> For the complete documentation index, see [llms.txt](https://docs.n8n.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.n8n.io/integrations/builtin/credentials/ldap.md).

# LDAP credentials

Documentation for the LDAP credentials. Use these credentials to authenticate LDAP in n8n, a workflow automation platform.

You can use these credentials to authenticate the following nodes:

* [LDAP](/integrations/builtin/core-nodes/n8n-nodes-base.ldap.md)

## Prerequisites <a href="#prerequisites" id="prerequisites"></a>

Create a server directory using Lightweight Directory Access Protocol (LDAP).

Some common LDAP providers include:

* [Jumpcloud](https://jumpcloud.com/blog/how-to-connect-your-application-to-ldap)
* [Azure ADDS](https://learn.microsoft.com/en-us/azure/active-directory-domain-services/tutorial-configure-ldaps)
* [Okta](https://help.okta.com/en-us/Content/Topics/Directory/LDAP-interface-connection-settings.htm)

## Supported authentication methods <a href="#supported-authentication-methods" id="supported-authentication-methods"></a>

* **LDAP server details**: Connect with a **Binding DN** and **Binding Password** using a simple bind.

n8n supports simple bind only. It doesn't support SASL binds, including GSSAPI and Kerberos. If your LDAP server requires Kerberos-based binding, common in Active Directory environments, you can't use this credential to connect to it.

## Related resources <a href="#related-resources" id="related-resources"></a>

Refer to your LDAP provider's own documentation for detailed information.

For general LDAP information, refer to [Basic LDAP concepts](https://ldap.com/basic-ldap-concepts/) for a basic overview and [The LDAP Bind Operation](https://ldap.com/the-ldap-bind-operation/) for information on how the bind operation and authentication work.

## Using LDAP server details <a href="#using-ldap-server-details" id="using-ldap-server-details"></a>

To configure this credential, you'll need:

* The **LDAP Server Address**: Use the IP address or domain of your LDAP server.
* The **LDAP Server Port**: Use the number of the port used to connect to the LDAP server.
* The **Binding DN**: Use the Binding Distinguished Name (Bind DN) for your LDAP server. This is the user account the credential should log in as. If you're using Active Directory, this may look something like `cn=administrator, cn=Users, dc=n8n, dc=io`. Refer to your LDAP provider's documentation for more information on identifying this DN and the related password.
* The **Binding Password**: Use the password for the **Binding DN** user.
* Select the **Connection Security**: Options include:
  * `None`
  * `TLS`
  * `STARTTLS`
* If you select `TLS` or `STARTTLS`, two more settings appear:
  * **Ignore SSL/TLS Issues**: Turn this on to connect even when the SSL/TLS certificate check on your LDAP server fails.
  * **CA Certificate**: Paste the certificate authority certificate for your LDAP server.
* *Optional:* Enter a numeric value in seconds to set the **Timeout**. The default is 300.
