Cisco TelePresence Administrator's Manual page 276

Video communication server
Hide thumbs Also See for TelePresence:
Table of Contents

Advertisement

To use LDAP for account authentication, you must also go to the
page and select a Remote administrator or user authentication source.
The configurable options are:
Field
Description
LDAP server configuration: this section specifies the connection details to the LDAP server.
Server
The IP address or Fully Qualified Domain Name (or server
address
address, if a DNS Domain Name has also been configured)
of the LDAP server to use when making LDAP queries.
FQDN
Sets how the LDAP server address is resolved if it is
address
specified as an FQDN.
resolution
Address record: DNS A or AAAA record lookup.
SRV record: DNS SRV record lookup.
The default is Address record.
Port
The IP port to use on the LDAP server.
Encryption
Determines whether the connection to the LDAP server is
encrypted using Transport Layer Security (TLS).
TLS: uses TLS Encryption for the connection to the LDAP
server.
Off: no encryption is used.
The default is Off.
Certificate
Specifies whether certificate revocation lists (CRLs) are
revocation
checked when forming a TLS connection with the LDAP
list (CRL)
server.
checking
None: no CRL checking is performed.
Peer: only the CRL associated with the CA that issued the
LDAP server's certificate is checked.
All: all CRLs in the trusted certificate chain of the CA that
issued the LDAP server's certificate are checked.
The default is None.
Authentication configuration: this section specifies the VCS's authentication credentials to use when binding to
the LDAP server.
VCS bind DN
The distinguished name used by the VCS when binding to
the LDAP server.
VCS bind
The password used by the VCS when binding to the LDAP
password
server.
SASL
The SASL (Simple Authentication and Security Layer)
mechanism to use when binding to the LDAP server.
None: no mechanism is used.
DIGEST-MD5: the DIGEST-MD5 mechanism is used.
The default is DIGEST-MD5.
Cisco VCS Administrator Guide (X7.1)
Login account authentication configuration
Usage tips
Typically this is 389 for non-TLS,
and 636 if TLS encryption is
enabled.
If you use TLS encryption, you
need to upload a suitable CA
certificate file.
Click
Upload a CA certificate file
for TLS
to go to the
certificates
page.
If you are using revocation lists,
any required CRL data must also
be included within the CA
certificate file.
The maximum plaintext length is 60
characters, which is then encrypted.
Maintenance
Security
Page 276 of 479

Advertisement

Table of Contents
loading

This manual is also suitable for:

Telepresence x7.1

Table of Contents