Lync Server 部署证书验证失败
刚刚在 Windows Server 2008 R2 上部署了我的 Lync 服务器,并尝试通过另一台计算机上的 Lync 客户端进行连接。尝试登录时,客户端会抛出错误“无法登录 Lync:验证服务器证书时出现问题。”。
更深入地查看客户端框的事件查看器,我看到以下错误“从远程服务器收到的证书是由不受信任的证书颁发机构颁发的。因此,无法验证证书中包含的任何数据。SSL 连接请求失败。附加数据包含服务器证书...
我的组织有一个内部 CA,负责向 Lync 服务器颁发所有必需的证书。我的客户端已安装内部 CA(根)。对我来说,这应该会导致所有颁发的证书(包括 Lync 证书)受到信任,
并且我在 Lync 服务器所在的同一机器上安装了 Lync 客户端,并且能够正常登录。从不同的盒子连接时
有人可以透露一些信息吗?
Just got my Lync server deployed on Windows Server 2008 R2 and am trying to connect via Lync client on a different machine. When attempting to sign in, the client throws an error saying "Cannot sign in to Lync: There was a problem verifying the certificate from the server.".
Looking deeper, into the client box's event viewer, I see the following error "The certificate received from the remote serer was issued by an untrusted certificate authority. Because of this, none of the data contained in the certificate can be validated. The SSL connection request has failed. The attached data contains the server certificate. ....
My organization has an internal CA, which is in charge of issuing all required certificates to the Lync server. My client box has installed the internal CA (root) as a trusted CA provider. To me, this should cause any certificates that issues, including the Lync certificates, to be trusted.
I installed Lync client on the same box that Lync server is hoted, and am able to log in fine. My error only occurs when connecting from a different box.
Can anyone shed some light? Thanks!
如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。
绑定邮箱获取回复消息
由于您还没有绑定你的真实邮箱,如果其他用户或者作者回复了您的评论,将不能在第一时间通知您!
发布评论
评论(2)
我有同样的问题。要解决:从客户端,点击 CA 机构的 url,例如 http://CAservername/certsrv 此提供了下载选项CA 证书链。
将其放入本地计算机受信任的根证书中,我就可以开始了。
I had same issue. To resolve: from client, hit url of CA Authority, some thing like http://CAservername/certsrv this provided option to download a CA Certificate Chain.
Put this into local computer trusted root certs and I was good to go.
正如错误消息中所述(“无法登录 Lync:验证服务器证书时出现问题”),这显然是一个认证错误。如果您在一家大公司工作(他们拥有自己的内部 CA -(证书颁发机构)),则大多数情况下他们会使用其内部证书来建立信任关系。如果您只是在“本地计算机”帐户的“受信任的根证书颁发机构”下安装/导出 CA 的根证书,则应该解决此错误。
如果您的公司没有自己的 CA,请查找我们的颁发证书的机构Lynch 并将该 CA 的根证书安装/导出到与上述相同的位置,此问题应该得到解决。
As mentioned in the error message ("Cannot sign in to Lync: There was a problem verifying the certificate from the server"), this is clearly a certification error. If you work in a big company (where they have they own internal CA - (Certification Authority)) in most cases they would have used their internal certificate to establish trust relationship. If you just install/export the Root certificate of the CA under "Trusted Root Certificate Authorities” of “Local Computer” account, this error should be resolved.
If your company doesn't have own CA, then find our who issued the certificate for Lynch and install/export the root certificate of that CA to the same location as above, this issue should be resolved.