
Now let’s talk a bit about the external services as well. We talked about the importance of using a trusted certificate for internal servers. Use Trusted Certificates for External Services Too Then better to stay away from all this trouble and use a trusted certificate from your internal certificate authority. For instance, if your Active Directory domain isn’t a publicly routable domain, you won’t be allowed to use a public certificate. Besides that, in many cases, you may not even be allowed to use public certificates. On the other hand, if you have a trusted SSL certificate for your internal server, the transition will be a breeze.Ģ. However, if you used a public certificate for your internal Skype for Business server, you’re likely to encounter a roadblock.Ĭonsider an example where you buy a new company – when you do that and decide to add the employees of that company as users on your Skype for Business deployment, as soon as you add the new SIP address to your topology you’ll find that existing certificates for many of your won’t be valid anymore. In such a scenario if you have a trusted SSL certificate, you’ll not have many problems. As your company grows, your Skype for Business deployment will also have to scale to meet the growing demands of your business. You may save money by implementing a public SSL certificate on your internal Skype for Business server, but there’s a very good chance that it will cause problems.ġ. Use Trusted SSL Certificates for your Internal Server In this article, we’re going to do just that. Therefore, it makes sense to understand the Microsoft supported a model of SSL/TLS certificate implementation before deploying Skype for Business.
