Reference8:Configuration/General/Admin

From innovaphone wiki
Revision as of 12:36, 20 May 2009 by Msc (talk | contribs) (New page: Basic parameters for the Administration access of the device are configured here. == Device Name == The name of the device. This name is displayed in the browser as a title. It is also a...)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search
There are also other versions of this article available: Reference | Reference7 | Reference8 (this version) | Reference9 | Reference10 | Reference13r1 | Reference14r1 | Reference14r2

Basic parameters for the Administration access of the device are configured here.

Device Name

The name of the device. This name is displayed in the browser as a title. It is also added to the product id sent with outgoing registrations. This way it is displayed e.g. on the registrations page of the PBX.

User/Password

The adminstrator account. This account can be used for telnet access (if configured) and all password protected pages of the web user interface. By default all pages except Administration/General/Info are password protected. The web server of the device can be configured to protect all pages. The password has to be entered twice.

The password cannot be left empty. If an empty password is entered, the password won't be changed.

Additional Administrator Accounts

Additional user accounts. These user accounts can have viewer or full administrator privileges.

Help URL

The URL to access the online help. By default an URL of "http://wiki.innovaphone.com/index.php?Title=Reference:<page name>" is used. This links to online help pages in the Reference namespace of the innovaphone wiki.

Kerberos

Server Realm

The name of the realm the device hosts a Kerberos server for. The server provides authentication for the users managed by the device. Hosts can join that realm.

Trusted Realms

Users of trusted realms can use services in the realm managed by the device and vice versa. Therefore both Kerberos servers have to share a secret/password.

Additionally authorization (viewer or administrator privileges) can be configured:

  • None: Authorization isn't changed. This works only with innovaphone servers.
  • Domain group: The membership in a Windows domain group is mapped to administrator/viewer rights using "Admin Group RID" and "Viewer Group RID". The RID is the last numeric part of the Windows group SID.
  • Administrator: All users from that realm are treated as administrators.
  • Viewer: All users from that realm are treated as viewers.

Server locations

The addresses of Kerberos servers have to be configured locally on each host or client device.

If there is no server configured for a realm, the device will try to locate it using DNS. Normally this should work for Windows servers in the LAN.

Join realm

The server location of the realm has to be configured, first (see section "Server locations").

Click "Join realm" and specify the username and password of an administrator in the target realm to add the device to the remote host database. This works only with innovaphone servers. If you want to setup authentication with a third party server, use cross-realm authentication (see section "Trusted Realms"), instead.

Leave realm

An administrator username and password from the realm is needed to deregister from the realm and remove the device from the remote host database. If the server does not exist any longer the registration can be deleted manually.