ZL UA Exchange 2013 Archiving Configuration Guide

Similar documents
ZL UA Configuring Exchange 2010 for Archiving Guide. Version 7.0

ZL UA Domino Configuration Guide. Version 7.0

Technical Note. System Roles in ZL Unified Archive

EMC SourceOne Management Pack for Microsoft System Center Operations Manager

Enterprise Vault.cloud CloudLink Google Account Synchronization Guide. CloudLink to 4.0.3

EMC SourceOne Discovery Manager Version 6.5

Enterprise Vault.cloud Journaling Guide

ZL File Archiving Administrator s Guide

Quest Collaboration Services 3.6. Installation Guide

EMC SourceOne Discovery Manager Version 6.7

Envelope Journaling for Microsoft Exchange 2003 Version 1.0

Veritas Desktop and Laptop Option 9.2

Enabling Microsoft Outlook Calendar Notifications for Meetings Scheduled from the Cisco Unified MeetingPlace End-User Web Interface

LifeSize Control Installation Guide

Privileged Identity App Launcher and Session Recording

Symantec Enterprise Vault

User Guide - Exchange Mailbox Archiver Agent

NetBackup Collection Quick Start Guide

Cisco TEO Adapter Guide for

WANSyncHA Microsoft Exchange Server. Operations Guide

Veritas Enterprise Vault Setting up SharePoint Server Archiving 12.2

Enterprise Vault Setting up Exchange Server and Office 365 for SMTP Archiving and later

Enterprise Vault Setting up Exchange Server and Office 365 for SMTP Archiving and later

Veritas Enterprise Vault PST Migration 12.2

Symantec Enterprise Vault

Configuring an IMAP4 or POP3 Journal Account for Microsoft Exchange Server 2003

Dell EMC NetWorker Module for Microsoft for Exchange Server VSS

Client Installation and User's Guide

EMC SourceOne TM Offline Access USER GUIDE. Version 6.8 P/N A01. EMC Corporation Corporate Headquarters: Hopkinton, MA

Kernel for Exchange Server. Installation and Configuration Guide

Policy Manager for IBM WebSphere DataPower 7.2: Configuration Guide

EMC SourceOne for Microsoft SharePoint Version 7.1

Using vrealize Operations Tenant App as a Service Provider

PST for Outlook Admin Guide

Administration GUIDE. OnePass Agent for Exchange Mailbox. Published On: 11/19/2013 V10 Service Pack 4A Page 1 of 177

Release Date August 31, Adeptia Inc. 443 North Clark Ave, Suite 350 Chicago, IL 60654, USA

CDP Data Center Console User Guide CDP Data Center Console User Guide Version

Prophet 21 Middleware Installation Guide. version 12.16

PaperVision Message Manager. User Guide. PaperVision Message Manager Release 71

HYCU SCOM Management Pack for F5 BIG-IP

Enterprise Vault Guide for Outlook Users

VMware AirWatch Database Migration Guide A sample procedure for migrating your AirWatch database

Veritas Enterprise Vault Setting up Exchange Server Archiving 12.2

NBC-IG Installation Guide. Version 7.2

Symantec Ghost Solution Suite Web Console - Getting Started Guide

Install and upgrade Qlik Sense. Qlik Sense 3.0 Copyright QlikTech International AB. All rights reserved.

Veritas Desktop Agent for Mac Getting Started Guide

Client Installation and User's Guide

EMC Ionix Network Configuration Manager Version 4.1.1

1.0. Quest Enterprise Reporter Discovery Manager USER GUIDE

MSX-Agent Installation Guide. Version

KYOCERA Net Admin User Guide

x10data Application Platform v7.1 Installation Guide

Deltek Touch Expense for Ajera. Touch 1.0 Technical Installation Guide

Deploying Lookout with IBM MaaS360

The Connector Version 2.0 Microsoft Project to Atlassian JIRA Connectivity

Getting Started with Tally.Developer 9 Series A Release 3.0

Quest VROOM Quick Setup Guide for Quest Rapid Recovery for Windows and Quest Foglight vapp Installers

Symantec Desktop and Laptop Option 8.0 SP2. Symantec Desktop Agent for Mac. Getting Started Guide

Series 40 6th Edition SDK, Feature Pack 1 Installation Guide

Exchange 2007 Journaling Guide

NetExtender for SSL-VPN

Veritas Desktop and Laptop Option Mac Getting Started Guide

User Guide - Exchange Database idataagent

Getting Started with Tally.Developer 9

Lookout Mobile Endpoint Security. Deploying Lookout with BlackBerry Unified Endpoint Management

EMC DiskXtender File System Manager for UNIX/Linux Release 3.5 Console Client for Microsoft Windows

RAP as a Service for Exchange Server: Prerequisites

PHD Virtual Backup Exporter. version 6.5 Users Guide. Document Release Date: August 26,

Contents Overview... 5 Upgrading Primavera Gateway... 7 Using Gateway Configuration Utilities... 9

RAP as a Service Active Directory Security: Prerequisites

Dell Storage Compellent Integration Tools for VMware

Amazon WorkMail. User Guide Version 1.0

CollabNet Desktop - Microsoft Windows Edition

HPE Security Fortify WebInspect Enterprise Software Version: Windows operating systems. Installation and Implementation Guide

SonicWall Secure Mobile Access SMA 500v Virtual Appliance 8.6. Getting Started Guide

Zimbra Connector for Microsoft Outlook User Guide. Zimbra Collaboration

EMC Secure Remote Support Device Client for Symmetrix Release 2.00

Cisco TEO Adapter Guide for Microsoft System Center Operations Manager 2007

Installing and Configuring vcenter Multi-Hypervisor Manager

Vision deliver a fast, easy to deploy and operate, economical solution that can provide high availability solution for exchange server

DameWare Server. Administrator Guide

EMC Documentum Composer

Cisco TEO Adapter Guide for Microsoft Windows

Step 4 - Choose Your Deployment

Enterprise Vault.cloud Lync Connector Administration Guide. Lync Connector

Migration from Metalogix Archive Manager (MAM) to Enterprise Vault (EV)

Outlook GroupWare Connector User Guide

User Guide for Accessing Cisco Unity Connection Voice Messages in an Application

Dell Storage Compellent Integration Tools for VMware

LepideAuditor for File Server. Installation and Configuration Guide

Integrate Microsoft Office 365. EventTracker v8.x and above

Release Date March 10, Adeptia Inc. 443 North Clark Ave, Suite 350 Chicago, IL 60610, USA Phone: (312)

INSTALLATION GUIDE Spring 2017

SFU Connect Calendar. Guide. Sharing Calendars

KYOCERA Net Admin Installation Guide

One Identity Active Roles 7.2. Azure AD and Office 365 Management Administrator Guide

vrealize Operations Manager Customization and Administration Guide vrealize Operations Manager 6.4

Log & Event Manager UPGRADE GUIDE. Version Last Updated: Thursday, May 25, 2017

NTP Software VFM. Administration Web Site for EMC Atmos User Manual. Version 6.1

Transcription:

ZL UA Exchange 2013 Archiving Configuration Guide Version 8.0 January 2014

ZL Technologies, Inc. Copyright 2014 ZL Technologies, Inc.All rights reserved ZL Technologies, Inc. ( ZLTI, formerly known as ZipLip ) and its licensors retain all ownership rights to the software programs offered by ZLTI (referred to herein as Software ) and related documentation, (together, the Products ). Use of the Software and related documentation is governed by the license agreement accompanying the Software and applicable copyright law. Your right to copy the Products is limited by copyright law and the license agreement. Making unauthorized copies, adaptations, or compilation works is prohibited. ZLTI may revise this documentation occasionally without notice. THIS DOCUMENTATION IS PROVIDED AS IS WITHOUT WARRANTY OF ANY KIND. IN NO EVENT SHALL ZLTI BE LIABLE FOR INDIRECT, SPECIAL, INCIDENTAL, OR CONSEQUENTIAL DAMAGES OF ANY KIND ARISING FROM ANY ERROR IN THIS DOCUMENTATION, INCLUDING WITHOUT LIMITATION ANY LOSS OR INTERRUPTION OF BUSINESS, REVENUE, USE, OR DATA. Other product and company names appearing in ZLTI products and materials are used for identification purposes only and may be trademarks or registered trademarks of their respective companies. Third party trademarks used in any ZLTI products and materials are the exclusive property of their respective owners. 2

Contents Preface:... 5 What to Expect From This Guide... 5 Audience... 5 What You Need to Know... 5 Conventions Used... 5 Related Documentation... 5 Chapter 1: Introduction... 7 Key Features of ZL UA Exchange Archiving... 7 Prerequisites... 8 Mailbox Management Overview... 8 Push Journaling Overview... 8 Chapter 2: Setting up Mailbox Management... 10 Exchange 2013 Mailbox Management Process... 10 The Mailbox Crawling Process... 10 The Mailbox Archiving Process... 12 The Mailbox Stubbing Process... 13 Configuring Exchange for Mailbox Management... 15 Creating the Outlook 2010 Profile... 15 Creating the ZLTransport User s EDB in Exchange... 18 Creating the ZLTransport User s Account in Exchange... 19 Installing and Configuring the ZL MAPI Connector... 25 Installing the ZL MAPI and RMI Connector Services... 25 Configuring the ZL MAPI Connector Service... 26 Starting the ZL MAPI and RMI Connector Services... 27 Configuring the ZL UA Registry... 28 Contents 3

Configuring ZL UA for Mailbox Management... 29 Chapter 3: Setting up Push Journaling... 30 Overview... 30 Exchange 2013 Push Journaling Process... 30 Configuring ZL UA for Push Journaling... 32 Creating the Exchange Trigger Address...32 Configuring Exchange for Push Journaling... 33 Creating the ZLJournal User Account...33 Creating the Exchange Send Connector...35 Enabling Exchange Journaling...38 Contents 4

Preface What to Expect From This Guide Audience This guide covers how to configure your ZL UA system to enable comprehensive Exchange 2013 Archiving. This document is for system administrators in charge of setting up MS Exchange 2013 archiving and journaling. What You Need to Know Before starting this manual, you need to read the ZL Unified Archival Installation Guide and complete the installation. Conventions Used Text in Courier indicates: Filenames, commands, and programs Text that you enter Text that the system displays Words printed in italics are generic terms representing names to be devised by you. Square brackets [ ] mean the material inside them is optional. Braces {} mean that you must choose from the options listed inside them. If there is only one option in the braces, the braces mean the option can be repeated. If a command line does not fit across the page, a backward slash (\) appears at the end of the line, and the command continues on the next line. Where the following steps ask you to do something as root, log in as a normal user and then switch to super-user mode. Related Documentation The following table presents documents that may be useful in understanding the concepts and features discussed in this guide. What to Expect From This Guide 5

Document Name ZL UA 8.0 System Requirements Tech note ZL UA 8.0 Manual Installation Guide (Win2K3 32-bit) ZL Unified Archival Administrator s Guide Description Describes hardware and software prerequisites for installing MS Exchange 2013. Describes how to install MS Exchange 2013 on the 32-bit Windows 2003 Professional operating system. Describes how to configure and manage MS Exchange archiving and journaling for ZL UA in the ZL Unified Archival Admin application. Related Documentation 6

Chapter 1 Introduction This chapter includes the following topics: Key features of ZL UA Exchange archiving Pre-requisites Mailbox Management Overview Push Journaling Overview This document is specific for Microsoft Exchange 2013. Key Features of ZL UA Exchange Archiving ZL UA provides full support for archiving of Microsoft Exchange 2013 including the following features: Mailbox Management - ZL UA s method of mailbox management is comprised of two primary components: mailbox archiving and mailbox stubbing. Mailbox Archiving - In standard mailbox archiving, ZL UA periodically dispatches server agents to scan the Exchange server in order to identify, capture, and archive new e-mail messages, calendar appointments, contacts, tasks, etc. Mailbox archiving saves messages to ZL UA to provide full-fidelity end-user restore, end-user search, and other features. Mailbox Stubbing - ZL s stubbing process reduces the storage requirements for Exchange 2013 by replacing full-size messages on Exchange with small stubbed e-mail messages that contain a link to the full message in the archive. ZL UA can support running either mailbox archiving by itself or mailbox archiving with mailbox stubbing. Push Journaling - Organizations that wish to capture all e-mail messages can take advantage of Exchange journaling, Microsoft s recommended method to ensure all e-mail is captured. ZL UA is able to capture and archive mail that has been journaled by Exchange using the push journaling method, in which journaled messages are sent to ZL UA via SMTP. Key Features of ZL UA Exchange Archiving 7

Prerequisites The following are needed before beginning the Exchange 2013 configuration process: 1. Exchange 2013 deployment 2. ZL UA 8.x deployment 3. Managing system configuration settings for Exchange archiving and/or journaling in the ZL Sys Admin module. 4. Configuring the Exchange server for archiving and/or journaling in the ZL Unified Archival Admin module. 5. Discovering users from the Exchange server Active Directory within ZL Unified Archival Admin. 6. Configuration and management of the following mail archiving-related policies in ZL Unified Archival Admin: General mail archiving policies Mail stubbing policies Mail archive restoration policies Mail archive retention policies Mail archive schedule policies Folder Categorizer policy 7. Creation and management of the global server archiving task Adding at least one server agent to the Exchange server in ZL Unified Archival Admin. Assigning that server agent to a mask (which determines how frequently the agent is dispatched to the server for archival purposes and is managed from the ZL Sys Admin module). Mailbox Management Overview The Mailbox Management process uses ZL UA tasks to archive the user s mailbox and can be either scheduled or on demand. Tasks include crawling the user mailbox, archiving, and stubbing e-mail messages. To perform these tasks, ZL UA connects to Exchange using Microsoft Outlook libraries and their ability to connect to Exchange using the MAPI/RPC protocol. MAPI/RPC is the protocol that Outlook users use to connect to Exchange and combines Microsoft Messaging API (MAPI) with Microsoft Remote Procedure Call (RPC). ZL UA connects to the Outlook libraries using two services, the ZL RMI Connector Service and the ZL MAPI Connector Service. Push Journaling Overview In push journaling, ZL UA does not interact directly with Exchange, but instead accepts journaled e-mail from Exchange to a specified SMTP address. For flexibility, Exchange can be configured to send journal e-mail directly to ZL UA, or to first send it to a journal mailbox and then forward the mail from that Prerequisites 8

mailbox to ZL UA. The latter is useful when dedicated staging servers are desired to stage the journaled e-mail before it is sent to ZL UA, allowing the production mail servers to journal to an Exchange mailbox without needing to perform SMTP conversion. Push Journaling Overview 9

Chapter 2 Setting up Mailbox Management Mailbox management includes the following processes: 1. Mailbox archiving - The process that allows organizations to back-up a user s mailbox and provide the services for self-service restore, search, and the extension of the user s data by moving files from the Exchange server to the ZL UA. For optimization purposes, mailbox archiving can be configured to perform crawling or use crawling data from a previous crawl. 2. Mailbox stubbing - An extension to mailbox archiving that allows messages on the Exchange server to be replaced with stubs, or smaller messages that link to the full message in ZL UA. Stubbing allows users to see their mail natively in their Exchange folders while allowing ZL UA to manage the storage on lower tier and lower cost storage devices. For flexibility, ZL UA allows organizations to perform mailbox archiving with or without stubbing and at different times with differing policies. Exchange 2013 Mailbox Management Process Mailbox archiving and stubbing is handled by the Archive Server Task which processes a user s mailbox. The task can run in two modes, full scan mode and partial scan mode. In full scan mode, the task will perform the following steps: (a) mailbox crawling, (b) mailbox archiving and (c) mailbox stubbing. In partial scan mode, the task skips the mailbox crawling step and performs (a) mailbox archiving and (b) mailbox stubbing. Mailbox crawling discovers messages in the user s mailbox and is a pre-requisite for both mailbox archiving and stubbing. Mailbox crawling can be CPU intensive so ZL UA provides full and partial scan capabilities to optimize when mailbox crawling is performed. All three processes are performed by using the ZL RMI and ZL MAPI Connector Services to use the Microsoft Outlook libraries to contact Exchange 2013 over MAPI/RPC. The Mailbox Crawling Process When the Archive Server Task runs in the full scan mode, it will crawl the user s mailbox before performing archiving and stubbing using the following steps: Exchange 2013 Mailbox Management Process 10

1. ZL UA s Archive Server Task is initiated and selects a user to process. It connects to the user s Exchange 2013 mailbox as the ZLTransport Exchange user using ZL services and Outlook libraries to scan the user s mailbox. Message meta-data and locations are returned to ZL UA. The ZLTransport user is covered later in this chapter. 2. When the message meta-data and folder information are returned, that information is saved and compared to ZL UA s existing data from previous crawls, if any. Messages that no longer exist on Exchange are marked as deleted from Exchange in ZL s database; the locations of any messages that have been moved since the last scan are updated in ZL s database. The process is shown below: Exchange 2013 Mailbox Management Process 11

The Mailbox Archiving Process When the Archive Server Task has selected a user and is ready to archive the user s mailbox, it will perform the following steps: 1. ZL UA checks its database and creates a list of candidate messages to archive from messages discovered on previous message crawling iterations. 2. The Archive Server Task will then request those messages from Exchange using the ZL RMI Connector Service, ZL MAPI Connector Service, and Microsoft Outlook libraries. Once the messages have been retrieved, ZL UA archives the messages. The steps for mailbox archiving are shown below. Exchange 2013 Mailbox Management Process 12

The Mailbox Stubbing Process The Archive Server Task will perform the mailbox stubbing process on the user s mailbox after mailbox archiving if stubbing has been configured. This is performed with the following steps: 1. The Archive Server Task selects candidate messages to stub and creates the stub messages. 2. The Archive Server Task then connects to Exchange 2013 as the ZLTransport user to write the stubs to the mailbox if the messages still exist. If the message has been deleted, the stub is not written. Exchange 2013 Mailbox Management Process 13

The mailbox stubbing process is shown below: Exchange 2013 Mailbox Management Process 14

Configuring Exchange for Mailbox Management Mailbox management requires a user that has rights to read, modify and delete messages in the user mailboxes. For the sake of consistency through this guide, we refer to this user as the ZLTransport user, named zltransport. Note: This administrative user account can be named whatever you would like, so long as the account name is consistent across all Exchange servers targeted for mailbox archiving. If a different user name is preferred over zltransport, use that desired user name wherever this guide references zltransport. Configuring Microsoft Exchange 2013 for mailbox management consists of the following steps in order to create and manage this user s administrative account: 1. Creating the Outlook 2010 Profile - In order for the ZLTransport user account to connect to the Exchange 2013 environment, the Outlook profile must be configured to use RCP over HTTP. 2. Creating the ZL mailbox database - An Exchange mailbox database must be created for the ZLTransport user. 3. Creating and configuring the ZLTransport user account - The ZLTransport user account is the administrative Exchange account used by ZL UA to manage mailboxes on the Exchange server. These three steps are described in detail in the below sections. Creating the Outlook 2010 Profile The ZL MAPI service will create the needed profile during the first agent run; however, the profile will not be able to connect to the Exchange 2013 environment unless the Outlook profile is configured to use RCP over HTTP and an autodiscover URL is added. This section covers the manual creation of the profile, which is needed for each server running the MAPI Connector service and for each server to which the client connects. To create the Outlook 2010 Profile: 1. Open the Windows Control Panel Applet. 2. Double-click the Mail icon. Figure 1: Mail Icon Configuring Exchange for Mailbox Management 15

The Mail window opens. Figure 2: Mail Window 3. Click Add. The New Profile dialog box opens. 4. Give the new profile the name of your Exchange Server by typing that name into the Profile Name text box (e.g. ZL_zlua2012ng-dc1). Creating the Outlook 2010 Profile 16

Figure 3: New Profile Dialog Box 5. Click OK. The Add New Account wizard opens. 6. Select Manually Configure Server settings or additional server types. 7. Click Next. 8. Select the Microsoft Exchange or compatible service option. 9. Click Next. 10. Enter the service account information, including: Server - Type the name of your Exchange server. User Name - Type zltransport (or whichever name you are planning to give the ZL UA s administrative Exchange user). Figure 4: Adding a New Account - Server Settings 11. Click the More Settings button. The Microsoft Exchange account window opens. 12. Navigate to the Security tab. 13. Ensure the Encrypt data between Microsoft Outlook and Microsoft Exchange check box is selected. 14. Ensure the Password Authentication (NTLM) option is selected for the Logon network security box. 15. Navigate to the Connection tab. 16. Select the Connect to Microsoft Exchange using HTTP check box. 17. Click the Exchange Proxy Settings button. Creating the Outlook 2010 Profile 17

