    Exchange 2010 use of Random High Ports

      Curious how everyone is handling the NTA monitoring of Exchange in their environment.  In the Exchange 2007 days, it seemed to use relatively stable port numbers that were easy to monitor.  In v2010 it makes extensive use of random high ports, which makes most of the Exchange traffic come up as "unmonitored traffic".  In the beginning I just played whack-a-mole, and added the ports to monitoring as I saw them in use.  But it quickly became obvious that wasn't workable, as the port numbers change very frequently, and there's a lot of potential ones it could use.


      So how's everyone dealing with this?