Event 12014, MSExchangeTransport - Domain is setup for .Local, new Cert renewel is set to use external DNS

Microsoft Exchange could not find a certificate that contains the domain name XYZMail.XYZ.Local in the personal store on the local computer. Therefore, it is unable to support the STARTTLS SMTP verb for the connector Default XYZMAIL with a FQDN parameter
of XYZMAIL.XYZ.Local. If the connector's FQDN is not specified, the computer's FQDN is used. Verify the connector configuration and the installed certificates to make sure that there is a certificate with a domain name for that FQDN. If this certificate exists,
run Enable-ExchangeCertificate -Services SMTP to make sure that the Microsoft Exchange Transport service has access to the certificate key.
My domain is configured to be a .Local domain and my external is at a .US domain (I realize that the .Local is non preferred setup now).  I'd like to change that but it's a very large undertaking. I'm exploring my options of how to make this function
properly within Exchange 2010.  I realize I can change the Certificate, but that will only get me until October 2015, as I'll be forced to remove the .Local at that point from the Cert. 
Default XYZMAIL Is my incoming mail Receive Connector, so it cannot be easily changed.  Is there a work around to resolving this issue without massive changes?  If it helps at all, I'm also in the early stages of moving to Exchange 2013,
if that would make this resolution easier.  Any advice is greatly appreciated. 

Hi,
According to this error, please try the following step to check this issue
Run get-ExchangeCertificate via EMS.
Write down the Thumbprint of the certificate that reflect the required FQDN name of the server.
Review the current certificate that use by the Exchange server and each certificate function.
Then run Enable-ExchangeCertificate -Thumbprint 2afd26617915932ad096c48eb3b847fc7457662 -Services "SMTP"
 (The value of -Thumbprint obtained in stage 2.)
Restart the Exchange server.
If this doesn’t help, we should consider to renew certificate.
And this document for reference
https://technet.microsoft.com/en-us/library/bb510128%28EXCHG.80%29.aspx?f=255&MSPPError=-2147217396
Best Regards.
Please remember to mark the replies as answers if they help, and unmark the answers if they provide no help. If you have feedback for TechNet Support, contact [email protected]
Lynn-Li
TechNet Community Support

Similar Messages

  • App for local news cast will load then black out returning me to home page of ipad.  Worked fine until 2 days ago.  Any ideals?

    I have been using app for local news.  It has worked fine until 2 days ago.  Now,when I choose the app it looks as if it is loading then it blacks out and takes me back to the ipad screen where I chose the selection.  I have uninstalled and reistalled app same problem.  Any ideals?  This app works on my iphone and by daughters ipod.
    Thanks

    I also have the same problem with my downloaded apps not opening any more, simply closing immediately after I try to open them.
    It seems this only happens to downloaded apps, not the built-in ones.
    I have been advised to remove all my apps and reload, but I fear loosing my data.
    I tried the 2 diff kinds of shutdown/reboots, but did not help.

  • How do I remove them from my itunes account as authorized accounts for my new macbook iphone and ipad to use? I CANNOT access them can i call you?  also if i have an old itunes account on another email

    help 4 of my authorized computers crashed or are gone how do I remove them from my itunes account as authorized accounts for my new macbook iphone and ipad to use? I CANNOT access them can i call you?
    also if i have an old itunes account on another email can i transfer those songs i still have access to both emails?
    thank you

    De-authorise all, then authorise the one you still have.

  • Server & Desktop Setup for a New IT Organisation

    Hello Team,
    I got opportunity to IT setup of a new Organization which is also IT based so can anyone Guide  me which Microsoft server version(Professional or Enterprise or any other) is need to choose & which hardware Firewall is the best.
    Requirements are as below,
    1.DC,DNS & DHCP
    2.Exchange Server
    3.Application Server
    4.File Server
    5.Hardware Firewall
    Please suggest the Best Desktop Server Hardware Configuration for HYPER-V Server.
    Thanks In Advance

    Hello Team,
    I got opportunity to IT setup of a new Organization which is also IT based so can anyone Guide  me which Microsoft server version(Professional or Enterprise or any other) is need to choose & which hardware Firewall is the best.
    Requirements are as below,
    1.DC,DNS & DHCP
    2.Exchange Server
    3.Application Server
    4.File Server
    5.Hardware Firewall
    Please suggest the Best Desktop Server Hardware Configuration for HYPER-V Server.
    Thanks In Advance

  • Okay, my gateway laptop crashed about 2 months ago and Im saving up for a new Mac. I want to use my iPhone 4 on the Mac, but how do I do that with out wiping my phoen clean or without my old laptop too. And I am not tech savvy so I need step by step.

    So basically I'm a girl who can't figure out technology. I want my music and apps to stay and I want to be able to update my phone because it still has it's original software.

    Let me see if I've gotten this right! You want to remove an account from BOTH machines? Do this for your new machine first, then for the other.
    Click the Apple logo on the top left of the screen, System Preferences, Users and Groups (under Systems), unlock the lock in the window if its locked (you need to know the password), select the user that you wish to remove, and click the - sign next to the + sign for Login options. A window will pop up with some options. Select Delete this user and securely, and click 'Delete user'.
    After this, do an update from the App Store.
    Thats all there is to it.
    For the other machine repeat the process except for one thing. Before you delete the user in this case YOU, you will have to give Administrator priviledges to your son bu checking the box 'Allow user to administer this computer'.
    Do NOT do anything from Finder ... if you dont know how to fix the consequences of the problems caused.
    There is no need to unauthorize your iTunes account on your new machine. Do it on the old machine though.

  • I had an Apple account on my old Lap Top to which my iPad  and iPhone were syncd. I now have a new Lap Top and when I tried to access my apple ID on it I was asked to sign up for a new account. I can't use any of them.

    I need help. I had an apple account on my old Lap Top to which my iPad and iPhone were synced ?  I recently changed my lap top. My problem is the new lap top won't accept my apple I D it asked me to sing up for a new one which I did. After doing this I  tried to sync my iPad and phone to the new lap top which I was unable to do as they didn't recognise my new ID. HELP!!!!!! 

    cathorio wrote:
    I recently changed my lap top. My problem is the new lap top won't accept my apple I D it asked me to sing up for a new one which I did.
    I am puzzled by this. The laptop doesn't need the Apple ID - but iTunes does. I could be missing something but ....
    Why would you not be able to use your existing Apple ID and iTunes account on a new laptop? If you authorized the computer - you should be able to use your existing account - unless you already had 5 computers authorized with the existing ID - and that was why iTunes would not accept the ID. However, I'm sure that you would have received a popup message from iTunes telling you that you had reached the limit.
    I just received a new MBP and my daughter did as well. My entire family shares an Apple ID and we had no issues at all with my Apple ID and iTunes on our new computers and I did not have to sign up for a new account. Did you even try the old ID?

  • Easy filesharing setup for local network

    Hi folks,
    I'm currently trying to enable easy filesharing for my local network.
    Yesterday I installed Ubuntu 9.10 on a Laptop and it just worked.
    But I can't get filesharing to work under Arch (Chakra 64bit Beta 4) witch kde4.
    Samba is installed, the daemon is running... i cant figure out why it doesn't work.
    When I open Dolphin and go to Network I can see all the PCs in the local Network.
    After opening i can see 3 things (when looking at the system i am currently working on):
    <hostname>[00:21:5d:72:b4:84]  (has kind of a Networksymbol)
    <hostname> (has a shell-symbol)
    SFTP File Transfer on <hostname> (folder symbol with world in front of it)
    when clicking on the first one with the strange numbers, dolphin crashes.
    I dont know why! what i would like to have is a real symble filesharing for my local network i dont mind whether its nfs oder samba or whatever.
    thanks for help!

    We only want to connect/browse the server locally , so I'm a bit stumped on the need to set up DNS.
    Ideally i would like to browse the server directly by entering the IP address (and port number if need) followed by the site name.ie:
    By default, virtual hosting setup via Server Admin use name-based virtual hosting, meaning that Apache looks at the hostname in the request to work out which site configuration to use. That's why you need DNS - a way to map the numerous names to the various sites you've configured, e.g.:
    http://site1.server.local/ -> site 1
    http://site2.server.local/ -> site 2
    (where both site1.server.local and site2.server.local resolve to this server's IP address)
    It is possible to do port-based virtual hosting (where you include the port number in the URL) - to do this you leave the hostname blank in Server Admin and ensure that each site has a different port number configured.
    http://server1.local:8001/ -> site 1
    http://server1.local:8002/ -> site 2
    There's no easy way to map URI elements to different sites, e.g.:
    http://server1.local/site1 -> site 1
    http://server1.local/site2 -> site 2
    This can be done by editing Apache's configuration directly, but you can't do this via Server Admin (unless you really are just mapping to different directories and not entirely different sites).

  • Popup for credentials when connecting to OWA/ECP when using HLB DNS name

    Hi,
    We're experiencing a strange problem when connecting to OWA/ECP.
    Since a week or two, we get a popup for credentials when logging onto
    https://mail.customer.com/owa.
    When the credentials are filled in the first time, we keep receiving the popup, and can't get through.
    We're using integrated authentication internally.
    When connecting externally, we get a popup from a non domain-joined pc,  but get passed correctly to owa and ECP.
    We're using a load balancer that uses mail.customer.com, and distributes it over the 3 exchange servers.
    When connecting directly to each exchange server, we get a certificate warning (which is logic), but after confirming we get passed to ecp or owa correctly.
    Works :
    https://exchangeserver1.customer.com/owa (after receiving certificate warning)
    https://exchangeserver2.customer.com/owa (after receiving certificate warning)
    https://exchangeserver3.customer.com/owa (after receiving certificate warning)
    https://10.10.10.30/owa (after receiving certificate warning) > 10.10.10.30 is the VIP ip address used for loadbalancing
    Doesn't work :
    https://mail.customer.com/owa
    When changing the hosts file, and set mail.customer.com to point directly to one of the exchange servers, it doesn't work either.
    PS :
    So mail.customer.com gets forwarded to the VIP ip address.
    We don't experience any problems with outlook.

    Hi
    Chek if VIP FQDN is added to DNS
    Check if RpcClientAccessServer parameter using Set-MailboxDatabase for each mailbox database in the appropriate site
    Set-MailboxDatabase -RPCClientAccessServer "CASArrayFQDN"
    Change AutoDiscoverServiceInternalUrl on each CAS using Set-ClientAccessServer
    Change InternalUrl parameter on each CAS using Set-WebServicesVirtualDirectory Identity EWS*in the appropriate site
    Change the InternalURI in the Exchange Control Panel, offline address book, and Microsoft Exchange ActiveSync (through management console under server management for each appropriate CAS)
    Please mark as helpful if you find my contribution useful or as an answer if it does answer your question.That will encourage me - and others - to take time out to help you.
    Regards,
    Sathish

  • IMessage is not working for my new number it will let me use the number the phone was originally set to and my email address but since I updated to iOS 7 it won't let me select my new number; it is just in grey

    I just updated to iOS 7 and now my iMessages won't work. It just keeps saying activating iMessage but it's not doing anything; I tried signing in with my Apple ID but then it just lets me send them using my email address and the number the phone was originally set to; even though that is not my actual number that I use as I changed it through Vodafone so the SIM card now has a different number.
    It won't even let me click on my number to select it; it is just that faded grey colour and there are no ticks by it;
    And when it says "may be a standard SMS charge to activate" I'm not even getting a text through to be able to activate it anyway
    How can I fix this?

    http://theunlockr.com/2013/07/12/how-to-stop-your-email-from-showing-up-in-imess age-video/

  • Setup for a Law Firm

    Greetings:
    I'm starting a new law firm and I would like to have a Mac environment. The only "software" that I will need is Quickbooks, Microsoft Office, and maybe Parallels. Here is the setup I am looking to purchase. I would appreciate any suggestions, comments, etc.
    1) Server - Mac Mini maxed out with Snow Leopard Server;
    2) Time Capsule and/or RAID card attached to the Server (we're in Florida and we get a lot of storms that pass through, so I have to mitigate the down-time as much as possible); and,
    3) iMac workstations (maximum=10).
    I'm not an IT professional, but I have been tasked to handle the IT setup for the new law firm and I have been using Macs for the past five years. I love the product and think it can work at our small, boutique law firm.
    We will be hosting our website and email through a third-party company, so the Server will not be used for anything but calendaring with iCal, storing our clients' addresses and phone numbers in Address Book Server, and probably some iChat and Wiki pages. Most of our "law firm" software will be web based and I have already done research regarding compatibility. If there is anything else that you guys could think of, I would really appreciate it.
    Thanks for your help and suggestions.

