%BOOK_ENTITIES; ]>
Using an LDAP Server for User Authentication You can use an external LDAP server such as Microsoft Active Directory or OpenLDAP to authenticate &PRODUCT; end-users. To set up LDAP authentication in &PRODUCT;, open the global settings page and set: ldap.basedn - The base directory you want to search within for uses ldap.bind.password - The password you wish to use to bind, this can be blank if the server supports anonymous binding ldap.bind.principal - The account you wish to use to bind, this can be blank if the server supports anonymous binding ldap.email.attribute - The attribute within your LDAP server that holds a value for users email address ldap.realname.attribute - The attribute within your LDAP server that holds a value users realname ldap.user.object - The object class that identifies a user ldap.username.attribute - The attribute within your LDAP server that has a value that will match the cloudstack accounts username field Finally you can add LDAP servers from Global Settings -> Select View -> LDAP Configuration. This requires a hostname and port