Add an LDAP Auth Module

An LDAP Auth Module can be used to add a secondary authentication relationship between Access Gateway and an external LDAP server.

To add an LDAP Auth Module:

  1. Add an Auth Module as described in Add an Auth Moduleand select LDAP.
    After you select LDAP, the Add New Auth Module page opens. It's configured for LDAP.
  2. Enter the following details:
    FieldDescriptionExample
    NameName used to identify the Auth Module.LDAP AM

    Secure LDAP

    When checked use LDAPS rather then LDAP

    Defaults to unset

    HostURL to LDAP server and port.ldap.example.com

    Port

    Port for use with Active Directory

    389

    Bind User

    Username used to perform reads and writes.

    CN=Administrator,CN=Users,DC=someuser,DC=info

    Bind User Password

    Bind User Password.

    password

    Base

    The base DN from which to perform the search.

    CN=Users,DC=domain,DC=tld

    User Search Attribute

    The filter used to match records returned from the Search DN.

    accountname

    Attributes

    Set of attributes returned from Desktop SSO and sent as SAML attributes to application

    cn, mail, name, userPrincipalName

    Description

    Optional. Enter description

    LDAP Auth Module

  3. Click the Not Validated ()button when complete. Okta Access Gateway validates the connection.
    If the validation is successful, the button changes to Valid ().
  4. Click Okay.