Installation guide

LDAP Configuration
Acano solution: Deployment Guide R1.2 76-1006-06-K
Page 44
7 LDAP Configuration
You must have an LDAP server (currently Active Directory) to use the Acano solution. User
accounts are created via an import from the LDAP server. You can create user names by
importing fields from LDAP. The passwords are not cached on the Acano solution, a call is made
to the LDAP server when an Acano client authenticates, and therefore passwords are managed
centrally and securely on the LDAP server.
7.1 Why use LDAP?
Using LDAP to configure the Acano solution is a powerful and scalable way to set up your
environment: defining your organization’s calling requirements within the AD structure minimizes
the amount of configuration required on the Acano solution.
The solution uses the concept of filters, rules and templates.
Filters allow you to separate users into groups, for example:
Everyone in the HR department
Staff at grade 11 and above
Job title = 'director'
People whose surname starts with 'B'
Then rules (actions) can be applied on these groups, for example:
Give users in this group the ability to create new coSpaces
Associate users in this group to one or more existing coSpaces, e.g. the 'HR managers
CoSpace'
Create a personal coSpace for each user in this group
Apply a template to this group of users
Templates define things such as which default layout to use, or what maximum call rate is
allowed. For example, if a new employee joins the organization as a manager with a grade >11,
just based on his job title or grade he can be set up automatically with a personal CoSpace,
have the ability to create new CoSpaces, have a 4Mbps call rate and be assigned to the "all
managers" CoSpace. In contrast, another new joiner with job title "temp" might be configured
with a default call rate of 500kbps.
Note: Full functionality for LDAP filters and templates will be introduced in a future release.
7.2 Acano Solution Settings
Note: The Acano solution supports multiple LDAP servers via the API: the Web Admin Interface
only allows you to configure one. See the LDAP Methods section in the API Reference guide.
This example assumes you are using Microsoft Active Directory (AD).
To set up the Acano solution to work with AD, follow these steps:
1. Sign in to the Web Admin Interface and go to Configuration > Active Directory.
2. Configure the connection to AD in the first section with the following: