Directory Connector Overview
Directory Connector is an on-premises application for identity synchronization in to the cloud. You download the connector software from Control Hub and install it on your local machine.
With Directory Connector, you can maintain your user accounts and data in the Active Directory, so Active Directory becomes the single source of truth. When you make a change on-premises, it is replicated to the cloud.
See all the features, descriptions, and benefits in the table:
Feature | Description and Benefit |
---|---|
Easy-to-use dashboard | The dashboard provides a synchronization schedule, summary, and status of synchronization, and the status of the Directory Connector. You can view the dashboard any time you sign in. |
Dry run before synchronizing to the cloud | Conduct a dry run of changes to the directory before they are implemented in the cloud. Then run a report to see that the changes you want to make are what you expect. |
Full and incremental synchronization | Synchronize the entire directory. Or just synchronize the incremental changes to save on processing power and shorten synchronization time. |
Synchronize multiple domains (single forest or multiple forests) |
Directory Connector supports multiple domains either under a single forest or under multiple forests (without the need for AD LDS). For enterprises with multiple Active Directory domains, you can install a Directory Connector for each domain, bind each domain to your organization, and then synchronize each user base into Webex. Control Hub reflects the status by showing the synchronization state for multiple Directory Connectors, allows you to turn off synchronization for a specific domain, and deactivate a Directory Connector in a high availability deployment. |
Scheduled synchronization | Set a synchronization schedule by day, hour, and minute. |
Lightweight Directory Access Protocol (LDAP) filters | Define LDAP search criteria and provide efficient imports. |
Active Directory attribute mapping | Map Microsoft Active Directory attributes to corresponding Webex cloud attributes. You can map attributes that are relevant to your Active Directory configuration and also define custom attributes to map to the cloud. The attributes from the premises form various data in the cloud, such as user account information, enteprise phone numbers in Webex Teams, Room resource SIP addresses, and other user contact card data (job title, department, manager, and so on). |
Corporate Directory for on-premises Room resources and Cisco Webex Calling (Formerly Spark Call) (Cloud PSTN) Users and Enterprise Contacts without Webex Licensing |
If part of your organization uses Cisco Webex Calling (Formerly Spark Call) cloud PSTN for call service or you have on-premises Room devices, this feature lets users search the directory for enterprise contacts from their Cisco Webex Calling (Formerly Spark Call) (cloud PSTN) phones or Room resources.
|
Event viewer | Use the event viewer to determine if there were any issues with the synchronization. |
Diagnostic Tool and Troubleshooting | You can use the built in diagnostic tool to troubleshoot your Cisco
Directory Connector deployment. If synchronization didn't work properly,
you may have a configuration or network error. This tool tests your
connection to Active Directory so that you can diagnose errors yourself
before contacting support.
Once you enable troubleshooting in Directory Connector, logs are written that can be sent to technical support. |
Automatic upgrade | After you install Directory Connector, you're sent a notification whenever a new version of the software is available. You can set up automatic upgrades so that you're always on the latest version of the software when a new version is released. |
High availability | Configure multiple connectors so that there is a backup, in case the main connector or the machine hosting it goes down. |
Directory Connector is divided into three areas:
-
Control Hub is the single interface that lets you manage all aspects of your Webex organization: view users, assign licenses, download Directory Connector, and configure single sign-on (SSO) if you want your users to authenticate through their enterprise identity provider and you don't want to send email invitations for the Webex App.
-
Directory Connector management interface is the software that you download from Control Hub and install on a trusted Windows server. For multiple Active Directory domains, you can install one instant of the software for each domain that you want to synchronize. Using the software, you can run a synchronization to bring your Active Directory user accounts into Webex, view and monitor synchronization status, and configure Directory Connector services.
-
Directory synchronization service queries your Active Directory to retrieve users and groups to synchronize to the connector service and Directory Connector.
Refer to this diagram to understand the Directory Connector architecture:
