Quantcast
Channel: Lync 2010 and OCS - Planning and Deployment forum
Viewing all 947 articles
Browse latest View live

enable user

$
0
0
after installing lync server 2010 i am srugling to enable user's. I keep getting active directory errors.

Lync Meeting issues with additional SIP domain

$
0
0

Hi Team,

I need help,

I have configured and setup Lync 2013 with one a domain called x.com and additional domain called y.com

X.com works fine

i have SIP trunk for dial in conferencing

Users with x.com ID is able to schedule conferencing

Problem,

Users with y.com is unable to schedule any meeting as when they click lync meeting on outlook nothing works. ( this is not outlook or client issues as i tested with all accounts)

I have added a additional SIP domain called sip.y.com and meet.y.com

Firewall configured, certificate configured but it doesn’t work and i feel this to be an issue with additional sip domain configuration.

Please help as how to verify the configuration of additional SIP domain and what changes on IIS will happen if an additional sip domain is configured just to check

Missing certificate in Lync Certificate Store

$
0
0

Hello

I'm trying to deploy an Edge server for our actual Lync environment.

Internal cert installed fine. But for external cert, i'm stucked.

I've made the request, sent it to the certificate authority, then I received a couple of '.crt' files by email.

I've imported all of them in the Trusted Root Certification Authority of my Edge server.

But still I can't assign a certificate because there is only the Internal certificate available in the Certificate Store.

Thanks for any help you will provide

Disable "Do not show my picture" on Lync client

$
0
0

Hi all, is it possible to disable the "Do not show my picture" on Lync client ?
I want to stop that an user can disable photo.

Thanks a lot

Lync Enterprise Topology Publish Error

$
0
0

I got the error below when I try to publish the Lync Server 2013 Enterprise topology.
I googled and tried several ways but I donnot know the reason of the error clearly.
How can I reference and can you give me answer if you have experienced and advice?


▼ Install-CsDatabase         Failed

 └ ▼ Action      2014/08/29 10:16:55   Successs

     └    Root Domain: contoso.com。   2014/08/29 10:16:56    
     └    Root Domain: contoso.com。   2014/08/29 10:16:59    
     └    Fillter: (&((ObjectCategory Equal person)(ObjectClass Equal user)(Sid Equal S-1-5-21-3800488784-3946988112-216131961-500)))   2014/08/29 10:16:59    
     └    Found   2014/08/29 10:16:59    
     └    User: CN=Administrator,CN=Users,DC=contoso,DC=com   2014/08/29 10:16:59    
     └    Group Security Identifier (SID): S-1-5-21-3800488784-3946988112-216131961-519   2014/08/29 10:16:59    
     └    HasToken: True   2014/08/29 10:16:59    
     └    Confirmation Group   2014/08/29 10:16:59    

 └    Found "RTCUniversalServerAdmins": True   2014/08/29 10:17:00    
 └    Found "RTCUniversalConfigReplicator": True   2014/08/29 10:17:00    
 └    Found "RTCUniversalReadOnlyAdmins": True   2014/08/29 10:17:00    
 └    TaskFailed: Task Execution Failed.   2014/08/29 10:17:01   Error
 └    Error: File or Assembly 'Microsoft.SqlServer.Smo, Version=11.0.0.0, Culture=neutral, PublicKeyToken=89845dcd8080cc91'、Or one of its dependenciess unable to load。
              The specified file is not found.

► Detail
└ Detaill: FileNotFoundException
└ ► Stack Trace
    └   Place Microsoft.Rtc.Common.Data.DbSetupBase.Initialize(Dictionary`2 parameters)
Place Microsoft.Rtc.Common.Data.DbSetupBase..ctor(Dictionary`2 parameters, Action`2 log)

Request external certificates for DMZ

$
0
0

Hi,

I have a lync server front-end instaled. inside the organization woks fine. Now, I need to comunicate outside the organization and I have create a DMZ server with 2 NIC's. One Internal and other external.

For helping me on the instalation I use the 'Microsoft Lync Server 2013 Step By Step for Anyone eBook'.

In the certificate request, 'Sip Domain setting on Subjet Alternative Names', apear the 'domain. local' and the 'domain.com'. Should I check bouth of them?

Do I neet to do the 'route' for the network?

Thanks!

need update powershell 3.0 or greater

$
0
0

hi

i need update of powershell v 3.0 or higher for install lync SERVER

i search a lot but only can find update framework 3.0 not powershell

please put me link of update powershell 3.0 or higher

thanks

how upgrade powershell

$
0
0

hi

for install lync server on server 2008 R2 as this link http://technet.microsoft.com/en-us/library/jj205328.aspx

i understand that i have installed powershell version 2.0 after type command that mentioned in link

how i can remove that version of powershell and install new update of version 3.0

i got error after run lync serevr

i put error below

 


Change from evaluation to licensed version Lync 2013

$
0
0

Hi

I have a lync installation that is installed as a evaluation version.

When trying to upgrade it to licensed version it still shows as evaluation version, what is the problem?

Se the screen dump, no error during the change of license except that its not change the version.

 

Move Lync 2010 database in different drive in same sql instance

$
0
0

Hi,

I am using Lync 2010 enterprise version and Lync database in SQL cluster.

I have to move lync 2010 database files in different drive due to some space issue in the drive.

Thanks

IIS won't apply redirect on Lync Server

$
0
0

Hi,

I have a problem with the redirect functionnality of IIS in my lync 2010 SE server.

Actually, IIS should redirect https://admin.gaulle.lan to https://lync2010-fe.gaulle.lan/Cscp but it does not.

"https://lync2010-fe.gaulle.lan/Cscp" is perfectly working. No problem with this page.

But, when I try to access "https://admin.gaulle.lan", I've got a blank page. When I try to analyse, I don't receive a 302 from lync server.

I searched in IIS parameters but I'm not a web/iis expert. When I look at the URL rewrite module, everything seems to be ok...

Is there a way to be sure that redirect is working on my iis server ? Do I have to enable someting to make it work ?

FYI, I meet the same problem with Dialin and Meet Simple URLs.

Thanx for your help

Regards,

Bastien.

 


Bastien

Meet on lync server 2013

$
0
0

Hi,

I have a lync server 2013 standard edition instaled in my organization. And I need to know when i make the certificate request I need to join the "https://meet.domain.pt" and "https://dialin.domain.pt" in the Configure Additional Subject Alternative Names.

Must I give an especific Public IP Adress to the meet.domain.pt? And the dialin?

Thanks!


Alberto Marques


Access Denied when running Forest Prep - Lync2013

$
0
0

I have hit a large brick wall and have found no solution online for my exact issues. It is time to call in the professionals. Here is a description of my error.

I have a Server 2012R2 Server which has all the pre-requisites installed to be able to install as a Lync 2013 Server. I have launched and successfully completed a Schema Prep and checked manually through ADSI Edit. I move on to the Forest Prep and I hit an error. Here are the details from the installation window;

> Prepare Forest

Enable-CSAdForest -GroupDomain capito.local -Verbose -Confirm:$false -Report "C:\Users\Dave.Campbell-ent\AppData\Local\Temp\2\Enable-CSAdForest-[2013_11_04][10_32_51].html"
Creating new log file "C:\Users\Dave.Campbell-ent\AppData\Local\Temp\2\Enable-CSAdForest-4867bff2-c117-4aa2-8bf0-0d0a95280744.xml".
Enable the Active Directory forest to host Lync Server 2013 deployments.
Prepare Forest Active Directory settings execution failed on an unrecoverable error.
Creating new log file "C:\Users\Dave.Campbell-ent\AppData\Local\Temp\2\Enable-CSAdForest-[2013_11_04][10_32_51].html".
 WARNING: Enable-CSAdForest failed.
 WARNING: Detailed results can be found at "C:\Users\Dave.Campbell-ent\AppData\Local\Temp\2\Enable-CSAdForest-[2013_11_04][10_32_51].html".
Command execution failed: Active Directory operation failed on "*MYDC*". You cannot retry this operation: "Access is denied
00000005: SecErr: DSID-03152610, problem 4003 (INSUFF_ACCESS_RIGHTS), data 0
"

At this point, I should mention that I am Domain Admin, Enterprise Admin & Schema Admin. I launch the html log and here is the output

             

Lync Server 2013 Deployment Log  Collapse All Actions 
 Action   Action Information   Time Logged   Execution Result 
 ? Enable-CSAdForest         Failed 

 + ? Get Schema State      04/11/2013 10:32:51   Success 

     +    Major version: 1150   04/11/2013 10:32:51     
     +    Minor version: 3   04/11/2013 10:32:51     
     +    Server schema version: SCHEMA_VERSION_STATE_CURRENT   04/11/2013 10:32:51     
     +    Mode: SCHEMA_VERSION_STATE_CURRENT   04/11/2013 10:32:51     

 + ? Prepare Forest Active Directory settings      04/11/2013 10:32:51   Failed 

     +    Root domain: *.local.   04/11/2013 10:32:51     
     +    Root domain: *.local.   04/11/2013 10:32:51     
     +    Filter: (&((ObjectCategory Equal person)(ObjectClass Equal user)(Sid Equal S-1-5-21-1078081533-527237240-725345543-4500)))   04/11/2013 10:32:51     
     +    Found   04/11/2013 10:32:51     
     +    User: CN=Dave Campbell (Ent),OU=Administrators Accounts,OU=IT Resources,OU=Misc,OU=* ,DC=*,DC=local   04/11/2013 10:32:51     
     +    Group security identifier (SID): S-1-5-21-1078081533-527237240-725345543-519   04/11/2013 10:32:51     
     +    HasToken: True   04/11/2013 10:32:51     
     +    Create Active Directory object "Application Contacts".   04/11/2013 10:32:51     
     +    Create Active Directory object "Global Settings".   04/11/2013 10:32:51     
     +    Create Active Directory object "Topology Settings".   04/11/2013 10:32:51     
     +    Schema type: server   04/11/2013 10:32:51     
     +    Create Active Directory object "Pools".   04/11/2013 10:32:51     
     +    Create Active Directory object "Trusted Services".   04/11/2013 10:32:51     
     +    Create Active Directory object "Trusted MCUs".   04/11/2013 10:32:51     
     +    Create Active Directory object "Trusted WebComponentsServers".   04/11/2013 10:32:51     
     +    Create Active Directory object "Conference Directories".   04/11/2013 10:32:51     
     +    Create Active Directory object "RTCPropertySet".   04/11/2013 10:32:51     
     +    Create Active Directory object "RTCUserSearchPropertySet".   04/11/2013 10:32:51     
     +    Create Active Directory object "RTCUserProvisioningPropertySet".   04/11/2013 10:32:51     
     +    Create Groups   04/11/2013 10:32:51     
     +    Create universal group "RTCUniversalGlobalReadOnlyGroup".   04/11/2013 10:32:51     
     +    TaskFailed: Task execution failed.   04/11/2013 10:32:51   Error 
     +    Error: Active Directory operation failed on "*MYDC*". You cannot retry this operation: "Access is denied 00000005: SecErr: DSID-03152610, problem 4003 (INSUFF_ACCESS_RIGHTS), data 0 " 
? Details 
+ Type: ADOperationException 
+ ? Stack Trace 
    +   at Microsoft.Rtc.Management.ADConnect.Session.ADSession.AnalyzeDirectoryError(ADConnection connection, DirectoryRequest request, DirectoryException de, Int32 totalRetries, Int32 retriesOnServer) 
at Microsoft.Rtc.Management.ADConnect.Session.ADSession.ExecuteModificationRequest(ADObjectBase entry, DirectoryRequest request, ADObjectId originalId, Boolean emptyObjectSessionOnException) 
at Microsoft.Rtc.Management.ADConnect.Session.ADSession.Save(ADObjectBase instanceToSave, IEnumerable`1 properties) 
at Microsoft.Rtc.Management.Deployment.LcForest.DomainPrepCreateAccounts(DOMAIN_ACCTPREP_INFO[] groupsInfo) 
at Microsoft.Rtc.Management.Deployment.LcForest.ProcessLcsGroups(LcAction eAction) 
at Microsoft.Rtc.Management.Deployment.LcForest.PrepareForest() 

+ ? Additional Details 
    +   Error: The user has insufficient access rights. 
? Details 
+ Type: DirectoryOperationException 
+ ? Stack Trace 
    +   at System.DirectoryServices.Protocols.LdapConnection.ConstructResponse(Int32 messageId, LdapOperation operation, ResultAll resultType, TimeSpan requestTimeOut, Boolean exceptionOnTimeOut) 
at System.DirectoryServices.Protocols.LdapConnection.SendRequest(DirectoryRequest request, TimeSpan requestTimeout) 
at Microsoft.Rtc.Management.ADConnect.Connection.ADConnection.SendRequest(DirectoryRequest request, LdapOperation ldapOperation) 
at Microsoft.Rtc.Management.ADConnect.Session.ADSession.ExecuteModificationRequest(ADObjectBase entry, DirectoryRequest request, ADObjectId originalId, Boolean emptyObjectSessionOnException) 





   04/11/2013 10:32:51   Error 
     +    TaskFailed: Prepare Forest Active Directory settings execution failed on an unrecoverable error.   04/11/2013 10:32:51     
     +    TaskFailedResolution: Consult exception information and previous errors for more information on how to resolve this error.   04/11/2013 10:32:51     
     +    Rollback Groups   04/11/2013 10:32:51     
     +    Rollback object "RTCUserProvisioningPropertySet".   04/11/2013 10:32:51     
     +    Rollback object "RTCUserSearchPropertySet".   04/11/2013 10:32:51     
     +    Rollback object "RTCPropertySet".   04/11/2013 10:32:51     
     +    Rollback object "ApplicationContacts".   04/11/2013 10:32:51     
     +    Rollback object "GlobalSettings".   04/11/2013 10:32:51     
     +    Rollback object "TopologySettings".   04/11/2013 10:32:51     
     +    Rollback object "Pools".   04/11/2013 10:32:51     
     +    Rollback object "Trusted Services".   04/11/2013 10:32:51     
     +    Rollback object "Trusted MCUs".   04/11/2013 10:32:51     
     +    Rollback object "Trusted WebComponentsServers".   04/11/2013 10:32:51     
     +    Rollback object "Conference Directories".   04/11/2013 10:32:51     
     +    Error: Active Directory operation failed on "*MYDC*". You cannot retry this operation: "Access is denied 00000005: SecErr: DSID-03152610, problem 4003 (INSUFF_ACCESS_RIGHTS), data 0 " 
? Details 
+ Type: ADOperationException 
+ ? Stack Trace 
    +   at Microsoft.Rtc.Management.ADConnect.Session.ADSession.AnalyzeDirectoryError(ADConnection connection, DirectoryRequest request, DirectoryException de, Int32 totalRetries, Int32 retriesOnServer) 
at Microsoft.Rtc.Management.ADConnect.Session.ADSession.ExecuteModificationRequest(ADObjectBase entry, DirectoryRequest request, ADObjectId originalId, Boolean emptyObjectSessionOnException) 
at Microsoft.Rtc.Management.ADConnect.Session.ADSession.Save(ADObjectBase instanceToSave, IEnumerable`1 properties) 
at Microsoft.Rtc.Management.Deployment.LcForest.DomainPrepCreateAccounts(DOMAIN_ACCTPREP_INFO[] groupsInfo) 
at Microsoft.Rtc.Management.Deployment.LcForest.ProcessLcsGroups(LcAction eAction) 
at Microsoft.Rtc.Management.Deployment.LcForest.PrepareForest() 
at Microsoft.Rtc.Management.Deployment.Tasks.ForestPrepareTask.Action() 
at Microsoft.Rtc.Management.Internal.Utilities.LogWriter.InvokeAndLog(Action action) 

+ ? Additional Details 
    +   Error: The user has insufficient access rights. 
? Details 
+ Type: DirectoryOperationException 
+ ? Stack Trace 
    +   at System.DirectoryServices.Protocols.LdapConnection.ConstructResponse(Int32 messageId, LdapOperation operation, ResultAll resultType, TimeSpan requestTimeOut, Boolean exceptionOnTimeOut) 
at System.DirectoryServices.Protocols.LdapConnection.SendRequest(DirectoryRequest request, TimeSpan requestTimeout) 
at Microsoft.Rtc.Management.ADConnect.Connection.ADConnection.SendRequest(DirectoryRequest request, LdapOperation ldapOperation) 
at Microsoft.Rtc.Management.ADConnect.Session.ADSession.ExecuteModificationRequest(ADObjectBase entry, DirectoryRequest request, ADObjectId originalId, Boolean emptyObjectSessionOnException) 





   04/11/2013 10:32:51   Error 

 +    Error: An error occurred: "Microsoft.Rtc.Management.ADConnect.ADOperationException" "Active Directory operation failed on "*MYDC*". You cannot retry this operation: "Access is denied 
00000005: SecErr: DSID-03152610, problem 4003 (INSUFF_ACCESS_RIGHTS), data 0 
""   04/11/2013 10:32:51   Error 


DIV2,DIV3,DIV1

Hopefully someone can shed some light on a really confusing error message, thanks

Dave

Lync HLB Cisco ACE

$
0
0
Anyone have a working Cisco ACE config for Lync HLB they would care to share? We used an older OCS R2 ACE Config but the Lync Web App (Reach Client) seems to connect hit or miss. When we use a host file and point the clients directly to a Lync FE, it connects every time. I assume its the HLB although the Attendee console and the Lync client itself can conference with no issues going through the HLB. Would like to compare someone elses working Cisco ACE config to see any differences. We are using DNS LB and HLB for the web services.

Bandwidth utilization analyzer

$
0
0

I have the complete lync setup with archiving server.  The reporting server works great.  The problem is I just got the resource kit for lync 2010 and it absolutely sucks at how to use the BANDWIDTH UTILIZATION ANALYZER TOOL.  The resource kit documentation is very crappy about how to use it. 

What is the share or even type of file am i supposed to be looking for in order to make sure that when i use this tool, i will get the bandwidth usage for dates that i specify?  Is the folder that i connect to supposed to have log files, mdf, ldf, etc.?

Any help is greatly appreciated.

 

THanks again.


Reverse Proxy setup for Mobility HTTP 80 configuration not working

$
0
0

http://technet.microsoft.com/en-us/library/hh690011(v=ocs.14).aspx

I'm trying to use the Port 80 ->8080 setup to avoid putting lyncdiscover.sipdomain.com for every additional sip domain that we want to include.

I have followed the instructions per the above link, yet when I try to log in with a user with one of those additional SIP's, I cannot log in to a mobile device.

For example,

our main sip is "contoso.com", so abby@contoso.com can log into her mobile device.

but user bill@fabrikam.com cannot log in via mobile device.

Is there anything else that needs to be done to ensure that bill@fabrikam.com can login via a mobile device?

Auto login?

Josh

Here is the testexchangeconnectivity.com

When I run the Lync Mobile Test, I get this, almost like the http rule is useless, still requiring the need for the additional lyncdiscover.sipdomain.com .

  

bill@fabrikam.com

Testing connectivity to the Lync Autodiscover Web Service server for a secure connection on port 443 to obtain the root token.
  Connectivity to the Lync Autodiscover Web Service test failed.
 
 Test Steps
 
 Attempting to test Autodiscover Web Service URL https://lyncdiscover.fabrikam.com/Autodiscover/AutodiscoverService.svc/root.
  Autodiscover Web Service URL can't be contacted due to failure of the following tests:
 
 Test Steps
 
 Attempting to resolve the host name lyncdiscover.fabrikam.com in DNS.
  The host name resolved successfully.
 
 Additional Details

 Testing TCP port 443 on host lyncdiscover.fabrikam.com to ensure it's listening and open.
  The port was opened successfully.

 Testing the SSL certificate to make sure it's valid.
  The SSL certificate failed one or more certificate validation checks.
 
 Test Steps
 
 ExRCA is attempting to obtain the SSL certificate from remote server lyncdiscover.fabrikam.com on port 443.
  ExRCA successfully obtained the remote SSL certificate.
 
 Additional Details

 Validating the certificate name.
  Certificate name validation failed.
   Tell me more about this issue and how to resolve it
 
 Additional Details
  Host name lyncdiscover.fabrikam.com doesn't match any name found on the server certificate CN=lncpool01.contoso.com, OU=Domain Control Validated.

enable-cscomputer fails with RSA key container error

$
0
0

I get the following error when running the command in the Lync Management Shell during deployment.

Any help with a solution?

Thanks!

Enable-CsComputer : Error while deleting existing RSA key container used by web
 authentication module: System.Security.Cryptography.CryptographicException: Ob
ject already exists.
   at System.Security.Cryptography.CryptographicException.ThrowCryptogaphicExce
ption(Int32 hr)
   at System.Security.Cryptography.Utils._CreateCSP(CspParameters param, Boolea
n randomKeyContainer, SafeProvHandle& hProv)
   at System.Security.Cryptography.Utils.CreateProvHandle(CspParameters paramet
ers, Boolean randomKeyContainer)
   at System.Security.Cryptography.Utils.GetKeyPairHelper(CspAlgorithmType keyT
ype, CspParameters parameters, Boolean randomKeyContainer, Int32 dwKeySize, Saf
eProvHandle& safeProvHandle, SafeKeyHandle& safeKeyHandle)
   at System.Security.Cryptography.RSACryptoServiceProvider.GetKeyPair()
   at System.Security.Cryptography.RSACryptoServiceProvider..ctor(Int32 dwKeySi
ze, CspParameters parameters, Boolean useDefaultKeySize)
   at Microsoft.Rtc.Management.Deployment.Roles.WebServices.CreateWebTicketCsp(
)
   at Microsoft.Rtc.Management.Deployment.Roles.WebServices.DeleteLocalKeyConta
iners()
At line:1 char:18

Group Chat feature in Office Communications Server 2007 R2 does not work in Windows Server 2008 R2 domains

$
0
0

   Hello to all, there are two confliting articles about this topic:

   1- http://technet.microsoft.com/en-us/library/upgrade-domain-controllers-to-windows-server-2008-r2(v=ws.10).aspx#BKMK_Whatsnew : this one says that it does not work "The Group Chat feature in Office Communications Server 2007 R2 does not work in Windows Server 2008 R2 domains". This article was updated in 2013.

   2- http://technet.microsoft.com/en-us/library/ee692314(office.13).aspx: this other article says that it will function "Office Communications Server 2007 R2 Group Chat will function in a Windows Server 2008 R2 forest". This article was updated in 2010 and was refered by the first one.

   What is the correct support position for Group Chat feature in Office Communications Server 2007 R2 and Windows Server 2008 R2 domains?

   Regards, EEOC.

 

 

Lync certificates

$
0
0

I am deploying a 2010 Lync Standard server.

The AD domain is abcd.local, while the sip addresses are 1234.org.

My server has an internal certificate, and a go-daddy certificate for the external connections.

Internal connections work fine with a manually configured Internal URL.

External connections fail on the certificate.

testconnectivity.microsoft.com shows the internal certificate as giving the error for external connections.

get-cscertificate shows that the go-daddy is on the external url, and the domain cert is on the internal and default types.

If I change the default to the godaddy, service wont start.

In the deployment wizard, there is not an option in the gui for differentiating certs and types, so I had to do them through the shell.

Is there something else that is presenting the wrong cert?

Navigation to webpage was canceled when opening Microsoft Lync Server 2010 Control Panel

$
0
0

Ok, yes I know there are many threads with similar titles, but my problem is different in that it doesn't happen every time.

The first time I access the Control Panel I get the error:

"Navigation to the webpage was canceled
What you can try:
Refresh the Page"

Clicking Refresh the Page works, kind of.  It brings up the admin console, but I get the spinning lights, which eventually resolves to an error at the top of the page that reads: "An operation failed.  Network communication failed.  Verify your connection and try again." 

Then if I click to other parts, things seem to be fine for the most part, I sometimes see the Network error, and often it is slow.

Port 443 is running through an HLB and this is setup exactly like my other Lync cluster, which doesn't have this issue.  Internal web services URL is lynccontent and points to HLB VIP.  Admin redirect is lyncadmin and points to HLB VIP.

Going to the /cscp page of each FE or of the pool from IE works every time, but lyncadmin seems to have the same issue (at least on FE1).

Any thoughts?



Viewing all 947 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>