Journal messages that were encrypted by applications that did not set the 'Encrypt' field on the message were not archived. Typically, these could be items created by in-house applications. Such items caused 'Unable to decrypt' warnings and 'failed processing' errors similar to the following:
Event Warning 41085:
The Lotus Journaling task 'Domino Journaling Task' Unable to decrypt note:,Database:EV\ABX03023007.nsf.
You cannot access portions of this document because it is encrypted and was not intended for you, or you do not have the decryption key.
Event Error 41058:
The following item has failed processing on 3 occasions and will not be processed again:
Subject:
NoteId:
Database: EV\ABX03023007.nsf
Event ID 41180
Enterprise Vault found encrypted notes in the Domino journal that do not appear to be encrypted by a user and that could not be decrypted by the journaling ID.
Resolution:
To resolve this issue follow either of the following methods:
Option 1:
This can occur if the "Domino Journaling Location" is using an ID file that is not the one used to encrypt the Journal database. To determine what ID file that is being used to encrypt the Journal database follow these steps:
1. Open the "Domino Administrator".
2. Open the "Configuration" tab.
3. Expand "Server".
4. Click on "Configurations".
5. "Edit Configuration" of the Target Mail Domino Server.
6. Open the "Router/SMTP" tab.
7. Then open the "Advanced" sub-tab.
8. Check which ID is being used in the Entry "Encrypt on behalf of user."
This is the user that is being used to encrypt the Journal database, which is the ID file that must be set within the Enterprise Vault Administration Console. To set the Unique ID file for the Domino Journaling location use the following steps:
1. Copy the ID File from the Domino Mail Server into the \lotus\notes\data\ directory on the Enterprise Vault Domino Gateway Server
2. Using the Enterprise Vault Administration Console expand Enterprise Vault\Directory of \\Targets\Domino\\Domino Server\\.
3. View the Properties of the Specified Domino Journaling Location.
4. Click on the 'ID File' tab.
5. Check 'Use this ID file for the databases'.
6. Select the ID File that Encrypted the Journal Database using the drop down menu.
7. Enter the password for the ID file in the space provided.
8. Click the 'OK' button.
9. Restart the 'Domino Journaling Task' and it should now process the Journal Mailbox properly.
Option 2:
Warning: Incorrect use of the Windows registry editor may prevent the operating system from functioning properly. Great care should be taken when making changes to a Windows registry. Registry modifications should only be carried-out by persons experienced in the use of the registry editor application. It is recommended that a complete backup of the registry and workstation be made prior to making any registry changes.
Create a DWORD registry value called 'DominoJournalArchiveNonDecryptableNotes' on the Domino Journaling Task server as follows:
1. Open the registry editor on the Domino Journaling Task server.
2. Browse to: \HKEY_LOCAL_MACHINE\SOFTWARE \KVS\Enterprise Vault\Agents.
3. Set 'DominoJournalArchiveNonDecryptableNotes' to 1 to force the items to be archived.
Set 'DominoJournalArchiveNonDecryptableNotes' to 0 to prevent the items from being archived.