Outlook Anywhere Audit Report
Hi,
Is there anywhere to track Outlook Anywhere access report?
Please take a look at this well described blog that would be a good approach to track outlook anywhere access report :
http://gsexdev.blogspot.in/2010/02/outlook-anywhere-logon-report.html
http://gsexdev.blogspot.in/2009/11/reporting-on-outlook-anywhere-users.html
Carlo
Similar Messages
-
Hi,
I have a Windows 2008R2 Updated / Exchange 2010 SP3 Rollup 7 (Role CAS,HUB,MBX) with only external users connection : ActiveSync, EWS, OWA, Outlook Anywhere.
4 processors and 24Go of memory are allocated to the Exchange server VM (VMWare).
Netscaller is used as reverse proxy in DMZ.
There is around 500 users connecting with Outlook Anywhere to Exchange. Users are using Outlook 2010 or 2013 with last updates and cache mode enabled (owner mailbox and delegations). Users are location all around the world (around 50 sites). So no users
is domain integrated.
Users are complaining about disconnection, and Outlook freeze (Outlook is not responding). This happened at any point of time during the day, and for different kind of actions (Outlook is just open, Try to press Send button, try to press Transfer button).
The freeze happened randomly for users. I have seen the problem, and Outlook sometimes freeze during few seconds, sometimes during 5 minutes without any reason. (no file copy, no action asked...)
I noticed that freeze are matching with the Outlook event id 26 on the workstation (Connection to the Microsoft Exchange Server has been lost. Outlook will restore the connection when possible). Also, at the same time, I can see around 200 lines in
the IIS HTTPERR Log (Exchange Server : C:\Windows\System32\LogFiles\HTTPERR) the following lines:
2014-11-20 10:39:43 NETSCALLERIP PORT EXCHANGEIP 443 HTTP/1.1 RPC_OUT_DATA /rpc/rpcproxy.dll?EXCHANGEFQDN:6004 - 1 Connection_Dropped_List_Full MSExchangeOutlookAnyWhere
2014-11-20 10:39:43 NETSCALLERIP PORT EXCHANGEIP 443 HTTP/1.1 RPC_OUT_DATA /rpc/rpcproxy.dll?EXCHANGEFQDN:6001 - 1 Connection_Dropped_List_Full MSExchangeOutlookAnyWhere
What has been already checked :
Check IOPS: seems to be normal
Check Processor consumption: seems to be normal
Netscaller TimeOut = 8h
Bandwidth where the server is hosted : more than enough
Bandwidth of client internet connection : Traffic do not increase when the problem happen
Firewall TimeOut : seems to be ok
Firewall Protocol Filter : seem to be ok
Workstation MTU : Ok : ping -l -f 1472 = Ok, so best MTU = 1500 (1472+28)
Outlook Profile : Clean Up OST, sync of all folders, download address book.
wireshark on workstation : nothing seems to be wrong but difficult to analyse, so I maybe missed something.
Configuration change on Exchange :
HKLM\Software\Policies\Microsoft\Windows NT\RPC\MinimumConnectionTimeout = 120
Disable throttling Policy
Adsiedit, change Max Memory alloc for ESE : msExchESEParamCacheSizeMax = 327680 (around 10GB) msExchESEParamCacheSizeMin = 131072 (around 4GB
Adsiedit, change Min Memory alloc for ESE : msExchESEParamCacheSizeMin = 131072 (around 4GB)
Host file : add hostname and FQDN of Exchange Server
Disable IPV6 : HKLM\System\CurrentControlSet\services\TCPIP6\Parameters\DisabledComponents = HEX 0xffffffff
IIS : system.applicationHost : webLimits : minBytesPerSecond = 0
Create dedicated IIS AppPool MSExchangeOutlookAnyWhere for /RPC and /RPCWithCert
AppPool MSExchangeOutlookAnyWhere : Regular Time Interval (minutes) : 0
AppPool MSExchangeOutlookAnyWhere : Queue Length : 20000 (Should be the solution but not working)
netsh int tcp set global chimney=disabled
netsh int tcp set global rss=disabled
HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\MaxUserPort = 65534
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\KeepAliveTime : 300000
HKLM\SYSTEM\CurrentControlSet\Services\Netlogon\Parameters\MaxConcurrentAPI = 150
IIS machine.config : <system.web> : requestQueueLimit="65535"
Microsoft.Exchange.RpcClientAccess.Service.exe.config <add key=”LoggingTag” value=”ConnectDisconnect, Logon, Failures, ApplicationData, Warnings, Throttling”/>
Uninstall All agents (except Backup Agent)
Uninstall Antivirus
Will be done tonight :
Exchange and DCs : HKLM\SYSTEM\CurrentControlSet\Services\Netlogon\Parameters\MaxConcurrentAPI = 100
Exchange IIS : Increase AppPool MSExchangeOutlookAnyWhere Queue Length to 40000
Exchange : decrease HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\KeepAliveTime to 60000
You're welcome if you have any idea.
Thanks.
Jo.Hi,
Thanks for your answer. Here are my comments :
1. Disable IPv6 then restart your Exchange server
Already done since the install of Exchange.
2. Confirm if there is any NLB device in your environment, please remove NLB firm client server
There is only one Exchange server in the Org. So no NLB installed on the server (NLB is used on the Netscaller used as a reverse proxy). In Addition, the article apply for Windows 2008, or the server is installed with Windows 2008 R2.
3. If there is a proxy server configured in IE, please uncheck it
I guess you are talking on the client side. There is no proxy on the client side, Outlook Anywhere connect directly to the internet.
4. Collect more error logs in Event Viewer in Exchange and collect the IIS logs in
folder “c:\inetpub\logs\logfiles\W3SVC1”
the error I reported in the description is from IIS, and always appear when end users report a problem. In W3SVC1 file, there is also errors, but those one appear even if Outlook clients are working fine. So I cannot isolate any specific
error. The most common from W3SVC1 log are :
2014-11-25 08:02:17 EXCHANGEIP POST /autodiscover/autodiscover.xml - 443 - NETSCALLERIP Microsoft+Office/15.0+(Windows+NT+6.1;+Microsoft+Outlook+15.0.4667;+Pro)
401 1 2148074254 0
2014-11-25 08:02:17 EXCHANGEIP POST /EWS/Exchange.asmx - 443 - NETSCALLERIP Mac_OS_X/10.9.5+(13F34)+CalendarAgent/176.2
401 1 2148074254 0
2014-11-25 08:02:18 EXCHANGEIP POST /EWS/Exchange.asmx - 443 - NETSCALLERIP Microsoft+Office/14.0+(Windows+NT+6.1;+Microsoft+Outlook+14.0.7128;+Pro)
401 1 2148074254 0
Regards,
Jo. -
Autodiscover and Outlook Anywhere return http status 401
Hi, I'm having issues with Autodiscovery (externally) and Outlook Anywhere for some users on our Exchange 2010 (SP3, RU2) setup. Just for information, we have Exchange servers at two AD sites (same forest / domain) with each site having 2 combined client
access / hub transport servers and 3 mailbox servers (with 2 stretched DAG's across both sites). Site A is internet facing, but site B isn't.
Autodiscovery
Internally, it's working fine (using the Test E-mail AutoConfiguration option within Outlook 2010). But externally (using the Microsoft TestConnectivity site), autodiscovery fails, returning the following:
Attempting to send an Autodiscover POST request to potential Autodiscover URLs.
Autodiscover settings weren't obtained when the Autodiscover POST request was sent.
+Additional Details
Elapsed Time: 1783 ms.
+ Test Steps
The Microsoft Connectivity Analyzer is attempting to retrieve an XML Autodiscover response from URL https://autodiscover.company.com/AutoDiscover/AutoDiscover.xml
for user [email protected].
The Microsoft Connectivity Analyzer failed to obtain an Autodiscover XML response.
+Additional Details
An HTTP 401 Unauthorized response was received from the remote Unknown server. This is usually the result of an incorrect username or password. If you are attempting to log onto an Office 365 service, ensure you are using your
full User Principal Name (UPN).
Headers received:
Content-Type: text/html
Server: Microsoft-IIS/7.5
WWW-Authenticate: Negotiate,NTLM,Basic realm="autodiscover.company.com"
The odd thing is, if I browse to the autodiscover file location (externally), then I'm prompted for credentials. When I enter the same credentials that I input into the Microsoft connectivity analyser, I do actually get the correct https status 600 response.
Also, within EMS, when I run "Test-OutlookWebServices" on Client Access servers in site B, I see the following results...
RunspaceId : 5c80ec49-f6f8-4f7a-ae63-4ed61a3c966e
Id : 1104
Type : Error
Message : The certificate for the URL https://ExchServer.domain.local/autodiscover/autodiscover.xml is incorrect. For SSL to work, the certificate
needs
to have a subject of ExchServer.domain.local, but the subject that was found is webmail.Company.com. Consider correcting service discovery,
or installing a correct SSL certificate.
RunspaceId : 5c80ec49-f6f8-4f7a-ae63-4ed61a3c966e
Id : 1113
Type : Error
Message : When contacting https://ExchServer.domain.local:443/autodiscover/autodiscover.xml received the error The remote server returned
an error:
(500) Internal Server Error.
RunspaceId : 5c80ec49-f6f8-4f7a-ae63-4ed61a3c966e
Id : 1123
Type : Error
Message : The Autodiscover service couldn't be contacted.
However - I can't see where Exchange has pulled the "...domain.local" address from for Autodiscovery. Both Get-AutodiscoveryVirtualDirectory and Get-ClientAccessServer both report the correct URLs/URIs with the FQDN of Company.Com (which are on
the GoDaddy certificate we use both internally and externally).
Outlook Anywhere
Whether my issues with Outlook Anywhere are related to Autodiscover, I'm not sure. Users who's mailbox is located at Site A (internet facing) are fine, and Outlook Anywhere works great. But users who's mailbox is at Site B, can't use Outlook Anywhere (Starting
Outlook in RPCDiag mode shows that it tries to connect, and sometimes establishes a connection for a couple of seconds, then disconnects completely).
Running "Test-OutlookConnectivity -Protocol:http" on a Client Access server at Site B, passes all but the last scenario (Mailbox::Logon), which throws up the following error:
RunspaceId : 5c80ec49-f6f8-4f7a-ae63-4ed61a3c966e
ServiceEndpoint : ExchServer.domain.local
Id : MailboxLogon
ClientAccessServer : ExchServer.domain.local.ad.local
Scenario : Mailbox::Logon.
ScenarioDescription :
PerformanceCounterName : Mailbox: Logon latency
Result : Failure
Error :
UserName : ad.local\extest_a91a4b4076f24
StartTime : 14/01/2014 16:33:27
Latency : -00:00:00.0010000
EventType : Error
LatencyInMillisecondsString : -1.00
Identity :
IsValid : True
Testing Outlook Anywhere using Microsoft RCA throws up the error:
RPC Proxy can't be pinged.
An HTTP 401 error was received...
Any help is greatly appreciated. Let me know if I've missed any info!
Thanks
TonyHi Guys,
My first chance today to respond!
Firstly - thanks for all the information. I really appreciate it.
Well, the good news is that Outlook Anywhere is now working at Site B. It looks like a combination of disabling Outlook Anywhere at Site B (thanks
Jon), and then being patient and allowing replication to do its stuff (thanks Rhoderck).
However RCA is still showing ‘Failed’ with the following error. If it helps to have the full output, please let me know. Just for info, I chose
the option to test using autodiscovery (rather than manually enter it), which passed fine.
Attempting to ping RPC proxy webmail.company.com.
RPC Proxy can't be pinged.
Additional Details
An HTTP 401 Unauthorized response was received from the remote Unknown server. This is usually the result of an incorrect username or password.
If you are attempting to log onto an Office 365 service, ensure you are using your full User Principal Name (UPN). Headers received: Content-Type: text/html Server: Microsoft-IIS/7.5 WWW-Authenticate: Negotiate,NTLM X-Powered-By: ASP.NET Date: Tue, 21 Jan
2014 09:55:41 GMT Content-Length: 58
Elapsed Time: 1063 ms.
RPCProxy - ValidPorts
Thanks for the 'SoundTrackOfMyLife' link... that looks to be almost identical to my scenario (with the exception of the Kemp LoadMasters). Following
through the troubleshooting, my CAS servers at Site A (Internet Facing) are showing the registry key 'ValidPorts' as...
SiteB-ExchCasSvr01:593;SiteB-ExchCasSvr01:49152-65535
So - should this be...
SiteB-ExchMbxSvr01:6001-6002;SiteB-ExchMbxSvr01:6004;SiteB-ExchMbxSvr01.domain.local:6001-6002;SiteB-ExchMbxSvr01.domain.local:6004;
i.e. I only add ports 6001,6002 and 6004 for mailbox servers only? If so, which sites mailbox servers should I put in here?
SSL Off Loading
We've only really implemented SSL Offloading on the advice from Kemp (it's built in to their Exchange 2010 template). Apparently, the advantage
is the LoadMasters have a dedicated hardware processor for decryption/encryption of SSL traffic, thus taking the load off the Exchange servers. Exactly how much of a load this would normally be for our Exchange servers is unknown. We've followed Kemp's documentation
on unchecking 'Require SSL' for the IIS directories on Site A, and also configured Outlook Anywhere with SSL Offloading through the EMC. This was required as the Kemp's are not re-encrypting traffic to the CAS servers (which are on the same site / LAN
segment), and we're not a bank... so don't need encryption between the LoadMasters and the client access servers.
However, Site B (non internet facing) has 'Require SSL' enabled on IIS directories, since (I guess) traffic is encrypted when performing CAS-CAS
proxying?
I am, as ever, open to suggestions on this design... since our original design was to use TMG for reverse proxy. It was only the end-of-life issue
with TMG, and the fact that we opted for the Kemp LoadMasters (which offered ESP as a replacement to TMG) that swung us down this path.
ESP and SSO are implements on the LoadMaster at Site A (internet facing), which is (was!) not the problem site.
Thanks again for your time and assistance guys. We’re almost there!
Tony -
I have some issues with a new installation of reporting 5 .
The primary server is zcm11SP3.(also installed zrs-resources.zip)
I use SLES11SP2 for the reporting server also tryed it on SLES11SP3 but no differents.(No errors during installation)
Still the report i make are empty.
When i go to library ->All audit in a Month i get the next error :
The server has encountered an error. Please excuse the inconvenience.
Error Message
java.lang.RuntimeException: exception getting dataset from cache
java.lang.RuntimeException: exception getting dataset from cache
exception getting dataset from cache
exception fetching from cache
ADH_1009_SQL_GENERATE_ERROR
Exception calling JRDataSource.next() for query select "CLASSIFICATION" as "CLASSIFICATION_LOC" from "VW_ALL_SUMMARY" group by "CLASSIFICATION" order by "CLASSIFICATION_LOC"
Error executing SQL statement for : null
SQL Anywhere Error -141: Table 'VW_ALL_SUMMARY' not found
I don't know what the problem is.
Can someone give me a hint?Thanks for the reply.
at first i did not use the resource file but i did not get any data from the audit database.
Also i tryed to use the resource files from the primary server to make the connection . but still i don't get any data from the audit database.
When i try to access the audit database i get the next error (library - > All audit report in a month ) :
The server has encountered an error. Please excuse the inconvenience.
Error Message
java.lang.RuntimeException: exception getting dataset from cache
java.lang.RuntimeException: exception getting dataset from cache
exception getting dataset from cache
exception fetching from cache
ADH_1009_SQL_GENERATE_ERROR
Exception calling JRDataSource.next() for query select "CLASSIFICATION" as "CLASSIFICATION_LOC" from "VW_ALL_SUMMARY"
Error executing SQL statement for : null
SQL Anywhere Error -141: Table 'VW_ALL_SUMMARY' not found
Greetings Wilfred
Originally Posted by jkalpana
Hi,
I think you have used resource file while installing/configuration and you have given ZCM database user name and not Audit database information. Can you please run configuration tool and give ZCM ip instead of resource file. For more information, please refer below link:
http://www.novell.com/documentation/...a/b89a4qp.html
Please let me know if you face any issue.
Thanks
Kalpana -
Hi All,
I am using NW 7.5, Sp15 and have turned on Data audit for a category in my bpc application. Is there a way to look at the detailed report in BW?
When i use transaction UJU_AUDDATAHDR, it only tells me if a package was run or data was entered. But i'm trying to get the detailed log of the signed data changed for each intersection. I remember seeing this detailed level activity by going to view data audit report in web interface but for some reason when i run the report in web interface it just opens a blank page. I was wondering if its stored anywhere in BW tables as a backup?Hi Neeti,
Please read this discussion about audit tables: Timestampe required on transaction records
Vadim -
Exchange 2010 , ARR, Outlook Anywhere
I am trying to use ARR v3.0 on Server 2012-R2 to publish Exchange OWA,EWS etc
The server has 1 x NIC and sits in the companies DMZ.
Everything is working EXCEPT Outlook Anywhere.
Outlook Anywhere is working correctly internally
Microsoft Remote Connectivity Analyser reports an RPC Ping failure, everything else is fine.
"Attempting to ping RPC endpoint 6001 ( Exchange Information Store )
" The attempt to ping the endpoint failed An RPC error was thrown by the RPC Runtime process. Error 1818
RPCPing from the ARR box fails, RPCping from an internal server is OK ( 6001 )
I was hoping for a little insight into this issue, any advice gladly taken.
Remote Outlook client reports a logon error when trying to connect, auto discover is working correctly.Hi,
Before we go further, I’d like to confirm if you have made the following change:
Under the IIS root in the ARR home, open Request Filtering
Under the Actions pane, click Edit Feature Settings...
Increase the Maximum allowed content length to 2147483648 (2GB):
Thanks,
Angela Shi
TechNet Community Support -
Outlook Anywhere Password Prompts - Only on certain external networks
I am running a standalone Exchange 2007 SP3 server on Windows Server 2008. I have published Outlook Anywhere via ISA 2006. Outlook Anywhere is configured for Basic Authentication. All clients are using Windows 7 with Outlook 2007 with latest
service pack. This is not a new configuration, I have been running this for quite some time.
I have a strange issue going on. The issue is that Outlook Anywhere users receive a prompt for their username and password ONLY when they are connected to certain external networks. Users began reporting this several months back. It happens on
all mobile users that I have tested with.
Basically, what happens is a user takes their domain joined laptop out to another work site. This site is not connected to our network. The IT department of the site connects my users laptop to there network. User then starts Outlook, Outlook
connects via HTTPS as it should, down in the bottom of Outlook it shows that it is connected to Exchange. However, within usually about 30 seconds the password prompt comes up. User puts password in and clicks remember and OK, but
the password box comes right back up. Sometimes it will except the password and run for a little while but then prompt again.
If I check Outlook Connection Status it displays that connections are established via HTTPS as they should be. Latency isn't too high averaging about 150 - 300ms.
If the user clicks Cancel instead of entering their password, Outlook will continue to run and it can send and receive email. Connection status still will show connected. However, if the user opens the address book and tries to access one of our
Address lists other than the GAL, then Outlook displays a message stating the user doesn't have permission. If the user clicks need password at the bottom and then enters their password at the prompt the address book will work.
This happens at several work sites, each different networks. My first thought is some sort of firewall issue at the sites but the IT at the sites say there should be no firewall blocking going on.
I have tested probably 5-6 other wifi networks, both public and private and Outlook Anywhere works perfectly on everything but these few work sites.
I have used testexchangeconnectivity.com at the sites at it tests fine. I have cleared the cached credentials from "Manage Windows Credentials".
Any assistance is appreciated.I am running a standalone Exchange 2007 SP3 server on Windows Server 2008. I have published Outlook Anywhere via ISA 2006. Outlook Anywhere is configured for Basic Authentication. All clients are using Windows 7 with Outlook 2007 with latest
service pack. This is not a new configuration, I have been running this for quite some time.
I have a strange issue going on. The issue is that Outlook Anywhere users receive a prompt for their username and password ONLY when they are connected to certain external networks. Users began reporting this several months back. It happens on all
mobile users that I have tested with.
Basically, what happens is a user takes their domain joined laptop out to another work site. This site is not connected to our network. The IT department of the site connects my users laptop to there network. User then starts Outlook, Outlook
connects via HTTPS as it should, down in the bottom of Outlook it shows that it is connected to Exchange. However, within usually about 30 seconds the password prompt comes up. User puts password in and clicks remember and OK, but
the password box comes right back up. Sometimes it will except the password and run for a little while but then prompt again.
If I check Outlook Connection Status it displays that connections are established via HTTPS as they should be. Latency isn't too high averaging about 150 - 300ms.
If the user clicks Cancel instead of entering their password, Outlook will continue to run and it can send and receive email. Connection status still will show connected. However, if the user opens the address book and tries to access one of our
Address lists other than the GAL, then Outlook displays a message stating the user doesn't have permission. If the user clicks need password at the bottom and then enters their password at the prompt the address book will work.
This happens at several work sites, each different networks. My first thought is some sort of firewall issue at the sites but the IT at the sites say there should be no firewall blocking going on.
I have tested probably 5-6 other wifi networks, both public and private and Outlook Anywhere works perfectly on everything but these few work sites.
I have used testexchangeconnectivity.com at the sites at it tests fine. I have cleared the cached credentials from "Manage Windows Credentials".
Any assistance is appreciated. -
Outlook Anywhere, high availability cas issue.
We are beginning a deployment of a 3 node exchange 2013 dag/cas group and have hit a snag with outlook anywhere.
the configuration:
SIDHEX01A - DAG member and CAS
SIDHEX02A - DAG member and CAS
SIDHEX03A - DAG member and CAS
We have one live database running on SIDHEX02A with passive copies on 1 and 3. We have 5 live users functioning as a test group.
DNS: we have internal DNS set to resolve mail.domain.net as all three servers. We have public DNS set to resolve mail.domain.net to an external ip on our firewall. From there we forward ports 25, 80, and 443 to server SIDHEX02A.
All 3 servers have Certs for mail.domain.net applied to iis and smtp.
We have set the external ( and internal names) of all the exchange services to mail.domain.net including owa, ecp, outlook anywhere, oab, activesync, and ews.
Our next step plan was to replace the direct port forward with a load balancer completing the high availability cas, when we hig hthe following snag:
The DAG works prefectly.
OWA, activesync, ecp, oab, ews all function fine.incomming and outgoing mail works perfectly. we simulate cas load balancing by changing the port forwarding to direct to a different cas server.
We are however experiencing some weird behavior with outlook anywhere.
We have a large number of users that work completely off-prem and will be using outlook with out ever connecting to the internal network at all. When we try to configue outlook to connect to the CAS we are trying to use the following:
server: mail.domain.net
exchange proxy: mail.domain.net
This doesn't work, the outlook client never finds the server.
testexchange reports that it is unable to ping the proxy server (it is pingable) after corectly checking certs and doing all the other communications.
Attempting to ping RPC proxy mail.domain.net.
RPC Proxy can't be pinged.
Additional Details
A Web exception occurred because an HTTP 404 - NotFound response was received from Unknown.
Headers received:
request-id: e9462008-75e2-4990-9d0f-a6c5514f5bce
X-CasErrorCode: EndpointNotFound
Persistent-Auth: true
X-FEServer: SIDHEX02A
Content-Length: 0
Cache-Control: private
Date: Mon, 30 Dec 2013 02:46:34 GMT
Server: Microsoft-IIS/8.0
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
Elapsed Time: 21308 ms.
Now if we tell the outlook client to use SIDHEX02A as the server name outlook will resolve the mailbox and everything apears great, except for two issues.
With a load balancer implimented we wouldnt know what the target server name was.
Secondly, we see some sort of link in outlook to the internal server name. On a cas failover outlook functions perfectly until it is closed and reopens with around a 60 second "trying to connect" before finally resolving the mailbox. This apears to
be permanent, if we start an outlook profile on sidhex03a for example, it will have 60 sec delays on 01 or 02, but never 03. Its as if the client is looking for its "home server" before considering alternitives.
Its posible that the load balancer would resolve some of this and we are happy to do that, we have also looked at ARR since this blog post seems to imply its required.
http://blogs.technet.com/b/exchange/archive/2013/07/19/reverse-proxy-for-exchange-server-2013-using-iis-arr-part-1.aspx but we dont want to add complexity over a problem until we understand why its needed.
Also of note: we dont have a cert for autodiscover.domain.net, nor is it publicly resolvable.
we dont have any 2010 servers, this is a clean 2013 envroment.
Thank you for taking the time to review this issue, I will provide any follow up info I can.Hi,
Firstly, I’d like to explain, the host name autodiscover.domain.com should be in the certificate to ensure Autodiscover service can work externally.
And I’d like to confirm if the test users are used internally and how about directly accessing the following URL:
https://autodiscover.domain.com/autodiscover/autodiscover.xml
Additionally, according to your description, you forward ports 25, 80, and 443 to server SIDHEX02A.
Then to understand more about the issue, I’d like to confirm if you set all SMTP,HTTP and HTTPS requests forward to the server SIDHEX02A and how to achieve that. Maybe this is the key point of the issue.
Thanks,
Angela Shi
TechNet Community Support -
Troubleshoot connectivity issues Outlook Anywhere - Exchange 2013
Hi there,
As part of our Exchange 2010 -> 2013 migration we've transitioned CAS to Exchange 2013 2 weeks ago. Some 50 mailboxes have been moved to exchange 2013. Moving mailboxes for everyone is scheduled the 2nd week of july . Because our current version of Outlook
is 2007 (migration to 2013 is due thissummer) we've configured NTLM authentication for OA.
Exchange setup: 8 Multirole (CAS/MBX) virtual (VMware) Servers: each 4 cores, 24 Gb memory (reserved) : Windows 2012 SP1, Exchange 2013 SP1 (15.0.847.4030)
Right now we're facing client connectivity issue's: Outlook Anywhere clients are continiously losing connection with exchange, some people (outllook 2007/exc. 2007) report every minute or worse.... Moving the mailboxes of affected people results in
less problems: Sometimes no disconnects for 10 to 30 minutes, then reconnects every minute for some time.
We've already set the timeout for the oa-pool in our network proxy (riverbed steelapp) to 20 minutes and the minimum keep alive on the 2013 servers to 120 seconds which improved Oultook 2013 clients; before I experienced reconnects every minute, after every
10 to 30 minutes (with periods of reconnects every minute)
testconnectivity.microsoft.com gives positive results (apart from a nspi warning about server side encryption)
testing with rpcping according to
http://blogs.technet.com/b/exchange/archive/2008/06/20/3405633.aspx gives some interesting results:
I've tested all (8) CAS 2013 servers over ports 6001, 6002 and 6003; each 100 rpcpings with a for loop: every response was either about 500 ms or about 21 Seconds ?!?
How can we furher troubleshoot the reason of the long reply time. Eventlogs (and SCOM with exchange 2013 MP) show no relevant events or alerts.
Part of the output of a rpcping
RPCPing v6.0. Copyright (C) Microsoft Corporation, 2002-2006
RPCPing set Activity ID: {59b56c7f-af5d-4836-b701-92070f674de6}
Completed 1 calls in 452 ms
2 T/S or 452.000 ms/T
RPCPing v6.0. Copyright (C) Microsoft Corporation, 2002-2006
RPCPing set Activity ID: {1197cd5e-c79d-4659-b598-3134c335b103}
Completed 1 calls in 468 ms
2 T/S or 468.000 ms/T
RPCPing v6.0. Copyright (C) Microsoft Corporation, 2002-2006
RPCPing set Activity ID: {0cbaef91-ec96-402e-aa00-4913e2be1c51}
Completed 1 calls in 483 ms
2 T/S or 483.000 ms/T
RPCPing v6.0. Copyright (C) Microsoft Corporation, 2002-2006
RPCPing set Activity ID: {525717e5-441b-4a8e-8398-dc86d38852c7}
Completed 1 calls in 21450 ms
0 T/S or 21450.000 ms/T
RPCPing v6.0. Copyright (C) Microsoft Corporation, 2002-2006
RPCPing set Activity ID: {408d806d-ed5a-4f96-8c3c-2446a1d48ad8}
Completed 1 calls in 21497 ms
0 T/S or 21497.000 ms/T
RPCPing v6.0. Copyright (C) Microsoft Corporation, 2002-2006
RPCPing set Activity ID: {3b441a9f-7606-4106-850f-fccb7c0f1bb1}
Completed 1 calls in 21497 ms
0 T/S or 21497.000 ms/T
RPCPing v6.0. Copyright (C) Microsoft Corporation, 2002-2006
RPCPing set Activity ID: {bf994811-8528-433f-b532-f29d347fce5b}
Completed 1 calls in 21590 ms
0 T/S or 21590.000 ms/T
RPCPing v6.0. Copyright (C) Microsoft Corporation, 2002-2006
RPCPing set Activity ID: {ddb5248b-82aa-4586-b2f7-9c04c9922034}
Completed 1 calls in 577 ms
1 T/S or 577.000 ms/T
Summary of all servers (test this morning)
Server
Port
# >20.0001
Server1
6001
32/100
Server1
6002
27/100
Server1
6004
0/100
Server2
6001
47/100
Server2
6002
0/100
Server2
6004
37/100
Server3
6001
0/100
Server3
6002
0/100
Server3
6004
41/100
Server4
6001
0/100
Server4
6002
29/100
Server4
6004
42/100
Server5
6001
69/100
Server5
6002
48/100
Server5
6004
69/100
Server6
6001
0/100
Server6
6002
0/100
Server6
6004
1/100
Server7
6001
0/100
Server7
6002
1/100
Server7
6004
1/100
Server8
6001
0/100
Server8
6002
0/100
Server8
6004
0/100
I've repeated above test this afternoon: All test resulted in about 40-60 (of 100) replies >20 secondsWe've changed a timeout setting in the Steelapp virtual server (old: 10 sec; new: disabled) the connections between Outlook and Exchange are, when established, very stable (almost no failed request anymore)
However there still existst a conectivity issue:
The 8 Exchange 2013 servers are placed in 2 different Active Directory sites (4 servers in each site) and I have found that a cross site rpcping consequently takes more than 20 seconds (with the loadbalancer bypassed ! !) where a rpcping on the
same AD-site takes 200-300 miliseconds...
rpcping -t ncacn_http -o RpcProxy=Host-in-site-A -P "user,domain,password" -H 2 -F 3 -a connect -u 10 -v 3 -s RpcProxy=Host-in-site-B -I "user,domain,password" -e 6001 => 20+ seconds
rpcping -t ncacn_http -o RpcProxy=Host-in-site-A -P "user,domain,password" -H 2 -F 3 -a connect -u 10 -v 3 -s RpcProxy=Host-in-site-A -I "user,domain,password" -e 6001 => 200 miliseconds
rpcping -t ncacn_http -o RpcProxy=Host-in-site-B -P "user,domain,password" -H 2 -F 3 -a connect -u 10 -v 3 -s RpcProxy=Host-in-site-B -I "user,domain,password" -e 6001 => 200 miliseconds
rpcping -t ncacn_http -o RpcProxy=Host-in-site-B -P "user,domain,password" -H 2 -F 3 -a connect -u 10 -v 3 -s RpcProxy=Host-in-site-A -I "user,domain,password" -e 6001 => 20+ seconds
The same tests with our Exchange 2010 CAS and MBX (NO multirole) shows fast (300 ms.) with every combination. The servers are both on the same networks in each site
We've already started talking with the network guy's: There should be no rules between both networks.
OWA, Autodiscover, EAS all work fine.
How or where to troubleshoot this slow response between two AD site's ?? -
Inventory audit report and Inventory GL balance - Not matching
Team
I taken the report from Inventory audit report , this is not matching with inventory charts of accounts balance.
What may be the error
How to close old topics, how to provide the points for good suggestion. My points also not increased , what I need to do increase my points.
Thanks
Anantha DesaiHi,
1. Please check if any manual JE posted to that GL account
2. How to close old topics
There are two way close discussions:
----> If you got right answer, you can choose "correct answer" option in replies.
----> If you get an idea or suggestions, you can choose "Helpful answers" and need to close manually by choosing "Assumed answered:.
how to provide the points for good suggestion
Please choose "helpful answer" and "Like" option for good suggestions
My points also not increased , what I need to do increase my points.
Points will be increased, if you provide right suggestions, ideas and answers to other member discussion.
Refer this document for further details:
http://scn.sap.com/community/support/blog/2013/04/03/how-to-close-a-discussion-and-why
Thanks & Regards,
Nagarajan -
Inventory Audit Report - Not followed FIFO and Batch management
I have created an Item say XYZ, with Batch management and valuation methode FIFO.
Then I have created a batch say 1 with posting of opening balance transaction with posting date as 1st April 2009.
Now when I post an A/R Invoice with posting date as 19th May 2009 in which I have selected above batch.
I have also posted some more purchase transaction for same item before 19th May 2009 that is the date of sales invoice.
Now when I see Inventory Audit Report, system has not picked up the cost column as per Batch selection in A/R Invoice, and also not as per FIFO, but it has followed the system date of transaction for deriving cost as per FIFO.
Can anybody throw light on this ?
BR
Samir GandhiDear Samir Gandhi,
Irrespective of posting date you use for document posting, with FIFO Method system will arrange all the inventory posting in layers with First inventory posting will form the base for first inventory movement out and so on
Example:
1st Entry:(Opening Balances)
posting date : 01/04/09 Item : XYZ quantity : 5 Unit cost price : 100
2nd Entry: Purchase
posting date : 01/05/09 Item : XYZ quantity : 5 Unit cost price : 105
3rd Entry: Purchase
posting date :25/04/09 Item : XYZ quantity : 5 Unit cost price : 90
Layers created :
1. Item : XYZ quantity : 5 Unit cost price : 100
2. Item : XYZ quantity : 5 Unit cost price : 105
3. Item : XYZ quantity : 5 Unit cost price : 90
4th Entry : Sales
Item : XYZ quantity : 8
So here cost of goods sold will be : ( 5x100)+ ( 3x105) = 815
and it wont be ( 5x100)+ ( 3x90) =770 if that's what you are expecting
Regards,
Mukesh -
Audit report to check who has accessed the dsahboard
Hi All,
We have a dashboard (Xcelsius swf file) published in infoview.
