What Should be Configured in SphereShield for MS Teams Certificate?

Please, prepare the following certificates (could be one certificate with all hosts or a wildcard certificate). It should be signed by a Certificate Authority trust by your users/machines.

The Forward Proxy certificate should contain:

DNS Name=*.sharepoint.com
DNS Name=*.sharepointonline.com
DNS Name=teams.microsoft.com
DNS Name=*.teams.microsoft.com
DNS Name=*.ng.msg.teams.microsoft.com
DNS Name=pipe.skype.com
DNS Name=*.pipe.skype.com
DNS Name=*.notifications.teams.microsoft.com
DNS Name=*.asyncgw.teams.microsoft.com
DNS Name=*.agatskype.net
DNS Name=*.msgapi.teams.microsoft.com

DNS Name=*.hockeyapp.net
DNS Name=*.officeapps.live.com
DNS Name=*officeapps.live.com
DNS Name=*.lync.com
DNS Name=*.dc.trouter.io
DNS Name=*.microsoftazuread-sso.com
DNS Name=*.microsoftonline.com
DNS Name=secure.aadcdn.microsoftonline-p.com
DNS Name=*.microsoftonline-p.com
DNS Name=*.microsoftonline-p.net
DNS Name=*.msappproxy.net
DNS Name=*.msecnd.net
DNS Name=*.office.com
DNS Name=*.office.net
DNS Name=*.office365.com
DNS Name=*.onenote.net
DNS Name=*.outlook.com
DNS Name=*.skype.com
DNS Name=*.windows.net
DNS Name=*.pipe.aria.microsoft.com
http://teams.microsoft.com
DNS Name=*.ng.msg.teams.microsoft.com
DNS Name=*.trouter.teams.microsoft.com
DNS Name=*.presence.teams.microsoft.com
DNS Name=*.data.microsoft.com
DNS Name=*.asm.skype.com
DNS Name=*.broker.skype.com
DNS Name=*.cc.skype.com
DNS Name=*.config.skype.com
DNS Name=*.conv.skype.com
DNS Name=*.edge.skype.com
DNS Name=*.msg.skype.com
DNS Name=*.tpc.skype.com
DNS Name=*.pipe.skype.com
DNS Name=*.teams.skype.com
DNS Name=*.userstore.skype.com
DNS Name=*.manage.microsoft.com
DNS Name=*.sfx.ms
DNS Name=*.adjust.com
DNS Name=*.vo.msecnd.net
DNS Name=*.telemetry.microsoft.com
DNS Name=*.msftauth.net
DNS Name=*.msauth.net
DNS Name=*.msedge.net

DNS Name=*.substrate.office.com

The Admin Portal certificate should contain:

  • Unique hostname for the service (eg, ap.yourdomain.com).