Reverse Proxy

To support external access to the Director web services, it is recommended to use a reverse proxy as shown in Figure 9.6. Although this is technically possible, it is not supported by Microsoft to allow Internet traffic directly to the external web services ports. A reverse proxy helps to increase security by inspecting the HTTP and HTTPS traffic and filtering any malicious requests. Refer to Chapter 6, “Microsoft Lync Server 2013 Edge Server,” for configuration of a reverse proxy such as Microsoft Forefront Threat Management Gateway.

Image

Figure 9.6. External and internal web services names.


Warning

Performing a port translation at the firewall from TCP 4443 to TCP 443 is not a supported configuration. A reverse proxy offers additional inspection abilities and terminates the SSL stream from a remote user and initiates a new SSL connection to the Director.


..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset