regarding the origin and location of the exception can be identified using the exception stack trace below. Stack Trace: [ExAssertException: ASSERT: HMACProvider.GetCertificates:protectionCertificates.Length<1] Microsoft.Exchange.Diagnostics.ExAssert.AssertInternal(String formatString, Object[] parameters) +241 Microsoft.Exchange.Clients.Common.HmacProvider.GetCertificates() +478 Microsoft.Exchange.Clients.Common.HmacProvider.GetHmacProvider() +143 Microsoft.Exchange.Clients.Common.HmacProvider.ComputeHmac(Byte[][] messageArrays) +16 Microsoft.Exchange.HttpProxy.FbaModule.SetCadataCookies(HttpApplication httpApplication) +826 Microsoft.Exchange.HttpProxy.FbaFormPostProxyRequestHandler.HandleFbaFormPost(BackEndServer backEndServer) +2776 Microsoft.Exchange.HttpProxy.FbaFormPostProxyRequestHandler.ShouldContinueProxy() +20 Microsoft.Exchange.HttpProxy.ProxyRequestHandler.BeginProxyRequestOrRecalculate() +229 Microsoft.Exchange.HttpProxy.ProxyRequestHandler.InternalOnCalculateTargetBackEndCompleted(TargetCalculationCallbackBeacon beacon) +1379 Microsoft.Exchange.HttpProxy.<>c__DisplayClass3f.<OnCalculateTargetBackEndCompleted>b__3e() +311 Microsoft.Exchange.Common.IL.ILUtil.DoTryFilterCatch(TryDelegate tryDelegate, FilterDelegate filterDelegate, CatchDelegate catchDelegate) +35 Microsoft.Exchange.HttpProxy.Diagnostics.SendWatsonReportOnUnhandledException(MethodDelegate methodDelegate, LastChanceExceptionHandler exceptionHandler) +121 Microsoft.Exchange.HttpProxy.ProxyRequestHandler.CallThreadEntranceMethod(MethodDelegate method) +69 [AggregateException: One or more errors occurred.] Microsoft.Exchange.HttpProxy.ProxyRequestHandler.EndProcessRequest(IAsyncResult result) +416 System.Web.CallHandlerExecutionStep.InvokeEndHandler(IAsyncResult ar) +231 System.Web.CallHandlerExecutionStep.OnAsyncHandlerCompletion(IAsyncResult ar) +172SolvedNikolas_AthanasakisJul 14, 2021Copper Contributor332KViews3likes56CommentsError when trying to modify or create Exchange Online connectors
Hi All, Getting this error when trying to update an existing EXO transport connector or creating a new. Sounds like backend and License SKU specific to me. Anyone else experiencing the same? Error executing request. For this service offering, you can’t create or update inbound connectors in your organization I've tried the following with no success. 1. Change existing connetcor/Create a new using PowerShell - Same error returned 2. Use different Admin accounts with GA role assigned 3. Use different browsersSolvedmanojvidurangaJan 30, 2023Iron Contributor35KViews0likes52CommentsThe question nobody dares to ask! How do you create a new user in a hybrid environment.
Hi, the last couple fo days the question how to create a new user in a hybrid exchange environment is floating around in my head. Most of the time when i create a user i create a onpremise account in active directory sync this over to office 365. The next step i perform is the creation of a mailbox onprem in exchange forthe user i have created. When i have done this i migrate the user mailbox to office 365, i assign a license and the user is good to go. Is this the best way to do this? It seems more logical to create a user in AD sync this over to office365 and give them a Exchange online license. so he or she will get a mailbox directly in Office 365. Can anyone give me an explanation what is best practice for creating a new User in a hybrid exchange environment when al the users will be synced to office365. Thanks in advance!Solved66KViews3likes44CommentsOutlook - Certificate has been revoked
Hi all, not sure if anyone has experienced it, but we are getting tthis error multiple times a day when using outlook. It says : Outlook.office365.com Information you Exchange with this site cannot be viewed or changed by others. However, there is a problem with the sites security certificate. The security certificate for this site has been revoked, This site should not be trusted, If we dont click OK, outlook cannot send or receive emails. Sometime this window is hidden behind and therefor are not aware of it during the day. if we click view certificate, it looks legit and everything seems to be ok. If enter OWA, we get same certificate(according to thumbprint), but there is no warning or error, We have created a case with Exchange online team, but they say there are no error from their side and its internal network issue. We have cleared certificate revoke list from our DNS servers without any help. Any ideas on how to troubleshoot this further? We use Outlook 2016 with latest updates and have all mailboxes in Exchange online. I only have my archive mailbox attached to my outlook, Thanks!Off2w0rkDec 06, 2016Brass Contributor146KViews1like40CommentsCan't make a goup calendar readonly anymore with Powershell
Hi, We have some groups where regular group members are not allowed to make changes to the group calendar. I was able achieve this with Powershell as described in this post:Calendar permissions in an Office 365 Group - Microsoft Community More info about the Set-UnifiedGroupcommand is found here:Set-UnifiedGroup (ExchangePowerShell) | Microsoft Learn All of a sudden I now am only able to read the settings and can't change them anymore. So this still works: Get-UnifiedGroup -Identity "MYGROUP" -IncludeAllProperties | Format-List *Calendar* But this gives an error: Set-UnifiedGroup "MYGROUP" -CalendarMemberReadOnly The error is: Write-ErrorMessage : Object reference not set to an instance of an object. The strange thing about this, is that I am able to change other attributes, like: Set-UnifiedGroup -Identity "MYGROUP" -AccessType Private I use an account with Global Admin rights to execute the commands and we have an educational tenant. What is going wrong here?PaulKoningJun 19, 2023Brass Contributor8.3KViews1like39CommentsExchange Hybrid Deployment single forest multiple email domains
Hi all, I have a question. I have 22 email domains on prems. ( Three EXC 2016). Points to a third-party mail scan. One primary domain and two upn Sufix added to local AD. My all users are synchronized to office 365 based on UPN. The upn Sufix based users mailboxes are online. While primary domain based mailboxes are onpremises with 17 email domains being the alias and email addresses. I enabled the hybrid component in sync server. Now when I add my email domains in office 365 and verify them, they become Authoritative and break the mailflow. I need to run hcw so I'm also verifying my email domains. Should I verify them and set them internal relay before running hcw or is there anything else I am missing? Thanks Far.8.5KViews0likes35CommentsURL Detonation Reputation - How do you like it?
I personally have found this detection technology to be a huge pain in the buttocks. To me, this feature doesn't really look at specific threats or risks, it just says "You cannot do anything that involves this domain name". And with that analogy, "involves" translates to any of the following: Domain is in the subject or body One of the included recipient addresses to which the message is addressed uses the domain. One of the recipients who show in the body of the email due to it being a conversation/thread, uses that domain in their address. An attachment includes that domain within its text (PDF, Word, Excel, TXT, all personally observed by me). These things get blocked as "High confidence phish". To me, they are not that whatsoever, until the message itself is doing some of the "phish" verb. This feels like an overstep on the verdict and I'd prefer they come up with a new name for the detection type, as well as a new drop down box for us to choose between MoveToJunk or Quarantine. Most times I've observed this feature "saving" clients, it's a pain in the butt for the client. I will point out the one improvement I've seen since I started belly-aching over this - it is that Microsoft now puts the bad URL/domain from within the attachments, into the list of URLs in the email entity page within M365 Defender portal. So there is at least that there now, which adds the improvement of not having to go through MS Support to find out what is the supposed bad-rep URL. Would like to know if anyone else finds this feature as a pain for the most part, and hear any other suggestions, or just confirmations about my suggestion (new category of detection so we don't have to treat these things like (HC)phish).SolvedJeremyTBradshawOct 03, 2023Steel Contributor44KViews2likes31CommentsAggregate availability from multiple calendars
I prefer to keep personal appointments onone calendar (on Outlook.com) and work appointments on my work calendar (O365 Exchange), but Exchange only seems to use my work calendar to show my availability to other people in my organization. I'd like to have a way to aggregate my availability from multiple calendar sources, the way that you can overlay multiple calendars in Outlook. It's not really a matter of me seeing all my appointments, because I can easily see everything in a consolidated view in Outlook on my desktop or mobile; it's more about letting others in my organization know when I'm free to meet. I know there is (used to be?) a "free/busy server" option in Outlook client, but I feel like this should be something that can be set on my Exchange profile, so that it doesn't matter what client I'm using. Aside from that kind of option, I guess I'd guess I might be OK with a solution that duplicates anything added to my personal calendar as a block on my work calendar or vice versa, even if it's an IFTTT-type thing. I saw a similar post that mentions some 3rd-party tools from CodeTwo and Connecting Software, but given this is just a preference of mine, I'm probably not going to spend a lot on a workaround. TLDR: Is there a better approach to showing consolidated availability than manually duplicating my appointments between calendars? Thanks!Greg EdwardsDec 14, 2017Iron Contributor116KViews11likes29CommentsNo longer able to see users Inbox rules through EAC Online?
Hi, I must have missed an announcement but just doing some routine maintenance and I see that the "View another mailbox" in EAC has changed considerably. The most noticeable change is that you can no longer see the users Inbox rules. The old days: And now you get this: Usually the first thing to do if an email account is compromised is checking here to see if there have been any rules setup to spoof emails etc. With this functionality removed this does take a very useful tool from our tool box. Has anyone else seen this change? more so does anyone know if there is another way to get inbox rule information for a user? Cheers RobSolvedRob-CTLAug 07, 2023Iron Contributor20KViews1like27Comments
Resources
Tags
- exchange online2,412 Topics
- Exchange Server2,201 Topics
- office 3651,185 Topics
- hybrid818 Topics
- 2016720 Topics
- outlook715 Topics
- admin642 Topics
- 2013274 Topics
- 2010158 Topics
- 201968 Topics