在 Lync Server 2013 中同步處理 Kerberos 驗證帳戶密碼至 IISSynchronize a Kerberos authentication account password to IIS in Lync Server 2013

 

主題上次修改日期: 2010-11-08Topic Last Modified: 2010-11-08

若要順利完成此程序,您應以 RTCUniversalServerAdmins 群組成員的使用者身分登入。To successfully complete this procedure you should be logged on as a user who is a member of the RTCUniversalServerAdmins group.

在網站中,前端伺服器、Standard Edition 伺服器及 Director 可以使用 Kerberos 驗證帳戶,以驗證要求 Web 服務服務的要求。In a site, Front End Servers, Standard Edition servers, and Directors can use a Kerberos authentication account for purposes of authenticating requests to the Web Services service. 此程式會在已獲指派 Kerberos 帳戶的網站中,找出每一部執行 Web 服務的伺服器,並更新 Internet Information Services (IIS) 設定設定為使用 Kerberos 帳戶。This procedure locates each server running Web Services in a site that has been assigned a Kerberos account and updates the Internet Information Services (IIS) configuration settings to use the Kerberos account. 如需詳細資訊,請參閱在 Lync server 2013 中的伺服器上設定 Kerberos 驗證帳戶密碼For details, see Set a Kerberos authentication account password on a server in Lync Server 2013.

若要設定 Kerberos 驗證帳戶密碼To set and configure a Kerberos authentication account password

  1. 以 RTCUniversalServerAdmins 群組成員的身分登入來源電腦 (例如 fe01.contoso.com)。Log on to a source computer (such as fe01.contoso.com) as a member of RTCUniversalServerAdmins group.

  2. 啟動 Lync Server 管理命令介面:依序按一下 [ 開始]、[ 所有程式]、[ Microsoft Lync server 2013],然後按一下 [ Lync server 管理命令介面]。Start the Lync Server Management Shell: Click Start, click All Programs, click Microsoft Lync Server 2013, and then click Lync Server Management Shell.

  3. 在 [Lync Server 管理命令介面] 命令列中,執行下列兩個命令:From the Lync Server Management Shell command line, run the following two commands:

    Set-CsKerberosAccountPassword -FromComputer SourceComputer -ToComputer DestinationComputer
    

    例如:For example:

    Set-CsKerberosAccountPassword -FromComputer fe01.contoso.com -ToComputer dir01.contoso.com
    

    重要

    來源電腦和目的地電腦的名稱必須是伺服器的完整網域名稱 (FQDN)。除非 FQDN 集區名稱與您作為來源電腦或目的地電腦使用的電腦名稱相同,否則您無法使用該集區 FQDN。The name of the source computer and destination computer must be a fully qualified domain (FQDN) name of the server. You cannot use the pool FQDN unless the pool name is the same as the name of the computer that you are using as a source computer or destination computer.

    重要

    在對 Kerberos 驗證進行任何變更(例如新增帳戶或移除帳戶)之後,您必須從 Lync Server 管理命令介面命令提示字元中執行 Enable-CsTopologyAfter making any changes to Kerberos authentication, such as adding an account or removing an account, you must run Enable-CsTopology from the Lync Server Management Shell command prompt.