cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3316
Views
0
Helpful
4
Replies

Jabber users in different domains

russell-b
Level 1
Level 1

Hi Community,

Our company (A) has recently aquired another (B) and I wish to enable their users with Jabber.

We have CUPS 8.6 and Jabber for Windows 9.2

B users reside on a separate (companyb.com) trusted domain to ours (companya.com) and CUPS.companya.com .

LDAP / AD sync is operational for both domains and all users (A+B) are appearing in CUPS and CUCM.

Problem is company B users cannot login to Jabber. (Your username and password is not correct)

RTMT logs seem to indicate user is trying to be authenticated incorrectly eg. buser@companya.com

Has anyone come across this before?

Is this a system limitation?

Thanks in advance

1 Accepted Solution

Accepted Solutions

islam.kamal
Level 10
Level 10

HI

please check the below

  1. Verifty the LDAP server configured in CUPS
  2. Download the LDAP server security certificate according to its product documentation
  3. Upload the certificate in Cisco Unified OS Administration > Security > Certificate Management
  4. Restart the Cisco Tomcat service (utils service restart Cisco Tomcat)
  5. Relaunch the Jabber application, and attempt to authenticate with the same credentials again

and get the below link

http://www.cisco.com/en/US/docs/voice_ip_comm/cups/8_6/english/install_upgrade/deployment/guide/dgldap.html#wp1086101

Check that from CUP can reach LDAP server , if not please add static route for this issue

Thank you

please rate if this will help

View solution in original post

4 Replies 4

islam.kamal
Level 10
Level 10

HI

please check the below

  1. Verifty the LDAP server configured in CUPS
  2. Download the LDAP server security certificate according to its product documentation
  3. Upload the certificate in Cisco Unified OS Administration > Security > Certificate Management
  4. Restart the Cisco Tomcat service (utils service restart Cisco Tomcat)
  5. Relaunch the Jabber application, and attempt to authenticate with the same credentials again

and get the below link

http://www.cisco.com/en/US/docs/voice_ip_comm/cups/8_6/english/install_upgrade/deployment/guide/dgldap.html#wp1086101

Check that from CUP can reach LDAP server , if not please add static route for this issue

Thank you

please rate if this will help

HI Islam Kamal

thanks for response.

LDAP server connection is non-secure and already synced with CUPS and CUCM.

Not sure why i would need a certificate.

Restarted Tomcat.

No result

There only seems to be facility for a single Authentication domain within CUCM 8.0.3

Is this the same authentication Jabber is using or does it use the CUPS LDAP configuration primarily?

Maybe a mismatch between CUPS 8.6 and CUCM 8.0?

Any help will be appreciated.

Hi Russell,

To my knowledge if you have users residing in two different domains you need to go for interdomain federation.

This is a good resource to understand how you can federate between two different domains.

http://www.cisco.com/en/US/docs/voice_ip_comm/cucm/srnd/8x/presence.html#wp1084557

There is also a possibility of intercluster deployment but you also need to have seperate CUP clusters and separate CUCM clusters and you also need to have them in the same domain.Here are some links to get you started

http://www.cisco.com/en/US/docs/voice_ip_comm/cucm/srnd/8x/presence.html#wp1084540

http://www.cisco.com/en/US/docs/voice_ip_comm/cups/8_6/english/install_upgrade/deployment/guide/dgintercluster.html

Not sure if any of the above matches exactly your scenario but these are the options you have as far as I can tell.

HTH,

Christos

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: