傳送連接器Send connectors

Exchange 2016 和更新版本使用從來源 Exchange 伺服器到目的地郵件伺服器的輸出 SMTP 連線的傳送連接器。Exchange 2016 and later use Send connectors for outbound SMTP connections from source Exchange servers to destination messaging servers. 用來將郵件路由傳送至收件者的傳送連接器, 會在郵件分類的路由解析階段中選取。The Send connector that's used to route messages to a recipient is selected during the routing resolution phase of message categorization. 如需詳細資訊, 請參閱郵件路由For more information, see Mail routing.

您可以在信箱伺服器和 Edge Transport server 上的傳輸服務中建立傳送連接器。You can create Send connectors in the Transport service on Mailbox servers and on Edge Transport servers. 傳送連接器會儲存在 Active Directory 中, 而且對組織中的所有信箱和伺服器都是可見的。Send connectors are stored in Active Directory and are visible to all Mailbox and servers in the organization.

重要

根據預設, 當您安裝 Exchange 時, 不存在外部郵件流程的傳送連接器。By default, no Send connectors exist for external mail flow when you install Exchange. 若要啟用輸出網際網路郵件流程, 您必須建立傳送連接器, 或為您的 Exchange 組織訂閱 Edge Transport server。To enable outbound internet mail flow, you need to create a Send connector, or subscribe an Edge Transport server to your Exchange organization. 如需詳細資訊, 請參閱Create a send connector to send mail to The Internet And Edge Transport serversFor more information, see Create a Send connector to send mail to the Internet and Edge Transport servers.

您不需要設定傳送連接器, 以在相同 Active Directory 樹系中的 Exchange 伺服器之間傳送郵件。You don't need to configure Send connectors to send mail between Exchange servers in the same Active Directory forest. 完全瞭解 Exchange server 拓撲的隱含和不可見的傳送連接器可用於將郵件傳送至內部 Exchange 伺服器。Implicit and invisible Send connectors that are fully aware of the Exchange server topology are available for sending mail to internal Exchange servers. 這些連接器會在 [隱含傳送連接器] 區段中說明。These connectors are described in the Implicit Send connectors section.

下列是傳送連接器的重要設定:These are the important settings on Send connectors:

  • 使用類型Usage type

  • 網路設定: 設定傳送連接器如何路由傳送郵件: 使用 DNS 或自動將所有郵件轉寄至智慧主機。Network settings: Configure how the Send connector routes mail: by using DNS or by automatically forward all mail to a smart host.

  • 位址空間: 設定傳送連接器負責的目的地網域。Address spaces: Configure the destination domains that the Send connector is responsible for.

  • 範圍: 設定傳送連接器對組織中其他 Exchange 伺服器的可見度。Scope: Configures the visibility of the Send connector to other Exchange servers in the organization.

  • 來源伺服器: 設定傳送連接器所主控的 Exchange 伺服器。Source servers: Configure the Exchange servers where the Send connector is hosted. 需要使用傳送連接器傳遞的郵件會路由傳送至其中一個來源伺服器。Mail that needs to be delivered by using the Send connector is routed to one of the source servers.

在信箱伺服器上, 您可以在 Exchange 系統管理中心或 Exchange 管理命令介面中建立及管理傳送連接器。On Mailbox servers, you can create and manage Send connectors in the Exchange admin center or in the Exchange Management Shell. 在 Edge Transport Server 上,則只能使用 Exchange 管理命令介面。On Edge Transport servers, you can only use the Exchange Management Shell.

Exchange Server 中的傳送連接器變更Send connector changes in Exchange Server

下列是 Exchange 2016 或 Exchange 2019 中與 Exchange 2010 相較的傳送連接器的顯著變更:These are the notable changes to Send connectors in Exchange 2016 or Exchange 2019 compared to Exchange 2010:

  • 您可以設定傳送連接器, 透過前端傳輸服務來重新導向或proxy外寄郵件。You can configure Send connectors to redirect or proxy outbound mail through the Front End Transport service. 如需詳細資訊,請參閱 Configure Send connectors to proxy outbound mailFor more information, see Configure Send connectors to proxy outbound mail.

  • 無法再使用_IsCoexistenceConnector_參數。The IsCoexistenceConnector parameter is no longer available.

  • 無法再使用_LinkedReceiveConnector_參數。The LinkedReceiveConnector parameter is no longer available.

  • 預設郵件大小上限會增加為 35 MB (因為 Base64 編碼, 約 25 MB)。The default maximum message size is increased to 35 MB (approximately 25 MB due to Base64 encoding). 如需詳細資訊, 請參閱Exchange Server 中的郵件大小限制For more information, see Message size limits in Exchange Server.

  • _TlsCertificateName_參數可讓您指定憑證簽發者和憑證主旨。The TlsCertificateName parameter allows you to specify the certificate issuer and the certificate subject. 這有助於將詐騙憑證的風險降到最低。This helps minimize the risk of fraudulent certificates.

隱含傳送連接器Implicit Send connectors

雖然在安裝 Exchange 伺服器的過程中不會建立傳送連接器, 但有一個名為「組織內傳送連接器」的特殊隱含傳送連接器Although no Send connectors are created during the installation of Exchange servers, a special implicit Send connector named the intra-organization Send connector is present. 此隱含的傳送連接器會自動提供、不可見, 且不需要管理。This implicit Send connector is automatically available, invisible, and requires no management. 傳輸服務中存在組織內傳送連接器, 可在本機 Exchange 伺服器上的服務內部, 或在組織中遠端 Exchange 伺服器上的服務傳送郵件。The intra-organization Send connector exists in the transport services to send mail, either internally between services on the local Exchange server, or to services on remote Exchange servers in the organization. 例如:For example:

  • 傳輸服務的前端傳輸服務。Front End Transport service to the Transport service.

  • 傳輸服務至其他伺服器上的傳輸服務。Transport service to the Transport service on other servers.

  • 傳輸服務至已訂閱的 Edge Transport server。Transport service to subscribed Edge Transport servers.

  • 傳輸服務至信箱傳輸傳遞服務。Transport service to the Mailbox Transport Delivery service.

  • 傳輸服務的信箱傳輸提交服務。Mailbox Transport Submission service to the Transport service.

如需詳細資訊, 請參閱郵件流程和傳輸管線For more information, see Mail flow and the transport pipeline.

傳送連接器使用類型Send connector usage types

對於傳送連接器, 使用類型基本上是說明傳送連接器的使用方式的描述性標籤。For Send connectors, the usage type is basically a descriptive label that identifies what the Send connector is used for. 所有使用類型值都會收到相同的許可權。All usage type values receive the same permissions.

您只能在建立傳送連接器時指定連接器使用類型。You can specify the connector usage type only when you create Send connectors. 當您使用 EAC 時, 您必須選取 [類型] 值。When you use the EAC, you must select a Type value. 但是, 當您在 Exchange 管理命令介面中使用new-sendconnector 指令程式時, 不需要使用類型 (使用-Usage <UsageType> or -<UsageType>)。But when you use the New-SendConnector cmdlet in the Exchange Management Shell, the usage type isn't required (either by using -Usage <UsageType> or -<UsageType>).

指定使用類型時, 會設定預設郵件大小上限, 您可以在建立連接器之後變更此大小。Specifying a usage type does configure a default maximum message size, which you can change after you create the connector.

下表說明可用的使用類型值。The available usage type values are described in the following table.

使用類型Usage type 郵件大小上限Maximum message size CommentsComments
自訂Custom 35 MB35 MB None
內部Internal unlimited 當您在 EAC 中建立此使用類型的傳送連接器時, 您無法選取與收件者網域相關聯的 MX 記錄When you create a Send connector of this usage type in the EAC, you can't select MX record associated with recipient domain. 建立連接器之後, 您可以移至傳送連接器的內容中的 [傳遞] 索引標籤, 然後選取 [與收件者網域相關聯的 MX 記錄]。After you create the connector, you can go to the Delivery tab in the properties of the Send connector and select MX record associated with recipient domain.
此相同的限制不存在於 Exchange 管理命令介面中。This same restriction doesn't exist in the Exchange Management Shell. 您可以使用_內部_參數, 並將_DNSRoutingEnabled_設定為$true new-sendconnector Cmdlet 上的。You can use the Internal switch and set the DNSRoutingEnabled to $true on the New-SendConnector cmdlet.
網際網路Internet 35 MB35 MB None
合作夥伴Partner 35 MB35 MB 當您在 EAC 中建立此使用類型的傳送連接器時, 您無法選取 [透過智慧主機路由傳送郵件] 或 [智慧主機驗證機制]。When you create a Send connector of this usage type in the EAC, you can't select Route mail through smart hosts or a smart host authentication mechanism. 建立連接器之後, 您可以移至傳送連接器的內容中的 [傳遞] 索引標籤, 然後選取 [透過智慧主機路由傳送郵件] 和 [智慧主機驗證機制]。After you create the connector, you can go to the Delivery tab in the properties of the Send connector and select Route mail through smart hosts and the smart host authentication mechanism.
此相同的限制不存在於 Exchange 管理命令介面中。This same restriction doesn't exist in the Exchange Management Shell. 您可以使用_Partner_參數, 並將_DNSRoutingEnabled_設定為$false , 並在新的 new-sendconnector Cmdlet 上使用_SmartHosts_和_SmartHostAuthMechanism_參數。You can use the Partner switch and set the DNSRoutingEnabled to $false and use the SmartHosts and SmartHostAuthMechanism parameters on the New-SendConnector cmdlet.

傳送連接器網路設定Send connector network settings

您必須使用下列其中一個選項來設定每個傳送連接器:Every Send connector needs to be configured with one of these options:

  • 使用 DNS 路由傳送郵件。Use DNS to route mail.

  • 使用一或多個智慧主機路由傳送郵件。Use one or more smart hosts to route mail.

使用 DNS 路由傳送郵件Use DNS to route mail

當您選取 [DNS 解析] 來傳送郵件時, 傳送連接器的來源 Exchange 伺服器必須能夠解析連接器上所設定位址空間的 MX 記錄。When you select DNS resolution to deliver mail, the source Exchange server for the Send connector must be able to resolve the MX records for the address spaces that are configured on the connector. 視連接器的本質以及伺服器中的網路介面卡數目而定, 傳送連接器可能需要存取內部 DNS 伺服器或外部 (公用) DNS 伺服器。Depending on the nature of the connector, and how many network adapters are in the server, the Send connector could require access to an internal DNS server, or an external (public) DNS server. 您可以將伺服器設定為對內部和外部 DNS 查閱使用特定的 DNS 伺服器:You can configure the server to use specific DNS servers for internal and external DNS lookups:

  • 在 [伺服器 > ] 伺服器 >上的 EAC 中, 選取伺服器, 然後按一下 [編輯 編輯圖示 > DNS 查閱] 索引標籤。In the EAC at Servers > Server > select the server and click Edit Edit icon > DNS lookups tab.

  • 在 Exchange 管理命令介面中, 您可以在set-transportservice Cmdlet 上使用_ExternalDNS* _和_InternalDNS* _參數。In the Exchange Management Shell, you use the ExternalDNS* and InternalDNS* parameters on the Set-TransportService cmdlet.

如果您已將 Exchange server 設定為用於內部和外部 DNS 查閱的個別 DNS 設定, 且傳送連接器將郵件路由傳送至外部地址空間, 您必須設定傳送連接器使用外部 DNS 伺服器:If you've already configured the Exchange server with separate DNS settings to use for internal and external DNS lookups, and the Send connector routes mail to an external address space, you need to configure the Send connector to use the external DNS server:

  • 在 EAC 中, 選取 [在具有傳輸角色的伺服器上使用外部 DNS 查閱設定] (在 [新增傳送連接器] 嚮導中, 或在現有連接器的內容中的 [傳遞] 索引標籤上)。In the EAC, select Use the external DNS lookup setting on servers with transport roles (in the new Send connector wizard, or on the Delivery tab in the properties of existing connectors).

  • 在 Exchange 管理命令介面中, 在new-sendconnectornew-sendconnector Cmdlet 上使用_UseExternalDNSServersEnabled_參數。In the Exchange Management Shell, use the UseExternalDNSServersEnabled parameter on the New-SendConnector and Set-SendConnector cmdlets.

