Publishing Lync with Forefront TMG (part 2)
Skriven av
Silverdrake
,
26 April 2012
·
306 visningar
Publishing Lync Web Services with Forefront TMGThis is part 2 of 5 in a series that describes how to publish Lync Web Services and Lync Edge with a Microsoft Forefront TMG 2010 server.
Part 1 - Covers the initial configuration of Forefront TMG
Part 2 - Publishing Lync Web Services with Forefront TMG
Part 3 - Creating the protocols needed for publishing Lync Edge server
Part 4 - Publishing Lync Edge server with Forefront TMG
Part 5 - Installing Lync Front End and Lync Edge
Create a certificate for Lync Web Services and install it on your TMG server.
This should be a public certificate.
SN = lync01.domain.se
SAN = meet.domain.se
SAN = dialin.domain.se
Create a Web Listener
Open the section Firewall Policy and then the Toolbox.
Under Network Objects select New… -> Web Listener
<a href="http://2.bp.blogspot...+1-775918.jpg">
Choose a name for the listener
Require SSL
Select the External Interface and select the IP address it should listen to. Do not select one of the addresses assigned to Lync Edge. (10.0.0.10 - 10.0.0.12 in this lab)
Select the certificate.
Select No Authentication.
Finish the wizard
Open up the Web listener and the tab Connections
Tick the box Enable HTTP connections and change the radio button to Redirect all traffic from HTTP to HTTPS
Create the Web Publishing Rule
Open Tasks and select Publish Web Server
Enter a name for the rule
Allow
Publish a single Web site or load balancer
Use SSL between TMG and Lync
http://4.bp.blogspot.com/-5EWAd7JmWlI/T5bUNnnFyMI/AAAAAAAAAI4/bpKR7F6KSTQ/s320/Picture%2B%2528Device%2BIndependent%2BBitmap%2529%2B11-790611.jpg
Enter the name of your Lync server
http://2.bp.blogspot.com/-IQB_eXAJD1Q/T5bUOFoVVZI/AAAAAAAAAJE/9tu3UDqr3q0/s320/Picture%2B%2528Device%2BIndependent%2BBitmap%2529%2B12-792586.jpg
Tick the box "Forward the original host header..."
http://1.bp.blogspot.com/-QZTgrn6mCV8/T5bUOWV7x2I/AAAAAAAAAJQ/PFLyWdIu_8E/s320/Picture%2B%2528Device%2BIndependent%2BBitmap%2529%2B13-793711.jpg
Enter the external URL.
http://2.bp.blogspot.com/-kx_4SddxqOI/T5bUO6wugXI/AAAAAAAAAJc/uN6nf1E7Ypc/s320/Picture%2B%2528Device%2BIndependent%2BBitmap%2529%2B14-795231.jpg
Select your Web listener
http://3.bp.blogspot.com/-rkMGo6kKZ4c/T5bUPI6mheI/AAAAAAAAAJk/wLPti8o2Kgw/s320/Picture%2B%2528Device%2BIndependent%2BBitmap%2529%2B15-796474.jpg
Select "No delegation, but client may authenticate directly"
Finish the wizard
Open up the newly created rule and the tab Public Name
http://2.bp.blogspot.com/-SsIrQm6rkEE/T5bUPSAQN4I/AAAAAAAAAJ0/uN0vEMLm4zg/s320/Picture%2B%2528Device%2BIndependent%2BBitmap%2529%2B16-797766.jpg
Add dialin.domain.se and meet.domain.se
Open the tab Bridging
http://4.bp.blogspot.com/-aWXBeMAJy44/T5bUP9VQZvI/AAAAAAAAAKA/M25LfKU9XCo/s320/Picture%2B%2528Device%2BIndependent%2BBitmap%2529%2B17-799362.jpg
Change the SSL port to 4443.
In part 3 we will create the protocol definitions needed for Lync services
https://blogger.goog...ke.blogspot.com
Källa




Skapa anpassat tema


