Plantronics + Polycom. Now together as Poly Logo

Unable to login to lync 2013 using PIN

Occasional Advisor

Unable to login to lync 2013 using PIN

Hi,

 

We are currently testing Polycom devices to use in our brand new Lync 2013 environment. Since this is a test i haven't set up any configuration server yet, so I am configuring the phones by hand. We have 2 models we are trying out, the VVX410 and the VVX310. I've connected these devices to the network (PoE) and they startup just fine. Using the web interface i configured to use the lync base profile.

 

Using some guides I found on the internet i have setup my MS DHCP server to distribute option 120 and 43 (using the DHCPUTIL tool). On the scope I am using for the phone I can see there is a vendor class with suboptions, and an option 120. When I use the DHCP util on a client machine with the option -EMULATECLIENT, I get a result like this :

 

Received Packet
Sender:10.5.1.201:67, Size:358
--Begin Packet--
DHCP: ACK                (xid=9F46659B)
DHCP: Op Code           (op)      = 1
DHCP: Hardware Type     (htype)   = 6
DHCP: Hops              (hops)    = 0
DHCP: Transaction ID    (xid)     = 2672190875
DHCP: Seconds           (secs)    = 0
DHCP: Flags             (flags)   = 0000
DHCP: Client IP Address (ciaddr)  = 10.5.50.4
DHCP: Your IP Address   (yiaddr)  = 0.0.0.0
DHCP: Server IP Address (siaddr)  = 0.0.0.0
DHCP: Relay IP Address  (giaddr)  = 10.5.1.201
DHCP: Client HW Address (chaddr)  = 101F74FDA0D9
DHCP: Server Host Name  (sname)   =
DHCP: Boot File Name    (file)    =
DHCP: Magic Cookie                = 99.130.83.99
DHCP: Option Field
    DHCP: DHCP MESSAGE TYPE(  53) = (Length: 1) DHCP ACK
    DHCP: Server Identifier(  54) = (Length: 4) 10.0.0.203
    DHCP: Client Identifier(  61) = (Length: 0)  ()
    DHCP: SIP Server( 120)        = (Length: 17) enc:0 pool.ssc.local (0004706F6
F6C03737363056C6F63616C00)
    DHCP: Host Name(  12)         = (Length: 0)
    DHCP: Vendor Identifier(  60) = (Length: 0)
    DHCP: Param Req List(  55)    = (Length: 0) 0 0
    DHCP: Vendor Info(  43)       = (Length: 81) ☺♀MS-UC-Client☻♣https♥♫pool.ssc
.local♣%/CertProv/CertProvisioningService.svcÜ♥NAP (010C4D532D55432D436C69656E74
02056874747073030E706F6F6C2E7373632E6C6F63616C05252F4365727450726F762F4365727450
726F766973696F6E696E67536572766963652E737663DC034E4150)
    DHCP: End of this option field
--End Packet--


Result: Success
DHCP Server : 10.5.1.201
SIP Server FQDN : pool.ssc.local
Certificate Provisioning Service URL : https://pool.ssc.local/CertProv/CertProvisioningService.svc

 

So I guess the DHCP setup is correct.

However when I try to login using the PIN mode, the phone comes with a warning :

 

Lync Sign in has failed, Internal server error.

 

When I open th log files using the phone's webpage I get the following result:

 

0325090753|so   |4|00|[soRegistrationC] Login Credentials valid causing SoRegEventLine Changed
0325090754|cfg  |4|00|Prov|Unknown suboption received for DHCP option 43

0325090754|app1 |*|00|SoRegistrationEventLineChanged - success lineIndex 0 RegListSize 0
0325090754|app1 |*|00|SoRegistrationEventLast - new AppRegLineC, Default user
0325090755|sip  |*|00|dhcpOption120LyncQuery
0325090755|utilm|4|00|uBLFUnCompressed: File /ffs0/Config/Local/WebTicket/0/certProvSvc.mex doesn't exist or is empty
0325090757|utilm|4|00|uBLFUnCompressed: File /ffs0/Config/Local/WebTicket/0/certProvSvc.mex doesn't exist or is empty
0325090757|tls  |*|00|Saving new Custom application CA certificate 6
0325090757|tls  |*|00|New Certificate Common Name 'SSC-Root' Fingerprint 'D7:2D:60:A3:76:BD:70:27:5C:1A:4C:5A:F4:3A:88:CF'
0325090757|tls  |*|00|Old Certificate Common Name 'SSC-Root' Fingerprint 'D7:2D:60:A3:76:BD:70:27:5C:1A:4C:5A:F4:3A:88:CF'
0325090757|utilm|4|00|uBLFUnCompressed: File /ffs0/Config/Local/WebTicket/0/webTicketSvc.mex doesn't exist or is empty
0325090757|tickt|4|00|doXmlRequest curl rc not OK (60) respCode 0
0325090757|tickt|5|00|soWebticketGetAllUserInfo: soWebTicketServersGetPinAuthService Failed
0325090757|sip  |*|00|Sip Register Usr:VVX410 Dsp:VVX 410 Auth:'Using Login Cred' Inx:0
0325090812|cfg  |4|00|Prov|Server did not respond to request for file 0004f2625e5a-phone.cfg
0325090812|cfg  |4|00|Prov|Uploading phoneLocal.cfg failed

 

I can see the certificate being installed on the phone, but there is also a mention of an unknown suboption for DHCP Option 43.

When I login using my sip name, and AD credentials there is no problem.

 

We would definitely like to use the PIN logon method, can someone please help me figure this out ?

 

regards.

Marco

Message 1 of 18
17 REPLIES 17
Polycom Employee & Community Manager

Re: Unable to login to lync 2013 using PIN

Hello Marco,

welcome to the Polycom Community.

It is always useful to include the currently used software version as issues experienced may already be addressed in a newer release.

This also allows yourself and others to check against current software release notes.

The above is also stated in the "Read First: Welcome to the Polycom VoIP Forum"

Therefore the Polycom VoIP FAQ contains this post here:

Question: How can I find out my SIP UC Software Version or the BootROM Version of my Phone?
Resolution: Please check here

 

and in addition:

 

Jul 11, 2014 Question: Why can we not sign into LYNC via Pin & Extension?

Resolution: Please verify that the phone has the correct time and the Option 43 and Option 120 is setup in the DHCP scope as explained =>here <= or => here <= 


Please ensure to provide some feedback if this reply has helped you so other users can profit from your experience.

Best Regards

Steffen Baier

Polycom Global Services




<======== Signature / Disclaimer ========>
Please be aware:For questions about the type of support to expect please check here

Please also ensure you always check the VoIP , Video Endpoint , Skype for Business , PSTN or RPM FAQ's

Please remember, if you see a post that helped you , and it answers your question, please mark it as an "Accept as Solution".

The title Polycom Employee & Community Manager is an automatic setting within the community and any forum reply or post is based upon my personal experience and does not reflect the opinion or view of my employer.
Poly employee participation within this community is not mandatory and any post or FAQ article provided by myself is done either during my working hours or outside working hours, in my private time, and maybe answered on weekends, bank holidays or personal holidays.
Message 2 of 18
Occasional Advisor

Re: Unable to login to lync 2013 using PIN

Hello Steffen,

 

thank you for your reply, I checked the software version in the web interface the following information was retrieved :

 

Softwareversie UC 4.1.4.7430 Softwareversie BootROM 5.1.4.0844

 

As for the DHCP settings, as you can see in my previous posting I followed all the steps to get a correct DHCP configuration. This is confirmed to me by running the DHCPUTIL tool with parameter -emulateclient.

 

the output of the above command is success.

 

Could this in fact be a software issue ?

 

regards,

Marco

Message 3 of 18
Polycom Employee & Community Manager

Re: Unable to login to lync 2013 using PIN

Hello Marco,

that is the factory software release so I should advise you to upgrade to the latest supported 5.2.2 UC Software first and then test this again.

 

The above linked post shows you how to troubleshoot Option 43 and Option 120 issues via the Phones logs to verify that the DHCP options are actually being send in the phones network.

 

If you still struggle after upgrading the units you may need to contact your Polycom reseller in order to work with our support team.

 

Please be aware of the following when utilizing UCS 4.1.0 or later:

The use of Polycom UC Software versions 4.1.X (“Software”) requires the purchase of a separate Software license for every device that will use the Software in a Lync environment. You may not install, access, or use the Software in a Lync environment on more devices than are listed on your license until additional licenses have been purchased and authorized by Polycom. These licenses should be purchased from the same company from which you purchased the devices. You may operate devices against a Lync server for trial purposes for up to 30 days without purchasing a license. Use of the Software is subject to the terms and conditions of the End User License Agreement.

Polycom reserves the right to audit your deployment to verify that you have sufficient licenses to match the number of devices being used.

Information in regards of License Part Numbers can be found here

Please ensure to provide some feedback if this reply has helped you so other users can profit from your experience.

Best Regards

Steffen Baier

Polycom Global Services




<======== Signature / Disclaimer ========>
Please be aware:For questions about the type of support to expect please check here

Please also ensure you always check the VoIP , Video Endpoint , Skype for Business , PSTN or RPM FAQ's

Please remember, if you see a post that helped you , and it answers your question, please mark it as an "Accept as Solution".

The title Polycom Employee & Community Manager is an automatic setting within the community and any forum reply or post is based upon my personal experience and does not reflect the opinion or view of my employer.
Poly employee participation within this community is not mandatory and any post or FAQ article provided by myself is done either during my working hours or outside working hours, in my private time, and maybe answered on weekends, bank holidays or personal holidays.
Message 4 of 18
Occasional Advisor

Re: Unable to login to lync 2013 using PIN

Hi Steffen,

 

I upgraded the phones to the latest version, this did not fix my problem for the lync client. I'm going to try to contact a support center over here in the Netherlands and hope they find the problem. If not then we have to look elsewhere.

 

thanks for your assistance.

 

Marco

Message 5 of 18
Polycom Employee & Community Manager

Re: Unable to login to lync 2013 using PIN

Hello Marco,

did you look into the referenced FAQ post and used the phones log and changed the log levels as advised ?

 

This will show you if the phone did receive the correct Option 43 URL.

 

You may also want to set the Global Log Level Limit to debug and set the Web Ticket logging level to debug.

 

I am not aware of any issues in the field with signing into LYNC and all tickets opened are usually configuration errors in the network made by users.


Please ensure to provide some feedback if this reply has helped you so other users can profit from your experience.

Best Regards

Steffen Baier

Polycom Global Services




<======== Signature / Disclaimer ========>
Please be aware:For questions about the type of support to expect please check here

Please also ensure you always check the VoIP , Video Endpoint , Skype for Business , PSTN or RPM FAQ's

Please remember, if you see a post that helped you , and it answers your question, please mark it as an "Accept as Solution".

The title Polycom Employee & Community Manager is an automatic setting within the community and any forum reply or post is based upon my personal experience and does not reflect the opinion or view of my employer.
Poly employee participation within this community is not mandatory and any post or FAQ article provided by myself is done either during my working hours or outside working hours, in my private time, and maybe answered on weekends, bank holidays or personal holidays.
Message 6 of 18
Occasional Advisor

Re: Unable to login to lync 2013 using PIN

Steffen,

 

I configured the logging as mentioned, these are the results i got after a PIN attempt :

 

0326095302|tickt|0|00|[soWebTicketClearUserData]:Clearing the BackOffTimers
0326095303|so   |4|00|[soRegistrationC] Login Credentials valid causing SoRegEventLine Changed
0326095304|app1 |*|00|SoRegistrationEventLineChanged - success lineIndex 0 RegListSize 0
0326095304|app1 |*|00|SoRegistrationEventLast - new AppRegLineC, Default user
0326095306|sip  |*|00|dhcpOption120LyncQuery numList [1]
0326095306|tickt|1|00|soWebticketGetAllUserInfo:input parameters user index 0, Extension 2098 server https://poolweb.ssc.local:443/CertProv/CertProvisioningService.svc UUID 84c3c774-910d-5dd3-9e58-bbc1a97e6e36
0326095306|utilm|4|00|uBLFUnCompressed: File /ffs0/Config/Local/WebTicket/0/certProvSvc.mex doesn't exist or is empty
0326095306|tickt|1|00|soWebTicketServersGet: request URI is https://poolweb.ssc.local:443/CertProv/CertProvisioningService.svc/mex
0326095306|tickt|1|00|Provisoning:Cipher suite = RSA:!EXP:!LOW:!NULL:!MD5:@STRENGTH
0326095308|tickt|1|00|soWebTicketServersGet: Got response 0 code 200
0326095308|tickt|0|00|Got response 0 code 200 data&colon;
HTTP/1.1 200 OK
Cache-Control: private
Content-Length: 16436
Content-Type: text/xml; charset=UTF-8
Server: Microsoft-IIS/8.0
X-AspNet-Version: 4.0.30319
X-MS-Server-Fqdn: SV0144.ssc.local
X-Powered-By: ASP.NET
Date: Thu, 26 Mar 2015 08:53:08 GMT
<?xml version="1.0" encoding="utf-8"?><wsdl:definitions name="CertProvisioningService" targetNamespace="http://schemas.microsoft.com/OCS/AuthWebServices/" xmlns:wsdl="http://schemas.xmlsoap.org/wsdl/" xmlns:wsx="http://sch
0326095308|tickt|2|00|doXmlParsingForErrorCode: stripped pResponse is:
<?xml version="1.0" encoding="utf-8"?><wsdl:definitions name="CertProvisioningService" targetNamespace="http://schemas.microsoft.com/OCS/AuthWebServices/" xmlns:wsdl="http://schemas.xmlsoap.org/wsdl/" xmlns:wsx="http://schemas.xmlsoap.org/ws/2004/09/mex" xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd" xmlns:wsa10="http://www.w3.org/2005/08/addressing" xmlns:wsp="http://schemas.xmlsoap.org/ws/2004/09/policy" xmln
0326095308|tickt|3|00|soWebTicketServersGet: WebTicketAddress is https://poolweb.ssc.local/WebTicket/WebTicketService.svc
0326095308|tickt|3|00|soWebTicketServersGet: getRootCertChain URL is //poolweb.ssc.local/CertProv/CertProvisioningService.svc/anon
0326095308|tickt|3|00|soWebTicketServersGet: webticket proof service URL is https://poolweb.ssc.local/CertProv/CertProvisioningService.svc/WebTicket_Proof_SHA1
0326095308|tickt|2|00|soWebTicketPinauthGetRootCertChain: SpecialInterop_Lync2010 detected
0326095308|tickt|2|00|soWebTicketPinauthGetRootCertChain: autoProvision location is 6
0326095308|tickt|2|00|soWebTicketPinauthGetRootCertChain: Cert is available at 6
0326095308|utilm|4|00|uBLFUnCompressed: File /ffs0/Config/Local/WebTicket/0/certProvSvc.mex doesn't exist or is empty
0326095308|tickt|1|00|soWebTicketServersGet: request URI is https://poolweb.ssc.local:443/CertProv/CertProvisioningService.svc/mex
0326095308|tickt|1|00|Provisoning:Cipher suite = RSA:!EXP:!LOW:!NULL:!MD5:@STRENGTH
0326095308|tickt|1|00|soWebTicketServersGet: Got response 0 code 200
0326095308|tickt|0|00|Got response 0 code 200 data&colon;
HTTP/1.1 200 OK
Cache-Control: private
Content-Length: 16436
Content-Type: text/xml; charset=UTF-8
Server: Microsoft-IIS/8.0
X-AspNet-Version: 4.0.30319
X-MS-Server-Fqdn: SV0144.ssc.local
X-Powered-By: ASP.NET
Date: Thu, 26 Mar 2015 08:53:08 GMT
<?xml version="1.0" encoding="utf-8"?><wsdl:definitions name="CertProvisioningService" targetNamespace="http://schemas.microsoft.com/OCS/AuthWebServices/" xmlns:wsdl="http://schemas.xmlsoap.org/wsdl/" xmlns:wsx="http://sch
0326095308|tickt|2|00|doXmlParsingForErrorCode: stripped pResponse is:
<?xml version="1.0" encoding="utf-8"?><wsdl:definitions name="CertProvisioningService" targetNamespace="http://schemas.microsoft.com/OCS/AuthWebServices/" xmlns:wsdl="http://schemas.xmlsoap.org/wsdl/" xmlns:wsx="http://schemas.xmlsoap.org/ws/2004/09/mex" xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd" xmlns:wsa10="http://www.w3.org/2005/08/addressing" xmlns:wsp="http://schemas.xmlsoap.org/ws/2004/09/policy" xmln
0326095308|tickt|3|00|soWebTicketServersGet: WebTicketAddress is https://poolweb.ssc.local/WebTicket/WebTicketService.svc
0326095308|tickt|3|00|soWebTicketServersGet: getRootCertChain URL is //poolweb.ssc.local/CertProv/CertProvisioningService.svc/anon
0326095308|tickt|3|00|soWebTicketServersGet: webticket proof service URL is https://poolweb.ssc.local/CertProv/CertProvisioningService.svc/WebTicket_Proof_SHA1
0326095308|tickt|1|00|soRootCertGet: hack prepended http: to the getRootCertChains URL
0326095309|tickt|2|00|doXmlParsingForErrorCode: stripped pResponse is:
<s:Envelope xmlns:s="http://schemas.xmlsoap.org/soap/envelope/"><s:Body xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema"><GetRootCertChainsResponse ResponseClass="Success" xmlns="http://schemas.microsoft.com/OCS/AuthWebServices/"><RootCertChains><Chain>MIIL2wYJKoZIhvcNAQcCoIILzDCCC8gCAQExADALBgkqhkiG9w0BBwGggguwMIIFlTCCA32gAwIBAgIQUocK+MP2z41JW9DordQ23TANBgkqhkiG9w0BAQUFADA/MRUwEwYKCZImiZPyLGQBGRYFbG9jYWwxEzA
0326095309|tickt|1|00|soRootCertGet: doXmlRequestForRootCert is success
0326095309|tickt|1|00|soRootCertGet: StrippedResponse is:
<s:Envelope xmlns:s="http://schemas.xmlsoap.org/soap/envelope/"><s:Body xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema"><GetRootCertChainsResponse ResponseClass="Success" xmlns="http://schemas.microsoft.com/OCS/AuthWebServices/"><RootCertChains><Chain>MIIL2wYJKoZIhvcNAQcCoIILzDCCC8gCAQExADALBgkqhkiG9w0BBwGggguwMIIFlTCCA32gAwIBAgIQUocK+MP2z41JW9DordQ23TANBgkqhkiG9w0BAQUFADA/MRUwEwYKCZImiZPyLGQBGRYFbG9jYWwxEzARBgoJkiaJk/Is
0326095309|tickt|1|00|soRootCertGet: Got Certificate
0326095309|tickt|1|00|soRootCertGet: Got PEM data from Cert Buf 
0326095309|tickt|1|00|soRootCertGet: Found PKCS7 chain 
0326095309|tickt|1|00|soRootCertGet: PEM_write_X509 sucess 
0326095309|tickt|1|00|soRootCertGet: Certificate is stored to the file sucesfully
0326095309|tickt|2|00|soWebTicketPinauthGetRootCertChain: root Cert chain download successful
0326095309|tls  |*|00|Saving new Custom application CA certificate 6 
0326095309|tls  |*|00|New Certificate Common Name 'SSC-Root' Fingerprint 'D1:5C:05:0D:D0:F9:B7:66:AE:65:C0:BE:C8:18:61:DE:19:91:58:8E'
0326095309|tls  |*|00|Old Certificate Common Name 'SSC-Root' Fingerprint 'D1:5C:05:0D:D0:F9:B7:66:AE:65:C0:BE:C8:18:61:DE:19:91:58:8E'
0326095309|tickt|2|00|[PpsHybridC]: OnEvSipOnFetchRootCert  Cert store sucess at  index  8
0326095309|utilm|4|00|uBLFUnCompressed: File /ffs0/Config/Local/WebTicket/0/webTicketSvc.mex doesn't exist or is empty
0326095309|tickt|0|00|Ntlm Version Mode = 2:NTLMv2
0326095309|tickt|1|00|Provisoning:Cipher suite = RSA:!EXP:!LOW:!NULL:!MD5:@STRENGTH
0326095310|tickt|0|00|Authentication failed re-trying with Ntlm Version Mode = NTLMv1
0326095310|tickt|1|00|Provisoning:Cipher suite = RSA:!EXP:!LOW:!NULL:!MD5:@STRENGTH
0326095310|tickt|4|00|doXmlRequest curl rc not OK (60) respCode 0
0326095310|tickt|1|00|soWebTicketServersGetPinAuthService: Got response 0 code 0
0326095310|tickt|0|00|Got response 0 code 0 data&colon;
(null)
 
(done)
0326095310|tickt|5|00|soWebticketGetAllUserInfo: soWebTicketServersGetPinAuthService Failed
0326095310|sip  |*|00|Sip Register Usr:VVX410 Dsp:VVX 410 Auth:'Using Login Cred' Inx:0
0326095310|cfg  |5|00|Prm|Parameter genband.E911.registration.line requested type 2 but is of type 0

 

from what I can tell it seems that the certification routine is going correct but there is an issue with soWebTicketServersGetPinAuthService. Especially with NTLM Authentication.

 

regards,

Marco

Message 7 of 18
Polycom Employee & Community Manager

Re: Unable to login to lync 2013 using PIN

Hello Marco,

do you have any other devices that can sign in via PIN & Extension or are the VVX Phones the only phones in your setup ?

 

One reason for PIN & Extension to fail is the account not being Enterprise Voice as an example.

 

Have you yet tested the Test-CsPhoneBootstrap cmdlet as described => here <=

 

UC Software 5.2.0 or 5.2.2 is fully Microsoft certified and I am not aware of any software issues on our end that would prevent the PIN & extension to fail.

 

As explained earlier this is a issue on your end and something as simple as a time difference of 10 minutes between the Phones NTP time and the LYNC server could cause this to fail.

 

You may want to reach out to Microsoft for further support.


Please ensure to provide some feedback if this reply has helped you so other users can profit from your experience.

Best Regards

Steffen Baier

Polycom Global Services




<======== Signature / Disclaimer ========>
Please be aware:For questions about the type of support to expect please check here

Please also ensure you always check the VoIP , Video Endpoint , Skype for Business , PSTN or RPM FAQ's

Please remember, if you see a post that helped you , and it answers your question, please mark it as an "Accept as Solution".

The title Polycom Employee & Community Manager is an automatic setting within the community and any forum reply or post is based upon my personal experience and does not reflect the opinion or view of my employer.
Poly employee participation within this community is not mandatory and any post or FAQ article provided by myself is done either during my working hours or outside working hours, in my private time, and maybe answered on weekends, bank holidays or personal holidays.
Message 8 of 18
Occasional Advisor

Re: Unable to login to lync 2013 using PIN

It has been a while, but I had a bussy few weeks. I now had the time to do some more testingand made some (very little) progress. I tested the test-csPhonebootstrap, at first I had some errors which i was able to fix. Now when I do a  test-csPhonebootstrap it results in a success :

 


Target Fqdn   : pool.ssc.local
Target Uri    : https://poolweb.ssc.local:443/CertProv/CertProvisioningService.svc
Result        : Success
Latency       : 00:00:06.1725334
Error Message :
Diagnosis     :

 

At my phone I am still unable to sign in, the log files tell me there is a problem with my CA root certificate :

 

0617124115|curl |3|00|successfully set certificate verify locations:
0617124115|curl |3|00|  CAfile: /ffs0/ca3.crt
  CApath: none
0617124115|curl |3|00|SSLv3, TLS handshake, Client hello (1):
0617124115|curl |3|00|SSLv3, TLS handshake, Server hello (2):
0617124115|curl |3|00|SSLv3, TLS handshake, CERT (11):
0617124115|curl |3|00|SSLv3, TLS alert, Server hello (2):
0617124115|curl |3|00|SSL certificate problem, verify that the CA cert is OK. Details:
error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
0617124115|curl |3|00|Closing connection #0

 

Are there some more steps I can take, or does the phone need a certificate from a public certificate provider. I tried getting in contact with a support engineer, but I could not get any further then some sales representatives.

 

regards,

 

Marco

Message 9 of 18
Polycom Employee & Community Manager

Re: Unable to login to lync 2013 using PIN

Hello Marco,

What are you using the certificate for ?

 

Are you loading an additional certificate or is this in regards to the Pin & Extension Certificate that the LYNC server will place on the phone ?

 

In your earlier logs I could not see the TICKT service complaining about the cert.

 

The VVX410 was purchased via Westcon back in March 2014 so I suggest you get them to open a Ticket with Polycom support so we can try and help you soring out you environmental issue.


Please ensure to provide some feedback if this reply has helped you so other users can profit from your experience.

Best Regards

Steffen Baier

Polycom Global Services




<======== Signature / Disclaimer ========>
Please be aware:For questions about the type of support to expect please check here

Please also ensure you always check the VoIP , Video Endpoint , Skype for Business , PSTN or RPM FAQ's

Please remember, if you see a post that helped you , and it answers your question, please mark it as an "Accept as Solution".

The title Polycom Employee & Community Manager is an automatic setting within the community and any forum reply or post is based upon my personal experience and does not reflect the opinion or view of my employer.
Poly employee participation within this community is not mandatory and any post or FAQ article provided by myself is done either during my working hours or outside working hours, in my private time, and maybe answered on weekends, bank holidays or personal holidays.
Message 10 of 18