Symptoms
Assume that a Microsoft Exchange Server 2013 Mailbox server has some mailboxes. When the user accounts for the mailboxes are on different domains, retention policies are not applied to the mailboxes.
Cause
This issue occurs because a writable Active Directory session is restricted so that it can access only the local domain controller instead of the global catalog. Therefore, user accounts on the other domain controllers cannot be retrieved.
Resolution
To resolve this issue, install the following cumulative update:
2892464 Description of Cumulative Update 3 for Exchange Server 2013
Status
Microsoft has confirmed that this is a problem in the Microsoft products that are listed in the "Applies to" section.