Solved

Cisco Unified Communications Manager LDAP Integration Question

Posted on 2015-01-21
6
218 Views
Last Modified: 2015-01-21
We use CUCM 7.1 and have been integrated to AD via LDAP Sync for years. The LDAP User Search Base is specific - like this..

OU=USERS, OU=ACME, DC=COYOTE, DC=LOCAL

The Sys admins started migrating over some users to another OU in order to accommodate migration to Exchange 2013. Let's call it..

OU=EX13USERS, OU=ACME, DC=COYOTE, DC=LOCAL

The problem is that on the CIsco phone (7945G) - if I press Corporate Directory I can no longer find anyone in the EX13USERS OU 0- only those still in OU USERS.

If I tried to sync from a point higher in the tree say  OU=ACME, DC=COYOTE, DC=LOCAL - would that succeed in importing all users from all OU's below it? Or any way to sync from two or more separate specific OU's e.g.
OU=EX13USERS, OU=ACME, DC=COYOTE, DC=LOCAL  ..AND.. OU=USERS, OU=ACME, DC=COYOTE, DC=LOCAL

Thank you.
0
Comment
Question by:amigan_99
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 3
6 Comments
 
LVL 20

Accepted Solution

by:
José Méndez earned 500 total points
ID: 40562623
Yes you can create 2 different LDAP directories and point each one to a different OU, although if you point directly to  OU=ACME, DC=COYOTE, DC=LOCAL (which contains EX13USERS and USERS) then Callmanager will search within the OUs inside ACME and sync those accounts.

http://www.cisco.com/c/en/us/td/docs/voice_ip_comm/cucm/srnd/8x/uc8x/directry.html#wp1045381

This is not desirable if there are other OUs within ACME that do not contain telephony users. If this is the case, 2 different LDAP directories in Callmanager pointing to different OUs is the preferred method.
0
 
LVL 1

Author Closing Comment

by:amigan_99
ID: 40562633
Excellent news. Thank you again!
0
 
LVL 1

Author Comment

by:amigan_99
ID: 40562643
Say a a follow-on if I may..

If I create another LDAP Directory (System/LDAP/LDAP Dir) for syncing - should I also create another
LDAP Authentication (System/LDAP/LDAP Authentication) instance as well? The current LDAP Auth specifies the same LDAP User Search Base as the LDAP Directory entry.
0
Industry Leaders: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

 
LVL 20

Expert Comment

by:José Méndez
ID: 40562705
You can only have 1 LDAP authentication agreement, that one should point to a DC that knows how to authenticate any user/password passed to Callmanager. In your case, point it to the upper OU that contains the affected inner OUs.
0
 
LVL 1

Author Comment

by:amigan_99
ID: 40562721
Cool - thanks again.
0
 
LVL 20

Expert Comment

by:José Méndez
ID: 40562741
Welcome mate
0

Featured Post

Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Skype for Business 2015 2 93
CME vs Full CM 1 109
Simplest RTP QoS for Ethernet WAN Cisco 2 65
Making Cisco Phones More Resiliant to High Latency 3 80
How To Create Custom / Distinctive Ring Tones on Polycom Phones Purpose and Overview When creating a custom ring tone, you have simple aspirations: to make your phone cooler than everyone else's. Perhaps you need a louder ringer. Perhaps you w…
Hey there Heard about jingle, the add on for XMPP that enables point to point audio between two XMPP clients. No server config necessary. Actually quite a cool feature. However, how good is it if you can not use those voice capabilities to do a P…
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…

730 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question