• ×
    Information
    Windows update impacting certain printer icons and names. Microsoft is working on a solution.
    Click here to learn more
    Information
    Need Windows 11 help?
    Check documents on compatibility, FAQs, upgrade information and available fixes.
    Windows 11 Support Center.
  • post a message
  • ×
    Information
    Windows update impacting certain printer icons and names. Microsoft is working on a solution.
    Click here to learn more
    Information
    Need Windows 11 help?
    Check documents on compatibility, FAQs, upgrade information and available fixes.
    Windows 11 Support Center.
  • post a message
Guidelines
The HP Community is where owners of HP products, like you, volunteer to help each other find solutions.
HP Recommended
  • Software Version: 6.2.2.8-670021
  • Group Series 500
  • After Enabling OAuth Authentication
  • Teams via H323
  • Serial # 8G19184EB629CV

With Microsoft deprecating Basic Authentication, we wanted to update our GS to the latest firmware that enables us to turn on Oauth Authentication in Admin->Servers->Calendaring

I've registered the device in the OTD dashboard and inputted the OTD generated email/username/password while using "OTD" as the Domain.

 

With OAuth Authentication turned ON, calendaring does not work and the status stays at "Not Connected". Once I turned OFF OAuth Authentication, calendaring works.

Although in the OTD dashboard, the device shows as not Auto-Registered, why does turning on OAuth(Modern Authentication) break calendaring?

I have confirmed that I consented OTD registered as an Application via my Global Admin account and tested account access was successful in the OTD dashboard.

7 REPLIES 7
HP Recommended

Hello @Midnite8 

 

welcome back tot he Poly community.

 

Tech Alert:

 

As of October 1st, 2022 Microsoft will remove Basic Authentication to Exchange Online. See  Basic Authentication Deprecation in Exchange Online September at Microsoft’s Tech Community site for additional details.

Optionally, you can file a one-time request to extend the timeframe to January 2023 as outlined in the section “Opting Out” of such announcement.

To eliminate any disruption in service Poly recommends to take IMMEDIATE action to review your OTD configuration, in case you do use basic authentication/auto-registration.

If your OTD tenant is already integrated using OAuth and your video devices have calendaring service configured to authenticate using OTD generated credentials, no action is required from you at this time.

However, if your OTD tenant still has video devices with calendaring service configured in auto-registration mode (where O365 credentials are configured directly in the calendar settings of the Poly video device while pointing the server address setting to otd.plcm.vc), Poly recommends you to take IMMEDIATE ACTION and change your authentication type from auto-registration to OTD generated credentials model prior to upcoming October 1st.

Detailed instructions on how to create a device, generate new device credentials and configure a Poly device can be found in our online documentation at  https://otd.plcm.vc/support/docs/devices/registering-a-device.

Failure to update the authorization type to OAuth and re-authorize the calendar integration will result in disruption of auto registration model for Poly endpoints to OTD which utilizes Basic Authorization at the time of deprecation.

It is recommended that any existing OTD configuration using auto registration migrate over to the service account or application identity models before the October 1st deadline set by Microsoft. 

It is highly recommended to no longer use automatic registration in any new deployments.  Any organization setting up the OTD service with Exchange Online for the first time now should use the application identity model outlined in our online documentation at https://otd.plcm.vc/support/docs/calendars/office365-connect-as-application.

If you have any questions, please contact Poly Global Support Services.

 

Best Regards

 

Steffen Baier

------------------------------------------------
Notice: I am an HP Poly employee but all replies within the community are done as a volunteer outside of my day role. This community forum is not an official HP Poly support resource, thus responses from HP Poly employees, partners, and customers alike are best-effort in attempts to share learned knowledge.
If you need immediate and/or official assistance for former Poly\Plantronics\Polycom please open a service ticket through your support channels
For HP products please check HP Support.

Please also ensure you always check the General VoIP , Video Endpoint , UC Platform (Microsoft) , PSTN
HP Recommended

Hi, that's the article I've been reading but are you saying if we use OTD generated creds we don't need enable Oauth? Whats the purpose for adding that functionalty in 6.2.2.7 onward? 

HP Recommended

Hello @Midnite8 ,

 

it is for direct registration to Exchange

 

Please ensure to provide some feedback if this reply has helped you so other users can profit from your experience.

Best Regards

Steffen Baier

 

------------------------------------------------
Notice: I am an HP Poly employee but all replies within the community are done as a volunteer outside of my day role. This community forum is not an official HP Poly support resource, thus responses from HP Poly employees, partners, and customers alike are best-effort in attempts to share learned knowledge.
If you need immediate and/or official assistance for former Poly\Plantronics\Polycom please open a service ticket through your support channels
For HP products please check HP Support.

Please also ensure you always check the General VoIP , Video Endpoint , UC Platform (Microsoft) , PSTN
HP Recommended

A little side track but for the Trio series, if we follow the steps to upgrade to above version 5.9.1 AND set feature.exchange.allowBasicAuth="0", this should also disable Basic Auth, correct? We use the Sfb profile and do not use OTD for Trio series(only generic profile works with OTD).

 

Some of my Trio devices are still being flagged as using EWS to authenticate to Exchange Online that I've already updated since July. I'm a little confused on what the actual method is to check whether the device is authenticating with modern auth or not.

I've used this method in this post: https://community.poly.com/t5/Microsoft-UC-Platforms/How-to-check-if-Trio-8800-connects-successfully...

Trio Event 2 logs for the mentioned entries and found these pattern:

 

0303065436|auth |2|00|prepareOAuth2TokenRefreshReqBody: ClientID:a850aaae-d5a5-4e82-877c-ce54ff916282

 

And found this article but it was not as clear.

https://support.poly.com/support/s/article/knova-46805-how-to-check-if-a-trio-phone-is-negotiating-m...

HP Recommended

Hello @Midnite8 ,

 

simply download the additional file which disables photo integration as this is what is being flagged up.

 

I try and add the info to the article

 

Please ensure to provide some feedback if this reply has helped you so other users can profit from your experience.

Best Regards

Steffen Baier

 

------------------------------------------------
Notice: I am an HP Poly employee but all replies within the community are done as a volunteer outside of my day role. This community forum is not an official HP Poly support resource, thus responses from HP Poly employees, partners, and customers alike are best-effort in attempts to share learned knowledge.
If you need immediate and/or official assistance for former Poly\Plantronics\Polycom please open a service ticket through your support channels
For HP products please check HP Support.

Please also ensure you always check the General VoIP , Video Endpoint , UC Platform (Microsoft) , PSTN
HP Recommended

Thanks, I saw you updated the article. Back to the GS 500, I guess I am not understanding how OTD generated creds translate to using Modern Authentication. I looked at the sign-in logs of a GS 500 that I updated and registered to OTD but still see it authenticate to Exchange Online with Exchange Web Services, which is under the category of Legacy Authentication Apps.

HP Recommended

Hello @Midnite8 ,

 

I suggest you raise a support ticket if nobody else responds

 

Please ensure to provide some feedback if this reply has helped you so other users can profit from your experience.


Best Regards

Steffen Baier

 

------------------------------------------------
Notice: I am an HP Poly employee but all replies within the community are done as a volunteer outside of my day role. This community forum is not an official HP Poly support resource, thus responses from HP Poly employees, partners, and customers alike are best-effort in attempts to share learned knowledge.
If you need immediate and/or official assistance for former Poly\Plantronics\Polycom please open a service ticket through your support channels
For HP products please check HP Support.

Please also ensure you always check the General VoIP , Video Endpoint , UC Platform (Microsoft) , PSTN
† The opinions expressed above are the personal opinions of the authors, not of HP. By using this site, you accept the <a href="https://www8.hp.com/us/en/terms-of-use.html" class="udrlinesmall">Terms of Use</a> and <a href="/t5/custom/page/page-id/hp.rulespage" class="udrlinesmall"> Rules of Participation</a>.