<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Scott Feltmann&#039;s Blog</title>
	<atom:link href="http://www.scottfeltmann.com/index.php/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.scottfeltmann.com</link>
	<description>Mostly Technical, but some just because!</description>
	<lastBuildDate>Fri, 05 Mar 2010 20:48:07 +0000</lastBuildDate>
	
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Update Rollup 2 for Exchange Server 2010</title>
		<link>http://www.scottfeltmann.com/index.php/2010/03/05/update-rollup-2-for-exchange-server-2010/</link>
		<comments>http://www.scottfeltmann.com/index.php/2010/03/05/update-rollup-2-for-exchange-server-2010/#comments</comments>
		<pubDate>Fri, 05 Mar 2010 20:48:07 +0000</pubDate>
		<dc:creator>Scott</dc:creator>
				<category><![CDATA[Exchange Server]]></category>
		<category><![CDATA[Microsoft Related]]></category>
		<category><![CDATA[Exchange 2010]]></category>
		<category><![CDATA[rollup for Exchange 2010]]></category>
		<category><![CDATA[Scott Feltmann]]></category>
		<category><![CDATA[Upgrade]]></category>

		<guid isPermaLink="false">http://www.scottfeltmann.com/?p=191</guid>
		<description><![CDATA[The Microsoft Exchange Team has announced the release of Update Rollup 2 for Exchange Server 2010.  For the announcement go here: http://msexchangeteam.com/archive/2010/03/05/454155.aspx
Some key fixes are: 
KB 977633 This fixes IMAP4 clients ability to log on to their mailboxes if the mailboxes are located on Exchange 2003 backend servers and if the clients are connecting via Exchange [...]]]></description>
			<content:encoded><![CDATA[<p>The Microsoft Exchange Team has announced the release of Update Rollup 2 for Exchange Server 2010.  For the announcement go here: <a href="http://msexchangeteam.com/archive/2010/03/05/454155.aspx">http://msexchangeteam.com/archive/2010/03/05/454155.aspx</a></p>
<p>Some key fixes are: </p>
<li><a href="http://support.microsoft.com/?kbid=977633">KB 977633</a> This fixes IMAP4 clients ability to log on to their mailboxes if the mailboxes are located on Exchange 2003 backend servers and if the clients are connecting via Exchange 2010 CAS servers.</li>
<li><a href="http://support.microsoft.com/?kbid=979480">KB 979480</a> IMAPid was not working correctly after moving a lot of users from one Exchange 2010 server to another*. IMAP4 users complained about the inbox not being updated any more. Old messages were still visible, but messages which were received after the mailbox move were not visible. The problem affected different IMAP Clients. The problem did not affect MAPI clients and OWA. Now it is fixed up. *(Specifically this occurred in the situation with same DAG, now local storage instead of iSCSI storage, all servers are Exchange 2010 with Update Rollup 1 installed on Windows Server 2008 R2).</li>
<li><a href="http://support.microsoft.com/?kbid=979431">KB 979431</a> When user migrated from Exchange Server 2003 to Exchange Server 2010, and that user connected via POP3, the POP3 service crashed. This was fixed up so it will not crash.</li>
<li><a href="http://support.microsoft.com/?kbid=979563">KB 979563</a> Push Notifications didn&#8217;t work because Exchange Server 2010 was not sending SOAPAction header in the notify callback. This caused Exchange to receive a HTTP 500 response from the notification client and the webservice failed. Push notifications should now properly send that SOAP header.</li>
<li><a href="http://support.microsoft.com/?kbid=980261">KB 980261</a> We fixed passive page patching when diagnostic tracing code was needed for forensic analysis that was generating a -1022 error case.</li>
<li><a href="http://support.microsoft.com/?kbid=980262">KB 980262</a> Source side log copier errors are more gracefully handled when the log has a bad block and the read fails.</li>
<li><a href="http://support.microsoft.com/?kbid=979566">KB 979566</a> Activesync proxy was failing for linked mailboxes in a CAS to CAS proxy scenario where the users token is serialized and sent in the request. When attempting to create the client security context from the SID, a AuthZException was thrown because we did not have access to the token information of the linked account, so now for this it no longer throws exceptions.</li>
<p>For more information on the Hotfix you can go to the page at <a href="http://support.microsoft.com/?kbid=979611">http://support.microsoft.com/?kbid=979611</a>.</p>
<p>Enjoy!</p>
<p><map name='google_ad_map_191_ea70a769b414a80e'>
<area shape='rect' href='http://imageads.googleadservices.com/pagead/imgclick/191?pos=0' coords='1,2,367,28' />
<area shape='rect' href='http://services.google.com/feedback/abg' coords='384,10,453,23'/></map>
<img usemap='#google_ad_map_191_ea70a769b414a80e' border='0' src='http://imageads.googleadservices.com/pagead/ads?format=468x30_aff_img&amp;client=&amp;channel=&amp;output=png&amp;cuid=191&amp;url= http%3A%2F%2Fwww.scottfeltmann.com%2Findex.php%2F2010%2F03%2F05%2Fupdate-rollup-2-for-exchange-server-2010%2F' /></p>]]></content:encoded>
			<wfw:commentRss>http://www.scottfeltmann.com/index.php/2010/03/05/update-rollup-2-for-exchange-server-2010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Looking for a Good Skate Sharpener?</title>
		<link>http://www.scottfeltmann.com/index.php/2010/03/02/looking-for-a-good-skate-sharpener/</link>
		<comments>http://www.scottfeltmann.com/index.php/2010/03/02/looking-for-a-good-skate-sharpener/#comments</comments>
		<pubDate>Tue, 02 Mar 2010 20:28:55 +0000</pubDate>
		<dc:creator>Scott</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Ice Skate Sharpener]]></category>
		<category><![CDATA[Scott Feltmann]]></category>
		<category><![CDATA[Wissota Manufacturing]]></category>

		<guid isPermaLink="false">http://www.scottfeltmann.com/?p=184</guid>
		<description><![CDATA[If anyone out there is like me and getting skates sharpened weekly or twice a week I would encourage you to take a look at the Wissota Skate Sharpener.  I recently purchased one a few weeks ago and have enjoyed it ever since.  My son who plays hockey is getting his skates sharpened at leased [...]]]></description>
			<content:encoded><![CDATA[<p>If anyone out there is like me and getting skates sharpened weekly or twice a week I would encourage you to take a look at the <a href="http://www.wissota.com/toppage.htm">Wissota Skate Sharpener</a>.  I recently purchased one a few weeks ago and have enjoyed it ever since.  My son who plays hockey is getting his skates sharpened at leased once if not two times a week and the run to the skate shop not to mention the $5 a visit was getting costly. According to the Wissota Web site it costs about 17 cents, yes $0.17 to sharpen one skate.  Can you say savings?  Well, insert the Wissota Skate Sharpener.  The machine is pretty easy to use.  I think the hardest part for me was to locate the crown.  That&#8217;s the point where the wheel on the sharpener will hollow out a good radius.  Yes, I&#8217;ve been reading up on Skate Sharpening.  Once there I am now able to sharpen my skates and my sons skates any day and time and it takes only a few minutes.  Much better then dropping them off at the skate shop and waiting hours, if not a day&#8230;..</p>
<p>Anyway, If anyone out there is looking for a good skate Sharpener I recommend the Wissota Skate Sharpener.  I was able to to go to the company and pick up mine but they do ship.  While I was there I got a great demonstration on how the machine worked and the Sales guy even gave me more instruction then I could possibly ask for. There is an instructional DVD included with the Machine along with a lot of extra pieces.  I didn&#8217;t have to buy any thing more to get the machine to work.</p>
<p>So, if you are looking for a skate sharpener take a look at their web site, <a href="http://www.wissota.com/toppage.htm"><em><strong>Wissota Manufacturing Company</strong></em></a>.  And no, I&#8217;m not getting paid for this or getting something for free.  I am happy with their product and wanted to recommend it to anyone out there Looking for a good Skate Sharpening Machine.</p>
<p><map name='google_ad_map_184_ea70a769b414a80e'>
<area shape='rect' href='http://imageads.googleadservices.com/pagead/imgclick/184?pos=0' coords='1,2,367,28' />
<area shape='rect' href='http://services.google.com/feedback/abg' coords='384,10,453,23'/></map>
<img usemap='#google_ad_map_184_ea70a769b414a80e' border='0' src='http://imageads.googleadservices.com/pagead/ads?format=468x30_aff_img&amp;client=&amp;channel=&amp;output=png&amp;cuid=184&amp;url= http%3A%2F%2Fwww.scottfeltmann.com%2Findex.php%2F2010%2F03%2F02%2Flooking-for-a-good-skate-sharpener%2F' /></p>]]></content:encoded>
			<wfw:commentRss>http://www.scottfeltmann.com/index.php/2010/03/02/looking-for-a-good-skate-sharpener/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Move Root Certificate Authority from Windows Server 2003 to Windows Server 2008</title>
		<link>http://www.scottfeltmann.com/index.php/2010/03/02/move-root-ca-from-w2k3-to-w2k8/</link>
