08-03-2012 12:33 AM - edited 03-17-2019 02:31 PM
Hi
We don't use LDAP on our UCM enviroment and rely on the UCM corporate directory for users lookups. How can I get the Ipad Jabber UCM funciton to use the UCM server to do corporate directory lookups? is ths possible?
Thanks
Rod
Solved! Go to Solution.
08-03-2012 12:43 AM
Hi
No - all the Jabber clients require LDAP currently except for Jabber on Windows.
Aaron
08-03-2012 12:43 AM
Hi
No - all the Jabber clients require LDAP currently except for Jabber on Windows.
Aaron
08-03-2012 12:45 AM
Thanks Arron,
Re UCM and LDAP is the best way to set up UCM to query AD and then configure the LDAP info for AD on the jabber client ?
Thanks
Rod
08-03-2012 12:58 AM
Hi
Yes - that way you can be sure that the users in CUCM match those in LDAP, and users can log in with their AD credentials. If you also have voicemail and that is LDAP synced, then Jabber can be configured to use those same credentials and this all makes it easier for users.
I would also strongly recommend that you use sAMAccountName as the UserID field - to do otherwise is confusing for users, though lots of systems do this to make logging in via EM easier.
Aaron
08-03-2012 01:03 AM
Thanks Arron - appreciate the response.
We currently have user id's on UCM set as rblackie (for example) and on AD it's rod_blackie
If I configure LDAP sync between UCM and AD will it overright the current UCM database or will it add the additional ad users?
Just trying to figure out the best approach as I've got different usernames on both systems
PS - Love the IPcommute image applicaiton for phones.
Rod
08-03-2012 01:29 AM
Hi Rod
If you turn on AD sync it will:
- Set any CUCM users that don't match AD users as 'inactive', then delete them after a while
- If user IDs happen to match, the AD user is 'merged' with the old CUCM user, so that user maintains associations, groups,non-AD properties etc and just starts using their AD password.
- Any users in AD that don't match users in CUCM are created in CUCM, but do not have any rights (i.e. no group membership, phone assocs etc) so can't do anything until you configure them.
Basically once AD is integrated, all users come from AD and you cannot add local CCM 'End Users' any more.
My process for getting these systems integrated is generally to produce a mapping list of the users in CUCM to their actual users in AD, then programatically rename the users. I then run some custom tools to validate that each CUCM user exists in AD, and then turn on the sync when I'm satisfied.
Glad you find the phone customizer useful!
Principal Engineer at Logicalis UK
Please rate helpful posts...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide