cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
446
Views
5
Helpful
3
Replies

Security by default when migrating tio UCS server

Derek McCormick
Level 1
Level 1

HI,

I am currently running Call Manager 8.5.1 on a standalone MCS 7825 server. I plan to migrate from this to a UCS server. I have backed up the current server via disater recovery process and successfully restored to the new UCS server. My question is when i move the phones over to the new server, will they be able to register to it(the IP Address/ hostname is the same as old server)? Or will security by default prevent the phones from registering. My feeling is that the security by default config would migrate accross when i restore via the disater recovery process. Has anyone done this before. i have no way of testing until I do the migration.

Thanks,

Derek

2 Accepted Solutions

Accepted Solutions

Rob Huffman
Hall of Fame
Hall of Fame

Hi Derek,

Excellent question

I'm with you that the ITL files should be honored in this example....but I wouldn't

head down that path with the possible disastrous outcomes without proof. Did you look at

using the "Rollback Enterprise Parameter"??

https://supportforums.cisco.com/docs/DOC-15799

Cheers!

Rob

If you have a couple of broken phones (hookswitch etc.) you could test ahead of time

by building them on the production network and then moving them to the lab.

"Always movin' ahead and never lookin' back" - Springsteen

View solution in original post

To add to Robs answer, the rollback option is the safest.  Depending on what version of 8.5.1 there is a bug where the DRF process do not backup certificates properly so even after a restore phones will not register correctly to the new server even though it has the same IP address because the certificates change.

CUCM DRF Backup does not backup certificates

http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&bugId=CSCtn50405

View solution in original post

3 Replies 3

Rob Huffman
Hall of Fame
Hall of Fame

Hi Derek,

Excellent question

I'm with you that the ITL files should be honored in this example....but I wouldn't

head down that path with the possible disastrous outcomes without proof. Did you look at

using the "Rollback Enterprise Parameter"??

https://supportforums.cisco.com/docs/DOC-15799

Cheers!

Rob

If you have a couple of broken phones (hookswitch etc.) you could test ahead of time

by building them on the production network and then moving them to the lab.

"Always movin' ahead and never lookin' back" - Springsteen

To add to Robs answer, the rollback option is the safest.  Depending on what version of 8.5.1 there is a bug where the DRF process do not backup certificates properly so even after a restore phones will not register correctly to the new server even though it has the same IP address because the certificates change.

CUCM DRF Backup does not backup certificates

http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&bugId=CSCtn50405

I migrated over to the UCS environment and the weekend and the certificates migrated accross via the diasaster recovery restore process. All phones registered correctly. I am running 8.5.1. Thanks for your help