在 Lync Server 2013 中,移除網站的 Kerberos 驗證In Lync Server 2013 remove Kerberos authentication from a site

 

主題上次修改日期: 2012-01-16Topic Last Modified: 2012-01-16

若要順利完成此程序,您應以 RTCUniversalServerAdmins 群組成員的使用者身分登入。To successfully complete this procedure you should be logged on as a user who is a member of the RTCUniversalServerAdmins group.

如果您需要從網站移除 Kerberos 驗證或淘汰網站,您必須使用 get-cskerberosaccountassignment 指令程式,從網站移除 kerberos 驗證帳戶指派。If you need to remove Kerberos authentication from a site or retire a site, you must remove the Kerberos authentication account assignment from the site by using the Remove-CsKerberosAccountAssignment cmdlet. 使用下列程式可移除 Kerberos 驗證帳戶指派,這會移除網站中所有電腦的指派。Use the following procedure to remove the Kerberos authentication account assignment, which removes the assignment from all computers in the site.

警告

如果您永久淘汰已啟用 Kerberos 的帳戶,您應該在移除指派後,使用 Active Directory 使用者和電腦從 Active Directory 網域服務中刪除。If you are permanently retiring the Kerberos-enabled account, you should use Active Directory Users and Computers to delete it from Active Directory Domain Services after you have removed the assignment. 如果您打算今後使用該物件,您可能會想要保留 Active Directory 物件。If you plan to use the object in the future, you might want to keep the Active Directory object.

移除網站的 Kerberos 驗證To remove Kerberos authentication from a site

  1. 以 RTCUniversalServerAdmins 群組成員的身分,登入執行 Lync Server 2013 的網域中的電腦,或登入已安裝系統管理工具的電腦。As a member of the RTCUniversalServerAdmins group, log on to a computer in the domain running Lync Server 2013 or on to a computer where the administrative tools are installed.

  2. 啟動 Lync Server 管理命令介面:依序按一下 [ 開始]、[ 所有程式]、[ Microsoft Lync server 2013],然後按一下 [ Lync server 管理命令介面]。Start the Lync Server Management Shell: Click Start, click All Programs, click Microsoft Lync Server 2013, and then click Lync Server Management Shell.

  3. 在命令提示字元中執行下列命令:From the command line, run the following two commands:

     Remove-CsKerberosAccountAssignment -Identity "site:SiteName"
    
     Enable-CsTopology
    

    例如:For example:

     Remove-CsKerberosAccountAssignment -Identity "site:Redmond"
    
     Enable-CsTopology
    

    重要

    在對 Kerberos 驗證進行任何變更(例如新增帳戶或移除帳戶)之後,您必須從 Lync Server 管理命令介面命令提示字元中執行 Enable-CsTopologyAfter making any changes to Kerberos authentication, such as adding an account or removing an account, you must run Enable-CsTopology from the Lync Server Management Shell command prompt.