This article is a collection of useful resources to help you in troubleshooting Skype for Business (Lync). SfB/Lync Log File Locations Windows Client Logs. Skype for Business/Lync caches files locally on a PC or MAC to pull information quickly and efficiently. Common reasons you will want to clear Lync cache include. Skype for Business on Mac is the all new client that provides great communication experiences for Apple users. Features like one-click join, edge-to-edge video, and full screen sharing give you a superior Skype Meetings experience. If SCHANNEL is sending a truncated list of trusted root certificate authorities to the Lync client during the TLS/SSL handshake process, this can explain why your Lync clients are randomly signing in and out. Here’s the chain of events on more detail: • The UC server passes its certificate trust list (CTL) of installed certification authority information to the UC client that requests the secure TLS connection. • The CTL is truncated as per the design limitations of the Windows Server Schannel component. • The UC client that requested the secure TLS connection does not receive certification authority information that matches the entries that are contained in its installed certification authority list. • The TLS connection attempt fails with the error that is described in the “Symptoms” section. To check this look in your Lync FE servers system event log for the following warning: —- EVENT ID: 36885 When asking for client authentication, this server sends a list of trusted certificate authorities to the client. Skype For Business Mac Client Log Location![]() The client uses this list to choose a client certificate that is trusted by the server. Currently, this server trusts so many certificate authorities that the list has grown too long. This list has thus been truncated. The administrator of this machine should review the certificate authorities trusted for client authentication and remove those that do not really need to be trusted. Skype For Business Mac Client Logsa—- The easiest way to fix this is to configure SCHANNEL on the Lync FE’s not to send this list: • Click Start, click Run, type regedit, and then click OK. • Locate and then click the following registry subkey – KEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSecurityProvidersSCHANNEL • On the Edit menu, point to New, and then click DWORD Value. • Type SendTrustedIssuerList, and then press ENTER to name the registry entry. Install go global client. • Right-click SendTrustedIssuerList, and then click Modify.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |