Communicator Web Access

Office Communicator Web Access (CWA) enables users who have not installed the Office Communicator client to sign in to Office Communications Server by using a Web browser. Table 3-6 lists the platform and browser matrix that Communicator Web Access supports.

Table 3-6. Platform/Browser Support

PLATFORM

BROWSER

Windows

Internet Explorer

Firefox

Mac OS X

Safari

Firefox

Solaris

Firefox

Linux

Firefox

The CWA server role must be installed on a computer joined to your Active Directory forest, because it needs Active Directory connectivity to authenticate and authorize user access. CWA can be deployed for users inside and outside the organization’s network.

CWA supports forms-based authentication, integrated Windows authentication (IWA), or custom authentication. Forms-based authentication can be used for external users. IWA refers to the native authentication protocols Kerberos and NT LAN Manager (NTLM) that are supported by Active Directory. IWA is supported only for internal usage. Custom authentication enables administrators to use a third-party authentication system to enable single sign-on or two-factor authentication. Custom authentication can be used for both internal and external users. After the user is authenticated, CWA determines the user’s home server and registers the user. Because the home server trusts the CWA server, no further authentication is performed. CWA then proxies all traffic to and from the user’s home server, as shown in Figure 3-8.

Internal deployment of CWA

Figure 3-8. Internal deployment of CWA

The process illustrated in Figure 3-8 is as follows:

  1. The user connects to the CWA URL to sign in.

  2. CWA authenticates the user.

  3. User requests are sent over HTTPS.

  4. CWA proxies requests to the user’s home server over SIP.

Collocating CWA on the same physical computer as another supported server role will diminish the overall performance of your server. Most customers in smaller deployments collocate CWA with a Director to avoid the cost and management of another physical server. If you have deployed Office Communicator to all your users, usage of CWA is likely to be light enough for a Director to handle because Office Communicator will be the primary client.

When making CWA accessible from outside your organization’s firewall, it is strongly recommended that you secure your CWA server by using a reverse proxy such as Microsoft Internet Security and Acceleration (ISA) Server 2006 in your network perimeter. When configuring CWA for external access, you should use port 443. This topology is illustrated in Figure 3-9.

External deployment of CWA

Figure 3-9. External deployment of CWA

Table 3-7 lists the system requirements for CWA, including supported browsers.

Table 3-7. Hardware and Software Requirements for CWA

COMPONENT

REQUIREMENT

Computer and processor

64-bit, dual processor, dual core with 3.0-GHz or faster processor

Memory

4-GB DDR (double data rate), 266-MHz RAM

Hard disk

18 GB of available hard disk space

Network adapter

100-Mb or higher network adapter

Operating system (all 64-bit editions)

Windows Server 2008 Standard Edition, Windows Server 2008 Enterprise Edition, Windows Server 2003 Standard Edition, Windows Server 2003 R2 Standard Edition, Windows Server 2003 Enterprise Edition, or Windows Server 2003 R2 Enterprise Edition

Supported browsers

Internet Explorer 6.0 (SP1 recommended), Firefox 1.0, Safari 1.2.4, Netscape 7.2

Other

Office Communications Server 2007 R2, .NET Framework 2.0, ASP.NET 2.0, Public Key Certificates for Transport Layer Security (TLS), HTTPS, and IIS version 6.0 running on Windows Server 2003 or IIS version 7.0 running in IIS 6.0 compatibility mode on Windows Server 2008

Note

To get the most up-to-date information about Communicator Web Access, refer to http://www.microsoft.com/technet/prodtechnol/office/communicationsserver/evaluate/sysreqs/cwa.mspx.

..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset
3.147.55.69