07-07-2012 10:48 PM - edited 03-16-2019 12:04 PM
Using CUCM 8.6.2
Under LDAP Authentication
i would like to update the search base from a specific OU to the root of the domain.
what steps do i need to take to do this and will the current user list be affected by this change?.
Solved! Go to Solution.
07-08-2012 10:32 AM
your current user base will not be effected. After you create your new directory that points at the root,be sure to press the force sync button. wait a few minutes and check your users. If there is a problem, you have at least 24 hours to fix it before the trash collected deletes the accounts flagged as deactive.
07-08-2012 02:10 PM
1. This is Ok, you can have up to 5 LDAP directory integrations.
2. You can only have a single LDAP authentication, so you need to define the LDAP container so that it enlists all users you want to be able to authenticate.
HTH,
Chris
07-08-2012 06:30 AM
delete the current one and create a new one with desired settings.
Chris
Sent from Cisco Technical Support iPad App
07-08-2012 10:32 AM
your current user base will not be effected. After you create your new directory that points at the root,be sure to press the force sync button. wait a few minutes and check your users. If there is a problem, you have at least 24 hours to fix it before the trash collected deletes the accounts flagged as deactive.
07-08-2012 01:08 PM
thanks to all
2 questions
1. i created an additional directory i now have 1 pointing to a specific OU and one pointing to the root domain ( which contains the above specific OU amongst others) i want to be sure i don't loose users, is that ok for now or must i delete the original directory pointing to specific OU?
2. i am using LDAP authentication, it is pointing to the above specific OU. Because of security concerns i am not interested in authenticating the root domain but want the root domain synced to make sure that user don't get deleted if mistakenly moved to non synced OU. Is there a problem with such a design?
thanks again
07-08-2012 02:10 PM
1. This is Ok, you can have up to 5 LDAP directory integrations.
2. You can only have a single LDAP authentication, so you need to define the LDAP container so that it enlists all users you want to be able to authenticate.
HTH,
Chris
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide