Without these credentials, clients will not be able to use the Edge Server as possible candidate when trying to establish a sRTP session. The Media Relay Authentication Service is a service running on the Edge responsible for providing credentials to the client that will be used to request ports and establish media sessions through the Edge Server. That’s when the Media Relay Authentication Service comes into play. This is the reason why if you want to relay media traffic over the Edge Server, you need a mechanism that can guarantee this security standard. Skype for Business is an enterprise product and the security of each communication is extremely important. Sometimes, NAT devices don’t allow this kind of traffic to go through and in this situation the Edge Server (TURN candidate) is used for the media traffic. The following diagram shows a scenario when the STUN address is used, and the traffic flows through the NAT device to reach the remote user. In Skype for Business, every time you want to talk with a remote user you need to find an available path to establish the sRTP traffic.īecause the P2P connectivity is not available the client can use either the STUN or TURN candidate to start the media flow.
0 Comments
Leave a Reply. |