What's on this page

External LDAP

Configuring an External LDAP Server

To use an LDAP Server other than the pre-configured OpenLDAP instance which comes as part of the LM installation, follow these steps.

Disable Installation and Set Up of OpenLDAP

To disable the installation and set up of OpenLDAP when using an existing LDAP, add the following to the custom Helm values file:

openldap:
  enabled: false
configurator:
  security:
    ldap:
      enabled: false

Modify LDAP connection configuration

Stratoss ™ Lifecycle Manager (LM) comes with configuration based on the directory structure which exists in the pre-configured install of OpenLDAP.

When using an existing LDAP server which uses a different directory structure, the LDAP directory queries can be configured as follows by adding these custom Helm values:

configurator:
  lmConfigImport:
    ishtar:
      alm:
        ishtar:
          security:
            ldap:
              url: ldap://openldap:389
              base: dc=lm,dc=com
              managerDn: cn=admin,dc=lm,dc=com
              managerPassword: lmadmin
              userSearchBase: ou=people
              userSearchFilter: (&(uid={0})(!(isSuspended=true)))
              groupSearchBase: ou=groups
              groupSearchFilter: member={0}
              passwordAttribute: userPassword
              passwordEncoding: BCRYPT 

The purpose of each configuration item is as follows:

Next Steps

Continue the install of LM Install LM