locked
Share Free/Busy between Exchange Organisations with existing Forest Trust RRS feed

  • Question

  • Hello,

    i have two AD Domains "a.com" and "b.com".
    Between the Domains there exists a transitive AD Forest Trust.

    Users from each Domain want to get Free/Busy Information from the other Domain Users.

    I searched the Internet for some Information.
    I am not sure if i have to use MFG or if there is a simpler Way.

    Thanks!

    Kind Regards
    Marco

    Thursday, March 3, 2016 10:28 AM

All replies

  • Hi Marco,

    this article should answer all your questions :-)

    http://www.msexchange.org/articles-tutorials/exchange-server-2010/migration-deployment/deep-dive-into-rich-coexistence-between-exchange-forests-part1.html

    Greetings

    Christian


    Christian Groebner MVP Forefront


    Thursday, March 3, 2016 11:29 AM
  • Hi Christian,

    dankeschön ;)

    thanks!
    I read your provided URL.

    I think i am able to go with the Solution described in Part 8 (Availability Service).

    Additional Question:
    In one Domain i am using a single Exchange 2013 with all Roles installed.
    The other domain contains two Exchange 2010 CAS Server with NLB for high availability and two Mailbox Servers using DAG.

    I am not sure if i should run following PS-Commands

    Add-AvailabilityAddressSpace -ForestName e2k7forest.dk -AccessMethod PerUserFB -UseServiceAccount $true

    and

    Get-ClientAccessServer | Add-AdPermission -AccessRights ExtendedRight -ExtendedRights "ms-exch-epi-token-serialization" -User "e2k10forest.dk\Exchange Servers"

    on both Exchange 2010 CAS, both Exchange 2010 Mailbox-Server or on all?

    Following MS Link using the "Add-AdPermission..." Command with "Get-MailboxServer"
    URL: https://technet.microsoft.com/en-us/library/bb125182.aspx?f=255&MSPPError=-214721739

    Thanks!

    Kind Regards
    Marco


    • Edited by Treeeman Thursday, March 3, 2016 6:12 PM
    Thursday, March 3, 2016 6:11 PM
  • Hi Marco,

    regarding the two commands:

    I am not sure if i should run following PS-Commands

    Add-AvailabilityAddressSpace -ForestName e2k7forest.dk -AccessMethod PerUserFB -UseServiceAccount $true

    and

    Get-ClientAccessServer | Add-AdPermission -AccessRights ExtendedRight -ExtendedRights "ms-exch-epi-token-serialization" -User "e2k10forest.dk\Exchange Servers"

    I would say it is enough if you run the commands on one CAS because the first one is global and the second command starts with get-ClientAccessServer which returns all CAS servers.

    Greetings

    Christian


    Christian Groebner MVP Forefront

    Thursday, March 3, 2016 7:11 PM
  • Hi,

    unfortunatelly it seems not as easy as i thought.

    I executed both commands. Still not able to get Free/Busy from Remote Domain.
    There must be something i missed.

    Do i need addtionally GALSync if there is a AD Forest Trust between both Active Directories?
    Or whould it be easier if a am using MFG for my purpose?

    Thanks.

    Kind Regards

    Marco

    Wednesday, March 16, 2016 11:29 AM
  • Hi,

    after creating manually a mail contact on one Site (so it seems i need something like GALsync) with the primary SMTP Address from a User from the other Side, i am getting a new Error if i check Free/Busy Status with OWA.

    Error Code is 5016

    After that i runned the Command "test-outlookwebservices administrator@remotedomain.com".
    There were two Errors regarding AutoDiscovery. It is like "autodiscover response is not complete" (my Exchange Servers are german one).

    I am able to resolve and Ping "autodiscover...." from each side and reach EWS Directory from each side.
    Event Log tells me "MSExchange Availability" Error ID 4002. Insufficient permissions.

    I am asking myself if MFG whould be a little bit less complicated than this?
    I thought with an existing AD Trust it is a simple step to share Free/Busy Information. But it seems it is not the case.
    What do you think? Good Experience with MFG?

    Thanks

    Kind Regards

    Marco

    Wednesday, March 16, 2016 12:47 PM
  • Meanwhile i configured MFG.
    It was also a little bit tricky because of a (hidden) reverse Proxy, some missing external DNS Names and some Exchange Magic (WSSecurityAuthentication was enabled but in fact it was not).
    But in the end it works.

    Thanks to all.

    Wednesday, March 23, 2016 6:00 AM