Edit LDAP Resolver {{ resolvername }}

Create a new LDAP Resolver

Use STARTTLS on a plain LDAP connection usually on port 389.

Verify the TLS certificate of the server.



This setting activates a LDAP server pool that is persisted between requests.

The user data in this database can be modified from within privacyIDEA.

Filter to get the groups of a single user. Possible tags: {base_dn}, {username}, and all attribute mapping keys.

The group attribute defining the group's name, which should be stored in the user info.

The key to store the groups in the user info (attribute mapping key).