Problem: when trying to access exchange control panel, after entering credentials server returns error 500. If you look to event viewer you find the errors like this:
System.InvalidOperationException: Cannot load Counter Name data because an invalid index 'W3SVC_W3WP' was read from the registry.
Login to OWA is working normally.
Solution: On server run command prompt with administrative privilegies and run command:
lodctr /R
If you get an error, try to run again. After it finished with success, restart IIS with command
iisrestart
After that try to login to ECP.
Showing posts with label exchange. Show all posts
Showing posts with label exchange. Show all posts
Friday, September 23, 2016
Wednesday, June 18, 2014
Exchange 2013. How to stop disclaimer from appearing in replies.
To stop disclaimers to appear in replies, just add some random generated string to disclaimer and add exception to that rule. That special string could be the same color as background, so it will be invisible in message body. You can add just some text from the disclaimer to exception condition, but if that text will be in message body then disclaimer will not be added to that message.
To add rule login to exchange admin center, select "mail flow" -> "rules", click "add"->"Apply disclaimers..."
Enter name and condition when disclaimer should be applied, select action "Append disclaimer...", enter text,and at the end add something like "<span style="font-size:10.0pt; color:#FFFFFF">2578AABHKJ213</span>" (there 2578AABHKJ213 random generated string and html tags make text size 10pt and text color is white, so it will be invisible on white background)
Next press "more options..." link, select "add exception if subject or body contains..." and add "2578AABHKJ213"
To add rule login to exchange admin center, select "mail flow" -> "rules", click "add"->"Apply disclaimers..."
Enter name and condition when disclaimer should be applied, select action "Append disclaimer...", enter text,and at the end add something like "<span style="font-size:10.0pt; color:#FFFFFF">2578AABHKJ213</span>" (there 2578AABHKJ213 random generated string and html tags make text size 10pt and text color is white, so it will be invisible on white background)
Next press "more options..." link, select "add exception if subject or body contains..." and add "2578AABHKJ213"
Thursday, April 10, 2014
Exchange 2013 unable to send email.
After we changed ISP our exchange server was unable to sent emails to some recipients. The error message it get from other servers was "421 Refused. Your reverse DNS entry does not resolve.". The problem was that ISP does not wrote PTR records in their DNS servers. When DNS records was ok. Problem was still there.
Short investigation show that we had 2 IP adresses on routers WAN interface, and default IP was not the same as dns record points to. The solution is to add NAT rule on the router so that source IP of the exchage server was changed to correct IP.
Short investigation show that we had 2 IP adresses on routers WAN interface, and default IP was not the same as dns record points to. The solution is to add NAT rule on the router so that source IP of the exchage server was changed to correct IP.
Exchange 2013 how to change banner message
get connectors list:
Get-Receiveconnector
set connector banner:
Set-Receiveconnector "connector name" -Banner "220 mail.domain.com"
check banner:
Get-Receiveconnector "connector name" | fl
delete banner:
Set-Receiveconnector "connector name" -Banner $null
Get-Receiveconnector
set connector banner:
Set-Receiveconnector "connector name" -Banner "220 mail.domain.com"
check banner:
Get-Receiveconnector "connector name" | fl
delete banner:
Set-Receiveconnector "connector name" -Banner $null
Thursday, November 7, 2013
How to enable and configure spam filter on exchange 2013
In Microsoft Exchange Server 2013, the following anti-spam agents are available in the Transport service on Mailbox servers, but they are not installed by default:
Use the shell to run Install-AntispamAgent.ps1 script
& $env:ExchangeInstallPath\Scripts\Install-AntiSpamAgents.ps1
Then close power shell, restart Transport Service and open power shell again.
Specify SMTP servers of your organization
Set-TransportConfig -InternalSMTPServers @{Add="<ip address1>","<ip address2>"...}
example:
Set-TransportConfig -InternalSMTPServers @{Add="10.0.1.22","10.0.1.23"}
check servers list:
Get-TransportConfig | Format-List InternalSMTPServers
InternalSMTPServers : {10.0.1.22, 10.0.1.23)
to clear list set it to $null
Set-TransportConfig -InternalSMTPServers $null
to remove item from list:
Set-TransportConfig -InternalSMTPServers @{Remove="10.0.1.23"}
senders can be blocked on tree different block lists
check bloked senders list
Get-SenderFilterConfig | fl BlockedSenders, BlockedDomains
you should get somthing similar to:
BlockedSenders : {spammer@domain.com, spammer2@domain.com}
BlockedDomains : {spammers.com}
Set-SenderFilterConfig -BlankSenderBlockingEnabled $true
this is usually used to block NDR, received from internet.
Then enable feature of recipient filter config
Set-RecipientFilterConfig -BlockListEnabled $true
Populate blocked recipients list
Set-RecipientFilterConfig -BlockedRecipients @{Add="internal@domain.com", "internal2@domain.com"}
Check that list populated:
Get-RecipientFilterConfig | fl BlockedRecipients
BlockedRecipients : {internal@domain.com, internal2@domain.com}
that blocks all mails to non existing users, but it could expose all directory emails for spammers that use directory harvesting. To protect from directory harvesting we can set delay between send email requests.
get list of receive connectors:
Get-ReceiveConnectors
get tarpit interval of connector:
Get-ReceiveConnector "WIN2012-TEST\Default Frontend WIN2012-TEST" | fl tar*
TarpitInteval : 00:00:05
Set interval to 6 seconds
Set-ReceiveConnector "WIN2012-TEST\Default Frontend WIN2012-TEST" -TarpitInterval 00:00:06
- Content Filter agent
- Sender ID agent
- Sender Filter agent
- Recipient Filter agent
- Protocol Analysis agent for sender reputation
1. Instalation
Use the shell to run Install-AntispamAgent.ps1 script
& $env:ExchangeInstallPath\Scripts\Install-AntiSpamAgents.ps1
Then close power shell, restart Transport Service and open power shell again.
Specify SMTP servers of your organization
Set-TransportConfig -InternalSMTPServers @{Add="<ip address1>","<ip address2>"...}
example:
Set-TransportConfig -InternalSMTPServers @{Add="10.0.1.22","10.0.1.23"}
check servers list:
Get-TransportConfig | Format-List InternalSMTPServers
InternalSMTPServers : {10.0.1.22, 10.0.1.23)
to clear list set it to $null
Set-TransportConfig -InternalSMTPServers $null
to remove item from list:
Set-TransportConfig -InternalSMTPServers @{Remove="10.0.1.23"}
2. Sender filtering configuration
2.1 Sender block list
Set-SenderFilterConfig -Enabled $truesenders can be blocked on tree different block lists
- blocked senders
- blocked domains
- blocked domains and subdomains
check bloked senders list
Get-SenderFilterConfig | fl BlockedSenders, BlockedDomains
you should get somthing similar to:
BlockedSenders : {spammer@domain.com, spammer2@domain.com}
BlockedDomains : {spammers.com}
2.2 Empty sender blocking
Set-SenderFilterConfig -BlankSenderBlockingEnabled $true
this is usually used to block NDR, received from internet.
3. Recipient filtering
Set-RecipientFilterConfig -Enabled $trueThen enable feature of recipient filter config
Set-RecipientFilterConfig -BlockListEnabled $true
Populate blocked recipients list
Set-RecipientFilterConfig -BlockedRecipients @{Add="internal@domain.com", "internal2@domain.com"}
Check that list populated:
Get-RecipientFilterConfig | fl BlockedRecipients
BlockedRecipients : {internal@domain.com, internal2@domain.com}
3.1 Block recipients that is not listed in global address book.
Set-RecipientFilterConfig -RecipientValidationEnabled $truethat blocks all mails to non existing users, but it could expose all directory emails for spammers that use directory harvesting. To protect from directory harvesting we can set delay between send email requests.
get list of receive connectors:
Get-ReceiveConnectors
get tarpit interval of connector:
Get-ReceiveConnector "WIN2012-TEST\Default Frontend WIN2012-TEST" | fl tar*
TarpitInteval : 00:00:05
Set interval to 6 seconds
Set-ReceiveConnector "WIN2012-TEST\Default Frontend WIN2012-TEST" -TarpitInterval 00:00:06
Monday, July 29, 2013
Import Export menu is grayed out in Outlook
This is usually happens with localized version of Outlook. Greyed menu preventing from making backups, import/export email and adress book. Solution is easy:
- Go to Control panel
- Clock, Language and region
- Region and language
- Administrative tab
- On Lnguage for non-Unicode programs press "Change system locale.."
- Select the same locale as selected in outlook.
Thursday, July 11, 2013
Exchange 2013 EAC - Blank page after login
After deleting or assigning other Exchange certificate, you can't open emc page (blank page).
netsh http show sslcert
save output
delete error causing cert:
netsh http delete sslcert ipport=0.0.0.0:444
assign right cert:
netsh http add sslcert ipport=0.0.0.0:444 certhash=4849849849884484884848 appid="{4dc3e181-e1445554554155455}"
-> you can copy certhash and appid from the other applied certs..
netsh http show sslcert
save output
delete error causing cert:
netsh http delete sslcert ipport=0.0.0.0:444
assign right cert:
netsh http add sslcert ipport=0.0.0.0:444 certhash=4849849849884484884848 appid="{4dc3e181-e1445554554155455}"
-> you can copy certhash and appid from the other applied certs..
Exchange 2013 increasing rules quota
To set the rules quota to 256kb for the user dummy run
[PS] C:\>get-mailbox dummy|set-mailbox -rulesquota 256kb
To make sure that the user has got the new rules size run
[PS] C:\>get-mailbox dummy|fl rulesquota
It should return
RulesQuota : 256KB
To set the quota for all users run
[PS] C:\>get-mailbox|set-mailbox -rulesquota 256kb
To get the quota of all users run
[PS] C:\>get-mailbox|fl rulesquota, alias
[PS] C:\>get-mailbox dummy|set-mailbox -rulesquota 256kb
To make sure that the user has got the new rules size run
[PS] C:\>get-mailbox dummy|fl rulesquota
It should return
RulesQuota : 256KB
To set the quota for all users run
[PS] C:\>get-mailbox|set-mailbox -rulesquota 256kb
To get the quota of all users run
[PS] C:\>get-mailbox|fl rulesquota, alias
Subscribe to:
Posts (Atom)