UM Temporary authentication failure

Status
Not open for further replies.
C

Chad A Ingram

I am getting the following error out of the clear blue. I havent found much out there about this error.

I have tryed enabling TLS and creating a new recieve connector. Any Ideas?

On the transport server I get the following error

Inbound authentication failed with error TargetUnknown for Receive connector Default servername. The authentication mechanism is ExchangeAuth. The source IP address of the client who tried to authenticate to Microsoft Exchange is [xx.xx.xx.xx].

Thanks,

Chad

I get this error on the Um side.

A pipeline stage encountered the following error. Details : 'Microsoft.Exchange.UM.UMCore.SmtpSubmissionException: Submission to the Hub Transport server failed. The operation will be retried. ---> Microsoft.Exchange.Net.ExSmtpClient.UnexpectedSmtpServerResponseException: Unexpected SMTP server response. Expected: 235, actual: 454, whole response: 454 4.7.0 Temporary authentication failure

at Microsoft.Exchange.Net.ExSmtpClient.SmtpTalk.CheckResponse(ServerResponseInfo response, Int32 expectedCode)

at Microsoft.Exchange.Net.ExSmtpClient.SmtpTalk.Command(SmtpChunk[] chunks, SmtpCommandType command, Int32 expectedCode)

at Microsoft.Exchange.Net.ExSmtpClient.SmtpTalk.Authenticate(NetworkCredential networkCredential)

at Microsoft.Exchange.Net.ExSmtpClient.SmtpClient.Submit()

at Microsoft.Exchange.UM.UMCore.SmtpSubmitStage.SubmitMessage()

at Microsoft.Exchange.UM.UMCore.SmtpSubmitStage.InternalDoSynchronousWork()

--- End of inner exception stack trace -
Server stack trace:

at Microsoft.Exchange.UM.UMCore.SmtpSubmitStage.HandleTransientSmtpFailure(Exception e, InternalExchangeServer smtpServerToUse)

at Microsoft.Exchange.UM.UMCore.SmtpSubmitStage.InternalDoSynchronousWork()

at System.Runtime.Remoting.Messaging.StackBuilderSink._PrivateProcessMessage(IntPtr md, Object[] args, Object server, Int32 methodPtr, Boolean fExecuteInContext, Object[]& outArgs)

at System.Runtime.Remoting.Messaging.StackBuilderSink.AsyncProcessMessage(IMessage msg, IMessageSink replySink)

Exception rethrown at [0]:

at System.Runtime.Remoting.Proxies.RealProxy.EndInvokeHelper(Message reqMsg, Boolean bProxyCase)

at System.Runtime.Remoting.Proxies.RemotingProxy.Invoke(Object NotUsed, MessageData& msgData)

at Microsoft.Exchange.UM.UMCore.SynchronousPipelineStageBase.SynchronousWorkDelegate.EndInvoke(IAsyncResult result)

at Microsoft.Exchange.UM.UMCore.SynchronousPipelineStageBase.EndSynchronousWork(IAsyncResult r)'
 
C

Chad A Ingram

We figured out the issue. Their where duplicate spns's for the service accounts in ad. We found them using this PS script

http://blog.powershell.no/2010/01/28/validate-spn-mappings-using-windows-powershell/

We were lead in this direction by this error message

A Kerberos Error Message was received:
on logon session
Client Time:
Server Time: 15:43:9.0000 5/20/2010 Z
Error Code: 0x7 KDC_ERR_S_PRINCIPAL_UNKNOWN
Extended Error: 0xc0000035 KLIN(0)
Client Realm:
Client Name:
Server Realm: domain.org
Server Name: SMTPSVC/Exum.domain.org
Target Name: SMTPSVC/Exum.domain.org@domain.org
Error Text:
File: 9
Line: e2d
Error Data is in record data.

Once we ran the validator and saw the duplicate spns's we deleted them with ADSI edit. You have to find the user account you want to delete in ADSI that is assigned with that spn and right click the user account and scroll down until you see ServicePrincipalName attribute and delete it. Once that is done you must restart major exchange services on all servers involved.
 
