82 Avaya 374x DECT Telephones - User Guide 02/2016
On IPBS1, IPBS2 and IPBL (the client):
22. Select General > Admin.
23. In the Authentication Servers section and the Realm/Domain text field, enter the realm
name of the AD server (see step 9). Must be capital letters.
Note: This has not to be done if a DNS server has been configured to be used in the
IP-DECT system. In this case the clients will look up the needed information automatically.
24. In the Address text field, enter the IP address of the AD server.
25. Click "OK".
Log in using Kerberos cross-realm authentication
1. Make sure that secure HTTPS protocol is used when logging in.
2. Login on the client using a Windows server account. When prompted for user name, the
name of the Windows domain has to be entered in front of the user name, separated by a
backslash in the following way: DOMAIN\username.
Configure secondary Kerberos server
The Kerberos server is crucial when using Kerberos authentication, so it is recommended to
have a secondary Kerberos server in the IP-DECT system. The secondary server is used if the
primary server is not working properly. It is recommended to set up the secondary Kerberos
server on the Standby Master. To configure an IPBS/IPBL as a secondary Kerberos server, do
the following:
1. Make sure that the IP address of a NTP time server is specified. Select General > NTP.