The Microsoft Exchange Proxy Settings window opens. 18. Enter the relevant information for the connection settings. Use the CNAME address for auto-discover for your Exchange server or the FQDN for your Exchange CAS server (e.g. autodiscover.zldemo.in). Figure 5: Microsoft Exchange Proxy Settings In this example, we created a CNAME record in DNS for the Exchange server and pointed it at the CAS server. Note: There may be instances in which you would like to use SSL for this profile. If so, ensure all necessary certificates are installed. Most internally hosted Exchange environments will remove the encryption requirements due to the processing overhead needed to encrypt every message. 19. Click OK. 20. Click Apply, then OK. 21. Click Next. 22. Restart all services. Creating the ZLTransport User s EDB in Exchange In order to deploy the mailbox management method of archiving Exchange mail, an administrative user - the ZLTransport user - must be configured and granted permissions in Exchange 2013. Before the actual creation of the user account, Creating the Outlook 2010 Profile 18

though, an Exchange mailbox database (or EDB) must be created on the mail server to store the user s mailboxes. To create the ZLTransport user s EDB: 1. Go to the machine where you wish to create the Exchange mailbox database and open the Exchange Admin Center. 2. Navigate to Server Configuration > Mailbox. 3. In the lower center pane, ensure the Database Management tab is selected. 4. Right-click the storage group in which you wish to create the ZL mailbox database EDB. 5. Click New Mailbox Database. 6. In the New Mailbox Database dialog box, enter a mailbox database name (for example, ZL Mailbox Database) and a database file path. 7. Ensure that the Mount this database option is checked. 8. Click New to create the EDB. 9. After Exchange has created and mounted the mailbox database, click Finish. When the database has been created successfully, it will be visible in the storage group. Creating the ZLTransport User s Account in Exchange Note: Before creating the ZLTransport User, be sure the ZL Exchange Mailbox Database has been created as described in Creating the ZLTransport User s EDB in Exchange on page 18. The ZLTransport User will be stored in this mailbox database. To create the ZLTransport user in Exchange: 1. From the Exchange Admin Center, expand the menu tree for Recipient Configuration > Mailbox. 2. Right-click Mailbox. 3. Click New Mailbox. 4. In the New Mailbox dialog box, ensure that the User Mailbox radio button is selected. 5. Click Next to continue. 6. Ensure the New user radio button is selected. 7. Click Next to continue. 8. Enter the desired user name (e.g. zltransport) for the First name and User logon name text fields. 9. Enter a password and ensure the User must change password at next logon is unchecked. Note: Write down this password, as it will be needed to configure the ZL MAPI Service in a later step. Creating the Outlook 2010 Profile 19

10. Click Next to continue. 11. In the New Mailbox - Mailbox Settings dialog box beside the Mailbox database text box, click the Browse button and select the ZL mailbox database that was created previously for the ZLTransport user. 12. Leave the other options unchecked, and click Next to continue. 13. Click New to create the mailbox database. 14. After verifying that the mailbox database has been created, click Finish. Granting the ZLTransport User Exchange Privileges The ZLTransport user requires read, modify and delete privileges for user mailboxes in order to perform archiving, stubbing and retention management. In order to be granted these privileges, the ZLTransport User must be assigned two different roles: the Archive Application role, which includes archiving privileges, and the Mailbox Import Export role, which includes privileges to import/export/purge content from a mailbox. This section provides the steps to grant both of these roles. To assign Exchange administrative roles to the ZLTransport user: 1. Access https://<servername>/ecp. 2. Log-in as an Exchange Admin. 3. In the left-hand pane, click permissions. Figure 6: Adding a Role Group 4. From the admin roles tab, click the + sign to add a new role group. Creating the Outlook 2010 Profile 20

The Role Group window opens. Figure 7: Role Group Window 5. Enter the relevant information into the new role group form. Name - Type a name for the new role group. Description - (Optional) Type a description for the new role group. 6. Under the Roles section of the form, click the + sign to add roles to the group. Creating the Outlook 2010 Profile 21

The Select a Role window opens. Figure 8: Select a Role Window 7. Locate and select a role to be added to the new role group (i.e. Archive Application) from those listed. 8. Click the add button. 9. Specify any other roles to be added to the role group (i.e. Mailbox Import Export) by repeating steps 7 and 8. 10. Once satisfied with the role configuration of the role group, click ok to add the roles to the group. The Select a Role window closes, and the select role(s) are added to the new role group form. 11. Under the Members section of the new role group form, click the + sign to add members to the group. Creating the Outlook 2010 Profile 22

The Select Members window opens. Figure 9: Select Members Window 12. Locate and select the member to be added (i.e. the zltransport user) from those listed. 13. Click the add button. 14. Click ok to save the specified member to the group. The Select Members window closes, and the specified member is added to the new role group form. 15. Click save on the Role Group window to save. The specified member(s) of the new role group have been assigned the defined roles associated with the group. Verifying the ZLTransport User s Exchange Privileges It is very important that the ZLTransport User has the proper privileges to read, modify and delete e-mail in mailboxes in order to archive, stub and update messages. To verify that the user has been granted the proper privileges, log into Outlook as the ZLTransport user and access another user s mailbox. If there are no mailboxes for this purpose, create a test user first. Creating a ZLTest User Creating the Outlook 2010 Profile 23

To create a test user, create a mailbox which Exchange will populate with a welcome e-mail. The e-mail message can be used to verify the ZLTransport user s privileges. 1. From the Exchange Admin Center, navigate to Recipient Configuration > Mailbox. 1. Right-click Mailbox, and click New Mailbox. 2. In the New Mailbox dialog box, ensure that the User Mailbox radio button is clicked, then click the Next button to continue. 3. Ensure the New user radio button is clicked and then click the Next button to continue. 4. Enter the user name selected (e.g. zltest) for First name and User logon name. Enter a password and ensure the User must change password at next logon is unchecked. 5. Click Next to continue. 6. Set the Mailbox database by clicking the Browse button beside the text area and selecting the mailbox database to be used. Either an existing mailbox database or the ZL mailbox database created for the ZLTransport user can be used. 7. Leave the other options unchecked and click Next to continue. 8. Click New to create the mailbox database. 9. After verifying that the mailbox database has been created, click Finish. Verifying ZLTransport User s Exchange privileges To verify appropriate privileges, open Outlook as the ZLTransport user, add a user mailbox, and then delete and undelete a message. 1. Open Outlook as ZLTransport the user. Do this either by logging into Windows as zltransport or using the Run as... Windows option for Outlook. In the Outlook Mail Folders pane, right-click the top level Mailbox zltransport line to display the Properties dialog box. 2. Click the Advanced button in the resulting Properties dialog box: 3. Click the Advanced tab in the Microsoft Exchange Server advanced properties dialog box. 4. In the Mailboxes panel, click Add under Open these additional mailboxes. 5. Select and add a user s mailbox. 6. Click OK to close the Add Mailbox dialog box. 7. To complete this process, click OK to close the Microsoft Exchange Server Advanced properties dialog box. 8. Click OK to close the mailbox Properties dialog box. The user s Exchange mailbox tree will now appear under All Mail Items. To verify ZLTransport has the proper permissions, select a message and remember some information including the folder and some additional information such as the subject or date. Then delete the message. The message should now appear in the Creating the Outlook 2010 Profile 24

zltransport Deleted Items folder. Find the message and move it back to the user s folder. Installing and Configuring the ZL MAPI Connector ZL UA connects to Microsoft Exchange for Mailbox Archiving using the ZL MAPI Connector which is comprised of and relies on the following pre-requisites: 1. Microsoft Outlook 2007 or higher - Microsoft Outlook is installed to provide MAPI libraries which ZL UA uses to connect to Exchange as well as to read and write PST files. Ensure Microsoft Outlook is installed on the system that will host the ZL MAPI and RMI Connector Services. 2. Sun JDK SE 6 Update 13 or higher - If the Sun JDK is not already installed, review the requirements in the ZL UA System Requirements Technical Note for information on the version of the Sun JDK to use, and follow the installation instructions provided in the ZL UA Windows Installation Guide. Ensure that the JAVA_HOME Windows system environment variable is set to refer to the location of the JDK. The ZL UA Windows services include the following: 1. ZL MAPI Connector Service 2. ZL RMI Connector Service These two Windows service components must be installed on the same machine as each other. They can be either co-located on the ZL UA servers or on separate machines from ZL UA. When ZL UA is run on Windows, ZL Technologies recommends installing these components on each ZL UA server that will be performing mailbox archiving. When ZL UA is run on Linux or other non- Windows operating systems, these components can be run on stand-alone servers. ZL Technologies does not recommend installing these components on operational Exchange servers. The machines that run the ZL MAPI Connector and ZL RMI Connector services must have a JDK installed and the JAVA_HOME Windows system environment variable set to the location of the JDK. Note: The ZL MAPI Connector service, ZL RMI Connector service, and MS Outlook can be installed on the same server as ZL UA or on a stand-alone server; however, they should not be installed on the Exchange servers. Installing the ZL MAPI and RMI Connector Services This section describes installing the ZL MAPI and RMI Connector Services on Windows Server 2003 Standard Edition. 1. Install the ZL MAPI and RMI Connector Services using the zlmapiservice.bat script which is located in %ZIPLIP_HOME%\ZLMapiConnector. The syntax for running this script is: Installing and Configuring the ZL MAPI Connector 25

zlmapiservice.bat command [servicename] where command is one of the following: install remove update servicename is optional. The default service name is zlmapisvc; however, different service names can be applied which is useful to run more than one ZL MAPI service on a host. Note: To use for 64-bit installations of the MAPI Connector, please run the following command: xcopy %ZIPLIP_HOME%\ZLMapiConnector\bin\x64\*.* %ZIPLIP_HOME%\ZLMapiConnector\bin\ /Y where %ZIPLIP_HOME% is the root directory where ZIPLIP is stored. 2. Run the command with the install command with an optional service name (without spaces) to install the ZL MAPI and RMI Services. Figure 10: Installing the ZL MAPI and RMI Connector Services Configuring the ZL MAPI Connector Service The ZL MAPI service needs to run as the ZLTransport user created previously in this chapter. To do this, perform the following steps: 1. Open the Windows Server Services Console. This can be done either through the GUI by opening the Control Panel and clicking Administrative Tools followed by Services, or from the command line by entering services.msc. Installing and Configuring the ZL MAPI Connector 26

2. Locate the ZL Technologies MAPI Connector, which may have a custom service name as a suffix. 3. Right-click the ZL MAPI connector, and click Properties. 4. Click the Log On tab and then click the This account radio button. Enter the ZLTransport user account information manually or by using the Browse button. The entry should have a domain and user name, for example: ND_DOMAIN\zltransport. Then enter the user password. 5. Click OK. Figure 11: MAPI Connector Properties Starting the ZL MAPI and RMI Connector Services Once the services have been installed and configured, they need to be started. Start the services using the Microsoft Services console. 1. Start the ZL MAPI service. From the GUI Services console, select the service and click the Start Service button. From the command line, use the net start command followed by the service name, for example: C:\> net start zlmapisvc Installing and Configuring the ZL MAPI Connector 27

2. Start the ZL RMI service. From the GUI Services console, select the service and click the Start Service button. From the command line, use the net start command followed by the service name, for example: C:\> net start zlrmisvc Configuring the ZL UA Registry To complete the configuration of the ZL MAPI connector, configure it in the ZL UA registry. 1. Log into the ZL UA Web application using the following URL, replacing myzlhost with the name of the host that is running ZL UA: http://myzlhost/ps/app/home.jsp The log-in page opens. 2. Enter your ZL UA user credentials. 3. Click Login. 4. Navigate to the ZL Sys Admin application by toggling the Module Options menu box in the top right corner of the screen. 5. From the left-hand navigation pane of ZL Sys Admin, click System Configuration > Registry > Archival/Journaling > Mail Archiving/ Journaling > MAPI Proxy Settings. 6. Enter the zltransport logon name in the MAPI Profile User field. 7. If the ZL MAPI Connector service has been installed on the same host as ZL UA, no changes need to be made to the Proxy Server URL setting. If ZL UA needs to connect to a remote ZL MAPI Connector service, the URL must be made available on the ZL MAPI Connector server and the Proxy Server URL must be configured. 8. Click Submit to save. Installing and Configuring the ZL MAPI Connector 28

Configuring ZL UA for Mailbox Management At this point, Exchange 2013 is configured to archive user mailboxes. The last tasks that need to be completed are on the ZL UA system consist of: 1. Creating the Exchange 2013 mail server in ZL UA. 2. Discovering users from Active Directory, 3. Configuring the Mail Archiving policies. 4. Configuring the Mail Stubbing policies. 5. Creating and configuring the Archive global server task. These tasks are described in the ZL Unified Archival Administrator s Guide. Configuring ZL UA for Mailbox Management 29

Chapter 3 Setting up Push Journaling Overview Journaling is the Microsoft recommended method for complete email capture using Microsoft Exchange 2013. Push journaling uses Exchange to send journal e-mail to ZL Unified Archive over SMTP to a ZL UA e-mail address. Push journaling can be configured so that the Exchange servers send journal e- mail directly to ZL UA, or to one or more intermediate Exchange staging servers. Using staging servers provides two benefits: (a) the SMTP conversion isn t handled by a production mail server, and (b) any ZL UA outage or connectivity issues will result in the journal e-mail being stored on the staging servers for future retries without requiring more disk space on the production mail servers. Exchange 2013 Push Journaling Process The process of push journaling with Exchange 2013 consists of the following steps: 1. Exchange 2013 creates a journal copy of each message by either: Using a hub transport journal rule. or Using a mailbox database journal recipient. 2. Exchange 2013 sends the journal e-mail to either an Exchange mail contact configured with an SMTP address, or to an intermediate Exchange mailbox. 3. If the Exchange 2013 server is configured to deliver the journal mail to an Exchange mailbox, an additional step is needed in which the destination mailbox re-routes all mail it receives to the Exchange mail contact. 4. ZL UA receives the journal mail on the SMTP trigger address. The configuration process involves creating the ZL UA trigger address first, then creating the Exchange mail contact, and finally enabling journaling on the Exchange server. The steps are performed in this order to ensure the mail can be archived as soon as Exchange 2013 begins to journal mail. Note: Before beginning this process, the organization s users ought to have been discovered using the ZL UA Active Directory synchronization from the ZL Unified Archival Admin Overview 30

web application. User discovery is described in the ZL Unified Archival Administrator s Guide. Additionally, the ZL UA journaling policies that have been configured within the ZL Unified Archival Admin application should also be verified to ensure that they are inline with organization policies. These steps are shown in the following flowchart: Exchange 2013 Push Journaling Process 31

Configuring ZL UA for Push Journaling To configure ZL UA to archive Exchange journaled e-mail, it is necessary to create an Exchange envelope trigger address for the Exchange ZLTransport contact and to ensure the proper archiving policies are in place. Creating the Exchange Trigger Address Trigger addresses are used by ZL UA to receive data over SMTP in order to archive journaled messages. At least one trigger address will need to be configured in ZL UA. This same SMTP address will be configured as the Exchange ZLTransport user. ZL Technologies recommends using an internal e-mail address that is non-routable on the Internet in order to prevent accidental disclosure of information in the event that mail routing is improperly configured. To create a trigger address for Exchange journal e-mail, perform the following steps: 1. Log into the ZL UA Web application using the following URL, replacing myzlhost with the name of the host that is running ZL UA: http://myzlhost/ps/app/home.jsp The log-in page opens. 2. Enter your ZL UA user credentials. 3. Click Login. 4. Navigate to the ZL Sys Admin application by toggling the Module Options menu box in the top right corner of the screen. 5. In the left-hand navigation column, click System Configuration > Trigger Addresses. The Trigger Addresses tab page opens, listing any trigger addresses already configured in the system. Figure 1: Trigger Addresses Registry Configuration Configuring ZL UA for Push Journaling 32

6. To create a new trigger address, click Add. The Create Trigger Address window opens. 7. Type the Exchange Mail Contact SMTP address (e.g.journal@archive) in the Address text box. 8. Ensure that the Exchange SMTP Envelope Journal type is selected. Exchange SMTP Plain Journal Mail is also listed here; however, it is only supported by Exchange 2003 and earlier. 9. Click Save. The new trigger address is added to the Trigger Addresses tab page. 10. Restart ZL UA by using the zltcstop and zltcstart commands from the Windows command prompt in order to properly register the new address in the system. Configuring Exchange for Push Journaling When push journaling is implemented, an SMTP address is selected to be used by Exchange 2013 and ZL UA. The Exchange configuration steps include: 1. Creating the ZLJournal user account in Exchange. 2. Creating the Exchange Send Connector 3. Enabling Exchange Journaling Creating the ZLJournal User Account The SMTP address selected to transfer journaled mail from Exchange to ZL UA must be configured as a mail contact in Exchange 2013. For the sake of consistency, we refer to this Exchange mail contact as the ZLJournal user. The ZLJournal user must be created in order to enable journaling (either push or pull journaling) within the ZL UA system. Note: The ZLJournal user is a different user than the ZLTransport user (the administrative user created in Exchange for mailbox management and/or pull journaling purposes). To create the ZLJournal user in Exchange: 1. From the Exchange Admin Center, navigate to Recipients > Contacts. Configuring Exchange for Push Journaling 33

2. Click the + and select Mail Contact. Figure 2: Creating the Exchange Mail Contact The New Mail Contact dialog box opens. Configuring Exchange for Push Journaling 34

Figure 3: New Mail Contact Dialog Box 3. Enter values for First Name and Last Name for the user, e.g. zljournal. 4. To the right of the External e-mail address text box, click Edit... and click SMTP Address. Enter a non-routable email address such as journal@archive.local. By using a non-routable address, we ensure that jounal email does not accidentally get routed to the outside world. This non-routable domain will be configured in a later step. 5. Click Save to close the dialog box. Creating the Exchange Send Connector The next step is to connect the local email domain for the ZLJournal user s SMTP address to ZL UA. The IP address or server name used in configuring the Exchange Send Connector can be an individual ZL UA server or an SMTP load balancer. Perform the following steps to complete this task: 1. Open the Exchange Admin Center and navigate to Mail Flow. 2. Select the Send Connectors tab. 3. Click + to add a new Send Connector. Figure 4: Creating the New Send Connector The New Send Connector dialog box opens. 4. Type a name for the new Send Connector (e.g. ZL Connector) in the Name text box. 5. Ensure the Type field is toggled to the Custom option. 6. Click Next. 7. Select Route Mail Through Smart Host. 8. Click + to add a new smart host. Configuring Exchange for Push Journaling 35

The Add Smart Host dialog box opens. 9. Type the VIP or the Load Balancer IP or FQDN for your ZL Mail Transport servers. Figure 5: Adding a Smart Host 10. Click Save, then Next. 11. Select None for smart host authenication settings. 12. Click Next. 13. Select the + to add the Address Space. The Add Domain dialog box opens. Configuring Exchange for Push Journaling 36

14. Enter your non-routable FQDN for the connector (e.g. zldemo.local). Figure 6: Adding the Domain 15. Click Save. 16. Select the Hub Transport servers that journaling should be enabled on with this rule. 17. Click Add, then click OK. Figure 7: Selecting Hub Transport Servers 18. Click Finish to complete the creation of the Send Connector. Configuring Exchange for Push Journaling 37

Enabling Exchange Journaling The final step is to enable journaling on the Exchange server. Journaling can be configured using an Exchange Hub Transport Journal Rule or an Exchange Mailbox Database Journal Recipient. The type of Exchange rule that needs to be implemented depends on the environment. Both will be covered briefly in this section. Additionally, each rule can be configured to journal the mail to either an intermediate Exchange mailbox or to the ZLJournal user e mail contact. The most direct method of integration is to journal to the ZLJournal user s mailbox, which is described in this document. Hub Transport Journal Rule To enable journaling using a Hub Transport Journal Rule, perform the following steps: 1. Open the Exchange Admin Center using Start > All Programs > Microsoft Exchange Server 2013 > Exchange Admin Center. 2. Locate the mail store database by navigating to the database using the Group and Database information where the group and database are shown as YourGroup and YourDatabase respectively: Exchange Admin Center > Microsoft Exchange > Organization Configuration > Hub Transport > Journaling. 3. Right-click in the empty area on the right-hand pane and select New Journal Rule. 4. In the dialog box, enter a Rule Name, click Send Journal reports to address, and select the zljournal user. 5. Click New to create the rule. 6. In the next screen, click Finish to complete the process. Mailbox Database Journal Recipient An alternate way to create a journal rule is to use the Mailbox Database Journal Recipient. This can be configured using the following steps: 1. In the Exchange Admin Center, locate the mail store database by navigating to the database using the Group and Database information where the group and database are shown as YourGroup and YourDatabase respectively: Exchange Admin Center > Microsoft Exchange > Server Configuration > Mailbox > Database Management > YourGroup > YourDatabase. Note: Do not enable the Mailbox Database Journal Recipient on the ZL Mailbox Database as it would result in a loop when Exchange attempts to journal mail going to the zljournal mailbox. Configuring Exchange for Push Journaling 38

Right-click on the database for the Properties, select the Journal Recipient check box, and choose the zljournal user. Once this is completed, Exchange will start sending journaled email to the Exchange mail contact which will send it to ZL UA for archiving. Note: ZL UA archives journaled email based on journaling policies. A default journaling policy is provided to archive all journal email. See the ZL Unified Archival Administrator s Guide for more information on configuring journal archiving policies. Configuring Exchange for Push Journaling 39