B

Brett D Whittaker

Is there any reason you did not use SETSPN -D command to remove the duplicate SPN's ?

I have had the same issue, cleaned it up with " setspn" and just curious about the difference between ADSIedit method vs. setspn method.

B
 
Status
Not open for further replies.
Similar threads
Thread starter Title Forum Replies Date
K Outlook Temporary File Using Outlook 0
C outlook 2003 always not remove temp copy of opened attachments in temporary fo Using Outlook 4
D Re: Temporary Mailbox in Outlook Using Outlook 1
D Temporary Mailbox in Outlook Using Outlook 0
P Problem in temporary type toolbar Outlook VBA and Custom Forms 1
Commodore iCloud mail with two-factor authentication Using Outlook 7
J Cached mode no longer works with NTLM authentication Exchange Server Administration 0
C Authentication error login rejects Using Outlook.com accounts in Outlook 0
D Constant Dropbox Outlook Addin Authentication Prompts Using Outlook 5
wallisellener Another BCM Authentication thread BCM (Business Contact Manager) 5
S Error after enabling 2-step authentication in Outlook.com/Outlook 2013 Using Outlook.com accounts in Outlook 1
wallisellener BCM authentication BCM (Business Contact Manager) 3
M authentication settings for outlook for mac 2011 Using Outlook 1
M Exchange 2010 OWA Redirect with Authentication Across AD Site Exchange Server Administration 1
A Set-OutlookAnywhere Authentication Exchange Server Administration 1
H Another OWA Timeout thread - possible Forms/Basic Authentication with IIS issue Exchange Server Administration 1
D Upgraded to Exchange 2010 SP1 and now random Outlook clients are requesting authentication Exchange Server Administration 1
C SBS 2003 Outlook Anywhere Basic Authentication Issue Using Outlook 2
B error code 0x800CCC80 in Outlook 'None of the authentication methods supported by this client are su Using Outlook 3
M SSO to OWA from site using Integrated Authentication Exchange Server Administration 5
V GSSAPI authentication failure in 2010 exchange server Exchange Server Administration 4
M Outlook Anywhere - Enable both NTLM and Basic Authentication Exchange Server Administration 8
R Code = "0x800CCC80; None of the authentication methods supported by this client are supported by you Using Outlook 3
F 'General failure (URL) Server execution failed' Using Outlook 1
S Recover Autocomplete After Computer Failure Re-install Using Outlook 3
S Exchange Management Shell closes on command failure Exchange Server Administration 5
T Occasional Mail Failure Notice Issue Using Outlook 2
J Outlook 2007 Failure to Send Message<=Sending reported Error 0x80040201 Using Outlook 1
S BCM 2007 to 2010 migration failure issue BCM (Business Contact Manager) 1
R "business contact manager logon failure server is in single user mode" - HELP! BCM (Business Contact Manager) 4
S Delivery Status Notification (Failure) Using Outlook 3
P “Word couldn’t send because of MAPI failure: “Operation not supported”. Using Outlook 2
B Test-webservices failure Exchange Server Administration 3
A Sending emails from MS Outlook "421 Unexpected failure, please try later" from Norton Using Outlook 1
J outlook 2010 contacts failure to read. Using Outlook 5
T Exchange 2010 Mailbox Role Installation Failure Exchange Server Administration 4
A MS Outlook 2010 Professional Plus - Word couldn't send mail because of a MAPI failure: "Operation no Using Outlook 4
L Exchange Management Console - Initializtion failed on Logon Failure: unknown username or bad passwor Exchange Server Administration 4
D 2003 Outlook with BCM SQL server failure BCM (Business Contact Manager) 1
R Office 2007 SP2 Install: BCM Update Failure BCM (Business Contact Manager) 25
S Distribution list failure - "an unexpected error has occurred" Using Outlook 7

Similar threads

Top