Microsoft KB Archive/329636

= The Remote Simple Mail Transfer Protocol Service Rejected AUTH Negotiation =

Article ID: 329636

Article Last Modified on 10/30/2006

-

APPLIES TO


 * Microsoft Exchange Server 2000 Service Pack 1
 * Microsoft Exchange 2000 Server Service Pack 2
 * Microsoft Exchange Server 2000 Service Pack 3
 * Microsoft Small Business Server 2000 Standard Edition
 * Microsoft BackOffice Small Business Server 2000 Service Pack 1

-



This article was previously published under Q329636



SYMPTOMS
When users send e-mail to external, remote, or Internet domains, they may receive the following notification from the Postmaster or Administrator of the local Exchange server:

Delivery Status Notification

This is an automatically generated Delivery Status Notification.

THIS IS A WARNING MESSAGE ONLY.

YOU DO NOT NEED TO RESEND YOUR MESSAGE

Delivery to the following recipients has been delayed

someone@example.com

The user may also receive the following message indicating the time expiration of delivery attempts for the message:

Your message did not reach some or all of the intended recipients.

Subject:

Sent:

The following recipient(s) could not be reached:

@ on

Could not deliver the message in the time limit specified. Please retry or contact your administrator.

(server.contoso.com #4.4.7)



CAUSE
This behavior may occur if the outbound security of the Simple Mail Transfer Protocol (SMTP) virtual server or the outbound security of one or more SMTP Connectors are set incorrectly.

To verify whether this is the cause:


 * 1) Open Exchange System Manager.
 * 2) Expand Servers, and then expand  .
 * 3) Expand Protocols, and then expand SMTP.
 * 4) Expand Default SMTP Virtual Server, and then expand Queues.

Remote Delivery Queues will be displayed in retry mode (A Blue Arrow).

To view the description of the queues in retry status:
 * 1) Right-click a queue in retry status, and then click Properties.
 * 2) The upper status box should read, &quot;Retry, Remote delivery&quot;.
 * 3) The lower box should read, &quot;The remote SMTP service rejected AUTH negotiation&quot;.



RESOLUTION
This resolution addresses two types of delivery methods.

Using DNS for Delivery
By default, Anonymous access is the default setting for sending SMTP mail by using DNS to all Internet domains. To resolve this behavior:

 Follow these steps to change the SMTP virtual server:  Open Exchange System Manager. Expand  , expand Protocols, and then expand SMTP. Right-click Default SMTP Virtual Server, and then click Properties Click the Delivery tab. Click Outbound Security.</li> Click to select the Anonymous access option, click OK, and then click OK again.</li></ol> </li> Follow these steps to change the SMTP connector: <ol style="list-style-type: lower-alpha;"> Locate, and then expand Connectors.</li> Right-click SMTP Connector, and then click Properties</li> Click the Advanced tab.</li> Click the Outbound Security button.</li> Click to select the Anonymous access option, click OK, and then click OK again.</li> Close Exchange System Manager.</li></ol> </li></ol>

Forwarding Mail Through a Smart Host
Use an SMTP connector for this type of delivery, and set access control to the requirements of the smart host. For more information about when to use an SMTP Connector, see the &quot;References&quot; section.
 * 1) Use the preceding steps for the SMTP connector.
 * 2) Set the outbound security according to the requirements of the Smart host.

<div class="status_section">

STATUS
This behavior is by design.

<div class="references_section">