Source record · tier 2 current vendor documentation
System Configuration Guide for Cisco Unified Communications Manager, Release 15 and SUs - Configure LDAP Synchronization
- Publisher
- Cisco Systems
- URL
- https://www.cisco.com/c/en/us/td/docs/voice_ip_comm/cucm/admin/15/systemConfig/cucm_b_system-configuration-guide-15/cucm_b_system-configuration-guide-14_chapter_011011.html
- Published
- 2026-09-22
- Updated
- unknown
- Accessed
- 2026-09-25
- HTTP status
- 200
- License
- Cisco documentation; all rights reserved; no-redistribution; short excerpts and locators only
Source notes citing this source
- An LDAP Directory configuration can add synced users to access control groups and apply a feature group template to them. in context
- LDAP authentication is configured by checking Use LDAP Authentication for End Users and entering the LDAP Manager Distinguished Name, the LDAP User Search Base and the LDAP server hostname or IP address, with an optional Use TLS check box. in context
- Unified CM 15 can be configured to authenticate end user passwords against the LDAP directory instead of the Unified CM database. in context
- Unified CM LDAP authentication applies to end user passwords only and not to end user PINs or application user passwords. in context
- Users deleted in the LDAP directory are automatically removed from Unified CM after 24 hours. in context
- When deploying URI dialing, the LDAP Directory configuration should assign the LDAP attribute used for the user's primary directory URI. in context
- To synchronize from LDAP, the Cisco DirSync service is activated in Cisco Unified Serviceability under Tools > Service Activation on the publisher node, under Directory Services. in context
- LDAP directory synchronization is enabled from Cisco Unified CM Administration at System > LDAP > LDAP System by checking Enable Synchronizing from LDAP Server. in context
- Enterprise directory user search is enabled at System > LDAP > LDAP Search with Enable user search to Enterprise Directory Server, after which User Data Service (UDS) proxies user searches to the corporate directory instead of the Unified CM database. in context
- The LDAP Directory configuration has a Jabber Endpoint Provisioning section for auto-provisioning Jabber devices for synced users. in context
- An optional LDAP filter, created at System > LDAP > LDAP Filter, limits synchronization to the subset of directory users that match the filter. in context
- Unified CM supports LDAPS (LDAP with SSL) but does not support LDAP with StartTLS. in context
- A primary extension can be assigned to synced users by checking Apply mask to synced telephone numbers to create a new line for inserted users. in context
- Unified CM 15 can be configured to synchronize with multiple LDAP directories at scheduled intervals. in context
- Once the initial LDAP synchronization has occurred, edits cannot be made to that LDAP synchronization. in context
- After an LDAP directory is configured, an administrator can click Perform Full Sync Now to complete a sync or wait for the scheduled sync. in context
- Before LDAP sync, the default credentials of the credential policy applied to newly provisioned users should be configured. in context
- Before syncing, users' email ID fields on the Active Directory server must be unique entries or left blank. in context
- Syncing users from an LDAP directory requires a Feature Group Template to be set up beforehand. in context
- The LDAP System Configuration window has an LDAP Server Type drop-down for the directory type in use and an LDAP Attribute for User ID drop-down for the directory attribute that maps to the Unified CM user ID. in context
- The LDAP agreement service parameter Maximum Number of Agreements defaults to 20. in context
- The LDAP agreement service parameter Maximum Number of Hosts defaults to 3. in context
- Retry Delay On Host Failure defaults to 5 seconds and Retry Delay On HotList failure defaults to 10 minutes. in context
- LDAP Connection Timeouts defaults to 5 seconds and Delayed Sync Start time defaults to 5 minutes. in context
- In Unified CM 15, LDAP synchronization imports a list of users and associated user data from an external LDAP directory into the Unified CM database. in context
- The LDAP Directory configuration contains LDAP Directory Synchronization Schedule fields that define when Unified CM synchronizes with the external directory. in context
Cite this source record
APA
WarmTransfer. (2026, September 22). System Configuration Guide for Cisco Unified Communications Manager, Release 15 and SUs - Configure LDAP Synchronization. WarmTransfer. https://warmtransfer.net/knowledge/sources/cisco-cucm-sysconfig-15-ldap-sync
BibTeX
@misc{warmtransfer-cisco-cucm-sysconfig-15-ldap-sync,
title = {System Configuration Guide for Cisco Unified Communications Manager, Release 15 and SUs - Configure LDAP Synchronization},
author = {{WarmTransfer}},
year = {2026},
url = {https://warmtransfer.net/knowledge/sources/cisco-cucm-sysconfig-15-ldap-sync},
note = {Cisco Systems, accessed 2026-09-25}
}