cancel
Showing results forĀ 
Search instead forĀ 
Did you mean:Ā 
cancel
777
Views
0
Helpful
9
Replies

errors in users login after syncronise woth LDAP

i have CUCM Ver  8.5 and after we integrated with active directory by LDAP all the users can't logon on extension mobility or their page on CM and we

tried to delete the user and add it again then it works and kindly know that we just did the integration and run sync with the active directory then we deleted it

any one can help please .

9 Replies 9

Joseph Martini
Cisco Employee
Cisco Employee

Are you also doing LDAP autentication?  Did the usernames match exactly before you enabled LDAP in CUCM with the userIDs in LDAP?  Where did you delete the user from and re-add it to fix it while LDAP directory sync was enabled since you cannot add users while LDAP sync is enabled from the CCM end user page?

yes we did LDAP autentication , the users not matched before enabling the sync , and we deleted the user on CM then add it again , and we did this all after deleting the the LDAP sync .

kindly know that we didn't made the autentication we just did sync and then we disabled it .

The users will be receated after enabling the sync so the users would have to use their new usernames and you would want to make sure their "Standard CCM End User" permission was re-set on the user since the user will have no permissions when it's newly created.

u mean that after enable the sync the users automatic recreated ?

and what is thier new usernames ? and kindly know that all the usernames on CM not matched with usernames on active directory

and kindly can u please send me the solution in steps i have to do to complete this task .

and many thanks for ur help .

I just tested this, if the username does not match exactly in LDAP then the user will be marked as inactive on the end user page, this will make it so that the user cannot login to ccmuser.  You want to make sure the usernames are exactly the same or make sure the users use their new userID's when trying to login.

what u mean by new ID ?

Under LDAP > LDAP System, LDAP Attribute for User ID is default set to sAMAccountName.  This is what call manager uses for the UserID field in the User Management > End Users configuration page.

but why when i disabled sync the password didn't get back as it was ?