الفريق العربي للبرمجةأرشيف المنتديات · 2000 – 2023
نسخة أرشيفية للقراءة فقط — التسجيل والمشاركة مغلقان، والمحتوى محفوظ كما كان.

سؤال في LCS

مغلق
بدأه aminoo في 9 نوفمبر 2006 · 16 رد · 1,255 مشاهدة · في منتدى الشبكات العام
مشاركة: واتساب X فيسبوك تيليجرام
#1 صاحب الموضوع

مرحبا يا شباب

لدي domain بفرض اسمه test و لدي 40 يوزر موجودين في أقسام مختلفة من الشركة

لدي LCS أريد التالي :

بفرض لدي اليوزر 1 و ال 2 و 3

أريد أن أجعل 1 و 2 يتكملمون مع بعضهم

1 و 3 يتكملمون مع بعضهم

ولكن 2 و 3 لا

هل يمكنني عمل مثال ذلك

حاولت أن أبحث عن شيء في غروب البوليسي يمنع المستخدم من إضافة كونتاكت لديه و لكن لم أجد

هل هناك حل ؟؟؟؟؟!!!!!!

و مشان الله لا تآخذوني على وضعه في رد لموضوع سابق

تجارب وخبرات

#2

صراحة معرفش ازا فيه حل للموضوع ده من خلال ال LCS ... ممكن busbar يفيدك ...

لكن هناك حل اخر باستخدام ال IPSec ... لكنه معقد نسبيا و سيسبب لك مشاكل على مستوى ال Sharingداخل الشبكه و ال Communication بين الاجهزه ... بمفهوم انك قد تحصل على نتيجة مرادك بعدم اتصال البعض بالبعض و لكن ال IPSec ليس فقط على مستوى الاتصال و انما ايضا على مستوى مشاركة الملفات حيث يجب توافر Pre-Shared Key او Certificate لاتمام عملية الاتصال بين الاجهزه التي تستخدم ال IPSec ...

It's hard to stay in such ridiculous situation

#3

مشكور أخي على الرد

بس مبين عليها سيران مجقق يعني شغلة طويلة

و بدها تعمل مشاكل لأنو أنا مو معتمد ال IPsec

نرجو المساعدة ازا كان عندو علم او شي طريقة

تجارب وخبرات

#4

اخيرا سؤال محترم نفكر فيه

حلو فيه طريقة ن طريق اضافة مستخدم في ال Block list بتاعت المستخدم التاني و دي ممكن تعملها من ال ADUC او ال LCS administrator console

الحاجة التانية استعمال سؤقهحف lcsaddace.wsf سكريبت الموجود في ال LCS resource kit

ده ملف مساعدة الملف للاطلاع

---

This script accepts two text files as input:

1. File with ACEs

2. File with users

The file with users can contain a list of Live Communications Server users, a list of distinguished names for Active Directory® directory service containers containing users, or both.

To add ACEs execute the script using the following command

cscript lcsaddaces.wsf /usersFile:<usersFileName> /acesFile:<acesFileName>

The script will then attempt to add ACEs specified in the ACEs input file for each of the users specified in the users input file. In the input file for users, users can be specified by the sip:user@domain values or, if ACEs are to be added for all Live Communications Server users in an Active Directory container, by the dn:cn=lcsusers,cn=company,cn=com values.

As ACEs are being added output is displayed on the command prompt. The output can be redirected to an output file by using the redirection operator “>”. The typical output contains a summary of input parameters, successful and failed operations.

Back to Top

Delete ACEs

To delete ACEs execute the script using the following command:

cscript lcsaddaces.wsf /usersFile:<usersFileName> /acesFile:<acesFileName> /delete

The script will then attempt to delete ACEs specified in the ACEs input file for each of the users specified in the users input file. In the users input file, users can be specified by the sip:user@domain values or, if ACEs are to be deleted for all Live Communications Server users in an Active Directory container, by the dn:cn=lcsusers,cn=company,cn=com values.

As the ACEs are being deleted output is displayed on the command prompt. The output can be redirected to an output file by using the redirection operator “>”. The typical output contains a summary of input parameters, successful and failed operations.

Back to Top

Input Files Format

For the “/usersFile” option, the proper input file format is as follows:

sip:userX@domain

sip:userY@domain

dn:cn=lcsusers,cn=company,cn=com

Each sip:user@domain or dn:cn=lcsusers,cn=company,cn=com must be at the beginning of a new line. If a distinguished name (dn) of an Active Directory container is specified then contacts will be added for all Live Communications Server users in it.

For the “/acesFile” option, the proper input file format is as follows:

user sip:userX@domain Allow Allow

user sip:userY@domain Prompt Allow

domain companyX.com Block Deny

domain company.com Deny Deny

all Deny Deny

Each line must be in the “Type Mask Subscriptions Invitations” format. Each line must have a type entry (“all”, “domain” or “user”), a subscriptions entry (“Allow”, “Prompt”, “Block” or “Deny”) and an Invitations entry (“Allow” or “Deny”). Mask entry is only needed when type is “user” or “domain”, if type is “all” then Mask should not be specified. Each of these entries must be separated by a single white-space character and each ACE entry must be a new line.

The input files must be in ANSI or Unicode format. UTF-8 format files are not supported.

Back to Top

Output Format

Output is displayed on the command prompt or can be redirected to a file by using the redirection operator “>”.

The output lists the summary of the command-line options, the details of Live Communications Server users for which ACEs have to be added and the result of each put operation for an ACE.

A successful put will have a line in the output as follows:

[+] Put successful for ACE: user(Type) sip:user@domain(Mask) Allow(Invitations) Allow(Subscriptions)

A failed put will have a line in the output as follows:

[-] Put failed for ACE: user(Type) sip:user@domain(Mask) Allow(Invitations) Allow(Subscriptions) Error Number: Error Description

An invalid entry in the input file for contacts will have a line in the output as follows:

[Err] Invalid line in filename: ‘line item’

---

ممكن مراجعة الرابط التالي ايضا

http://msgoodies.blogspot.com/2006/03/popu...-in-office.html

طريقة محمد في ال IPSEC جميلة و بصراحة فكرنا فيها قبل كده ممكن تجربها بلا خوف على الفايل سيرينج لانه ا LCSE بيستعمل بورت 5060 في حالة استعمال TCP و 5061 في حال استعمال TLS و بالتالي ضع ال IPSEC rule على البورتين دول فقط

و اتمنى انه يسشتمر النقاش في الموضوع و ان تطرح مواضعي جميلة كهذه

تم تعديل هذه المشاركة بواسطة busbar في 9 نوفمبر 2006 في 23:31

Mahmoud Magdy

MVP - Exchange Server. MCITP (Windows Server 2008, Exhcange Server 2010,/2007),CCNP, MCTS(OCS 2007 R2, SCCM 2007)

Tech Lead

Ingazat Information Technology

Follow me on twitter: http://www.twitter.com/_busbar

my blog: http://autodiscover.wordpress.com

Link with me on linkedin: http://www.linkedin.com/profile?viewProfile=&key=71027694

or on experts-exchange.com: http://www.experts-exchange.com/M_1426100.html

#5

أول شي مشكور كتير

تاني شي

أنا أريد أن يكون المنع من عندي وليس من عند اليوزر

بهذه الحالة أصبح اليوزر يستطيع فك البلوك متى يريد

ما رأيكم ؟؟؟؟

سؤال على الماشي وكتير ضروري

أريد أن أقوم بإضافة اليوزر الموجودين لدي بشكل أتوماتيكي لكافة اليوزر

يعني

أنا عملت اضافة لكل اليوزر على الماسنجر تبعي و عملت اكسبورت للملف

و الآن بدل من أذهب لكل يوزر و أقوم بعمل import أريد أن أقوم بها بشكل أتوماتيكي من عند يعلى السيرفر

هل ممكن هذا

و نتابع التقاش طبعاً بالموضوع الأساسي

بس ياريت لو أنو نتناقش أكتر لأنها ضرورية

يعني بدي طبقها عندي على السيرفر

تجارب وخبرات

#6
اقتباس
طريقة محمد في ال IPSEC جميلة و بصراحة فكرنا فيها قبل كده ممكن تجربها بلا خوف على الفايل سيرينج لانه ا LCSE بيستعمل بورت 5060 في حالة استعمال TCP و 5061 في حال استعمال TLS و بالتالي ضع ال IPSEC rule على البورتين دول فقط

تمام كده يا ريس ... حكاية ال Ports دي فاتتني ... بس ما دام ممكن نتحكم بال IPSec من خلال البورت الخاص لل LCS يبقى كده تمام ... و مافيش حد يقدر يضيف حد إلا بإذن اللي عاوز يضيفو و ده من خلال ال Pr-Shared Key ...

اما موضوع ال Script يا برنس فأنا صراحة تهت فيه شوية و كلو ساح على بعضو :rolleyes:

It's hard to stay in such ridiculous situation

#7

امينو السكريبت بيع الصلاحيات من عندك و لن يستطيع المستخدم ان يشيلها

بالنسبة لسؤالك حول اضافة مستخدمين الى كل اليوزرز في سكريبت تاني اسمه LCSadd و ده سهل جدا

-

@ محمد

هو محتاج شوية قراية و بصراحة انا لم استخدمه من قبل لكني استعملت LCSadd و كل السكريبتات تمشي بنفس الطريقة

Mahmoud Magdy

MVP - Exchange Server. MCITP (Windows Server 2008, Exhcange Server 2010,/2007),CCNP, MCTS(OCS 2007 R2, SCCM 2007)

Tech Lead

Ingazat Information Technology

Follow me on twitter: http://www.twitter.com/_busbar

my blog: http://autodiscover.wordpress.com

Link with me on linkedin: http://www.linkedin.com/profile?viewProfile=&key=71027694

or on experts-exchange.com: http://www.experts-exchange.com/M_1426100.html

#8

اول شي مشكورين كتير كتير كتير

تاني شي

و الله انا لسع ما اشتغلت بال ipsec ممكن المساعدة

بخصوص سكريبت ال lcs add فما لقيتوه وين ممكن لاقيه

ممكن الإفادة

والله خجلان منكم

بس لسعتني بأول كورساتا ال mcse

تجارب وخبرات

#9

LCS resource kit دور عليها و نزلها

Mahmoud Magdy

MVP - Exchange Server. MCITP (Windows Server 2008, Exhcange Server 2010,/2007),CCNP, MCTS(OCS 2007 R2, SCCM 2007)

Tech Lead

Ingazat Information Technology

Follow me on twitter: http://www.twitter.com/_busbar

my blog: http://autodiscover.wordpress.com

Link with me on linkedin: http://www.linkedin.com/profile?viewProfile=&key=71027694

or on experts-exchange.com: http://www.experts-exchange.com/M_1426100.html

#10

مشكور كتير و لكن ماذا عن ال ipsec

هل اقوم بعملها عن طريقه ام عن طريق السكريبت هلي عطيتني ياه

تخربطت صراحة شوي و مافهمت كتير فيه للسكريبت ياريت لو تساعدني و دلني على الطريقة او على شي موضوع ذات صلة

مع الشكر الكبير لك على الحالتين

تجارب وخبرات

#11

اقرا شرح السكريبت في اللينك بالاعلى

Mahmoud Magdy

MVP - Exchange Server. MCITP (Windows Server 2008, Exhcange Server 2010,/2007),CCNP, MCTS(OCS 2007 R2, SCCM 2007)

Tech Lead

Ingazat Information Technology

Follow me on twitter: http://www.twitter.com/_busbar

my blog: http://autodiscover.wordpress.com

Link with me on linkedin: http://www.linkedin.com/profile?viewProfile=&key=71027694

or on experts-exchange.com: http://www.experts-exchange.com/M_1426100.html

#12

اخي الكريم

حسب ما فهمت انو لح ظبت الليست تبع اليوزر ولكن هل يستطيع اليوزر بهذه الحالة اضافة مستخدم جديد....

أصبحت العملية على الشكل

انه اريد تحديد لكل مستخدم مجموعة موظفين فقط و لا يستطيع اضافة .... او التكلم مع احد

عهل بهذه الحالة تنفع

عذراً على أسالتي

بس على مهلك عليي و الله مالي خبير كتير يعني لسع بأول الطريق

تم تعديل هذه المشاركة بواسطة aminoo في 10 نوفمبر 2006 في 15:30

تجارب وخبرات

#13

و انا برضوا مجربتش السكريبت ده قبل كده خالص لذا جب و قولنا بالنتيجة لانه انا معنديش LCS environement.الان

Mahmoud Magdy

MVP - Exchange Server. MCITP (Windows Server 2008, Exhcange Server 2010,/2007),CCNP, MCTS(OCS 2007 R2, SCCM 2007)

Tech Lead

Ingazat Information Technology

Follow me on twitter: http://www.twitter.com/_busbar

my blog: http://autodiscover.wordpress.com

Link with me on linkedin: http://www.linkedin.com/profile?viewProfile=&key=71027694

or on experts-exchange.com: http://www.experts-exchange.com/M_1426100.html

#14

براسي يا سيدي

تجارب وخبرات

#15

مشي الحال يا سيدي

بس الصراحة ما ساويتها عن طريق الملف

فتت على LCS كونسل

و ظبتت الليست تبع كل يوزر على كيفي و أت بكون ما بدي ياه يحكي مع جدا بضيف اليوزر و بنقي الخيار الرابع deny يعني حتى ولو ضافو الزلمة التاني مالو لح يحكي معو

بانتظاركم

تجارب وخبرات

#16
اقتباس
و ظبتت الليست تبع كل يوزر على كيفي و أت بكون ما بدي ياه يحكي مع جدا بضيف اليوزر و بنقي الخيار الرابع deny يعني حتى ولو ضافو الزلمة التاني مالو لح يحكي معو

اي خدمة

Mahmoud Magdy

MVP - Exchange Server. MCITP (Windows Server 2008, Exhcange Server 2010,/2007),CCNP, MCTS(OCS 2007 R2, SCCM 2007)

Tech Lead

Ingazat Information Technology

Follow me on twitter: http://www.twitter.com/_busbar

my blog: http://autodiscover.wordpress.com

Link with me on linkedin: http://www.linkedin.com/profile?viewProfile=&key=71027694

or on experts-exchange.com: http://www.experts-exchange.com/M_1426100.html

#17

لا يا سيدي مشكور

بس أنت خبرتني ألك

هي وحدة

بس حبيت ألك بالنسبة لموضوع الارشفة هلي سكرتلي ياه :)

أنو مشي الحال و مشكور كتير و للعلم ساويت برنامج ليجبلي ياهون من الداتا بيز لعندي و ضمن كويري بتنقي الاسم بيعطيك الريكوردس تبعو ......

مع الشكر لكم و لمنتداكم الأكثر من رائع

تجارب وخبرات

هذا الموضوع مغلق.

مواضيع مشابهة