Exchange Server Migration & End-of-Life Modernization
Exchange Server 2016 and 2019 both reached end of support on October 14, 2025, and the one-time six-month Extended Security Update program that followed lapsed on April 14, 2026 — so no more security updates ship for either. Only Exchange Server Subscription Edition stays supported on-premises. Migrating off an end-of-life Exchange means moving not just the mailboxes but the mail flow that depends on the server — connectors, relay endpoints, transport rules, and public folders — onto a supported platform, ideally slice by slice with each proven equivalent before cutover, so mail never stops.
“Move the mailboxes” undersells what’s actually on the box. An on-premises Exchange Server is the mailbox store, yes — but it’s also the SMTP relay every scanner, printer, and line-of-business application quietly points at, a set of send and receive connectors, a pile of transport rules that route and stamp mail, the public folders three departments still live in, and the hybrid identity that ties it all to the cloud. That’s why the mailbox move is never the whole job — and why an end-of-life Exchange Server is a problem you can’t patch your way out of.
Where Exchange Server stands
Microsoft retires each on-premises release on a published schedule, and the versions still running in most environments are at or past the end of it:
| Version | Support ends | Status |
|---|---|---|
| Exchange Server 2013 | April 11, 2023 | End of life — no patches |
| Exchange Server 2016 | October 14, 2025 | End of life — no patches |
| Exchange Server 2019 | October 14, 2025 | End of life — no patches |
| Exchange Server Subscription Edition | Modern Lifecycle (ongoing) | Supported while kept current |
Dates are Microsoft’s Product Lifecycle figures. Exchange Server 2016 and 2019 both crossed the line on October 14, 2025; the one-time, six-month Extended Security Update program that bridged enrolled servers ran out on April 14, 2026. Exchange Server 2013 has been past end of life since 2023. Only the Subscription Edition, which follows the Modern Lifecycle Policy and stays supported as long as you keep it current, remains a supported on-premises option. The line that matters is the same for each fixed-date version: once support ends, no security update will ever ship again for a vulnerability found the next day. An Exchange Server past its date isn’t “old but fine” — it’s an internet-facing mail platform the vendor has stopped defending.
What end of life actually means for mail
An end-of-life Exchange Server raises the stakes over an ordinary unsupported component, for three reasons.
- It’s the most-attacked server you run. On-premises Exchange is internet-facing by design and has been the target of some of the highest-profile server compromises of the last several years. A vulnerability in an unpatchable Exchange is a standing invitation into the messaging system, the address book, and often the wider network — which is exactly what an unpatchable server can no longer close.
- It collides with compliance. PCI DSS, SOC 2, and HIPAA all expect systems in scope to be patchable. An unsupported Exchange Server carrying regulated correspondence is a finding waiting to be written, and the usual answer — documented compensating controls — gets harder to defend every assessment.
- The mail flow is the hard part. It isn’t the mailboxes that make this difficult; it’s the SMTP relay every printer and application depends on, the connectors, the transport rules, and the public folders bound to this specific server. Those are exactly what a mailbox-copy tool leaves behind — and exactly what breaks silently when the old server goes dark.
The migration options
There is no single right move; there’s a right move for your estate, and it turns on how much mail flow and integration is bound to the current server.
- Move to Exchange Online as part of Microsoft 365. You shed the patching and infrastructure burden entirely, but you inherit the migration of the mail flow — the relay endpoints, connectors, and transport rules have to be re-expressed in the cloud, and any application that assumed a local relay has to be pointed somewhere new. The strongest fit when Exchange is being used as email.
- Upgrade to Exchange Server Subscription Edition to stay supported on-premises. The lowest-disruption path when there’s a genuine reason to keep mail local — data residency, sovereignty, or a deep integration that can’t move — and it clears the end-of-life risk without leaving the platform.
- Re-platform onto a modern mail and collaboration stack. The most transformative option, and the right one when the goal is to leave the Microsoft mail platform behind rather than just the unsupported version. It reckons with every integration at once, so it’s the most involved.
The decision is rarely about the mailboxes — it’s about the mail flow and integrations bound to the server: the relay dependencies, the connectors, the transport rules, the public folders. That coupling is what makes an Exchange migration a modernization project rather than a mailbox copy.
How we modernize off it
An Exchange Server migration isn’t one risky cutover. It’s small, reversible steps, applied the way they’d apply to any legacy system.
A strangler facade sits in front of the mail flow so the legacy Exchange and the modernized path run side by side — the coexistence Exchange is already built for. We move one slice at a time — a batch of mailboxes, a relay endpoint, a set of transport rules, the public folders — and before any slice carries live mail, we prove it behaves identically to the legacy: same routing, same delivery, same rules applied, reconciled against the original. AI-accelerated discovery reads the connectors, the transport rules, the relay dependencies, and the applications sending through the server end to end and captures what they actually do — including the undocumented relay nobody remembers configuring — under senior-engineer review. Traffic shifts only on green, rollback stays a flag away, and the legacy server is decommissioned only once nothing depends on it.
When a standard move is enough
Not every Exchange Server needs a bespoke project, and we’ll say so. An estate that’s genuinely just mailboxes and calendars, with little relay traffic and few custom transport rules, is often best served by a relatively standard move to Exchange Online — or by an upgrade to Subscription Edition if it needs to stay on-premises — and we’ll tell you that rather than scope work that isn’t there. The slice-by-slice approach earns its place when the mail flow is dense with relay dependencies, when connectors and transport rules are load-bearing, when public folders are entangled, or when you’re leaving the Microsoft mail platform entirely. Matching the effort to the actual coupling is part of the assessment, not an afterthought.
Where to start
The first step is small and bounded: understand the estate before committing to a path. A discovery call scopes which Exchange versions are in play, what applications and relays depend on them, where the compliance exposure sits, and whether the right move is Exchange Online, Subscription Edition, or a re-platform — on evidence, not a sales pitch. Reach the team at sales@modernlift.ai.
Frequently asked questions
- When does Exchange Server reach end of life?
- Exchange Server 2016 and 2019 both reached end of support on October 14, 2025 (Microsoft Product Lifecycle); after that date no security updates ship for either. Microsoft offered a one-time, six-month Extended Security Update program that covered enrolled servers through April 14, 2026, and that has now lapsed too. Exchange Server 2013 ended earlier, on April 11, 2023. Only Exchange Server Subscription Edition, which follows the Modern Lifecycle Policy, remains a supported on-premises option.
- What are the options for migrating off an unsupported Exchange Server?
- Broadly three — move mailboxes to Exchange Online as part of Microsoft 365, upgrade to Exchange Server Subscription Edition to stay supported on-premises, or re-platform onto a different modern mail and collaboration stack. The right choice turns less on the mailboxes than on the mail flow bound to the current server — the SMTP relay every printer and application points at, the connectors, transport rules, and public folders.
- Can an Exchange Server migration happen without downtime?
- Yes, when it's done incrementally rather than as a single cutover. Exchange is built for coexistence — the legacy server and the destination run side by side while mailboxes move in batches, and mail keeps flowing throughout. Traffic and relay dependencies shift only once the modernized path is proven to behave identically, and rollback stays a flag away. The goal is no maintenance window the business has to absorb.
- Who provides Exchange Server migration services?
- ModernLift provides Exchange Server migration services for US enterprises — moving off end-of-life Exchange Server 2016, 2019, or 2013 onto a supported platform without a big-bang cutover. We move one slice at a time and prove each migrated slice behaves identically to the legacy before it carries live mail, so the mail flow the business runs on never stops. Senior engineers run the work, with AI-accelerated discovery mapping the connectors, relay endpoints, transport rules, and application integrations the migration depends on.
- How much does an Exchange Server migration cost?
- There's no flat figure, because cost tracks the mail flow, not the mailbox count. The drivers are how many applications, printers, and systems relay through the server, how many connectors and transport rules are bound to it, whether public folders and shared mailboxes are in play, and how much parity has to be proven before each cutover — mailboxes themselves move comparatively cleanly. A straightforward move to Exchange Online or an upgrade to Subscription Edition sits at the low end; untangling deep relay and integration dependencies sits at the high. The [legacy cost calculator](/legacy-cost-calculator) turns those inputs into a structured estimate.
- How do I choose an Exchange Server migration company?
- Look for a partner that scopes on evidence before quoting, proves parity rather than asserting it, and will tell you when a standard mailbox move is all you need. Ask specifically how they handle the mail flow bound to the server — the SMTP relay, connectors, transport rules, and public folders — not just the mailbox migration. Our guide to [choosing a modernization vendor](/modernization-guides/application-modernization-vendors) walks through the criteria in depth.