Staging the NLB cluster Static port change of Exchange 2010 CAS or do it all in one day ?
Folks,
Here is the server deployment in my AD domain:
Email flow and Outlook client connection go through the NLB cluster VIP email.domain.com.au which is served by the following server:
PRODHT-CAS01 (HT-CAS Server Windows NLB node 1)
PRODHT-CAS02 (HT-CAS Server Windows NLB node 2)
Public Folder access through Outlook client goes through the following servers:
PRODMBX01 (Stand-alone Mailbox Server 1) no DAG
PRODMBX02 (Stand-alone Mailbox Server 2) no DAG
Can I make the changes first on the first stack of Exchange Server set as below first:
PRODHT-CAS01 (HT-CAS Server NLB node 1)
PRODMBX01 (Stand-alone Mailbox Server 1) no DAG
in order to test the Outlook email & Public Folder connectivity in the first week and then followed by the rest of the server set:
PRODHT-CAS02 (HT-CAS Server NLB node 2)
PRODMBX02 (Stand-alone Mailbox Server 2) no DAG
would that cause the NLB or user email access problem?
Do I have to make the changes all in one day for those four servers followed by the reboot?
Reason of changing: The hardware load balancer (Riverbed) requires to have static RPC port to work properly.
This is the article to change the Static port in my NLB cluster Exchange HT-CAS server role on Exchange Server 2010 SP2: http://social.technet.microsoft.com/wiki/contents/articles/864.configure-static-rpc-ports-on-an-exchange-2010-client-access-server.aspx
Thanks in advance.
/* Server Support Specialist */
All the servers behind the load balancer must be the same.
You can change the stand alone MBX server's RCA port as that traffic is not load balanced.
Changing Exchange is straight forward, just be careful to enter the registry keys correctly and then check AB and RCA is listening on the new static ports after you restart the services.
Cheers,
Rhoderick
Microsoft Senior Exchange PFE
Blog:
http://blogs.technet.com/rmilne
Twitter: LinkedIn:
Facebook:
XING:
Note: Posts are provided “AS IS” without warranty of any kind, either expressed or implied, including but not limited to the implied warranties of merchantability and/or fitness for a particular purpose.
Rhoderick,
Many thanks for the suggestion. My goal here is to minimize any impact / email service downtime to the user while configuring the static ports.
1. Do I have to dissolve the Windows NLB cluster after the static port configuration on both HT-CAS servers or can I still keep the NLB cluster?
2. "All the servers behind the load balancer must be the same." Do you mean do I have to do the static RPC port the same day for all server set ?
/* Server Support Specialist */
Similar Messages
-
DST: the SQL Cluster did not change the time by itself..
Hello,
DST: the SQL Cluster did not change the time by itself..
Where should I look for the issue. The time was changed manually to continue processing....
Thanks,
Dom
System Center Operations Manager 2007 / System Center Configuration Manager 2007 R2 / Forefront Client Security / Forefront Identity ManagerHi,
Thanks for your posting.
For the Sql cluster issue, i think you may ask in:
http://social.msdn.microsoft.com/Forums/sqlserver/en-US/home?category=sqlserver&filter=alltypes&sort=lastpostdesc
Regards.
Vivian Wang -
Quick question.
What is the total space Update Rollup 7 For Exchange 2010 SP3 (KB2961522) will take after installation?
HasanHi
Your question is a big vague. Extracting the rollup will use some space but you can delete the files afterwards.
Are you concerned about space while installing? If you have adequate space it shouldnt be a problem.
Hope this helps. Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.
I am asking space after installation, it will definitely install some files so how much space extra space it needed in exchange directory drive.
Hasan -
Failed to start SQL SERVER cluster after port changed from 1433 to 61433
Hi
Today, I did Geo SQL2012 Cluster installation with with 2 VIP different subnet. Currently i'm getting problem in changing default port 1433 to 61433, after changing port Cluster group not coming up, SQL Failing. I don't know and not sure, if SQL
service is depend on Port. Please help us , its producion issue.How you change port ,Changing Port in clustered environment required different procedure. You need to run the command of remove checkpoints and add checkpoints.
See below links
Remove-ClusterCheckpoint
http://technet.microsoft.com/en-us/library/hh847295.aspx
Add-ClusterCheckpoint
http://technet.microsoft.com/en-us/library/hh847255.aspx
--Please mark this Answer if it helps to solve the issue -
Hi all,
need urgent assistance on the following issue
this is my Exchange 2010 setup
2 x CAS/Hub servers with HP network teaming, and load balanced using Windows NLB multicast mode. There are 2 VIPs on the NLB, one for outlook anywhere, one for autodiscover
2 DNS records were created for the 2 VIPs
Clients use Outlook Anywhere (HTTPS) to connect to the CAS servers from external segment via a Palo Alto firewall, which also acts as a layer 3 router
static arp was set on the Palo Alto firewall, with both virtual MACs pointing to the primary virtual MAC used by the NLB.
Observations
1. within same segment - no issue accessing Exchange servers, even when one CAS node is offline
2. external segment (via firewall)
a. when both nodes are up
outlook client able to connect to Exchange CAS VIP on 443, but will disconnect after around 30 seconds. Client will retry and the pattern will repeat
Exchange CAS RPC logs shows client connections and disconnections to the outlook anywhere VIP address
Firewall logs shows allowed traffic from client to the VIPs
unable to complete profile creation
b. with only CAS2 (CAS1 stopped/deleted from NLB cluster)
no issues accessing Exchange servers, creating profiles etc
c. with only CAS1
same behaviour as (a)
reinstalled NLB, but doesn't resolve
deleted CAS1 from NLB cluster, and re-add. issue remain
Q1. is teaming supported? Teaming is currently set to automatic mode, instead of specified Fault Tolerant
Q2. are there additional settings we need to set or verify on the Palo Alto firewall, since the issue only happen to external segment? Thanks!Yes - I've been scarred with this for many years :(
If it is just CAS 1 that is causing issues, then focus in on that. The support statement for Win 2008 R2 is that NLB is still a 3rd party component and support may ask for it to be disabled.
http://support.microsoft.com/kb/278431
Does CAS1 and CAS2 have the same NICs (firmware as well), driver, teaming software, and teaming config?
I also want to ask what the network team did for configuring the switch ports on the servers? This will vary from vendor to vendor - did they do the same config on both?
Cheers,
Rhoderick
Microsoft Senior Exchange PFE
Blog:
http://blogs.technet.com/rmilne
Twitter: LinkedIn:
Facebook:
XING:
Note: Posts are provided “AS IS” without warranty of any kind, either expressed or implied, including but not limited to the implied warranties of merchantability and/or fitness for a particular purpose.
Thanks Rhoderick, issue still persists
can you also help clarify what you meant by "configuring the switch ports on the servers"?
thanks again -
Static Arp Entry for Exchange 2010
Hello All,
I was hoping someone could assist with an issue that our Exchange team are having, specifically with replication traffic traversing our DC to DR site.
The infrastructure consists of a Layer 3 data centre and a disaster recovery site, so essentially its a live/backup environment. Both the DC and DR site are connected with a LES using routed interfaces.
The Exchange cluster at the DC is associated with the following subnets:
MAPI - 10.1.30.X
Replication: 10.1.230.X
DR site has the following subnets associated with the exhange cluster :
MAPI - 192.168.4.X
Replication - 192.168.230.X
When an attempt is made to create a database/mailbox on an exchange server at the DC and copy it using the replication subnet source: 10.1.230.X to destination subnet: 192.168.230.X, the copy process fails.
Replication traffic in general going from DC to DR or vice-versa is subject to constant problems and seems unreliable. Our exchange team have to manually copy mailboxes from one cluster to the other using Windows explorer which works fine.
The Exchange cluster at both sites reside within a VMWare ESX enclosure and connect to Cisco 6500 switches. Would the Cisco switches require a static arp entry for their respective Exchange clusters, which should be configured on each switch? If this was missing could this be the root cause of the replication problems we're experiencing? Or does this depend on whether the exchange cluster is using NLB Unicast or Multicast mode?
Any assistance would be most appreciated.
Regards,
JamieJamie,
Have a look at this link:-
http://www.cisco.com/en/US/products/hw/switches/ps708/products_configuration_example09186a0080a07203.shtml
It depends on how the team NLB is set up.
You may need static mac & static arp as well as disabling igmp snooping if multicasting is bein used.
Regards,
Alex.
Please rate useful posts. -
What is the best photo paper 4'x6' for HP Officejet Pro 8500A Plus e-All-in-one Printer?
1.-HP Officejet Pro 8500A Plus e-All-in-One Printer
2.-OS: Windows 7-64
3.-No error messages
4.-No changes have been made
5.-I have been printing in my with old "hp premium plus glossyphoto paper" and getting very dark photos and too much wasted ink .
I've been using "hp premium plus glossy photo paper" and getting very dark photos.
Before this printer I used a Deskjet 5550 with the same paper and getting great quality.
Thank you. Luis Cuenca
This question was solved.
View Solution.HI cuencaky,
Here is a link to a page with an example of good 4 X 6 photo paper you can use with your printer.
This type of paper is known to work very well.
If I helped you at all it would be great if you clicked the blue kudos star!
If I solved your post please mark it as solved to help others.
I'm a printer tech with HP. -
What do I do when I get the message my printer is not connected when I want to print wirelessly.? HP Officejet Pro 8500A e-All-in-One. I have a macintosh computer using snow leopard. I have used the printer for 6 months. Nothing has changed. I shut off the printer and turned it on. The internet is working altough I will turn it off and on. What do I do next? Thank you.
The easiest and fastest thing for you is to reset the printer to its defaults and then just install the printer again following the instructions in the manual when you received it. If you don't have these you will find this on the HP web site.
Say thanks by clicking the Kudos Thumbs Up to the right in the post.
If my post resolved your problem, please mark it as an Accepted Solution ...
I worked for HP but now I'm retired! -
Change to Exchange 2010 after SP3, Update 5 installed
After updating Exchange 2010 from SP3 Update 2 to Update 5, a change has occurred for users with SendAs and Full Access to other mailboxes. Version 14.3 (build 123.4).
Before the Update, after giving a user these permissions to another user's mailbox, the mailbox would show in their Outlook 2010 client, and everything worked as expected.
After Update 5 was installed, when users select the other user's mailbox, they get a message "the folders are not available," or the connection to the Exchange server is not working." They can access their own mailbox with no issues.
The other mailbox has to be added to the Outlook client via Account Settings, Account Settings, Change, More Settings, Advanced tab, Add the other mailbox. The mailbox then shows up twice on the client, but only the one that has been added works,
the original still gives the same error.
Lou H.Hi,
I have seen some people have the same issue with you. After upgrading to Rollup 5, they need to add others' mailboxes that they have full access permission and send as permission manually on Outlook. But when they upgrade Outlook to 2010 SP2, this issue
is solved. I recommend you upgrade your Outlook to 2010 SP2 and check the result.
Besides, I'm not sure what changes after Rollup 5 lead to this issue, there is no official article explain it, thanks for your understanding.
Hope it helps.
Best regards,
If you have feedback for TechNet Subscriber Support, contact
[email protected]
Amy Wang
TechNet Community Support -
Odd change in exchange 2010.
so i was moving dns providers and as a result my mail stopped flowing.. nothing out of the ordinary
how ever once things started getting set up again i got IP Resolution Error when running tests on the domain..
i started poking round the logs and i noticed my smtp sender had changed to one i had not seen before.
ran the troubleshooting assistant and got that same smtp server whiich is not my domain and not sure how it got changed or where to change it back
this is a what im seeing on one of the tests
[email protected] where did it get that from i never put that in and im trying to find out how it got changed to that from my domain.. any ideas
and i see mail.Fabrikam.com as my smtp server and no idea where that came from or how it got changed or even worse how to change it back to mail smtp serverHi,
Please ping your Exchange transport server and check whether the DNS record for your server is resolved. Also send a message and collect the NDR message for more troubleshooting.
In Event Viewer, please confirm if there is any logs related to your mail flow issue. Please refer to the following to do some troubleshooting and collect the results for further analysis:
Troubleshooting Mail Flow and SMTP
http://technet.microsoft.com/en-us/library/aa996805(v=exchg.65).aspx
Exchange 2010 mailflow troubleshooting guide
http://blogs.technet.com/b/ehlro/archive/2014/01/15/exchange-2010-mailflow-troubleshooting-guide.aspx
Regards,
Winnie Liang
TechNet Community Support -
screen resolution changes when I reboot hptouchsmart 9300 elite all in one pc product #: LK282AV
When I reboot computer the screen resolution changes automatically.Hello anitagold:
Welcome to HP's forum. Thank you for visiting us how ever you are on the wrong forum. You own a business Touchsmart witch has a total different operating system then home user's does. This section is for home user Touchsmarts. This is where you need to post http://h30499.www3.hp.com/ You will receive a much accurate respounce I also think they have live chat assistance as well during business hours on line as well. Your software is also different then ours is so it would not do you any good for me to give you direction on how to adjust your screen resolution. Because your computer even though they look a like on the outside they are not alike inside. Thank you frrw. -
Whats the best way to go about load balancing Exchange 2010 CAS
My server guys want to LB the Exchange 2010 client access servers, this will be the 7th Context on my Ace 4710.
see table for ports that are used
Port
Usage
25
smtp
80
http various
110
POP3 clients
135
RPC end point mapper
143
imap4 clients
443
SSL various
993
secure imap 4 clients
995
secure pop3 clients
6001
rpc related outlook anywhere
6002
rpc related outlook anywhere
6003
rpc related outlook anywhere
60200
rpc CAS
60201
exchange address book service
whats the best way of going about this?
do I just LB the IP addresses of the Servers and ignore the ports?
do i have to do anything special for ports 993 and 995 secure imap and pop?
