Quantcast
Channel: Lync Server 2013 - Management, Planning, and Deployment forum
Viewing all 5984 articles
Browse latest View live

Desktop sharing not working after firewall change

$
0
0

We have a problem where a user that's not on premises uses Lync to connect, off VPN, with an internal user, they cannot share their desktop or an app. IM works but sharing does not. Note the user is not tunneled in using VPN so I assume they are going through the Edge server. The other user is connected with a VPN.

Further, when both users connect off VPN, through the Edge, it works, so to me, it looks like inbound traffic from the internal NIC on the Edge to the FE server(s). This used to work until we had a firewall change so I am guessing networking missed a couple of rules. I tried to figure it out using the Microsoft Poster diagram but could not. So, what ports do I need open between the Edge and the internal FE for this to work?


Lync Signin Info Save does not seem to be working

$
0
0

Everyday morning when I signon to Lync it is asking me to login and save password prompt. Even when I reply in affirmation it does not seem to be saving it and next day it is again asking the password. 

Is this a bug in Lync 2013?

Lync 2013 required ports and external dns records

$
0
0

Hi All,

I need to help your about a situation, I'm confused about which ports must be open to lync roles. I have deployed lync servers and seperated roles. for example.

1 - frontend server : 192.168.100.1

2 - backend server : 192.168.100.2

3- edge server : 192.168.100.3(internal),  192.168.100.4(external) and nat ip 31.185.147.x

4- Revers Proxy with iis arr : 192.168.100.5

Lync is working in internal successfuly,but for external access which port must be open and ı'couldnt't find acceptable a document.

in this environment; I redirected the following ports to edge server but users can login to lync but they cant change presence status,They look like offline or last login status if they connect from wan

Someone tell me which ports must be redirected from wan to which server that has lync role ?

1.Edge server : 443,5061,4443,5269,23456,3478, is it enough ? (for wan)

2. Reverse Proxy server : ?  ports (for wan)

3.Front end server : ? ports (for wan)

Also ı have created external dns records sip,tls,xmpp,lyncdiscover on hosting.

Thanks in advance

Lync Server Stress and config tool Ad-Hoc option detail explanation needed

$
0
0

What does Ad-Hoc option under 'General Scenarios' does?

Say, I select below two load options:-

(a) Audio Conferencing:- Load Level - HIGH; AdHoc - DISABLED; Large Conf - ENABLED

(b) Audio Conferencing:- Load Level - HIGH; AdHoc - ENABLED; Large Conf - ENABLED

How the load will be different in above two cases? Will the amount of load OR number of audio conference/calls be different in above two cases?

Microsoft documentation (https://technet.microsoft.com/en-us/library/mt631406.aspx) says, ChoosingAd-hoc will allow the tool to generate simulation of conferences that will be created throughout the hour; which is not clear to me.

Unable to assign Lync OAuth Certificate

$
0
0

I am currently unable to renew my Lync Server 2013 OAuth certificate.

Assigning this through the wizard or shell completes without any errors but the new certificate is not shown in the wizard or shell and an event is logged under the replication service to say that the replication failed.

This appears to be the same error reported in http://social.technet.microsoft.com/Forums/lync/en-US/6e4b15f7-16a2-48d9-9cbe-1fc3ff8cf432/lync-server-2013-rtm-cannot-assign-oauth-certificate?forum=lyncdeploy and I've copied this in below.

The replication of certificates from the central management store to the local machine failed due to a problem with certificate processing or installation on the local machine Microsoft Lync Server 2013, Replica Replicator Agent will continuously attempt to retry the replication. While this condition persists, the certificates on the local machine will not be updated.

Exception: Microsoft.Rtc.Management.Common.Certificates.CertificateException: Keyset does not exist
 ---> System.Security.Cryptography.CryptographicException: Keyset does not exist

   at System.Security.Cryptography.Utils.CreateProvHandle(CspParameters parameters, Boolean randomKeyContainer)
   at System.Security.Cryptography.Utils.GetKeyPairHelper(CspAlgorithmType keyType, CspParameters parameters, Boolean randomKeyContainer, Int32 dwKeySize, SafeProvHandle& safeProvHandle, SafeKeyHandle& safeKeyHandle)
   at System.Security.Cryptography.RSACryptoServiceProvider.GetKeyPair()
   at System.Security.Cryptography.X509Certificates.X509Certificate2.get_PrivateKey()
   at Microsoft.Rtc.Management.Common.Certificates.CertAccessRule.CAPIModifyAccessRule(X509Certificate2 certificate, AccessRule rule, Boolean addRule)
   --- End of inner exception stack trace ---
   at Microsoft.Rtc.Management.Common.Certificates.CertAccessRule.CAPIModifyAccessRule(X509Certificate2 certificate, AccessRule rule, Boolean addRule)
   at Microsoft.Rtc.Management.Common.Certificates.CertAccessRule.ModifyAccessRule(X509Certificate2 certificate, AccessRule rule, Boolean addRule)
   at Microsoft.Rtc.Management.Common.Certificates.CertUtils.AddCertificateToStore(X509Certificate2 cert, StoreName storeName, IManagementReporter reporter)
   at Microsoft.Rtc.Management.Deployment.Core.Certificate.ImportFromPinnedArray(PinnedByteArray pfx, Boolean allowSelfSigned)
   at Microsoft.Rtc.Management.Deployment.Core.Certificate.ReplicateCMSCertificates(IScopeAnchor scope)
   at Microsoft.Rtc.Internal.Tools.Bootstrapper.Bootstrapper.ReplicateCMSCertificates().
Cause: The certificate provisioned in the central management store is invalid or cannot be handled on the local machine.
Resolution:
Ensure that certificates provisioned in the central management store are valid, have all needed issuer certificates included or installed on the local machine, and can be used with cryptographic providers available on the local machine.

There was a certificate in place for this previously but this issue was shown when trying to renew the existing certificate. I then removed the existing certificate and tried to add the new one but had the same issue. I also had the same issue when trying to re-import the certificate which was previously in use.

I have tried renewing through the Lync wizard and directly through the CA.

I have tested replication using get-csmanagementstorereplicationstatus which shows no issues.

There is only one front end server in the topology which is on Server 2012. The edge server is not using this certificate.

I have also tried using the domain wildcard certificate which has the same issue.

I'll update this with more detail and clarity if I can.

Thanks in advance!

Matt

Skype For Business 2015 Server - Management pack for SCOM (System Center Operations Manager)

$
0
0

Hey!

We recently updated our Lync 2013 Servers to Skype For Business Server 2015, after that the monitoring from SCOM stopped working. So I was looking for the new Skype For Business Management Pack but I can't seem to find it.

The only information I find about it, is this:

"

System Center Operations Manager is recommended.  We recommend that you monitor the health of your Skype for Business Server deployment to help ensure service availability for end-users. You can use the System Center Operations Manager Management Pack for Skype for Business that is available as a free download from Microsoft. With the Skype for Business Management Pack, you can proactively get real-time alerts when issues occur, run synthetic transactions to test end-to-end Skype for Business functionality, get reports for service availability, and so on.  This helps you to proactively respond to issues with your deployment before end-users experience them.

"

I have searched all around Microsoft Download Center, but I can't seem to find it.

Have somebody else located it, or maybe have some information about the release of it?

Thank you for your time!


Lync Edge DMZ security issue

$
0
0

hello,


I have standard infrastructure: 2013 Lync FE internally with Lync 2013 edge in DMZ, 3 different ip for sip, av and webconf 

everything was configured in help of technet , everything works perfectly, but I noticed one problem, when I try to reach external ip of sip service without dns, just ip address, I get 

Status: 404 Not Found Server: RTC/5.0 FQDN: LEDGEOPP01.domain.com

this only working in chrome and firefox, IE just gives 404 error

why it gives domain name? I really dont want anyone to know internal domain name so easy, how can I remove it?

Skype for Business Server 2015 - SIPPROXY_E_UNKNOWN_USER_OR_EPID

$
0
0

Hello,
Skype for Business Server 2015 (front-end) sometimes reports this error on Event Viewer => Application and Services Logs => Lync Server:

  • Source: LS User Services
  • Event ID: 32263
  • Description:

    An error occurred while processing a batch of NotifyPipe replies from another front end. This resulted in the notification not being sent. Error code: 0xC3E93C2F(SIPPROXY_E_UNKNOWN_USER_OR_EPID), Error identifier: NotifySingle.Notify Cause: Possible issues with the other front end or with this front end. Resolution: Ensure the front end is functioning correctly.

Notes:

  • I already read this TechNet Forums post LS User Services - Event 32263 (not "Marked as Answer")
  • Skype for Business Server 2015 servers (both front-end and edge) are working fine; Event Viewer reports no errors with exception of that reported above.

Thank you,
Luca


Disclaimer: This posting is provided AS IS with no warranties or guarantees, and confers no rights. Whenever you see a helpful reply, click on [Vote As Help] and click on [Mark As Answer] if a post answers your question.


lync user activity report from lync +7 (normal) is inconsistent with the time zone of the call detail recording (CDR) database +0

$
0
0

We found case from Ms lync 2013,

from lync control panel, we check from lync monitoring lync user activity report, status date and time activity report is normal (+7).

from database CDR we found status date and time is bad(+0)

please info and advice,example

1. from lync user activity report  :

date and time :

21/10/2016 7:19:35

2. and from database CDR

date and time :

21/10/2016 0:19

please info and avice

1. whether there is a time difference between lync user activity report with the CDR?

2. whether the default time from lync user activity report is +7 and default CDR is +0?

3. whether in the CDR database can be changed+7? if yes, how to change the time from database CDR?

4. whether discovered a problem if do change in time in CDR?

Thanks

firman

No status Skype contacts

$
0
0

I'm able to IM and call with Skype contacts out-side of our organisation. However this only wroks when the outside contact calls me.

I do have made a contact in my list, but the status is unknown. When I try to IM or call there is a message "User not found"

Skype for Business contact list is not syncing with Lync server

$
0
0
One of our customer is getting annoyed because even if we disable any user from Microsoft Lync Server 2013 control panel and remove from distribution group(Corporate directory) it still displays in contact list. User only has to logout and sometimes has to delete sign-in info for sync up.

Can anyone tell me approximately how long Skype for Business client takes to sync up with Lync server? and is there any other solution if user doesn't want to sign out and delete sign in info?

Thanks & Regards,

Vishal

Need help with Holiday Sets

$
0
0

Hello, I have a client that has many (around 40) IVR Response Groups. Most of them have more than four questions, so I have to manage them using PowerShell.

I need to create new Holiday Set for 2017 and assign it only to the Response Groups that use Holidays. Not all of them have Holidays assigned.

I have a few questions.

1. How do I find using PowerShell if IVR has Holiday Set assigned to it?

2. Is there a script that checks and if there is a "2016 Holiday" is assigned to IVR, and, if it is assigned, adds "2017 Holiday" Holiday Set?

Can someone help me with this?


Thank you. Eric.

Lync Eventid 32174 / 32178 - Frontend does not start

$
0
0

Hello,

I keep on getting Eventid's 32178 and 32174 with errors

Server startup is being delayed because fabric pool manager has not finished initial placement of users.

Currently waiting for routing group: {EF5151C7-B5E1-53B8-9F61-0CC90C82B9F6}.

Number of groups potentially not yet placed: 7.

Total number of groups: 7.

Cause: This is normal during cold-start of a Pool and during server startup.

If you continue to see this message many times, it indicates that insufficient number of Front-Ends are available in the Pool.

Resolution:

During a cold-start of a large Pool it can take upto an hour for the placement process to finish as it needs to populate all the Front-End databases with data from the Backup Store. If the Pool is running and the Front-End is just started, this is normal for some time. If this repeats for a long time, ensure that all the Front-Ends configured for this Pool are up and running. If multiple Front-Ends have been recently decommissioned, run Reset-CsPoolRegistrarState -ResetType QuorumLossRecovery to enable the Pool to recover from Quorum Loss and make progress.

and

Server startup is being delayed because fabric pool manager has not finished initial placement of users.

Currently waiting for routing group: {EF5151C7-B5E1-53B8-9F61-0CC90C82B9F6}.

Number of groups potentially not yet placed: 7.

Total number of groups: 7.

Cause: This is normal during cold-start of a Pool and during server startup.

If you continue to see this message many times, it indicates that insufficient number of Front-Ends are available in the Pool.

Resolution:

During a cold-start of a large Pool it can take upto an hour for the placement process to finish as it needs to populate all the Front-End databases with data from the Backup Store. If the Pool is running and the Front-End is just started, this is normal for some time. If this repeats for a long time, ensure that all the Front-Ends configured for this Pool are up and running. If multiple Front-Ends have been recently decommissioned, run Reset-CsPoolRegistrarState -ResetType QuorumLossRecovery to enable the Pool to recover from Quorum Loss and make progress.

I already tried the QuorumlossRecovery, but this doesn't work since the FrontEnd won't start. I also removed all intermediary certificates that were in the root certificates. Renewed the certificates using the Lync Configuration tool, but this didn't fix it.

I'm totally at a loss here on how to solve it. Will upgrading to SfB 2015 solve this?


Please visit http://www.bleumer.eu


Inplace Upgrade Skype for Business

$
0
0

Hi

Today I started upgrading my Lync 2013 Frontend Pool to Skype for Business. Unfortunately it was not succesfull. All three Frontend servers encounter the same error. The error is at the end of the installation in the verifing of the installation:

Error encountered: "Replica" is not member of "RTC Local Config Replicator"."RTCCLSAGT" is not member of "RTC Component Local Group".
Component "Replica" is not installed on "FrontendserverName".

Are there any ideas to fix that? I checked already the permissions. The System was working fine, before the upgrade.

Does SFB/Lync Mobility allow Response Groups and team calling?

$
0
0

i'm in the early stages of planning a SFB mobility deployment.  Do response groups and team calling work with mobility?

Thanks


Licensing SKype for business question

$
0
0

When using a cloud PBX provider in Canada for Skype for business integrated with a polycom IP telephony, do we need a E5 licence or E3 ?

the company i am with has a 3 contract with insurance and E3 licenses

thank you, Merci

M.Martel

Office 365 Lync basic -we couldn't connect to the presentation because of network issues

$
0
0

Topic says it all. Basically screen sharing works inside our firewall but not out. I've opened 5000-59999 TCP and UDP, 5223 TCP 3478 UDP on our Fortigate firewalls and still no luck.

Edited Logs say:

call.SetRemote[15C1F3F0] sip:******@*****:(null);(null),0,0
SetLocalAndRemoteForConnect - enter LocalDisplayName:  
SetLocalAndRemoteForConnect - Call.Invite[15C1F3F0]0:sip:***@***==>sip:***@***:, RM=(null)
OnRequestConnectionConnectComplete - Enter this: 15C1F448, callid=(null), ErrorCode: 0x0
 Outgoing 15C1F448-<sip:***@***>, local=sip:***@***
 call.SetRemote[15C1F3F0] sip:***@***:(null);(null)
 UCC_BYPASS_INFO- BypassID:73a9684f-3994-4107-9ca8-4b69ea381cb3, NetworkIP:10.72.10.22
 UCC_BYPASS_INFO- BypassID:73a9684f-3994-4107-9ca8-4b69ea381cb3, NetworkIP:10.72.10.22
 Creating Media flow with BypassInfo:0032E7C8, BypassID:73a9684f-3994-4107-9ca8-4b69ea381cb3, IPAddress:10.72.10.22
 MediaParam={MediaType=1048576;Index=0;Disabled=0;MediaConfig=3;ValidFields=0;BandwidthResvId=(null);ExistingBandwidthResvId=(null);SourceDescription=(null);} 
Execute: HRESULT API failed: 8000000a = hr. StartNegotiation on Media Flow failed
ProcessNextTransactionIfPresent: HRESULT failed: 8000000a = hr. ExecuteOperations
Convert - [0x14DBAAF0]
OnMediaFlowEvent - Processed MFEMT_ChannelCreated for 371496668l.
OnMessage - Processed WM_MMGR_FLOW_EVENT.
RegisterForUpdates - [0x11664E70]
RegisterForUpdates - [0x11664E70]
RegisterForUpdates - [0x11664E70]
RegisterForUpdates - [0x11664E70]
PublishNextEntry - Starting publication of 1582D4B8
 There is no Service-Route to copy
OnRequestConnectionConnectComplete - Enter this: 16395A00, callid=(null), ErrorCode: 0x0
 Outgoing 16395A00-<sip:***@***>, local=sip:***@***
 Out trxn corr-id (159CAE00)
 Trxn corr-id (159CAE00), SIP msg corr-id (b6045027)
 Sending Packet - 23.103.130.141:443 (From Local Address: 10.72.10.22:64841) 1772 bytes:
 SERVICE sip:***@*** SIP/2.0

Lync Server 2013 - Enabling Voice, chat history and othr features DB integration

$
0
0

Dear Admins,

New to this topic and I'm going through the Doc Microsoft Lync Server 2013 Step by Step for Anyone   by  Matt Landis, Lync MVP. However just got a doubt , while creating the Topology we install SQL Express Edition in order to enable the basic features.

But I heard in order to add/enable the new features(like voice/lync meetings/voice) in existing Lync server environment we need a standard or enterprise edition of SQL DB to be installed.Could you please guide in getting the right way to integrate the standard/enterprise DB with the Lync server 2013. 

 

Lync 2013 Site Rename

$
0
0

Just wondering if anyone has any experience with renaming a Lync 2013 Site in the Topology Builder.. Any known issues with just editing the properties of a site, changing the name, and publishing the topology? 


Lync not signing in

$
0
0

Hi

I have a new user and their account was created the same way as everyone else, but Lync will not allow them to sign in. 

If i change their domain from user@domainA to user@domainB then they can sign in. All other users in domainA can sign in no problem. I have checked the SIP address matches the users email etc and have removed them from Lync and recreated but its still not allowing them to sign in. The error they get is below: 

Cant sign in to Lync: You didn't get signed in. It might be your sign in address or logon credentials, so try those again. If that doesn't work, contact your support team.

Any ideas?

Cheers

Viewing all 5984 articles
Browse latest View live