<?xml version="1.0" encoding="UTF-8" ?>
<rss version="2.0">
<channel>
<title><![CDATA[gOxiA=苏繁=SuFan Blog]]></title> 
<link>https://maytide.net/index.php</link> 
<description><![CDATA[gOxiA,苏繁,sufan,Microsoft MVP]]></description> 
<language>zh-cn</language> 
<copyright><![CDATA[gOxiA=苏繁=SuFan Blog]]></copyright>
<item>
<link>https://maytide.net/read.php/1727.htm</link>
<title><![CDATA[[WS2012R2] HOWTO: 为 Work Folders 添加自定义端口]]></title> 
<author>gOxiA &lt;sufan_cn@msn.com&gt;</author>
<category><![CDATA[Windows Server]]></category>
<pubDate>Thu, 08 May 2014 03:41:38 +0000</pubDate> 
<guid>https://maytide.net/read.php/1727.htm</guid> 
<description>
<![CDATA[ 
	<p><a href="http://goxia.maytide.net/ftpupfiles/WS_C123/ws2012r2-logo.png"><img title="ws2012r2-logo" border="0" alt="ws2012r2-logo" src="http://goxia.maytide.net/ftpupfiles/WS_C123/ws2012r2-logo_thumb.png" width="315" height="55"></a></p> <p><font color="#fd3f0d" size="4"><strong>HOWTO: 为 Work Folders 添加自定义端口</strong></font></p> <p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <a href="http://goxia.maytide.net/read.php/1688.htm" target="_blank">Work Folders</a>&nbsp; - 工作文件夹，是 Windows Server 2012 R2 的一个新角色，在 <a href="http://goxia.maytide.net/" target="_blank">gOxiA</a> 看来 Work Folders 是一个易于部署和应用的低成本云同步存储解决方案，它不同于 OneDrive 等其他同步存储服务，有一定的局限性，可以阅读“<a href="http://goxia.maytide.net/read.php/1688.htm">Windows Server 2012 R2 - Work Folders 概述</a>”获取更详尽的信息。</p> <p><a href="http://goxia.maytide.net/ftpupfiles/WS2012R2_9D80/FileSyncSolutions.png"><img title="FileSyncSolutions" border="0" alt="FileSyncSolutions" src="http://goxia.maytide.net/ftpupfiles/WS2012R2_9D80/FileSyncSolutions_thumb.png" width="634" height="357"></a></p> <p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 如果您已经对 Work Folders 有了直观的了解和认识，那么不妨看看“<a href="http://goxia.maytide.net/read.php/1689.htm">Windows Server 2012 R2 - Work Folders 体验</a>”以了解如何安装和应用 Work Folders。</p> <p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 在了解上述的信息后，我们会了解到 Work Folders 默认使用 HTTPS 协议，而 HTTPS 协议默认端口是 443，如果 Work Folders 仅在企业内部或通过 VPN 接入到企业内部来使用的化，那么采用默认配置是最佳的做法。但是当用户离开企业网，身处外部时经常会接收到关于 Work Folders 的提示，通知用户 Work Folders 当前无法访问，相信久而久之用户便会产生反感。</p> <p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 面对这一个问题，为何不采用将 Work Folders 发布到公网上供用户使用的方式呢？！便捷、灵活……</p> <p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 对于公网 IP 资源贫乏的国内公司而轻言，如果前端部署有 TMG 这类防火墙系统，倒是可以通过域名形式继续发布，如果仅是通过端口发布，就会占用宝贵的 443 端口。</p> <p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 好在 <a href="http://blogs.technet.com/b/server-management/" target="_blank">Server &amp; Management Blogs</a> 分享了一篇非常有价值的文章“<a href="http://blogs.technet.com/b/filecab/archive/2013/10/15/windows-server-2012-r2-resolving-port-conflict-with-iis-websites-and-work-folders.aspx" target="_blank">Windows Server 2012 R2 – Resolving Port Conflict with IIS Websites and Work Folders</a>”。文中提到可以为 Work Folders 修改默认的端口，问题迎刃而解！！！</p> <p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 以下是操作步骤：</p> <ol> <li>停止 Work Folders 服务，“<em><font style="background-color: #ffff00">net stop syncsharesvc</font></em>”&nbsp;&nbsp;<li>修改“<em><font style="background-color: #ffff00">c:\windows\system32\syncsharesvc.config</font></em>”配置文件，为 Work Folder 添加自定义端口，可参考下图：<br/><a href="http://goxia.maytide.net/ftpupfiles/22babd8afbbf_E0F6/image.png"><img title="image" style="border-left-width: 0px; border-right-width: 0px; background-image: none; border-bottom-width: 0px; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border-top-width: 0px" border="0" alt="image" src="http://goxia.maytide.net/ftpupfiles/22babd8afbbf_E0F6/image_thumb.png" width="634" height="332"></a>&nbsp;&nbsp;<li>对端口进行授权，“<em><font style="background-color: #ffff00">netsh http add urlacl url=https://*:12345/ user=”NT Authority\LOCAL SERVICE”</font></em>”&nbsp;&nbsp;<li>因为本例是新绑定了一个端口，所以还需要为这个端口配置证书，“<em><font style="background-color: #ffff00">netsh http add sslcert ipport=0.0.0.0:12345 certhash=&lt;Cert thumbprint&gt; appid=&#123;CE66697B-3AA0-49D1-BDBD-A25C8359FD5D&#125; certstorename=MY</font></em>”,添加后的配置信息如下：<br/><a href="http://goxia.maytide.net/ftpupfiles/22babd8afbbf_E0F6/image_3.png"><img title="image" style="border-left-width: 0px; border-right-width: 0px; background-image: none; border-bottom-width: 0px; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border-top-width: 0px" border="0" alt="image" src="http://goxia.maytide.net/ftpupfiles/22babd8afbbf_E0F6/image_thumb_3.png" width="634" height="336"></a></li></ol> <p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 现在，可以将 Work Folders 用于外网访问的端口发布出去了，客户端只需要在配置 Work Folders（工作文件夹）时为 URL 补充上端口号即可，如下图所示：</p> <p><a href="http://goxia.maytide.net/ftpupfiles/22babd8afbbf_E0F6/client_workfolders.png"><img title="client_workfolders" style="border-left-width: 0px; border-right-width: 0px; background-image: none; border-bottom-width: 0px; padding-top: 0px; padding-left: 0px; display: inline; padding-right: 0px; border-top-width: 0px" border="0" alt="client_workfolders" src="http://goxia.maytide.net/ftpupfiles/22babd8afbbf_E0F6/client_workfolders_thumb.png" width="550" height="347"></a></p> <p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 参考资料：</p> <ul> <li><a href="http://blogs.technet.com/b/filecab/archive/2013/10/15/windows-server-2012-r2-resolving-port-conflict-with-iis-websites-and-work-folders.aspx" target="_blank">Windows Server 2012 R2 – Resolving Port Conflict with IIS Websites and Work Folders</a>&nbsp;&nbsp;<li><a href="http://technet.microsoft.com/en-us/library/dn528861.aspx" target="_blank">Deploying Work Folders</a></li></ul>
]]>
</description>
</item>
</channel>
</rss>