The documentation set for this product strives to use bias-free language. For the purposes of this documentation set, bias-free is defined as language that does not imply discrimination based on age, disability, gender, racial identity, ethnic identity, sexual orientation, socioeconomic status, and intersectionality. Exceptions may be present in the documentation due to language that is hardcoded in the user interfaces of the product software, language used based on RFP documentation, or language that is used by a referenced third-party product. Learn more about how Cisco is using Inclusive Language.
Book Contents Book ContentsAdministration Guide for Cisco Unified Communications Manager, Release 12.5(1)
Cisco Unified CM Administration, a web-based application, is the main administration and configuration interface for Cisco Unified Communications Manager. You can use Cisco Unified CM Administration to configure a wide range of items for your system including general system components, features, server settings, call routing rules, phones, end users, and media resources.
We recommend that you use a different username for the Cisco Unified Communications Operating System Administration and the Cisco Unified CM Administration interfaces.
The configuration windows for Cisco Unified CM Administration are organized under the following menus:
We recommend that you use a different username for the Cisco Unified Communications Operating System Administration and the Cisco Unified CM Administration interfaces.
Use Cisco Unified Communications Operating System Administration to configure and manage your operating system and perform the following administration tasks:
You can check the status of various operating system components, including the following:
You can view and update the following operating system settings:
You can manage security certificates and IPsec settings. From the Security menu, you can choose the following security options:
You can upgrade the software version that is running on the operating system or to install specific software options, including Cisco Unified Communications Operating System locale installers, dial plans, and TFTP server files.
From the Install/Upgrade menu option, you can upgrade system software from either a local disk or a remote server. The upgraded software is installed on the inactive partition, and you can then restart the system and switch partitions, so the system starts running on the newer software version. For more information, see the Upgrade and Migration Guide for Cisco Unified Communications Manager and the IM and Presence Service.
You must perform all software installations and upgrades through the software upgrade features that are included in the Cisco Unified Communications Operating System interface and the CLI. The system can upload and process only software that is Cisco Systems approved. You cannot install or use third-party or Windows-based software applications.
The application provides the following operating system utilities:
You can access the CLI from the Operating System or through a secure shell connection to the server. For more information, see the Command Line Interface Reference Guide for Cisco Unified Communications Solutions.
With Cisco Unified Communications Manager release 12.0 (1), the authenticated Network Time Protocol (NTP) capability for Unified Communications Manager is supported. This support is added to secure the NTP server connection to Unified Communications Manager. In the previous releases, the Unified Communications Manager connection to the NTP server was not secure.
This feature is based on symmetric key-based authentication and is supported by NTPv3 and NTPv4 servers. Unified Communications Manager supports only SHA1-based encryption. The SHA1-based symmetric key support is available from NTP version 4.2.6 and above.
You can check the authentication status of the NTP servers through administration CLI or NTP Server List page of the Cisco Unified OS Administration application.
Cisco Unified Communications Manager also supports Network Time Protocol (NTP) authentication through Auto-key functionality (Public Key Infrastructure- based authentication). This feature is applicable only on the publisher node.
Redhat recommends symmetric key authentication over autokey. For more information, see https://access.redhat.com/support/cases/#/case/01871532.
This feature is added, as PKI-based authentication is mandatory for Common Criteria certification.
You can configure the PKI-based authentication with the IFF identity scheme on the NTP server only if you enable common criteria mode on the Cisco Unified Communication Manager.
You can enable either symmetric key or PKI-based NTP authentication on Cisco Unified Communications Manager.
If you try to enable the symmetric key on the PKI enabled server, the following warning message is displayed:
NTP authentication using Autokey is currently enabled and must be disabled before the symmetric key is enabled. Use the command 'utils ntp auth auto-key disable' to disable NTP authentication, then retry this command.
If you try to enable the Autokey on the symmetric key enabled server, the following warning message is displayed:
NTP authentication using symmetric key is currently enabled and must be disabled before Autokey is enabled. Use the command 'utils ntp auth symmetric-key disable' to disable NTP authentication, then retry this command.
NTP servers require ntp version 4 and the rpm version ntp-4.2.6p5-1.el6.x86_64.rpm and above.
You can check the authentication status of the NTP servers through administration CLI or NTP Server List page of the Cisco Unified OS Administration application.
Cisco Unified Serviceability is a web-based troubleshooting tool that provides a host of services, alarms, and tools that assist administrators in managing their systems. Among the features that Cisco Unified Serviceability offers to administrators are:
Using Cisco Unified Serviceability, you can start services that allow you to use the following additional administrative interfaces:
The Cisco Unified Reporting web application generates consolidated reports for troubleshooting or inspecting cluster data. You can access the application at the Unified Communications Manager and Unified Communications Manager IM and Presence Service consoles.
This tool provides an easy way to take a snapshot of cluster data. The tool gathers data from existing sources, compares the data, and reports irregularities. When you generate a report in Cisco Unified Reporting, the report combines data from one or more sources on one or more servers into one output view. For example, you can view the following reports to help you administer your system:
For a full list of reports offered through Cisco Unified Reporting, as well as instructions on how to use the application, see the Cisco Unified Reporting Administration Guide at http://www.cisco.com/c/en/us/support/unified-communications/unified-communications-manager-callmanager/products-maintenance-guides-list.html.
The Disaster Recovery System (DRS), which can be invoked from Cisco Unified Communications Manager Administration, provides full data backup and restore capabilities. The Disaster Recovery System allows you to perform regularly scheduled automatic or user-invoked data backups.
DRS restores its own settings (backup device settings and schedule settings) as part of the platform backup/restore. DRS backs up and restores the drfDevice.xml and drfSchedule.xml files. When the server is restored with these files, you do not need to reconfigure DRS backup device and schedule.
The Disaster Recovery System includes the following capabilities:
In Cisco Unified CM Administration, uses the Bulk Administration menu and submenu options to configure entities in Unified Communications Manager through use of the Bulk Administration Tool.
The Unified Communications Manager Bulk Administration Tool (BAT), a web-based application, lets administrators perform bulk transactions to the Unified Communications Manager database. BAT lets you add, update, or delete a large number of similar phones, users, or ports at the same time. When you use Cisco Unified CM Administration, each database transaction requires an individual manual operation, while BAT automates the process and achieves faster add, update, and delete operations.
You can use BAT to work with the following types of devices and records:
For details on how to use the Bulk Administration Tool, refer to the Bulk Administration Guide for Cisco Unified Communications Manager .