Skip to main content
 
Go Search
Home
Categories
Bloggers
OCS R2 Edge Bombshell
By: Jeff Schertz | Posted: October 14, 2008 at 11:54 AM

Yes, you read this correctly: In a single-server Edge deployment a private IP address is now supported on the A/V Edge Role.  It is still recommended to use a public IP address and is still not supported for scaled Edge deployments, but through some magical alignment of the stars (or more likely some work by the product team) this requirement has changed for the better.

As minor as the point seems to be in the documentation, there must be at least 2 posts every week in the TechNet forums asking how and why the previous requirement for a public IP address was in place for OCS 2007 and stating what a problem it is for smaller shops to get a fully-functional deployment up and running.  It’s also a major stumbling block in proof-of-concept and sandbox labs.

Basically, the R2 documentation states it is supported if the external firewall can be configured to filter inbound traffic with DNAT and outbound traffic can be configured with SNAT then.  There is also a note that if ISA Server 2006 is used as the external firewall then this scenario may not work.  Another repeated statement is that in no scenario should the internal firewall perform Network Address Translation between the Edge Server’s internal IP address and the internal network hosting the Front-End and other OCS and Active Directory servers.  This appears to have been misunderstood previously and has been specifically reworded more clearly.

Another welcome change to the A/V Edge configuration requirements is that the RTP TCP/UDP inbound port range of 50000 to 59000 is no longer required with R2, but is optionally supported.  The client A/V communications can be limited to just the STUN UDP 3478 and TCP 443 ports, greatly simplifying the external firewall configuration.  So if a current deployment already has the firewall configured for the previous 50000-59000 port range, then OCS R2 still supports using them, but new deployments can benefit from these changes off the bat.


  Comments   Add Comment   Share It  
  Your Name:
  Your Email: **will not be displayed
  Comment Title:
* Comments:
  If you cannot read the code, please
click here to get a new one. You won't
lose your comments by doing so.
* Security Code:
   
  
  
* Your Name:
* Your Email: **will not be displayed
* Recipient's Email:
* Subject:
  If you cannot read the code, please
click here to get a new one. You won't
lose your comments by doing so.
* Security Code:
  
  
  
Re: where do you get this information
By: Jeff Schertz | Posted: May 19, 2009 at 7:49 AM
The R2 product documentation can be found here: http://technet.microsoft.com/en-us/library/dd250572(office.13).aspx
where do you get this information
By: Tobias Wagner | Posted: May 13, 2009 at 5:34 AM
hi, thanks for those great posts concerning OCS 2007. As you mentioned in this post, the R2 documentation differs in some points from the "R1" documentation. Where can I find the R2 documentations ? At microsoft.com i haven't found any versions for R2. Thanks
Re: Not really an improvement!
By: Jeff Schertz | Posted: November 24, 2008 at 10:48 AM
Your point is correct, but it's still a step in the right direction and as organizations move to R2 those ports can be closed off in future.
Not really an improvement!
By: Jan Boguslawski | Posted: November 21, 2008 at 11:37 PM
Hi Jeff, as you wrote this is only possible with a single box R2 Edge Server. But you will be like "an island in the sea" when it comes to federations. You can't have VoIP and Video with this Single R2 Edge when your partner has an R1 Edge Server or a R2 HLB Edge! Imagine the weird user experience: "Oh we can do with that, but not with that partner..." etc. Best regards, Jan
Re:
By: Jeff Schertz | Posted: October 17, 2008 at 9:23 AM
As far as I know the product documentation is still in beta and has not yet been publicly released.
By: iamme | Posted: October 14, 2008 at 1:10 PM
Thanks for sharing. Is R2 not under NDA anymore? Any place we can get the documentation as I can't find it? T hanks!
 

 About Jeff Schertz

Senior ConsultantJeff Schertz is a senior consultant for PointBridge, focused on unified communications. He has over 10 years of experience in the IT industry ranging from family-owned businesses to global product dev... [more]

View Jeff Schertz's profile on LinkedIn
Microsoft Certified IT Professional

 Tag Cloud

 External Links

 ‭(Hidden)‬ Admin Links