Cisco SSO with Azure
CUCM
- uid = SAM account name or Givenname?
- What about UDP login, if using SAM today and switch to email?
Jabber
Note: After SSO is enabled on CUCM and IMP, by default all Jabber users sign in with SSO. Administrators can change this on a per user basis so that certain users do not use SSO and instead sign in with their Jabber usernames and passwords. In order to disable SSO for a Jabber user, set the value of the SSO_Enabled parameter to FALSE.
Unity Connection
Expressway
Troubleshooting Guides
Notes
- Review and confirm NTP Status on all relevant machines
- Configure SSO on internal Servers first, then Expressways.
Make sure to system admins users can log in with their LDAP account and have the correct admin access in advance of SSO config.
Unity Connection
- When enabling SSO mode from Cisco Unity Connection Administration, make sure you have at least one LDAP user with administrator rights in Unity Connection to Run SSO Test for SAML SSO.
- Assign the system administrator role to the user accounts to allow them to access Unity Connection administrative and serviceability web applications.
Other
Questions
- How does Jabber with SSO - does it use a 'Jabber' browser to redirect to IdP login?
- if CUCM is using SAM for userid in CUCM - how to use email address?
- for UDP can be decide to use a different SAM while Jabber is using email.