Chapter 6 Authentication and Federated Identity

Concepts

Synchronization (Replication) Overview

When you choose LDAP authentication or SSO authentication, user account data originates from your Active Directory server. However, Cisco DMS does not synchronize (replicate) this data automatically, in real time. Instead, we cache it. Therefore, you must resynchronize user account data when you think it is appropriate to do so. You can:

Resynchronize manually.

Schedule synchronizations to recur in the future at set intervals.

Note Features of Digital Signs and Show and Share Administration help you to manage user access privileges and permissions for Cisco DMS.

DMS-Admin synchronizes all user accounts in the Active Directory “user base” that your filter specifies, except users whose accounts are disabled on your Active Directory server.

Synchronization Types

We support four types of Active Directory synchronization in LDAP mode or federation mode.

Initial

Update

Overwrite

Delete

 

 

 

 

Runs a one-time

Runs an incremental,

Overwrites your local

Deletes your local copy

synchronization for a

fast update to find and

copy of user accounts

of user accounts that

new filter that you never

make up for any

that correspond to your

correspond to a defined

synchronized

differences between

Active Directory filter

Active Directory filter

previously.

user accounts that

with new copies of

and deletes the entry for

 

match your

those user accounts. In

that filter from

 

Active Directory filter

addition, deletes your

DMS-Admin.

 

and your local copy of

local copy of each user

 

 

those user accounts.

account that has been

 

 

 

deleted from

 

 

 

Active Directory since

 

 

 

the last time that you ran

 

 

 

a synchronization.

 

 

 

 

 

 

User Guide for Cisco Digital Media Manager 5.2.x

6-12

OL-15762-03

Page 58
Image 58
Cisco Systems 5.2.x manual Synchronization Replication Overview, Synchronization Types, Initial Update Overwrite Delete