Solved

Exchange Hybrid environment mail flow issue

Posted on 2016-07-18
10
97 Views
Last Modified: 2016-07-26
So here is the scenario:

- network with the following components: sonicwall NSA firewall, sonicwall email appliance
- on-premise Exchange 2013 server
- Office 365 account
- hybrid configuration wizard run successfully
- azure AD sync installed

We currently have the following mail flow conditions:
- MX records point to on-premise Exchange server
- mail flows to and from external email addresses from on-premise or O365 mailboxes
- mail flows from on-premise Exchange mailboxes to O365 mailboxes
- mail does NOT flow from O365 mailboxes to on-premise mailboxes

I can say that I have not updated the TXT records with the updated federation information (is that supposed to be internal and external DNS records?) but I am not sure if that is related.

Can anyone assist with troubleshooting this issue? I am not sure where to start.
0
Comment
Question by:twinstatevdv
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 5
  • 5
10 Comments
 

Author Comment

by:twinstatevdv
ID: 41718096
Also, all inbound email traffic on port 25 is routed through the sonicwall email appliance.
0
 
LVL 37

Expert Comment

by:Jian An Lim
ID: 41721004
Rerun hybrid configuration wizard again

On Office 365, check it's outbound connector.
depends on version, you should have one outbound connector

try to test connectivity on that

you can run get-outboundconnector | fl and paste the result here
0
 
LVL 37

Accepted Solution

by:
Jian An Lim earned 500 total points
ID: 41721014
one thing, email from Office 365 back to On-premise should not pass through sonic wall.
It must arrive directly
0
Office 365 Training for Admins - 7 Day Trial

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

 

Author Comment

by:twinstatevdv
ID: 41721076
What IP addresses and ports should I forward at the firewall direct to the exchange server? I know there is a set of EOP addresses.
0
 
LVL 37

Expert Comment

by:Jian An Lim
ID: 41721519
0
 

Author Comment

by:twinstatevdv
ID: 41727609
THanks for the info! Which ports should I be forwarding?
0
 
LVL 37

Expert Comment

by:Jian An Lim
ID: 41728613
port 25 for sMTP
port 443 for EWS and HTTPS
0
 

Author Comment

by:twinstatevdv
ID: 41729446
got it, I will try that with the EOP addresses; my only concern is that we might be allowing non-hybrid email messages from Office 365 sources to bypass the email appliance.
0
 
LVL 37

Expert Comment

by:Jian An Lim
ID: 41729680
non-hybrid email message?
the connector should only bring back any email that is mail user, nothing else.

also, you might want to upgrade your azure AD sync to AADConnect as the previous version have been deprecated.
0
 

Author Closing Comment

by:twinstatevdv
ID: 41730099
Thank you for the assistance! Email appears to be flowing as desired.  :)
0

Featured Post

Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A list of top three free exchange EDB viewers that helps the user to extract a mailbox from an unmounted .edb file and get a clear preview of all emails & other items with just a single click on mailboxes.
This article describes how to import an Outlook PST file to Office 365 using a third party product to avoid Microsoft's Azure command line tool, saving you time.
In this video I am going to show you how to back up and restore Office 365 mailboxes using CodeTwo Backup for Office 365. Learn more about the tool used in this video here: http://www.codetwo.com/backup-for-office-365/ (http://www.codetwo.com/ba…
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…

726 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question