Exchange Server and AMSI: Some information

With the July 2021 CUs for Exchange Server, Microsoft has introduced AMSI integration as a new feature for Exchange 2016 and 2019. Here is some information about the new feature. What is AMSI? The Windows AntiMalware Scan Interface (AMSI) is an interface with which services and applications can be integrated into anti-malware solutions. ... Read more

Exchange Server: OWA and EAC do not start after installing the July updates

After installing the July security updates, it may happen that the Exchange Administrative Center (EAC) and OWA can no longer be opened. The cause is an expired certificate for Exchange Server OAuth authentication. Microsoft also refers to this problem in the release notes of the updates. Unfortunately, the notes on the updates are overlooked ... Read more

New security updates for Exchange Server (July 2021)

A week ago, Microsoft released new security updates for Exchange Server 2013, 2016 and 2019. I'm only reporting on this now because I've been on vacation for the last 14 days. But thanks to the CVE reporter, this shouldn't be a problem :-) The following four vulnerabilities are closed by the updates CVE-2021-31196 CVE-2021-34470 CVE-2021-33768 CVE-2021-31206 Here's ... Read more

Exchange 2016/2019: AMSI integration causes problems with Outlook

The new AMSI integration introduced with CU21 for Exchange 2016 and CU10 for Exchange 2019 in conjunction with various anti-virus scanners causes some serious problems. The Outlook connection sometimes becomes so slow that it is no longer possible to work. Even starting Outlook can take several minutes. Outlook repeatedly fails to respond, ... Read more

Exchange Server: Change display name for external mails

In the standard Active Directory setting, the display name is formed from the first and last name. However, many companies, mostly in German-speaking countries, change the generation of the display name to "last name and first name". This has the advantage that users are easier to find in the Exchange address book and in the Active Directory, as the sorting is based on the surname and ... Read more

New security updates for Exchange Server (May 2021)

Microsoft has released new security updates for all Exchange Server versions (2013 - 2019). This time it concerns the vulnerabilities that were successfully used in Pwn2Own 2021 to attack Exchange Server. The following vulnerabilities are fixed: CVE-2021-31209 CVE-2021-31207 CVE-2021-31198 CVE-2021-31195 Here is a description from the Pwn2Own website, presumably exactly this vulnerability is now fixed: The ... Read more

Exchange Reporter 3.9 available

I have just released the new version of the Exchange Reporter. Besides a small bugfix regarding the incorrectly displayed failover time of the databases within a DAG, three new modules are now available. Two of the new modules were contributed by Leslie. Leslie has already found and reported many bugs in the previous versions, so he deserves ... Read more