Integrations with Other Systems
Polycom, Inc. 159
c Specify the number of characters to use.
After the system strips out characters to remove, it removes characters in excess of this number
from the beginning of the string.
6 Click Update.
After a short time, the system confirms that Active Directory configuration has been updated.
7 Note the time. Click OK.
8 To restrict the Polycom RealPresence DMA system to work with a subset of the Active Directory
(such as one tree of multiple trees, a subtree, or a domain), repeat steps 4-6, selecting the value
you want from those now available in the Base DN list. See Understanding Base DN on page 160.
9 Check the Total users/rooms and Conference room errors values. If the numbers are significantly
different from what you expected, you’ll need to investigate after you complete the next step (you
must be logged in as an enterprise user to investigate further).
10 Set up your enterprise account and secure the service account:
a Log out and log back in using the service account you created in step 1.
You must be logged in with an Active Directory user account to see other enterprise users. The
service account user ID specified in step 4b lets you do so initially.
b Go to User > Users, clear the Local users only check box, locate your named enterprise
account, and give it Administrator privileges. See User Roles Overview on page 301 and Users
Procedures on page 321.
c Log out and log back in using your named enterprise account.
d Secure the service account by removing all user roles and marking it disabled in the Polycom
RealPresence DMA system (not in the Active Directory). See Edit User Dialog Box on page 307.
11 If, in step 9, the Total users/rooms values were significantly different from what you expected, try to
determine the reason and fix it:
a Go to User > Users and perform some searches to determine which enterprise users are
available and which aren’t.
b If there are many missing or incorrect users, consider whether changes to the LDAP filter can
correct the problem or if there is an issue with the directory integration configuration chosen.
Note: Save Passcode Generation for Later
Leave the Enterprise Chairperson and Conference Passcode Generation section alone for now.
Once the system is integrated successfully, if you want to add passcode support, see Adding
Passcodes for Enterprise Users on page 162.
Caution: Disable the Service Account
Leaving user roles assigned to the service account represents a serious security risk. For best
security, remove all user roles and mark this account disabled in the Polycom RealPresence DMA
system (not the Active Directory) so that this account can’t be used for conferencing or for logging into
the Polycom RealPresence DMA system management interface.
Note: LDAP Familiarity
If you’re not familiar with LDAP filter syntax (as defined in RFC 2254) and knowledgeable about
enterprise directories in general and your specific implementation in particular, please consult with
someone who is.