Lync 2013 Edge and Reverse proxy on same server with SNI

Hello

I cannot find information if it is possible to create a single Lync 2013 Edge server with a Reverse proxy on the same server?

Would it not be possible to share port 443 with SNI support? That way we could use only one public IP?

Thanks!

February 16th, 2015 9:35am

Sorry, it doesn't work.  Remember that 443 isn't HTTPS for the Edge.  If you went with the single IP model for the edge, 443 would be used for the A/V role which would be STUN/TURN. 

The edge will always want to listen on 443, it just doesn't work to collocate a reverse proxy.

Free Windows Admin Tool Kit Click here and download it now
February 16th, 2015 9:54am

Would the A/V role not support being hosted on another port? I guess autodiscover will tell the clients to use another port automatically?

That would free up the 443 port?

February 16th, 2015 10:03am

The internal NIC will also want to listen on 443.  You could try, but it's not supported, not designed this way and just doesn't work well. 

Free Windows Admin Tool Kit Click here and download it now
February 16th, 2015 10:21am

Hi Mobay,

the following solution is not supported: if you give 4 IP to the Internet facing NIC (3 for EDGE + 1 for RP) you can add the RP role to your EDGE server. I've made it with Apache (before the ARR solution became the standards RP for Lync).
It works, but as not supported, if you have some issue you are alone....
About SNI, I'm not sure but 99% it doesn't works.

Regards
Luca

February 16th, 2015 3:31pm

Thanks for the answers everyone. I am bit confused about the edge role.

Are any of the 3 edge services actual websites that the users will visit through a browser? i. e. the Access Edge service,Web Conferencing Edge service or A/V Edge service?

Because if not, what benefit is there to use 443 over any other port?

Free Windows Admin Tool Kit Click here and download it now
February 17th, 2015 2:50am

They are not HTTPS, they are encrypted. Port 443 is used because it is likely to be opened no matter what firewall you may be behind. Just used for maximum compatibility.
February 17th, 2015 6:49am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics