Cisco TelePresence Video Communication Server Administrator's Manual page 259

Hide thumbs Also See for TelePresence Video Communication Server:
Table of Contents

Advertisement

ou: h350
2. Add the ldif file to the server using the command:
slapadd -l <ldif_file>
This organizational unit will form the BaseDN to which the VCS will issue searches. In this example
the BaseDN will be: ou=h350,dc=my-domain,dc=com.
It is good practice to keep the H.350 directory in its own organizational unit to separate out H.350
objects from other types of objects. This allows access controls to be setup which only allow the VCS
read access to the BaseDN and therefore limit access to other sections of the directory.
Note: the SIP URI in the ldif file must be prefixed by sip:
Add the H.350 objects:
1. Create an ldif file with the following contents:
# MeetingRoom1 endpoint
dn: commUniqueId=comm1,ou=h350,dc=mydomain,dc=com
objectClass: commObject
objectClass: h323Identity
objectClass: h235Identity
objectClass: SIPIdentity
commUniqueId: comm1
h323Identityh323-ID: MeetingRoom1
h323IdentitydialedDigits: 626262
h235IdentityEndpointID: meetingroom1
h235IdentityPassword: mypassword
SIPIdentityUserName: meetingroom1
SIPIdentityPassword: mypassword
SIPIdentitySIPURI: sip:MeetingRoom@domain.com
2. Add the ldif file to the server using the command:
slapadd -l <ldif_file>
The example above will add a single endpoint with an H.323 ID alias of MeetingRoom1, an E.164
alias of 626262 and a SIP URI of MeetingRoom@domain.com. The entry also has H.235 and SIP
credentials of ID meetingroom1 and password mypassword which are used during authentication.
H.323 registrations will look for the H.323 and H.235 attributes; SIP will look for the SIP attributes.
Therefore if your endpoint is registering with just one protocol you do not need to include elements
relating to the other.
For information about what happens when an alias is not in the LDAP database see Alias origin in the
Device authentication using LDAP
Securing with TLS
The connection to the LDAP server can be encrypted by enabling Transport Level Security (TLS) on
the connection. To do this you must create an X.509 certificate for the LDAP server to allow the VCS
Cisco VCS Administrator Guide (X6.1)
section.
Reference material
Page 259 of 401

Advertisement

Table of Contents
loading

Table of Contents