Cisco TelePresence Administrator's Manual page 125

Video communication server
Hide thumbs Also See for TelePresence:
Table of Contents

Advertisement

Device authentication
Field
Description
AD domain
This must be the fully qualified domain name
(FQDN) of the AD domain that the VCS will
join. It must be entered in upper case, such as,
EXAMPLE.COM.
Short
The short domain name used by the VCS
domain
when it joins the AD domain.
name
NetBIOS
By default the system uses the System host
machine
name as the NetBIOS machine name when
name
joining the AD domain. If required, you can
(override)
enter a different name here to override the
default name.
Secure
Indicates if data transmitted from the VCS to
channel
an AD Domain Controller is sent over a
mode
secure channel.
Auto: automatically adapts to the domain
controller's settings.
Enabled: always attempts to use a secure
channel.
Disabled: does not use a secure channel.
The default is Auto.
Encryption
Sets the encryption to use for the LDAP
connection to the Active Directory Service.
Off: no encryption is used.
TLS: TLS encryption is used.
The default is TLS.
Clockskew
The maximum allowed clockskew (in
seconds) between the VCS and the KDC
before the Kerberos message is assumed to
be invalid.
The default is 300 seconds.
Use DNS
Yes is the recommended setting. This means
SRV lookup
that VCS will use a DNS SRV lookup of the
to obtain
AD domain to obtain the address details of
Domain
the AD domain controllers.
Controller
If the lookup cannot provide the addresses
addresses
then set this field to No and enter the IP
address of the primary Domain Controller into
the Address 1 field that will be displayed.
Cisco VCS Administrator Guide (X8.1.1)
About device authentication
Usage tips
Typically the domain is the same as the DNS
name of the Kerberos server.
Upper case entry is enforced due to case
sensitivity issues with Active Directory.
It is also known as the NetBIOS domain name.
An override must be specified if the System
host name exceeds 15 characters.
You are recommended to use Auto.
If encryption is set to TLS, a valid CA
certificate, private key and server certificate
must be uploaded to the VCS.
Click
Upload a CA certificate file for TLS
the
Related tasks
section) to go to the
Managing the trusted CA certificate list [p.285]
page.
It should be kept in step with the clock skew
setting on the KDC.
Ensure that VCS and KDC are synchronized
to time servers.
(in
Page 125 of 507

Advertisement

Table of Contents
loading

This manual is also suitable for:

Telepresence x8.1.1

Table of Contents