cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1456
Views
0
Helpful
0
Comments
qdwang
Cisco Employee
Cisco Employee

Cisco Unified Communications Manager 7.x supports Microsoft Active Directory forest with some limitations.

When synchronization is enabled with an AD forest containing multiple trees, multiple LDAP synchronization agreements are needed. Additionally, the UserPrincipalName (UPN) attribute is guaranteed by Active Directory to be unique across the forest and must be chosen as the attribute that is mapped to the Unified CM UserID.

When authentication is enabled with an AD forest containing multiple trees, a single LDAP search base cannot cover multiple namespaces. Unified CM must use a different mechanism to authenticate users across these discontiguous namespaces. The UserPrincipalName (UPN) attribute must be used as the user ID within Unified CM. When the user ID is the UPN, the LDAP authentication configuration page within Unified CM Administration does not allow you to enter the LDAP Search Base field, but instead it displays the note, "LDAP user search base is formed using userid information." In fact, the user search base is derived from the UPN suffix for each user.

Further details can be found at Cisco Unified Communications SRND Based on Cisco Unified Communications Manager 7.x > LDAP Directory Integration

http://www.cisco.com/en/US/docs/voice_ip_comm/cucm/srnd/7x/directry.html#wp1070369/en/US/docs/voice_ip_comm/cucm/srnd/7x/uc7_0.html

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: