Please enter search query.
 
              Search <book_title>...
            
 
          Enterprise Vault™ Setting up Exchange Server and Office 365 for SMTP Archiving
                Last Published: 
				
                2023-03-06
              
              
                Product(s): 
				
                 Enterprise Vault (14.4)
              
              
            - Configuring Exchange Server for an Enterprise Vault SMTP Archiving solution- About using Enterprise Vault SMTP Archiving for Exchange Server journaling
- Summary of steps
- Creating a remote domain using the Exchange Management shell
- Creating a recipient mail contact in the remote domain
- Creating a Send Connector for the remote domain
- Setting up Exchange Server journaling
- Points to note when setting up Enterprise Vault SMTP Archiving servers
 
- Configuring Office 365 for Enterprise Vault SMTP Archiving
- Configuring the Azure RMS Decryption feature for Office 365 email encryption support- About configuring the Azure RMS Decryption feature for Office 365 email encryption support
- Summary of steps
- Configuring IRM settings for journal report decryption in your organization
- Getting the Rights Management configuration details of your Azure tenant
- Creating a new service principal that represents your tenant to external applications
- Adding the service principal to the list of superusers for your organization
- Installing Microsoft Right Management Services Client 2.1
- Configuring the decryption of RMS-protected messages in Enterprise Vault
 
- Configuring decryption of MPIP-protected Office 365 emails archived in Enterprise Vault- About configuring the MPIP decryption feature in Enterprise Vault
- Summary of steps
- Disable decryption of journal report in your organization
- Register an application with the Azure Active Directory
- Assign the required permissions to an application
- Upload certificates
- Configure decryption of MPIP-protected emails in Enterprise Vault
 
Configuring the decryption of RMS-protected messages in Enterprise Vault
Configure the RMS settings in the site properties, and the SMTP policy to allow Enterprise Vault to decrypt RMS-protected messages.
To configure RMS settings in Enterprise Vault
- In the left pane of the Administration Console, expand the hierarchy until the name of the site is visible.
- Right-click the name of the site. Then click Properties. The site properties are displayed.
- Click the RMS tab.
- Select the Enable RMS Decryption check box.
- Edit the following settings:- Intranet URL 
- Extranet URL 
- BPOS Tenant ID 
- Application Principal ID 
- Symmetric Key 
 
- Click Test to verify whether the Enterprise Vault server can authenticate with the Azure Information Protection (AIP) services using the provided settings.
- Click OK to close the site properties.
- In the left pane of the Administration Console, expand the hierarchy until Policies is visible. Expand Policies and click SMTP. In the right-hand pane, double-click the name of the policy that is used for SMTP archiving. The policy's properties are displayed. 
- Click the Advanced tab.
- Set ClearText copies of RMS Protected items to Treat as Secondary.
- Set Decrypt RMS Protected items to Decrypt for journal archives only.
- Click OK to close the SMTP policy properties.
- Restart the SMTP archiving task and the associated Storage service to apply the changes.