enable user
Lync Meeting issues with additional SIP domain
Hi Team,
I need help,
I have configured and setup Lync 2013 with one a domain called x.com and additional domain called y.com
X.com works fine
i have SIP trunk for dial in conferencing
Users with x.com ID is able to schedule conferencing
Problem,
Users with y.com is unable to schedule any meeting as when they click lync meeting on outlook nothing works. ( this is not outlook or client issues as i tested with all accounts)
I have added a additional SIP domain called sip.y.com and meet.y.com
Firewall configured, certificate configured but it doesn’t work and i feel this to be an issue with additional sip domain configuration.
Please help as how to verify the configuration of additional SIP domain and what changes on IIS will happen if an additional sip domain is configured just to check
Missing certificate in Lync Certificate Store
Hello
I'm trying to deploy an Edge server for our actual Lync environment.
Internal cert installed fine. But for external cert, i'm stucked.
I've made the request, sent it to the certificate authority, then I received a couple of '.crt' files by email.
I've imported all of them in the Trusted Root Certification Authority of my Edge server.
But still I can't assign a certificate because there is only the Internal certificate available in the Certificate Store.
Thanks for any help you will provide
Disable "Do not show my picture" on Lync client
Hi all, is it possible to disable the "Do not show my picture" on Lync client ?
I want to stop that an user can disable photo.
Thanks a lot
Lync Enterprise Topology Publish Error
I got the error below when I try to publish the Lync Server 2013 Enterprise topology.
I googled and tried several ways but I donnot know the reason of the error clearly.
How can I reference and can you give me answer if you have experienced and advice?
▼ Install-CsDatabase Failed
└ ▼ Action 2014/08/29 10:16:55 Successs
└ Root Domain: contoso.com。 2014/08/29 10:16:56
└ Root Domain: contoso.com。 2014/08/29 10:16:59
└ Fillter: (&((ObjectCategory Equal person)(ObjectClass Equal user)(Sid Equal S-1-5-21-3800488784-3946988112-216131961-500))) 2014/08/29 10:16:59
└ Found 2014/08/29 10:16:59
└ User: CN=Administrator,CN=Users,DC=contoso,DC=com 2014/08/29 10:16:59
└ Group Security Identifier (SID): S-1-5-21-3800488784-3946988112-216131961-519 2014/08/29 10:16:59
└ HasToken: True 2014/08/29 10:16:59
└ Confirmation Group 2014/08/29 10:16:59
└ Found "RTCUniversalServerAdmins": True 2014/08/29 10:17:00
└ Found "RTCUniversalConfigReplicator": True 2014/08/29 10:17:00
└ Found "RTCUniversalReadOnlyAdmins": True 2014/08/29 10:17:00
└ TaskFailed: Task Execution Failed. 2014/08/29 10:17:01 Error
└ Error: File or Assembly 'Microsoft.SqlServer.Smo, Version=11.0.0.0, Culture=neutral, PublicKeyToken=89845dcd8080cc91'、Or one of its dependenciess unable to load。
The specified file is not found.
► Detail
└ Detaill: FileNotFoundException
└ ► Stack Trace
└ Place Microsoft.Rtc.Common.Data.DbSetupBase.Initialize(Dictionary`2 parameters)
Place Microsoft.Rtc.Common.Data.DbSetupBase..ctor(Dictionary`2 parameters, Action`2 log)
Request external certificates for DMZ
Hi,
I have a lync server front-end instaled. inside the organization woks fine. Now, I need to comunicate outside the organization and I have create a DMZ server with 2 NIC's. One Internal and other external.
For helping me on the instalation I use the 'Microsoft Lync Server 2013 Step By Step for Anyone eBook'.
In the certificate request, 'Sip Domain setting on Subjet Alternative Names', apear the 'domain. local' and the 'domain.com'. Should I check bouth of them?
Do I neet to do the 'route' for the network?
Thanks!
need update powershell 3.0 or greater
hi
i need update of powershell v 3.0 or higher for install lync SERVER
i search a lot but only can find update framework 3.0 not powershell
please put me link of update powershell 3.0 or higher
thanks
how upgrade powershell
hi
for install lync server on server 2008 R2 as this link http://technet.microsoft.com/en-us/library/jj205328.aspx
i understand that i have installed powershell version 2.0 after type command that mentioned in link
how i can remove that version of powershell and install new update of version 3.0
i got error after run lync serevr
i put error below
Change from evaluation to licensed version Lync 2013
Hi
I have a lync installation that is installed as a evaluation version.
When trying to upgrade it to licensed version it still shows as evaluation version, what is the problem?
Se the screen dump, no error during the change of license except that its not change the version.
Move Lync 2010 database in different drive in same sql instance
Hi,
I am using Lync 2010 enterprise version and Lync database in SQL cluster.
I have to move lync 2010 database files in different drive due to some space issue in the drive.
Thanks
IIS won't apply redirect on Lync Server
Hi,
I have a problem with the redirect functionnality of IIS in my lync 2010 SE server.
Actually, IIS should redirect https://admin.gaulle.lan to https://lync2010-fe.gaulle.lan/Cscp but it does not.
"https://lync2010-fe.gaulle.lan/Cscp" is perfectly working. No problem with this page.
But, when I try to access "https://admin.gaulle.lan", I've got a blank page. When I try to analyse, I don't receive a 302 from lync server.
I searched in IIS parameters but I'm not a web/iis expert. When I look at the URL rewrite module, everything seems to be ok...
Is there a way to be sure that redirect is working on my iis server ? Do I have to enable someting to make it work ?
FYI, I meet the same problem with Dialin and Meet Simple URLs.
Thanx for your help
Regards,
Bastien.
Bastien
Meet on lync server 2013
Hi,
I have a lync server 2013 standard edition instaled in my organization. And I need to know when i make the certificate request I need to join the "https://meet.domain.pt" and "https://dialin.domain.pt" in the Configure Additional Subject Alternative Names.
Must I give an especific Public IP Adress to the meet.domain.pt? And the dialin?
Thanks!
Alberto Marques
Access Denied when running Forest Prep - Lync2013
I have hit a large brick wall and have found no solution online for my exact issues. It is time to call in the professionals. Here is a description of my error.
I have a Server 2012R2 Server which has all the pre-requisites installed to be able to install as a Lync 2013 Server. I have launched and successfully completed a Schema Prep and checked manually through ADSI Edit. I move on to the Forest Prep and I hit an error. Here are the details from the installation window;
> Prepare Forest
Enable-CSAdForest -GroupDomain capito.local -Verbose -Confirm:$false -Report "C:\Users\Dave.Campbell-ent\AppData\Local\Temp\2\Enable-CSAdForest-[2013_11_04][10_32_51].html"
Creating new log file "C:\Users\Dave.Campbell-ent\AppData\Local\Temp\2\Enable-CSAdForest-4867bff2-c117-4aa2-8bf0-0d0a95280744.xml".
Enable the Active Directory forest to host Lync Server 2013 deployments.
Prepare Forest Active Directory settings execution failed on an unrecoverable error.
Creating new log file "C:\Users\Dave.Campbell-ent\AppData\Local\Temp\2\Enable-CSAdForest-[2013_11_04][10_32_51].html".
WARNING: Enable-CSAdForest failed.
WARNING: Detailed results can be found at "C:\Users\Dave.Campbell-ent\AppData\Local\Temp\2\Enable-CSAdForest-[2013_11_04][10_32_51].html".
