Quantcast
Channel: Lync Server 2013 - Management, Planning, and Deployment forum
Viewing all 5984 articles
Browse latest View live

Cannot publish the topology, have no right to login SQL

$
0
0

Dear support,

I've a problem when publish the topology: cannot open database xds due to the permission problem, i've done below but still problem, who can help, many thanks.

1. add the domain administrator to the CSadministor and RTCUniversalServerAdmin

2. standard LYNC version


Federation routes for multi-edge

$
0
0

I have 2 sites, one of which is the Edge pool is the federation route and the other site does not have Federation or XMPP federation enabled. Both sites run Lync 2013 EE pool and Edge Pool.

As part of moving users over to test a new site, federated contacts do not show their presence, I believe this is due to the fact that the users home pool is not set up for federation.

Can I switch this on safely without breaking other things? When I adjust the site settings to use another federated route my topology validation comes back with:

•    Warning: The topology contains more than one Federated Edge Server. This can occur during migration to a higher version of the product. In that case, only one Edge Server would be actively used for federation. Verify that the external DNS SRV record points to the correct Edge Server. If you want to deploy multiple federation Edge Server to be active concurrently (that is, not a migration scenario), verify that all federated partners are using Office Communications Server 2007 R2 or later. Verify that the external DNS SRV record lists all federation enabled Edge Servers.

•    Warning: The topology contains more than one XMPP Federated Edge Server. This can occur during migration to a higher version of the product. In that case, only one Edge Server would be actively used for XMPP external federation. Verify that the external DNS SRV record points to the correct Edge Server.

I'd like to maintain federation on Site 1 whilst testing that federation works in the new Site 2 without breaking comms for users in Site 1. Just wondering if its ok to ignore these warnings?

Any advice is appreciated!

Lync 2013 Migration

$
0
0
Hello All..........I need to migrate Lync 2010 Infrastructure to Lync 2013. The current Infrastructure (Lync 2010) is offering most of the common features plus including Enterprise Voice. So, I would appreciate if someone could share their thoughts on the process, documents/blogs/articles to follow in achieving the same especially with respect to Enterprise Voice as I am not very well versed in this. Thanks.

what is with this automatic certificate update BS that breaks the edge server?

$
0
0

Last year I ran into a Lync 2013 Edge server on win2012 that spontaneously decided to start f*&king around with its certificate stores and adding a whole bunch of trusted root certs - breaking Lync edge in the process.

The fix was to get the Godaddy intermediate cert added.  Why this affected one edge server and not the other two almost identically configured once is beyond me.

Now today, the same thing happened to one of my three SfB edge servers - but again only one.  WTH?

Had to dig up the right version of the GD intermediate cert to get it going again.

How to install the media foundation feature for Win2008 R2

$
0
0

Dear support.

When i install the features for the lync 2013, i got error that need install the media foundation, but i cannot find it in the server role/feature list in the Win2008R2, would you please advise how to add this function?

Thanks

 

Lync fron End service

$
0
0

Hi

I have Lync 2013 Enterprise installed fresh installation but Front end service keep starting with no error message on the event viewer .

certificate is ok also

need help


MCP MCSA MCSE MCT MCTS CCNA

msRTCSIP-UserRoutingGroupID - Wrong Hex Value

$
0
0

Hi All,

Have a Customer where I have deployed Lync 2013 Enterprise Edition on Windows 2008 R2, and the Lync 2013 client deployed to Windows 7 desktops.
Fresh install on 2013, no upgrade from Lync 2010 or anything else.

Getting the issue where the msRTCSIP-UserRoutingGroupID is wrong, and users can't sign in.

So I've queried AD and found the wrong value on user accounts, and replaced them with the right one and this fix works fine.

Problem is that the issue seems to re-occur intermittently on user accounts when they are enabled.

I'd like to know how this msRTCSIP-UserRoutingGroupID attribute is formed, as I've checked out the AD schema/configuration/naming context partitions, and can't see the hex value anywhere, or reference to how it is done from any searches on the internet.

Any help, as always, appreciated!
Cheers,

Hamish

Migrating all CAC, Location Policies, Policy Profiles, Regions, Sites, & Subnets from Lync 2010 to 2013

$
0
0

Thank you for reading this post. I've been searching around for quite a while trying to find a supported way to do this defined by Microsoft, but haven't found anything.

We are migrating from Lync 2010 to Lync 2013.

How do we migrate everything within the "Network Configuration" tab of the Lync Control Panel. So, basically, all of the settings for CAC, Location Policies, Policy Profiles, Regions, Sites, & Subnets, etc.

Is this all automatic without any administrative intervention if I just follow the steps on Technet for migrating from Lync 2010 to Lync 2013?

Thank you in advance for your time.



Skype for Business 2015 Doesn't see users

$
0
0
Sorry, I know this isn't exactly the right place, but can't find the forum for SFB 2015.  I've setup a standard deployment, however my setup does not see any users who are not in the default OU.  When I move a user account to the User OU in AD they are seen and I can enable them, however any users not in this OU appear invisible to SFB.  Has anyone come across this?

Skype for Business Server 2015

$
0
0

I've just deployed Skype for Business Server 2015 in my domain but I get the following in my event log persistently.

1) 1e5880b0: ignore error 0x80092013:certificate revocation list offline

2) 1f8da773d0: cert chain trust status is in error: 0x1000040

All my clients work fine, and I've verified my certificate is perfectly valid with a good chain.

I've found a Russian MSDN post with the same problem.

https://social.technet.microsoft.com/Forums/ru-RU/0e654e98-2633-4bc3-b32a-222fb5f32895/-lync-2013-skype-for-business-event-4097?forum=lync2013ru

Anyone any ideas?

Skype for Business - Error when logging on to control panel (Access is denied due to a role-based access control (RBAC) authorization failure.)

$
0
0

Dear all,

I´ve set up an trial installation of Skype for Business 2015. Everthing in the installation worked well, but now, when I try to logon to the "Skype for Business Server Control Panel", I will receive this errorr message

Unauthorized: Access is denied due to a role-based access control (RBAC) authorization failure.

You do not have permission to view this application using the credentials that you provided.
Contact your support team to add your account into appropriate security group (s) for Skype for Business Server administrators. Wait until the new role assignments take effect, and then try again.

I am in the CSAdministrators group and also tried different kind of users (Domain-Administrator, normal user eg.). But no one works.


Any help?


Jenny

DHCPUtil.exe & MSVCR110.dll

$
0
0

Hey, everyone!

Trying to get DHCP setup for some Polycom handsets and so I attempted to run the DHCPUtil script from Lync Server 2013.

I copied DHCPUtil.exe and DHCPConfigScript.bat from my Lync Server into the C Drive on my Domain Controller, which also is handling DHCP. I then launched a command prompt with "Run as Administrator," navigated to the folder with the script and entered

DHCPUtil.exe -SipServer <mySipAddress> 

I keep getting an error, though:

The program can't start because MSVCP110.dll is missing from your computer. Try reinstalling the program to fix this problem.

So I googled about the error and someone said to copy MSVCP110.dll from the Lync Setup directory. I did that, but I'm not sure what to do now. I copied it into the same folder the script is in, but it still doesn't run.

Can someone help me?

Thanks!

Removed Lync 2013 but "RTC Service" CN still exists in ADSIEDIT

$
0
0

I just removed Lync 2013 finishing up with the "remove-csconfigurationstorelocation" command. (steps here) http://blogs.technet.com/b/canitpro/archive/2014/10/08/step-by-step-uninstalling-a-microsoft-lync-server-2013.aspx

The command completed successfully but the RTC Service CN under Configuration - Services, still exists. Isn't that last command supposed to clean out AD? Is it safe to just delete this "RTC Service" segment?

TIA!

Lync Server 2013 has not changed the product version after install last CU May 2015

$
0
0

Hi Guys!

I installed the last Cumulative Update for Lync Server 2013 (via Cumulative Update Installer), updated the databases "Install-CSDatabase –ConfiguredDatabases –SqlServerFqdn sql.domain -Verbose" and updated CMS "Install-CSDatabase –CentralManagementDatabase" with this commands successfully.

The problem is when I run "Get-CsManagementStoreReplicationStatus" I keep seeing the old ProductVersion: 5.0.8308.556

I know that the environment has been updated successfully, because I checked the databases version by the command "Test-CSDatabase –ConfiguredDatabases –SqlServerFqdn sql.domain", for example, XDS is "10.13.3" (CU May 2015).


What can I do to fix this Product Number?

Thanks in advance!

Edge server not listening on Port 5061

$
0
0

Hi all,

 I just configured edge server in the DMZ and when i run netstat -ano i don't see the external IPs listening on port 5061 but it is listening on port 443? I have enabled external access.

What could be wrong?

 


How can I forward port 80 http traffic to the front end using Web Application Proxy?

$
0
0

Please first understand my setup and why I need to be able to forward the traffic from the Web Application Proxy.

I have a SonicWall setup as a 'Wire Mode-Secure' in front of the WAP server. The SonicWall is acting only as a security appliance and cannot from what I can tell, forward the port 80 traffic directly to the FE server in this mode. The reason for the SonicWall being in this mode is to allow IPv6 addresses to be assigned to servers while providing all the security features available on the SonicWall. In this mode the public IPv6 and IPv4 addresses are assigned to the interface on the Web Application Proxy.

I have the WAP setup to forward all the https traffic for all the lync FE domains to the FE server. However, now I need to forward all the http traffic that is send to the public IP's to the Lync FE server. Is it possible to do this in windows? If I enabled NAT and setup port forwarding the the WAP server, could I get the traffic to the FE server without messing up the traffic?

So here is my setup:

HTTPS [IPv6/IPv4 traffic] Internet - > SonicWall -> [port 443] Web Application Proxy  ->[port 8443] Lync FE Server
HTTP 
[IPv6/IPv4 traffic] Internet - > SonicWall -> [port 80] Web Application Proxy  //--XX--\\ [port 8080] Lync FE Server

HTTPS [IPv6/IPv4 traffic] Internet - > SonicWall ->[port 443] Lync Edge Server


Jonathan Martinez


Lync 2013 cannot start service lync front end

$
0
0

Hi,

I have problem.

I'm testing lync server 2013, I only have one server Lync and one server active directory.

I've bought previously ssl wildcard for the domain so * .domain.com, when I assing ssl certificate, I get an error like the one below:

============================================

> Assign Certificate

Set-CSCertificate -Type Default,WebServicesInternal,WebServicesExternal -Thumbprint 5CF26E40F8E46C4CCB0526CE8A67C40B23C02B5B -Confirm:$false -Report "C:\Users\administrator.COZY\AppData\Local\Temp\2\Set-CSCertificate-[2015_06_03][05_38_17].html"
 WARNING: The subject name "*.cozy.co.id" of the certificate does not match the computer fully qualified domain name (FQDN) "lync.cozy.co.id".
 WARNING: The subject alternative names "*.cozy.co.id,cozy.co.id" of the certificate "5CF26E40F8E46C4CCB0526CE8A67C40B23C02B5B" do not contain the computed alternative names "lync.cozy.co.id,dialin.cozy.co.id,meet.cozy.co.id,admins.cozy.co.id,LyncdiscoverInternal.cozy.co.id,Lyncdiscover.cozy.co.id".
The following certificate was assigned for the type "Default":
Default: 5CF26E40F8E46C4CCB0526CE8A67C40B23C02B5B *.cozy.co.id 01/20/2016 CN=AlphaSSL CA - G2, O=AlphaSSL 11214A8E8F1F7D77597ADAF0D61E245C50A2
The following certificate was assigned for the type "WebServicesInternal":
WebServicesInternal: 5CF26E40F8E46C4CCB0526CE8A67C40B23C02B5B *.cozy.co.id 01/20/2016 CN=AlphaSSL CA - G2, O=AlphaSSL 11214A8E8F1F7D77597ADAF0D61E245C50A2
The following certificate was assigned for the type "WebServicesExternal":
WebServicesExternal: 5CF26E40F8E46C4CCB0526CE8A67C40B23C02B5B *.cozy.co.id 01/20/2016 CN=AlphaSSL CA - G2, O=AlphaSSL 11214A8E8F1F7D77597ADAF0D61E245C50A2
 WARNING: "Set-CSCertificate" processing has completed with warnings. "2" warnings were recorded during this run.
 WARNING: Detailed results can be found at "C:\Users\administrator.COZY\AppData\Local\Temp\2\Set-CSCertificate-[2015_06_03][05_38_17].html".

============================================

The name domain controller "cozy.co.id".

This causes the service lync front end could not running.

What should I do to fix it?

Please help me


Nugroho Anindyanto

Configuring Mediation pool for voice integration

$
0
0

I am going through a document from Avaya on configuring our Mediation server for integration with our voice system. I never messed with the Mediation pool settings before because I really had no need. Under Mediation server in topology builder, I have the our Lync pool which makes sense because all our front-ends are members in a single pool.

When I click on the Mediation pool and select Edit Properties, it looks like something is missing though. All I have is a PSTN gateway setting. My test environment has a General and Next hop setting along with a PSTN gateway. My Prod is below. Is this because Prod is a pool of servers and test is a single standalone server?


SEFAUTIL.exe after Skype for Business Upgrade

$
0
0

Is there Skype for Business Server 2015 resource kit out yet? I can not longer use SEFAUtil.exe after upgrading to Skype for Business.  I get the following error:

Unhandled Exception: System.IO.FileNotFoundException: Could not load file or assmbly 'Microsoft.Rtc.Collaboration, Version=5.0.0.0, Culture=neutral, PublicKeyTken=31bf3856ad364e35' or one of its dependencies. The system cannot find the file specified.  at SEFAUtil.SefaTool.Execute() at SEFAUtil.Program.Main(String[] args)

Assuming I just need an updated version of the tool to work with the new server version cause it was working perfectly fine before the upgrade.

Replication error with Edge

$
0
0

Hi All,

 I get the following response when i initate replication with edge servers. Both the servers are in edge pool.

The FE servers can resolve the host names using the internal DNS, 4443 port is open from FE to Edge servers. I have reimported the topology and run the first 2 steps as well. But the error remains the same.

It doesn't display the productversion and last status report

Get-CsManagementStoreReplicationStatus

UpToDate           : False
ReplicaFqdn        : Edge1.corp.contoso.com
LastStatusReport   :
LastUpdateCreation : 6/3/2015 2:04:04 AM
ProductVersion     :

UpToDate           : False
ReplicaFqdn        : Edge2.corp.contoso.com
LastStatusReport   :
LastUpdateCreation : 6/3/2015 2:04:04 AM
ProductVersion     :

Viewing all 5984 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>