Can address rewriting work without edge subscription?
Hello, I have been trying to configure address rewriting on an Edge Transport server without edge subscription. The Edge Transport server is configured per this article http://technet.microsoft.com/en-us/library/bb124011.aspx. I wasnt able to make it work so far. There are no errors or warnings, the server simply doesnt do it. Rewriting agents are enabled. As soon as I deploy a Hub Transport server and subscribe Edge server to it, address rewriting starts working. Then it can rewrite for any host sending email through it including my Exchange 2003 servers. I tried comparing settings and permissions on connectors on subscribed and not subscribed Edge servers and didnt find the trick. Address rewriting on Edge Transport with Exchange 2003 seems to be supported. It is mentioned as an option in this article http://technet.microsoft.com/en-us/library/bb123774.aspx. So far I am using Windows 2003 Server, VMs on MS Virtual Server and 32-bit Exchange 2007.Please advise. Every suggestion is welcome.Thank you,MilomirMilomir
March 20th, 2009 11:41pm

Hi, I would like to explain that the email address rewrite can work without edge subscription. Nevertheless, please understand that the edge server needs to be able to consider the message is submitted internal and authenticated. Therefore, you need to ensure that your internal domain has been added to Accepted domains on the edge server. You also need to configure the Exchange 2003 server authenticate to the edge server to submit the message instead of using anonymous account. You can consider following two methods: Method 1: Externally Secured================1. Create a receive connector on the edge server and configure the Remote IP address as the Exchange 2003 IP address2. Under Authentication tab, select only the Externally Secured3. Under Permissions Groups tab, select Anonymous users and Exchange servers group Method 2: Secured basic authentication between the Edge Transport server and an Exchange 2003 organization:==================Please refer to the procedure To configure the connector from the Exchange 2003 organization to the Edge Transport server to use Basic authentication over TLS in the following article: How to Deploy an Edge Transport Server in an Existing Exchange Server 2003 Organizationhttp://technet.microsoft.com/en-us/library/bb124011.aspx Mike
Free Windows Admin Tool Kit Click here and download it now
March 24th, 2009 9:32am

Thank you Mike for your reply. Today I found part of the problem: in the accepted domains I had a domain to which I have been sending test messages. After I removed it address rewriting started working. I did use article that you mentioned with the option for anonymous access. Now I have 3 internal domains that are supposed to be mapped to the same external domain and rewriting doesnt work for domains which are set as Outbound-Only. Can you help me with some suggestions?Milomir
March 25th, 2009 12:36am

Hi, I have local test the scenario. I am able to have to two internal domains address been rewritten to a same external domain address. At this time, I suggest you check the following points: 1. Whether you have restart the ADAM service on the edge server after add the email address rewrite entry. 2. Whether the three internal domains have been added to the accepted domains in the edge server 3. Whether the message is submitted to edge serve as authenticated. You can enable Pipeline tracing on edge server to check the issue: To enable Pipeline Tracing: Set-transportserver edge pipelinetracingsenderaddress sender@internaldomain.com piplinetracingpath c:\Pipeline Tracing Logs PipelineTracingEnabled $true Then, please send a email to external recipient by using the sender list in above command. Please open the original.eml file which you gathered by using Notepad. You should get the X-MS-Exchange-Organization-AuthAs: Internal. If the X-MS-Exchange-Organization-AuthAs header is Anonymous, the message is considered as not authenticated. Then, the email address will not be rewritten. If you capture trace on edge server, you may get following information: OutboundAddressRewrite P2 rewrite skipped as sender was external/unauthenticated, and the message is therefore coming inbound to the Org. Mike
Free Windows Admin Tool Kit Click here and download it now
March 25th, 2009 6:12am

Thank you Mike. I got it working. I am not sure what the problem was. I have rebuilt the whole thing and now it works for all 3 domains. Thanks for your help!Milomir
March 26th, 2009 6:16pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics