Publishing Lync with Forefront TMG (part 3)
Skriven av
Silverdrake
,
26 April 2012
·
542 visningar
Creating the protocol definitions needed for publishing Lync
This is part 3 of 5 in a series that describes how to publish Lync Web Services and Lync Edge with a Microsoft Forefront TMG 2010 server.
Part 1 - Covers the initial configuration of Forefront TMG
Part 2 - Publishing Lync Web Services with Forefront TMG
Part 3 - Creating the protocols needed for publishing Lync Edge server
Part 4 - Publishing Lync Edge server with Forefront TMG
Part 5 - Installing Lync Front End and Lync Edge
The reference I used for this guide is found here: <a href="http://technet.micro...gg425891.aspx">http://technet.micro...y/gg425891.aspx
Open up TMG and navigate to Firewall Policy, open the Toolbox and expand the Protocols section.
Create a new Protocol Definition
Name: Lync SIP/MTLS Server
Port 5061 TCP Inbound
Create a new Protocol Definition
Name: Lync SIP/MTLS
Create a new Protocol Definition
Name: Lync RTP 50K Range Server
Add the ports and then finish the wizard
NOTE! In the documentation you can see that you also need to open ports 50000-59999 TCP/UDP for outgoing traffic. Now this one is a bit tricky if you're reading to fast! The ports mentionend are actually SOURCE ports on your Edge server. Destination ports in this case should be ANY! If you create a rule that allows outbound traffic only on destination port 50000 - 59999 you might run into problems sharing desktop and applications with federated users! Therefore we create a protocol definition for TCP and UDP outbound on all ports. (We could just allow all traffic but this limits it to TCP and UDP) Source ports are later defined in the Access Rule.
Create a new Protocol Definition
Name: Lync TCP/UDP All
Create a new Protocol Definition
Name: Lync STUN/MSTURN Server
Create a new Protocol Definition
Name: Lync STUN/MSTURN
Create a new Protocol Definition
Name: Lync PSOM/MTLS
Create a new Protocol Definition
Name: Lync SIP/MTLS/5062
Create a new Protocol Definition
Name: Lync HTTPS 4443
Now that all protocol definitions are done we can proceed with creating the actual rules.
Coming up in part 4.
https://blogger.goog...ke.blogspot.com
Källa




Skapa anpassat tema


