Federation
48 TopicsAdding External but Federated users in a group chat
I would like to know how to Add external teams users (NOTE: not guests, and users i.e. more than one) to group chats Context We currently have a multi domain setup - domain A, domain B, etc. All users have teams enabled The users in these domains are already setup to talk to each other, without switching teams tenant i.e. as external users, not guest users When creating a group chat in domain A, I can add multiple users from domain A. However, I am only able to add one external user from another domain(any domain other than A. Question Is it currently possible to add multiple external users given the recent updates to the federation capabilities? Am I (and more likely my sysadmin) missing anything in the admin console that would enable this functionality?Solved9.7KViews1like10CommentsSFB SRS we can't sign you in because the server couldn't be reached or the server version is incompa
Hi, We have a demo for the logitec smartdock. We have a hybrid env with ADFS. This is what we did. Create user onprem. (pw never expires) synced to the cloud create mailbox onprem migrated mailbox to cloud changed mailbox to room Set-Mailbox mail@domain.com -Type Room Then we added the proper license E1 Then i logged in to sfbonline powershell and did the following command. First found out what our registrarpool was. Enable-CsMeetingRoom -Identity mail@domain.com -RegistrarPool 'ourdomain.com' -SipAddressType MailAddress When this was ok i tryed to logon to sfb on my phone with new user this is no problem. However when we add the credendtials to the logitech smartdock we get following error. we can't sign you in because the server couldn't be reached or the server version is incompatible. Device is not joined to the domain. Any ideas ? Kind Regards, David8.8KViews0likes3CommentsNew Skype4B Hybrid Setup - On-Prem has no Presence for Online Users
Just set up a new Skype4B hybrid (first time in yeeeeeeeeeeers). Attaching an on-premises pool with one set of SIP addresses to a Skype4B Online environment with another set of domains for SIP addresses. Online users can see the presence info and communicate with On-Prem users. On-Prem users can respond back to Online users if the Online user initiates the conversation. On-Prem users cannot see presence info for Online users and get an error stating "We couldn't reach [user] to send this message." Event Viewer says: "A SIP request made by Lync failed in an unexpected manner (status code 80ef0194). More information is contained in the following technical data:" and " Response Data: 404 Not Found ms-diagnostics: 1003;reason="User does not exist";destination="kfrancis@wildcats.unh.edu";source="sip.unh.edu";OriginalPresenceState="0";CurrentPresenceState="0";MeInsideUser="Yes";ConversationInitiatedBy="6";SourceNetwork="5";RemotePartyCanDoIM="Yes";RetriedInvite="true" " If I move an On-Premises user to the cloud, they can see all the users.8.1KViews0likes9CommentsMigrate from Skype for Business Hybrid to Skype for Business online
Has anyone attempted this and what was your experience? We are currently in the process of moving all of our users from on-premises to the cloud. I found a great article that goes through some steps modify DNS to support online only connnectivity. https://blogs.technet.microsoft.com/praj/2016/03/25/migration-of-skype-for-business-hybrid-environment-to-skype-for-business-online/ The article doesn't go into detail about managing accounts or removing all of the on-premises servers. Our goal is to completely remove our on-premises servers. However, I'm not sure if this is possible if we sync our on-premises AD accounts to Azure AD. We don't create accounts in Office 365, so to enable new accounts, we might still have to keep the on-premises environment in place, at least one pool to move users from onprem to the cloud.Solved7.9KViews0likes19CommentsHybird SIP domain
If we plan to hybrid a sip domain on the tenant, but they have five sip domains. I know if we plan to hybrid one sip domain and we need to hybrid four domains on a same tenant. For the DNS, can we still point four hybrid domains to lyncdiscover to lynconline? All sip domains Sip federation SRV records will point to on-premise edge server. Thanks.Solved7.2KViews0likes23CommentsSkype for Business Mobile App + Smart Card Required
I'm using Skype for Business via my Office365 subscription and my domain in Office365 is federated against my on-prem ADFS-infrastructure. My user in the local AD have the option "Require Smart Card for interactive logon" enabled, which means that I do not know my own AD-password. When I tried to login to Skype for Business on my Android phone, the app wanted my username and password to sign in, but unfortunately the password is unknown for me since I have "Require Smart Card for interactive logon" enabled in local AD. Is there any way for me to get the Skype for Business app to work on my phone (Android & iOS) without knowing my own AD-password?Solved7KViews0likes23CommentsSFB disconnection after 90 minutes
Hi, We have federated users (e.g. @123.com) joining a SFB session hosted by our user (e.g. @aaa.com). In this meeting, the federated users are having discussions in the SFB session when there is no one from our side are in the meeting. After 90 minutes, the session is disconnected. Is there any limitation that after SFB Online detected that there isn't any hosted user in the skype session, therefore, it disconnect the session after 90 minutes? Thanks.5.7KViews0likes4CommentsMS Teams - External Access (Federation) Conditional Access
I am familiar with setting up Conditional Access policies to block member and guest users, using named locations but can't find information on whether these policies would also be applied to federated external users of Teams - e.g. I have CAP to block non-UK access to Teams service - are Teams federated users affected by this policy? Can anyone answer this please and ideally reference the relevant Microsoft Docs article? [Update] https://docs.microsoft.com/en-us/microsoft-365/security/office-365-security/teams-access-policies?view=o365-worldwide I think this article has the answer, CAP doesn't apply to external access: External access is for an external user that does not have an Azure AD B2B account. External access can include invitations and participation in calls, chats, and meetings, but does not include team membership and access to the resources of the team. Conditional Access policies only apply to guest access in Teams because there is a corresponding Azure AD B2B account.5.3KViews1like1CommentOn Prem Skype Federation to Office 365
We are using Office 365, but are trying to setup federation with partners who have on prem installations. Does anyone with an OnPrem installation have a checklist of steps to take to enable a new organziation using Skype Online? Every time we do it it seems to be a trial and error process for them and since we don't have an onprem setup there is little that we can do to help. Thanks in advance.5.1KViews0likes8CommentsChange PIC federation from SfB Online to SfB Hybrid
Hi SfB Folks, we changed our Demo environment from pure SfB Online to SfB Hybrid. What I forgot is the PIC federation. Now the federation to Skype for Consumer is not working anymore. Technet is describing this scenario here: https://technet.microsoft.com/en-us/library/dn440172.aspx Saying "If you have already set up Lync Online for external communications with this domain, you must turn it off, wait for 24 hours, and start again, first by entering your on-premise information at https://pic.lync.com and then turning on external communications for Lync Online" I tried this but the update to the service is failing. What i did is the following: Went to SfB Online -> disabled external communication Waited for 24 hours. Went to pic.lync.com and tried to update the existing service. During this you get asked for the "Access Edge service FQDN" you want to update. Since my SfB environment was hosted online I entered sipfed.online.lync.com. But this is failing (Page timeout) I also tried to stop and to start a new Provisioning request with no luck. Any ideas? Anybody who did this successfully? Regards, PaulSolved3.6KViews0likes7Comments