		<comments>http://www.scottfeltmann.com/index.php/2010/03/02/move-root-ca-from-w2k3-to-w2k8/#comments</comments>
		<pubDate>Tue, 02 Mar 2010 18:24:26 +0000</pubDate>
		<dc:creator>Scott</dc:creator>
				<category><![CDATA[Microsoft Related]]></category>
		<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Active Directory Certificate Services]]></category>
		<category><![CDATA[AD CS]]></category>
		<category><![CDATA[Certificate Authority]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Migrate Certificate Authority]]></category>
		<category><![CDATA[Root Certificate Authority]]></category>
		<category><![CDATA[Scott Feltmann]]></category>
		<category><![CDATA[Windows 2003]]></category>
		<category><![CDATA[Windows 2008]]></category>

		<guid isPermaLink="false">http://www.scottfeltmann.com/?p=179</guid>
		<description><![CDATA[Well, I’ve been trying to write this article for about a month now and finally had some time to sit down and type it out.  I was inspired by this article when I had a client request to move their Root Certificate Authority on a Windows 2003 Domain Controller to a new Windows 2008 Domain [...]]]></description>
			<content:encoded><![CDATA[<p>Well, I’ve been trying to write this article for about a month now and finally had some time to sit down and type it out.  I was inspired by this article when I had a client request to move their Root Certificate Authority on a Windows 2003 Domain Controller to a new Windows 2008 Domain Controller.  To be honest, there really isn’t anything to it but the information I found out on the net wasn’t that great so I thought I would provide the world with some info on how to perform this process. </p>
<p>The Client setup involved a Windows 2003 domain controller that was acting up.  On this DC was their Root Certificate Authority for their entire Active Directory environment.  The client is small and does not have any special requirements for an Enterprise CA and wanted to move their CA to Windows 2008 Active Directory Certificate Services. </p>
<p>The key principles here are that we need to move the private key associated with the Root Certificate Authority and also the Certificate Authority Database.  When moving a certificate Authority we need to preserve the CA name in the environment, otherwise nothing will work!  The clients will not be able to locate the CA nor will the Root certificate match up with the certificates.  Things just won’t be trusted.</p>
<p>To get started I reviewed the Support Article on <a href="http://support.microsoft.com/kb/298138">How to move a certification authority to another server</a> to backup the existing Windows 2003 Root CA Info.  I first used the Certificate Authority snap-in to backup the CA database and private key.  To perform the backup follow these steps:</p>
<ul>
<li>In the Certification Authority snap-in, right-click the CA name, click All Tasks, and then click Back up CA to start the Certification Authority Backup Wizard.</li>
<li>Click Next, and then click Private key and CA certificate.</li>
<li>Click Certificate database and certificate database log.</li>
<li>Use an empty folder as the backup location. Make sure that the backup folder can be accessed by the new server.</li>
<li>Click Next. If the specified backup folder does not exist, the Certification Authority Backup Wizard creates it.</li>
<li>Type and then confirm a password for the CA private key backup file.</li>
<li>Click Next, and then verify the backup settings. The following settings should be displayed:</li>
<li>Private Key and CA Certificate</li>
<li>Issued Log and Pending Requests</li>
<li>Click Finish.</li>
</ul>
<p>Next we have to save the registry settings.  To save the registry settings perform the following:</p>
<ul>
<li>Click <strong>Start</strong>, and then <strong>Run</strong>.  In the Run field type regedit and click <strong>Ok</strong></li>
<li>Locate and then right-click the following registry subkey, <em>HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\CertSvc\Configuration</em> (While you are here, why not take a look at the settings, take a screen shot, make sure they match up in the end)</li>
<li>Click Export</li>
<li>Save the Registry file in the CA Backup folder that was defined above</li>
</ul>
<p>Now that we have the database, certificate and registry backed up the next step was to remove Certificate Services from the old computer.  This process is pretty straight forward.  Go into the Control Panel, Add/Remove Programs, Windows Components and remove the Tick from Certificate Authority.  <strong>Note</strong> Be sure to remove the Certificate Authority from the old computer prior to deploying Certificate Services on the new machine.  If you deploy AD CS first the target CA will become unusable. </p>
<p>Finally, rename the old server or permanently disconnect it from the network. </p>
<p>In the step above I took the existing Domain Controller, removed the Certificate Services from it and then performed a DCPromo to remove Active Directory from the computer.  Once the computer was no longer a domain controller I renamed the old server.  I wanted to keep the server online for a fail back just in case, which wasn’t necessary since the move went over successfully!</p>
<p>Now, looking at where we stand right now I had the database, the Private Key and the certificate authority database backed up.  The data I backed up above should be copied to the new server that will be used for Active Directory Certificate Services.  This will need to be imported below. Now, the next step is to deploy Active Directory Certificate Services on the Windows 2008 domain controller.  BTW I should point out that when deploying Active Directory Certificate Services that you should use Windows 2008 Enterprise edition.  W2K8 Enterprise gives you more functionality of your Certificate Services.  For a list of features in Windows 2008 Standard vs Windows 2008 take a look at this link: <a href="http://technet.microsoft.com/en-us/library/cc772393(WS.10).aspx">Active Directory Certificate Services Step-by-Step Guide</a>.  If you scroll down a bit you will see a comparison chart which will note which features are available with which version of Windows you use. </p>
<p>Now, let’s move on to the part where we deploy and restore the Certificate Services.   Log on with local or enterprise administrator permissions to the CA computer and perform the followign:</p>
<ul>
<li>Launch the Service Manager for Windows 2008. </li>
<li>In the console tree, click <strong>Roles</strong>.</li>
<li>On the <strong>Action</strong> menu, click <strong>Add Roles</strong>.</li>
<li>If the Before you Begin wizard appears, click <strong>Next</strong>.</li>
<li>In the list of available server roles, select the <strong>Active Directory Certificate Services</strong> check box, and click <strong>Next</strong> twice.</li>
<li>Make sure that <strong>Certification Authority</strong> is selected, and click <strong>Next</strong>. (Note: If you are going to use Web Enrollment make sure to check this box.  You can always add it later but Why not add it now?  All the required roles will also be installed when you check this box since you will get a list of Add role service required)</li>
<li>Select Enterprise and click <strong>Next</strong>.  (We are doing this because this is an Enterprise Root CA that will integrate with Active Directory.  Just like the one I decommissioned.  Best practice is to have a Standalone Root CA but given the size of this organization they are not too concerned with having a Standalone Root CA.)</li>
<li>Specify <strong>Root</strong>  and click <strong>Next</strong>.  (If the CA you’re moving from was a Subordinate CA then we would want to tick the Subordinate CA option.  But since in my example this is a Root CA we are sticking with root.  Keep in main that if you’re coming from a Root CA or a Subordinate CA this option must match with what you’re coming from.)</li>
<li>At this stage, you have a choice between creating a new private key or using an existing private key.  For a migration, on the <strong>Set Up Private Key</strong> page, select <strong>Use existing private key </strong>and choose <strong>Select a certificate and use its associated private key</strong>.</li>
</ul>
<p>You should have something that looks like this:</p>
<p><a href="http://www.scottfeltmann.com/wp-content/uploads/2010/03/ADCSPic.JPG"><img class="aligncenter size-full wp-image-178" title="ADCSPic" src="http://www.scottfeltmann.com/wp-content/uploads/2010/03/ADCSPic.JPG" alt="ADCSPic" width="766" height="382" /></a></p>
<p>Click <strong>Next </strong>and continue the steps below:</p>
<ul>
<li>If the CA certificate we backed up above has been installed on the computer, it will be listed in the Certificates box. Otherwise, click Import to import a certificate from the .pfx file created by exporting the CA certificate and private key from the source CA.</li>
<li>Click <strong>Browse</strong>, and locate and select the file containing the certificate and private key exported from the source CA.</li>
<li>Enter the password you selected when exporting the CA certificate and key from the source CA, and click <strong>OK</strong>.  Select the Certificate that was just imported and click Next</li>
<li>When choosing your path you can either use defaults or browse to new ones.  Once done click Next</li>
<li>Complete the installation of the AD CS</li>
<li>Click Yes to accept the warning to overwrite AD DS. (This appears only if you are installing an enterprise CA.)</li>
</ul>
<p>Congratulations, you’re almost there!  We have deployed Active Directory Certificate Services on Windows 2008.  There are still two more steps that must be completed.  This is the process of restoring the Certificate Authority Database that was backed up in the first section and restoring the registry component. </p>
<p>To restore the registry simply locate the registry value that was saved above, right click the file and select merge.  This will import the Registry settings to the W2K8 server.  Next we have to restore the database.   You can check to make sure the settings were imported correctly by going to HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\CertSvc\Configuration and verify your settings are there.  (Remember that screen shot?)</p>
<p>To restore the database and log files perform the following:</p>
<ul>
<li>Open Server Manager on the Windows 2008 Server.</li>
<li>Expand Roles and then Expand Active Directory Certificate Services.</li>
<li>Locate the name of the CA you just deployed.</li>
<li>Right Click the CA name and select Restore CA…</li>
<li>You will get a warning message that the AD CS cannot be running to perform this action.  Simply click Ok to stop AD CS.  AD CS will begin to stop</li>
<li>On the Wizard click Next</li>
<li>On the Items to Restore screen check the box Certificate database and certificate database log only.  Click Browse to locate the database that was copied over above.  (Note: I need to point out here that you select the folder you backed up to.  i.e. if you backed up the database and logs to C:\Temp\CABackup then this will be the folder you will restore from.  The backup process will create a subdirectory that it will look for during Restore, if you go one folder too deep the restore will fail.)  Once you have located your backup click Next.</li>
<li>On the completion screen click Finish and the restore will begin. </li>
<li>Once the restore is complete you will receive a action box that asks if you would like to restart the AD CS.  Simply click Yes.  (We shouldn’t have any incremental backups since we are doing a migration.)</li>
<li>Once the AD CS service is restarted we are good to go!</li>
</ul>
<p>Well, what do you guys think?  Worth the effort?  Migrating to W2K8 AD CS will help your CA remain alive much longer.  During this process I also had to renew the CA Certificate which was pretty much easy. </p>
<p> I hope this article will help someone out there, I know I was able to get through it but had to go to a couple of different sources to get the exact process down.</p>
<p> Enjoy!</p>
<p><map name='google_ad_map_179_ea70a769b414a80e'>
<area shape='rect' href='http://imageads.googleadservices.com/pagead/imgclick/179?pos=0' coords='1,2,367,28' />
<area shape='rect' href='http://services.google.com/feedback/abg' coords='384,10,453,23'/></map>
<img usemap='#google_ad_map_179_ea70a769b414a80e' border='0' src='http://imageads.googleadservices.com/pagead/ads?format=468x30_aff_img&amp;client=&amp;channel=&amp;output=png&amp;cuid=179&amp;url= http%3A%2F%2Fwww.scottfeltmann.com%2Findex.php%2F2010%2F03%2F02%2Fmove-root-ca-from-w2k3-to-w2k8%2F' /></p>]]></content:encoded>
			<wfw:commentRss>http://www.scottfeltmann.com/index.php/2010/03/02/move-root-ca-from-w2k3-to-w2k8/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Exchange 2007 and Journaling to a 3rd party (external) mailbox</title>
		<link>http://www.scottfeltmann.com/index.php/2010/02/23/exchange-2007-and-journaling-to-a-3rd-party-mailbox/</link>
		<comments>http://www.scottfeltmann.com/index.php/2010/02/23/exchange-2007-and-journaling-to-a-3rd-party-mailbox/#comments</comments>
		<pubDate>Tue, 23 Feb 2010 22:49:44 +0000</pubDate>
		<dc:creator>Scott</dc:creator>
				<category><![CDATA[Exchange Server]]></category>
		<category><![CDATA[Microsoft Related]]></category>
		<category><![CDATA[Database Journaling]]></category>
		<category><![CDATA[Exchange 2007]]></category>
		<category><![CDATA[Exchange Journaling]]></category>
		<category><![CDATA[Hub Transport Server]]></category>
		<category><![CDATA[Internal Relay Domain]]></category>
		<category><![CDATA[Managing Accepted Domains]]></category>
		<category><![CDATA[Scott Feltmann]]></category>

		<guid isPermaLink="false">http://www.scottfeltmann.com/?p=176</guid>
		<description><![CDATA[I recently performed an Exchange 2007 upgrade for a client who was moving from Exchange 2003.  As part of their compliance with some regulations they are required to journal the activity of certain mailboxes within their organization.  Journaling in this situation was enabled on the database level so all users in the database will have [...]]]></description>
			<content:encoded><![CDATA[<p>I recently performed an Exchange 2007 upgrade for a client who was moving from Exchange 2003.  As part of their compliance with some regulations they are required to journal the activity of certain mailboxes within their organization.  Journaling in this situation was enabled on the database level so all users in the database will have all emails sent and received forwarded to an external 3<sup>rd</sup> party mail server.  This was done through a send connector to the 3<sup>rd</sup> party’s domain. </p>
<p>The problem the client was experiencing in Exchange 2007 was that all outbound emails originating internally were being sent to the external journaling provider however, all inbound emails were not being forwarded to the journaling provider. </p>
<p>The client contacted the Journaling provider and from a conversation it was determined that when an inbound message arrived to the Exchange Mailbox Server, it would be forwarded to the journaling provider from the original sender, the original sender being someone from outside the organization.  This immediately put up a red flag in my head.  I started to think, Exchange receives an email to send to a 3<sup>rd</sup> party, from a person outside of this trusted organization.   Exchange was refusing to send the message!  So, the thought came into play, how to configure this thing to allow it to relay to the 3<sup>rd</sup> party email server.  Anyone?  Anyone?  Ok, the solution was actually quite simple and once I understood what was happening it was easy to figure out.  I simply setup an Internal Relay!  Yup, that’s it.  The Internal Relay will allow Exchange 2007 to receive emails for a specific domain, query Active Directory for the mailbox and deliver the mail for that domain if it is found internally.  If the mailbox is not found internally Exchange will then Relay the email for the 3<sup>rd</sup> party mailbox server specified in the Send connector which was already configured above!  Walla, problem solved!</p>
<p>For more information on what an Internal Relay Domain is click <a href="http://technet.microsoft.com/en-us/library/bb124423(EXCHG.80).aspx">here</a>.</p>
<p>Have a great day!</p>
<p><map name='google_ad_map_176_ea70a769b414a80e'>
<area shape='rect' href='http://imageads.googleadservices.com/pagead/imgclick/176?pos=0' coords='1,2,367,28' />
<area shape='rect' href='http://services.google.com/feedback/abg' coords='384,10,453,23'/></map>
<img usemap='#google_ad_map_176_ea70a769b414a80e' border='0' src='http://imageads.googleadservices.com/pagead/ads?format=468x30_aff_img&amp;client=&amp;channel=&amp;output=png&amp;cuid=176&amp;url= http%3A%2F%2Fwww.scottfeltmann.com%2Findex.php%2F2010%2F02%2F23%2Fexchange-2007-and-journaling-to-a-3rd-party-mailbox%2F' /></p>]]></content:encoded>
			<wfw:commentRss>http://www.scottfeltmann.com/index.php/2010/02/23/exchange-2007-and-journaling-to-a-3rd-party-mailbox/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Where&#8217;s My Single Instance Storage?</title>
		<link>http://www.scottfeltmann.com/index.php/2010/02/22/wheres-my-single-instance/</link>
		<comments>http://www.scottfeltmann.com/index.php/2010/02/22/wheres-my-single-instance/#comments</comments>
		<pubDate>Mon, 22 Feb 2010 17:35:59 +0000</pubDate>
		<dc:creator>Scott</dc:creator>
				<category><![CDATA[Exchange Server]]></category>
		<category><![CDATA[Microsoft Related]]></category>
		<category><![CDATA[Archiving]]></category>
		<category><![CDATA[Exchange 2010]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Scott Feltmann]]></category>
		<category><![CDATA[Single Instance Storage]]></category>
		<category><![CDATA[Storage]]></category>

		<guid isPermaLink="false">http://www.scottfeltmann.com/?p=173</guid>
		<description><![CDATA[The MS Exchange Team has a nice post (http://msexchangeteam.com/archive/2010/02/22/454051.aspx) on their site explaining the history of Single Instance Storage (SIS) and where it went!
Reading the article I couldn’t help think that many clients are still concerned about space on their SANs and fear the idea of placing anything on local disk.  The idea in the article [...]]]></description>
			<content:encoded><![CDATA[<p>The MS Exchange Team has a nice post (<a href="http://msexchangeteam.com/archive/2010/02/22/454051.aspx">http://msexchangeteam.com/archive/2010/02/22/454051.aspx</a>) on their site explaining the history of Single <span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">Instance Storage (SIS) and where it went!</span></p>
<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">Reading the article I couldn’t help think that many clients are still concerned about space on their SANs and fear the idea of placing anything on local disk.  The idea in the article is placing your production mailboxes on Cheap Disk.  The only time a client or anyone should consider this is where you are using Database Availability Groups and have at least three servers in the DAG.  This will allow you to go backupless but also have all bases covered in your environment surrounding performance and recoverability.  </span></p>
<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">My only other beef though is Archiving.  The biggest question I get from clients is, &#8220;can I have my production mailboxes on one database and put the archived mail on cheap disk?&#8221;  Currently in Exchange 2010 an archived mailbox is stored on the exact same database as the users’ production mailbox. I have heard rumors that this is being looked into for future releases but nothing concrete.   What this means is that using SAN space which is typically RAID 10 or RAID 5 requires expensive disk for the production mailbox, which by default (if leveraged) archiving is also placed on expensive disk.   Explaining to clients that they can use local disk, have HA, but need at least three mailbox servers isn&#8217;t easy.  Not to mention that if you want multiple CAS in your environment with WNLB you need separate machines.  This is due to WNLB and MS Clustering cannot run on the same server. </span></p>
<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">Otherwise, given the way Exchange is deployed these days it is an enterprise solution.  There are times where departments will be included in a single database and other times where users are stored based on their last names.  I do love what they have done with Exchange 2007 and then what they have also done with Exchange 2010.  I just felt that I had to put in my 2 cents on the SIS discussion since I felt the post was a bit misleading.  While the applications are true, we have to consider real life usage and still address client concerns.  </span></p>
<p><map name='google_ad_map_173_ea70a769b414a80e'>
<area shape='rect' href='http://imageads.googleadservices.com/pagead/imgclick/173?pos=0' coords='1,2,367,28' />
<area shape='rect' href='http://services.google.com/feedback/abg' coords='384,10,453,23'/></map>
<img usemap='#google_ad_map_173_ea70a769b414a80e' border='0' src='http://imageads.googleadservices.com/pagead/ads?format=468x30_aff_img&amp;client=&amp;channel=&amp;output=png&amp;cuid=173&amp;url= http%3A%2F%2Fwww.scottfeltmann.com%2Findex.php%2F2010%2F02%2F22%2Fwheres-my-single-instance%2F' /></p>]]></content:encoded>
			<wfw:commentRss>http://www.scottfeltmann.com/index.php/2010/02/22/wheres-my-single-instance/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco Unity and Exchange 2007 on Windows 2008 R2</title>
		<link>http://www.scottfeltmann.com/index.php/2010/02/19/cisco-unity-exchange-2007-w2k8r2/</link>
		<comments>http://www.scottfeltmann.com/index.php/2010/02/19/cisco-unity-exchange-2007-w2k8r2/#comments</comments>
		<pubDate>Sat, 20 Feb 2010 04:47:08 +0000</pubDate>
		<dc:creator>Scott</dc:creator>
				<category><![CDATA[Exchange Server]]></category>
		<category><![CDATA[Microsoft Related]]></category>
		<category><![CDATA[Windows 2008 R2]]></category>
		<category><![CDATA[Active Directory Domain Services]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Cisco Unity]]></category>
		<category><![CDATA[Exchange 2007]]></category>
		<category><![CDATA[Mailbox Server]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Scott Feltmann]]></category>
		<category><![CDATA[Windows 2008 R2 Domain Controller]]></category>

		<guid isPermaLink="false">http://www.scottfeltmann.com/?p=171</guid>
		<description><![CDATA[So, an interesting call came to me last week regarding a client who was having some issues with Voicemails from Cisco Unity (I believe it was 7.0) transporting voice mails to Exchange.  Their Exchange 2007 instance was moved from W2K8 to W2K8 R2 due to an issue they had with the W2K8 server.  Not realizing [...]]]></description>
			<content:encoded><![CDATA[<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">So, an interesting call came to me last week regarding a client who was having some issues with Voicemails from Cisco Unity (I believe it was 7.0) transporting voice mails to Exchange.  Their Exchange 2007 instance was moved from W2K8 to W2K8 R2 due to an issue they had with the W2K8 server.  Not realizing that Unity (or Exchange) was not compatible with Windows 2008 R2 they started to have problems.</span></p>
<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">Basically the problem they were having was when a voice mail was left for a user, it was not being delivered to the user.  Voicemails would pile up on the Unity server.  The recommendation was to reinstall Exchange 2007 on a W2K8 server WITHOUT R2.  The client decided to take a path to resolve the issue but I am not certain what they did.</span></p>
<p>On another note <a href="http://msexchangeteam.com/archive/2009/11/04/453026.aspx">Exchange 2007 is not supported on Windows 2008 R2 yet</a>, however I have heard rumors that if you install Exchange 2007 SP2 on Windows 2008 R2 if you run the install in Windows Vista Compatibility mode the install will work.  When will Exchange 2007 officially support Windows 2008 R2?  Well, Exchange 2007 SP3 will allow support for Windows 2008 R2.   <a href="http://redmondmag.com/articles/2009/12/03/microsoft-planning-exchange-2007-sp3-in-2010.aspx">Exchange 2007 SP3</a> should be released some time this year (2010). </p>
<p>Moral of the story, do not put Exchange 2007 on W2K8 R2, and do not use Unity with Windows 2008 R2. </p>
<p>I also understand that Cisco Unity does not support Windows 2008 R2 domain controllers.  Exchange 2007 SP2 will support Windows 2008 R2 domain controllers.  So, take your pick, but you can&#8217;t use Unity to query W2K8 R2 DCs. </p>
