06-13-2017 01:43 PM - edited 03-19-2019 12:32 PM
I have quite a few UC v10.5 and v11.5 machines, including CUCM, CER, UCCX, Unity, IMP, etc. and more than a dozen clusters. We'd like to set the admins up with their own usernames, so when they leave we can shut them off and they won't have access anymore. But this means 15 admins on 200 machines.
Obviously, UC machines can sync end users, but what about administrators?
Can I create the admins in Active Directory and sync them to all these machines?
Do I just add the extra permissions to an end user?
If I can't sync these admins with LDAP, is there some CLI script to create and eventually delete GUI admins?
thanks
Solved! Go to Solution.
06-13-2017 02:56 PM
The LDAP sync doesn't sync any privileges from LDAP, whatever privileges the end users have in each system, are configured in each system.
If you want an end user to be a CUCM admin in a cluster, you need to give him that role, for that cluster.
No CLI, best you could do look into is AXL. CLI only works for platform users.
06-13-2017 02:56 PM
The LDAP sync doesn't sync any privileges from LDAP, whatever privileges the end users have in each system, are configured in each system.
If you want an end user to be a CUCM admin in a cluster, you need to give him that role, for that cluster.
No CLI, best you could do look into is AXL. CLI only works for platform users.
06-13-2017 03:09 PM
You are awesome Jamie! Thanks for that.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide