Skip to content

Est. 2011ยทMicrosoft Partner 7033487ยทDelivery under 3 minยทSupport 7 days a week

Your vault is empty.

Free Fix 0x8004011D

Outlook 0x8004011D: The Connection to Microsoft Exchange Is Unavailable

10 min read Updated October 4, 2026 Outlook & Office Applications

Fix it now

The HTTPS conversation between Outlook and Exchange is being refused or cut, usually by a network device that closes connections Outlook expects to hold open. The mailbox is normally healthy; what has failed is the path.

Run the first two in PowerShell, then the third from the Run box

Test-NetConnection outlook.office365.com -Port 443
netsh winhttp show proxy
Outlook.exe /safe
  1. Try the same machine on a different network. A phone hotspot is ideal. If it connects there, the fault is on the office network path and not on the mailbox.
  2. Open the mailbox in a browser through Outlook on the web. If that works, the server side is healthy and the problem is the desktop path.
  3. If a proxy is named, confirm it is not authenticating or decrypting the Microsoft 365 endpoints. Microsoft’s guidance is to bypass those domains from interception entirely.
  4. If only one machine is affected, build a fresh Outlook profile from the Mail item in Control Panel and test with that.
  5. If several errors in the 0x80072F7x range appear alongside these, deal with TLS inspection first; it produces this symptom as a side effect.

Turning Cached Exchange Mode off makes an intermittent connection failure immediately visible, which is useful while testing. It is a diagnostic, not a fix, and it makes every folder operation depend on the network.

If connections establish and stay established for several minutes, you are done. The next section explains what Outlook is doing on the wire and why middleboxes break it.

Why it happens

A current Outlook talks to Exchange with MAPI over HTTP. Microsoft describes it as a transport protocol that improves the reliability and stability of Outlook and Exchange connections by moving the transport layer to the industry-standard HTTP model, which gives higher visibility of transport errors and better recoverability. In practice that means ordinary HTTPS on port 443, but with a traffic shape that is unusual: the client keeps long-lived requests open so the server can push changes as they happen.

Two published properties of that protocol explain most of these failures. It offers a session context that is not dependent on the connection, held by the server for a configurable period even if the user changes networks. And after a break, only TCP connections have to be rebuilt rather than RPC connections, which is why reconnection is fast. Both properties assume something in the middle is not quietly closing requests, and a firewall, load balancer, VPN concentrator or proxy with an idle-connection timeout does exactly that.

The three companion codes describe the same event from three layers. 0x80040115 is NetworkError: an operation was unsuccessful because of a problem with network operations or services. 0x80072EFF is WinINet 12031, the connection with the server has been reset. 0x800706BE is Win32 1726, RPC_S_CALL_FAILED, the remote procedure call failed. None of them tells you which device did it; they tell you which layer noticed.

0x8004011D itself is the one code here with no published meaning. It is widely repeated as a single provider in the profile failing, and that reading comes from a MAPI constant name rather than from anything Microsoft publishes against this hex value. Treat it as confirmation that the Exchange session could not be established or was lost, and diagnose from the layers that are documented.

A network device is closing long-lived connections

You have this one if Users describe Outlook going disconnected every few minutes and reconnecting on its own, and the pattern follows the office network rather than a person.

  1. Ask the network team for the idle timeout applied to HTTPS sessions towards the mail service on the firewall, load balancer or VPN.
  2. Raise it well beyond the interval at which the client refreshes its connections, or take the mail endpoints out of any policy that trims idle sessions.
  3. Confirm no device is applying per-source session limits that a busy office would exceed.
  4. Retest and watch for several minutes rather than several seconds.

The same appliance is very often doing TLS inspection as well, which produces its own family of codes. If you also see 0x80072F78 or 0x80072F7D, deal with inspection first.

A proxy sits in front of traffic that should bypass it

You have this one if netsh winhttp show proxy names a proxy and testing off the network resolves the problem entirely.

  1. Check the WinHTTP proxy and the browser or PAC configuration separately; they are different settings.
  2. Read the PAC logic for the mail service host names and confirm it does what you think.
  3. Have the Microsoft 365 endpoints bypass the proxy rather than being authenticated and inspected on the way through.
  4. Retest from a machine that was failing.

The profile carries settings that no longer apply

You have this one if One machine or one user fails while everyone else is fine, and the profile is old and has followed the mailbox through a migration.

  1. Create a fresh profile from Control Panel, Mail, Show Profiles, Add.
  2. Let Autodiscover configure it rather than entering server details by hand.
  3. Test with the new profile, then set it as the one always used.
  4. Retire the old profile rather than repairing it.

An add-in or a security agent is interfering

You have this one if Safe mode connects and stays connected while a normal start does not.

  1. Turn every COM add-in off from File, Options, Add-ins, then restart Outlook.
  2. Reintroduce them one at a time until the fault returns.
  3. Check the security product for a mail-scanning or network-protection module and apply the vendor’s documented exclusions.
  4. Test for long enough to be confident, because this fault is intermittent by nature.

The account or mailbox state has changed

You have this one if The failure follows the user to any machine and any network, and Outlook on the web may also refuse.

  1. Confirm the account is enabled and holds a licence that includes the mailbox.
  2. Check whether the mailbox is mid-migration; a mailbox being moved can refuse desktop connections until it completes.
  3. Check whether a conditional access policy is blocking desktop clients for this user.
  4. Confirm the client is current enough to use modern authentication.

Full reference

Sorting network from mailbox

Test result What it points to
Fails everywhere, including a hotspot Account, mailbox or credential state, not the network
Works on a hotspot, fails in the office Proxy, firewall or inspection on that network
Connections re-establish repeatedly An idle timeout closing long-lived requests
Only one machine fails Profile, add-in or local security software
The whole office fails at the same moment A change on the network path, or a service incident

What each code is telling you

Code Layer Published meaning
0x8004011D Outlook None published; treat as the Exchange session failing
0x80040115 Messaging An operation was unsuccessful because of a problem with network operations or services
0x80072EFF HTTP transport The connection with the server has been reset
0x800706BE RPC The remote procedure call failed

Why the traffic shape matters

A browser makes short, self-contained requests and any appliance handles them well. Outlook holds requests open so the server can answer when something changes, and it relies on a session context the server keeps for a configurable period. An appliance that trims idle sessions sees a request that has been quiet and closes it, correctly by its own rules and wrongly for this protocol. That is why the fix is nearly always a timeout or a bypass rather than anything on the client.

Microsoft’s connectivity guidance is direct about the general principle: bypass traffic intermediation devices such as proxies and VPN services for Microsoft 365 traffic, and avoid routing connections through infrastructure that applies its own authentication. Quoting that to a network team is more productive than describing symptoms, because it turns the request into a documented design rather than an exception you are asking for.

When it is not the network

  • Check the service health page in the Microsoft 365 admin centre before spending an afternoon on a firewall.
  • Test the mailbox from a machine outside your network entirely. If it opens fine there and the admin centre reports nothing, the problem is yours.
  • For a hybrid deployment, confirm the client is reaching the endpoint you expect and not a retired on-premises server through a stale record.
  • Check whether a VPN client is forcing all traffic through a tunnel. Split tunnelling the mail endpoints is the usual remedy and removes a concentrator from the path.
  • Look at whether the failures correlate with a specific time of day, which points at a scheduled job on a network device rather than at anything in Outlook.

Cached Exchange Mode as a diagnostic

With the cache on, mail keeps working from the local copy and only synchronisation stops, so a connection fault can go unnoticed for hours. Turn the cache off and the same failure becomes an immediate inability to open anything, which is exactly what you want while testing and exactly what you do not want as a permanent setting. Turn it back on once you have your answer.

Every code this article covers

Code What it points at Source
0x8004011D Reported by Outlook when the Exchange session cannot be established or is lost; Microsoft publishes no meaning for this value not published by the vendor
0x80040115 NetworkError: an operation was unsuccessful because of a problem with network operations or services Microsoft Learn
0x80072EFF WinINet 12031 ERROR_INTERNET_CONNECTION_RESET: the connection with the server has been reset Microsoft Learn
0x800706BE Win32 error 1726 RPC_S_CALL_FAILED: the remote procedure call failed Microsoft Learn

Confirm the fix worked

  1. Outlook stays connected over several minutes of idle time rather than reconnecting.
  2. A manual send and receive completes with no error.
  3. The same test passes on a second machine on the same network.
  4. The mailbox also opens in a browser, confirming the server side was never the problem.
  5. The behaviour survives a lunch break, which is the interval most idle timeouts fall inside.

Questions people ask about this

Is there something I need to buy to fix this?

Almost never. This is a network path and configuration problem, and the fixes are firewall timeouts, proxy bypasses and profile hygiene. The only licensing angle is the reverse case, where the mailbox has no licence at all, which shows up as a different error.

Should I turn off Cached Exchange Mode?

Only as a diagnostic. Switching it off makes an intermittent failure immediately visible, which is useful while testing, but it makes every folder operation depend on the network. Turn it back on afterwards.

Can a VPN cause this?

Frequently. A VPN that forces all traffic through the tunnel puts a concentrator in the path of long-lived mail connections, and concentrators are exactly the devices that trim idle sessions. Split tunnelling the mail endpoints is the usual remedy.

What does 0x8004011D actually mean?

Microsoft does not publish a meaning for it. The reading you will find everywhere – one provider in the profile failed – is taken from a MAPI constant name and not from any published table. Diagnose from the codes that are documented and treat this one as a symptom.

How do I tell a service incident from a fault of my own?

Check the service health page in the admin centre and test Outlook on the web from a machine outside your network. If the mailbox opens fine from outside and the admin centre reports nothing, the problem is yours.

Related error codes

Was this article helpful?

Your feedback helps us improve our documentation.

Related articles

Free Fix Outlook 0x800CCC0A Message Download Incomplete: Clear the Stuck Oversized Email Free Fix Outlook Certificate Errors 0x80072F0D and 0x800B0109: Untrusted or Mismatched SSL Free Fix Office Sign-in 0x80090016 Keyset Does Not Exist: Broken Identity and Device State Free Fix Excel #REF!, #VALUE! and #NAME? Errors: Why Your Formulas Return Codes Not Numbers
โ† Back to Knowledge Base