Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

LDAP Problem CUCM

hi,

i have a little problem with ldap sync. We have ~1300 users in our call manager. Now we want to move those users to a new LDAP Server with another naming convention.

I have now disabled/deleted the ldap sync/auth/directory so that the users are now local users. I have wait some days and look if the garbage collector purge those users but that is not the case. It seems i can make changes and for example reset the password but i have tried to reset a password from a user and logon to the ccmuser page. And that did not work, i`m not able to login with the user id and the reset password. With every user ->

"Log on failed - Invalid User ID or Password"

If i create a new user i`m able to login to ccmuser page with the new user.

The goal for the moment is to make it possible to login to the ccmuser page for the users.

best regards

Jason

  • IP Telephony
1 ACCEPTED SOLUTION

Accepted Solutions
Super Bronze

LDAP Problem CUCM

Hi

When you disable AD integration, it leaves those users with a status=2 (inactive) value. See this post for how to back it out and make those users normal again:

I have on lab systems used this to fix it from the server CLI:

run sql update enduser set status=1

Aaron Harrison

Principal Engineer at Logicalis UK

Please rate helpful posts...

Aaron Please remember to rate helpful posts to identify useful responses, and mark 'Answered' if appropriate!
6 REPLIES
Super Bronze

LDAP Problem CUCM

Hi

When you disable AD integration, it leaves those users with a status=2 (inactive) value. See this post for how to back it out and make those users normal again:

I have on lab systems used this to fix it from the server CLI:

run sql update enduser set status=1

Aaron Harrison

Principal Engineer at Logicalis UK

Please rate helpful posts...

Aaron Please remember to rate helpful posts to identify useful responses, and mark 'Answered' if appropriate!
VIP Super Bronze

LDAP Problem CUCM

Aaron,

where is the post

Please rate all useful posts "The essence of christianity is not the enthronement but the obliteration of self --William Barclay"
Super Bronze

LDAP Problem CUCM

Try this one https://supportforums.cisco.com/message/3558355

:-)

I was going to reference a post I recall reading but couldn't find it! ...

Aaron Please remember to rate helpful posts to identify useful responses, and mark 'Answered' if appropriate!
New Member

LDAP Problem CUCM

Excellent Aaron. This works for the test lab. Next week i`ll look if it works for so many users. Do you have experience with this? For example 60000 users?

Super Bronze

LDAP Problem CUCM

Hi

I've not done it on anything that large, no... but it shouldn't be a problem.

Aaron

Aaron Please remember to rate helpful posts to identify useful responses, and mark 'Answered' if appropriate!
New Member

LDAP Problem CUCM

Hello,

Just to add  point.

Once users are synchronized from LDAP into the Unified CM database, deletion of a synchronization

configuration will cause users that were imported by that configuration to be marked inactive in the

database. Garbage collection will subsequently remove those users.

Garbage collection is a process that runs automatically at the fixed time of 3:15 AM, and it is not

configurable.

Regards

Vigeesh Kalathil

1586
Views
0
Helpful
6
Replies
This widget could not be displayed.