Exchange 混合 - 外部 EWS URL 引发连接超时错误

问题描述

我们目前已在测试服务器上使用混合配置向导设置 Exchange 混合环境。我们曾考虑使用 EWS 外部 URL(带有 EWS Java 库)来访问来自本地的所有邮件以及混合设置中的 Exchange Online 邮箱。

代码片段:

System.setProperty("https.proxyHost","<host>");
System.setProperty("https.proxyPort","443");
...
exchangeService.setUrl(new URI("https://<public_domain>/ews/exchange.asmx")); 
exchangeService.setCredentials(new WebCredentials("ex user","password"));
...

下面是堆栈跟踪:

microsoft.exchange.webservices.data.core.exception.service.remote.ServiceRequestException: The request Failed. The request Failed. Connect to <public domain>:443 [<public domain>/<public domain IP>] Failed: Connection timed out: connect
    at microsoft.exchange.webservices.data.core.request.SimpleServiceRequestBase.internalExecute(SimpleServiceRequestBase.java:74)
    at microsoft.exchange.webservices.data.core.request.MultiResponseServiceRequest.execute(MultiResponseServiceRequest.java:158)
    at microsoft.exchange.webservices.data.core.ExchangeService.internalFindFolders(ExchangeService.java:377)
    at microsoft.exchange.webservices.data.core.ExchangeService.findFolders(ExchangeService.java:425)
    at microsoft.exchange.webservices.data.core.ExchangeService.findFolders(ExchangeService.java:461)
    at com.sample.externalews.UsingClientCreds.displayMailBoxFolders(UsingClientCreds.java:143)
    at com.sample.externalews.UsingClientCreds.usingCredentials(UsingClientCreds.java:161)
    at com.sample.externalews.UsingClientCreds.main(UsingClientCreds.java:237)
Caused by: microsoft.exchange.webservices.data.core.exception.service.remote.ServiceRequestException: The request Failed. Connect to <public domain>:443 [<public domain>/<public domain IP>] Failed: Connection timed out: connect
    at microsoft.exchange.webservices.data.core.request.ServiceRequestBase.getEwsHttpWebResponse(ServiceRequestBase.java:729)
    at microsoft.exchange.webservices.data.core.request.ServiceRequestBase.validateAndEmitRequest(ServiceRequestBase.java:639)
    at microsoft.exchange.webservices.data.core.request.SimpleServiceRequestBase.internalExecute(SimpleServiceRequestBase.java:62)
    ... 7 more
Caused by: org.apache.http.conn.HttpHostConnectException: Connect to <public domain>:443 [<public domain>/<public domain IP>] Failed: Connection timed out: connect
    at org.apache.http.impl.conn.DefaultHttpClientConnectionoperator.connect(DefaultHttpClientConnectionoperator.java:156)
    at org.apache.http.impl.conn.BasicHttpClientConnectionManager.connect(BasicHttpClientConnectionManager.java:313)
    at org.apache.http.impl.execchain.MainClientExec.establishRoute(MainClientExec.java:393)
    at org.apache.http.impl.execchain.MainClientExec.execute(MainClientExec.java:236)
    at org.apache.http.impl.execchain.ProtocolExec.execute(ProtocolExec.java:186)
    at org.apache.http.impl.execchain.RetryExec.execute(RetryExec.java:89)
    at org.apache.http.impl.execchain.RedirectExec.execute(RedirectExec.java:110)
    at org.apache.http.impl.client.InternalHttpClient.doExecute(InternalHttpClient.java:185)
    at org.apache.http.impl.client.CloseableHttpClient.execute(CloseableHttpClient.java:83)
    at microsoft.exchange.webservices.data.core.request.HttpClientWebRequest.executeRequest(HttpClientWebRequest.java:292)
    at microsoft.exchange.webservices.data.core.request.ServiceRequestBase.getEwsHttpWebResponse(ServiceRequestBase.java:720)
    ... 9 more
Caused by: java.net.ConnectException: Connection timed out: connect
    at java.net.DualStackPlainSocketImpl.waitForConnect(Native Method)
    at java.net.DualStackPlainSocketImpl.socketConnect(DualStackPlainSocketImpl.java:96)
    at java.net.AbstractPlainSocketImpl.doConnect(AbstractPlainSocketImpl.java:380)
    at java.net.AbstractPlainSocketImpl.connectToAddress(AbstractPlainSocketImpl.java:236)
    at java.net.AbstractPlainSocketImpl.connect(AbstractPlainSocketImpl.java:218)
    at java.net.PlainSocketImpl.connect(PlainSocketImpl.java:183)
    at java.net.socksSocketImpl.connect(SocksSocketImpl.java:403)
    at java.net.socket.connect(Socket.java:682)
    at org.apache.http.conn.ssl.SSLConnectionSocketFactory.connectSocket(SSLConnectionSocketFactory.java:368)
    at org.apache.http.impl.conn.DefaultHttpClientConnectionoperator.connect(DefaultHttpClientConnectionoperator.java:142)
    ... 19 more
microsoft.exchange.webservices.data.core.exception.service.remote.ServiceRequestException: The request Failed. The request Failed. Connect to <public domain>:443 [<public domain>/<public domain IP>] Failed: Connection timed out: connect
    at microsoft.exchange.webservices.data.core.request.SimpleServiceRequestBase.internalExecute(SimpleServiceRequestBase.java:74)
    at microsoft.exchange.webservices.data.core.request.MultiResponseServiceRequest.execute(MultiResponseServiceRequest.java:158)
    at microsoft.exchange.webservices.data.core.ExchangeService.bindToFolder(ExchangeService.java:504)
    at microsoft.exchange.webservices.data.core.ExchangeService.bindToFolder(ExchangeService.java:523)
    at microsoft.exchange.webservices.data.core.service.folder.Folder.bind(Folder.java:98)
    at microsoft.exchange.webservices.data.core.service.folder.Folder.bind(Folder.java:147)
    at com.sample.externalews.UsingClientCreds.displayMails(UsingClientCreds.java:171)
    at com.sample.externalews.UsingClientCreds.usingCredentials(UsingClientCreds.java:163)
    at com.sample.externalews.UsingClientCreds.main(UsingClientCreds.java:237)
Caused by: microsoft.exchange.webservices.data.core.exception.service.remote.ServiceRequestException: The request Failed. Connect to <public domain>:443 [<public domain>/<public domain IP>] Failed: Connection timed out: connect
    at microsoft.exchange.webservices.data.core.request.ServiceRequestBase.getEwsHttpWebResponse(ServiceRequestBase.java:729)
    at microsoft.exchange.webservices.data.core.request.ServiceRequestBase.validateAndEmitRequest(ServiceRequestBase.java:639)
    at microsoft.exchange.webservices.data.core.request.SimpleServiceRequestBase.internalExecute(SimpleServiceRequestBase.java:62)
    ... 8 more
Caused by: org.apache.http.conn.HttpHostConnectException: Connect to <public domain>:443 [<public domain>/<public domain IP>] Failed: Connection timed out: connect
    at org.apache.http.impl.conn.DefaultHttpClientConnectionoperator.connect(DefaultHttpClientConnectionoperator.java:156)
    at org.apache.http.impl.conn.BasicHttpClientConnectionManager.connect(BasicHttpClientConnectionManager.java:313)
    at org.apache.http.impl.execchain.MainClientExec.establishRoute(MainClientExec.java:393)
    at org.apache.http.impl.execchain.MainClientExec.execute(MainClientExec.java:236)
    at org.apache.http.impl.execchain.ProtocolExec.execute(ProtocolExec.java:186)
    at org.apache.http.impl.execchain.RetryExec.execute(RetryExec.java:89)
    at org.apache.http.impl.execchain.RedirectExec.execute(RedirectExec.java:110)
    at org.apache.http.impl.client.InternalHttpClient.doExecute(InternalHttpClient.java:185)
    at org.apache.http.impl.client.CloseableHttpClient.execute(CloseableHttpClient.java:83)
    at microsoft.exchange.webservices.data.core.request.HttpClientWebRequest.executeRequest(HttpClientWebRequest.java:292)
    at microsoft.exchange.webservices.data.core.request.ServiceRequestBase.getEwsHttpWebResponse(ServiceRequestBase.java:720)
    ... 10 more
Caused by: java.net.ConnectException: Connection timed out: connect
    at java.net.DualStackPlainSocketImpl.waitForConnect(Native Method)
    at java.net.DualStackPlainSocketImpl.socketConnect(DualStackPlainSocketImpl.java:96)
    at java.net.AbstractPlainSocketImpl.doConnect(AbstractPlainSocketImpl.java:380)
    at java.net.AbstractPlainSocketImpl.connectToAddress(AbstractPlainSocketImpl.java:236)
    at java.net.AbstractPlainSocketImpl.connect(AbstractPlainSocketImpl.java:218)
    at java.net.PlainSocketImpl.connect(PlainSocketImpl.java:183)
    at java.net.socksSocketImpl.connect(SocksSocketImpl.java:403)
    at java.net.socket.connect(Socket.java:682)
    at org.apache.http.conn.ssl.SSLConnectionSocketFactory.connectSocket(SSLConnectionSocketFactory.java:368)
    at org.apache.http.impl.conn.DefaultHttpClientConnectionoperator.connect(DefaultHttpClientConnectionoperator.java:142)
    ... 20 more

当我们使用 Exchange EWS 端点 https://outlook.office365.com/EWS/Exchange.asmx 时,我们只能访问来自 Exchange Online 用户邮件,并且它会抛出“邮箱不存在” Exchange 内部部署用户错误,我认为这是预期的。

请告诉我们这是否可行,即我们是否可以使用外部 EWS 终结点访问 Exchange 内部部署和 Exchange Online 邮箱。如果没有,还有其他方法可以实现吗?

解决方法

不,对于 OnPrem Exchange 用户(混合),您必须使用 OnPrem EWS 端点,您可以使用经过身份验证的 Autodiscoverv2 端点(未)来发现您应该使用的正确端点。例如

https://outlook.office365.com/autodiscover/autodiscover.json?Email=user@domain.com&Protocol=ews

如果您设置了混合现代身份验证,那么您可以从 Azure 获取身份验证令牌,然后您就可以将其用于 OnPrem 服务器。