使用智慧主機路由傳送郵件Use smart hosts to route mail

當您透過智慧主機路由傳送郵件時, 傳送連接器會將郵件轉寄至智慧主機, 而智慧主機會負責將郵件路由到下一個躍點, 使其成為最終目的地。When you route mail through a smart host, the Send connector forwards mail to the smart host, and the smart host is responsible for routing mail to next hop on its way to the ultimate destination. 智慧主機路由的常見用途, 是透過反垃圾郵件服務或裝置傳送外寄郵件。A common use for smart host routing is to send outgoing mail through an antispam service or device.

您可以透過個別 IP 位址 (例如 10.1.1.1)、完整功能變數名稱 (FQDN) (例如 spamservice.contoso.com), 或這兩種數值型別的組合, 來識別一或多個要用於傳送連接器的智慧主機。You identify one or more smart hosts to use for the Send connector by an individual IP address (for example 10.1.1.1), a fully qualified domain name (FQDN) (for example spamservice.contoso.com), or combinations of both types of values. 如果您使用 FQDN, 傳送連接器的來源 Exchange 伺服器必須能夠使用 DNS 解析 FQDN (可能是 MX 記錄或 A 記錄)。If you use an FQDN, the source Exchange server for the Send connector must be able to resolve the FQDN (which could be an MX record or an A record) by using DNS.

智慧主機路由的重要部分是智慧主機所使用的驗證機制。An important part of smart host routing is the authentication mechanism that the smart hosts uses. 下表說明可用的驗證機制。The available authentication mechanisms are described in the following table.

驗證機制Authentication mechanism 描述Description
(None)None (None) 不使用驗證。No authentication. 例如, 存取智慧主機時, 會受到來源 IP 位址的限制。For example, when access to the smart host is restricted by the source IP address.
基本驗證(BasicAuth)Basic authentication (BasicAuth) 基本驗證。Basic authentication. 需要使用者名稱和密碼。Requires a user name and password. 使用者名稱和密碼會以純文字傳送。The user name and password are sent in clear text.
只有在啟動 TLS 後才提供基本驗證(BasicAuthRequireTLS)Offer basic authentication only after starting TLS (BasicAuthRequireTLS) 以 TLS 加密的基本驗證。Basic authentication that's encrypted with TLS. 這需要智慧主機上的伺服器憑證, 其中包含傳送連接器上所定義之智慧主機的確切 FQDN。This requires a server certificate on the smart host that contains the exact FQDN of the smart host that's defined on the Send connector.
傳送連接器會嘗試將STARTTLS命令傳送至智慧主機, 以建立 tls 會話, 而且只有在建立 tls 會話之後才執行基本驗證。The Send connector attempts to establish the TLS session by sending the STARTTLS command to the smart host, and only performs Basic authentication after the TLS session is established.
此外, 還需要用戶端憑證來支援相互 TLS 驗證。A client certificate is also required to support mutual TLS authentication.
Exchange Server 驗證(ExchangeServer)Exchange Server authentication (ExchangeServer) 一般安全性服務應用程式設計介面 (GSSAPI) 和相互 GSSAPI 驗證。Generic Security Services application programming interface (GSSAPI) and Mutual GSSAPI authentication.
外部安全(ExternalAuthoritative)Externally secured (ExternalAuthoritative) 連線應該會使用 Exchange 外部的安全性機制還獲得保護。連線可能是網際網路通訊協定安全性 (IPsec) 關聯或虛擬私人網路 (VPN)。或者,伺服器也可能位於實際受控制的信任網路中。 The connection is presumed to be secured by using a security mechanism that's external to Exchange. The connection may be an Internet Protocol security (IPsec) association or a virtual private network (VPN). Alternatively, the servers may reside in a trusted, physically controlled network.

傳送連接器位址空間Send connector address spaces

位址空間會指定傳送連接器所服務的目的地網域。The address space specifies the destination domains that are serviced by the Send connector. 郵件會根據收件者電子郵件地址的網域, 透過傳送連接器進行路由傳送。Mail is routed through a Send connector based on the domain of the recipient's email address.

下表說明可用的 SMTP 位址空間值。The available SMTP address space values are described in the following table.