<p>I hope this helps some people out there!  Thanks for visiting.</p>
<p><map name='google_ad_map_171_ea70a769b414a80e'>
<area shape='rect' href='http://imageads.googleadservices.com/pagead/imgclick/171?pos=0' coords='1,2,367,28' />
<area shape='rect' href='http://services.google.com/feedback/abg' coords='384,10,453,23'/></map>
<img usemap='#google_ad_map_171_ea70a769b414a80e' border='0' src='http://imageads.googleadservices.com/pagead/ads?format=468x30_aff_img&amp;client=&amp;channel=&amp;output=png&amp;cuid=171&amp;url= http%3A%2F%2Fwww.scottfeltmann.com%2Findex.php%2F2010%2F02%2F19%2Fcisco-unity-exchange-2007-w2k8r2%2F' /></p>]]></content:encoded>
			<wfw:commentRss>http://www.scottfeltmann.com/index.php/2010/02/19/cisco-unity-exchange-2007-w2k8r2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>My Client Visit Yesterday Part 2</title>
		<link>http://www.scottfeltmann.com/index.php/2010/02/12/my-client-visit-part-2/</link>
		<comments>http://www.scottfeltmann.com/index.php/2010/02/12/my-client-visit-part-2/#comments</comments>
		<pubDate>Fri, 12 Feb 2010 21:18:48 +0000</pubDate>
		<dc:creator>Scott</dc:creator>
				<category><![CDATA[Exchange Server]]></category>
		<category><![CDATA[Microsoft Related]]></category>
		<category><![CDATA[Exchange 2007]]></category>
		<category><![CDATA[Exchange database]]></category>
		<category><![CDATA[Exchange SCC]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Microsoft Clustering]]></category>
		<category><![CDATA[Scott Feltmann]]></category>
		<category><![CDATA[Single Copy Cluster]]></category>

		<guid isPermaLink="false">http://www.scottfeltmann.com/?p=160</guid>
		<description><![CDATA[Exchange 2007 SCC unable to fail over to passive node, and what was going on!]]></description>
			<content:encoded><![CDATA[<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">So, yesterday I was out at a client site to review their Exchange 2007 deployment.  In my previous post I talked about how the Subnet the Exchange 2007 servers were in did not have the IP subnet associated with an AD site.  Well, I did come across another interesting issue that was a bit more troublesome.</span></p>
<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">The client is deploying an Exchange 2007 SP2 environment leveraging a Single Copy Cluster (SCC) and two CAS/HUB servers. </span></p>
<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">While testing the failure over process of the SCC we came to the point where using the <em><span style="FONT-FAMILY: 'Georgia','serif'">manage clustered mailbox</span></em> command in the Exchange Management Console or the Exchange Management Shell would not work.  We were receiving an error message that the Database failed to initialize.  The error log was huge, errors on creating the D drive (where the database was located), errors opening the database, mounting the database, it just wasn&#8217;t working!</span></p>
<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">I then suggested to go back and use the MS Failover Cluster Management tool.  We took a node off line, and failover worked.  How Odd!  This appeared to be an issue with permissions on the servers.  Something was prevent Exchange from performing the failover.  We then tried another failover vial the managed clustered mailbox command and I noticed that the shared disk drives were attempting to fail over to the passive node but they couldn&#8217;t!</span></p>
<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">We then proceeded to check permissions into the Windows Cluster and Exchange Cluster, adjusted a few settings but nothing worked.  Well, I then asked, is there a Group Policy blocking any time of assignment to &#8220;Manage auditing and security log&#8221;, he said no.  We checked Group Policy to be certain and there was nothing configured.  I then asked him to take a look at the local security policy on the system, sure enough, only the Administrators were in the group Manage auditing and security log.  Once adding the Exchange Servers to this group on each system the Single Copy Cluster was able to fail over with no problems! </span></p>
<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">I am not certain as to why the Exchange Servers did not get added to the local security policy, there was nothing in group policy or anything on the system to over write this to my knowledge.  But none the less, it is very important to make sure the Exchange Servers do have access to the security setting.</span></p>
<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">Either way it was quite an interesting day at my client site, a few more issues came up but nothing as notable as the ones discussed here.  </span></p>
<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">Hope you have a great day!</span></p>
<p><map name='google_ad_map_160_ea70a769b414a80e'>
<area shape='rect' href='http://imageads.googleadservices.com/pagead/imgclick/160?pos=0' coords='1,2,367,28' />
<area shape='rect' href='http://services.google.com/feedback/abg' coords='384,10,453,23'/></map>
<img usemap='#google_ad_map_160_ea70a769b414a80e' border='0' src='http://imageads.googleadservices.com/pagead/ads?format=468x30_aff_img&amp;client=&amp;channel=&amp;output=png&amp;cuid=160&amp;url= http%3A%2F%2Fwww.scottfeltmann.com%2Findex.php%2F2010%2F02%2F12%2Fmy-client-visit-part-2%2F' /></p>]]></content:encoded>
			<wfw:commentRss>http://www.scottfeltmann.com/index.php/2010/02/12/my-client-visit-part-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Office Communicator 2007 R2 Group Policy Field Guide</title>
		<link>http://www.scottfeltmann.com/index.php/2010/02/12/microsoft-office-communicator-2007-r2-group-policy-field-guide/</link>
		<comments>http://www.scottfeltmann.com/index.php/2010/02/12/microsoft-office-communicator-2007-r2-group-policy-field-guide/#comments</comments>
		<pubDate>Fri, 12 Feb 2010 16:47:27 +0000</pubDate>
		<dc:creator>Scott</dc:creator>
				<category><![CDATA[Microsoft Related]]></category>
		<category><![CDATA[Office Communicator 2007 R2]]></category>
		<category><![CDATA[adm template]]></category>
		<category><![CDATA[Group Policy]]></category>
		<category><![CDATA[MOC]]></category>
		<category><![CDATA[Office Communicator]]></category>
		<category><![CDATA[Scott Feltmann]]></category>

		<guid isPermaLink="false">http://www.scottfeltmann.com/?p=164</guid>
		<description><![CDATA[I was out looking around this morning when I came across this interesting gem: Microsoft Office Communicator 2007 R2 Group Policy Field Guide and thought, oh, do share!
The MOC 2007 R2 Group Policy Field Guide is a MS Word document that contains all the information an administrator wanted to know about MOC GPO settings but was [...]]]></description>
			<content:encoded><![CDATA[<p>I was out looking around this morning when I came across this interesting gem: <a href="http://www.microsoft.com/downloads/details.aspx?displaylang=en&amp;FamilyID=447bdbeb-66dd-4199-a5f7-00bef747fcd5">Microsoft Office Communicator 2007 R2 Group Policy Field Guide</a> and thought, oh, do share!</p>
<p>The MOC 2007 R2 Group Policy Field Guide is a MS Word document that contains all the information an administrator wanted to know about MOC GPO settings but was afraid to ask. </p>
<p>This doc has everything an Admin will need.  Here is a copy of the Appendix so you can see what options this document covers and is available for setting via Group Policy:</p>
<h2>Appendix A. Policy Name Mapping Table</h2>
<table border="1" cellspacing="0" cellpadding="0" width="673">
<thead>
<tr>
<td width="268"><strong>Policy Name</strong></td>
<td width="405"><strong>Name in Group Policy Object Editor</strong></td>
</tr>
</thead>
<tbody>
<tr>
<td width="268">AbsInsideURL</td>
<td width="405">Address Book Server Inside URL</td>
</tr>
<tr>
<td width="268">AbsOutsideURL</td>
<td width="405">Address Book Server Outside URL</td>
</tr>
<tr>
<td width="268">AbsUseFallback</td>
<td width="405">Use in-band provisioning Address Book Server URIs</td>
</tr>
<tr>
<td width="268">AllowUnencryptedFileTransfer</td>
<td width="405">Allow transferring unencrypted files</td>
</tr>
<tr>
<td width="268">AutoDiscoveryRetryInterval</td>
<td width="405">Time interval to retry autodiscovery</td>
</tr>
<tr>
<td width="268">BlockConversationFromFederatedContacts</td>
<td width="405">Block conversation from federated contacts</td>
</tr>
<tr>
<td width="268">CalendarStatePublicationInterval</td>
<td width="405">Time interval to publish calendar data to presence</td>
</tr>
<tr>
<td width="268">CallLogAutoArchivingPolicy</td>
<td width="405">Enable/disable automatic archiving of call logs to Outlook mailbox</td>
</tr>
<tr>
<td width="268">ConferenceAccess</td>
<td width="405">Conference Access</td>
</tr>
<tr>
<td width="268">ConfigurationMode</td>
<td width="405">Specify transport and server</td>
</tr>
<tr>
<td width="268">ConfiguredServerCheckValues</td>
<td width="405">Additional server versions supported</td>
</tr>
<tr>
<td width="268">CustomStateURL</td>
<td width="405">Custom presence states URL</td>
</tr>
<tr>
<td width="268">DefaultPersonalContactStore</td>
<td width="405">Specify the personal contact store for PIM integration.</td>
</tr>
<tr>
<td width="268">DGRefreshPeriod</td>
<td width="405">Time Interval to Refresh the Membership of Each Distribution Group</td>
</tr>
<tr>
<td width="268">DGUrlExternal (Replaces WebServiceURLDG)</td>
<td width="405">Web Service External URL for Distribution Group Expansion</td>
</tr>
<tr>
<td width="268">DGUrlInternal</td>
<td width="405">Web Service Internal URL for Distribution Group Expansion</td>
</tr>
<tr>
<td width="268">DisableApplicationSharingControl  </td>
<td width="405">Disables sharing control with users in an application sharing session</td>
</tr>
<tr>
<td width="268">DisableAVConferencing</td>
<td width="405">Disable Audio/Video Conferencing</td>
</tr>
<tr>
<td width="268">DisableCalendarPresence</td>
<td width="405">Disable Calendar Presence</td>
</tr>
<tr>
<td width="268">DisableDataConferencing</td>
<td width="405">Disable Data Conferencing</td>
</tr>
<tr>
<td width="268">DisableEmailComparisonCheck</td>
<td width="405">Disable email comparison check for Outlook PIM integration.</td>
</tr>
<tr>
<td width="268">DisableEmoticons</td>
<td width="405">Disable Emoticons in Instant Messages</td>
</tr>
<tr>
<td width="268">DisableFederatedPromptDisplayName</td>
<td width="405">Prevent showing the display name of federated, non-PIC, contacts in the notification dialog</td>
</tr>
<tr>
<td width="268">DisableFileTransfer</td>
<td width="405">Prevent file transfer</td>
</tr>
<tr>
<td width="268">DisableFreeBusyInfo</td>
<td width="405">Disable publishing free/busy info</td>
</tr>
<tr>
<td width="268">DisableHandsetOnLockedMachine</td>
<td width="405">Configure handset use on locked machine</td>
</tr>
<tr>
<td width="268">DisableHTMLIM </td>
<td width="405">Prevent HTML text in instant messages</td>
</tr>
<tr>
<td width="268">DisableHttpConnect</td>
<td width="405">Disable HTTP fallback for SIP connection</td>
</tr>
<tr>
<td width="268">DisableICE</td>
<td width="405">Disable Interactive Connectivity Establishment (ICE)</td>
</tr>
<tr>
<td width="268">DisableInkIM</td>
<td width="405">Prevent Ink in instant messages</td>
</tr>
<tr>
<td width="268">DisableMeetingSubjectAndLocation</td>
<td width="405">Disable publishing meeting subject and location information</td>
</tr>
<tr>
<td width="268">DisableNTCredentials</td>
<td width="405">Require logon credentials</td>
</tr>
<tr>
<td width="268">DisableOneNote12Integration</td>
<td width="405">Disable OneNote 12 integration</td>
</tr>
<tr>
<td width="268">DisableOnlineContextualSearch</td>
<td width="405">Disable online contextual search</td>
</tr>
<tr>
<td width="268">DisablePC2PCVideo</td>
<td width="405">Disable PC-to-PC Video</td>
</tr>
<tr>
<td width="268">DisablePhonePresence</td>
<td width="405">Disable Call Presence</td>
</tr>
<tr>
<td width="268">DisablePICPromptDisplayName</td>
<td width="405">Prevent showing the display name of PIC contacts in the notification dialog</td>
</tr>
<tr>
<td width="268">DisablePresenceNote</td>
<td width="405">Disable Presence Note</td>
</tr>
<tr>
<td width="268">DisableRCCForwarding </td>
<td width="405">Disable RCC Forwarding</td>
</tr>
<tr>
<td width="268">DisableRTFIM</td>
<td width="405">Prevent rich text in instant messages</td>
</tr>
<tr>
<td width="268">DisableSavingIM</td>
<td width="405">Prevent users from saving instant messages</td>
</tr>
<tr>
<td width="268">DisableServerCheck</td>
<td width="405">Disable server version check</td>
</tr>
<tr>
<td width="268">DisableSimultaneousRinging</td>
<td width="405">Disable simultaneous ringing</td>
</tr>
<tr>
<td width="268">EnableAppearOffline</td>
<td width="405">Enable the state Appear Offline</td>
</tr>
<tr>
<td width="268">EnableConversationWindowTabs</td>
<td width="405">Enable web browser in conversation window</td>
</tr>
<tr>
<td width="268">EnableEventLogging</td>
<td width="405">Turn on event logging for communicator</td>
</tr>
<tr>
<td width="268">EnableFullScreenVideoPreviewDisabled </td>
<td width="405">Enables Full Screen Video and video preview disabled for all OC video calls</td>
</tr>
<tr>
<td width="268">EnableSIPHighSecurityMode</td>
<td width="405">Configure SIP security mode</td>
</tr>
<tr>
<td width="268">EnableSQMData</td>
<td width="405">Specify instrumentation</td>
</tr>
<tr>
<td width="268">EnableStrictDNSNaming</td>
<td width="405">Enable strict DNS naming for server name</td>
</tr>
<tr>
<td width="268">EnableTracing</td>
<td width="405">Turn on tracing for communicator</td>
</tr>
<tr>
<td width="268">EnableURL</td>
<td width="405">Allow hyperlinks in instant messages</td>
</tr>
<tr>
<td width="268">ExUMEnabled </td>
<td width="405">Enable Voicemail Integration</td>
</tr>
<tr>
<td width="268">HelpMenuText</td>
<td width="405">Help Menu</td>
</tr>
<tr>
<td width="268">HelpMenuURL</td>
<td width="405">Help Menu</td>
</tr>
<tr>
<td width="268">IMAutoArchivingPolicy</td>
<td width="405">Enable/disable automatic archiving of IM conversations to Outlook mailbox</td>
</tr>
<tr>
<td width="268">IMWarning</td>
<td width="405">Warning Text</td>
</tr>
<tr>
<td width="268">LocationProfile</td>
<td width="405">Default Location Context for Phone</td>
</tr>
<tr>
<td width="268">MapiPollInterval</td>
<td width="405">Time interval to load calendar data from MAPI provider</td>
</tr>
<tr>
<td width="268">MaxAudioVideoBitRate</td>
<td width="405">Limit bandwidth for audio and video calls</td>
</tr>
<tr>
<td width="268">MaximumNumberOfContacts</td>
<td width="405">Maximum Allowed Number of Contacts</td>
</tr>
<tr>
<td width="268">MRASServerURI</td>
<td width="405">MRAS Server URI</td>
</tr>
<tr>
<td width="268">msRTCLine</td>
<td width="405">UC phone line information</td>
</tr>
<tr>
<td width="268">NotificationsForNewSubscribers</td>
<td width="405">Show notifications for new presence subscribers</td>
</tr>
<tr>
<td width="268">PC2PCAVEncryption</td>
<td width="405">Specify encryption for computer-to-computer audio and video calls</td>
</tr>
<tr>
<td width="268">PC2PCASEncryption</td>
<td width="405">Enables or disables application sharing encryption in peer to peer (2 user) connection scenarios</td>
</tr>
<tr>
<td width="268">Portrange\Enabled</td>
<td width="405">Specify dynamic port ranges</td>
</tr>
<tr>
<td width="268">PreventRun</td>
<td width="405">Prevent users from running Microsoft Office Communicator</td>
</tr>
<tr>
<td width="268">PlayAbbrDialTone </td>
<td width="405">Play abbreviated dial tone</td>
</tr>
<tr>
<td width="268">Portrange\MaxMediaPort</td>
<td width="405"> </td>
</tr>
<tr>
<td width="268">Portrange\MinMediaPort</td>
<td width="405"> </td>
</tr>
<tr>
<td width="268">SavePassword</td>
<td width="405">Allow storage of user passwords</td>
</tr>
<tr>
<td width="268">ServerAddressExternal</td>
<td width="405"> </td>
</tr>
<tr>
<td width="268">ServerAddressInternal</td>
<td width="405"> </td>
</tr>
<tr>
<td width="268">SIPCompression</td>
<td width="405">Configure SIP compression mode</td>
</tr>
<tr>
<td width="268">TabURL</td>
<td width="405">Tab URL</td>
</tr>
<tr>
<td width="268">TelephonyMode</td>
<td width="405">Telephony Mode</td>
</tr>
<tr>
<td width="268">TourLaunchMode</td>
<td width="405">Launch Microsoft Office Communicator Tour</td>
</tr>
<tr>
<td width="268">TourURL</td>
<td width="405">Optional URL for Microsoft Office Communicator Tour is a subvalue of Launch Microsoft Office Tour. See <strong>Launch Microsoft Office Communicator Tour. </strong></td>
</tr>
<tr>
<td width="268">Transport</td>
<td width="405">Transport is a subvalue of <strong>Specify Transport and Server. </strong>See <strong>Specify Transport and Server</strong>.</td>
</tr>
<tr>
<td width="268">VoicemailURI</td>
<td width="405">Voicemail server URI</td>
</tr>
<tr>
<td width="268">WebServicePollInterval</td>
<td width="405">Time interval to load calendar data from web service provider</td>
</tr>
<tr>
<td width="268">SafeTransfer</td>
<td width="405">Attendant &#8211; Safe Transfer</td>
</tr>
<tr>
<td width="268">MusicOnHoldDisabled</td>
<td width="405">Attendant &#8211; Music On Hold Disabled</td>
</tr>
<tr>
<td width="268">MusicOnHoldAudioFile</td>
<td width="405">Attendant &#8211; Music On Hold Audio File</td>
</tr>
<tr>
<td width="268">DisableBalloonWarning</td>
<td width="405">Attendant &#8211; Disable Balloon Warning</td>
</tr>
</tbody>
</table>
<p>Also, if you&#8217;re looking for the Group Policy adm Template you can simply click <a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=5d6f4b90-6980-430b-9f97-ffadbc07b7a9&amp;displaylang=en">here</a>. </p>
<p>Enjoy!</p>
<p><map name='google_ad_map_164_ea70a769b414a80e'>
<area shape='rect' href='http://imageads.googleadservices.com/pagead/imgclick/164?pos=0' coords='1,2,367,28' />
<area shape='rect' href='http://services.google.com/feedback/abg' coords='384,10,453,23'/></map>
<img usemap='#google_ad_map_164_ea70a769b414a80e' border='0' src='http://imageads.googleadservices.com/pagead/ads?format=468x30_aff_img&amp;client=&amp;channel=&amp;output=png&amp;cuid=164&amp;url= http%3A%2F%2Fwww.scottfeltmann.com%2Findex.php%2F2010%2F02%2F12%2Fmicrosoft-office-communicator-2007-r2-group-policy-field-guide%2F' /></p>]]></content:encoded>
			<wfw:commentRss>http://www.scottfeltmann.com/index.php/2010/02/12/microsoft-office-communicator-2007-r2-group-policy-field-guide/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>My Client Visit Yesterday Part 1</title>
		<link>http://www.scottfeltmann.com/index.php/2010/02/11/my-client-visit-part-1/</link>
		<comments>http://www.scottfeltmann.com/index.php/2010/02/11/my-client-visit-part-1/#comments</comments>
		<pubDate>Thu, 11 Feb 2010 18:13:25 +0000</pubDate>
		<dc:creator>Scott</dc:creator>
				<category><![CDATA[Exchange Server]]></category>
		<category><![CDATA[General]]></category>
		<category><![CDATA[Microsoft Related]]></category>
		<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Active Directory Sites and Services]]></category>
		<category><![CDATA[Exchange 2007]]></category>
		<category><![CDATA[Exchange 2007 Deployment and Configuration]]></category>
		<category><![CDATA[Scott Feltmann]]></category>

		<guid isPermaLink="false">http://www.scottfeltmann.com/?p=156</guid>
		<description><![CDATA[So, I was out at a client site yesterday to review the work they have completed so far on their Exchange 2007 deployment.  There were two issues that we came across that were unique that I thought I would mention to the population out there.  Hopefully this information will be able to help someone.
The first [...]]]></description>
			<content:encoded><![CDATA[<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">So, I was out at a client site yesterday to review the work they have completed so far on their Exchange 2007 deployment.  There were two issues that we came across that were unique that I thought I would mention to the population out there.  Hopefully this information will be able to help someone.</span></p>
<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">The first problem I noticed was the error message that stated <em><span style="FONT-FAMILY: 'Georgia','serif'">Exchange was not part of an active directory site</span></em>.  This caused me to think, why would an error come up like this.  My first instinct was to do a Gpresult /r (Windows 2008) which listed out all the information about the computer and user.  The Computer said it belonged to the site Default-First-Site-Name.  Ok, so the server was recognizing that it was a member of the AD Site, but why was exchange balking at the issue?  Well, I asked the IT Admin to open up Active Directory Sites and Services and took a look in there.  Looking over AD Sites and Services I noted the client had only one site configured, Default-First-Site-Name.  Thinking a little bit more about the situation I asked to see what subnets were configured for the site.  Well, upon review the site only had two subnets assigned to it.  Neither one of these Subnets included the subnet Exchange 2007 was in.   Talking to the Admin about this I learned that they had the same issue on the Hub Transport Servers and had to manually configure AD using ADSIEdit to insert the proper site name for the server to use!  Eww, not sure how this will impact their environment in the long run but when installing Exchange this should all be done automatically.  So, I had the admin add the Subnet to the AD Sites and Services and rebooted the mailbox servers, error gone, problem solved!  </span></p>
<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">The moral of the story above?  Make sure that you have your AD Sites and Services properly configured prior to deploying Exchange.  Oh yea, don&#8217;t forget, you need to have a domain Controller in the same AD Site as Exchange.  How the client ever got Exchange working is beyond me.  The workstation was seeing the AD Site but Exchange was not, hence the error.  </span></p>
<p><map name='google_ad_map_156_ea70a769b414a80e'>
<area shape='rect' href='http://imageads.googleadservices.com/pagead/imgclick/156?pos=0' coords='1,2,367,28' />
<area shape='rect' href='http://services.google.com/feedback/abg' coords='384,10,453,23'/></map>
<img usemap='#google_ad_map_156_ea70a769b414a80e' border='0' src='http://imageads.googleadservices.com/pagead/ads?format=468x30_aff_img&amp;client=&amp;channel=&amp;output=png&amp;cuid=156&amp;url= http%3A%2F%2Fwww.scottfeltmann.com%2Findex.php%2F2010%2F02%2F11%2Fmy-client-visit-part-1%2F' /></p>]]></content:encoded>
			<wfw:commentRss>http://www.scottfeltmann.com/index.php/2010/02/11/my-client-visit-part-1/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Exchange 2010 Client Access Server Array (CAS Array)</title>
		<link>http://www.scottfeltmann.com/index.php/2010/02/09/exchange-2010-cas-array/</link>
		<comments>http://www.scottfeltmann.com/index.php/2010/02/09/exchange-2010-cas-array/#comments</comments>
		<pubDate>Tue, 09 Feb 2010 19:31:20 +0000</pubDate>
		<dc:creator>Scott</dc:creator>
				<category><![CDATA[Microsoft Related]]></category>
		<category><![CDATA[CAS Array]]></category>
		<category><![CDATA[Client Access Server]]></category>
		<category><![CDATA[Client Access Server ARRAY]]></category>
		<category><![CDATA[Exchange 2010]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Scott Feltmann]]></category>

		<guid isPermaLink="false">http://www.scottfeltmann.com/?p=152</guid>
		<description><![CDATA[One of the new features in Exchange 2010 that many people are not familiar with is the CAS Array.  The CAS array is a really neat feature for clients looking for High Availability in their Exchange organization and wants to remove the chance for a single point of failure.
In the old versions of Exchange clients [...]]]></description>
			<content:encoded><![CDATA[<p>One of the new features in Exchange 2010 that many people are not familiar with is the CAS Array.  The CAS array is a really neat feature for clients looking for High Availability in their Exchange organization and wants to remove the chance for a single point of failure.</p>
<p>In the old versions of Exchange clients would connect directly to the mailbox server but that is no longer the case in Exchange 2010 (<a href="../index.php/2009/10/26/sizing-exchange-2010-client-access-servers">http://www.scottfeltmann.com/index.php/2009/10/26/sizing-exchange-2010-client-access-servers</a>).  This leads us to the reason why CAS arrays are so important in the Exchange 2010 environment.  In Exchange 2010 clients now connect directly to the CAS.  The CAS then will proxy the client to the mailbox server.  This means that all outlook client connectivity is now routing through the CAS.  When not using the CAS array the outlook client will connect directly to the CAS and remain connected to that CAS.  In the event of an outage the Outlook client will lose connectivity to the Exchange Mailbox Server and will not be able to fail over to another CAS in the Active Directory Site since it has already established a connection to a CAS which is now down.  How does the Outlook client find the CAS?  When a CAS is deployed in Active Directory it will create a service connection point (SCP).  This SCP then tells clients the clients via autodiscover how to find a CAS.  If an organization has multiple CAS then there are multiple SCP created in AD.  This process holds true in both Exchange 2007 and Exchange 2010.  The difference is Exchange 2010 has the ability to create Client Access Array’s.</p>
<p>So, you’re asking yourself, ok, what is a Client Access Array?  Well, I’m glad you asked!  In Exchange 2010 Microsoft introduced a new concept for High Availability for the Client Access Servers called a CAS Array.  What organizations are now capable of doing is configuring a set of Client Access Servers to act as one by using Network Load Balancing (NLB), either Windows or a Hardware Load Balancer will do.  When using NLB admins create a DNS record that points to a Virtual IP address (VIP).  Behind this VIP will be the Client Access Servers.  You may have one or twenty.  Keep in mind though, if using one, when that server goes down, users lose connectivity.  (I’m assuming that you know how to NLB the Client Access Servers, unfortunately I don’t have anything written on setting up NLB but there are some <a href="http://www.google.com/search?hl=en&amp;safe=active&amp;q=exchange+2010+nlb+cluster&amp;aq=f&amp;aqi=&amp;oq=">good articles</a> out there.)  So, if you have three CAS in your environment you are capable of creating a new array which will include all three of these servers.  The array will point to the NLB hostname which will then route the traffic to one of the CAS behind the NLB URL.  In the event that a CAS should go offline, and since the client is connecting directly to the NLB URL and IP the client will be redirected to a functioning CAS and be able to maintain their connection!</p>
<p>Now that we have an idea of what a Client Access Array is the next logical step is creating the array!  In order to create a new Client Access Array we will use the new command of “New-ClientAccessArray”.  This command will create an object that represents a load balanced array of CAS within a single Active Directory Site.  Keep in mind, that each array is specific to the AD site.  This means if you have multiple sites with Client Access Servers you can create arrays specific to that site.</p>
<p>The following example is the command for creating a new array, this command will create a server array named cas.scottfeltmann.com:</p>
<blockquote><p><em>New-ClientAccessArray –FQDN cas.scottfeltmann.com –Name “cas.scottfeltmann.com” –Site “HQ”</em></p></blockquote>
<p>The Fqdn parameter specifies the fully qualified domain name (FQDN) of the Client Access server array. (Required)</p>
<p>The Name parameter specifies the name of the Client Access server array.<br />
The Site parameter specifies the Active Directory site to which the Client Access server array belongs.  (Required)</p>
<p>In the event that exchange databases already existed prior to the creation of the CAS array you will need to configure the databases to point to the new array.  To do this you can use the following command:</p>
<blockquote><p><em>Set-MailboxDatabase Databasename –RpcClientAccessServer “cas.scottfeltmann.com”</em></p></blockquote>
<p>Otherwise, when a new database is created it will automagically detect the Client Access array and point users to the load balanced URL.</p>
<p>In close if you’re looking for some HA you will want to use the Client Access Array to provide the highest level of redundancy for your Outlook client connection.  Keep in mind you will still need another form of HA for OWA and ActiveSync.  ISA 2006 presents a group solution for this process as well since ISA can direct traffic to multiple Exchange Client Access Servers.  For more information on NLB Exchange 2010 CAS see my link here: (<a href="../index.php/2009/10/21/network-load-balancing-recommended-for-exchange-2010-cas-public-facing-internet-facing-and-internal/">http://www.scottfeltmann.com/index.php/2009/10/21/network-load-balancing-recommended-for-exchange-2010-cas-public-facing-internet-facing-and-internal/</a>)</p>
<p><strong>Edit:</strong></p>
<p style="LINE-HEIGHT: 14.25pt"><span style="FONT-FAMILY: 'Georgia','serif'; FONT-SIZE: 10pt">I would also like to point out that if you would like to remove a CAS from a CAS Array you will need to remove that Client Access Server from the NLB array.  This can be done either through WNLB if that is what you are using or via your NLB appliance.  Simply remove the desired server from the NLB and that server will no longer be included in the CAS Array.  </span></p>
<p><map name='google_ad_map_152_ea70a769b414a80e'>
<area shape='rect' href='http://imageads.googleadservices.com/pagead/imgclick/152?pos=0' coords='1,2,367,28' />
<area shape='rect' href='http://services.google.com/feedback/abg' coords='384,10,453,23'/></map>
<img usemap='#google_ad_map_152_ea70a769b414a80e' border='0' src='http://imageads.googleadservices.com/pagead/ads?format=468x30_aff_img&amp;client=&amp;channel=&amp;output=png&amp;cuid=152&amp;url= http%3A%2F%2Fwww.scottfeltmann.com%2Findex.php%2F2010%2F02%2F09%2Fexchange-2010-cas-array%2F' /></p>]]></content:encoded>
			<wfw:commentRss>http://www.scottfeltmann.com/index.php/2010/02/09/exchange-2010-cas-array/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
