Link to home
Start Free TrialLog in
Avatar of GhostRyder2112
GhostRyder2112

asked on

Exchange 2007 Mail Submission

Im standing up an Enterprise Exchange 2007 system and Im currently getting no mail flow between the mailbox servers and the hub transport.  Here is the error that keeps coming up 

Event Type:      Warning
Event Source:      MSExchangeMailSubmission
Event Category:      MSExchangeMailSubmission
Event ID:      1009
Date:            7/20/2007
Time:            11:08:41 AM
User:            N/A
Computer:      EXMS01-B
Description:
The Microsoft Exchange Mail Submission service is currently unable to contact any Hub Transport servers in the local Active Directory site. The servers may be too busy to accept new connections at this time.
For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

Ive tried the solutions listed in the website but it has not corrected the issue.  Let me give you a little background 
I currently have an Exch2003 Enterprise setup in domain ABC.com.  We are currently deploying another separate forest, which Ill call domain XYZ.com.  Both domains are connected by a two-way trust and there are not child domains in either domain.
I built an Edge, and Hub transport server.  The Edge is in the DMZ as a standalone server and not part of the XYZ domain.  The Hub and mailbox servers are behind the DMZ and are a part of the XYZ domain.  The Exch2007 system is on a different subnet than the DCs.
Im able to set up a connector from domain ABC (Exch2003) to XYZ (Exch2007).  Ive sent test messages and they were received by the Edge and Hub transport but never made it to the mailbox server.  

Any help would be appreciated.
Avatar of Bird Dog
Bird Dog
Flag of Canada image

can you explain the current process for your mail now. ie comes in hits firewall from firewall hits......
Avatar of GhostRyder2112
GhostRyder2112

ASKER

Mail flow is from Exch2003 BH server in ABC domain to Exch2007 HT server in XYZ domain.  There are no FW's involved in the mail flow right now.  I did have mail flow set to go through the ET server but then changed the flow since all mail is, for the time being, internal.
When you recieve the error above what are you testing

1. can you send to a user on 2007 from a user on 2007
2 can you send from 2007 -> 2003
2 can you send from 2003 -> 2007

Do you have a hub,cas, and mbx in the same AD site?

Do you have firewall on the mbx server?
Transmission bewteen the Hub and MBX is rpc traffic

Have you bounced the hub server?
My answeres listed below -

1. can you send to a user on 2007 from a user on 2007
No
2 can you send from 2007 -> 2003
No
2 can you send from 2003 -> 2007
No

Do you have a hub,cas, and mbx in the same AD site?
Yes.  On all on seperate servers.
Do you have firewall on the mbx server?
No
Transmission bewteen the Hub and MBX is rpc traffic
Yes

Have you bounced the hub server?
Yes
I found the resolution to this issue, or more importantly my particular issue.  The permissions were not set correctly in the GPO.  Once they were set mail started to flow.  Ive included the steps I took to find the solution below.


SYMPTOMS:   Mail sits in the outbox on newly installed Exchange Mailbox 2007 and Exchange Hub 2007 servers.
1.   Event ID 1009
------------------------
RESOLUTION:  Turned up Debug Trace Logging in EXTRA.exe on the Mailbox server for StoreDriver, and All Categories.   Stopped restarted the Microsoft Exchange Mail Submission Service, and waited for event to be logged in event log.

In the trace log we had this line:
SeqNo     TraceType     Component      Tag                    Message
24     Debug            StoreDriver    BridgeheadPicker       Found /o=XYZ/ou=Exchange Administrative Group/cn=Configuration/cn=Servers/cn=ServerName as the next server
25     Pfd                StoreDriver    MailSubmissionService  EMS 22427 SubmitMail for mailbox 00000000-0000-0000-0000-000000000000 at entry 64
44     Debug           StoreDriver    MailSubmissionService  Submission failed. Error: ServerNotAvailable, Diagnostic Information:Rpc Error 5

Using the Group Policy MMC go to Local Computer Policy / Computer Configuration / Windows Settings / Security Settings / Local Policies / User Rights Assignment.  Under Access this computer from the network make sure the following groups are added - Everyone, Administrators, Backup Operators, Power Users, and Users.
good to know.... Did you modify access this cmputer from the network right?
I modified the GPO that was attached to the servers which pushed the settngs to the "Access this computer from the network" area.
ASKER CERTIFIED SOLUTION
Avatar of Computer101
Computer101
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial