D15362.16 DX70 and DX80 Administrator Guide CE9.13, JUNE 2020.
www.cisco.com — Copyright © 2020 Cisco Systems, Inc. All rights reserved.
178
Cisco Webex DX70 and DX80
Administrator Guide
UserManagement settings
UserManagement LDAP Admin Filter
The LDAP filter is used to determine which users should be granted administrator privileges.
You always have to set either an LDAP Admin Group or an LDAP Admin Filter. An LDAP
Admin Filter takes precedence, so if the UserManagement LDAP Admin Filter is set, the
UserManagement LDAP Admin Group setting is ignored.
Requires user role: ADMIN
Default value: ""
Value space: String (0, 1024)
Refer to the LDAP specification for the syntax of this string. Example:
"(|(memberof=CN=admin group, OU=company groups, DC=company, DC=com)
(sAMAccountName=username))"
UserManagement LDAP Admin Group
Members of this AD (Active Directory) group will be given administrator access. This setting
is a shorthand for saying (memberOf:1.2.840.113556.1.4.1941:=<group name>).
You always have to set either an LDAP Admin Group or an LDAP Admin Filter. An LDAP
Admin Filter takes precedence, so if the UserManagement LDAP Admin Filter is set, the
UserManagement LDAP Admin Group setting is ignored.
Requires user role: ADMIN
Default value: ""
Value space: String (0..255)
The distinguished name of the AD group. Example: "CN=admin group, OU=company
groups, DC=company, DC=com"
UserManagement LDAP Attribute
The attribute used to map to the provided username. If not set, sAMAccountName is used.
Requires user role: ADMIN
Default value: ""
Value space: String (0..255)
The attribute name.
UserManagement LDAP BaseDN
The distinguishing name of the entry at which to start a search (base).
Requires user role: ADMIN
Default value: ""
Value space: String (0..255)
The distinguishing name of the base. Example: "DC=company, DC=com"
UserManagement LDAP Encryption
Define how to secure the communication between the device and the LDAP server. You can
override the port number by using the UserManagement LDAP Server Port setting.
Requires user role: ADMIN
Default value: LDAPS
Value space: LDAPS/None/STARTTLS
LDAPS: Connect to the LDAP server on port 636 over TLS (Transport Layer Security).
None: Connect to the LDAP server on port 389 with no encryption.
STARTTLS: Connect to the LDAP server on port 389, then send a STARTTLS command
to upgrade to an encrypted connection (TLS).
Introduction
Configuration
Peripherals
Maintenance
Device settings
Appendices
Device settings