Exchange 2007 - Planning Roadmap for Upgrade and Coexistence

[本主题正在进行。]

**适用于:**Exchange Server 2010

**上一次修改主题:**2009-12-04

You can deploy Exchange 2010 in an existing Exchange 2007 organization. This topic provides an overview of the planning considerations and configuration steps that you must take when you want Exchange 2010 to coexist with Exchange 2007.

Existing Exchange Organization Planning

Before you go too far in your planning for Exchange 2010, make sure your current Exchange 2007 organization meets the following requirements. For more information, see the following topics:

Understanding Coexistence

Any organization that upgrades from Exchange 2007 to Exchange 2010 will experience a period of coexistence when parts of the organization still use Exchange 2007 functionality and other parts have completed the upgrade to Exchange 2010.

重要

You can only install more Exchange 2007 servers in your organization if you had an Exchange 2007 server there when the first Exchange 2010 server was installed.

Here are a few things about coexistence that you should be aware of:

  • Management interfaces   In Exchange 2010, you can manage Exchange 2010 servers and mailboxes by using either the Exchange Management Console (EMC) or the Exchange Management Shell. You can also use the EMC to view some attributes on Exchange 2007 servers. For more information, see Exchange 管理控制台互操作性.
  • Server role features   The Exchange 2010 server role features that are available to clients in the Exchange organization during the coexistence period depend on the version of the Exchange server where the user's mailbox is stored and the version of the e-mail client application that is used to access Exchange.
    For more information about how server-to-server communication occurs in Exchange 2007, see 了解传输管道.
  • Routing groups   A large organization that has many routing groups must plan their routing topology to maintain mail flow during the coexistence period. When you plan for a period of coexistence between Exchange 2010 and Exchange 2007, you need to understand the differences in how each version determines its routing topology. For more information about routing and coexistence, see 从 Exchange 2007 传输升级.

Choosing the order of Active Directory sites for upgrade

When you are ready to begin upgrading your organization to Exchange 2010, you must begin with your servers in the internet accessible Active Directory sites first, and then upgrade your internal Active Directory sites. It is not supported to upgrade an internal Active Directory site before all your Internet-accessible sites have been upgraded. This is because Client Access server to Client Access server proxying is only supported from the newer CAS versions (Exchange 2010) to older CAS versions (Exchange 2007) and not the other way around.

Overview of upgrade steps from Exchange 2007 to Exchange 2010
Exchange 2007 到 Exchange 2010 的升级过程

Choosing the order of server roles for upgrade

Within the first Active Directory site or sites you are upgrading, the first Exchange 2010 server role you should install is the Client Access server role. When you are ready to begin your deployment, it is recommended to upgrade a single Active Directory site at a time to Exchange 2010. Depending on the size of your Active Directory site, this might be a single Client Access server computer or a load balanced array of Exchange 2010 Client Access servers. The recommended order to install the Exchange 2010 server roles is the following:

  1. Client Access Server role
  2. Hub Transport Server role
  3. Mailbox Server role
  4. Unified Messaging (UM) Server role
  5. Edge Transport Server role

备注

When upgrading to Exchange 2010, you can't perform an in-place server upgrade on an existing Exchange server

For detailed information about upgrading the above server roles, see the following topics:

Understanding Exchange 2007 and Exchange 2003 Mixed Mode Coexistence

如果已准备好升级混合模式环境,请单独升级每个 Active Directory 站点。如果 Active Directory 站点中只包含 Exchange 2007 或 Exchange 2003,请对该 Active Directory 站点按照从此版本进行升级的说明执行操作。例如,如果 Active Directory 站点 A 中包含 Exchange 2007,请按照 Exchange 2007 的升级说明执行操作。如果您已在 Active Directory 站点 B 中安装 Exchange 2003,请按照 Exchange 2003 的升级说明执行操作。有关升级 Exchange 2003 和 Exchange 2007 版本的详细信息,请参阅Upgrade to Exchange 2010

如果您在已在 Active Directory 站点中安装 Exchange 2003 和 Exchange 2007,请按照 Exchange 2003 与 Exchange 2007 的升级说明执行操作,并执行这二者所需的升级步骤。有关该方案中升级到 Exchange 2010 的详细信息,请参阅以下主题:

Administration Differences

Exchange 管理控制台 (EMC) 在 Exchange Server 2010 和 Exchange Server 2007 中均可用。下面列出了可使用 Exchange 2010 或 Exchange 2007 中的 EMC 执行的任务和操作:

  • 创建对象的操作,如新建邮箱或新建脱机通讯簿 (OAB),只能在与目标对象相同版本的 EMC 上执行。例如,在 Exchange 2007 邮箱服务器上创建邮箱必须通过 Exchange 2007 中的 EMC 执行。下列情况适用:

    • 尽管 Exchange 2007 邮箱数据库可以查看,但无法通过 Exchange 2010 中的 EMC 进行管理。
    • Exchange 2010 中的 EMC 无法启用或禁用 Exchange 2007 统一消息邮箱。
    • Exchange 2010 中的 EMC 无法管理 Exchange 2007 移动设备。
  • 要求查看对象的操作可从任意版本的 EMC 执行到任意版本的 Exchange 对象,以下情况例外:

    • Exchange 2010 和 Exchange 2007 传输规则对象只能从其对应版本的 EMC 查看。

    • Exchange 2010 和 Exchange 2007 服务器只能从其对应版本的 EMC 查看。

    • Exchange 2010 EMC 中的队列查看器工具无法连接到 Exchange 2007 服务器以查看队列或邮件。

      备注

      如果 Exchange 2007 对象(如存储组)不再存在于 Exchange 2010 中,则没有期望的或提供的互操作性,因为 Exchange 2010 中不包含此功能。

  • 不能在 Exchange 2010 和 Exchange 2007 之间使用邮件跟踪配置任务。必须在 Exchange 2007 服务器中使用 Exchange 2007 邮件跟踪工具,在 Exchange 2010 服务器中使用 Exchange 2010 邮件跟踪工具。

Coexistence with the Client Access Server Role

The Client Access server role can coexist with Exchange 2007 Client Access servers. Before you start upgrading your first Active Directory site, you must install Exchange 2007 Service Pack 2 on all Exchange 2007 Client Access servers within your organization.

Once the first Exchange 2010 Client Access server or Client Access server array has been installed in your organization, the Autodiscover Service on the Exchange 2007 Client Access servers will redirect users with mailboxes on an Exchange 2010 Mailbox server to the appropriate Exchange 2010 Client Access end point.

Installation of Exchange 2010 within your organization requires the creation of a second DNS hostname. When you install your first Exchange 2010 Client Access server in your organization, you will also need to create a new hostname. If your current hostname is https://contoso.com, we recommend creating http://legacy.contoso.com. You will need to install your first Exchange 2010 Client Access server or Client Access server array, copy the appropriate Outlook Web Access, Exchange ActiveSync, POP3, IMAP4, Exchange Web Services, and Autodiscover service settings, and then configure http://legacy.contoso.com to point to your Exchange 2007 Client Access servers and https://contoso.com to point to your Exchange 2010 Client Access server or Client Access server array. You will need the appropriate SSL certificate for both hostnames. We recommend a Subject Alternative Name (SAN) which can support multiple hostnames. For more information, see 从 Exchange 2007 客户端访问升级.

Coexistence with Exchange ActiveSync

For coexistence with Exchange ActiveSync, you will need to configure a legacy DNS hostname. Users with mailboxes on Exchange 2007 Mailbox servers will be proxied from Exchange 2010 to Exchange 2007.

备注

When moving a user's mailbox from Exchange 2007 to Exchange 2010, some users will be prompted to perform a full synchronization of their mailbox. This is a requirement for many mobile phones and will only occur during the first synchronization of the user's phone after their mailbox is moved.

When a user’s mailbox is on Exchange 2007, they will experience the Exchange 2007 version of EAS during co-existence. That user will get the Exchange 2010 functionality of EAS when their mailbox is moved to Exchange 2010. For more information about coexisting with Exchange ActiveSync, see 从 Exchange 2007 客户端访问升级.

Coexistence with Outlook Web App

If a user with a mailbox on an Exchange 2007 Mailbox server connects to an Exchange 2010 Client Access server in the same Active Directory site, they will be redirected to an Exchange 2007 Client Access server within that site. If a user with a mailbox on an Exchange 2007 Mailbox server connects to an Exchange 2010 Client Access server in a different Active Directory site and there is no Internet-accessible Client Access server in the destination Active Directory site, they will be proxied to an Exchange 2007 Client Access server within the destination Active Directory site. As with Exchange 2007, if a user accesses an Exchange 2010 Client Access server in an Active Directory site that is different from the one where their mailbox resides and there is an Internet-accessible Client Access server in the Active Directory site that contains the user's mailbox, then the user will be redirected to the Client Access server in the destination Active Directory site. When a user’s mailbox is on Exchange 2007, they will experience the Exchange 2007 versions of OWA during co-existence. That user will get the Exchange 2010 functionality of OWA when their mailbox is moved to Exchange 2010.

When upgrading Outlook Web Access, there are three different authentication scenarios that need to be examined.

  • Forms based authentication terminating at an Exchange 2007 Client Access server. In this scenario, the Exchange 2010 Client Access server will redirect the user to the legacy Client Access server and a second sign on won't be required.
  • Third party authentication solution in front of the Exchange 2007 Client Access server. This scenario requires an ISA Server or other authentication solution in front of the Exchange servers. In this situation, users will only be required to authenticate at the authentication solution, which will pass the credentials to any required Exchange 2010 or Exchange 2007 servers.
  • Non-forms based authentication terminating at an Exchange 2007 Client Access server. Outlook Web Access 2010 will redirect the user to a legacy Exchange 2007 Client Access server. Whether the user needs to re-authenticate or not depends on the authentication mechanism used. For example, if Windows Integrated authentication is used, the user will experience a single sign-on with Windows authentication. If HTTP Basic authentication is used, the user will need to authenticate twice.

The upgrade and coexistence steps you must take for Outlook Web Access depend on which authentication scenario you have chosen. For more information about coexisting with Outlook Web Access, see 从 Exchange 2007 客户端访问升级.

Coexistence with the Hub Transport Server Role

The Hub Transport server role is designed to handle all mail flow for the Exchange organization. It is also responsible for handling Transport Rules, Journaling policies and message delivery. This server is deployed in the Active Directory forest and is required for Exchange 2010 mailboxes to send and receive messages. Messages that are sent to the Internet are relayed by the Hub Transport server to the Edge Transport server or a third-party smart host.

You can add an Exchange 2010 Hub Transport server to an existing Exchange organization after you successfully deploy Exchange 2010 CAS servers. After you introduce Exchange 2010 Hub servers to your Exchange 2007 environment, you still need to maintain your Exchange 2007 Hub servers. Exchange 2010 Mailbox servers can only communicate with Exchange 2010 Hub servers, and Exchange 2007 Mailbox servers can only communicate with Exchange 2007 Hub servers. When a message is sent from a mailbox on an Exchange 2010 Mailbox server to a mailbox that is on an Exchange 2007 Mailbox server, the message is first submitted to the closest Exchange 2010 Hub server in the site. This server then relays the message to an Exchange 2007 Hub server in the same site which finally delivers the message to the Exchange 2007 Mailbox server.

To learn more about introducing Exchange 2010 Hub Transport servers to your Exchange 2007 organization, see 从 Exchange 2007 传输升级.

Coexistence with the Mailbox Server Role

The Mailbox server role can coexist with Exchange 2007 mailbox servers. If you move a mailbox from Exchange 2007 to Exchange 2010, and the mailbox is part of an e-mail address policy, the e-mail addresses for that mailbox is automatically updated based on the configuration of the e-mail address policy. If the mailbox had a primary SMTP address that differs from the e-mail address that is enforced by the e-mail address policy, that SMTP address becomes a secondary SMTP address and the e-mail address generated by the e-mail address policy becomes the primary SMTP address. For information about how to move mailboxes, see 管理移动请求.

You can replicate public folder data between Exchange 2010 and Exchange 2007 public folder databases. For more information on Exchange 2010 and Exchange 2007 public folder coexistence, see 了解公用文件夹.

Coexistence with the Edge Transport Server Role

The Edge Transport server role is designed to provide improved antivirus and anti-spam protection for the Exchange organization. The Edge Transport server also applies policies to messages in transport between organizations. This server role is deployed in the perimeter network and outside the Active Directory forest. The Edge Transport server can be deployed as a smart host and SMTP-relay server for an existing Exchange 2007 organization.

You can add an Edge Transport server to an existing Exchange organization without upgrading the internal Exchange servers or making any organizational changes. You do not have to perform any Active Directory preparation steps when you install the Edge Transport server. The Edge Transport server provides antivirus and anti-spam protection as messages enter the network.

When an Edge Transport server is deployed to support an Exchange organization that has not yet deployed Exchange 2010, a limited set of features are available. You can't create an Edge Subscription in this scenario. Therefore, you can't use the Recipient Lookup or safelist aggregation features. For more information on Edge Transport servers and coexistence, 从 Exchange 2007 传输升级.

Coexistence with Unified Messaging

When you install the first Exchange 2010 Unified Messaging Server and add it to an existing Exchange 2007 organization, you must first add the Exchange 2010 Unified Messaging server to an existing Unified Messaging dial plan that contains Exchange 2007 Unified Messaging servers. Then you'll need to configure each IP gateway or IP PBX to send all incoming calls to the Exchange 2010 Unified Messaging servers within the Unified Messaging dial plan and not the Exchange 2007 UM servers.

When an incoming call is received by an Exchange 2010 Unified Messaging server and the Unified Messaging-enabled user's mailbox is located on an Exchange 2010 Mailbox server, the Exchange 2010 Unified Messaging server will process the incoming call. If the user's mailbox is located on an Exchange 2007 Mailbox server, the incoming call will be redirected to an Exchange 2007 Unified Messaging server within the same Unified Messaging dial plan and the incoming call will be processed.

Once all Unified Messaging enabled users mailboxes have been migrated to an Exchange 2010 Mailbox server, the Exchange 2007 Unified Messaging servers can be removed from the Unified Messaging dial plan. For more information, see 从 Exchange 2007 统一邮件升级.

Supported Topologies

Exchange 2010 supports the following topologies:

  • Single forest, multiple Active Directory sites.
  • Multiple forests (resource forest model), multiple Active Directory sites.
  • Single Active Directory site.

Exchange 2010 doesn't support the following topologies:

  • Coexistence with Exchange 2000 server or earlier.
  • Coexistence with Exchange 2003 versions prior to Service Pack 2 (SP2).
  • Installing an older version of Exchange into a newly created Exchange 2010 organization.

For more information on deploying in these topologies, see Deploy Multiple Forest Topologies.