Outlook offline address book caching incorrect contact certificate details

zerasar 1 Reputation point
2021-02-16T00:10:48.233+00:00

Hi All,

Hoping that you might have some insight in an issue we are having.

My workplace uses SMIME certificates to encrypt all of our internal emails.
We publish these to the GAL and typically this works without issues.

However if someone tries to email the new address before I have had a chance to publish the cert to GAL... Their computer appears to remember/cache that the contact cant be emailed with encryption and continues to prompt the sender to send the email unencrypted.

If the sender holds off, and doesnt email for the first time until after the cert is published, then it works perfectly fine.

In my testing I have tried.

  • Waiting several days for the automatic offline address book update. No fix.
  • Manually deleting the address from the automatic address suggestions. No fix.
  • Using the send/receive menu to download a FULL copy of the GAL. No fix.
  • Using the online GAL, save the contact locally to the senders address book. Success! But if you delete the contact the issue returns.
  • Testing by flipping Outlook into Exchange online mode. Success... Returned back to cached mode... No permanent fix.
  • Manually deleting the Offline Address Book files when outlook was shutdown. Success. Permanent fix.

I think that my testing seems to confirm that the OAB is caching something about this contact and despite the online GAL having the correct information, the OAB does not seem to fully update on its own.

I don't think it suitable to just tell my staff to save them to the local address book, or to delete the OAB. It seems to me like something is broken with the OAB sync that needs fixing.

I have also recently been advised by my manager that this is also affecting certificate renewals. i.e. The OAB is remembering the old cert details and not downloading the new information from the GAL. Though I have not had the chance to test this specific scenario just yet.

When researching the certificate issue... Every thread i found said just to save the contact locally. I was not able to locate a cleaner more automated fix for this.

On a side note, I have researched this but was not clear... The auto-complete suggestions... Are they also kept in the OAB?
Back in the day they were in NK2 files, or a separate contacts folder. Neither appears to be the case these days.

If deleting the OAB does not touch the suggestions, it won't hurt too much as a work around... But it still feels messy.

Outlook | Windows | Classic Outlook for Windows | For business
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Jade Liang-MSFT 9,986 Reputation points Microsoft Employee
    2021-02-16T08:05:42.22+00:00

    Hi @Zerassar-0144,

    Welcome to our forum.

    Manually deleting the address from the automatic address suggestions. No fix. Manually deleting the Offline Address Book files when outlook was shutdown. Success. Permanent fix.

    Is the time between these 2 tests a long interval? In order to further confirm if it's an random condition, it's suggested to perform these tests on other users with a short interval to check if it has any difference.

    According to your description, the issue may be more related to OAB couldn't download full information in GAL, I have researched a lot about what the different information would be downloaded to OAB between we mannualy download OAB and delete OAB files but still in vain. However, I find an article that mentioned some methods to update the OAB in Exchange and Outlook and we could change the full OAB download threshold via adding the register value in register key, maybe you could try to follow the steps as this article mentioned to check if it could also work for you : Updating the Offline Address Book in Exchange and Outlook(Please Note: Since the web site is not hosted by Microsoft, the link may change without notice. Microsoft does not guarantee the accuracy of this information.)

    Hope that would be helpful to you.


    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.