cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
263
Views
0
Helpful
3
Replies

Cisco support LDAP Authentication - Multiple Domains

Chi Fai Leung
Level 1
Level 1

Hi,

I want to change the LDAP authentication as the multiple domains and my Windows AD environment is the child trust, that mean the root DC is the "abc.com", which have the two child DCs, e.g. "us.abc.com ", "uk.abc.com"

Is it possible I just changed the LDAP auth. with user search space as the root DC is fine?
OR
I must use the "userPrincipalName" ?

3 Replies 3

Chris Deren
Hall of Fame
Hall of Fame

Yes,if single forest you can point to the root domain just fine.

But it had the collision SAMAccountName, that would have the same account name between the us.abc.com and uk.abc.com. 

If I changed the "userPrincipalName" LDAP sync to CM, how about the Jabber login?

Actually, I changed the LDAP Directory Sync as "userPrincipalName", and I just can login the abc.com users on ccmuser page and us.abc.com users is LDAP auth. fail ....