Home  
  Microsoft  
  Cisco  
  CompTIA  
  CWNP  
  InfoSecurity  
  Forums  
  Blogs  
  Topsites  
  Watch free videos online  
     
  Subnet Calculator  
  Online Degrees  
  Exam Vouchers  
  Free Magazines  
     

  Watch free videos online  
   

 

Question Mark Member
Registered Member
 
rjbarlow's Avatar
 
Join Date: Apr 2007
Location: some neurons in my brain... Italy
Posts: 419

Certifications: CCNA, MCSA 2k3: Messaging, MCP, 70-285. WIP: 70-236, 70-293
rjbarlow will become famous soon enough
Old 06-06-2009, 11:25 AM   #1 (permalink)
Default Mailbox Delivery Queue

Exchange Server 2007.
From a well known book:
"The Mailbox Delivery queues hold messages that are being delivered to a mailbox server by using encrypted Exchange RPC.
Mailbox Delivery queues exist on Hub Transport servers only.
The Mailbox Delivery queue holds messages that are being delivered to mailbox recipients whose mailbox data is stored on a Mailbox server not located in the same site as the Hub Transport server."


That makes me wondering, because from what I learned until now, HUb servers do not communicate ever with RPC encrypted if the recipient is on a different site then him.
Any helps appreciated.



__________________
Pork 3
Maindrian's music

WIP: 70-236, 70-293 and MCSE.

rjbarlow is offline   Reply With Quote

Login/register to remove this advertisement.
New Member
Registered Member
 
royal's Avatar
 
Join Date: Jul 2006
Location: Chicago, IL
Posts: 3,376

Certifications: A+, Network+, MCSE:M 2003, MCITP: Enterprise Messaging Administrator, MCTS: OCS (Conf/Voice)/Hyper-V, Exchange MVP, B.S.
royal is a jewel in the roughroyal is a jewel in the roughroyal is a jewel in the rough
Old 06-06-2009, 02:27 PM   #2 (permalink)

Hub Transport servers don't send data to each other using encrypted RPC. Instead, they use TLS.

Users always send messages which are stored in the mailbox store. The mailbox store has a mailbox submission service that will round robin requests to the hub transport. That hub transport server will use its store driver to grab that message out of the outbox and place a new message in the sent items and then put that message in the submission queue to get categorized for delivery.

Part of that categorization process is determining where this mail needs to be sent. If it needs to be sent to a user in another site (or even in the same site), that Hub Transport Server will use the certificates that are selected for SMTP and use TLS to send the data. You can see the TLS selection process by looking here:
Selection of Outbound Anonymous TLS Certificates

You can also see what paths in Exchange use RPC encryption vs TLS encryption here:
Exchange 2007 Security Guide



__________________
“For success, attitude is equally as important as ability.” - Harry F. Banks

royal is offline   Reply With Quote
Question Mark Member
Registered Member
 
rjbarlow's Avatar
 
Join Date: Apr 2007
Location: some neurons in my brain... Italy
Posts: 419

Certifications: CCNA, MCSA 2k3: Messaging, MCP, 70-285. WIP: 70-236, 70-293
rjbarlow will become famous soon enough
Old 06-06-2009, 02:57 PM   #3 (permalink)

Thanks much Royal for your help,
there was a mistake in my previuos post though, due to that in Italian two negatives do not make a positive, so that should have to be:
"That makes me wondering, because from what I learned until now, HUb servers do not communicate with RPC encrypted if the recipient is on a different site than him."

Sorry.
So I must suppose ther's a mistake in the text I reported from that book?
I'll try it on my lab next too, as soon as I can.



__________________
Pork 3
Maindrian's music

WIP: 70-236, 70-293 and MCSE.

rjbarlow is offline   Reply With Quote
New Member
Registered Member
 
royal's Avatar
 
Join Date: Jul 2006
Location: Chicago, IL
Posts: 3,376

Certifications: A+, Network+, MCSE:M 2003, MCITP: Enterprise Messaging Administrator, MCTS: OCS (Conf/Voice)/Hyper-V, Exchange MVP, B.S.
royal is a jewel in the roughroyal is a jewel in the roughroyal is a jewel in the rough
Old 06-06-2009, 05:41 PM   #4 (permalink)

Well, depends on how you look at it. I posted the wrong security article. The correct one is:
Data Path Security Reference

So when you send something, again, it goes from mailbox submission service to a hub transport server. This uses RPC encryption. If a mail user is local, it goes from hub transport server right back to mailbox server which uses RPC encryption. So in that sense, everything uses RPC encryption as there's no need for Hub to Hub.

Now if a user is in another site, a hub transport will never send directly to a mailbox server in another site. Because of this, you always need a minimum of hub/cas/mailbox in a given site. So since this user is in a different site, the local hub will send to a hub in another site which uses tls for the hub to hub communications and encryption. That remote hub server will then use rpc encryption to send that email to the mailbox user for the person the e-mail was destined to.

That should clear it up for you.



__________________
“For success, attitude is equally as important as ability.” - Harry F. Banks

royal is offline   Reply With Quote
Question Mark Member
Registered Member
 
rjbarlow's Avatar
 
Join Date: Apr 2007
Location: some neurons in my brain... Italy
Posts: 419

Certifications: CCNA, MCSA 2k3: Messaging, MCP, 70-285. WIP: 70-236, 70-293
rjbarlow will become famous soon enough
Old 06-06-2009, 05:50 PM   #5 (permalink)

Perfect.
Thanks sir.



__________________
Pork 3
Maindrian's music

WIP: 70-236, 70-293 and MCSE.

rjbarlow is offline   Reply With Quote
Bookmarks
Go Back TechExams.net IT Certification Forums > Microsoft > Exchange Server & Office Communications Server Exams
Reply


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off



All times are GMT. The time now is 05:27 PM.

 
 
Featured Sponsors

TrainSignal - “Hands On” computer training for IT professionals. Network+ Training, MCSE, Cisco & more! Visit Train Signal’s free training site to get loads of Free Computer Training, videos, articles and practice exams.

Preplogic - Sign up now to get Unlimited Access to PrepLogic's entire video training library. Enjoy open access to Microsoft Server 2008, CCNA, CISSP®, PMP and many more. Get Unlimited Access

 

Powered by vBulletin® Version 3.8.2
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.2.0
TechExams.net 2009