How do I  configure multiple domains in exchange 2007 SP1? - SOLVED
I am trying to add multiple domains to Exchange 2007 SP1. I have two groups of domains that need to be separated from each other.Group One:company1.com, company1.net and company1.orgGroup Two:company2.com, company2.net and company2.orgI currently have Group One setup using the Accepted Domains and E-mail Address policies within the organizational Configuration of the EMC. This allows me to get mail from all three domains in the group to one address.Example:support@company1.net and support@company1.org both go to support@company1.comI need to setup Group Two just like Group One I also need Group Two to be completely separated from Group One. I will need to be able to use the same User Names in both domains. Example:I need support@company1.net and support@company2.netIf anyone has any suggestions or can point me towards any articles that may help me, I would be grateful.Thanks in advanced. Johnathan
January 18th, 2009 10:51pm

Hi,If you add another accepted domain and associated e-mail policy you should be fine.Leif
Free Windows Admin Tool Kit Click here and download it now
January 19th, 2009 12:01am

I am a bit confused on this then. I cannot see a way to isolate the addresses from each other using the Accepted Domains and E-mail Address Policies.How do I go about creating and isolate support@company1.com from support@company2.com? My DC is configured as company1.com so when I add a mailbox it only gives me the option of user@company1.com . I guess the main part of my confusion is how to actually create a mailbox under company2.com when it is not listed in the drop down for User logon name suffix. Thanks,Johnathan Johnathan
January 19th, 2009 5:47am

Hmmm, your confusing Universal Principal Name (UPN) with your email address...completely seperate.Just create an account with UPNCompany1.NetSupport@company1.com. Your display name will need to be unique, like "Customer 1 Network Support".Then, manually assign this user the email (using Exchange 2007 tools) of support@company1.net. While not required for your solution, You can change the UPN in the drop down...but you wil still need to do the above manual steps unless you create multiple custom emal policies as Leif suggested. I don't recomend it, since it's not required to achieve your desired result.Adding more UPN suffixes to the dropdown can be found here:http://windowsitpro.com/article/articleid/37795/access-denied-creating-new-upn-suffixes.html John GilhamPrincipal Consultant Gilham ConsultingAdvanced Microsoft Solutions Web: www.Gilham.org
Free Windows Admin Tool Kit Click here and download it now
January 19th, 2009 6:30am

Ok, I have not been able to get it to work yet but I do see where you are going with this. I am new to Exchange so it may take me a bit to get used to the format and procedures for Exchange. I used to use Merak Mail in my former position. I was confusing the UPN with my web domains so that really put me in a bind. I will have to find more resources on Exchange to fully understand its capabilities and the methods to implement them. Thank you,JohnathanP.S.If you don't mind just one more questions. You mentioned using Exchange 2007 tools. Are the tools a separate download or included in Exchange 2007 SP1? Johnathan
January 19th, 2009 7:52am

Hi John,Below similar thread helps you to understand your situation.http://social.technet.microsoft.com/Forums/en-US/exchangesvrdeploy/thread/06c722c0-5040-488d-bbed-6a77ec9af54f/Since you told separate groups.- For exisisting users of company2, who are already stampped with company1 smtp addresses, email addresses of company1.xyz need to remove manaullay from their proxy addresses. Powershell/ADModify.net helps you to to remove those smtp address in bulk.- For new users, which you will create for company2, will be taken care by filter defined insideEmail Address Policy which you create for company2.You need to add UPN suffix for OWA & AD login id.HOW TO: Add UPN Suffixes to a Foresthttp://support.microsoft.com/kb/243629Amit Tank | MVP - Exchange | MCITP:EMA MCSA:M | http://ExchangeShare.WordPress.com
Free Windows Admin Tool Kit Click here and download it now
January 19th, 2009 8:53am

Thank you for the information, especially the links. I will have to give it an other go today. Hopefully I will have this Exchange running at 100% by EOD. Thank you Again,Johnathan Johnathan
January 19th, 2009 5:22pm

