Problem Description:
There Exchange 2013 2 full-role server (A and B), the deployment of a new Exchange 2016 server (C), after you have configured Exchange 2016, the following problems occur:
- When the DNS server records to point A, you can log in normally 2013,2016 mail accounts;
- When the DNS server records to point B, you can log in normally 2013 mailbox account, login 2016 email accounts appear as error
- When the DNS server to point C (Exchange 2016), you can log in normally 2016 mailbox account, login 2013 email accounts appear as error
Solution:
Open EMS, input gpresult / scope computer / r
If you want to see which group had refused permission to
the Get-ADPermission -Identity <ExchangeComputerObject> | the WHERE {($ .ExtendedRights The -like "MS-Exch-EPI-Token-Serialization") the -and ( $ .Deny the -like "True")} | ft -autosize the User, ExtendedRights
through the search, we found the customer's Exchange server computer account domain Admins belong to the group, after being removed from the Domain Admins group, restart the Exchange server to solve the problem.