MSExchangeTransport Error

wyltk75

Member
Outlook version
Outlook 2010 64 bit
Email Account
Exchange Server
I know I have seen this problem posted here, but i'm fairly novice at this so I might need a little extra help to resolve this issue. On my exchange server, we have started running into a problem where emails are stuck in the outbox and a log out and back in will send the emails or a number of other workarounds. I'm wondering if the issue is related to the following error that shows up in the error log.

Event Type: Error

Event Source: MSExchangeTransport

Event Category: TransportService

Event ID: 12014

Date: 3/30/2012

Time: 9:59:28 AM

User: N/A

Computer: EXCHANGE

Description:

Microsoft Exchange couldn't find a certificate that contains the domain name exchange.fscc.fortscott.edu in the personal store on the local computer. Therefore, it is unable to support the STARTTLS SMTP verb for the connector outbound with a FQDN parameter of exchange.fscc.fortscott.edu. If the connector's FQDN is not specified, the computer's FQDN is used. Verify the connector configuration and the installed certificates to make sure that there is a certificate with a domain name for that FQDN. If this certificate exists, run Enable-ExchangeCertificate -Services SMTP to make sure that the Microsoft Exchange Transport service has access to the certificate key.

I found where I was told to run the following commands which I did, but I can't make heads or tails of the information I found there. I can post the results.

Get-ExchangeCertificate | FL *

Get-ReceiveConnector | FL name, fqdn, objectClass

Get-SendConnector | FL name, fqdn, objectClass
 

wyltk75

Member
Outlook version
Outlook 2010 64 bit
Email Account
Exchange Server
[PS] C:\Documents and Settings\jasong>get-exchangecertificate | fl *

AccessRules : {System.Security.AccessControl.CryptoKeyAccessRule, Syst

em.Security.AccessControl.CryptoKeyAccessRule, System.Se

curity.AccessControl.CryptoKeyAccessRule}

CertificateDomains : {autodiscover.fscc.fortscott.edu, autodiscover.fortscott

> edu}

CertificateRequest :

IisServices : {}

IsSelfSigned : True

KeyIdentifier : F204748C28F2E4F21B7211111112590743EB08EC

RootCAType : None

Services : SMTP

Status : Valid

PrivateKeyExportable : False

Archived : False

Extensions : {System.Security.Cryptography.Oid, System.Security.Crypt

ography.Oid, System.Security.Cryptography.Oid, System.Se

curity.Cryptography.Oid}

FriendlyName : Microsoft Exchange

IssuerName : System.Security.Cryptography.X509Certificates.X500Distin

guishedName

NotAfter : 3/12/2013 2:15:20 PM

NotBefore : 3/12/2012 2:15:20 PM

HasPrivateKey : True

PrivateKey : System.Security.Cryptography.RSACryptoServiceProvider

PublicKey : System.Security.Cryptography.X509Certificates.PublicKey

RawData : {48, 130, 3, 91, 48, 130, 2, 67, 160, 3, 2, 1, 2, 2, 16,

53...}

SerialNumber : 357F3201E8DB699246C00D6FB75C430B

SubjectName : System.Security.Cryptography.X509Certificates.X500Distin

guishedName

SignatureAlgorithm : System.Security.Cryptography.Oid

Thumbprint : 97BC6C3AC224519A9780824EA46D019640358D6B

Version : 3

Handle : 469080816

Issuer : CN=autodiscover.fscc.fortscott.edu

Subject : CN=autodiscover.fscc.fortscott.edu

AccessRules : {System.Security.AccessControl.CryptoKeyAccessRule, Syst

em.Security.AccessControl.CryptoKeyAccessRule, System.Se

curity.AccessControl.CryptoKeyAccessRule}

CertificateDomains : {autodiscover.fscc.fortscott.edu, autodiscover.fortscott

> edu}

CertificateRequest :

IisServices : {}

IsSelfSigned : True

KeyIdentifier : 5794A3A5A94361FC270A7C3F091AE967EDF4ACC9

RootCAType : None

Services : SMTP

Status : Valid

PrivateKeyExportable : False

Archived : False

Extensions : {System.Security.Cryptography.Oid, System.Security.Crypt

ography.Oid, System.Security.Cryptography.Oid, System.Se

curity.Cryptography.Oid}

FriendlyName : Microsoft Exchange

IssuerName : System.Security.Cryptography.X509Certificates.X500Distin

guishedName

NotAfter : 3/12/2013 2:10:43 PM

NotBefore : 3/12/2012 2:10:43 PM

HasPrivateKey : True

PrivateKey : System.Security.Cryptography.RSACryptoServiceProvider

PublicKey : System.Security.Cryptography.X509Certificates.PublicKey

RawData : {48, 130, 3, 91, 48, 130, 2, 67, 160, 3, 2, 1, 2, 2, 16,

143...}

SerialNumber : 8F1C1328294D46B34DC386F38541F588

SubjectName : System.Security.Cryptography.X509Certificates.X500Distin

guishedName

SignatureAlgorithm : System.Security.Cryptography.Oid

Thumbprint : 807DB8A54A273E21B6E2E8E9D8E69C4E6BF7CBEF

Version : 3

Handle : 469082240

Issuer : CN=autodiscover.fscc.fortscott.edu

Subject : CN=autodiscover.fscc.fortscott.edu
 

wyltk75

Member
Outlook version
Outlook 2010 64 bit
Email Account
Exchange Server
AccessRules : {System.Security.AccessControl.CryptoKeyAccessRule, Syst

em.Security.AccessControl.CryptoKeyAccessRule}

CertificateDomains : {exchange.fscc.fortscott.edu}

CertificateRequest :

IisServices : {}

IsSelfSigned : True

KeyIdentifier : 31AA2450387FA0CB4A490F1FA1D0C64C6647E6F4

RootCAType : Registry

Services : UM

Status : Valid

PrivateKeyExportable : False

Archived : False

Extensions : {System.Security.Cryptography.Oid, System.Security.Crypt

ography.Oid, System.Security.Cryptography.Oid, System.Se

curity.Cryptography.Oid}

FriendlyName : Microsoft Exchange

IssuerName : System.Security.Cryptography.X509Certificates.X500Distin

guishedName

NotAfter : 6/3/2013 8:54:11 PM

NotBefore : 6/3/2011 8:54:11 PM

HasPrivateKey : True

PrivateKey : System.Security.Cryptography.RSACryptoServiceProvider

PublicKey : System.Security.Cryptography.X509Certificates.PublicKey

RawData : {48, 130, 3, 51, 48, 130, 2, 27, 160, 3, 2, 1, 2, 2, 16,

48...}

SerialNumber : 301F362FE08A88AB4F70340890011D42

SubjectName : System.Security.Cryptography.X509Certificates.X500Distin

guishedName

SignatureAlgorithm : System.Security.Cryptography.Oid

Thumbprint : 1F2B9DEF8458056FF7456ACE0F6B8969841D6425

Version : 3

Handle : 469081680

Issuer : CN=exchange.fscc.fortscott.edu

Subject : CN=exchange.fscc.fortscott.edu

AccessRules : {System.Security.AccessControl.CryptoKeyAccessRule, Syst

em.Security.AccessControl.CryptoKeyAccessRule}

CertificateDomains : {exchange.fortscott.edu}

CertificateRequest :

IisServices : {IIS://exchange/W3SVC/1}

IsSelfSigned : False

KeyIdentifier : 536C0A42DEB5880DE362500A0092E1515CF66A32

RootCAType : ThirdParty

Services : POP, IIS

Status : Valid

PrivateKeyExportable : True

Archived : False

Extensions : {System.Security.Cryptography.Oid, System.Security.Crypt

ography.Oid, System.Security.Cryptography.Oid, System.Se

curity.Cryptography.Oid}

FriendlyName : exchange.fortscott.edu

IssuerName : System.Security.Cryptography.X509Certificates.X500Distin

guishedName

NotAfter : 3/12/2013 6:59:59 PM

NotBefore : 12/19/2010 6:00:00 PM

HasPrivateKey : True

PrivateKey : System.Security.Cryptography.RSACryptoServiceProvider

PublicKey : System.Security.Cryptography.X509Certificates.PublicKey

RawData : {48, 130, 3, 139, 48, 130, 2, 115, 160, 3, 2, 1, 2, 2, 1

6, 10...}

SerialNumber : 0AA1E287DD63BF918ABD8D0341F7D38F

SubjectName : System.Security.Cryptography.X509Certificates.X500Distin

guishedName

SignatureAlgorithm : System.Security.Cryptography.Oid

Thumbprint : 2381E71C340E277743AA0F1A38F366E00B4D4203

Version : 3

Handle : 469080960

Issuer : CN=Thawte SSL CA, O="Thawte, Inc.", C=US

Subject : CN=exchange.fortscott.edu, OU=Information Technology Dep

artment, O=Fort Scott Community College, L=Fort Scott, S

=Kansas, C=US

AccessRules : {System.Security.AccessControl.CryptoKeyAccessRule, Syst

em.Security.AccessControl.CryptoKeyAccessRule}

CertificateDomains : {exchange.fscc.fortscott.edu}

CertificateRequest :

IisServices : {}

IsSelfSigned : True

KeyIdentifier : 291D523E4B7873F1E770C200B5CC44416E4C91DF

RootCAType : Registry

Services : UM

Status : DateInvalid

PrivateKeyExportable : False

Archived : False

Extensions : {System.Security.Cryptography.Oid, System.Security.Crypt

ography.Oid, System.Security.Cryptography.Oid, System.Se

curity.Cryptography.Oid}

FriendlyName : Microsoft Exchange

IssuerName : System.Security.Cryptography.X509Certificates.X500Distin

guishedName

NotAfter : 3/13/2011 5:54:49 PM

NotBefore : 3/13/2009 5:54:49 PM

HasPrivateKey : True

PrivateKey : System.Security.Cryptography.RSACryptoServiceProvider

PublicKey : System.Security.Cryptography.X509Certificates.PublicKey

RawData : {48, 130, 3, 51, 48, 130, 2, 27, 160, 3, 2, 1, 2, 2, 16,

134...}

SerialNumber : 86C021309C00A19D47C9D54C703C23A9

SubjectName : System.Security.Cryptography.X509Certificates.X500Distin

guishedName

SignatureAlgorithm : System.Security.Cryptography.Oid

Thumbprint : 0194DB2396FC4BDD0A134807BF67B00FD3653AAB

Version : 3

Handle : 469076544

Issuer : CN=exchange.fscc.fortscott.edu
 

wyltk75

Member
Outlook version
Outlook 2010 64 bit
Email Account
Exchange Server
Subject : CN=exchange.fscc.fortscott.edu

AccessRules : {System.Security.AccessControl.CryptoKeyAccessRule, Syst

em.Security.AccessControl.CryptoKeyAccessRule, System.Se

curity.AccessControl.CryptoKeyAccessRule}

CertificateDomains : {exchange.fortscott.edu}

CertificateRequest :

IisServices : {}

IsSelfSigned : False

KeyIdentifier : 69390FDF07BAD9B7B3DA5EC5A266A1789D5DA6A2

RootCAType : ThirdParty

Services : POP, SMTP

Status : DateInvalid

PrivateKeyExportable : True

Archived : False

Extensions : {System.Security.Cryptography.Oid, System.Security.Crypt

ography.Oid, System.Security.Cryptography.Oid, System.Se

curity.Cryptography.Oid}

FriendlyName : exchange.fortscott.edu

IssuerName : System.Security.Cryptography.X509Certificates.X500Distin

guishedName

NotAfter : 3/13/2011 6:59:59 PM

NotBefore : 3/12/2009 7:00:00 PM

HasPrivateKey : True

PrivateKey : System.Security.Cryptography.RSACryptoServiceProvider

PublicKey : System.Security.Cryptography.X509Certificates.PublicKey

RawData : {48, 130, 3, 163, 48, 130, 3, 12, 160, 3, 2, 1, 2, 2, 16

, 79...}

SerialNumber : 4F2AA9FDD2F24E2CEE273B164E7EA6FC

SubjectName : System.Security.Cryptography.X509Certificates.X500Distin

guishedName

SignatureAlgorithm : System.Security.Cryptography.Oid

Thumbprint : E488011069DDCF5945971C1731F140D239BC4957

Version : 3

Handle : 468392736

Issuer : E=premium-server@thawte.com, CN=Thawte Premium Server CA

, OU=Certification Services Division, O=Thawte Consultin

g cc, L=Cape Town, S=Western Cape, C=ZA

Subject : CN=exchange.fortscott.edu, OU=Information Technology Dep

artment, O=Fort Scott Community College, L=Fort Scott, S

=Kansas, C=US

[PS] C:\Documents and Settings\jasong>get-receiveconnector | FL name, fqdn, obje

ctclass

Name : Client EXCHANGE

Fqdn : exchange.fortscott.edu

ObjectClass : {top, msExchSmtpReceiveConnector}

Name : Default EXCHANGE

Fqdn : exchange.fscc.fortscott.edu

ObjectClass : {top, msExchSmtpReceiveConnector}

[PS] C:\Documents and Settings\jasong>Get-SendConnector | FL name, fqdn, objectC

lass

Name : outbound

Fqdn :

ObjectClass : {top, msExchConnector, mailGateway, msExchRoutingSMTPConnector}
 

Diane Poremsky

Senior Member
Outlook version
Outlook 2016 32 bit
Email Account
Office 365 Exchange
No, that error should not affect the problem. It's a fairly common error (and I have it too - my SSL cert is for owa.domain.com, not the FQDN of exserver.hq.domain.com).

Does the problem go away if you use Safe mode? A common cause is an addin causing problems and safe mode will disable addins. The usual suspect is an antivirus addin…
 

wyltk75

Member
Outlook version
Outlook 2010 64 bit
Email Account
Exchange Server
I have not tried in safe mode, but yesterday we had nearly the whole school campus having the problem. Closing out of Outlook and opening it back up seemed to allow the messages to be sent. Then it worked for a few minutes and then it would stop. Finally, I restarted the server and it seemed to clear up all the issues, but this morning a few people seem to be running into it again. No one should have any addins on their computer, and I certainly don't.
 

wyltk75

Member
Outlook version
Outlook 2010 64 bit
Email Account
Exchange Server
Now the issue just pops up randomly on PCs and a reboot of the machine or closing and re-opening Outlook fixes it for a while. This seems bizarre to me.
 

wyltk75

Member
Outlook version
Outlook 2010 64 bit
Email Account
Exchange Server
We are suspecting that some kind of windows update is the culprit, but we really have no clue at this point still.
 
Top