locked
SIP/2.0 401 Unauthorized RRS feed

  • 問題

  • 最近有用戶突然不能Sign in LCS 2005 (with Office Communicatior 2005). 檢查 Tracking Log


    -----------------------
    -----------------------
    o: <sip:raymond.chan@abc.com>
    Call-ID: 102f55017454489a95efc98f3f104e8b
    CSeq: 1 REGISTER
    Contact: <sip:10.118.16.204:7277;transport=tcp>;methods="INVITE, MESSAGE, INFO, SUBSCRIBE, OPTIONS, BYE, CANCEL, NOTIFY, ACK, REFER, BENOTIFY";proxy=replace
    User-Agent: LCC/1.3.5371 (Microsoft Office Communicator 2005 1.0.559.0)
    Supported: com.microsoft.msrtc.presence, adhoclist
    Supported: ms-forking
    ms-keep-alive: UAC;hop-hop=yes
    Event: registration
    Allow-Events: presence
    Content-Length: 0


    07:39:08.726 F94:F70 INFO  :: End of Sending Packet - 10.160.16.28:5060 (From Local Address: 10.118.16.204:3202)
    07:39:08.944 F94:F70 INFO  :: Data Received - 10.160.16.28:5060 (To Local Address: 10.118.16.204:3202):
    07:39:08.944 F94:F70 INFO  :: SIP/2.0 401 Unauthorized

    Date: Sat, 18 Apr 2009 23:39:10 GMT
    WWW-Authenticate: NTLM realm="SIP Communications Service", targetname="LCS28.us.abc.com"
    WWW-Authenticate: Kerberos realm="SIP Communications Service", targetname="sip/LCS28.us.abc.com"
    Via: SIP/2.0/TCP 10.118.16.204:7277;ms-received-port=3202;ms-received-cid=6b00
    From: <sip:raymond.chan@abc.com>;tag=6741080fba;epid=74b2488681
    To: <sip:raymond.chan@abc.com>;tag=2400413938C9F74B5FF878D3C90ADF63
    Call-ID: 102f55017454489a95efc98f3f104e8b
    CSeq: 1 REGISTER
    Content-Length: 0


    07:39:08.944 F94:F70 INFO  :: End of Data Received - 10.160.16.28:5060 (To Local Address: 10.118.16.204:3202)
    07:39:08.944 F94:F70 INFO  :: SIP_MSG_PROCESSOR::GetChallengeListForPlatform ProtocolsFromPlatform=0xe
    07:39:08.944 F94:F70 TRACE :: SIP_STACK::FindProviderSAContext SA_CONTEXT found:sip/LCS28.us.abc.com- 00CCE550, this 00CC5C88
    07:39:08.944 F94:F70 TRACE :: SIP_STACK::FindProviderSAContext SA_CONTEXT found:sip/LCS28.us.abc.com- 00CCE550, this 00CC5C88
    07:39:08.944 F94:F70 TRACE :: SIP_STACK::FindProviderSAContext SA_CONTEXT found:sip/LCS28.us.abc.com- 00CCE550, this 00CC5C88
    07:39:08.944 F94:F70 TRACE :: Async work item posted for Init-SA: 0
    07:40:09.163 F94:F70 ERROR :: SIP_MSG_PROCESSOR::CompleteSAProcessingAndGetAuthHeader InitializeSecurityContext failed: 0x80090311


    --------------


    07:39:08.944 F94:F70 INFO  :: SIP/2.0 401 Unauthorized
    未被授權?????
    我確信用戶password 正確無誤


    THANK

    2009年4月19日 上午 02:00

解答

  • 解決方法:
    Change the server authentication to NTLM only.

    1. Log on to the Live Communications Server 2005 server as a member of the RTCUniversalServerAdmins group.
    2. Open Live Communications Server 2005.
    3. In the console tree, expand the forest node, and then do one of the following:
      • For an Enterprise pool, expand Enterprise pools, expand the pool, right-click Front Ends, and then click Properties.
      • For a Standard Edition Server, expand Standard Edition servers, right-click the pool, click Properties, and then click Front End Properties.
    4. Click the Authentication tab.
    5. On the Authentication tab, in the Authentication protocol list, click the protocol “NTLM”.

     

    • 已標示為解答 LOGINTCK 2009年5月26日 下午 12:20
    2009年4月27日 上午 05:45
  • 謝謝分享
    Lusheng
    • 已標示為解答 LOGINTCK 2009年5月26日 下午 12:20
    2009年5月5日 上午 03:26

所有回覆

  •  你好:

     請問該使用者的帳戶有設定只能登入到特定的幾台電腦嗎?


    Lusheng
    2009年4月24日 上午 06:06
  • 解決方法:
    Change the server authentication to NTLM only.

    1. Log on to the Live Communications Server 2005 server as a member of the RTCUniversalServerAdmins group.
    2. Open Live Communications Server 2005.
    3. In the console tree, expand the forest node, and then do one of the following:
      • For an Enterprise pool, expand Enterprise pools, expand the pool, right-click Front Ends, and then click Properties.
      • For a Standard Edition Server, expand Standard Edition servers, right-click the pool, click Properties, and then click Front End Properties.
    4. Click the Authentication tab.
    5. On the Authentication tab, in the Authentication protocol list, click the protocol “NTLM”.

     

    • 已標示為解答 LOGINTCK 2009年5月26日 下午 12:20
    2009年4月27日 上午 05:45
  • 謝謝分享
    Lusheng
    • 已標示為解答 LOGINTCK 2009年5月26日 下午 12:20
    2009年5月5日 上午 03:26