MSExchangeTransport 12012

 

上一次修改主题: 2011-03-19

本文对特定 Exchange 事件进行了说明并提供了可能的解决方案。如果您在此处未找到所需内容,请尝试在 Exchange 2010 帮助中进行搜索。

Details

Product Name

Exchange

Product Version

14.0

Event ID

12012

Event Source

MSExchangeTransport

Category

TransportService

Symbolic Name

InternalTransportCertificateMissingInAD

Message Text

The internal transport certificate that is used for SMTP authentication by Microsoft Exchange could not be read from Active Directory. The certificate may be missing. If an existing certificate that matches the fully qualified domain name (FQDN) of the server is already installed, run the Enable-ExchangeCertificate cmdlet to publish this certificate to Active Directory. If a certificate for the FQDN of the server is not installed, create a certificate by running the New-ExchangeCertificate cmdlet for the FQDN of the server.

Explanation

This Error event occurs when Microsoft Exchange detects that the Transport Layer Security (TLS) certificate (also referred to as an internal transport certificate) that this computer uses for Exchange Server authentication is not published to Active Directory. Specifically, Exchange detected that the version of the certificate located on the server that is running Exchange is more current than the version of the certificate published to Active Directory.

This error may occur if the following conditions are true:

  • The Enable-ExchangeCertificate cmdlet was not run after the new certificate was installed.

  • The certificate update has not yet been replicated to the domain controller that the Exchange server uses after the Enable-ExchangeCertificate cmdlet is run.

  • The Enable-ExchangeCertificate cmdlet did not update the certificate information in Active Directory.

User Action

To resolve this error, do the following:

  • If you did not run the Enable-ExchangeCertificate cmdlet after you installed a certificate, run the cmdlet now.

  • If you did run the Enable-ExchangeCertificate cmdlet after you installed a certificate, wait for Active Directory replication to occur. If the issue persists beyond the Active Directory replication latency configured for your organization, run the Enable-ExchangeCertificate cmdlet again.

For more information, see 创建新的 Exchange 证书 and Enable-ExchangeCertificate.

For More Information

如果您尚未执行此操作,请考虑运行 Exchange 工具,已创建这些工具以帮助您分析 Exchange 环境并对其进行疑难解答。这些工具可帮助确保您的配置与 Microsoft 最佳实践保持一致。它们还可以帮助您识别和解决性能问题,并改进邮件流。若要运行这些工具,请转到 Exchange 管理控制台的“工具箱”节点。若要了解有关这些工具的详细信息,请参阅管理工具箱中的工具