05-26-2009 10:38 AM - edited 03-15-2019 06:12 PM
It is suggested that the entire set of users defined in the LDAP directory is not imported into Unified CM cluster.
Because of our existing AD-structure, we will not be able to control the account export and for instance, omit OUs and none-IP-phone users from the directory synchronization via AD.
What are some of the control mechanisms to limit the number of use accounts imported, regardless of the LDAP database size?
05-26-2009 12:30 PM
You can re-organize your OUs to make it work correctly with CUCM. Basically, CUCM can sync up to 6 OUs I believe (top level, sub levels, does not matter)
Your other option is to find a third party LDAP tool to pull your AD accounts/passwords to a "merged" LDAP directory that CUCM can then sync with.
For service accounts, you can add in the Tildi ~ symbol in front of the first name and/or last name and CUCM will ignore this account and not sync it.
05-26-2009 01:54 PM
I use the LDAP Filter on the IPPhone Field in AD described breifly in the post below. Of course it is not supported by Cisco but works great.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: