Presentation is loading. Please wait.

Presentation is loading. Please wait.

4/16/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.

Similar presentations


Presentation on theme: "4/16/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks."— Presentation transcript:

1 4/16/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

2 Exchange Hybrid Deployment
4/16/2017 Exchange Hybrid Deployment OFC-B317 Michael Van Horenbeeck © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

3 Agenda Office 365 Hybrid Scenarios Exchange Hybrid Fundamentals
Microsoft Exchange 4/16/2017 Agenda Office 365 Hybrid Scenarios Exchange Hybrid Fundamentals Exchange Hybrid Deployment Exchange Hybrid Advanced Topics Managing Exchange Hybrid Exchange Hybrid Migration Common Pitfalls © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

4 Why Exchange Hybrid? User Experiences Mail Migrations Exchange on-prem
MRS Mailbox data Office 365

5 Office 365 Hybrid Scenarios

6 Office 365 Hybrid Scenarios
4/16/2017 Office 365 Hybrid Scenarios Office 365 On Prem Identity Synchronization Identity Authorization Identity Exchange Hybrid Exchange Online OAuth SharePoint Hybrid SharePoint Online OAuth Lync Hybrid Lync Online © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

7 Exchange Hybrid Scenario
Microsoft Exchange 4/16/2017 Exchange Hybrid Scenario On-premises Exchange organization Existing Exchange environment (Exchange 2007 or later) Office 365 Active Directory synchronization / AAD (verify) Exchange 2013 client access & mailbox server Office 365 User, contacts, & groups via dirsync Secure mail flow Mailbox data via Mailbox Replication Service (MRS) Sharing (free/busy, Mail Tips, archive, etc.) © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

8 Hybrid Deployment and Configuration

9 Properly Plan Your Hybrid Environment
Microsoft Exchange 4/16/2017 Properly Plan Your Hybrid Environment Begin with the Exchange Deployment Assistant Validate on-prem environment is in a standard and supported working configuration Primary namespace(s) MUST point to the latest installed version of Exchange This keeps the you in a supported scenario Any deviation can put you at risk! © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

10 Sizing Guidance for Hybrid?
Microsoft Exchange 4/16/2017 Sizing Guidance for Hybrid? You should use normal CAS/HUB/MBX guidance Hybrid is not a separate Role As you move mailboxes to Office 365 you use less capacity on-premises How is your mail flow configured? Migration Traffic is more taxing than the rest Can I have a separate set of servers for Migration? You can have a separate bank of servers for migration OR just add servers to your existing array/pool OR You could however just perform moves during off hours to mitigate some concerns All of these scenarios are being used; they are supported scenarios © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

11 High Availability? No different from ‘regular’ Exchange deployments
Deploy multiple CAS/MBX behind a load balancer to distribute (incoming) load. Add these Exchange servers to the Hybrid Configuration: Think about other components too (ADFS, DirSycn...)

12 Hybrid Servers should be maintained on current release
Exchange 2013 hybrid deployment from an existing Exchange 2007 or 2010 environment—no Edge Transport server Prepare Install Exchange SP and/or updates across the ORG Prepare AD with E2013 schema Deploy Exchange 2013 servers Install both E2013 MBX and CAS servers Set an ExternalUrl (and enable the MRSPRoxy on the Exchange Web Services vDir) Obtain and deploy Certificates Obtain and deploy certificates on E2013 CAS servers Publish protocols externally Create public DNS A records for the EWS and SMTP endpoints Validate using Remote Connectivity Analyzer Switch Autodiscover namespace to E2013 CAS Change the public Autodiscover DNS record to resolve to E2013 CAS Run the Hybrid Configuration Wizard Move mailboxes Clients Office 365 autodiscover.contoso.com mail.contoso.com 5 5 EWS SMTP 1 1 2 2 4 4 E2013 CAS E2013 MBX E2010 or 2007 Hub E2010 or 2007 CAS Exchange 2010 or 2007 Servers 3 3 SP3/RU10 SP3/RU10 6 6 7 E2010 or 2007 MBX Internet-facing site Intranet site Hybrid Servers should be maintained on current release

13 Hybrid Configuration Wizard Fundamentals

14 Exchange Hybrid Wizard History
4/16/2017 Exchange Hybrid Wizard History 1 2 3 4 5 1 Exchange 2010 SP1 72 pages of documentation Exchange 2010 SP2 HCW introduced Exchange 2013 HCW with web-based UI Exchange 2013 SP1 Exchange 2013 CU5 Extremely complex and low adoption Removed confusing requirements for additional domains: exchangedelegation and service.contoso.com Greatly simplified transport configuration Multiple exchange organizations now supported Supports Exchange 2013 Edge Native OAUTH and China Region Support 2 Thousands of tenants and millions of mailboxes in Office 365 using Exchange Hybrid 3 4 © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

15 Hybrid Configuration Wizard
Microsoft Exchange 4/16/2017 Hybrid Configuration Wizard Desired state configuration engine Applies configuration to on-prem and online orgs On-Premises Exchange Organization Exchange Online Org The Update-HybridConfiguration cmdlet triggers the Hybrid Configuration Engine to start. 1 Exchange Server Level Configuration (Mailbox Replication Service Proxy, Certificate Validation, Exchange Web Service Virtual Directory Validation, & Receive Connector) Domain Level Configuration Objects (Accepted Domains, Remote Domains, & Address Policies) Organization Level Configuration Objects (Exchange Federation Trust, Organization Relationship, Availability Address Space, & Send Connector) Organization Level Configuration Objects (Exchange Federation Trust, Organization Relationship, Forefront Inbound Connector, & Forefront Outbound Connector) Domain Level Configuration Objects (Accepted Domains & Remote Domains) The Hybrid Configuration Engine reads the “desired state” stored on the HybridConfiguration Active Directory object. 2 The Hybrid Configuration Engine connects via Remote PowerShell to both the on-premises and Exchange Online organizations. 3 Internet The Hybrid Configuration Engine discovers topology data and current configuration from the on-premises Exchange organization and the Exchange Online organization. 4 Hybrid Configuration Object 4 5 2 Remote Powershell 3 5 Hybrid Configuration Engine Desired state Topology & Current state Execute Configuration Tasks Remote Powershell 3 Based on the desired state, topology data, and current configuration, across both the on-premises Exchange and Exchange Online organizations, the Hybrid Configuration Engine establishes the “difference” and then executes configuration tasks to establish the “desired state.” 5 Exchange Management Tools 1 4 © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

16 Running the Hybrid Configuration Wizard

17 Exchange Hybrid Advanced Topics

18 Multi Org Hybrid

19 Exchange Topologies Supported
Microsoft Exchange 4/16/2017 Exchange Topologies Supported Exchange 2013 / Exchange 2010 Single Forest Model: Accounts and Mailboxes in single forest Resource Forest Model: Multiple Account Forests, Single Resource Forest 1:1 relationship between Exchange Organization and single O365 tenant Exchange 2013 Service Pack 1 Supports multiple Exchange Organizations configured against a single O365 tenant Multiple forests, each containing accounts and Exchange organizations Multi-Org Hybrid Support N:1 relationship between Exchange Organization and single O365 tenant A A R R R Office 365 Office 365 Hybrid Hybrid Hybrid contoso.com contoso.com fabrikam.com © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

20 Exchange 2013 multi-org hybrid deployment
Microsoft Exchange 4/16/2017 Exchange 2013 multi-org hybrid deployment FIM Management Agent Federated Trust Relationship SMTP/TLS Mail Flow Federated Authentication Organization Relationship AAD Conn Office 365 Azure AD Prepare Update each Exchange organization to Service Pack 1 Validate AutoDiscover is properly configured and published in each Exchange organization Validate public certificates for Exchange org are unique Create 2 way forest trust Configure Mail Flow on-prem Configure SMTP domain sharing as required Configure mail flow between on-prem organizations Configure Directory Synchronization Configure AAD Sync (FIM) to synchronize mail recipients in each forest and the Office 365 tenant Run Hybrid Configuration Wizard Prepare Office 365 Tenant Run the HCW in contoso.com and fabrikam.com Validate mail flow between all entities Configure ADFS / PW Sync Configure ADFS in contoso.com Configure ADFS in fabrikam.com Configure Organization Relationships Configure an Org Relationship between each Org Azure AD Auth O365 Directory 3 fabrikam.onmicrosoft.com contoso.com fabrikam.com 3 3 AD AAD Sync (FIM) AD 5 5 ADFS ADFS Proxy ADFS Proxy ADFS 1 E2013 E2013 1 4 4 4 6 6 contoso.com 2 SMTP 2 fabrikam.com 2 way Forest Trust © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

21 Multi-Org Identity Options
Microsoft Exchange 4/16/2017 Multi-Org Identity Options AADSync Services* GA since Sept. 2014 Lightweight alternative to O365 Connector Easier to use thanks to built-in wizard: O365 Connector (FIM) Used for ‘complex’ scenarios, including non-AD environments (e.g. LDAP, SQL) Requires FIM 2010 R2 Sync Engine (available through Azure subscription) 1.aspx * Also supports PWSync, as of 29/10/2014 © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

22 OAUTH in Hybrid

23 What does this button do?
4/16/2017 What does this button do? HCW now includes automated configuration for OAUTH But Why do I want OAUTH? Enables cross premises discovery searches and cross premises archive moves Can be used for much more like free/busy and is used for 21Vianet customers (Greater China region) Long term authentication approach for future capabilities If you click this… We will launch this Click once application © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

24 Where is the OAUTH config button?
4/16/2017 Where is the OAUTH config button? Do you have… Any Exchange less than Exchange 2013 SP1 So, just cause you have 2010 and/or you cannot use OAUTH? Actually you can use OAUTH in a coexistence organization You would have to run the steps manually (documented on TechNet) Forcing you to run scripts and manual configure this is something that we are aiming to remove in future updates But do you really need OAUTH – best for those who need cross-prem discovery © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

25 OAUTH Validation In order to test OAUTH after the HCW is run or the manual configuration are done you will want to… 1st get a cup of Coffee 2nd kick off your shoes, maybe start that book you were eyeing 3rd After ~45 minutes run the verification cmdlets Test-OAuthConnectivity -Service EWS -TargetUri -Mailbox <On-Premises Mailbox> -Verbose | fl And Test-OAuthConnectivity -Service EWS -TargetUri <external hostname authority of your Exchange On-Premises deployment> -Mailbox <Exchange Online Mailbox> -Verbose | fl

26 Microsoft Federation Gateway
Microsoft Exchange 4/16/2017 DAuth vs OAuth DAuth Uses Microsoft Federation Gateway for Token generation Organization Relationships Controls what companies you share information with Allows for granular control of what features are available (free busy, mailtips) OAuth Uses Auth Server in Azure AD (better resiliency and faster in forest communications) IntraOrgConnectors /Configuration Controls what companies you can share information with No granular control of feature-set (all or nothing) Microsoft Federation Gateway Organization Relationships AuthServer IntraOrg Connectors © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

27 Do All Hybrid features use OAUTH?
4/16/2017 Do All Hybrid features use OAUTH? Cross premises Discovery and certain cross premises archive features require OAUTH OAUTH is adding new functionality Having Regular Hybrid and OAUTH configured = the most complete feature set for your hybrid deployment eDiscovery scenario Requires OAuth? Search on-premises and Exchange Online mailboxes in the same eDiscovery search initiated from the Exchange on-premises organization. Yes Search Exchange on-premises mailboxes that use Exchange Online Archiving for cloud-based archive mailboxes. Search Exchange Online mailboxes from an eDiscovery search initiated from the Exchange on-premises organization by an administrator or compliance officer. Search on-premises mailboxes using an eDiscovery search initiated from the Exchange on-premises organization by an administrator or compliance officer. No Search Exchange Online mailboxes from an eDiscovery search initiated from Exchange Online or the eDiscovery Center in SharePoint Online by an Office 365 tenant administrator or a compliance officer signed in to an Office 365 user account. © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

28 What about Free Busy? Free Busy DOES work with OAUTH
4/16/2017 What about Free Busy? Free Busy DOES work with OAUTH Once OAUTH is configured, it is used by default for hybrid Free/Busy and removes the reliance on the Microsoft Federation Gateway (MFG) Have Exchange 2013 SP1+ in the environment Are running Exchange 2013 CU5+ version of the HCW It is the default for Greater China Region Are there any features that do not work… Certain things like OWA redirection do not work with OAUTH HCW configures both Org Relationship and IntraOrgConnectors Running HCW will ensure that you get all of the features today © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

29 What about Free Busy? Refresher
CAS Server finds that Joe’s mailbox is external and there is a matching Organization Relationship Ben requests free/busy info for Joe MFG returns a Delegation Token CAS Server passes the MFG token and requests Joe’s free/busy on behalf of Ben Free/busy info is returned to the CAS Server CAS connects to the MFG to request a Delegation Token Free Request Busy From Ben To Joe Joe’s free/busy is returned to the Outlook client

30 What about Free Busy… (2013) OAUTH?
Free Busy works through a series of checks 1st we check to see if we can find the free busy locally 2nd (if the mailbox is not local) we check for an IOC 3rd (if there is no IOC) we check for an Organization Relationship 4th we then check for an availability address space The Key point here is that OAUTH is not a fall back option for Free busy, it is one or the other The OAuth method gets the preference GCR simply does not have Org or a federation trust and relies on only OUATH Exchange Server finds that Joe’s mailbox is external and there is an IOC Ben requests free/busy info for Joe Exchange Server passes the token and requests Joe’s free/busy on behalf of Ben Free/busy info is returned Free Request Busy From Ben To Joe Exchange connects to the Azure OAUTH endpoint Joe’s free/busy is returned to the Outlook client WAAD returns a Delegation Token

31 Public Folders and Hybrid

32 Hybrid Public Folder Options
4/16/2017 Hybrid Public Folder Options Option 1: O365 mailboxes access legacy PFs on-prem Option 2: O365 mailboxes access Modern PFs on-prem Option 3: Exchange 2013 on-prem mailboxes access Modern PFs in O365 Mailbox Version PF Location 2007 On-Premises 2010 On-Premises 2013 On-Premises Exchange Online Exchange 2007 Yes No Exchange 2010 Exchange 2013 Yes* *Requires use of Outlook for Windows © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

33 Hybrid PF access Outlook connect to Cloud Mailbox, starts by querying autod.contoso.com 1 Exchange Online Autodiscover responds with the Target address for the cloud mailbox 2 4 Outlook does AutoD for TA Contoso.mail.onmicrosoft.com 3 3 EXO responds with PFMailbox information obtained by org config or set explicitly on the mailbox: <PublicFolderInformation>     </SmtpAddress> 4 On-premises Outlook performs and AutoD against 5 7 1 Outlook Anywhere settings are returned including the server name of the PF/CAS instead of the CASArray Proxy to PF server (running CAS role) 6 2 5 6 Auth as user over Public MBX auth 7 When PF access is initiated you then make an OA connection 7

34 Syncing Public Folders
DirSync currently does not sync MEPF objects in either direction. Customers recommended to run the following scripts periodically to sync MEPF objects from on-premises to the cloud directory. Below scripts works for E2010/E2007 on-premises. Export-MailPublicFoldersForMigration.ps1 -ExportFile [exportFileName] (run on-premises) Import-MailPublicFolders.ps1 -ImportFile [importFileName] (run on cloud) The Scripts are linked on TechNet but now are also in the scripts container on the Exchange server Microsoft plans to eliminate the script and rely on DirSync

35 Hybrid Management

36 Can I Retire Hybrid Servers?
Maintain Exchange Hybrid servers post migration for: Unauthenticated SMTP Relay 3rd party applications not compatible with Office 365 Maintain MRS move capability between online/on-prem Mailboxes that cannot move online due to regulatory/compliance issues Modify Directory Attributes for common Exchange tasks Although you could remove the last Exchange server, it’s the only supported way to manage Exchange-related objects!

37 Hybrid Mailbox Migration

38 Microsoft Exchange 4/16/2017 Mailbox migration All mailbox migration paths are now supported from the Exchange Admin Center through a unified mailbox move wizard. Moves are “pulled” from on-premises to the cloud. This means that you initiate a migration from the cloud. All move types now support the new “batch” architecture. This allows for easier creation and management of multiple mailbox moves. As with Exchange 2010, hybrid (MRS based) mailbox moves support off-boarding from the cloud to on-premises. © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

39 Migration Throughput Factors?
Microsoft Exchange 4/16/2017 Migration Throughput Factors? Max default Concurrent moves 100 (exceptions can be made) Item count is a factor with migration performance 0.3–1.0 GB/hour range per mailbox Firewall configuration on the on-premises organization Multiple concurrent moves allows for optimized migrations Source Side performance is a COMMON factor Migration are not considered “User Expected” (WLM) Network Latency is a Factor © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

40 Common Pitfalls

41 Ben requests free/busy info for Joe
Microsoft Exchange 4/16/2017 Certificate Refresh New Federation Cert will break Features CAS Server finds that Joe’s mailbox is external and there is a matching Organization Relationship Future Proof: Schtasks /create /sc Daily /tn FedRefresh /tr "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe -version 2.0 -command Add-PSSnapIn Microsoft.Exchange.Management.PowerShell.E2010;$fedTrust = Get-FederationTrust;Set-FederationTrust -Identity $fedTrust.Name -RefreshMetadata" /ru System Ben requests free/busy info for Joe © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

42 CU6 issues Cannot create users mailboxes Cannot move mailboxes
Microsoft Exchange 4/16/2017 CU6 issues Recipient Management Cannot create users mailboxes Cannot move mailboxes Cannot change user attributes Cause: there is an issue with the backlink with EAC to EXO that prevents the proper connection Resolution: download script that will fix the file or install CU7 when available Centralized MailFlow (CMC) broken Cannot send mail from cloud user to the internet when CMC is enabled Resolution: call support for an IU or wait for CU7 © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

43 Summary

44 Microsoft Exchange 4/16/2017 Summary Exchange 2013 and the new Office 365 support a range of ways for moving to the cloud; cutover, staged and hybrid Hybrid is now more flexible and easier to deploy © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

45 Questions? TechReady13 4/16/2017
© 2011 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

46 4/16/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION. © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

47 Related content OFC-B3222 Identity Management is Easy
4/16/2017 Related content OFC-B3222 Identity Management is Easy Microsoft Solutions Experience Location (MSE) Find Me Later At: the Exchange booth © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

48 Track resources Documentation – http://aka.ms/Ex2013Docs
4/16/2017 Track resources Documentation – Blog – Yammer Technical Network Blog – Ignite – © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

49 Resources Learning TechNet Developer Network
4/16/2017 Resources Sessions on Demand Learning Microsoft Certification & Training Resources TechNet Resources for IT Professionals Developer Network © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

50 Please Complete An Evaluation Form Your input is important!
4/16/2017 Please Complete An Evaluation Form Your input is important! TechEd Mobile app Phone or Tablet QR code TechEd Schedule Builder CommNet station or PC © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

51 Evaluate this session 4/16/2017
© 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

52 4/16/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION. © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.


Download ppt "4/16/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks."

Similar presentations


Ads by Google