The following table lists the recommended baseline startup settings for cluster nodes running in a hardened environment. Specifically, Table 1 shows the startup mode for each service after you apply the Exchange 2003 Cluster Node Base GPO template above the Exchange 2003 Backend and Windows Enterprise Client Member Server GPO templates. Services that are added or changed by the Exchange 2003 Cluster Node Base GPO template appear in italic.
To enable the POP3 or IMAP4 services, which are disabled by both the Exchange 2003 Backend and Exchange 2003 Cluster Node Base GPO templates, you must apply either the Cluster Node POP3 template (Exchange_2003-Cluster_Node_POP3_V1_1.inf) or the Cluster Node IMAP4 template (Exchange_2003-Cluster_Node_IMAP4_V1_1.inf).
|
Service Name
|
Startup Mode
|
Reason
|
|---|
|
Microsoft Exchange IMAP4
|
Disabled
|
Server not configured for IMAP4
|
|
Microsoft Exchange Information Store
|
Manual
|
Needed to access mailbox and public folder stores
|
|
Microsoft Exchange POP3
|
Disabled
|
Server not configured for POP3
|
|
Microsoft Search
|
Manual
|
Used by full-text indexing
|
|
Microsoft Exchange Event
|
Disabled
|
Only needed for backwards compatibility with Exchange 5.5; not supported on Exchange clusters
|
|
Microsoft Exchange Site Replication Service
|
Disabled
|
Only needed for backwards compatibility with Exchange 5.5; not supported on Exchange clusters
|
|
Microsoft Exchange Management
|
Automatic
|
Publishes Exchange management information to Windows Management Instrumentation (WMI); required for message tracking to function
|
|
Windows Management Instrumentation
|
Automatic
|
Used by Microsoft Exchange Management service to publish a variety of Exchange management information
|
|
Microsoft Exchange MTA Stacks
|
Manual
|
Needed for backwards compatibility
|
|
Microsoft Exchange System Attendant
|
Manual
|
Needed for Exchange maintenance and other tasks
|
|
Microsoft Exchange Routing Engine
|
Manual
|
Needed to coordinate message transfer between Exchange servers
|
|
IPSEC Services
|
Automatic
|
Needed to implement and use Internet Protocol security (IPSec) policy on server for communication with clients and servers that support IPSec
|
|
Remote Procedure Call (RPC)
|
Automatic
|
Provides RPC endpoint and endpoint mapping for communications with Windows servers and workstations; also for communication between Exchange servers and Microsoft Outlook® clients
|
|
IIS Admin Service
|
Automatic
|
Required by the World Wide Web Publishing Service, the Simple Mail Transfer Protocol (SMTP) service, and the Microsoft Exchange Routing Engine service
|
|
NT LM Security Support Provider
|
Automatic
|
Provides security for remote procedure calls (RPC)
|
|
Simple Mail Transfer Protocol (SMTP)
|
Manual
|
Required for Exchange transport
|
|
World Wide Web Publishing Service
|
Automatic
|
Required for communication with servers running Outlook Web Access, Outlook Mobile Access, Exchange ActiveSync®, and Outlook 2003 clients connecting to Exchange using RPC over HTTP; required for accessing Public Folder stores and content from Exchange System Manager
|
|
HTTP SSL
|
Manual
|
Implements secure HTTP (HTTPS) for the World Wide Web Publishing Service
|
|
Network News Transfer Protocol (NNTP)
|
Disabled
|
Only needed for setup and newsgroup functionality; not supported on Exchange clusters
|
|
Cluster Service
|
Automatic
|
Required to install and run Exchange on a Windows Server cluster
|
|
Microsoft Distributed Transaction Coordinator
|
Manual
|
Required by Exchange Setup and Exchange service pack Setup when Exchange is installed on a Windows Server cluster
|