Back

Your Guide to Exchange Server Maintenance in 2013 & 2016

As an Exchange admin youre tasked with performing Exchange server maintenance and updates Small oversights like expired certificates can compromise...

3 min read
Published on Apr 13, 2017
Your Guide to Exchange Server Maintenance in 2013 & 2016

As an Exchange admin, you’re tasked with performing Exchange server maintenance and updates. Small oversights like expired certificates can compromise your entire infrastructure. This guide walks you through common Exchange server maintenance scenarios for both Exchange 2013 and 2016.

SSL Certificate Exchange Updates for Hybrid Server

1. Using a web browser, browse to your on-premises Exchange Admin Center.

  1. Navigate to Servers > Certificates.
  2. Select the server that has the expiring certificate, and click the Renew link. SSL hybrid updates
  3. Provide a UNC path for the CSR .req file.
  • Ensure your share path allows full control to the Exchange Trusted Subsystem security principal.

5. Open the CSR .req file in Notepad, and copy/paste the contents into a web form and/or submit them to your CA. 6. Place your new certificate file somewhere accessible via the UNC path from your Exchange server. 7. In the Exchange Admin Center, select the certificate that has the status of “Pending request,” and click the Complete link. 8. Enter the UNC path to the certificate file and click OK. 9. Select your newly uploaded certificate, and click the Edit icon > Services. expiring exchange certificate 10. Tick the boxes for the services (IIS/SMTP) that you wish to assign the SSL certificate to, then click Save.

Need help? Contact an Agile IT Exchange consultant today.

Install Exchange Updates

Microsoft has changed the Exchange 2013/2016 update process. Instead of downloading and installing sequential Exchange updates, rollups and services packs, you simply run the latest Exchange 2013/2016 Cumulative Update installer on the target Exchange server.

  1. To determine your current Exchange 2013/2016 build number, log in to your Exchange server and run the following Exchange Management PowerShell command:
  • Get-ExchangeServer | Format-List Name, Edition, AdminDisplayVersion

2. Visit the link below, and download the desired Exchange 2013/2016 update:

3. Before running the installer, ensure you have read and understand the release notes, system requirements and prerequisites. Once ready, proceed to the update wizard. 4. After you install a cumulative update or service pack, you must restart the computer so changes can be made to the registry and operating system.

Enable Circular Logging in Exchange 2013 & 2016 Mailbox Databases

1. In the EAC, go to Servers > databases. 2. Select the mailbox database you want to configure, and click the edit icon icon. 3. Check/uncheck the Enable circular logging checkbox, and click save. 4. Depending on the replication status of the targeted database, a warning message may appear. Click OK to close the warning message.

  • If your Exchange database is not replicated: circular logging will require a dismount and mount of the database.
  • If your database is replicated: enabling or disabling circular logging takes effect dynamically; there is no need to dismount and re-mount the database.

The Exchange server maintenance steps outlined above are primarily geared toward tier 2 system administrators using the GUI to make changes to an account. You can script all the steps in PowerShell to perform bulk changes. If you need help automating your infrastructure, contact one of Agile IT’s Exchange experts, and help streamline your organization today.

This post has matured and its content may no longer be relevant beyond historical reference. To see the most current information on a given topic, click on the associated category or tag.

Related Posts

Ensure Microsoft 365 Backup Data Integrity

Ensuring Data Integrity During Backups in Microsoft 365

Discover strategies to maintain data integrity during Microsoft 365 backups. Pevent corruption, ensure reliability, and meet compliance standards.

Nov 7, 2025
4 min read
Microsoft 365 Tenant Migration for ITAR Organizations

Microsoft 365 Tenant Migration for ITAR-Regulated Organizations

Ensure compliance with ITAR during Microsoft 365 tenant migrations. Learn how to protect export-controlled data and choose the right cloud environment.

Nov 7, 2025
7 min read
NIST SP 800-171 vs 800-172: Key Differences Explained

Key Differences Between NIST SP 800-171 and NIST SP 800-172

Explore the key differences between NIST SP 800-171 and NIST SP 800-172, including how 800-172 enhances security for protecting Controlled Unclassified Information (CUI) against advanced threats.

Nov 4, 2025
6 min read
Tenant Migrations for DFARS-Covered Entities

Handling Sensitive Data in Tenant Migrations for DFARS-Covered Entities

Learn how to securely manage sensitive data during tenant migrations for DFARS-covered entities. Understand CUI protections, cloud tools, and compliance strategies.

Oct 31, 2025
7 min read
Compliant Tenant Migration for DoD Subcontractors

Compliant Tenant-to-Tenant Migration for DoD Subcontractors

Learn how to execute a secure and compliant Microsoft 365 tenant-to-tenant migration for DoD subcontractors while protecting CUI and meeting DFARS and NIST 800-171.

Oct 27, 2025
8 min read
NIST SP 800-171 Considerations in Microsoft 365 Tenant Migrations

NIST SP 800-171 Considerations in Microsoft 365 Tenant Migrations

Ensure compliance with NIST 800-171 when migrating Microsoft 365 tenants. Learn how to secure CUI, meet control requirements, and reduce migration risks.

Oct 27, 2025
7 min read

Ready to Secure and Defend Your Data
So Your Business Can Thrive?

Fill out the form to see how we can protect your data and help your business grow.

Loading...
Secure. Defend. Thrive.

Let's start a conversation

Discover more about Agile IT's range of services by reaching out.

Don’t want to wait for us to get back to you?

Schedule a Free Consultation

Location

Agile IT Headquarters
4660 La Jolla Village Drive #100
San Diego, CA 92122