Exchange Server 2019: CU13 published

CU13 for Exchange Server 2019 was released yesterday. The CU13 contains all previous security updates and brings new features for Exchange Server 2019. The CU13 can be downloaded here: CU13 finally brings Modern Authentication (OAuth 2.0) for on-prem Exchange Server. Until now, Modern Authentication was only available in conjunction with the hybrid configuration, i.e. ... Read more

Exchange MoveRequest: StalledDueToSource_DiskLatency

During an Exchange 2016 to Exchange 2019 migration, no mailboxes could be moved to the new Exchange 2019 databases. The MoveRequests got stuck at 0% and showed the error StalledDueToSource_DiskLatency: No matter how big or small the mailbox was: No mailbox could be moved. Directly after creating the MoveRequest, the error StalledDueToSource_DiskLatency was displayed. Also ... Read more

Exchange 2019: ExchangeStoreDB EventID 171 database cannot be mounted

Problems can occur on an Exchange 2019 server if a database is larger than 1 TB. On an Exchange 2019 Standard Server, the maximum database size is 1 TB, if the database is larger, there are problems with failover within the DAG. Also, databases that are larger than 1 TB can no longer be ... Read more

Implement Exchange Health Checker recommendations via script

The Exchange Health Checker is an excellent tool to get a quick overview of the status of the Exchange Server. The PowerShell script provided by Microsoft is continuously updated and can generate a report in HTML format. For a fresh Exchange 2019 installation on a Windows Server 2022, the report looks like this, for example: ... Read more

Exchange 2019: Configure anonymous relay

Unfortunately, there are still applications or devices that can only send mails without authentication. This is not possible in the Exchange Server default setting. However, a new receive connector can be set up which allows anonymous relay for certain IP addresses. The following commands can be used on a server with an English-language operating system. Read more

Allow Outlook Anywhere only for certain users

Several readers of this blog have requested an article on the subject of "Outlook Anywhere for certain users only". The requirement is always quite similar: Only selected users should be allowed to connect to the Exchange Server from the Internet via Outlook Anywhere, all other users should not have this option. In other words, users should ... Read more

Exchange: Block IP after failed logins

A reader asked for an article on how brute force attacks on Exchange servers can be prevented. Since Exchange servers in smaller environments are often directly accessible on the Internet (e.g. via port forward) and can also be identified very quickly thanks to autodiscover, Exchange servers are very suitable for brute force attacks. In a brute force attack ... Read more