McDewey

Multi-vendor documentation library · semantic search · MCP endpoint at /mcp

Page 179

↗ View in doc context
page
179
source
unity-connection/v15/admin-guide/admin-guide.md
chunk_id
unity-connection::v15::admin-guide::admin-guide::161

Do not specify user search bases that causes more than 120,000 users to be imported into the Cisco Unified CM database during synchronization to avoid impact on Unity Connection performance. Caution You can synchronize the data of 160,000 users with LDAP directory. • Analyze the structure of your LDAP directory and determine whether you can specify five or less than five user search bases that: • Include the LDAP users that you want to import into Unity Connection. • Exclude the LDAP users that you do not want to import into Unity Connection. • Causes less than 60,000 users to be imported into the Cisco Unified CM database. Directories Other than Active Directory If you are using an LDAP directory other than Microsoft Active Directory, you should specify one or more user search bases that include the smallest possible number of users to enhance the speed of synchronization, even when that means creating multiple configurations. If the root directory contains subtrees that you do not want Unity Connection to access (for example, a subtree for service accounts), do either of the following tasks: • Create two or more LDAP directory configurations and specify the search bases that you do not want Unity Connection to access. • Create an LDAP search filter. For more information, see the “Filtering LDAP Users” section of the “LDAP Directory Integration with Cisco Unity Connection” chapter of the Design Guide for Cisco Unity Connection Release 15, available at https://www.cisco.com/c/en/us/td/docs/voice_ip_comm/connection/ 15/design/guide/b_15cucdg.html. Active Directory You must create a separate LDAP directory configuration when using Active Directory or when the LDAP directory domain has several child domains. Unity Connection do not follow Active Directory referrals during synchronization. In this type of LDAP configuration, you must map the UserPrincipalName (UPN) attribute to the Unity Connection Alias field because UPN is unique across the forest in Active Directory. Unity Connection Intrasite and Intersite Networking Intrasite or intersite networking allows to network two or more Unity Connection servers that may be each integrated with an LDAP directory. When you are using intrasite or intersite networking, you may specify a user search base on one Unity Connection server that overlaps a user search base on another Unity Connection server. Be careful not to accidentally create duplicate Unity Connection users on different Unity Connection servers by importing the same LDAP user more than once. System Administration Guide 161 LDAP Directories Other than Active Directory