I am sure there are more questions I shold be asking!OK
so If I have a single serverfarm with all services do I filter on the virtual
address something like below?
class-map match-any EXCH_vip
match virtual-address 172.16.93.2 tcp eq 25
match virtual-address 172.16.93.2 tcp eq 80
match virtual-address 172.16.93.2 tcp eq 110
match virtual-address 172.16.93.2 tcp eq 135
match virtual-address 172.16.93.2 tcp eq 143
match virtual-address 172.16.93.2 tcp eq 443
match virtual-address 172.16.93.2 tcp eq 993
match virtual-address 172.16.93.2 tcp eq 995
match virtual-address 172.16.93.2 tcp eq 6001
match virtual-address 172.16.93.2 tcp eq 6002
match virtual-address 172.16.93.2 tcp eq 6003
match virtual-address 172.16.93.2 tcp eq 60200
match virtual-address 172.16.93.2 tcp eq 60201 -
Hello,
I've installed Exchange 2013 into Exchange 2010 infrastructure
[ single Exchange 2010 server; single AD site; AD = 2003 ],
and moved one mailbox [ Test user ] to Exchange 2013.
When I login internally through 2013 OWA to access mailboxes on 2010, then proxy works fine.
When I login internally through 2010 OWA to access mailboxes on 2013, then a message appears:
Use the following link to open this mailbox with the best performance: with link to 2013 OWA...
What is wrong ?
I've checked and changed settings by:
Get-OwaVirtualDirectory, Set-OwaVirtualDirectory
[PS] C:\work>Get-OwaVirtualDirectory -Identity 'ex10\owa (Default Web Site)' | fl server,name, *auth*,*redir*,*url*
Server : EX10
Name : owa (Default Web Site)
ClientAuthCleanupLevel : High
InternalAuthenticationMethods : {Basic, Fba, Ntlm, WindowsIntegrated}
BasicAuthentication : True
WindowsAuthentication : True
DigestAuthentication : False
FormsAuthentication : True
LiveIdAuthentication : False
AdfsAuthentication : False
OAuthAuthentication : False
ExternalAuthenticationMethods : {Fba}
RedirectToOptimalOWAServer : True
LegacyRedirectType : Silent
Url : {}
SetPhotoURL :
Exchange2003Url :
FailbackUrl :
InternalUrl : https://ex10.contoso.com/owa
ExternalUrl : https://ex10.contoso.com/owa
[PS] C:\work>Get-OwaVirtualDirectory -Identity 'ex13\owa (Default Web Site)' | fl server,name, *auth*,*redir*,*url*
Server : EX13
Name : owa (Default Web Site)
ClientAuthCleanupLevel : High
InternalAuthenticationMethods : {Basic, Ntlm, WindowsIntegrated}
BasicAuthentication : True
WindowsAuthentication : True
DigestAuthentication : False
FormsAuthentication : False
LiveIdAuthentication : False
AdfsAuthentication : False
OAuthAuthentication : False
ExternalAuthenticationMethods : {Fba}
RedirectToOptimalOWAServer : True
LegacyRedirectType : Silent
Url : {}
SetPhotoURL :
Exchange2003Url :
FailbackUrl :
InternalUrl : https://ex13.contoso.com/owa
ExternalUrl :
best regards Janusz SuchHi Janusz Such,
Based on my knowledge, CAS proxy can only from later version to previous version.
Some like CAS2013 to CAS2010/2007, CAS2013 to CAS2013.
Thanks
If you have feedback for TechNet Subscriber Support, contact
[email protected]
Mavis Huang
TechNet Community Support -
Outlook 2010 "The server is unavailable" using smart card Exchange 2010
I have a XenApp 6.5 environment, that uses smart card authenication for login. All the office applications will open except for outlook. Outlook opens up and shows a prompt saying "Connecting" ...."Then server is unavailable".
If I removed the smart card authenication from the XenApp environment, User are able to open Outlook with no problem.
My question, is there something with exchange 2010 that needs to be turned on for smart card authenication?Hi,
I suggest you remove any existing certificate-based credentials from the Credential Manager and use the
EnableSmartCard registry setting to check the result. The Outlook client may not be properly configured to work with saved smart card credentials.
Important
Follow the steps in this section carefully. Serious problems might occur if you modify the registry incorrectly. Before you modify it,
back up the registry for restoration in
case problems occur.
Remove existing certificate based credentials
The first step to prevent a PIN lockout is to delete any existing certificate based credentials that were saved by Outlook.
Open Control Panel.
Double-click Credential Manager.
See whether there is a Certificate-Based credential similar to the following:
@@BSUgiZQZ54Pf6cEtxKflWHH
Also, see whether there is a Generic credential similar to one of the following:
MS.Outlook.14:[email protected]:PUT
MS.Outlook.15:[email protected]:PUT
Note 14 indicates Outlook 2010 saved the credential and 15 indicates Outlook 2013.
If these are both present and were created or changed at the same time, they are likely smart card credentials saved from Outlook. Click the first credential to expand it and to show the details. Then, click Remove to delete the
credential from Credential Manager.
Repeat step 4 for each one of the credentials listed in step 3.
When you are finished, close Credential Manager.
Configure the EnableSmartCard registry setting
The second step to prevent a PIN lockout is to create the EnableSmartCard registry setting.
Outlook 2010
For Outlook 2010, the EnableSmartCard registry setting was introduced with the Microsoft Outlook 2010 hotfix package dated December 13, 2011 (KB2597028). We recommend that you install the most recent build of Outlook 2010. For more information
about the latest applicable updates for Outlook, click the following article number to view the article in the Microsoft Knowledge Base:
2625547 How to install the latest applicable updates for Microsoft Outlook (US English only)
To create the EnableSmartCard registry value, follow these steps:
Exit Outlook.
Start Registry Editor.
Create the following registry values at the specified locations:
Note Manually create any registry keys or values if they do not exist.
Key: HKEY_CURRENT_USER\Software\Microsoft\Office\14.0\Outlook\RPC
DWORD: EnableSmartCard
Value: 1
Exit Registry Editor.
For this question, if you need to get more information about Exchange 2010, I suggest you post the question in Exchange forum:
https://social.technet.microsoft.com/Forums/exchange/en-US/home?category=exchangeserver
Regards,
Melon Chen
TechNet Community Support
It's recommended to download and install
Configuration Analyzer Tool (OffCAT), which is developed by Microsoft Support teams. Once the tool is installed, you can run it at any time to scan for hundreds of known issues in Office
programs. -
Comparing-the-differences-between-anti-spam-agents-from-exchange-2010-to-exchange-2013
http://social.technet.microsoft.com/wiki/contents/articles/23582.comparing-the-differences-between-antispam-agents-from-exchange-2010-to-exchange-2013.aspx
SathishHello,
This forum is for discussions and questions regarding profiles and Microsoft's recognition system on the MSDN and TechNet sites. It is not for products/technologies.
As it's off-topic here, I am moving the question to the
Where is the forum for... forum.
Karl
When you see answers and helpful posts, please click Vote As Helpful, Propose As Answer, and/or Mark As Answer.
My Blog: Unlock PowerShell
My Book: Windows PowerShell 2.0 Bible
My E-mail: -join ('6F6C646B61726C40686F746D61696C2E636F6D'-split'(?<=\G.{2})'|%{if($_){[char][int]"0x$_"}})
Maybe you are looking for
-
How to update new iPod to iOS 5.1 then restore from previous iPod's backup
If I want to restore my 'new' (refurbished) iPod from a back up of my old one, I need to get iOS5.1 on this one. I can't restore it right now because I don't have the computer it's synced with, and I was planning on getting iOS 5.1.1 on my old one be
-
Officejet 6600 "The print carriage cannot move"
Ran through the published problem solving steps, however, I still receive message of Carriage Jam. Have checked cartiages and everything appears okay there. Please help with any comments. Thank you.
-
Hi there! I have had an iphone for a few weeks now and I have the iphone 3G. Ever since I bought the phone, the phone does not allow me to save contact pictures for my contacts. I go into the designated area of the contact i want to add a picture to,
-
Can i restrict the number of rows in Connect by clause
Hi, I have atable with data with two columns as MAIN SUB 9 10 9 11 11 13 12 13 The query which i am using SELECT Main,Sub FROM My_Tab START WITH Main = 9 CONNECT BY PRIOR Sub= Main gives 9 10 also in the result My question is can i restirct the outpu
-
Hi Experts, In BW, I want to create a transaction in which there will be only one screen. On that screen there is one text field called hierarchy node. Now I want to display F4 help that display nodes in the form of hierarchy for selection. Please he