Command execution failed: Active Directory operation failed on "*MYDC*". You cannot retry this operation: "Access is denied
00000005: SecErr: DSID-03152610, problem 4003 (INSUFF_ACCESS_RIGHTS), data 0
"
At this point, I should mention that I am Domain Admin, Enterprise Admin & Schema Admin. I launch the html log and here is the output
Lync Server 2013 Deployment Log Collapse All Actions
Action Action Information Time Logged Execution Result
? Enable-CSAdForest Failed
+ ? Get Schema State 04/11/2013 10:32:51 Success
+ Major version: 1150 04/11/2013 10:32:51
+ Minor version: 3 04/11/2013 10:32:51
+ Server schema version: SCHEMA_VERSION_STATE_CURRENT 04/11/2013 10:32:51
+ Mode: SCHEMA_VERSION_STATE_CURRENT 04/11/2013 10:32:51
+ ? Prepare Forest Active Directory settings 04/11/2013 10:32:51 Failed
+ Root domain: *.local. 04/11/2013 10:32:51
+ Root domain: *.local. 04/11/2013 10:32:51
+ Filter: (&((ObjectCategory Equal person)(ObjectClass Equal user)(Sid Equal S-1-5-21-1078081533-527237240-725345543-4500))) 04/11/2013 10:32:51
+ Found 04/11/2013 10:32:51
+ User: CN=Dave Campbell (Ent),OU=Administrators Accounts,OU=IT Resources,OU=Misc,OU=* ,DC=*,DC=local 04/11/2013 10:32:51
+ Group security identifier (SID): S-1-5-21-1078081533-527237240-725345543-519 04/11/2013 10:32:51
+ HasToken: True 04/11/2013 10:32:51
+ Create Active Directory object "Application Contacts". 04/11/2013 10:32:51
+ Create Active Directory object "Global Settings". 04/11/2013 10:32:51
+ Create Active Directory object "Topology Settings". 04/11/2013 10:32:51
+ Schema type: server 04/11/2013 10:32:51
+ Create Active Directory object "Pools". 04/11/2013 10:32:51
+ Create Active Directory object "Trusted Services". 04/11/2013 10:32:51
+ Create Active Directory object "Trusted MCUs". 04/11/2013 10:32:51
+ Create Active Directory object "Trusted WebComponentsServers". 04/11/2013 10:32:51
+ Create Active Directory object "Conference Directories". 04/11/2013 10:32:51
+ Create Active Directory object "RTCPropertySet". 04/11/2013 10:32:51
+ Create Active Directory object "RTCUserSearchPropertySet". 04/11/2013 10:32:51
+ Create Active Directory object "RTCUserProvisioningPropertySet". 04/11/2013 10:32:51
+ Create Groups 04/11/2013 10:32:51
+ Create universal group "RTCUniversalGlobalReadOnlyGroup". 04/11/2013 10:32:51
+ TaskFailed: Task execution failed. 04/11/2013 10:32:51 Error
+ Error: Active Directory operation failed on "*MYDC*". You cannot retry this operation: "Access is denied 00000005: SecErr: DSID-03152610, problem 4003 (INSUFF_ACCESS_RIGHTS), data 0 "
? Details
+ Type: ADOperationException
+ ? Stack Trace
+ at Microsoft.Rtc.Management.ADConnect.Session.ADSession.AnalyzeDirectoryError(ADConnection connection, DirectoryRequest request, DirectoryException de, Int32 totalRetries, Int32 retriesOnServer)
at Microsoft.Rtc.Management.ADConnect.Session.ADSession.ExecuteModificationRequest(ADObjectBase entry, DirectoryRequest request, ADObjectId originalId, Boolean emptyObjectSessionOnException)
at Microsoft.Rtc.Management.ADConnect.Session.ADSession.Save(ADObjectBase instanceToSave, IEnumerable`1 properties)
at Microsoft.Rtc.Management.Deployment.LcForest.DomainPrepCreateAccounts(DOMAIN_ACCTPREP_INFO[] groupsInfo)
at Microsoft.Rtc.Management.Deployment.LcForest.ProcessLcsGroups(LcAction eAction)
at Microsoft.Rtc.Management.Deployment.LcForest.PrepareForest()
+ ? Additional Details
+ Error: The user has insufficient access rights.
