Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 7 Next »

This section covers the setup of the yarngate application

This section assumes that that Yarngate access has been configured and the user can login to Yarngate using LDAP credentials

This section assumes that Customers/Clusters/Interfaces have been added either manually via the administration application or via Bulk import of Customers/Cluster/Interfaces

Yarngate Access Profiles and Access rules

Access to the yarngate application and the various roles is controlled by the Authentication policy that matches LDAP groups to Yarnman Role

Once a user has access to Yarngate their system access is determined by

Entitlement Group

The entitlement profile defines what systems can be accessed. To access Entitlements Group setup - from Yarngate menu, select Access Rules->Entitlements Group, then select New Entitlement Group. Access can be added using Customers, Clusters or specific interfaces.

Note that the add Customer/Cluster/Interface button needs to be pressed for each entry

Entitlement Group bulk Import

There is an option to bulk import using excel

Download the template and setup as necessary and upload

Matching Group

The match group defines match of LDAP groups or users for access

For access testing you can also add a unique username that can be used with the test access function

Access Profile

The access profile defines the configuration of the access - note that screenshot below show screen after General Settings first saved

  • CUCM - there is additional template configuration required

  • UCXN - there is additional template configuration required

CUCM Template

CUCM Roles (Custom)
  1. If custom CUCM roles are required they can be created, Go Access Profiles->CUCM Templates->Roles then select New Role Template

  2. The roles will need to be imported from a test CUCM use the latest version of CUCM in scope to import the latest roles - Yarngate handles backward compataibility for roles

  3. Select the interface to import the role

  4. Select the required Roles

CUCM Credential Policy
  1. Create the credential policy with the required settings - Go Access Profiles → CUCM Templates → Crefdential Policies, then select New Credential Policy

CUCM Access Control Group
  1. Create the Access Control profile - Go Access Profiles → CUCM Templates → Access Control Groups, then select New Access Control Group Template

    1. Custom role template can be used or

    2. CUCM default Roles

To view the list of system default roles refer to CUCM System Default roles or via SSH run the following command

run sql select name from functionrole where isstandard ="t"

UCXN Templates

Authentication Rule
  1. Create the required Authentication rule - Go Access Profiles → UCXN Templates → Authentication Rule, then select New Authentication Rule Template

User template

Note that the user template must exist

Access Rule

The access rule links all of the configuration together - Go Access Rules → Rules, then select New Access Rule

Test Access

The test access tool can be used to check what access users have

Note that the User key needs to be defined in matching groups

  • No labels