|
OCS Server
|
Enable Global Federation Setting
|
-
Select
in the global forest branch in the left pane.
-
Check
Enable Federation and Public IM
Connectivity.
-
Enter the FQDN and the port number for the internal
interface of the Access Edge server.
|
|
Configure the Access Edge server address
|
-
Select
in the global forest branch in the left pane.
-
Click
Add
in the Access Edge and Web Conferencing Edge
Servers window.
-
Enter the FQDN for the internal interface of the Access
Edge server.
|
|
Enable Each Front End Federation Setting
|
You need to enable the federation setting for each
front-end server that is federating:
-
Select
in the front-end server branch in the left
pane.
-
Check
Enable Federation and Public IM
Connectivity.
|
|
Check your users are enabled for MOC and for
Federation
|
- From the
Users tab, check that your users are
enabled for MOC.
- If your user is
not present in this list, you need to enable the user for MOC in Microsoft
Active Directory.
- You also need to
enable the user for
Public IM Connectivity in Microsoft Active Directory.
Refer to the Microsoft Active Directory documentation at
the following URL:
http://technet2.microsoft.com/windowsserver/en/technologies/featured/ad/default.mspx
|
|
Access Edge Server
|
Configure DNS
|
In the Microsoft enterprise deployment, you need to
configure an external SRV record for all Access Edge Servers that points to
_sipfederationtls._tcp.<domain>, over port 5061, where <domain> is
the name of the SIP domain of your organization. This SRV should point to the
external FQDN of the Access Edge server.
|
|
Configure
IM and Presence as an IM Provider
|
-
Select
on the external Access Edge server.
-
Right-click
Microsoft Office Communications Server
2007 in the left pane.
-
Click the
IM Provider tab.
-
Click
Add.
-
Check
Allow the IM service provider.
-
Define the IM service provider name, for example, the
IM and Presence server.
-
Define the network address of the IM service provider, in
this case the public FQDN of the
IM and Presence server.
-
Ensure that the IM service provider is not marked as
"public".
-
Click the filtering option
Allow all communications from this
provider option.
-
Click
OK.
In the
IM and Presence enterprise deployment, you need to configure a DNS
SRV record that points to _sipfederationtls._tcp.<CUP_domain> over port
5061where <CUP_domain> is the name of the
IM and Presence domain. This DNS SRV should point to the public FQDN
of the
IM and Presence server.
|
|
Check the Access Method Settings
|
-
Right-click on Microsoft Office Communications Server 2007
in the console tree.
-
Click
.
-
Check
Federation.
-
Check
Allow discovery if you are using DNS
SRV.
|
|
Configure Access Edge to use TLSv1
|
-
Select
to open the Local Security Policy.
| Note
|
If you are configuring this on a domain controller, the
path is
.
|
-
Click
in the console tree.
-
Double-click the FIPS security setting in the details
pane.
-
Enable the FIPS security setting.
-
Click
OK.
|
|
OCS/Access Edge Server
|
Configure the security certificates
|
- You need to
configure security certificates between the OCS server and the Access Edge
server.
- You will require a
CA server to perform this procedure.
- Please refer to
the Microsoft documentation for details on configuring security certificates
between these servers.
|