This dashboard is used by end user community ,now we as administrator wanted to check who all are accessing this dashboard with date and time of usage.
Is it possible to generate any such audit report based on u201CActivityu201D universe so that we can have information about dashboard usage.
Thanks,
ChandraHi,
Does audit database capture activity like opening/retrieving a file(regardless of file type) from server. I know its possible to determine who has opened a webi or crsytal report.
Can I check same for dashboards?
Will really appreciate any advice here.
Thanks,
Chandra -
Transaction value in inventory Audit Report
Hi,
I have received some quantities say 100 without any price in the Goods receipt.But when i run the inventory Audit report it is showing some value in transaction value field.Where as when i check the item cost the item cost is 0 even then system is picking up transaction value
What may be the problem.Due to this i am unable to reconcile the inventory transactions with the inventory G/L
Please help
Thank You
Md.nazeer ShaikhHi Nazeer,
Check the following lthread
Inventory Audit Report Issue in value
Inventory Audit Report - Zero quantity but with value
Inventory Audit report
Regards
Jambulingam.P -
Inventory Audit Report and Inventory G/L Account discrepancy
Good Day!
Hi Everybody. I had experienced a discrepancy between the Inventory Audit Report and Inventory G/L Account.
Before everything else, our client does not have any PO, GRPO. Only A/P Invoice and A/P Credit Memos so there are no difference being posted.
There were also no transactions posted directly in Inventory G/L Account but from observation, there is a minor difference. This only happened with two transactions in AP Invoice with Negative Quantity.
The AP Invoice is composed of a single item, the unit price is 180.00 x -58 pcs quantity. Total amount is -10,440.00.
G/L Account posting is
Inventory 10,440.00
A/P 10,440.00
In the FIFO layering, the item cost is 200.00 (based on the current stock value) and the current stock quantity before posting is 80 pcs . Since this is a negative quantity A/P Invoice, it seems that the cost of the item when the transaction will be posted is 200 (based on the current stock value) so when I view the Inventory Audit Report amount, it says the inventory cost/posting is -11,600 (200 x -58).
But on actual G/L Account, the posting is -10,440.00 from A/P Invoice, that's why the inventory discrepancy occurs. It seems that SAP B1's Inventory Audit Report confuses the FIFO cost posted versus G/L Account's posted based on the document. Since the document is A/P Invoice, SAP B1 assumes that the transaction will post the amount as the additional inventory cost and posting the inventory cost into Inventory G/L Account. However, since this is a negative document, the system is releasing the items, thus, FIFO kicks in. The Inventory Audit Report catches the amount based on FIFO costing. The problem is that the Inventory Audit Report is more accurate than the Inventory G/L Balance.
Any suggestion to fix this guys?HI,
i'my afraid you're in the wrong place. This is the Chinese forum. Please go to SAP Business One Application for help.
Best -
Error message in inventory audit report
Hi
I'm trying to generate an Inventory Audit Report when this error appeared > "You have an insufficient resources to complete this action.Select fewer records and try again".. I know that the report is too big coz it's from 2006-2010. Can some one give me a further explanaton about this error?Is it because the file is too big that sap 'system' can't generate this report (reach its limit) or the problem is within the 'server' of the sap still coz of a big file?
Hope someone can help
Thanks in advance
VissiaHi Vissia,
The problem is your server's RAM. It will be too difficult to run 4 years audit report from any server. Even if you have 30G ram, it may not be enough.
Try a smaller interval.
Thanks,
Gordon
Maybe you are looking for
-
Whole Functionalities of Fixed Asset in SAP R/3
I just need some document o whole Funcitionalities of Fixed Assets In Sap R/i.e ECC 6.0. Best Regards, Sudhanshu Dang
-
Linksys SRW248G4 Bandwidth QoS problem
Hi everyone, so I bought the SRW248G4 switch because Linksys advertises ingress and egress traffic shaping. I setup everything and tested egress at 10000 kbps which worked fine. But when I setup ingress on any of the ports I get very bad rates that d
-
An album has disappeared from my library and purchase history, how do i get it back?
i bought an album on Christmas day and have had it since, went on iTunes to listen to it and it was gone, went into purchase history to re-download it and it was gone from there, how do i get it back as it cost me £10.99 and i don't want to have to r
-
Using data dictionary in PL/SQL
What people think about using data dictionary in PL/SQL witch supposed to be used for a long time (selects, type declarations and so on)? Oracle does not guarantee data dictionary names will be same forever. Is it a good idea to restrict the using of
-
NODIM function Returns wrong values?
Hi All, We have a KF Quantity in PC and we are using NODIM(Quantity) to diaply it without units.But NODIM(Quantity) displays wrong results. For Example:Quantity = 3123214 PC and NODIM(Quantity) = 3123214.123 What could be the reason for it?can a