![]() I haven't seen much break if you don't use 443, but something possibly could I suppose.įor the external web services, I would use a third party certificate with only the SANs you need to offer publicly, don't worry about the FE names in there at all, just proxy back to the server with an internal certificate authority.įor the edge, I'll often pick as the access edge name, you'll want for all the other domains for sure, you'll want the web conferencing edge as well, but I've gotten away with not having the. Lyncdiscover you can have using just port 80, which is fine, but 443 is preferred. Most of those SAN entries will not be required externally and thus you wouldn't need to worry about them all with a trusted third party authority. ![]() Internally, I would strongly recommend using an internal certificate authority. How can I reduce the number of san entries in Front End Pool / Web Service and Edge Pool External certificates in Skype for Business? The documentation on Edge certificate requirements for SfB is none existent. To the cert, but it does not make any sense to add the as well. Why does the wizard add SAN entries for the in addition to sip.? It makes perfect sense that you add sip. I need to understand if this could negatively affect a full SfB deployment (all modalities internally and externally). However, Microsoft also states, “ This approach is supported, but we do not recommend it. ![]() Microsoft states in a TechNet articles that you can reduce the LyncDiscover entriesīy using CNAMES. This is A LOT of SAN entries and I want to reduce this as much as possible. SAN=meet.no. (this is the common meet URL for all SIP Domains) I want to reduce the number of SAN entries in the certificates.Ĭustomer SIP Domains: (Changing the SIP Domains isįront-End / Web Service (Proxy) certificate with aboutĦ6 SAN entries using the certificate wizard. The customer has numerous SIP Domains ( 21) and I am looking into how I can reduce the number of SAN entries in Skype Front End Pool / Proxy and Edge certificate.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |