Quantcast
Channel: Lync Server 2013 - Management, Planning, and Deployment forum
Viewing all 5984 articles
Browse latest View live

Skype for Business Server 2015

$
0
0

I've just deployed Skype for Business Server 2015 in my domain but I get the following in my event log persistently.

1) 1e5880b0: ignore error 0x80092013:certificate revocation list offline

2) 1f8da773d0: cert chain trust status is in error: 0x1000040

All my clients work fine, and I've verified my certificate is perfectly valid with a good chain.

I've found a Russian MSDN post with the same problem.

https://social.technet.microsoft.com/Forums/ru-RU/0e654e98-2633-4bc3-b32a-222fb5f32895/-lync-2013-skype-for-business-event-4097?forum=lync2013ru

Anyone any ideas?


Lync 2013 Cumulative Update (May 2015)

$
0
0

Hi all,

I want to catch up update on my Lync server 2013 (Standard Edition) at least till May 2015 CU update, in order to prepare migration to SFB 2015 (i am referring to http://jaapwesselius.com/2015/05/12/upgrade-lync-2013-to-skype-for-business-2015-step-by-step/)

Before i run the CU installation, i would like to confirm some steps that i wanna understand.

I refer to https://support.microsoft.com/en-us/kb/2809243 and summarized steps as below:

1. run LyncServerUpdateInstaller.exe (restart if required)
2. install-CsDatabase -ConfiguredDatabases -SqlServerFqdn FQDN verbose
3. install-CsDatabase -CentralManagementDatabase -SqlServerFqdn FQDN -SqlInstanceName DBInstanceName -Verbose
4. enable-CsTopology (enable mobility service)

My questions to those who has experiences on CU update process are:

1. Do i need to stop lync services prior to execute LyncServerUpdate Installer?

2. Do i need to use option -UseDefaultSqlPaths when re-configuring database on step #2? i used that option on my previous lync server 2010 back then

3. step #3 & #4, are they necessary, especially step #4?  i dont really understand what does those command do, i tot the service will be up again including the mobility, after the patching finished





Lync server 2013 Patching experience

$
0
0

Hi all,

first here is our environment:

Hyper-V cluster1 containing 3 hosts.

Lync server 2013 contains of 3 frontend,2edge,2 monitoring,1 Office web app server and 3 sql servers ( total 11 server + 3 hosts)

They are all spread across 3 hosts.

Since Lync does not support live migration, we have for now done patching manually (one and one host so Lync keeps its quorum).

Steps for manual patching (windows update)

Update all VMs on one Host and shut them down. Move them to another host, then update their main host and move back all vms and boot them up.

Then we continue with host 2 and 3 with same steps.

If we want to automate this without shutting down Lync VMs, will it cause issue?

What are are your experiences with this kind of setup?

Luckily this is something we do once a quarter, but it would be nice to automate this. Then rather do CU update manually.

Thanks!


Please mark as helpful if you find my contribution useful or as an answer if it does answer your question. That will encourage me - and others - to take time out to help you. Thank you! Off2work

LS Protocol Stack event 14425 - SIP_E_AUTH_INVALID_SEQUENCE

$
0
0

I noticed that on a front end server we're getting alot of warning entries from LS Protocol Stack - event ID 14425

Many security events have been identified by the proxy stack.

In the past 30 seconds, 0 security events have been identified by the proxy stack. A large number of security events could indicate that the server is under attack. The last event was:

$$begin_record
Text: The received sequence number is invalid. The sequence number could be too old.
Result-Code: 0xc3e93ed6 SIP_E_AUTH_INVALID_SEQUENCE
SIP-Start-Line: SUBSCRIBE sip:someuser@externaldomain.com SIP/2.0
SIP-Call-ID: 6d526a94cdb0461196aa2bf06f0add4a
SIP-CSeq: 1 SUBSCRIBE
$$end_record

Cause: The server may be under attack, or there might be a configuration problem that is causing errors.
Resolution:
Launch the Lync Server 2013 Logging Tool. Select the "SIPStack" component, the "Errors" level and the TF_SECURITY flag. Review the events reported to the trace log using the "Analyze Log Files" feature of the logging tool.

.... When looking at the TF_SECURITY flag entries there's not much to go on. in Snooper just shows the same thing as between the $$begin_record and $$end_record lines

Any ideas as to what this behavior may mean?

thank you!

Lync 2010 Client with Lync 2013 Server

$
0
0

Hi People

Quick question.    We have Office 2013 deployed with the Skype for Business client logging into a Lync 2013 deployment.

HOwever a few users have had to remain on Office 2010 and use Lync 2010 to sign into the Lync pools fine.

My question is this:

If a Skype for Business user sends a meeting invitation "Join Skype Meeting" to a Lync user,   when they click the link it opens in the WebApp.  Is this expected behaviour?   I was hoping it would open in the "fat" Lync 2010 client.

thanks

Lync 2013 to SFB server 2015 deployment

$
0
0

1, When migrate user , Lync phone will auto logoff and login? if the branch site didn't have DHCP options they result is same?

2. DNS cut off time, If replace all DNS records and DHCP options to New server , old user didn't migrate to new frond end server the user can continue redirect login old front end server? 

Thanks.

Add Certification

$
0
0

Hi Guys,

I have implemented skype for business 2015 in the company. this software uses its own certification and i need to add the relevant certification to any device which wants to use it. How can I use a known certification from rapidssl, entrust or etc?

Thanks and best regards,

Bahman

CMS Replication Status is False in DR Servers

$
0
0

Hi Team

I am having 3 Front End Servers , 2 SQL Server and  1 Edge Server in DC & DR.

When a Run Get-CsManagementStoreReplicationStatus 

All the DC servers shows status as TRUE and all the DR server shows as FALSE.

Can you Please suggest which all ports should be opened which the Replication will happen between DC & DR.



Integrating Lync Server 2013 with Cisco Unified Call manager for remote call control

$
0
0

Dear All ,

I need suggestions in integrating Lync server 2013 setup with Cisco Unified call manager

We are a hosted setup and one of our client is requesting to integrate their Cisco IP desk phones with Lync client for Remote call control.

They have a latest version of Cisco unified call manager IP PBX in their environment 

We have only IM and presence, Persistent chat, peer to peer calls and Dial in conferencing enabled on our Lync Setup.

Do i need to bring up a mediation server  in this setup or the Cisco unified call manager will take care of the setup.

i can see the cisco document did not mention to have mediation server in the setup 

http://www.cisco.com/c/en/us/td/docs/voice_ip_comm/cucm/im_presence/lync_integration/10_0_1/CUP0_BK_L6E2133B_00_lync-integration-guide-100/integration_requirements.html

My questions are the below 

1) Do i need to have mediation server in this scenario.

2) Is Cisco Unified Call manager component alone is enough or i require cisco IM and presence server . Because in cisco document i can see it says we require both.

3) What will be the behavior of the  RCC as an end user perspective  when accessed externally from the network

 I assume Lync 2013 RCC feature  only sends call control commands to PBX and the  PBX will handle  the call process.

If any one has done similar implementation on a hosted setup can you please share the experience


Remember to mark as helpful if you find my contribution useful or as an answer if it does answer your question.That will encourage me - and others - to take time out to help you Check out my latest blog posts on http://exchangequery.com Thanks Sathish (MVP)

Lync 2013 Standard deployment with edge & iis ARR

$
0
0

Hello,

I have today build up new Front end, Edge & iis ARR, all servers on 2012 R2 platform. Front End is currently working as intended. Edge also logs in and IM goes through ( have not yet tested meetings etc, as there is exchangemigration going aswell ). also, mobile client logs in and is able to deliver message, however, mobile client is not able to receive message, answer to calls etc.

When testing https://meet.domain.com & https://dialin.domain.com, both works perfect, so ARR is working on these. However, i am getting following error with lyncdiscover with connectivity analyzer:

Couldn't connect to URL https://lyncdiscover.domain.com/?sipuri=user.name@domain.com (HTTP status code NotAcceptable)

Server discovery failed for secured external channel against https://lyncdiscover.domain.com/

Same error with unsecure channel.

Detailed info here:

System.Exception: Couldn't connect to URL https://lyncdiscover.domain.com/?sipuri=user.name@domain.com (HTTP status code NotAcceptable)
   at Microsoft.LyncServer.WebServices.AutoDiscoverManager.TerminateAD(String mesg)
   at Microsoft.LyncServer.WebServices.AutoDiscoverManager.<SendRequest>d__d.MoveNext()
--- End of stack trace from previous location where exception was thrown ---
   at System.Runtime.CompilerServices.TaskAwaiter.ThrowForNonSuccess(Task task)
   at System.Runtime.CompilerServices.TaskAwaiter.HandleNonSuccessAndDebuggerNotification(Task task)
   at System.Runtime.CompilerServices.TaskAwaiter`1.GetResult()
   at Microsoft.LyncServer.WebServices.AutoDiscoverManager.<TryNextUrl>d__3.MoveNext()
--- End of stack trace from previous location where exception was thrown ---
   at System.Runtime.CompilerServices.TaskAwaiter.ThrowForNonSuccess(Task task)
   at System.Runtime.CompilerServices.TaskAwaiter.HandleNonSuccessAndDebuggerNotification(Task task)
   at Microsoft.LyncServer.WebServices.AutoDiscoverManager.<StartDiscoveryJourney>d__0.MoveNext()
--- End of stack trace from previous location where exception was thrown ---
   at System.Runtime.CompilerServices.TaskAwaiter.ThrowForNonSuccess(Task task)
   at System.Runtime.CompilerServices.TaskAwaiter.HandleNonSuccessAndDebuggerNotification(Task task)
   at LyncConnectivityAnalyzerCore.Utilities.<RetrieveUserLocation>d__3e.MoveNext()

IIS ARR Rules are here:

lyncdiscover is pointing on fqdn of the front end.when sending icmp from arr, answer comes from front end.

Im kinda lost, what is wrong ?

SFB: start-cspool, fabric network ring quorum

$
0
0

Hi,

We have recently been upgrading our Lync server to Skype for business However now all of the configuration is complete whenever we run "Start-cspool" we get the bellow error.
Any ideas what could be causing this?

PS C:\Users\**> start-cspool

cmdlet Start-CsPool at command pipeline position 1
Supply values for the following parameters:
PoolFqdn: lyncpool1.domain.com

Starting the Skype Business Server pool.
Please make sure all servers in Skype for Business Server pool have Skype for
Business Server 2015 or greater version.
[Y] Yes  [A] Yes to All  [N] No  [L] No to All  [S] Suspend  [?] Help
(default is "Y"):a
Initializing...
Validating the pool Fqdn.
Pool Fqdn is valid.
Preparing the FrontEnd Server list ...
Done.
Preparing the Seed Nodes list ...
Done.

2015-09-28T11:50:59
The initial state of servers:
Server                           Status
-----------------------------    -------------------
sfb1.domain.local                   Stopped

Starting the servers ...
Done.
start-cspool : Please make sure at least 1 machine(s) are in running or
starting state to achieve fabric network ring quorum from the following
machine list. Also makes sure Windows Fabric Host Service is running on those
machines.
SFB1.DOMAIN.LOCAL
At line:1 char:1
+ start-cspool
+ ~~~~~~~~~~~~
    + CategoryInfo          : InvalidOperation: (:) [Start-CsPool], Exception
    + FullyQualifiedErrorId :  Not enough seed nodes are running.,Microsoft.Rt
   c.Management.Hadr.StartOcsPoolCmdlet

SFB Front End Service will not start

$
0
0

I have recently updated my Lync 2013 instance to SfB.  So far, I have been unable to get the Front End Service (RTCSRV) to come up.  I have ran the latest SkypeServerUpdateInstaller, re-issued certificates, reset the pool, removed servers from the pool, etc.  Nothing appears to be working, and I continue to see events such as 32169, 32170. et al.

Amy help would be appreciated.

Thank you

harry Harcrow


Harry Harcrow

Does the latest CU (September 15) Break Logging?

$
0
0

Hi all, just applied the Skype for Biz September CU which updated core and web on a FE server. Now I can't do any logging - it was working before the CU. No firewalls. Netstat shows nothing listening on TCP 50002 which I guess is the problem. Reboot doesn't fix it. 

PS > Show-CsClsLogging -Pools "sfbpool1.contoso.com" -Computers "sfbfe01.contoso.com"
Warning: Failed on 1 agents
Agent - sfbfe01.contoso.com, Reason - Error code - 20000, Message - Unknown error - Error calling agent sfbfe01.contoso.com; Could not connect to net.tcp://sfbfe01.contoso.com:50002/. The connection attempt lasted for a time span of 00:00:02.0311220. TCP error code 10061: No connection could be made because the target machine actively refused it 10.1.1.20:50002. . Please refer CLS logs for details.

Anyone else deployed the September CU and still have logging working?

EDIT: MODs, sorry, I thought this was the SFB forum I was posting in - not sure what happened there! Can you move this to Skype for Biz please? TVM.

External Access Understanding vis-à-vis HA and DR for Reverse Proxy

$
0
0

Hello All…………Assume following:

HLB for Reverse Proxies is not available.

Primary Site:

Two-2 Reverse Proxy Servers with following:

External Records

Meet                                    1.1.1.1                  (Server 1)

Meet                                    1.1.1.2                  (Server 2)

Dialin                                    1.1.1.1                  (Server 1)

Dialin                                    1.1.1.2                  (Server 2)

Wac                                      1.1.1.1                  (Server 1)

Wac                                      1.1.1.2                  (Server 2)

Extws                                   1.1.1.1                  (Server 1)

Extws                                   1.1.1.2                  (Server 2)

Internal Records

Dialin                                    192.168.1.10       (VIP of HLB)

Meet                                    192.168.1.10       (VIP of HLB)

Wac                                      192.168.1.11       (VIP of HLB)

Extws                                   192.168.1.10       (VIP of HLB)

DR Site:

Two-2 Reverse Proxy Servers with following:

External Records:

Meet                                    1.1.1.3                  (Server 1)

Meet                                    1.1.1.4                  (Server 2)

Dialin                                    1.1.1.3                  (Server 1)

Dialin                                    1.1.1.4                  (Server 2)

Wac                                      1.1.1.3                  (Server 1)

Wac                                      1.1.1.4                  (Server 2)

Extws                                   1.1.1.3                  (Server 1)

Extws                                   1.1.1.4                  (Server 2)

Internal Records

Dialin                                    192.168.1.12       (VIP of HLB)

Meet                                    192.168.1.12       (VIP of HLB)

Wac                                      192.168.1.13       (VIP of HLB)

Extws                                   192.168.1.12       (VIP of HLB)

Questions:

  1. All four-4 proxies would have port forwarding rules against required records, but Primary Proxies would have Rules for Primary as well as DR and DR Proxies will also have Rules for DR as well as Primary Site.
  2. Is above good configuration or overkill?
  3. There are Four-4 Meet, Dialin, Wac and Extws External records with two-2 each for Primary and DR Sites. The two-2 records for the Primary Site would be normal Records, but two-2 Records for the DR Site would be configured with priority so that they are only needed when first two-2 records for Primary Site do not get any response. Is this how it is supposed to be configured and is this how it should work?
  4. There are Two-2 Meet, Dialin, Wac and Extws Internal records with one each for Primary and DR Sites. The record for the Primary Site would be normal Record, but Record for the DR Site would be configured with priority so that it is only needed when record of the Primary Site do not get any response. Is this how it is supposed to be configured and is this how it should work?
  5. Meet, Meet, Dialin, Dialin, Wac, Wac, Extws and Extws would provide HA for External Access when Primary Site Reverse Proxies are working? Kindly, confirm.
  6. Keeping above configuration in mind, HA is automated, nothing would need to be done on the External DNS or Internal DNS if one of the servers goes down on the Primary Site. Kindly, confirm?
  7. Keeping above configuration in mind, DR would also be automated and nothing would need to be done to the External DNS or Internal DNS if the Primary Sites Reverse Proxies go down. Kindly, confirm.
  8. Am I missing any internal or external records?  Kindly, confirm?
  9. Can we use single HLB for LB the WAC and FE Web Services?



Skype for Business not working on Lync Server 2013

$
0
0

Hi

I've just updated our Lync FE server to V5.0.8308.872   and in the management console set the EnableSkypeUI to $true.

The client still launches as Lync 2013 and does not signal to change to Skype for Business, if I amend manually in the registry is then still asks to swap back to Lync interface?

Any ideas?


Persistent Chat Category setup "The following principals are not known"

$
0
0

When I attempt to add a user to a persistent chat category I get the following error:

"The following principals are not known: <sip:user@domain.com>. Please verify that the given principals are correct."

When I look at the attribute editor for proxyAddresses I see that "sip:user@domain.com" exists.

Move Lync Server 2013 Backend Databases To New SQL Server

$
0
0

Hello,

Currently, we have all SQL databases on a backend instance but would like to move them to a new server and new instance as part of a SQL migration. From what I've been reading online, you need to setup a 2nd standard edition Lync server to move the CMS databases to a new pool. Is this correct? Currently, we have a simple setup, only have one Enterprise edition server with one pool in our topology. Can anyone provide some guidance? The documentation I've came across seems to be lacking, for Lync 2010 or for a topology much different. Thanks!

[FYI] CU has not updated the local deployment cache

$
0
0

Hi,

Just in case, I like to inform you: I was not aware of this (perhaps there is some big note somewhere), but when you do changes on the topology and you need to run the "Step 2" on the deployment wizard, it looks like you need to run the latest CU again on the server.

So far I have seen, that when you e.g. remove and add again e.g. Mediation server, Resilience etc.. services, the "remove" operate really remove the binaries. And when you re-add the service back to server using the Step2, the deployment wizard is using as a source folder: "C:\ProgramData\Microsoft\Lync Server\Deployment\cache\5.0.8308.0". As the name says, it is RTM version :(

Even you have done the CU update for your server, CU has not been updated the deployment source.

This is perhaps the case when you add some new services to your already existing servers.


Petri

Skype for Business Server 2015 Federation with Skype

$
0
0

Hello,
I have a question regarding Skype for Business Server 2015 (on-premise) andSkype (consumer) federation.

We deployed Skype connectivity in Skype for Business Server 2015 following this TechNet Library article Deploy Skype Connectivity in Skype for Business Server 2015.

Skype for Business Client

  1. I search Skype contacts by using "Skype Directory"
  2. The I add searched contact to my contact list (see screenshot below)

    Add this contact

  3. I see the "Pending - Skype" status near new added contact (see screenshot below)

    Skype Contact

  4. If I double click over new contact this message appears "Skype for Business - <SkypeUsername>@skypeids.net can only be reached after your contact request is accepted." (see screenshot below)

    Skype Warning Message

  5. The request never reached Skype (consumer) account

Question: Please, could you tell me if federation with Skype (consumer) is really working (any official answer from Microsoft will be appreciated) ? Or could it be a Skype for Business server side issue ?

Thank you,
Luca Fabbri


Disclaimer: This posting is provided AS IS with no warranties or guarantees, and confers no rights. Whenever you see a helpful reply, click on [Vote As Help] and click on [Mark As Answer] if a post answers your question.

Lync Server 2013 Certificate Renew

$
0
0

Hi All,

   Recently, I am going to renew all Lync server 2013 roles certificate ,it include FE,Edge,Mediation,OWA,SBS/SBA,Reverse proxy and UM. could you advise me all steps? many thanks.

Best regards

Thomas

Viewing all 5984 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>