cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
634
Views
0
Helpful
1
Replies

user permission groups not changing after LDAP directory sync

HUSLMJW79
Level 1
Level 1

Hello,

 

we are currently building an UC environment (CUCM version 12.0.1.22900-11) for a project of a customer.

 

So far, we were able to connect the UCM to our LDAP with a working sync.

We use filters to check for the group membership of the users and to adjust the permissions on UCM.

 

What we were noticing is, if we change the group membership of one of the users in our directory and perform a full sync, the according permissions on the UCM are not changed.

 

Example:

- User A is member of group "marketing"

- According to the filter we set, the permission "CCM End User" is set (this works so far)

- The user is moved to the directory group "administrators" and a full sync is performed, the permissions are not changed on the UCM user (administrator users should get the permission "CCM Admin Users")

 

Do you have any idea why the UCM is behaving like that and if it is solveable?

 

Best regards,

Justus Weber

1 Reply 1

Jaime Valencia
Cisco Employee
Cisco Employee

AFAIK that is WAD, if you import a new user from that LDAP sync after the changes, you will see the new settings. But changing those, and doing a re-sync, will not affect existing users.

And I'm talking specifically to what you have under Group Information.

HTH

java

if this helps, please rate