Lync 2013 On Premises to Lync Online, one way presence and IM

I am attempting to federate my on premise domain with a domain hosted on Office 365.
At the moment, the O365 users can add and see presence of the on-premise users, and can send IM messages as well. But not vice versa.
I've scoured the internet for any answers, but have not found anything that has helped my situation. 
So far I've verified:
1. The domain has been added to both sides allowed domains sections and the LyncOnline has been enabled in SIP federated providers
2. The on prem Edge server can resolve the 0365 Edge address
3. The external certificate is from a trusted source, with all SAN's configured.
4. All correct ports are open on the firewall inbound, and I can access sipfed.online.lync.com 5061 from the Edge server via telnet
5. The remote connectivity analyser connects with no errors to my edge server on prem
6. External users can connect to Lync On Prem
7. Exchange Online interoperability is working. I.e I can set my presence via OWA, and the Lync 2013 client updates instantly
Could there be anything I have missed? Before deploying this Lync on prem, I had a complete test lab environment working and Federation was working without issue.
Any help greatly appreciated.

Edge server configuration is the most likely cause 
what happens if repeat the test for Remote onprem user does this work?
What is access edge port set to on the edge server?
Please remember, if you see a post that helped you please click "Vote As Helpful" and if it answered your question please click "Mark As Answer" Regards Edwin Anthony Joseph

Similar Messages

  • Difference Between One-way SSL and Two Way SSL

    Hi ,
    Can any tell difference between one way and two ssl. apache to weblogic server which type of ssl we can configure. Please provide information on this.
    thanks

    In short below is the difference:
    One Way SSL - Only the client authenticates the server
    - This means that the public cert of the server needs to configured in the trust store of the client for this to happen.
    Two Way SSL - The client authenticates the server & the server also authenticates the client.
    - This means that the public cert of the server needs to configured in the trust store of the client for this to happen.
    - Also the public cert of the client needs to be configured on the server's trust store
    Please refer to http://publib.boulder.ibm.com/infocenter/wmqv6/v6r0/index.jsp?topic=%2Fcom.ibm.mq.csqzas.doc%2Fsy10660_.htm. In case of Two way SSL the step numbers 5 & 6 also occur.
    You can implement either of them between apache and weblogic.
    Hope this helps.
    Thanks,
    Patrick

  • Why are display recorders always removed from the App Store so fast considering most online ones dont work and people really need something for recording?

    I just need some help with figuring this out.

    allen_gibberish wrote:
    1- I don't want any iCloud, App Store and things like that working in any way.
    No, you can not disable the App Store.  It is included on Macs running 10.6.6 or higher.
    2 - I want to know if I can install in some way OSX 10.6 because 10.7 is very buggy and has much worse performances in every pro application I know and I suppose this is not only because it is a new OS but because the way it is created to stay always synced to a iCloud service and upgraded with the App Store, meaning the OS is always working to update/upgrade its status in iCloud/ App Store. And in general I don't have time to lose because Apple needs beta tester (even thought I think this time the problem isn't of the OS but of what you are asking to the OS... to update (and upload) its status everytime).
    I have to use a system that works great, fast, without hassles and very reliable. That's the only reason why I choose Apple.
    You can not install an earlier version of OS X than what originally came on your computer.  Even if you did, it could cause major headaches: http://support.apple.com/kb/HT2186
    3 - I don't use the internet in the computer I'm working with (because from every aspects it's better to not use internet in a computer you are working with, because it slowes down everything and makes the computer behaviour really unpredictable. Now I'm using a Mac Pro first gen and it runs like the first day, that's because I've never used internet on it, I have another one near to it where I used internet and works at half of its potential, even thought it is mainteinedly properly, cleaning, repairing, everything)
    Most people in this day and age use the internet on their computers and have no problems that you speak of.
    And I'd like to know if there are any hassle of any kind if you use the computer without internet
    In # 3 you already stated you use one without the internet.

  • Call Pickup - Users experience One Way Audio when using Call Pickup Orbit to pickup internal calls with internal Lync 2010 Callers

    Hi
    Noticed an issue where when using Call Park Function with users you receive one way audio when answering the call
    The scenario is
    1) If a user is internal and is homed on Lync 2010 Pool and calls an internal user who is homed on a Lync 2013 Pool and another internal user homed on a Lync 2013 Pool picks up the call with Call Pick Up orbit, Lync 2010 users only hears one way audio and
    same for user who has picked up call
    2) If the scenario is an External PSTN call or another Lync 2013 user these calls are fine
    In Lync Tracing logs a SIP/2.0 481 Call Leg/Transaction Does Not Exist error is returned
    Is this a known bug or expected behavior - Call Pickup is basically useless until all users are migrated to Lync 2013 as there is no way of a user knowing whether call is internal or external and if the user is on Lync 2010 or 2013, obviously in my
    large organization 2000 users no an overnight thing
    Coupled with the fact no Team Call Group\ Simultaneous Ring can be in place for Call Pickup to work im thinking Call Pick Up is not going to happen for awhile
    Is there any fixes\ developments that may help this issue or is there a setting I am missing

    Hi,
    Please install latest update for Lync Server 2010 and 2013.
    http://technet.microsoft.com/en-us/lync/dn146015.aspx
    If the issue persists, please enable logging tool on Front end and Mediation server to get trace for troubleshooting.
    http://blog.schertz.name/2011/06/using-the-lync-logging-tool/
    Note: Microsoft is providing this information as a convenience to you. The sites are not controlled by Microsoft. Microsoft cannot make any representations regarding the quality, safety, or suitability of any software or information found there. Please make
    sure that you completely understand the risk before retrieving any suggestions from the above link.
    Kent Huang
    TechNet Community Support

  • ADFS SSO and SharePoint 2013 on-premise Hybrid outbound search results from SharePoint Online - does it work?

    Hi, 
    I want to setup an outpund hybrid search for SharePoint 2013 on-premise to SharePoint Online.
    But I'm not shure if this works with ADFS SSO.
    Has somebody experience with this setup?
    Here's my guide which I'm going to use for this installation:
    Introduction
    In this post I'll show you how to get search results from your SharePoint Online in your SharePoint 2013 on-premise search center.
    Requirements
    User synchronisation ActiveDirectory to Office 365 with DirSync
    DirSync password sync or ADFS SSO
    SharePoint Online
    SharePoint 2013 on-premise
    Enterprise Search service
    SharePoint Online Management Shell
    Instructions
    All configuration will be done either in the Search Administration of the Central Administration or in the PowerShell console of your on-premise SharePoint 2013 server.
    Set up Sever to Server Trust
    Export certificates
    To create a server to server trust we need two certificates.
    [certificate name].pfx: In order to replace the STS certificate, the certificate is needed in Personal Information Exchange (PFX) format including the private key.
    [certificate name].cer: In order to set up a trust with Office 365 and Windows Azure ACS, the certificate is needed in CER Base64 format.
    First launch the Internet Information Services (IIS) Manager
    Select your SharePoint web server and double-click Server Certificates
    In the Actions pane, click Create Self-Signed Certificate
    Enter a name for the certificate and save it with OK
    To export the new certificate in the Pfx format select it and click Export in the Actions pane
    Fill the fields and click OK Export to: C:\[certificate
    name].pfx Password: [password]
    Also we need to export the certificate in the CER Base64 format. For that purpose make a right-click on the certificate select it and click on View...
    Click the Details tab and then click Copy to File
    On the Welcome to the Certificate Export Wizard page, click Next
    On the Export Private Key page, click Next
    On the Export File Format page, click Base-64 encoded X.509 (.CER), and then click Next.
    As file name enter C:\[certificate
    name].cer and then click Next
    Finish the export
    Import the new STS (SharePoint Token Service) certificate
    Let's update the certificate on the STS. Configure and run the PowerShell script below on your SharePoint server.
    if(-not (Get-PSSnapin "Microsoft.SharePoint.PowerShell" -ErrorAction SilentlyContinue)){Add-PSSnapin "Microsoft.SharePoint.PowerShell"}
    # set the cerficates paths and password
    $PfxCertPath = "c:\[certificate name].pfx"
    $PfxCertPassword = "[password]"
    $X64CertPath = "c:\[certificate name].cer"
    # get the encrypted pfx certificate object
    $PfxCert = New-Object System.Security.Cryptography.X509Certificates.X509Certificate2 $PfxCertPath, $PfxCertPassword, 20
    # import it
    Set-SPSecurityTokenServiceConfig -ImportSigningCertificate $PfxCert
    Type Yes when prompted with the following message.
    You are about to change the signing certificate for the Security Token Service. Changing the certificate to an invalid, inaccessible or non-existent certificate will cause your SharePoint installation to stop functioning. Refer
    to the following article for instructions on how to change this certificate: http://go.microsoft.com/fwlink/?LinkID=178475. Are you
    sure, you want to continue?
    Restart IIS so STS picks up the new certificate.
    & iisreset
    & net stop SPTimerV4
    & net start SPTimerV4
    Now validate the certificate replacement by running several PowerShell commands and compare their outputs.
    # set the cerficates paths and password
    $PfxCertPath = "c:\[certificate name].pfx"
    $PfxCertPassword = "[password]"
    # get the encrypted pfx certificate object
    New-Object System.Security.Cryptography.X509Certificates.X509Certificate2 $PfxCertPath, $PfxCertPassword, 20
    # compare the output above with this output
    (Get-SPSecurityTokenServiceConfig).LocalLoginProvider.SigningCertificate
    [/code]
    ## Establish the server to server trust
    [code lang="ps"]
    if(-not (Get-PSSnapin "Microsoft.SharePoint.PowerShell" -ErrorAction SilentlyContinue)){Add-PSSnapin "Microsoft.SharePoint.PowerShell"}
    Import-Module MSOnline
    Import-Module MSOnlineExtended
    # set the cerficates paths and password
    $PfxCertPath = "c:\[certificate name].pfx"
    $PfxCertPassword = "[password]"
    $X64CertPath = "c:\[certificate name].cer"
    # set the onpremise domain that you added to Office 365
    $SPCN = "sharepoint.domain.com"
    # your onpremise SharePoint site url
    $SPSite="http://sharepoint"
    # don't change this value
    $SPOAppID="00000003-0000-0ff1-ce00-000000000000"
    # get the encrypted pfx certificate object
    $PfxCert = New-Object System.Security.Cryptography.X509Certificates.X509Certificate2 $PfxCertPath, $PfxCertPassword, 20
    # get the raw data
    $PfxCertBin = $PfxCert.GetRawCertData()
    # create a new certificate object
    $X64Cert = New-Object System.Security.Cryptography.X509Certificates.X509Certificate2
    # import the base 64 encoded certificate
    $X64Cert.Import($X64CertPath)
    # get the raw data
    $X64CertBin = $X64Cert.GetRawCertData()
    # save base 64 string in variable
    $CredValue = [System.Convert]::ToBase64String($X64CertBin)
    # connect to office 3656
    Connect-MsolService
    # register the on-premise STS as service principal in Office 365
    # add a new service principal
    New-MsolServicePrincipalCredential -AppPrincipalId $SPOAppID -Type asymmetric -Usage Verify -Value $CredValue
    $MsolServicePrincipal = Get-MsolServicePrincipal -AppPrincipalId $SPOAppID
    $SPServicePrincipalNames = $MsolServicePrincipal.ServicePrincipalNames
    $SPServicePrincipalNames.Add("$SPOAppID/$SPCN")
    Set-MsolServicePrincipal -AppPrincipalId $SPOAppID -ServicePrincipalNames $SPServicePrincipalNames
    # get the online name identifier
    $MsolCompanyInformationID = (Get-MsolCompanyInformation).ObjectID
    $MsolServicePrincipalID = (Get-MsolServicePrincipal -ServicePrincipalName $SPOAppID).ObjectID
    $MsolNameIdentifier = "$MsolServicePrincipalID@$MsolCompanyInformationID"
    # establish the trust from on-premise with ACS (Azure Control Service)
    # add a new authenticatio realm
    $SPSite = Get-SPSite $SPSite
    $SPAppPrincipal = Register-SPAppPrincipal -site $SPSite.rootweb -nameIdentifier $MsolNameIdentifier -displayName "SharePoint Online"
    Set-SPAuthenticationRealm -realm $MsolServicePrincipalID
    # register the ACS application proxy and token issuer
    New-SPAzureAccessControlServiceApplicationProxy -Name "ACS" -MetadataServiceEndpointUri "https://accounts.accesscontrol.windows.net/metadata/json/1/" -DefaultProxyGroup
    New-SPTrustedSecurityTokenIssuer -MetadataEndpoint "https://accounts.accesscontrol.windows.net/metadata/json/1/" -IsTrustBroker -Name "ACS"
    Add a new result source
    To get search results from SharePoint Online we have to add a new result source. Run the following script in a PowerShell ISE session on your SharePoint 2013 on-premise server. Don't forget to update the settings region
    if(-not (Get-PSSnapin "Microsoft.SharePoint.PowerShell" -ErrorAction SilentlyContinue)){Add-PSSnapin "Microsoft.SharePoint.PowerShell"}
    # region settings
    $RemoteSharePointUrl = "http://[example].sharepoint.com"
    $ResultSourceName = "SharePoint Online"
    $QueryTransform = "{searchTerms}"
    $Provier = "SharePoint-Remoteanbieter"
    # region settings end
    $SPEnterpriseSearchServiceApplication = Get-SPEnterpriseSearchServiceApplication
    $FederationManager = New-Object Microsoft.Office.Server.Search.Administration.Query.FederationManager($SPEnterpriseSearchServiceApplication)
    $SPEnterpriseSearchOwner = Get-SPEnterpriseSearchOwner -Level Ssa
    $ResultSource = $FederationManager.GetSourceByName($ResultSourceName, $SPEnterpriseSearchOwner)
    if(!$ResultSource){
    Write-Host "Result source does not exist. Creating..."
    $ResultSource = $FederationManager.CreateSource($SPEnterpriseSearchOwner)
    $ResultSource.Name = $ResultSourceName
    $ResultSource.ProviderId = $FederationManager.ListProviders()[$Provier].Id
    $ResultSource.ConnectionUrlTemplate = $RemoteSharePointUrl
    $ResultSource.CreateQueryTransform($QueryTransform)
    $ResultSource.Commit()
    Add a new query rule
    In the Search Administration click on Query Rules
    Select Local SharePoint as Result Source
    Click New Query Rule
    Enter a Rule name f.g. Search results from SharePoint Online
    Expand the Context section
    Under Query is performed on these sources click on Add Source
    Select your SharePoint Online result source
    In the Query Conditions section click on Remove Condition
    In the Actions section click on Add Result Block
    As title enter Results for "{subjectTerms}" from SharePoint Online
    In the Search this Source dropdown select your SharePoint Online result source
    Select 3 in the Items dropdown
    Expand the Settings section and select "More" link goes to the following URL
    In the box below enter this Url https://[example].sharepoint.com/search/pages/results.aspx?k={subjectTerms}
    Select This block is always shown above core results and click the OK button
    Save the new query rule

    Hi  Janik,
    According to your description, my understanding is that you want to display hybrid search results in SharePoint Server 2013.
    For achieving your demand, please have a look at the article:
    http://technet.microsoft.com/en-us/library/dn197173(v=office.15).aspx
    If you are using single sign-on (SSO) authentication, it is important to test hybrid Search functionality by using federated user accounts. Native Office 365 user accounts and Active Directory Domain Services
    (AD DS) accounts that are not federated are not recognized by both directory services. Therefore, they cannot authenticate using SSO, and cannot be granted permissions to resources in both deployments. For more information, see Accounts
    needed for hybrid configuration and testing.
    Best Regards,
    Eric
    Eric Tao
    TechNet Community Support

  • Sharepoint 2013 on premises Tags & Notes button in List and Document library is disabled.

    Hi,
    In My Sharepoint  2013 on premises  installation Tags & Notes button in List and Document library ribbon is appearing as greyed out.
    I have checked that managed metadata service, User profile services are running. Also have given required permissions to the logged in user.
    As I came to know that Tags & Notes feature has been retired in Sharepoint online. Is this happening because of same reason as I have downloaded the Sharepoint 2013 on premises version recently or do I need to change some settings.
    Please advice.

    Hi Saurav,
    pls check below
    What version of SharePoint 2010 "SP 2010 Foundation or SP 2010 Server" you need to have SP 2010 server and to have the "User Profile service application".
    How do you configure the "User Profile service application" did you add the "Social Tagging Database"
    Create, edit, or delete a User Profile service application (SharePoint Server 2010)" 
    http://technet.microsoft.com/en-us/library/ee721052.aspx
    When you access to "Application Management>Manage service applications>User Profile Service Application>Manage User Permissions" validate if the all authenticated users Group have the "use Social Features" checked.
    Also validate in Central Administration in Farm Features if you have social tags and notes activated.
    http://sharepoint.stackexchange.com/questions/17546/tagging-feature-not-working
    https://social.technet.microsoft.com/Forums/office/en-US/c11cda96-091b-4b96-91bc-ccd8000238f4/tags-and-notes-sharepoint-2010-not-visible?forum=sharepointadminprevious
    Please remember to click 'Mark as Answer' on the answer if it helps you

  • Visual WebPart Sandboxed Solutions SP 2013 on Premise

    Hello!!
    Is it possible use one visual webpart with sandboxed solutions at SP 2013 on Premise?
    I created one but when I insert on page an error occurs.
    This is an error.
    An unknown exception occurred while executing a sandboxed code solution request in the worker process.\r\n|0
    Thanks

    Hi,
    Its not possible to deploy visual web part in Sandbox solution for SP 2013 as well as 2010. see the link below for reasons
    http://www.wictorwilen.se/Post/Visual-Web-Parts-in-SharePoint-2010-cannot-be-Sandboxed.aspx
    If you still need to deploy visual webpart there is a work out on this with few limitations, pls check below.
    https://visualstudiogallery.msdn.microsoft.com/8e602a8c-6714-4549-9e95-f3700344b0d9/
    Please remember to click 'Mark as Answer' on the answer if it helps you

  • One Way Trust, Start with RWDC Then Go To RODC?

    So, we have an internal network and a DMZ network in play here.  I'm attempting to setup a one way trust so resources on the DMZ network can be managed from the internal network.  Internal network has RWDCs in its domain, and the DMZ has its own
    RWDCs in its own domain and a RODC from the internal network's domain.  The internal network's RODC is in its own site in AD and is confirmed to be communicating with the RWDCs in the internal network.  The RODC is not an authoritative DNS server,
    but can host a secondary zone or stub zone.  The functional level of the internal domain is 08r2 and the DMZ domain is 2012r2, if that matters.
    The task is to setup the one way trust, and its proving a bit difficult.  So far I've attempted both Conditional Forwarders or stub zones on the RODC and the DMZ RWDC, no dice.  There are no observed DNS replication problems within the domains
    themselves and using ping and nslookup, I've confirmed that DNS resolution is working between the RODC and the DMZ RWDC.  When I try to create the trust from the DMZ RWDCs, it fails saying the specified domain cannot be contacted.   Based on what
    I've read online in other posts and my inability to get around it, it seems that a trust requires a RWDC at each end to function.  If this is not the case, I would love to hear how it can be setup with a RWDC at one and and a RODC at the other.
    Now, if its correct that the trust requires two RWDCs to setup, what if it was setup with two RWDCs and then one of the RWDCs was removed and replaced with a RODC?  I guess what I'm asking is does it just require a RWDC at each end to be setup, or does
    it also require a RWDC at each end for the trust to function properly on an ongoing basis?

    Hi,
    Sorry it takes me some time for testing and reply.
    I've confirmed that it is fine to replace an RWDC to RODC after trusting is setup. You can set it in your environment. 
    If you have any feedback on our support, please send to [email protected]

  • How to make a two-way process to one-way process?

    Hi,
    How to make a two-way process to one-way process?
    My requirement is:
    1. I have developed an asynchronous BPEL process, and I am calling a PL/SQL procedure using a DB adapter.
    2. The property "syncMaxWaitTime"=120 seconds in domain.xml.
    3. The partner lnk is one-way operation and it takes more than 120 secons.
    4. So my process throws TimeOut error and the transaction will be rolled back.
    5. If the transaction is rolled back then the instance will not appear in the console.
    6. The wired thing is the call to DB is actually doing the complete task successfully even it takes more than 120 sec.
    7. Is there a way where I can handle this Timeout exception and bring the transaction to complete normailly?
    What I am expecting a solution like [http://download-uk.oracle.com/docs/cd/B31017_01//integrate.1013/b28981/events.htm].
    I tried this example, but in my process I am not getting onResult operation as my process is one-way process? Is there a way where I can make this a two-way operation, after taht I will try to use the Pick activity as shown in the above example.
    --Khaleel

    Hi Khaleel,
    Please refer 122.DBAdapter/advanced/endToEnd/DirectSQLPerformance/README.txt in bpel/samples/tutorials.
    See the "A-Sync to Synchronous " section to convert the asynchronous process initiated by DB adapter to a Synchronous process.
    In your case the problem can be solved by creating a synchronous BPEL process and invoke the asynchronous process initiated by DB adapter in it. You can add the pick activity in the synchronous BPEL process to monitor the timeout.
    Best Regards
    Meenal Orkey

  • Lync on premises with Exchange online UM SRV record

    Hi,
    We have Lync 2013 on premises and we have Hybrid exchange deployment, recently we have integrated Lync on premises with Exchange online UM, we have configured subscriber access and I have done all configuration, created hosted voice mail policy, created
    Subscriber access UM contact.
    Problem is that if a user dials from Lync client to voice mail (Exchange online UM Subscriber Access number) the call successfully establish, if the same user is outside the organization and wants to call the Exchange online UM Subscriber
    Access number from his mobile or from his home phone number the call doesn't connect, this problem is not from the same user any one from outside the organization can not call to subscriber access number from his mobile or from his landline (outside the organization
    numbers)
    I have done some logging on Lync Edge server and found two things:
    When a user calls from Lync client to O365 UM Subscriber access the call establish successfully and when I see the call logs I am seeing the
    [email protected] and SRV record for the domain.com is verified
    When a user calls from outside the organization (Landline or mobile) to O365 UM subscriber access the call doesn't establish and when I see the call logs I am seeing
    [email protected] and subscriber access number as
    [email protected] and the error says Unable to resolve DNS SRV record for domain it.domain.com.
    Please note our internal domain is it.domain.com and our external or smtp domain is domain.com
    In Lync 2013 the default sip domain is also it.domain.com and additional sip domain is domain.com
    Pleasae help me to resolve the issue.
    If answer is helpful, please hit the green arrow on the left, or mark as answer. Salahuddin | Blogs:http://salahuddinkhatri.wordpress.com | MCITP Microsoft Lync

    The issue is that your default domain is it.domain.com. I suspect that even if your Edge server is able to route this call back to Exchange online, that tenant will reject this call as it will not be able to find it.domain.com or federation SRV record associated
    with it.
    You will need to change your default SIP domain to your public SIP domain. If you decide to do this, please note that you will also need to review any impact on the simple URLs (and certificates if applicable).
    It is also recommended to perform an export-csconfiguration command to backup the topology before making these changes.
    Hope this helps.
    SinghP80

  • I have installed 2010 microsoft office 2010 home and business version for my laptop,and i have installed lync 2013.Now i want create online lync meeting from outlook,but i am unable view that lync icon in outlook.Please give me the solution for this que

    I have installed 2010 Microsoft office 2010 home and business version for my laptop,and I have installed lync 2013.Now i want create online lync meeting from outlook,but i am unable view that lync icon in outlook.Please give me the solution for this issue.
    Regards
    Raghavendar

    Hi Raghavendar,
    Generally, when you install Lync 2013 in the computer with Office 2010, a Lync Meeting Add-in will be installed and enabled in Outlook 2010. Please follow these steps to check it:
    1. In Outlook, click the File tab, click Options, and then click
    Add-Ins.
    2. Please take one of the following actions:
    If the add-in is in the Inactive Application Add-ins list, follow these steps:
    a. In the Manage drop-down list at the bottom of the dialog box, click
    COM Add-ins, and then click Go.
    b. Click to select the check box next to the add-in, and then click OK.
    The New Online Meeting button should now be available in
    Calendar View, and the Online Meeting button should be available when you create a new calendar item.
    If the add-in is in the Disabled Application add-ins list, follow these steps:
    a. In the Manage drop-down list at the bottom of the dialog box, click
    Disabled Items, and then click Go.
    b. Select the add-in, and then click Enable.
    c. Restart Outlook, and then verify that the add-in is displayed in the
    Add-ins dialog box.
    The New Online Meeting button should now be available in
    Calendar View, and the Online Meeting button should now be available when you create a new calendar item.
    3. In Event Viewer, view the Application log to see whether an error was logged for Outlook, for Lync 2013, the Lync Meeting Add-in for Microsoft Office 2013.
    Thanks,
    Winnie Liang
    TechNet Community Support

  • On-Prem Lync 2013 moving to Lync Online (Office 365)

    We have an office of about 130 users, all of whom use either Lync 2010 or Lync 2013 client to connect to Lync Server 2013 (on-prem). We have recently signed up for Office 365's E3 plan which includes Lync Online, which we plan on using in favor of on-prem
    Lync Server. Our internal domain name is the same as the domain we're using be using for Office 365 (i.e. "initech.com"). Externally, I can connect to Lync Online (O365) just fine - however, from my Office's LAN, the external autodiscover records
    can't be resolved.
    If I want to cut all Lync users over to Lync Online and stop using Lync Server on-prem, what do I have to do? Any internal DNS records I have to add to make sure autodiscover resolves to Office 365?
    I have the following External DNS records set up successfully - should internal DNS mirror any of these?
    CNAME records
    Host name
    Points to address or value
    TTL
    msoid
    clientconfig.microsoftonline-p.net
    3600
    sip
    sipdir.online.lync.com
    3600
    lyncdiscover
    webdir.online.lync.com
    3600
    SRV records
    Service
    Protocol
    Port
    Weight
    Priority
    Name
    Target
    TTL
    _sip
    _tls
    443
    1
    100
    sipdir.online.lync.com
    3600
    _sipfederationtls
    _tcp
    5061
    1
    100
    sipfed.online.lync.com
    3600
    Thanks!

    Hi cllpd23,
    Based on my knowledge, in a hybrid environment, the External DNS records should not be changed to use the Lync Online records.
    You should recover your External DNS records settings and only add the SRV record
     “_sipfederationtls._tcp.domain.com 5061  sip.domain.com”.
    In internal DNS server, you should add the SRV records “_sipfederationtls._tcp.domain.com 5061 sip.domain.com” and ”_sip._tls.domain.com 443 sip.domain.com”,
    and also should point to the on-premises Access Proxy.
    The related articles for your reference.
    http://technet.microsoft.com/en-us/library/jj205403.aspx
    http://technet.microsoft.com/en-us/library/gg412787.aspx
    http://support.microsoft.com/kb/2757450
    Best regards,
    Eric

  • Error sign-in to IM from Office 365 OWA to Lync 2013 on-premise

    I had been trying to integrate my Office 365 OWA with my Lync 2013 on-premises IM feature but cannot succeed. I had been following the steps in url:
    http://help.outlook.com/en-us/140/gg702674.aspx. Wonder anyone of you can offer any advices ?<v:shapetype
    coordsize="21600,21600" filled="f" id="_x0000_t75" o:preferrelative="t" o:spt="75" path="m@4@5l@4@11@9@11@9@5xe" stroked="f">
     <v:stroke joinstyle="miter">
    <v:formulas>  <v:f eqn="if lineDrawn pixelLineWidth 0">
      <v:f eqn="sum @0 1 0">
      <v:f eqn="sum 0 0 @1">
      <v:f eqn="prod @2 1 2">
      <v:f eqn="prod @3 21600 pixelWidth">
      <v:f eqn="prod @3 21600 pixelHeight">
      <v:f eqn="sum @0 0 1">
      <v:f eqn="prod @6 1 2">
      <v:f eqn="prod @7 21600 pixelWidth">
      <v:f eqn="sum @8 21600 0">
      <v:f eqn="prod @7 21600 pixelHeight">
      <v:f eqn="sum @10 21600 0">
     </v:f></v:f></v:f></v:f></v:f></v:f></v:f></v:f></v:f></v:f></v:f></v:f></v:formulas>
     <v:path gradientshapeok="t" o:connecttype="rect" o:extrusionok="f">
     <o:lock aspectratio="t" v:ext="edit">
    </o:lock></v:path></v:stroke></v:shapetype><v:shape alt="" id="Picture_x0020_2" o:spid="_x0000_i1025" style="width:317.25pt;height:237pt;" type="#_x0000_t75">
    <v:imagedata o:href="cid:[email protected]" src="file:///C:\Users\alex.tan\AppData\Local\Temp\msohtmlclip1\01\clip_image001.png">
    </v:imagedata></v:shape>

    Hi,
    Please follow this:
    How to integrate Exchange Online with Lync Online, Lync Server 2013, or a Lync Server 2013 hybrid deployment
    http://support.microsoft.com/kb/2614614
    David

  • What port number for Desktop Sharing using in Lync Server 2013 and Lync Online

    Dear All,
          My environment using Lync Server 2013 and Lync online on Office 365. I don't want my user using Desktop Sharing feature. then I need to know what port number for Desktop Sharing using in Lync Server 2013 and Lync Online.
    I will deny this port on personal firewall each client.
          Thank you for your advise.

    Hi,
    I'm not sure you'd be able to do this with ports without impacting other application sharing features such as Q&A, Whiteboard, Poll etc - I'm pretty sure they all come under the same umbrella of ClientAppSharing.
    Ordinarily you would create or modify your conferencing policy to restrict sharing to single programs only using a cmdlet similar to below;
    Set-CsConferencingPolicy -Identity "Global" -EnableAppDesktopSharing SingleApplication
    This would disable desktop sharing but enable users to continue sharing other single programs. If you want to remove that functionality too, then replace the 'SingleApplication' parameter with 'None'. Then users won't be able to share any programs either.
    This is the correct way to do it as the icons will be greyed out for the users. Doing it your way, they would still be able to click them, and it would throw an error - this will lead to a lot more support calls and people assuming a service is broken.
    I hope that helps some.
    Kind regards
    Ben

  • Lync 2013 Full Client Disconnecting and Reconnecting at various times - Lync Online Office 365

    Hello:
    We are using Lync Online with the Lync 2013 client from Office 365 Pro Plus.  The issue we have is the Lync Client will show "disconnected" and then "reconnecting" every so often (this can vary from every 10 minutes to once an hour) 
    All users are seeing this issue.  The user does not need to input anything in order to reconnect, the Lync Client will do it automatically.
    Now, I think I know the issue of the disconnect/reconnect.  We use a TrendMicro Web Filter internally (version 6.0, SP1)  When we BYPASS the Trend device, the disconnect/reconnect issue DISAPPEARS.  When we re-enable it, it comes back. 
    We added all the O365 URL to the exception list, but it hasn't helped.  We opened a ticket with TrendMicro and they are looking at it, but I am wondering if anyone else has seen this before, and if so, what they did to resolve.
    Thanks in advance,
    Tim

    Hi Rodrigo,
    I would advise running through the Lync online sign in troubleshooting tool available here;
    http://support.microsoft.com/common/survey.aspx?scid=sw;en;3695&showpage=1
    Although very basic, it should give you clear direction for further troubleshooting.
    Alternately, what's the error message you receive when logging in, and are there any details in the signing logs that can be accessed from the lynch system tray icon?
    Kind regards
    ben

Maybe you are looking for

  • IPhone not showing up in Windows Explorer

    Hi, My Environment is: iTunes v9.0.2.25 iPhone 3G; OS v3.1.2 Windows Vista When I connect my iPhone to my PC, I do not see the device under Windows Explorer nor in Device Manager. However, iTunes does pick up the iPhone and I can sync ok. I have trie

  • Select Pass Options

    data: v_form_name type rs381_fnam. call function 'SSF_FUNCTION_MODULE_NAME'   exporting     formname                 = 'zsfexample' *   VARIANT                  = ' ' *   DIRECT_CALL              = ' ' * IMPORTING     FM_NAME                  = v_for

  • I want to buy my photo book, but it says I have a corrupt jpeg. How do I find this jpeg photo to delete?

    How do I find a photo Jpeg #? The photo book I want to buy will not allow me to buy it because there is a corrrupt photo with a jpeg # of 000_0068.JPG. How do I find this photo, I can't see jpeg #'s anywhere.

  • Case sensitivity in Oracle Text

    I am familiar with the mixed_case parameter, and in my setup it is set to no, so all searches are case-insensitive. This is what I want 95% of the time, but is there a way to specify (at a query level) that a contains search is case sensitive?

  • Java se zip release

    Dear All, Does anyone know why has been the java se zip release removed from the download section? Long ago it was a possibility for experts to download the whole jdk in one archive. I need it because I'd like to try the java 6, but I use java 5, and