? Details
+ Type: DirectoryOperationException
+ ? Stack Trace
+ at System.DirectoryServices.Protocols.LdapConnection.ConstructResponse(Int32 messageId, LdapOperation operation, ResultAll resultType, TimeSpan requestTimeOut, Boolean exceptionOnTimeOut)
at System.DirectoryServices.Protocols.LdapConnection.SendRequest(DirectoryRequest request, TimeSpan requestTimeout)
at Microsoft.Rtc.Management.ADConnect.Connection.ADConnection.SendRequest(DirectoryRequest request, LdapOperation ldapOperation)
at Microsoft.Rtc.Management.ADConnect.Session.ADSession.ExecuteModificationRequest(ADObjectBase entry, DirectoryRequest request, ADObjectId originalId, Boolean emptyObjectSessionOnException)
04/11/2013 10:32:51 Error
+ TaskFailed: Prepare Forest Active Directory settings execution failed on an unrecoverable error. 04/11/2013 10:32:51
+ TaskFailedResolution: Consult exception information and previous errors for more information on how to resolve this error. 04/11/2013 10:32:51
+ Rollback Groups 04/11/2013 10:32:51
+ Rollback object "RTCUserProvisioningPropertySet". 04/11/2013 10:32:51
+ Rollback object "RTCUserSearchPropertySet". 04/11/2013 10:32:51
+ Rollback object "RTCPropertySet". 04/11/2013 10:32:51
+ Rollback object "ApplicationContacts". 04/11/2013 10:32:51
+ Rollback object "GlobalSettings". 04/11/2013 10:32:51
+ Rollback object "TopologySettings". 04/11/2013 10:32:51
+ Rollback object "Pools". 04/11/2013 10:32:51
+ Rollback object "Trusted Services". 04/11/2013 10:32:51
+ Rollback object "Trusted MCUs". 04/11/2013 10:32:51
+ Rollback object "Trusted WebComponentsServers". 04/11/2013 10:32:51
+ Rollback object "Conference Directories". 04/11/2013 10:32:51
+ Error: Active Directory operation failed on "*MYDC*". You cannot retry this operation: "Access is denied 00000005: SecErr: DSID-03152610, problem 4003 (INSUFF_ACCESS_RIGHTS), data 0 "
? Details
+ Type: ADOperationException
+ ? Stack Trace
+ at Microsoft.Rtc.Management.ADConnect.Session.ADSession.AnalyzeDirectoryError(ADConnection connection, DirectoryRequest request, DirectoryException de, Int32 totalRetries, Int32 retriesOnServer)
at Microsoft.Rtc.Management.ADConnect.Session.ADSession.ExecuteModificationRequest(ADObjectBase entry, DirectoryRequest request, ADObjectId originalId, Boolean emptyObjectSessionOnException)
at Microsoft.Rtc.Management.ADConnect.Session.ADSession.Save(ADObjectBase instanceToSave, IEnumerable`1 properties)
at Microsoft.Rtc.Management.Deployment.LcForest.DomainPrepCreateAccounts(DOMAIN_ACCTPREP_INFO[] groupsInfo)
at Microsoft.Rtc.Management.Deployment.LcForest.ProcessLcsGroups(LcAction eAction)
at Microsoft.Rtc.Management.Deployment.LcForest.PrepareForest()
at Microsoft.Rtc.Management.Deployment.Tasks.ForestPrepareTask.Action()
at Microsoft.Rtc.Management.Internal.Utilities.LogWriter.InvokeAndLog(Action action)
+ ? Additional Details
+ Error: The user has insufficient access rights.
? Details
+ Type: DirectoryOperationException
+ ? Stack Trace
+ at System.DirectoryServices.Protocols.LdapConnection.ConstructResponse(Int32 messageId, LdapOperation operation, ResultAll resultType, TimeSpan requestTimeOut, Boolean exceptionOnTimeOut)
at System.DirectoryServices.Protocols.LdapConnection.SendRequest(DirectoryRequest request, TimeSpan requestTimeout)
at Microsoft.Rtc.Management.ADConnect.Connection.ADConnection.SendRequest(DirectoryRequest request, LdapOperation ldapOperation)
at Microsoft.Rtc.Management.ADConnect.Session.ADSession.ExecuteModificationRequest(ADObjectBase entry, DirectoryRequest request, ADObjectId originalId, Boolean emptyObjectSessionOnException)
04/11/2013 10:32:51 Error
+ Error: An error occurred: "Microsoft.Rtc.Management.ADConnect.ADOperationException" "Active Directory operation failed on "*MYDC*". You cannot retry this operation: "Access is denied
00000005: SecErr: DSID-03152610, problem 4003 (INSUFF_ACCESS_RIGHTS), data 0
"" 04/11/2013 10:32:51 Error
DIV2,DIV3,DIV1
Hopefully someone can shed some light on a really confusing error message, thanks
Dave
Lync HLB Cisco ACE
Bandwidth utilization analyzer
I have the complete lync setup with archiving server. The reporting server works great. The problem is I just got the resource kit for lync 2010 and it absolutely sucks at how to use the BANDWIDTH UTILIZATION ANALYZER TOOL. The resource kit documentation is very crappy about how to use it.
What is the share or even type of file am i supposed to be looking for in order to make sure that when i use this tool, i will get the bandwidth usage for dates that i specify? Is the folder that i connect to supposed to have log files, mdf, ldf, etc.?
Any help is greatly appreciated.
THanks again.
Reverse Proxy setup for Mobility HTTP 80 configuration not working
http://technet.microsoft.com/en-us/library/hh690011(v=ocs.14).aspx
I'm trying to use the Port 80 ->8080 setup to avoid putting lyncdiscover.sipdomain.com for every additional sip domain that we want to include.
I have followed the instructions per the above link, yet when I try to log in with a user with one of those additional SIP's, I cannot log in to a mobile device.
For example,
our main sip is "contoso.com", so abby@contoso.com can log into her mobile device.
but user bill@fabrikam.com cannot log in via mobile device.
Is there anything else that needs to be done to ensure that bill@fabrikam.com can login via a mobile device?
Auto login?
Josh
Here is the testexchangeconnectivity.com
When I run the Lync Mobile Test, I get this, almost like the http rule is useless, still requiring the need for the additional lyncdiscover.sipdomain.com .
Testing connectivity to the Lync Autodiscover Web Service server for a secure connection on port 443 to obtain the root token.Connectivity to the Lync Autodiscover Web Service test failed.
Test Steps
Attempting to test Autodiscover Web Service URL https://lyncdiscover.fabrikam.com/Autodiscover/AutodiscoverService.svc/root.
Autodiscover Web Service URL can't be contacted due to failure of the following tests:
Test Steps
Attempting to resolve the host name lyncdiscover.fabrikam.com in DNS.
The host name resolved successfully.
Additional Details
Testing TCP port 443 on host lyncdiscover.fabrikam.com to ensure it's listening and open.
The port was opened successfully.
Testing the SSL certificate to make sure it's valid.
The SSL certificate failed one or more certificate validation checks.
Test Steps
ExRCA is attempting to obtain the SSL certificate from remote server lyncdiscover.fabrikam.com on port 443.
ExRCA successfully obtained the remote SSL certificate.
Additional Details
Validating the certificate name.
Certificate name validation failed.
Tell me more about this issue and how to resolve it
Additional Details
Host name lyncdiscover.fabrikam.com doesn't match any name found on the server certificate CN=lncpool01.contoso.com, OU=Domain Control Validated.
enable-cscomputer fails with RSA key container error
I get the following error when running the command in the Lync Management Shell during deployment.
Any help with a solution?
Thanks!
Enable-CsComputer : Error while deleting existing RSA key container used by web
authentication module: System.Security.Cryptography.CryptographicException: Ob
ject already exists.
at System.Security.Cryptography.CryptographicException.ThrowCryptogaphicExce
ption(Int32 hr)
at System.Security.Cryptography.Utils._CreateCSP(CspParameters param, Boolea
n randomKeyContainer, SafeProvHandle& hProv)
at System.Security.Cryptography.Utils.CreateProvHandle(CspParameters paramet
ers, Boolean randomKeyContainer)
at System.Security.Cryptography.Utils.GetKeyPairHelper(CspAlgorithmType keyT
ype, CspParameters parameters, Boolean randomKeyContainer, Int32 dwKeySize, Saf
eProvHandle& safeProvHandle, SafeKeyHandle& safeKeyHandle)
at System.Security.Cryptography.RSACryptoServiceProvider.GetKeyPair()
at System.Security.Cryptography.RSACryptoServiceProvider..ctor(Int32 dwKeySi
ze, CspParameters parameters, Boolean useDefaultKeySize)
at Microsoft.Rtc.Management.Deployment.Roles.WebServices.CreateWebTicketCsp(
)
at Microsoft.Rtc.Management.Deployment.Roles.WebServices.DeleteLocalKeyConta
iners()
At line:1 char:18
Group Chat feature in Office Communications Server 2007 R2 does not work in Windows Server 2008 R2 domains
Hello to all, there are two confliting articles about this topic:
1- http://technet.microsoft.com/en-us/library/upgrade-domain-controllers-to-windows-server-2008-r2(v=ws.10).aspx#BKMK_Whatsnew : this one says that it does not work "The Group Chat feature in Office Communications Server 2007 R2 does not work in Windows Server 2008 R2 domains". This article was updated in 2013.
2- http://technet.microsoft.com/en-us/library/ee692314(office.13).aspx: this other article says that it will function "Office Communications Server 2007 R2 Group Chat will function in a Windows Server 2008 R2 forest". This article was updated in 2010 and was refered by the first one.
What is the correct support position for Group Chat feature in Office Communications Server 2007 R2 and Windows Server 2008 R2 domains?
Regards, EEOC.
Lync certificates
I am deploying a 2010 Lync Standard server.
The AD domain is abcd.local, while the sip addresses are 1234.org.
My server has an internal certificate, and a go-daddy certificate for the external connections.
Internal connections work fine with a manually configured Internal URL.
External connections fail on the certificate.
testconnectivity.microsoft.com shows the internal certificate as giving the error for external connections.
get-cscertificate shows that the go-daddy is on the external url, and the domain cert is on the internal and default types.
If I change the default to the godaddy, service wont start.
In the deployment wizard, there is not an option in the gui for differentiating certs and types, so I had to do them through the shell.
Is there something else that is presenting the wrong cert?
Navigation to webpage was canceled when opening Microsoft Lync Server 2010 Control Panel
Ok, yes I know there are many threads with similar titles, but my problem is different in that it doesn't happen every time.
The first time I access the Control Panel I get the error:
"Navigation to the webpage was canceled
What you can try:
Refresh the Page"
Clicking Refresh the Page works, kind of. It brings up the admin console, but I get the spinning lights, which eventually resolves to an error at the top of the page that reads: "An operation failed. Network communication failed. Verify your connection and try again."
Then if I click to other parts, things seem to be fine for the most part, I sometimes see the Network error, and often it is slow.
Port 443 is running through an HLB and this is setup exactly like my other Lync cluster, which doesn't have this issue. Internal web services URL is lynccontent and points to HLB VIP. Admin redirect is lyncadmin and points to HLB VIP.
Going to the /cscp page of each FE or of the pool from IE works every time, but lyncadmin seems to have the same issue (at least on FE1).
Any thoughts?