O-Xchange Notes from the Field!

Friday, March 11, 2011

could not establish TLS/SSL session to IMAP4/POP3

Issue/Error message: A certificate for the hostname "imap.domain.com" could not be found. SSL or TLS encryption cannot be made to the IMAP service.
Synopsis: The certificate was there in the cert store for the computer account, and nothing else had any trouble recognizing it. Even the Exchange console recognized it just fine, but the service just would not take it on start.
Resolution: Figured out that imap/pop services required smtp as part of the services when assigning services to the certificate. Re-Enabled the exchange
certificate with imap and pop, which automatically added the S. Restarted IMAP and POP3 service and all started working

Managing Database Content Index State

From time to time the search indexes on Database copies in Exchange 2010 will become corrupt.  This will prevent the Activation Manager in the DAG from being able to "fail" the active database to that copy.
You can determine if any DB Copies have a Content Index State of failed by running the following cmdlet in the Exchange Management Shell:
Get-MailboxDatabase | Get-MailboxDatabaseCopyStatus|where { $_.contentindexstate -like "failed" }
If any copies report as having a failed Content Index State, they will need to be repaired.
Mounted Databases cannot be updated with the Update-MailboxDatabaseCopy cmdlet.  All copies reporting as failed can be updated with this cmdlet:
Get-MailboxDatabase | Get-MailboxDatabaseCopyStatus|where { ($_.contentindexstate -like "failed") -and ($_.status -ne
 "Mounted") }| Update-MailboxDatabaseCopy -CatalogOnly