MSExchangeTransport 12012

 

Letztes Änderungsdatum des Themas: 2011-03-19

Dieser Artikel bietet eine Erläuterung und mögliche Lösungen für ein bestimmtes Exchange-Ereignis. Wenn Sie hier das Gesuchte nicht finden können, durchsuchen Sie die Exchange 2010-Hilfe.

Details

Product Name

Exchange

Product Version

14.0

Event ID

12012

Event Source

MSExchangeTransport

Category

TransportService

Symbolic Name

InternalTransportCertificateMissingInAD

Message Text

The internal transport certificate that is used for SMTP authentication by Microsoft Exchange could not be read from Active Directory. The certificate may be missing. If an existing certificate that matches the fully qualified domain name (FQDN) of the server is already installed, run the Enable-ExchangeCertificate cmdlet to publish this certificate to Active Directory. If a certificate for the FQDN of the server is not installed, create a certificate by running the New-ExchangeCertificate cmdlet for the FQDN of the server.

Explanation

This Error event occurs when Microsoft Exchange detects that the Transport Layer Security (TLS) certificate (also referred to as an internal transport certificate) that this computer uses for Exchange Server authentication is not published to Active Directory. Specifically, Exchange detected that the version of the certificate located on the server that is running Exchange is more current than the version of the certificate published to Active Directory.

This error may occur if the following conditions are true:

  • The Enable-ExchangeCertificate cmdlet was not run after the new certificate was installed.
  • The certificate update has not yet been replicated to the domain controller that the Exchange server uses after the Enable-ExchangeCertificate cmdlet is run.
  • The Enable-ExchangeCertificate cmdlet did not update the certificate information in Active Directory.

User Action

To resolve this error, do the following:

  • If you did not run the Enable-ExchangeCertificate cmdlet after you installed a certificate, run the cmdlet now.
  • If you did run the Enable-ExchangeCertificate cmdlet after you installed a certificate, wait for Active Directory replication to occur. If the issue persists beyond the Active Directory replication latency configured for your organization, run the Enable-ExchangeCertificate cmdlet again.

For more information, see Erstellen eines neuen Exchange-Zertifikats and Enable-ExchangeCertificate.

For More Information

Wenn dies nicht bereits der Fall ist, sollten Sie die Exchange-Tools ausführen, die für die Analyse und Problembehandlung der Exchange-Umgebung erstellt wurden. Mit diesen Tools kann sichergestellt werden, dass Ihre Konfiguration die bewährten Methoden von Microsoft einhält. Sie tragen zudem zur Identifikation und zur Lösung von Leistungsproblemen bei, und können die Nachrichtenübermittlung verbessern. Sie können diese Tools über den Knoten Toolbox in der Exchange-Verwaltungskonsole ausführen. Weitere Informationen zu diesen Tools finden Sie unter Verwalten von Tools in der Toolbox.