Link to home
Start Free TrialLog in
Avatar of fbanda
fbanda

asked on

Exchange 2010 Active Directory Certificate Services Not Starting

Hi,

I have a situation where inbound emails are not flowing. When i checked the exchange services i discovered that the AD Certificate Service is not running. I tried to start the service but i get the following error message:

Windows could not start the Active Directory Certificate Services on server.
Error 1003: Cannot complete this function.

Could this be the reason inbound mail is not flowing? I did install the CA certificate from Digicert about four months ago and all has been working fine till the recent development.

Your help will be greatly appreciated.

Francis
Avatar of Mahesh
Mahesh
Flag of India image

CA service has nothing to do with Exchange in bound \ out bound mail flow

Check your exchange services, trouble shoot mail flow from internal to external and vice versa

You may use Exchange tool box in EMC, remote connectivity analyzer
Avatar of fbanda
fbanda

ASKER

Hi Mahesh,

Kindly see output below:

Testing inbound SMTP mail flow for domain 'testing@mcti.gov.zm'.
       The Microsoft Connectivity Analyzer failed to test inbound SMTP mail flow.
       
      Additional Details
       
      Test Steps
       
      Attempting to retrieve DNS MX records for domain 'mcti.gov.zm'.
       One or more MX records were successfully retrieved from DNS.
       
      Additional Details
      Testing Mail Exchanger mkango.zamnet.zm.
       One or more SMTP tests failed for this Mail Exchanger.
       
      Additional Details
       
Elapsed Time: 18236 ms.
       
      Test Steps
       
      Attempting to resolve the host name mkango.zamnet.zm in DNS.
       The host name resolved successfully.
       
      Additional Details
      Testing TCP port 25 on host mkango.zamnet.zm to ensure it's listening and open.
       The specified port is either blocked, not listening, or not producing the expected
response.
        Tell me more about this issue and how to resolve it
       
      Additional Details
       
The connection was established but a banner was never received.
Elapsed Time: 17555 ms.
Primary reason for email not flowing is lack of disk space on the C drive causing back pressure to kick in.
Although the error you have posted would tend to suggest the port isn't open. If you haven't changed anything (do check your router etc) then speak to your ISP to see if they have closed the port off.

Simon.
Avatar of fbanda

ASKER

Hi Simon, Mahesh,

Thanks for your posts.
There was only 4.1GB free space on drive C and the .edb file was also on drive C. I moved it to another partition (drive E) and mail seems to be flowing, though it takes time for inbound mail to reach this server (about 30 minutes).
Further, there was a misconfiguration on the receive connector which i corrected.
However, the AD Certificate service is still not running.
Any clues?

Thanks,
Francis
ASKER CERTIFIED SOLUTION
Avatar of Mahesh
Mahesh
Flag of India image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial