• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

MS08-067 + Exchange and/or BES

pstylesss

Platinum Member
Anyone experience any problems applying this patch with their exchange or blackberry server? I spent my weekend repairing our servers after this patch. Just figured out it was more than likely the cause.

I have an exchange 03 box
Exchange 2007 box with 6 beta testers (including myself)
and a BES 4.1 box.

The problem was that 03 users could not send to 07 users at all, 07 users could send to 03 users. No one could receive or send to or from blackberrys.
 
This is interesting since I'm doing a migration soon. Which server is the BES server MAPI configuration pointing to? Which Exchange server is the SMTP bridgehead (I'm assuming 03) and can the users on both servers send and receive to each other in both directions from both Outlook and Blackberry? Any errors in application eventlog? Which roles did you install on the 07 box? Is AD on another box? More info, more info!
 
No problems with Exchange. But we were having problems with our BB server not allowing us to receive emails on our BBs. Whether this is a direct result of applying that particular patch remains to be seen, but our Exchange admin "restarted the services" on our BB server and we were able to receive email on our BBs afterwards.
 
Originally posted by: hiromizu
This is interesting since I'm doing a migration soon. Which server is the BES server MAPI configuration pointing to? Which Exchange server is the SMTP bridgehead (I'm assuming 03) and can the users on both servers send and receive to each other in both directions from both Outlook and Blackberry? Any errors in application eventlog? Which roles did you install on the 07 box? Is AD on another box? More info, more info!

Heya hope I can help.

BES MAPI is pointing to our Exchange 2003 Server 6.5. Our Exchange 03 server is sitting on Windows Server 2003 SP2.

Our BES Server is at version 4.1 and located on a Windows Server 2003 SP2 box.

Our Exch 03 server is the SMTP bridgehead. Before our problems started happening we had zero problem sending between 03, 07, and our blackberrys. We even noticed a significant speed increase in outlook 07 on our beta testers client machines when they were moved to 07. During the outage we had zero problems show up in our event log.

Exchange 07 had every role installed except for modular messaging and Edge Transport. We don't have enterprise and wouldn't use MM anyway, and we are using MX Logic so we did not need the Edge Transport role installed. AD is on a completely separate box, same subnet as our exchange servers.

To make this more exciting we have a separate location on a another domain with trusts setup.
 
First off, I don't think the Blackberry issue is relevant to the Exchange issues. I think it's more of a permissions issue. Check to make sure that the Besadmin user actually has Send as permission at the top of the domain and do a sample test on other domain user accounts to make sure that the Send as permission is inherited. Finally create an Outlook MAPI profile using the Besadmin user and try to send a message on behalf of a sample set of domain users. Troubleshoot permissions if you are denied permission to send.

Exchange. It's a bad idea to test in a production environment but have you tried using the hub transport in 07, repointing BES to the 07 box and testing? You'll have to re-point port 25 to the 07 box. I don't remember the details on whether you can use 03 bridgehead to route mail to 07 without setting up SMTP connectors.

Otherwise open a ticket with Microsoft and get it fixed!
 
BES issue is taken care of now and it wasn't send as permissions. First thing I checked! It's because the Blackberry mailbox had to be on the exch07 server so it would send messages and since Exch07 wasn't receiving messages the blackberry mailbox wasn't either. I am still unsure how it cause it to not send though... since exchange 07 was still sending emails via outlook and owa. And yes, I did have SMTP connectors setup on the server.

I didn't do the initial setup of Exchange... It looks like I'm cleaning up the mess though. So I'm unsure of all the details that went into the installation.

Oh, and I hate testing in production, unfortunately they don't want to cough up the money to allow me to have a proper test environment.
 
Originally posted by: ZeroIQ
BES issue is taken care of now and it wasn't send as permissions. First thing I checked! It's because the Blackberry mailbox had to be on the exch07 server so it would send messages and since Exch07 wasn't receiving messages the blackberry mailbox wasn't either. I am still unsure how it cause it to not send though... since exchange 07 was still sending emails via outlook and owa. And yes, I did have SMTP connectors setup on the server.

I didn't do the initial setup of Exchange... It looks like I'm cleaning up the mess though. So I'm unsure of all the details that went into the installation.

Oh, and I hate testing in production, unfortunately they don't want to cough up the money to allow me to have a proper test environment.

You didn't do the initial setup of which Exchange? 2003 or 2007?

Interesting that the Besadmin account has to be on the 07 box, I didn't know this. Did you find out this info from BES support or trial and error or some online forum?

I'm missing a few dots otherwise. When you send a message from an account on the 07 box to an external domain like gmail.com, does it actually leave from the 07 host via 25 or does it get relayed through 03 and out? I'm assuming the latter if you don't have Hub Transport installed but you weren't specific on that one.

Do you have any RPC over HTTPS clients configured? If so, which front end host is it pointed to via 443? Not that it really matters in your case but I'm curious if CAS on 07 can relay through an 03 bridgehead.

Doesn't cost much to set up a beefcake workstation with VMWare. I think it'd be easy to create a case for that.
 
I didn't do either of them. My Exch 03 was setup a year before I got here and I didn't install Exch 07 because I took on the HyperV admin responsibilities.

If I'm sending from Exch 07 it then goes to Exch 03, then out port 25 (smart host is setup) to MX Logic. You have to use a HUB Transport server if you want to route mail, otherwise it's just a mailbox server... so I see how me not including that screwed you up. A send and receive connector is setup.

Yes, RPC over HTTPS is setup and right now it's configured on the 03 machine. For OWA if you try to log in on the 03 OWA it will forward you to the correct address on the 07 server and have you re-login... I think that's right anyway.

Let me know if I'm not being clear. I've been working 15 hours now.
 
Originally posted by: ZeroIQ
Oh and buying anything with a 1.5 million shortfall is not going to happen right now, especially for IT. 🙁

Have you talked to Microsoft about this? They have a very good Exchange support team that should get you up and running for very cheap. (~$250 for the entire case without time limits)
 
Back
Top