    I run my 6-person firm off an Xserve and a bunch of iMacs. We also have an old Cube that functions as a fax server and employee timeclock.
    On the Xserve, we have the OS on one drive, and the data on a mirrored RAID. Everything gets backed up onto an external firewire drive a couple times a day. There are 3 backup drives, and they get rotated once a week so that the most recent one is off-site. We also keep an off-site clone of the boot drive. It's all protected by a Zywall firewall (which also provides VPN service for the network) and a large APC UPS.
    We also have a Dell server that runs some software that is only available on the PC side. We access it from the iMacs via Microsoft Remote Desktop and terminal services. We're considering the possibility of replacing this machine with Parallels Server when we upgrade to one of the new Intel Xserves.
    The hardware was a tremendous investment for a small firm like ours, but except for one failed ADM (which we were able to replace under warranty with zero downtime and zero lost data) it has been rock solid in 4+ years of continuous operation.
    The Server OS is a very different animal. Having been a true Mac fanatic for 15 years and having read Apple's own OS X Server Essentials from cover to cover, I thought I was ready to do everything myself. I was wrong. I picked my way through it, but it took the entirety of a long weekend to do it, and I ended up going back a few months later and starting over to correct some things I still hadn't gotten right. If you don't have server experience it might be worth hiring a consultant, at least for the purpose of getting you up and running. Whatever he charges will probably be less than the amount of billable time you'll probably lose trying to do it yourself.
    I'd have a real hard time trusting my livelihood to a Mini. An Xserve may be overkill, but I'd seriously consider at least getting a Mac Pro--even a used or refurbished one if cost is an issue.
    I don't have any personal experience with QuickBooks, although from the discussion on MacInTouch this week it sounds horrible. You may also want to read some of the posts about Address Book Server; I don't think it does what you think it will do. (I was certainly dismayed.)
    I would encourage you to take a good look at FileMaker. It's fairly easy to learn, and we keep finding new ways to use it in our practice. (So far we have databases to: check conflicts; manage open and closed files; track incoming phone calls; index and store CLE materials; automate document assembly for probates, mechanic's liens, and collections; and index and store a library of contract clauses.)
    Apple Remote Desktop is an essential tool for keeping everything running smoothly.
    With so much happening electronically, Adobe Acrobat Pro is quickly becoming as indispensable as MS Word. If you hope to be "paperless," you'll probably also want Fujitsu ScanSnaps on every desk.
    I've been watching the "cloud" services with some interest, but at this point I just can't bring myself to trust them. At this point, very few of them work by mirroring what you have stored locally, so I can't help but wonder how you get your data back when they fail.
    Starting your own firm is certainly exciting. We all do things differently, of course, but I hope some of this is helpful to you. Good luck.

  • POP3 & IMAP Email setup for both Wifi & Cell use separately...

    Hello,
    I was asked to post info about this by an iPhone support rep.
    I initially had lots of trouble setting accounts for use with both my WiFi home and office networks and for use through the ATT cell network.
    If you have a question as to how to setup email for both WiFi and Cell use, answer is you can't configure these manually and you don't want to...the phone does this automatically...and seamlessly. (you will NOT see the change in the advanced settings menu, this occurs internally, the settings appear the same)
    The problem: Accounts changing settings automatically...when manually configuring two separate accounts with the same email address but trying to setup the outgoing settings for different ports...one for WiFi (your broadband server acct / port 587) and one for Cell (cwmx.com / port 25)...THIS WON'T WORK!! My WiFi configured email accounts would automatically switch to Cellular configured email accounts as long as they had the same email address. Even though I gave them different names, the phone looks at the "actual email address" and if they are the same it changes your configuration to match the other account (it does this by matching the account that was either ON or OFF first and as soon as you match the second account to that setting (either ON or OFF) the phone switches the settings to match the first account.
    The Solution: (End of the Story first for those who have or are facing this problem): Be sure to setup the email accounts for use with your WiFi account first (and ONLY), as when you leave the WiFi area or turn off the WiFi setting the email account will automatically reconfigure itself for use with the ATT Cellular network...then the settings will switch back when you re-connect to the WiFi area(s). The settings that you will "SEE" are your setup for WiFi, this will not change even when using the Edge network (at least not what is displayed in the "advanced" menu). You will still see Port 587, even though the phone is changing setups internally and changes back once back on a WiFi network, you just don't see the changes.
    *I hope this helps!*
    (more details below for those who might be interested and _for those who may be trying to setup using COMCAST Broadband_)...
    My issue began because I could not get my Comcast setup to work for outgoing email. So I was advised to setup for the Edge port settings by an iPhone support person from ATT...this was a huge error. Because I attempted to do this it actually kept the phone from smoothly converting settings as needed. I only discovered this after resolving the actual problem with my WiFi (Comcast Broadband settings) issue which was actually the setup that MUST HAVE a user ID and Password, at least when using a Comcast Broadband account. Unlike the rest of my XP and ME computers on my networks which do not require this info, the iPhone DOES.
    Because I could not get outgoing mail to work with my broadband setup I attempted to setup two accounts for each email address...one for Cellular and one for WiFi for when I would figure out my problem...or for just sending email more quickly. This does not work as the conflict causes a nightmare. This is something the iPhone support folks should have explained but failed to do so, perhaps as they didn't know this?
    Bottom line: Let the phone do the choosing...it works great and will avoid YOU wasting TWO DAYS and more than 12 hours on the phone with iPhone Support as I did. I eventually figured the port switching issues and solutions on my own through trial and error and luckily one bright iPhone support person advised me that he knew for sure that when using the iPhone with Comcast you must setup "outgoing settings" using an "ID" and "Password" which I was provided by Comcast in only a few minutes. I don't use their emial account but I setup one just for this purpose. Once done, my email accounts began working normally. Once I resolved the conflict issues listed above the phone now works great both WiFi and Cell.
    -Rich

    fullspool,
    Comcast offers an authenticating SMTP server that should work for you on WiFi and EDGE both.
    The settings are linked in this Apple knowledge base article:
    http://docs.info.apple.com/article.html?artnum=306074
    The Comcast link is:
    http://www.comcast.net/help/faq/index.jsp?faq=Emailtop18913
    From that link the settings are:
    Your email address: [email protected]
    The email server type (POP)
    Incoming mail server: mail.comcast.net
    Outgoing mail server: smtp.comcast.net
    With SSL on for both incoming and outgoing.
    Hope this helps,
    Nathan C.

  • How do I save my setup for Photoshop Elements 11 that I created for category - sub-category - Keyword Tags

    how do I save my setup for Photoshop Elements 11 that I created for category - sub-category - Keyword Tags  I would like to use the setup for other Photoshop Elements

    First are you going to use the same keyword/categories hierarchy in the same Elements version (or newer)? If so, using the backup/restore process will also restore your hierarchy.
    If you want to create the same hierarchy in an older Elements version, it's possible to save that hierarchy in a special text file and to restore it in the new catalog in the destination computer. It's also possible to restore it in another catalog in the same computer.
    Look at the title bar of the keywords panel. Next to the '+' sign on the right, you see a small icon which opens a menu offering the option to save or to restore the text file.

  • Best Setup for Platinum X-Fi w/ Logitech Z-5500?

    ? Hi all,
    Pardon my ignorance in this subject as audio is not my forte. After a bit of research on my own I've got a lot of conflicting information so I'm hoping things could be clarified for me by some kind soul that may also use these speakers:
    I just received my Logitech Z-5500 speakers to compliment my X-Fi Platinum. Naturally I'd like to get the best sound from them for PC gaming and music. I have them currently connected via Fiber Optic to the front panel S/PDIF port. On the pod I have it set to Optical Input/Stereo x2. In the Creative console I have it set to use External Decoder for DTS/Dolby. Music sounds good to my ears. Is this the best way however to get the best quality? Are there other settings I should be aware of in Vista or elsewhere? More importantly I suppose, is there any difference connecting to the front panel port instead of the onboard flexijack?
    Any help would be much appreciated!?

    Sokarsg check @PurePC
    Valdamax
    here is link http://buy.soundblaster.com/
    yes every sound card on the market is doing DDL/DTS via software but these are encoders and decoders DD/DTS are also via software but it don't matter at all.
    Im using this combo for movies DTS Interacti've + AC3filter for decoding, works great and sound as good as standard decoders in X-fi or even better as it has many more options to play with and the DAC in Z-5500 it's the same class as X-fi dac but has 6 channels instead of 8ch.
    For me, sound is better over spdif with this speakers, sound it's clearer and sharper and I like that
    Yes it's doing true 5. as long? as it gets 5. signal for example from game or movie encoded in 5. but if you play stereo sound it will upmix stereo to 5./7. through CMSS or DTS Neo and you will get multichannel output so X-fi is outputting true 5. and now will even do 5. over spdif with DDL/DTS pack a year ago X-fi could only output stereo over spdif?
    sorry for my English
    Message Edited by Art385 on 03-08-2009 0:49 PMMessage Edited by Art385 on 03-08-2009 02:00 [email protected]

  • Use my old SRX400 as an AP for my new WRT300N

    Anyone know if I can use my old wireless router as an AP for my new one?  I was going to put it at the other side of my house to strengthen the wireless range on my property.  FYI - I have my new 300N setup for Mixed.

    Well....you cannot use the srx400 to talk wirelessly with the wrt300n....however , you can run an ethernet cable between the two routers....set the ip add of the srx400 to 192.168.1.2 and disable it's dhcp....

  • Verizon Home Page Local News

    I have set my local news location to my town.  It accepts it and then provides local news for that area, The next day when I check for local news in my area there is local news from some other city in my state or another state, WHAT'S UP WITH THAT? Everytime I reset it it defaults to some other place. COME ON MAN!!

    I'm pretty sure that feature has been a bit buggy since the new website was pushed out (well, since MyVerizon 2.0). But just to be sure, you aren't clearing your browser cookies out after every session or at the end of the day are you? That setting should be set via cookie.
    ========
    The first to bring me 1Gbps Fiber for $30/m wins!

Maybe you are looking for