A server running Microsoft Exchange can be added to DetectionLab. For more information, visit Adding an Exchange Server to DetectionLab.
The original intent was to release this functionality shortly after the March 2021 vulnerabilities outlined in this blog post. However, it took much longer to implement this, so the purpose is simply to test detection and telemetry from Exchange.
Credentials:
windomain\administrator : vagrant
To log into the actual exchange server:
https://exchange_server_ip/owa
in a browser.windomain\adminstrator : vagrant
to login to the console.If you get an error about “too many redirects” or a failed connection, try giving the Exchange server another 5-10 minutes to finish initializing.