XMPP gateway configuration to gmail
-
quinta-feira, 12 de abril de 2012 14:27
So this question has been asked before. But I have not been able to solve my issue with any of the posts here. Details incoming!
The error I keep getting is this:
Text
: Non-trusted source with a request URI that is not eligible for static routing
I followed these blogs when installing:
http://technet.microsoft.com/en-us/library/ee806452.aspx
http://blogs.pointbridge.com/Blogs/schertz_jeff/Pages/Post.aspx?_ID=91Those were the best blogs I could find, and I followed them making communication between XMPP server and access edge, all ports are open and host files are filled out correctly. I even tried moving the installation from OS Server 2008 R2 to Server 2008 and still get the same error.
I read this post: http://social.technet.microsoft.com/Forums/ha-Latn-NG/ocspresenceim/thread/60a04fac-8ab5-4a49-9bb6-f7678c72cf32
Exported and imported intermediate and root certificates still no success.
I have tried deleting the allowed rule and enabling it again, and got the logs correctly in my event logs as seen here;
The following rule was added to the Access Edge Server routing table: Type: allowed partner server; FQDN: xmpp01.domain.com:5061; Domain: gmail.com; User validation level: UseSourceVerification
So... Before opening a ticket at Microsoft, does anyone have a solution on this? :)
Kind regards, Thomas Laursen
Todas as Respostas
-
segunda-feira, 16 de abril de 2012 02:35Moderador
Hi,Thomas,
Is your XMPP server trying to route to the internal Edge?If so this maybe the problem,all routing to and from the XMPP server should hit the external NIC of the edge.
Also,please verify the MTLS Cert assigned under the SIP Configuration of the XMPP GW matches the internal FQND of the XMPP GW rather than the external XMPP GW.
If still no luck please enable logging tool and Netmon on Edge Server and check the XMPP logs to get more specfic information for troubleshooting.
Here are some other information for your reference.
http://ocsguy.com/2010/11/29/deploying-lync-for-xmpp/
http://www.lynclog.com/2011/04/xmpp-gateway-with-lync-2010.html
B/R
Sharon
Sharon Shen
TechNet Community Support
************************************************************************************************************************Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question.
- Marcado como Resposta Thomas Laursen sexta-feira, 27 de abril de 2012 12:06
-
segunda-feira, 16 de abril de 2012 10:11
Hi Sharon,
Communication is between XMPP and external interface. Also i am pretty sure that it is an certificate error, but am puzzled about the fact that I can establish a connection from Lync to Google, and not from google to lync. I even tried to copy all the certificates to the right folders and still no change.
I will try and setup some network monitoring and get back.
Kind regards, Thomas Laursen
-
domingo, 22 de abril de 2012 00:38
Hi Thomas
Checkout www.NextPlane.net... NextPlane provides a cloud based UC Federation service to federate Lync with XMPP Platforms and service as well as IBM Sametime.
--Farzin
-
terça-feira, 24 de abril de 2012 08:15Moderador
Hi,Thomas,
Any updates here?
If still no luck please verify that you have installed the required root certificate or intermediate certificate from Internal CA or Public CA on XMPP server,also please make sure your host entires are set correctly,such as Access Edge FQDN mapped DMZ IP address for Access Edge server,etc.
Besides,here is a good blog for troubleshooting XMPP and Edge issue.
B/R
Sharon
Sharon Shen
TechNet Community Support
************************************************************************************************************************Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question.
- Editado Sharon.ShenMicrosoft Contingent Staff, Moderator terça-feira, 24 de abril de 2012 08:16
-
terça-feira, 24 de abril de 2012 18:03
Hi Sharon,
Have been really busy, but will look into this tomorrow or the day after. I will follow up on the installation and reply in here.
Kind regards, Thomas Laursen
-
sexta-feira, 27 de abril de 2012 12:09
I made new certificates from the internal CA and it started working. I don't know why, since the certificates were valid. Anyhow that made it work for me. :)
Kind regards, Thomas Laursen
- Marcado como Resposta Thomas Laursen sexta-feira, 27 de abril de 2012 12:09