Thanks once again for the information and links. I now have the scenario working. I did run into a snag that I thought I would run by you sharp people.When I create a mailbox from within the Exchange management tools it always has its e-mail address defaulted to the primary domain that Exchange was setup with. I have added several UPNs and tried to select the preferred UPN while setting up the Mailbox to no avail. I do not see a way to change this from within the e-mail policy so I have been creating mailboxes then manually changing the e-mail address. I have setup an e-mail policy that filters by a Customer Attribute so that I can apply a few Accepted Domains to company2. For example; comany2.com also gets comany2.net and comany2.org. I have not found a way to apply the Custom Attribute during the creation of the mailbox. I was thinking if I could apply the attribute for the filter during the creation that it would pick up on the domains I have set in the filter. Example: When creating a Mailbox for bob@company2.com it ends up with the e-mail address bob@company1.com when completed. Thank you,JohnathanI am able to access all accounts through OWA via user@domain.com but now in order to send mail through Outlook2007 I have to enable TLC encryption. If I do not enable it I get an Auth error. It seems without TLC Exchange wants to auth with the pre2000 user name to send mail. Any Ideas on this?Johnathan
Free Windows Admin Tool Kit Click here and download it now
January 20th, 2009 1:39am

Hi John,When creating Email Address Policies (or Address Lists, Dynamic Distribution Groups etc...) using the EMC, we have a limited number of attributes which can be used in filter and itallows to choose only from those preservedattributes.Let's say, you separate mailboxes of different companies depending upon mailbox databases or servers then you can useEMS to create EAP with custom Recipient Filters based on database or server name so EAP applies when mailboxes are getting created on different database/server.How to Create an E-Mail Address Policy By Using Recipient Filtershttp://technet.microsoft.com/en-us/library/bb232194.aspxFilterable Properties for the -RecipientFilter Parameter in Exchange 2007 SP1http://technet.microsoft.com/en-us/library/bb738157.aspxCreating Filters in Recipient Commands:http://technet.microsoft.com/en-us/library/bb124268.aspxAmit Tank | MVP - Exchange | MCITP:EMA MCSA:M | http://ExchangeShare.WordPress.com
January 20th, 2009 4:33am

Thank you once again...Johnathan
Free Windows Admin Tool Kit Click here and download it now
January 20th, 2009 4:40am

Glad to hear things are working!Amit handled the policies. As for your Exchange 2007 pop3 issue with UPN logon (if larger than 40 char):http://support.microsoft.com/default.aspx/kb/945552
January 20th, 2009 4:44am

Opps, Imade a mistake. I stated POP when the actual problem is Auth on the SMTP. I am having problems with Auth when trying to send mail. I updated the original post as follows.I am able to access all accounts through OWA via user@domain.com but now in order to send mail through Outlook2007 I have to enable TLC encryption. If I do not enable it I get an Auth error. It seems without TLC Exchange wants to auth with the pre2000 user name to send mail. Any Ideas on this?I started another thread with a better description.http://social.technet.microsoft.com/Forums/en-US/exchangesvrdeploy/thread/51bc4690-1d6d-4d84-8b95-2b7f4c4870ee/Johnathan Johnathan
Free Windows Admin Tool Kit Click here and download it now
January 20th, 2009 4:52am

It should work for both TLS and Basic with your user's UPN logon. Please note that they need to logon with their UPN logon as defined in Active Directory, not their email address. Also, make sure you give time to replicate if you change the UPN. John GilhamPrincipal Consultant Gilham ConsultingAdvanced Microsoft Solutions Web: www.Gilham.org
January 20th, 2009 5:04am

I have tested with new and old accounts but cannot seem to Auth to send mail without enabling TLC or using the Pre2000 User Name. Any ideas?Johnathan
Free Windows Admin Tool Kit Click here and download it now
January 20th, 2009 5:34am

SOLVED - TLS was being forced before basic Auth. Turned it of and im in businessJohnathan
January 20th, 2009 8:30am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics