This page describes how to configure Sonus configure
for Active Directory User Group Access:
...
Note |
---|
When configuring the Domain Controller, we recommend using a domain name other than the Domain Admin user. |
Step 1 - Configure the Domain Controllers
This step allows you to specify the Domain Controller(s) which will be used in the
system. The information from the same domain controller(s) will be used for AD-based
telephony routing and for
Logging in to Sonus SBC Edge using an AD domain user.
To add a Domain Controller, follow the instructions outlined in Adding and Modifying Domain Controllers with the following settings:
- Description: The name you wish to use for referencing this domain controller - used in the next step
- IP Address/FQDN: IP address or FQDN of the Domain Controller
- Search Scope: for example
dc=uxdemo,dc=net
- LDAP Query: for example
userPrincipalName=*
Panel |
---|
|
Caption |
---|
0 | Figure |
---|
1 | Create Domain Controller |
---|
| Image Modified |
|
Step 2 - Configure
...
SBC Edge for Active Directory Access
In this step, we configure the Active Directory settings on Sonus
such that we can authenticate users through the Domain Controller created earlier.
Configuring the SBC Edge for Active Directory with the following settings:
...
- Select the Domain Controller - created in Step 1
Step 3 - Configure AD User Group to Access Level Mapping
In this step, we map the Active Directory (AD) group with the Sonus SBC Edge access level for the AD user we wish to grant access on the
:
- Group Name: enter the name of the AD group
- Access level: select the access level for the group
Panel |
---|
|
Caption |
---|
0 | Figure |
---|
1 | Create User Group Mapping |
---|
| Image Modified |
|
Step 4 - Login with an Active Directory Domain User
To verify the AD domain user can access the Sonus
, the AD username must be supplied in the format
USERNAME@DOMAIN
- see
How User Authentication Works. Enter the following in the
login screen- User Name: enter the AD user name in the format
USERNAME@DOMAIN
; for example readonlyuser1@uxdemo.net
- Password: enter the password of the AD user
Panel |
---|
|
Caption |
---|
| Image Modified |
|