Hi @,
Thank you for posting your question in the Microsoft Q&A forum.
As per your description, your issue is that you are unable to create a federation trust between two exchange organizations. Is it convenient for you please clarify/provide the following information so that we can check further:
- what is your exchange version?
2.What is the difference in configuration between your two exchange organizations?
Based on the information so far I have the following suggestions which I hope will help you:
- make sure the Exchange server and Windows server are fully compliant with the latest updates and patches. Older versions can sometimes cause problems with authentication trust.
- please check that federated sharing is enabled for your exchange organization using the Get-FederatedOrganizationIdentifier command.
- Please check your version of the .NET Framework to ensure that it supports TLS 1.2. You can refer to the following link for detailed instructions on how to determine the .NET version and how to install the update. How to enable Transport Layer Security (TLS) 1.2 on clients - Configuration Manager | Microsoft Learn
- Use the Get-ExchangeCertificate command to check that your certificate associated with the IIS service is not expired and is available. If it is not available, you can regenerate it using the New-ExchangeCertificate command.
- Check your prerequisites and configuration process for errors in conjunction with this document. For example: The domain used for establishing a federation trust should be resolvable from the Internet; Both Exchange organizations in a federated sharing relationship must use the same Microsoft Entra authentication system for their federation trusts, and so on. Configure a federation trust: Exchange 2013 Help | Microsoft Learn
If the answer is helpful, please click on “Accept answer” as it could help other members of the Microsoft Q&A community who have similar questions and are looking for solutions.
Thank you for your support and understanding.