Solved

Where to place Lync Mediation Server

Posted on 2014-12-31
13
389 Views
Last Modified: 2015-01-01
In Lync environment, I believe Edge Server should be in the DMZ and probably Mediation Server too (I am not sure).
inside the Network we can have Lync Server ( called Frond End).

I need to confirm whether Mediation server needs to be in DMZ

Thank you
0
Comment
Question by:jskfan
13 Comments
 
LVL 57

Assisted Solution

by:Cliff Galiher
Cliff Galiher earned 334 total points
ID: 40526303
In most topologies, the mediation server is colocated on the FE server. The only time you'd break it out is in a SIP trunk situation where media bypass is not an option. In such cases, the SIP trunk is still a specific static eoute, so a DMZ offers no benefit but severely complicates things. It would be very unusual to put a standalone mediation server in a DMZ, in my opinion.
0
 
LVL 20

Assisted Solution

by:Satya Pathak
Satya Pathak earned 83 total points
ID: 40526430
0
 
LVL 8

Assisted Solution

by:Steven Sheeley
Steven Sheeley earned 83 total points
ID: 40526511
The mediation server in Lync 2010/2013 is, or can be, collocated on the front end server. To enable Microsoft Lync server 2010/2013 for Enterprise voice scenarios, you need to implement a Mediation server. This server role has one purpose, which is transcoding known signaling and codecs to Microsoft’s own RT Audio codec (Real time Audio). And the mediation server is a part of your domain, INSIDE the DMZ, not a part of the DMZ.
0
Does Powershell have you tied up in knots?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

 

Author Comment

by:jskfan
ID: 40526563
http://jaapwesscom.files.wordpress.com/2014/11/image54.png
on the Diagram shown in the above link, it looks to me like Mediation server is in the DMZ ??
0
 

Author Comment

by:jskfan
ID: 40526568
I also want to know when they say bypass the Mediation server, does that mean they do not need to use Mediation server at all.?
0
 
LVL 57

Assisted Solution

by:Cliff Galiher
Cliff Galiher earned 334 total points
ID: 40526570
Any reason why you consider a random wordpress blog authoritative? There is plenty of bad advice on all sorts of topics on the internet.
0
 
LVL 57

Expert Comment

by:Cliff Galiher
ID: 40526571
"when they say bypass the Mediation server"
Who is "they?"  The question as you worded it is too vague to remotely answer.
0
 

Author Comment

by:jskfan
ID: 40526575
http://technet.microsoft.com/en-us/library/gg398719.aspx

Media bypass is a Lync Server capability that enables an administrator to configure call routing to flow directly between the user endpoint and the public switched telephone network (PSTN) gateway without traversing the Mediation Server
0
 
LVL 57

Assisted Solution

by:Cliff Galiher
Cliff Galiher earned 334 total points
ID: 40526584
As the name implies, media bypass *only* has the media stream bypassing the mediation server. This is done to improve call quality. The mediation server is still required for SIP traffic. This is illustrated well here:

http://technet.microsoft.com/en-us/library/gg398703.aspx
0
 

Author Comment

by:jskfan
ID: 40526993
OK Cliff...so Bypassing, will still use Mediation Server for Traffic Signaling, it will just skip the media traffic...

Thanks

Can you please just clarify the placement of the Mediation server, whether it goes in the DMZ or inside the network ?
I wonder if this diagram is correct :
http://jaapwesscom.files.wordpress.com/2014/11/image54.png
0
 

Author Comment

by:jskfan
ID: 40526998
I know the article is  from wordpress...
however if Media Server is directly connected to SIP provider, that might raise some concerns...
0
 
LVL 57

Accepted Solution

by:
Cliff Galiher earned 334 total points
ID: 40527054
As I said, in a SIP trunking scenario, the route should be so restricted that a DMZ is unnecessary. If the trunk provider is very untrusted, I'd be putting an SBC at the edge (or in the DMZ) and then have the mediation server only talk to the SBC. Either way, I see no benefit to putting a standalone mediation server in a DMZ. It is a topology I'd never use.
0
 

Author Closing Comment

by:jskfan
ID: 40527073
Thank you so much for clearing this up!
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

As with any other System Center product, the installation for the Authoring Tool can be quite a pain sometimes. This article serves to help you avoid making these mistakes and hopefully save you a ton of time on troubleshooting :)  Step 1: Make sur…
We are happy to announce a brand new addition to our line of acclaimed email signature management products – CodeTwo Email Signatures for Office 365.
To show how to generate a certificate request in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.:  First we need to log into the Exchange Admin Center. Navigate to the Servers >> Certificates…
Viewers will learn the different options available in the Backstage view in Excel 2013.

776 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question