LDAP Authentication#

To create a User with the login method "LDAP Authentication," you need to check the box "Use LDAP Authentication," and then fill in the "LDAP Users" field.

You also need to fill in the fields:

Interface ElementDescription
Email*User's email address.
First NameUser's first name.
Last NameUser's last name.
DepartmentSubdivision or department to which the User belongs.
RoleUser's role in the system. Defines available sections and actions.
User is blockedAllows blocking the user's account. A blocked user will not be able to log in.
Notify about license expiration via emailEnables sending notifications to the user's email when the license expiration date approaches.

To use LDAP/AD authentication, set the following variables in the Sherpa AI Server installation .env file:

  • LDAP_SERVER — LDAP server address;
  • LDAP_PORT — port (default 389);
  • LDAP_ENCRYPTION — connection security mode;
  • LDAP_BASE_DN — search base DN;
  • LDAP_GROUP — user group.

If your directory requires them, also set LDAP_UID_KEY, LDAP_USER, LDAP_USERNAME, LDAP_PASSWORD, LDAP_FILTER, and LDAP_TIMEOUT. After changing .env, recreate the application container with docker compose up -d --force-recreate aiserver, because docker compose restart does not apply updated environment variables.