exam questions

Exam MS-203 All Questions

View all questions & answers for the MS-203 exam

Exam MS-203 topic 3 question 52 discussion

Actual exam question from Microsoft's MS-203
Question #: 52
Topic #: 3
[All MS-203 Questions]

You have a hybrid deployment that contains a Microsoft Exchange Online tenant and an on-premises Exchange Server 2019 server named Server1.
Server1 uses a certificate from a third-party certification authority (CA). The certificate is enabled for the SMTP service.
You replace the certificate with a new certificate.
You discover that delivery fails for all email messages sent from Server1 to your Microsoft 365 tenant.
You receive the following error message for all the queued email messages: `450 4.4.101 Proxy session setup failed on Frontend with 451 4.4.0 Primary target IP address responded with 451 5.7.3 STARTTLS is required to send mail.`
You need to ensure that the messages are delivered successfully from Server1 to the Microsoft 365 tenant.
What should you do?

  • A. From Server1, enable a self-signed certificate for the SMTP service.
  • B. Run the Exchange Hybrid Configuration wizard.
  • C. From the firewall, disable SMTP content inspection.
  • D. From Server1, enable the new certificate for the IMAP4 service.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Cams420
5 months, 2 weeks ago
Selected Answer: B
When updating certificate in on-premise Exchange, rerunning HCW is needed to ensure that it uses the updated certificate as well.
upvoted 1 times
...
Ayham_J
7 months, 3 weeks ago
B correct answer
upvoted 1 times
...
Noie
9 months, 3 weeks ago
Selected Answer: B
Question: "...You replace the certificate with a new certificate.." URL: "..the Hybrid Configuration wizard (HCW) is run after a new Exchange certificate is installed." Answer: only B
upvoted 1 times
...
[Removed]
11 months ago
Selected Answer: B
you must run HCW after replacing the certificate
upvoted 1 times
...
pyramidhead
1 year ago
Selected Answer: B
It's B. You must use a 3rd party signed certificate and you must run HCW again to replace the certificate on hybrid transport
upvoted 1 times
...
99redeyeflight
1 year, 2 months ago
this same question is in topic 2 question15 with different answers. A. From the Exchange admin center, update the certificate thumbprint in the properties of a connector B. From Server1, regenerate the certificate and select Make private keys exportable C. From the firewall, disable SMTP content inspection D. From Server1, enable the new certificate for the IMAP4 service none of these were an agreed upon solution. in this question, B is the only one that makes some type of sense
upvoted 2 times
...
MSExch11
1 year, 2 months ago
Selected Answer: B
Self signed Certificate doesnt Work here. Has to be B
upvoted 3 times
Rubic0n
1 year, 1 month ago
Agree it should be B. Running the HCW should update the cert name used on the hybrid connector. "This issue occurs if the TlsCertificateName property of the hybrid server's receive connector contains incorrect certificate information after a new Exchange certificate is installed and old certificate that is used for hybrid mail flow is removed. The TlsCertificateName property is set correctly when the Hybrid Configuration wizard (HCW) is run after a new Exchange certificate is installed." https://learn.microsoft.com/en-us/exchange/troubleshoot/email-delivery/cannot-receive-mail-with-new-certificate
upvoted 2 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago