Microsoft KB Archive/266686

= XCON: How to Configure a SMTP Virtual Server Part 1 =

Article ID: 266686

Article Last Modified on 2/26/2007

-

APPLIES TO


 * Microsoft Exchange 2000 Server Standard Edition

-



This article was previously published under Q266686



SUMMARY
This article is part one of a two-part article that describes the different configuration options for the Simple Mail Transfer Protocol (SMTP) service in Exchange 2000 Server. This article assumes that you have already installed Microsoft Windows 2000 Server, Microsoft Windows 2000 Advanced Server, or Microsoft Windows 2000 Datacenter Server and Exchange 2000 Server.

Part 1 covers the following topics:
 * Configuration
 * How to Start the Exchange System Manager
 * Virtual Servers
 * How to Create an Additional SMTP Virtual Server
 * How to Change the IP Address and Port Number
 * How to Stop, Start, or Pause a Virtual Server
 * How to Limit Inbound Connections
 * How to Set the Connection Time-Out
 * How to Enable Transaction Logging
 * How to Configure ODBC Logging
 * How to Customize W3C Extended Logging
 * How to Authenticate Connections
 * How to Encrypt Connections
 * How to Deny Inbound Connections
 * How to Restrict Relaying
 * How to Limit Inbound Message Size
 * How to Limit Inbound Session Size
 * How to Limit Outbound Messages for Each Connection
 * How to Limit Outbound Recipients for Each Message
 * How to Process Non-Delivery Reports
 * How to Process Badmail Messages
 * How to Process Unresolved Recipients
 * How to Set Retry Intervals
 * How to Set Outbound Delay Notifications
 * How to Set Outbound Message Expiration
 * How to Set Local Delay Notifications
 * How to Set Local Message Expiration
 * How to Set Outbound Security
 * How to Limit Outbound Connections
 * How to Specify the Outbound Port
 * How to Specify the Hop Count
 * How to Set a Masquerade Domain
 * How to Change the Fully Qualified Domain Name
 * How to Set a Smart Host
 * How to Enable Reverse Domain Name System Lookups
 * How to Enable Message Filtering (Turf List)

Part 2 covers the following topics:
 * Monitoring
 * Current Sessions
 * How to View Current Sessions
 * How to Stop Current Sessions
 * Queues
 * How to Gain Access to Queues
 * How to Set the Queue Display
 * How to View Queued Messages
 * How to Delete Messages in a Queue
 * How to Delete One Message in a Queue
 * How to Delete All Messages in a Queue
 * How to Delete a Specific List of Messages in a Queue
 * How to Freeze and Unfreeze Messages in a Queue
 * How to Freeze One Message in a Queue
 * How to Freeze All Messages in a Queue
 * How to Freeze a Specific List of Messages in a Queue

This article is continued in the following Microsoft Knowledge Base article:

268163 XCON: How to Configure a SMTP Virtual Server Part 2



Configuration
After you install Exchange 2000, the SMTP service is ready to process e-mail. No further configuration is required to send and receive e-mail. The SMTP service is very flexible and can be customized to suit most messaging requirements. All of the steps in this article are performed in the Exchange System Manager.

How to Start Exchange System Manager

 * 1) On the Start menu, point to Programs, point to Microsoft Exchange, and then click System Manager.
 * 2) Double-click Administrative Groups.
 * 3) Double-click First Administrative Group.

NOTE: If you have changed the name of the default administrative group, expand the appropriate node for that administrative group.
 * 1) Double-click Servers and find the default SMTP virtual server on any server.

Virtual Servers
This section describes how to configure SMTP virtual servers.

How to Create an Additional SMTP Virtual Server
In most cases, you only need one SMTP virtual server. However, in certain situations (if you host multiple domains and want to have more than one default domain, for example) you can create multiple SMTP virtual servers. When you create an SMTP virtual server, a home directory is automatically created in the Exchange Server MDBData folder.

To create an additional SMTP virtual server:
 * 1) Click SMTP.
 * 2) On the Action menu, point to New, and then click SMTP Virtual Server.
 * 3) In the SMTP Virtual Server dialog box, type a description for your virtual server, and then click Next.
 * 4) Click the Internet Protocol (IP) address that the virtual server will use, and then click Finish.

NOTE: If you click All Unassigned, this virtual server monitors port 25 of all IP addresses that are not currently assigned to a virtual server by default.

How to Change the IP Address and Port Number

 * 1) Click the virtual server that you want to change the IP address and port number for.
 * 2) On the Action menu, click Properties.
 * 3) On the General tab, click Advanced.
 * 4) In the Advanced IP address configuration list, click the identity, and then click Edit.
 * 5) Change either the IP address or the port number so that there is no conflict with any other virtual servers.
 * 6) Click OK until you close the virtual server properties.
 * 7) Start the virtual server.

How to Stop, Start, or Pause a Virtual Server

 * 1) In Exchange System Manager, click the virtual server that you want to stop, start, or pause.
 * 2) On the Action menu, click either Start, Stop, or Pause, as applicable.

NOTE: If you pause a virtual server, you prevent new client connections but you enable the SMTP service to continue to process existing client connections and deliver queued messages. You can also pause a virtual server to gracefully stop the virtual server without interrupting active connections.

How to Limit Inbound Connections

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) On the General tab, click to select the Limit number of connections to check box.
 * 4) Type the inbound connection limit.
 * 5) Click OK or Apply to save the setting.

How to Set the Connection Time-Out

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) On the General tab, type the connection time-out time in minutes.
 * 4) Click OK or Apply to save the setting.

How to Enable Transaction Logging

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) On the General tab, click to select the Enable Logging check box.
 * 4) Click any active log format.
 * 5) Click Properties to gain access to additional log file settings.
 * 6) In the Extended Logging Properties dialog box, click the General tab. You can specify the following options:
 * 7) * New log file creation
 * 8) * Log file naming and rollover
 * 9) * Log file directory
 * 10) After you set the options that you want, click OK.
 * 11) Click OK or Apply to save the settings.

NOTE: Both the Open Database Connectivity Logging (ODBC) and World Wide Web Consortium (W3C) extended log file format have different extended logging properties.

How To Configure ODBC Logging

 * 1) Create a database that contains a table with the appropriate fields for the logging data. Microsoft Internet Information Service (IIS) includes a Structured Query Language (SQL) template file, which can be run in a SQL database to create a table that accepts log entries from IIS. The file is called Logtemp.sql and is available in the Winnt\System32\Inetsrv folder. The following fields are required:
 * 2) * ClientHost: varchar(255)
 * 3) * Username: varchar(255)
 * 4) * LogTime: datetime
 * 5) * Service: varchar(255)
 * 6) * Machine: varchar(255)
 * 7) * ServerIP: varchar(50)
 * 8) * ProcessingTime: int
 * 9) * BytesRecvd: int
 * 10) * BytesSent: int
 * 11) * ServiceStatus: int
 * 12) * Win32Status: int
 * 13) * Operation: varchar(255)
 * 14) * Target: varchar(255)
 * 15) * Parameters: varchar(255)
 * 16) In Exchange System Manager, click the virtual server that you want to configure.
 * 17) On the Action menu, click Properties.
 * 18) On the General tab, click to select the Enable Logging check box.
 * 19) In the Active log format list, click ODBC Logging.
 * 20) Click Properties to gain access to the ODBC Logging properties.
 * 21) Type the ODBC Data Source Name (DSN).
 * 22) Type the name of the table.
 * 23) Type the user name and password that you need to use to gain access to the database.
 * 24) Click OK or Apply to save the settings.

How to Customize W3C Extended Logging
 In Exchange System Manager, click the virtual server that you want to configure. On the Action menu, click Properties. On the General tab, click to select the Enable Logging check box. In the Active log format list, click W3C Extended Log File Format. Click Properties to open the Extended Logging properties. Click the Extended Properties tab. The SMTP service uses the following extended logging options:

 Date (date)</li> Time (time)</li> Client IP Address (c-ip)</li> User Name (cs-username)</li> Service Name (s-sitename)</li> Server Name (s-computername)</li> Server IP (s-ip)</li> Method (cs-method)</li> URI Stem (cs-uri-stem)</li> URI Query (cs-uri-query)</li> Protocol Status (sc-status)</li> Win32 Status (sc-win32-status)</li> Bytes Sent (sc-bytes)</li> Bytes Received (cs-bytes)</li> Time Taken (time-taken)</li> Protocol Version (cs-version)</li></ul>

The Time (time), Client IP Address (c-ip), Method (cs-method), URI Stem (cs-uri-stem), and Protocol Status (sc-status) options are default log file entries.</li> <li>Click OK or Apply to save the settings.</li></ol>

How to Authenticate Connections

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Access tab, and then click Authentication.
 * 4) Click any combination of Allow anonymous, Basic authentication, Windows Security Package, or Enable SSL client authentication.

NOTE: If you use basic authentication, passwords are transmitted in clear text. A certificate is required to enable Secure Sockets Layer (SSL) client authentication.
 * 1) If you click Allow anonymous, type the account that will be used to gain access to resources when an anonymous connection is made.
 * 2) Click OK, and then click OK again to close the virtual server properties.

How to Encrypt Connections
To enable encryption, you must install a valid certificate on the virtual server:
 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Access tab, and then click Certificate. The Web Server Certificate Wizard starts.
 * 4) Complete the wizard to generate a certificate request.
 * 5) Send the certificate to a trusted certification authority (CA).
 * 6) After you obtain the new certificate, perform steps 1 through 3 again. The Web Server Certificate Wizard starts again.
 * 7) Complete the wizard to process the pending certificate request. At this point, the server is ready for encryption.
 * 8) Click the Access tab, and then click Authentication.
 * 9) In the Authentication Methods dialog box, click to select the Enable SSL client authentication check box to enable SSL authentication.
 * 10) Click to select the Require SSL client authentication check box to require that all connections use SSL.
 * 11) To enable mapping client certificates to Windows accounts, click to select the Enable client certificate mapping to Windows user accounts check box.
 * 12) Click OK and then click OK again to close the virtual server properties.

How to Deny Inbound Connections

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Access tab, and then click Connection.
 * 4) In the Connection dialog box, either click Only the list below to limit access to this virtual server to the listed computers, or click All except the list below to prevent the listed computers from gaining access to this virtual server.
 * 5) Click Add.
 * 6) In the Computer dialog box, you can specify computers by one of the following criteria:
 * 7) * IP Address
 * 8) * Range of IP Addresses
 * 9) * Domain
 * 10) Click OK to add the restriction and return to the Connection dialog box.
 * 11) Click OK, and then click OK again to close the virtual server properties.

How to Restrict Relaying

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Access tab, and then click Relay.
 * 4) In the Relay Restrictions dialog box, either click Only the list below to restrict relaying mail through this virtual server to the listed computers, or click All except the list below to prevent the listed computers from relaying mail through this virtual server.
 * 5) Click Add.
 * 6) In the Computer dialog box, you can specify computers by one of the following criteria:
 * 7) * IP Address
 * 8) * Range of IP Addresses
 * 9) * Domain
 * 10) Click OK to add the restriction and return to the Connection dialog box.
 * 11) To add more restrictions, repeat the preceding steps.
 * 12) Click to select the Allow all computers which successfully authenticate to relay check box, regardless of the list that you selected in step 4, to allow all authenticated clients to relay.
 * 13) Click OK, and then click OK.

How to Limit Inbound Message Size

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Messages tab, and then type a value in kilobytes (KB) in the Limit message size to box.
 * 4) Click OK or Apply to save the setting.

How to Limit Inbound Session Size

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Messages tab, end then type a value in KB in the Limit session size to box.
 * 4) Click OK or Apply to save the setting.

How to Limit Outbound Messages for Each Connection

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Messages tab, and then type a value in the Limit number of messages per connection to box.
 * 4) Click OK or Apply to save the setting.

How to Limit Outbound Recipients for Each Message

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Messages tab, and then type a value in the Limit the number of recipients per message to box.
 * 4) Click OK or Apply to save the setting.

How to Handle Non-Delivery Reports

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Messages tab, and then type the name of the account that you want non-delivery reports (NDRs) sent to in the Send copy of Non-Delivery report to box.
 * 4) Click OK or Apply to save the setting.

How to Process Badmail Messages
By default, the Badmail directory is located in the virtual server's home directory.
 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Messages tab, and then type the new location for the Badmail directory in the Badmail directory box.
 * 4) Click OK or Apply to save the setting.

How to Process Unresolved Recipients

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Messages tab, and then type the host name or IP address (enter the IP address in square brackets []) in the Forward all mail with unresolved recipients to host box.
 * 4) Click OK or Apply to save the setting.

How to Set Retry Intervals

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Delivery tab, and then type a time interval in minutes for the first, second, third, and subsequent retry intervals.
 * 4) Click OK or Apply to save the setting.

How to Set Outbound Delay Notifications

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Delivery tab, and then type a value (in minutes, hours, or days) for the time when a delay notification should be sent.
 * 4) Click OK or Apply to save the setting.

How to Set Outbound Message Expiration

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Delivery tab, and then type a value (in minutes, hours, or days) for the message expiration to time out.
 * 4) Click OK or Apply to save the setting.

How to Set Local Delay Notifications

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Delivery tab, and then type a value (in minutes, hours, or days) for the time when a delay notification should be sent.
 * 4) Click OK or Apply to save the setting.

How to Set Local Message Expiration

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Delivery tab, and then type a value (in minutes, hours, or days) for the message expiration to time out.
 * 4) Click OK or Apply to save the setting.

How to Set Outbound Security
These settings affect all outbound connections. Outbound security can also be configured for each domain.
 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Delivery tab, and then click Outbound Security.
 * 4) In the Outbound Security dialog box, click either Anonymous access, Basic authentication, or Windows security package as the authentication method.
 * 5) If you select either Basic authentication or Windows security package, type or browse for the user name. Also, type the password for this account.
 * 6) You can encrypt the connection by clicking to select the TLS encryption check box.
 * 7) Click OK and then click OK again to close the virtual server properties.

How to Limit Outbound Connections

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Delivery tab, and then click Outbound Connections.
 * 4) In the Outbound Connections dialog box, click to select the Limit connections to check box, and then type a value for the maximum outbound connections.
 * 5) By default, the time-out time is set to 600 minutes. Type a new value if you want to change the default value.
 * 6) Click to select the Limit connections per domain to check box, and then type a value for the number of connections that you want to allow for each domain.
 * 7) Click OK and then click OK again to close the virtual server properties.

How to Specify the Outbound Port

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Delivery tab, and then click Outbound Connections.
 * 4) In the Outbound Connections dialog box, type the Transmission Control Protocol (TCP) port that the virtual server will connect to on the remote server.
 * 5) Click OK and then click OK again to close the virtual server properties.

How to Specify the Hop Count

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Delivery tab, and then click Advanced.
 * 4) In the Advanced Delivery dialog box, type a value for the number of received headers that a message can have before an NDR is generated in the Maximum hop count box.
 * 5) Click OK and then click OK again to close the virtual server properties.

How to Set a Masquerade Domain

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Delivery tab, and then click Advanced.. In the Advanced Delivery dialog box, type a domain name in the Masquerade Domain box.
 * 4) Click OK, and then click OK again to close the virtual server properties.

How to Change the Fully Qualified Domain Name

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Delivery tab, and then click Advanced..
 * 4) In the Advanced Delivery dialog box, type a new fully qualified domain name (FQDN).

By default, the FQDN is derived from the information on the Network Identification tab of the system properties.
 * 1) Click OK, and then click OK again to close the virtual server properties.

How to Set a Smart Host

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Delivery tab, and then click Advanced.
 * 4) In the Advanced Delivery dialog box, type a host name or IP address (type the IP address in square brackets []) for the smart host.
 * 5) Click to select the Attempt direct delivery before sending to smart host check box if you want the virtual server to attempt to deliver messages to the destination before the virtual server sends messages to the smart host.
 * 6) Click OK, and then click OK again to close the virtual server properties.

How to Enable Reverse DNS Lookups

 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) Click the Delivery tab, and then click Advanced.
 * 4) In the Advanced Delivery dialog box, click to select the Perform reverse DNS lookup on incoming messages check box to verify that the host specified in the EHLO/HELO is the actual host that is connected to the virtual server.
 * 5) Click OK, and then click OK again to close the virtual server properties.

How to Enable Message Filtering (Turf List)
The &quot;turf list&quot; is set on the Filtering tab of the Message Delivery Properties dialog box. You can gain access to this dialog box by using Global Settings in Exchange System Manager. When turf list filtering is enabled on an SMTP virtual server, e-mail received from anyone on the turf list is filtered out. For example, if an SMTP virtual server is connected to the Internet, you can filter e-mail from one or more outside users who are trying to gain access to the organization by using a particular IP address. If, however, a different IP address is configured on the same virtual server (for example, for internal users who connect to the Internet), you may need to enable filtering for connections on this IP address. This is why turf list filtering is set in the Identification dialog box.

To enable message filtering on a virtual server:
 * 1) In Exchange System Manager, click the virtual server that you want to configure.
 * 2) On the Action menu, click Properties.
 * 3) On the General tab, click Advanced.
 * 4) In the Advanced dialog box, type the IP address to which you want the filter applied, and then click Edit.
 * 5) In the Identification dialog box, click to select the Apply Filter check box, and then click OK.
 * 6) Click OK, and then click OK again to close the virtual server properties.

NOTE: This article is continued in the following Microsoft Knowledge Base article:

268163 How to Configure the Simple Mail Transfer Protocol Service Part 2

Additional query words: x2ktransht DFVS

Keywords: kbinfo KB266686

-

[mailto:TECHNET@MICROSOFT.COM Send feedback to Microsoft]

© Microsoft Corporation. All rights reserved.