Difference between revisions of "Exchange 2013"

From GWAVA Technologies Training
Jump to: navigation, search
Line 123: Line 123:
 
Then go on the left sidebar and select Permissions. Under Admin Role click add. Add Role and select ApplicationImpersonation, press Add-> and then OK. Add the Impersonation User to the Role Group. Click OK.
 
Then go on the left sidebar and select Permissions. Under Admin Role click add. Add Role and select ApplicationImpersonation, press Add-> and then OK. Add the Impersonation User to the Role Group. Click OK.
  
'''ProTip:''' Go into Active Directory Users and Groups. Choose the impersonation account. Set the Account expires to Never.
+
'''ProTip:''' Go into Server Manager/Tools/Active Directory Users and Groups. Choose the impersonation account. Set the Account expires to Never.
  
 
Go to the Account tab, then set in the Account Options:
 
Go to the Account tab, then set in the Account Options:

Revision as of 19:36, 22 August 2014

Contents

Microsoft Exchange 2013

Microsoft Exchange is an email server. It is one of the email systems that Retain can connect to. It is helpful to have an Exchange server handy for testing. Microsoft is pushing people toward Office 365 but it is safe to say people will continue to use Exchange for 5-20 years.

Make sure your server has the name that you want Exchange does not like having it changed once it is set up.

Installing Microsoft Exchange 2013

You need to install Exchange 2013 on a Microsoft Windows Server 2012 R2 system.

The most important tool to have handy is the Exchange Server Deployment Assistant. This provides a great checklist of things you must do to successfully deploy an Exchange server.

We will want an On-premise, new install, with both Mailbox and CAS roles on board. We will NOT be using disjoint namespaces. We will NOT be using Unified Messaging (but it will install it anyway). We will NOT be using an Edge server.

Save that checklist.

Make sure to do the prerequisites!

Open PowerShell and execute the commands

Install-WindowsFeature RSAT-ADDS

and

Install-WindowsFeature AS-HTTP-Activation, Desktop-Experience, NET-Framework-45-Features, RPC-over-HTTP-proxy, 
RSAT-Clustering, RSAT-Clustering-CmdInterface, RSAT-Clustering-Mgmt, RSAT-Clustering-PowerShell, Web-Mgmt-Console, 
WAS-Process-Model, Web-Asp-Net45, Web-Basic-Auth, Web-Client-Auth, Web-Digest-Auth, Web-Dir-Browsing, 
Web-Dyn-Compression, Web-Http-Errors, Web-Http-Logging, Web-Http-Redirect, Web-Http-Tracing, Web-ISAPI-Ext, 
Web-ISAPI-Filter, Web-Lgcy-Mgmt-Console, Web-Metabase, Web-Mgmt-Console, Web-Mgmt-Service, Web-Net-Ext45, 
Web-Request-Monitor, Web-Server, Web-Stat-Compression, Web-Static-Content, Web-Windows-Auth, Web-WMI, 
Windows-Identity-Foundation

Prerequisite installs

Note: .NET Framework 4.5 and Windows Management Framework 3.0 are included with Windows Server 2012 and don't need to be installed separately. .NET Framework 4.5 and Windows Management Framework 4.0 are included with Windows Server 2012 R2 and don't need to be installed separately. Just add the role/feature in Server Manager.

Download and install the Unified Communications Managed API 4.9 Runtime http://www.microsoft.com/en-us/download/details.aspx?id=34992

The Microsoft Office 2010 Filter Packs http://www.microsoft.com/en-us/download/details.aspx?id=17062

Filter Packs SP1 http://www.microsoft.com/en-us/download/details.aspx?id=26604

Filter Packs SP2 http://www.microsoft.com/en-us/download/details.aspx?id=39671

Preparing AD

First you need to extend the schema. Open a command prompt in administrator mode, go to the directory you downloaded exchange into and run

Setup.exe /PrepareSchema /IAcceptExchangeServerLicenseTerms

Now you have to prepare Active Directory this can be done right after the previous command.

Setup.exe /PrepareAD /OrganizationName:"<organization name>" /IAcceptExchangeServerLicenseTerms

Now you have to prepare your AD domains and in the case of a lab you want to do all of them.

Setup.exe /PrepareAllDomains /IAcceptExchangeServerLicenseTerms

Install Exchange

Now we can start installing Exchange: From File Explorer you can run Setup.exe as administrator (right-click and choose Run as administrator)

It will ask you about downloading updates which is a good idea.

There will be more screens but defaults will be sufficient.

When it comes to Server Role Selection you want to choose Mailbox role and Client Access role (Client Access will appear to be greyed out but you can select it.)

Take the default location.

Turn off Malware detection.

Then it will check for the prerequisites. Warnings are okay, because this will be the first exchange server and as long as there are no errors you are good to go.

Then it will take about a hour to install and prepare all the software.

Finally, you will have to reboot.

Post-install steps

There are a number of post-install tasks that need to be completed before your Exchange Server is fully functional.

You can log into the Exchange Admin Center (EAC) by browsing to https://[serverName|IP address]/ecp Remember to log in with your AD forest domain name\user name

You can use the Outlook Web App(OWA) to send and receive mail https://[serverName|IP address]/owa Remember to log in with your AD forest domain name\user name

Instructions for installing the Outlook Retain Plugin

Send Connector

You will need to create a Send Connector so the mail can flow.

First you need to create a send connector.

Go to EAC/Mail Flow/Send Connector.

Click the plus sign to create a new connector, a dialog box will appear, for the lab an internal connector will be enough. Route it through a smart host. I name mine intranetMailSendConnector, not terribly original but it is straightforward. now add the host, which is the Active Directory domain you created before. No need for authentication, at this time. Add your AD domain as an SMTP host. Add your domain as a transport server. and click finish.

Accepted Domain

Next configure an accepted domain.

In the EAC goto Mail flow/Accepted domains The Deployment assistant talks about creating a new one but since Exchange already has the current domain, you can skip this step in the assistant.

Create Impersonation User

In the EAC/Mailboxes there is a nice big plus sign. That is the add button and that is where you can create new users and mailboxes.

At the very least you need to create an Impersonation Account for Retain.

So add a user and make sure the user does not have to change password after next login.

Then go on the left sidebar and select Permissions. Under Admin Role click add. Add Role and select ApplicationImpersonation, press Add-> and then OK. Add the Impersonation User to the Role Group. Click OK.

ProTip: Go into Server Manager/Tools/Active Directory Users and Groups. Choose the impersonation account. Set the Account expires to Never.

Go to the Account tab, then set in the Account Options:

  • User cannot change password
  • Password never expires

Other things

Backup the IIS config file. http://technet.microsoft.com/en-us/library/cc754617(v=ws.10).aspx

Personal tools
Namespaces

Variants
Actions
Home
Exchange
GroupWise
JAVA
Linux
MTK
Retain
GW Monitoring and Reporting (Redline)
GW Disaster Recovery (Reload)
GW Forensics (Reveal)
GWAVA
Secure Messaging Gateway
GW Mailbox Management (Vertigo)
Windows
Other
User Experience
Toolbox
Languages
Toolbox