DOCUMENT:Q232609 27-NOV-2001 [exchange] TITLE :XADM: How to Verify the Integrity of a Key Management Server DB PRODUCT :Microsoft Exchange PROD/VER::5.5 OPER/SYS: KEYWORDS:exc55 ====================================================================== ------------------------------------------------------------------------------- The information in this article applies to: - Microsoft Exchange Server, version 5.5 ------------------------------------------------------------------------------- SUMMARY ======= The Microsoft Exchange Key Management Server uses Extensible Storage Engine (also referred to as "ESE") database technology, which is also implemented in the Exchange Server database files. Customers have requested the ability to verify the integrity of these various ESE-based databases, and a variety of utilities exist to perform this function. This article describes the options available for Exchange Key Management Server databases. MORE INFORMATION ================ The Microsoft Exchange Key Management Server service includes an executable file named Kmserver.exe. When the Exchange Key Management Server service is stopped, you can supply a variety of command-line switches to Kmserver.exe, depending upon your specific need. Validate the Integrity of the Microsoft Exchange Key Management Server Database File ------------------------------------------------------------------------------------ 1. Stop the Microsoft Exchange Key Management Service. 2. Make a backup of your Exchsrvr\Kmsdata directory. 3. Go to a command prompt. 4. Change to the Exchsrvr\Bin directory. 5. Type the following: "kmserver -R" (without the quotation marks or brackets) 6. As this is running, events will be logged in the Event Viewer's application log. NOTE: Please review the application log to inspect the actions that were performed. 7. Restart the Microsoft Exchange Key Management Service. Repair the Microsoft Exchange Key Management Server Database File ----------------------------------------------------------------- 1. Stop the Microsoft Exchange Key Management Service. 2. Make a backup of your Exchsrvr\Kmsdata directory. 3. Go to a command prompt. 4. Change to the Exchsrvr\Bin directory. 5. Type the following: "kmserver -RF" (without the quotation marks or brackets) 6. As this is running, events will be logged to Event Viewer's application log. NOTE: Please review the application log to inspect the actions that were performed. 7. Restart the Microsoft Exchange Key Management Service. Additional query words: cert jet eseutil edbutil certificate encryption physical corruption ====================================================================== Keywords : exc55 Technology : kbExchangeSearch kbExchange550 kbZNotKeyword2 Version : :5.5 Issue type : kbhowto ============================================================================= THE INFORMATION PROVIDED IN THE MICROSOFT KNOWLEDGE BASE IS PROVIDED "AS IS" WITHOUT WARRANTY OF ANY KIND. MICROSOFT DISCLAIMS ALL WARRANTIES, EITHER EXPRESS OR IMPLIED, INCLUDING THE WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE. IN NO EVENT SHALL MICROSOFT CORPORATION OR ITS SUPPLIERS BE LIABLE FOR ANY DAMAGES WHATSOEVER INCLUDING DIRECT, INDIRECT, INCIDENTAL, CONSEQUENTIAL, LOSS OF BUSINESS PROFITS OR SPECIAL DAMAGES, EVEN IF MICROSOFT CORPORATION OR ITS SUPPLIERS HAVE BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES. SOME STATES DO NOT ALLOW THE EXCLUSION OR LIMITATION OF LIABILITY FOR CONSEQUENTIAL OR INCIDENTAL DAMAGES SO THE FOREGOING LIMITATION MAY NOT APPLY. Copyright Microsoft Corporation 2001.