Authentication ADS Clockskew: <1..65535>
Maximum allowed clockskew between the VCS and the KDC before the Kerberos message is assumed to be invalid (in seconds).
Default: 300.
Example:
xConfiguration Authentication ADS Clockskew: 300
Authentication ADS DC [1..5] Address: <S: 0,39>
The address of a domain controller that can be used when the VCS joins the AD domain. Not specifying a specific AD will result the
use of DNS SRV queries to find an AD.
Example:
xConfiguration Authentication ADS DC 1 Address: "192.168.0.0"
Authentication ADS Encryption: <Off/TLS>
Sets the encryption to use for the LDAP connection to the ADS server. Default: TLS.
Off
: no encryption is used.
TLS
: TLS encryption is used.
Example:
xConfiguration Authentication ADS Encryption: TLS
Authentication ADS KDC [1..5] Address: <S: 0,39>
The address of a Kerberos Distribution Center (KDC) to be used when connected to the AD domain. Not specifying a specific KDC
will result in the use of DNS SRV queries to find a KDC.
Example:
xConfiguration Authentication ADS KDC 1 Address: "192.168.0.0"
Authentication ADS KDC [1..5] Port: <1..65534>
Specifies the port of a KDC that can be used when the VCS joins the AD domain. Default: 88.
Example:
xConfiguration Authentication ADS KDC 1 Port: 88
Authentication ADS MachineName: <S: 0..15>
This overides the default NETBIOS machine name used when the VCS joins the AD domain.
Example:
xConfiguration Authentication ADS MachineName: "short_name"
Authentication ADS MachinePassword Refresh: <On/Off>
Determines if this samba client should refresh its machine password every 7 days, when joined to the AD domain. Default: On.
Example:
xConfiguration Authentication ADS MachinePassword Refresh: On
Authentication ADS Mode: <On/Off>
Indicates if the VCS should attempt to form a relationship with the AD. Default: Off.
Example:
xConfiguration Authentication ADS Mode: On
Authentication ADS SPNEGO: <Enabled/Disabled>
Indicates if SPNEGO (Simple and Protected GSSAPI Negotiation Mechanism) is used when the client (the VCS) authenticates with
the server (the AD domain controller). Default: Enabled.
Example:
xConfiguration Authentication ADS SPNEGO: Enabled
Authentication ADS SecureChannel: <Auto/Enabled/Disabled>
Indicates if data transmitted from the VCS to an AD domain controller is sent over a secure channel. Default: Auto.
Example:
xConfiguration Authentication ADS SecureChannel: Auto
Authentication ADS Workgroup: <S: 0,15>
The workgroup used when the VCS joins the AD domain.
Example:
xConfiguration Authentication ADS Workgroup: "corporation"
Cisco VCS Administrator Guide (X8.1.1)
Page 425 of 507
Reference material
Command reference — xConfiguration