If managing Active Directory using Windows Powershell® is making you feel like you stepped back in time, you are not alone. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why.
When attempting to create a new Edge Subscription file we received the following error:
New-EdgeSubscription : MicrosoftExchange couldn't create or update the Edge Subscription account on the Edge
Transport server for thefollowing reason: The LDAP server is unavailable.. Stack is at
password, BooleanbootStrapAccount, TimeSpan expiry)
At line:1 char:1
+ New-EdgeSubscription -FilenameC:\Certificates\Exchet02_Sub.xml -verbose
+CategoryInfo :InvalidOperation: (:) [New-EdgeSubscription], InvalidOperationException
I looked at numerous postings related to this issue, but none of them provided a solution. We finally engaged Microsoft, and the engineer had me execute an iDNA trace. This is not for the faint-hearted, as few MS engineers are trained in analyzing the output. The time it took to execute the command and have it fail generated a file over 1.2GB in size!
The analysis showed that the command was getting to the Active Identity manager software, which, since these are standalone servers that don't use smart card authentication, was blocking the command from reaching the LDAP server (ADAM).
The software was uninstalled on the server we used to troubleshoot the issue (we have two Edge servers), deleted the personal certificates (add the certificates snap-in selecting the 'My user account' option, then browse to Personal\Certificates), and the problem was resolved. On the second server I was able to solve the problem by simply stopping and disabling the service (though the software will be removed from that server, also)
|ampersand sign in NETBIOS domain name causing Exchange 2010 SP1 install issues||4,162|
|Top 9 Exchange Troubleshooting Utilities for Exchange Administrator||2,563|
|How to mount an Exchange EDB when it displays internal processing error?||124|
|Distribution Group Owner cannot manage group after migrating from 2007 to 2010||88|