New update for Exchange Server 2016 / 2019 (CVE-2020-0903)

Microsoft released a new security update for Exchange Server 2016 and 2019 yesterday. The update closes a vulnerability classified as "Important". Description of the vulnerability: A cross-site scripting (XSS) vulnerability exists when Microsoft Exchange Server does not properly sanitize a specially crafted web request to an affected Exchange server. An authenticated attacker could exploit the vulnerability by ... Read more

Exchange Server: Install updates now

On February 13, 2020, Microsoft released updates for all Exchange Server versions for the vulnerability CVE-2020-0688. If you have not already done so, you should install the update as soon as possible, as it is now known how the vulnerability can be exploited. Although an attacker must first authenticate themselves on the Exchange Server, it is then possible to take control of the ... Read more

New security updates for Exchange Server 2010 - 2019

Microsoft has released a new security update for Exchange Server 2010 - 2019. The update fixes the following vulnerabilities: CVE-2020-0692 | Microsoft Exchange Server Elevation of Privilege Vulnerability CVE-2020-0688 | Microsoft Exchange Memory Corruption Vulnerability The update is given the severity level "Important", click here to go directly to the downloads: Download Security Update For Exchange Server 2019 ... Read more

Exchange Server: Create a backup of the configuration

Exchange Servers store a large part of the configuration in the Active Directory, which is why a backup of the Exchange Server does not include the configuration of the Exchange Server, but usually only the data (such as the mailboxes). Important settings such as permissions on mailboxes or settings for the virtual directories are stored in the Active Directory. Especially when ... Read more

New updates for Exchange Server (December 2019)

Yesterday, Microsoft released a new update (CU) for Exchange Server 2019 and Exchange 2016. Here is an overview of the changes and fixes in the new CU: Cumulative Update 4 for Exchange Server 2019 Cumulative Update 15 for Exchange Server 2016 The CU 4 for Exchange 2019 can still only be downloaded via VLSC, MSDN ... Read more

Exchange 2019: Problems with the search / search index

With Exchange 2019, something has changed in the search index, the search index for the Outlook and OWA search is no longer separate from the mailbox database in the file system, but has been moved to the database as part of the mailbox. Resetting the search index by deleting the search index files in the file system works with Exchange ... Read more

Certificate Assistant: New version

I have just uploaded a new version of the Exchange Certificate Assistant. The old version still uses the Let's Encrypt protocol ACMEv1, which is no longer supported by Let's Encrypt. The new version 3 of the Certificate Assistant now uses the PowerShell module Posh-ACME to automatically request certificates for Exchange Server via Let's Encrypt. Posh-ACME is ACMEv2 ... Read more