12.07.2015 Views

MBN Administrator's Guide MS Synkronisering - Telenor

MBN Administrator's Guide MS Synkronisering - Telenor

MBN Administrator's Guide MS Synkronisering - Telenor

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

The permission checks performed by the Exchange Server when using Exchange Web services are differentfrom previous versions, and the permissions which the <strong>MBN</strong> Microsoft Synchronization client require aredifferent.To read calendar information from these Exchange Server versions, the account used by the <strong>MBN</strong> MicrosoftSynchronization client requires Exchange Impersonation permissions. To grant these permissions run thefollowing commands from the Exchange Management Shell.Exchange 2007 SP1 and upGranting impersonation permissions involves granting the right to impersonate on Exchange Server level,and to grant the “may-impersonate” right on mailbox databases. This can be done by running these twocommands:Get-ExchangeServer | Where {$_.IsClientAccessServer -eq $TRUE} | Add-ADPermission-User "cccpuser" -extendedRight ms-Exch-EPI-ImpersonationGet-MailboxDatabase | Add-ADPermission -User "cccpuser"-extendedRight ms-Exch-EPI-May-ImpersonateExchange 2010Microsoft Exchange Server 2010 uses Role Based Access control. Granting the necessary impersonationpermissions only involves assigning the correct management role to the user account used by the <strong>MBN</strong>Microsoft Synchronization Client: (i.e. cccpuser: cccpuser@mydomain.no)New-ManagementRoleAssignment –Name:<strong>Telenor</strong>Microsoft Synchronization–Role:ApplicationImpersonation –User:cccpuser@mydomain.no5.1.3 Firewall configurationBefore <strong>MBN</strong> Microsoft Synchronization Client can successfully synchronize contacts, presence, andappointments with the <strong>Telenor</strong> Mobilt Bedriftsnett directory, the following firewall configurations must bemade.Host namesDirection from TCP Port Notes<strong>MBN</strong> MicrosoftSynchronizationClient servermb.telenor.no Outgoing 443 Used to synchronize with <strong>Telenor</strong>Exchange server Outgoing 80 or443Used to access Outlook Web Access URL, portnumber depends on Exchange serverconfigurationExchange server Incoming 45872 Used for Exchange Web Services Push updates(only Exchange 2007 SP1, SP2, and Exchange2010). Port can be configured.Any Incoming 45771 Used for <strong>Telenor</strong> Outlook Synchronization Plugincommunication. Port cannot be configured.Lync server front-endservers or directorLync server front-endservers or directorOutgoing 5061 Used to log on to Lync Server infrastructure andcommunications from <strong>MBN</strong> MicrosoftSynchronization Client to Lync Server.Incoming 45871 Used for Lync Server communications to <strong>MBN</strong>Microsoft Synchronization Client. Port can beconfigured.SMTP server Outgoing 25 For sending alerts and synchronization resultsvia e-mail.<strong>MBN</strong> Administrator’s <strong>Guide</strong> <strong>MS</strong> Synchronization Side 9 av 39

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!