IDS Connection

Purpose

The IDS Connection form allows the administrator to configure the connection between the MiVoice Business Integrated Directory Server (IDS) and the directory server domain controller.

Use this form when performing the following tasks:

For more information:

Conditions

Field Descriptions

Parameter

Description

Default Value

Client Network Element

Select the name of the network element that will serve as the MiVoice Business IDS contact point when a Scheduled IDS event is run. The list of valid MiVoice Business IDS contact points (MiVoice Business systems) is maintained on the Network Elements form.

NOTES

  • A node must have an IDS license to be programmable as a Client Network Element. Moreover, the IDS Connection form is available only if the local node has an IDS license.

  • IDS Synchronization must be performed on the node that is serving as the actual MiVoice Business IDS contact point. The system double-checks the validity of its IDS license prior to allowing the synchronization event to proceed.

 

Local MiVoice Business system

Directory Server

Select the name of the directory server for the IDS connection. The list of valid directory servers is maintained on the Network Elements form. The default value is the first valid directory server configured on the Network Elements form. If none is configured, the field is blank.

NOTE: This is a mandatory field.

Not assigned

DS IP Address or FQDN

Read-only field. Displays the IP address or fully qualified domain name (FQDN) of the directory server.

NOTE: This field is updated when a new Directory Server Name is selected and saved.

Blank

Domain

Specify the unique domain name used by the directory server.

Blank

Directory Server Type

In this release, the only available Directory Server Type is Active Directory.

Active Directory

User

Enter the user name required to access the directory server. The following formats are supported: Username; Distinguished Name; URL; and Domain Name.

Examples:

  • User name format – luum

  • Distinguished Name format – cn=luum, cn= users, dc=ids, dc=com

  • URL format – luum@ids.com

  • Domain name\user name format – ids\luum

Blank

User Password

Enter the user password required to access the directory server.

Blank

LDAP Port

Enter the LDAP port number on the directory server. The default value, 389, is the well-known port number for TLS.  For SSL/TLS, the well-known port number is 636.

389

GC LDAP Port

Enter the Global Catalog (GC) port number if the domain controller is also a GC server. If the connection method is unsecured or TLS, use port 3268. If the connection method is SSL/TLS, use port 3269.

0

Connection Method

Select the method used to connect to the directory server. The following options are available.
TLS - Encrypted, LDAP over Transport Layer Security.
SSL/TLS - Encrypted, LDAP over Secure Socket Layer.
Unsecured - No encryption.

TLS

Default Query String

Enter the default query string used for LDAP searches.

NOTE: Applicable to incremental IDS Synchronizations only.

Objectclass=user

Search Scope

Subtree

Maximum Query Time

Enter the maximum time of the LDAP search, in milliseconds. Enter "0" to search continually until a TCP timeout occurs.

120000

Query Page Size

Enter the maximum page size of the LDAP search. The permitted range is 100 to 1000 records per page.

400

Chase Referral

If the directory server does not hold the target requested by an LDAP search, it will return a referral message that redirects the client to another server.  

Enter "True" to act on the referral message or "False" to ignore it.

False

IDS Sync

In this release, only one-way synchronization, from the directory server to the MiVoice Business IDS, is available.

One way sync to IDS

Search Context

Leave the field blank to begin the search at the domain root container.

Blank

Default container to add new users on DS

Enter the distinguished name (DN) of the default container used to construct the DN of each user object listed in the "IDSManagedUsersWithNoDomain" LDAP Data Interchange Format (LDIF) file that is generated when a Full IDS Synchronization is performed.

You can retrieve the file via the Scheduler's file transfer application, open it and amend it by adding unique parents/directory paths to the user objects. You can then import the file onto a directory server.

NOTES

  • If the Default Container is left blank, the domain root container is used to construct the DN.

  • If there are multiple connections, then a placeholder "Unknown domain" is used to construct the DN.

 

Blank

Last sync time

Read-only field. Displays the last time that the MiVoice Business IDS client was synchronized with the directory server. The synchronization process must be successful for this field to be updated.

The generalized Time format is YYYYMMDDHHMMSS

[.|,fraction][(+|-HHMM)|Z]

For example, 20100811152601.510+0000 means August 11, 2010 3 PM, 26 minutes, and 1.51 second. The +/- is used to indicate the local time difference from the Coordinate Universal Time.

Blank