Active Directory and LDAP

Active Directory and LDAP

The Chef server supports Active Directory and LDAP authentication, which enables users to log in to the Chef server using their corporate credentials.

Configure LDAP

The Chef server supports using Active Directory or LDAP for any user that has an email address in the LDAP directory. This allows those users to log in to the Chef server by using their corporate credentials instead of having a separate username and password.

Warning

The following attributes MUST be in the user LDAP record:

  • mail:
  • sAMAccountName: or uid:

The following attributes SHOULD be in the user LDAP record: