Wednesday, 28 August 2013

Lync 2013 LHPv2 supported features

I thought this would be a useful comparison to compare Lync 2013 LHPv2 supported features compared to its predecessor Lync 2010 LHPv1.
The biggest win from a customer standpoint is Lync IP Phones and true VOIP mobility with the Lync 2013 Mobility Apps for Android, iOS and Windows Phone.

 
Feature Lync Server 2013 Hosting Pack
Presence
1 to 1 and multi-party IM/Presence Yes
Contacts list Yes
Address Book Service Web Query service Yes
Distribution List Expansion protocol (DLX) Yes
Instant Messaging (IM)
Point-to-point IM Yes
Multiparty/Group IM Yes
Persistent Chat No
PC to PC audio/video dial out calling Yes
File transfer Yes
Mobile VoIP to PC audio Yes
Click to communicate from Office apps Yes
Interactive contact card in Office 2010 and Office 2013 Yes
Lync skill search in SharePoint Server (on-premises) Yes
Lync skill search in SharePoint Online No
Privacy mode No
Client Support
Lync Client 2010 and Lync Client 2013 Yes
Web app for joining scheduled meetings Yes
Rich attendee client (joining meetings) Yes
Mac attendee client Yes
CWA (2007 R2) No
OC 2007 R2 No
Lync phone edition (Lync-based IP phones) No
Support expected in a future release
Lync Attendant client (receptionist rich client) Yes
Lync Server 2010 version
Communicator Mobile (Windows Phone 6.x) No
Lync Mobile Yes
Lync desktop client Yes
Mac Messenger Yes
Attendee (meeting only) Yes
Lync Mobile clients Yes
(for Android, Windows Phone, iPhone) (If provisioned)
Conferencing and Online Meetings
Meeting attendee capacity 250
Point-to-point audio/video Yes
Video conferencing over IP Yes
Audio conferencing over IP only Yes
Meeting recording Yes
Registration No
Public Events page No
Customer branding No
Customer invitations No
Managed Q&A No
Virtual breakout rooms No
Easy Assist No
Desktop sharing Yes
Application sharing Yes
White boarding and annotation Yes
Office document upload No
PowerPoint upload Yes
Polling Yes
Unauthenticated in Web App (reach) Yes
Unauthenticated attendee (rich client) Yes
Scheduled conferences using Outlook plugin Yes
Round table support Yes
Lobby Yes
Integration with select partners for PSTN audio conferencing (ACP) Yes
Provisioning for approved ACP partners for Office 365 customers No
Scheduling an online meeting in OWA Yes
Client side recording and playback Yes
Cloud side recording and playback No
Authenticated experience in Web app (reach) No
Generate a link to a scheduled meeting via web page Yes
PSTN audio conferencing in MCUs Yes
via audio conferencing provider
1:1 Chat Yes
Backstage/Content Preview for Presenters Yes
Mute / Unmute all attendees Yes
Mute / Unmute individual attendees Yes
In-meeting Attendee Permission Controls Yes
Interoperability with on-premises video conferencing systems Yes
via 3rd party
Multimedia, JPEG, Text Page, Web Page, Yes
Screen snapshot (Desktop Annotation)
PSTN dial-out from scheduled meetings Yes
via audio conferencing provider
Ad-hoc audio dial-out conferencing Yes
VoIP via SIP Trunk
“Meet now” audio dial-out conferencing Yes
via audio conferencing provider
Scheduled audio dial-out conferencing Yes
via audio conferencing provider
Sharing
Point-to-point/multiparty data conference (white boarding) Yes
Point-to-point/multiparty file share Yes
Point-to-point/multiparty desktop and application sharing Yes
Point-to-point/multiparty Microsoft PowerPoint® slide sharing Yes
Polling Yes
Integration
Microsoft Outlook integration for IM, presence, calendar Yes
(with users on the same hosting partner)
Microsoft SharePoint® integration for IM, presence Yes
(with users on the same hosting partner)
Public IM Connectivity and Federation
Inter-tenant federation Yes
Federation with Extensible Messaging and Presence Protocol (XMPP) No
IM/P/A/V Federation with Office Communications Server, Yes
Lync Server, Lync Online
IM/P/A/V with Windows Live Messenger / Skype Yes
IM/P and voice with Skype Yes
Public IM connectivity and presence No
AOL®, Yahoo!®, Windows Live
IBM Sametime federation No
Calling features
Public switched telephone network (PSTN) calling via Lync Yes
incoming and outgoing
Ad-hoc PSTN dial-out for meetings No
Call controls Yes
hold, transfer, forward, simultaneous ring
Voice policies Yes
Access to Exchange Online voice mail No
Team call Yes
Delegation (boss-admin) for Voice No
Call park No
Outgoing DID manipulation No
E-911 No
Dial plans & Policies No
IP desk phone support Yes
Resilient Branch Office Appliance No
Call Admissions Control (CAC) No
Support for Analog devices (e.g. FAX) No
Response groups Yes
via 3rd party
Private Line (secondary DID for execs) No
Direct connectivity with PBX via gateways Yes
Direct SIP for audio with on-premises IP-PBXs Yes
Direct SIP for signaling (presence updates) with on-premises IP-PBX Yes
RCC (click-to-call) with on-premises PBX No
Malicious call trace No
Unassigned Number No
Network QoS – DSCP No
Media path optimization No
Phone number management No
CDR & billing reporting Yes
Integration with call center solutions (Aspect) Yes
Team call YES
Delegation Yes
Private line (secondary Direct Inward Dialing (DID)) No
Call park No
Outgoing DID manipulation No
Voice features
Private dial plans No
Hosted Exchange Unified Messaging (UM) for voice mail Yes
ACP Integration with select carriers Yes
'Voice integration with select carriers Yes
Security and Archiving
IM & media encryption Yes
IM filtering Yes
Anti-malware scanning for meeting content and file transfers Yes
IM archiving (server side) Yes
SharePoint and Exchange Co-existence
Presence Integration with Exchange/SP on-premises Yes
Presence integration with Exchange/SP online Yes
On-premise UM integration with Exchange Online No
UM integration with Exchange on-premises Yes
Hybrid with Lync Online
Server/cloud co-existence (split domain) on user basis (some users on-premises, some users online) No
Splitting workloads (eg. Voice on-premises, IM&P in the cloud) No
Administration and Manageability
Windows PowerShell support Yes
Lync Server Control Panel UI No
Feature Configurability Per User Yes
Attendee/User Reporting No
Reporting (CDR, QoE) Yes
Support for 3rd party applications
Client automation APIs (client side) Yes
Server side APIs Yes
Support
Tenant User support No
IT Support Yes



 Take care,


Oliver Moazzezi - MVP Exchange Server


 

Wednesday, 17 April 2013

Customizing Role Assignment Policies for multi-tenants in Exchange Server 2013: Gal Pictures

When dealing with multi-tenants in Exchange Server 2013 (RTM and CU1) with a Hosting Control Panel that can only feed data into Exchange, rather than taking data back out of it to back-fill the Portal we have to lock down certain elements to only allow a customer to edit certain aspects via their desginated Panel Provider.
 
Take Exchange 2013, by default in most multi-tenant Hosting Orgs “MyContactInformation”, “MyPersonalInformation”, “MyMobileInformation” and “MyAddressInformation” and disabled, only allowing a tenant to configure this from the Hosting Control Panel.
 
The biggest issue this presents is that this means a user cannot change their Photo within OWA, as this is locked into “MyContactInformation”
 
 
1. A user cannot change their picture and thus it is empty, giving an unfulling experience in Outlook, OWA and Lync.
 
 
 
2. The logged in user can’t change their picture
 
 
3. Additionally other information is locked down also
 
 
 
So if we log into the EAC we can see this is because the Default Role Assignment Policy has “MyContactInformation”, “MyPersonalInformation”, “MyMobileInformation” and “MyAddressInformation” disabled. Standard practice in nearly all Enterprise Hosting environments.
 
 
 
So how can we keep this aspect locked down, allowing co-existence with a Control Panel but allowing tenants to actually upload pictures to get a more fulfilling experience?
 
Let takes a look at the Management Roles in question in PowerShell. We can do this simply by using “Get-ManagementRole”
 
 
So we can see above that “MyContactInformation” owns “Set-UserPhoto”, “Remove-UserPhoto” and “Get-UserPhoto”. We can take this built in Management Role and create a custom one from it, to allow pictures to be uploaded and used.
 
 
Let’s create a new Management Role using “New-ManagementRole”. We’ll call it “Oliver Test” and create it from the parent “MyContactInformation”
 
 
 
Now if I view this new Management Role I can see it has all the cmdlets from the parent.
 
 
 
I can now start to customise it by removing certain cmdlet elements. You can see I am using “Get-MangementRoleEntry”, specifing the cmdlet I do not want, and then removing it with “Remove-ManagementRoleEntry”
 
 
Once I have cleaned up my Management Role “Oliver Test”, let’s look at what I have left. You can see I now have just the cmdlets needed to allow photos to be uploaded and removed and edited if desired.
 
 
Logging back into the EAC I can now see this new Management Role under the Default Role Assignment Policy. I check it to enable it.
 
 
Logging back into my tenant user I am now able to change my photo, allowing picture integration into Outlook, OWA and Lync.
 
 
 
Checking the rest of my details you can see as before I cannot edit them, keeping the unity of your Hosting Control Panel which should control these settings.
 
 
 
Finally let’s log into OWA and Lync and see the new experience!
 
 
 
I hope this helps Hosters to integrate pictures into Exchange 2013 Enterprise. I will look to push a new blog out in a few weeks for managing different Role Assignments Policies per tenant in Exchange 2013 Enterprise.
 
Have a great week!
 

Take care!
 
Oliver Moazzezi - MVP Exchange Server

 



Monday, 11 March 2013

Lyncdiscover redirection using CNAME records

There is a great article and download on Lync Mobility from Microsoft here.

http://www.microsoft.com/en-us/download/details.aspx?id=28355


One thing that it doesn't specifically cover _exactly_ is the Lync App from the Windows Store for Windows 8.

When using iOS, Android or Windows Phone devices we can specifically set an https url location for the lyncdiscover service, for example: https://lyncdiscover.contoso.com. However this is not possible to set using the Windows 8 app.

So Lync deployments that have multiple SIP domains in use but only one lyncdiscover record on these devices manually enter https://lyncdiscover.contoso.com, if they have a SIP address of user@tailspintoys.com, but are ultimately part of the same Lync infrastructure.

In the above guide it mentions using CNAME records to create for example, a lyncdiscover CNAME record for the tailspintoys.com domain, pointing it to lyncdiscover.contoso.com.

Now if your reverse proxy solution only has port 443 open this redirect will fail on Windows Phone and iOS devices. Newer Android devices appear to be able to cope with the redirection and bind to SSL ok, hence many organizations simply entering the lyncdiscover record manually in the setup information.

But as I said this work-around doesn't exist for the Windows 8 app. So here's what you do.

1. On your reverse proxy solution as well as having the 443-4443 redirection to the Lync Director or Front End pool that owns the this lyncdiscover endpoint, also add an 80-8080 rule. This will then allow a CNAME in DNS to work on iOS and Windows Phones, and also the Windows 8 app.

2. Once this is configured simply open the Windows 8 Lync app and when logging in you will receive a redirection notice (which just like autodiscover redirects for Exchange you can set to only prompt the first time)


 
 
 

  
The Windows 8 app will then allow your users to login. Additionally this will also allow your iOS and Windows Phone devices to use discovery also and login without additional manual input.
 
 
 
So is this really needed? Well if you only have a select few SIP domains you can simply add these additional lyncdiscover records to your public SSL certificate and just pay any additional fees that come from your SSL provider for adding extra SAN names. But in a multi-tenant environment where you may have many hundreds of domains the only real solution at this time is the above.
 
Looking at my recent blogs it has all been about Lync so I have a few Exchange 2013 blogs I will get out of the door in the next two weeks.
 
Take care!
 
Oliver Moazzezi - MVP Exchange Server
 


 

Friday, 15 February 2013

Lync 2010 Mobilty service MCX Director install issue

I recently had an issue on Lync 2010 Directors where the entire Lync Mobility install would occur, not just the autodiscover service like you would expect.

Information on the internet for this appears to be vague at best so I thought a clear post about the issue should help others clear this up and fix it without some serious head scratching.
 
When deploying the Lync Mobility service you can easily see what parts are installed from the command line process.
 
 
Lync Front End:
 
Lync Director:
 
 
However I was repeatedly getting both the autodiscover and mcx component installed on a Director server.
 
So how was that possible? Surely the process realises it is a Director server right?
 
Well it turns out the above isn’t entirely true. It checks to see on the server it is being installed on whether the McxPrimaryListeningPort and MxcSIPExternalListningPort are set.
If these are anything other than zero it will install both packages and the Lync Mobility service will not work if you are directing users to your Directors!
 
So how did this happen and how do we fix this?
 
Well the issue was caused because I ran the following on both the Director and Lync Front End FQDNs:
 
Set-CSWebServer LyncDirector_FQDN –McxSIPPrimaryListeningPort “value” –McxSIPExternalListeningPort “value”
 
And specified a value other than zero, 0.
 
When configuring this service this should only be run against your Front End FQDNs.
 
So to fix this I ran:
 
1. Set-CSWebServer LyncDirector_FQDN –McxSIPPrimaryListeningPort 0 –McxSIPExternalListeningPort 0
2. Remove the Lync Mobility Service via the uninstall feature from Programs and Features
3. Re-deploy the Lync Mobility Service via the bootstrapper process (and as a side note only ever do it via .\bootstrapper.exe, running it via the UI appears to unlock a number of bugs)
 
You should now find you get the following on your Director:
 
 
All fixed!
 
Take care,

Oliver Moazzezi - MVP Exchange Server