位址空間Address space 說明Explanation
* 傳送連接器會將郵件路由傳送至所有網域中的收件者。The Send connector routes mail to recipients in all domains.
網域 (例如contoso.com)Domain (for example, contoso.com) 傳送連接器會將郵件路由傳送至指定網域中的收件者, 而不是在任何子域中。The Send connector routes mail to recipients in the specified domain, but not in any subdomains.
網域和子域 (例如*.contoso.com)Domain and subdomains (for example, *.contoso.com) 傳送連接器會將郵件路由傳送至指定網域和所有子域中的收件者。The Send connector routes mail to recipients in the specified domain, and in all subdomains.
-- 傳送連接器會將郵件路由傳送至 Exchange 組織中所有公認的網域中的收件者。The Send connector routes mail to recipients in all accepted domains in the Exchange organization. 此值僅適用于將郵件傳送至內部 Exchange 組織的 Edge Transport server 上的傳送連接器。This value is only available on Send connectors on Edge Transport servers that send mail to the internal Exchange organization.

位址空間也有您可以設定的類型成本值。An address space also has Type and Cost values that you can configure.

在 Edge Transport server 上, Type值必須是SMTPOn Edge Transport servers, the Type value must be SMTP. 在信箱伺服器上, 您也可以使用非 SMTP 位址空間類型, X400例如或任何其他文字字串。On Mailbox servers, you can also use non-SMTP address space types like X400 or any other text string. X.400 位址必須符合 RFC 1685 (例如o=MySite;p=MyOrg;a=adatum;c=us), 但其他類型值會接受位址空間的任何文字值。X.400 addresses need to be RFC 1685 compliant (for example, o=MySite;p=MyOrg;a=adatum;c=us), but other Type values accept any text value for the address space. 如果您指定非 SMTP 位址空間類型, 則傳送連接器必須使用智慧主機路由, 且會使用 SMTP 將郵件傳送至智慧主機。If you specify a non-SMTP address space type, the Send connector must use smart host routing, and SMTP is used to send messages to the smart host. 傳遞代理程式連接器和外部連接器會將非 SMTP 郵件傳送至非 SMTP 伺服器, 而不使用 SMTP。Delivery Agent connectors and Foreign connectors send non-SMTP messages to non-SMTP servers without using SMTP. 如需詳細資訊, 請參閱傳遞代理程式及傳遞代理程式連接器外部連接器For more information, see Delivery Agents and Delivery Agent Connectors and Foreign Connectors.

當您在不同的來源伺服器上的多個傳送連接器上設定相同的位址空間時, 會將位址空間的成本值用於郵件流程優化和容錯。The Cost value on the address space is used for mail flow optimization and fault tolerance when you have the same address spaces configured on multiple Send connectors on different source servers. 較低的優先順序值會指出首選的傳送連接器。A lower priority value indicates a preferred Send connector.

用來將郵件路由傳送至收件者的傳送連接器, 會在郵件分類的路由解析階段中選取。The Send connector that's used to route messages to a recipient is selected during the routing resolution phase of message categorization. 已選取其位址空間最符合收件者電子郵件地址, 且優先順序值為最低的傳送連接器。The Send connector whose address space most closely matches the recipient's email address, and whose priority value is lowest is selected.

例如, 假設收件者是 julia@marketing.contoso.com。For example, suppose the recipient is julia@marketing.contoso.com. 如果將傳送連接器設定為*contoso.com, 則會透過該連接器路由傳送郵件。If a Send connector is configured for *.contoso.com, the message is routed through that connector. 如果沒有為 contoso.com 設定*傳送連接器, 則會透過設定的*連接器路由傳送郵件。If no Send connector is configured for *.contoso.com, the message is routed through the connector that's configured for *. 如果相同 Active Directory 網站中的多個傳送連接器已設定*為 contoso.com, 則會選取具有較低優先順序值的連接器。If multiple Send connectors in the same Active Directory site are configured for *.contoso.com, the connector with the lower priority value is selected.

傳送連接器範圍Send connector scope

傳送連接器的來源伺服器決定需要透過傳送連接器路由傳送之郵件的目的地 Exchange 伺服器。The source servers for a Send connector determine the destination Exchange server for mail that needs to be routed through the Send connector. 傳送連接器範圍會控制 Exchange 組織內的連接器的可見度。The Send connector scope controls the visibility of the connector within the Exchange organization.

根據預設, 傳送連接器對整個 Active Directory 樹系中的所有 Exchange 伺服器都是可見的, 而且會在路由決策中使用。By default, Send connectors are visible to all the Exchange servers in the entire Active Directory forest, and are used in routing decisions. 不過, 您可以限制傳送連接器的範圍, 使其僅對相同 Active Directory 網站中的其他 Exchange 伺服器可見。However, you can limit the scope of a Send connector so that it's only visible to other Exchange servers in the same Active Directory site. 傳送連接器對其他 Active Directory 網站中的 Exchange 伺服器不可見, 而且不會用於其路由決策。The Send connector is invisible to Exchange servers in other Active Directory sites, and isn't used in their routing decisions. 以這種方式限制的傳送連接器稱為「範圍」。A Send connector that's restricted in this way is said to be scoped.

若要在 EAC 中設定範圍的傳送連接器, 請在 [新增傳送連接器] 嚮導的 [位址空間] 區段中選取 [範圍傳送連接器], 或在 [範圍] 索引標籤的 [現有傳送連接器] 中選取。To configure scoped Send connectors in the EAC, you select Scoped send connector in the Address space section of the new Send connector wizard, or on the Scoping tab in the properties of existing Send connectors. 在 Exchange 管理命令介面中, 您會在新的 new-sendconnectornew-sendconnector Cmdlet 上使用_IsScopedConnector_參數。In the Exchange Management Shell, you use the IsScopedConnector parameter on the New-SendConnector and Set-SendConnector cmdlets.

傳送連接器許可權Send connector permissions

當傳送連接器建立與目的地郵件伺服器的連線時, 傳送連接器許可權會決定可在郵件中傳送的標頭類型。When the Send connector establishes a connection with the destination messaging server, the Send connector permissions determine the types of headers that can be sent in messages. 如果郵件包含許可權不允許的標頭, 則會從郵件中移除這些標頭。If a message includes headers that aren't allowed by the permissions, those headers are removed from messages.

將許可權指派給已知的安全性主體以傳送連接器。Permissions are assigned to Send connectors by well-known security principals. 安全性主體包含使用者帳戶、電腦帳戶和安全性群組 (可藉由安全性識別碼 (SID) 來加以識別、並可獲派權限的物件)。Security principals include user accounts, computer accounts, and security groups (objects that are identifiable by a security identifier or SID that can have permissions assigned to them). 根據預設, 在所有傳送連接器上指派相同許可權的相同安全性主體, 不論您在建立連接器時所選取的使用類型為何。By default, the same security principals with the same permissions are assigned on all Send connectors, regardless of the usage type that you selected when you created the connector. 若要修改傳送連接器的預設許可權, 您必須在 Exchange 管理命令介面中使用add-adpermissionRemove-add-adpermission Cmdlet。To modify the default permissions for a Send connector, you need to use the Add-ADPermission and Remove-ADPermission cmdlets in the Exchange Management Shell.

下表說明可用的傳送連接器許可權。The available Send connector permissions are described in the following table.


PermissionPermission 指派給Assigned to 描述Description
ms-Exch-Send-Headers-Forest <Domain>\Exchange Servers
MS Exchange\Edge Transport Servers
MS Exchange\Hub Transport Servers
控制是否要在訊息中保留 Exchange 樹系標頭。樹系標頭名稱的開頭為 X-MS-Exchange-Forest- 。若未授與此權限,系統會移除訊息中的所有樹系標頭。 Controls the preservation of Exchange forest headers in messages. Forest header names start with X-MS-Exchange-Forest-. If this permission isn't granted, all forest headers are removed from messages.
ms-Exch-Send-Headers-Organization <Domain>\Exchange Servers
MS Exchange\Edge Transport Servers
MS Exchange\Hub Transport Servers
控制是否要在訊息中保留 Exchange 組織標頭。組織標頭名稱的開頭為 X-MS-Exchange-Organization- 。若未授與此權限,系統會移除訊息中的所有組織標頭。 Controls the preservation of Exchange organization headers in messages. Organization header names start with X-MS-Exchange-Organization-. If this permission isn't granted, all organization headers are removed from messages.
ms-Exch-Send-Headers-Routing NT AUTHORITY\ANONYMOUS LOGON
<Domain>\Exchange Servers
MS Exchange\Edge Transport Servers
MS Exchange\Externally Secured Servers
MS Exchange\Hub Transport Servers
MS Exchange\Legacy Exchange Servers
MS Exchange\Partner Servers
控制郵件中收到的標頭保留。Controls the preservation of RECEIVED headers in messages. 如果未授與此許可權, 則會從郵件中移除所有收到的標頭。If this permission isn't granted, all received headers are removed from messages.
ms-Exch-SMTP-Send-Exch50 <Domain>\Exchange Servers
MS Exchange\Edge Transport Servers
MS Exchange\Externally Secured Servers
MS Exchange\Hub Transport Servers
MS Exchange\Legacy Exchange Servers
允許來源 Exchange 伺服器在傳送連接器上提交XEXCH50命令。Allows the source Exchange server to submit XEXCH50 commands on the Send connector. 舊版 Exchange (Exchange 2003 或更早版本) 會使用 X-EXCH50 二進位大型物件 (BLOB) 在訊息中儲存 Exchange 資料 (例如,垃圾郵件信賴等級 (SCL))。The X-EXCH50 binary large object (BLOB) was used by older versions of Exchange (Exchange 2003 and earlier) to store Exchange data in messages (for example, the spam confidence level or SCL).
如果未授與此許可權, 且郵件包含x EXCH50 blob, 則 Exchange 伺服器會傳送不含x EXCH50 blob 的郵件。If this permission isn't granted, and messages contain the X-EXCH50 BLOB, the Exchange server sends the message without the X-EXCH50 BLOB.
ms-Exch-SMTP-Send-XShadow <Domain>\Exchange Servers
MS Exchange\Edge Transport Servers
MS Exchange\Hub Transport Servers
此許可權已保留供 Microsoft 內部使用, 此處僅供參考之用。This permission is reserved for internal Microsoft use, and is presented here for reference purposes only.

附注: 包含ms-Exch-Send-Headers-的許可權名稱是標頭防火牆功能的一部分。Note: Permissions names that contain ms-Exch-Send-Headers- are part of the header firewall feature. 如需詳細資訊,請參閱< 標頭防火牆>。For more information, see Header firewall.

傳送連接器許可權程式Send connector permission procedures

若要查看指派給傳送連接器上安全性主體的許可權, 請在 Exchange 管理命令介面中使用下列語法:To see the permissions that are assigned to security principals on a Send connector, use the following syntax in the Exchange Management Shell:

Get-ADPermission -Identity <SendConnector> [-User <SecurityPrincipal>] | where {($_.Deny -eq $false) -and ($_.IsInherited -eq $false)} | Format-Table User,ExtendedRights

例如, 若要查看指派給名為 Fabrikam.com 之傳送連接器上所有安全性主體的許可權, 請執行下列命令:For example, to see the permissions that are assigned to all security principals on the Send connector named To Fabrikam.com, run the following command:

Get-ADPermission -Identity "To Fabrikam.com" | where {($_.Deny -eq $false) -and ($_.IsInherited -eq $false)} | Format-Table User,ExtendedRights

若要查看指定給 Fabrikam 的傳送連接器上安全性主體NT AUTHORITY\ANONYMOUS LOGON的許可權, 請執行下列命令:To see the permissions that are assigned only to the security principal NT AUTHORITY\ANONYMOUS LOGON on the Send connector named To Fabrikam, run the following command:

Get-ADPermission -Identity "To Fabrikam.com" -User "NT AUTHORITY\ANONYMOUS LOGON" | where {($_.Deny -eq $false) -and ($_.IsInherited -eq $false)} | Format-Table User,ExtendedRights

若要在傳送連接器上新增安全性主體的許可權, 請使用下列語法:To add permissions to a security principal on a Send connector, use the following syntax:

Add-ADPermission -Identity <SendConnector> -User <SecurityPrincipal> -ExtendedRights "<Permission1>","<Permission2>"...

若要移除傳送連接器上安全性主體的許可權, 請使用下列語法:To remove permissions from a security principal on a Send connector, use the following syntax:

Remove-ADPermission -Identity <SendConnector> -User <SecurityPrincipal> -ExtendedRights "<Permission1>","<Permission2>"...