04-21-2025 09:54 AM
On Cisco CUCM version 15, we have LDAP integration to AD via port 389. Customer needs to integrate to new AD server "newAD.mydomain.com" using TLS with LDAP port 636 ( they have one domain).
We will install ROOT CA certificate and CA signed root certificate of AD server on CUCM PUB as tomcat-trust. ( and the same on UNITY Pub)
Once I tested it, could you please recommended the best practice procedure to move users from current LDAP 389 AD server to new TLS based LDAP 636 AD server?
Thank in advanced for help.
04-21-2025 10:05 AM
You would just re-configure the LDAP Directory agreement with the new LDAP server and port mentioned in these steps: https://www.cisco.com/c/en/us/td/docs/voice_ip_comm/cucm/admin/15/systemConfig/cucm_b_system-configuration-guide-15/cucm_b_system-configuration-guide-14_chapter_011011.html#CUCM_TK_CCF88832_00
The process applies equally to CUCM as well as Unity.
04-21-2025 01:12 PM
Brand thanks so much for your very fast answer.
I agreed with customer to test this next Thursday.
I will keep you posted
04-21-2025 10:46 AM
No need to move users to a different server. As @Brad Magnani wrote all you’d need to do is to reconfigure the LDAP sync and authentication on CM and CUC.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide