Public Versus Private Certificate Authorities

A common misconception is that all of these certificates should be purchased from a public certificate authority, which is only partly true. Only certificates used for the external-facing Edge interface should come from a public certificate authority. The Edge Server’s internal interface certificate can be issued from a private certificate authority that is trusted only by internal servers and clients.

Microsoft has partnered with a few certificate vendors to ensure that the X.509 certificates work with Lync Server. Those vendors are listed here:

• Entrust

• Comodo

• Digicert

• GoDaddy

Certificates from other vendors also work if all clients trust the certificate, but Microsoft has not verified those ...

Get Microsoft® Lync® Server 2013 Unleashed Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.