# ◾ How can I set up a user for LDAP Authentication?

:::info
Available to users with Admin role.

:::

Set up LDAP authentication for users once a directory server is [**configured for user authentication**](/doc/6787fb98-80f0-4e43-8e03-b5fb061e31b1).


:::info
LDAP authentication must be switched on for users in the [**User Manager**](/doc/user-manager-2Awfo14Cyj) module to allow them to log in with their directory server credentials to **LearningSpace Essentials**.

:::

LDAP authentication can be switched on for one user at a time **or** for a group of selected users:

### Switch On LDAP for a User


1. Open a user for editing.
2. Check **Authenticate by LDAP server** in the **Account** tab.  
     
   ![](https://outline-production-attachments.s3-accelerate.amazonaws.com/uploads/6c0da235-ff99-49fd-81af-d32f613692dd/aaa76b22-b6b2-4d6f-a972-9bd0fad2527b/55804202.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Content-Sha256=UNSIGNED-PAYLOAD&X-Amz-Credential=AKIA4EOUDTOVUICLPZ4P%2F20260909%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20260909T151500Z&X-Amz-Expires=86400&X-Amz-Signature=0cd798fba75bd263528155063318a25257a0d94a3032613edff4f2c7722241e5&X-Amz-SignedHeaders=host&x-amz-checksum-mode=ENABLED&x-id=GetObject)  
     

### Switch on LDAP for Multiple Users


1. Select users from the **Users** panel on the right.  

   
:::info
   Click the **All Users** option on the left to display every user registered in your system or select a group to filter users.

   :::

   
:::tip
   Use the select-all checkbox in the **Users** panel to select every user in one go.

   :::
2. Click **Open** on the right.  
     
   ![](https://outline-production-attachments.s3-accelerate.amazonaws.com/uploads/6c0da235-ff99-49fd-81af-d32f613692dd/ff672ede-47a2-4c6b-ac39-763cadc4b760/55804204.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Content-Sha256=UNSIGNED-PAYLOAD&X-Amz-Credential=AKIA4EOUDTOVUICLPZ4P%2F20260909%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20260909T151500Z&X-Amz-Expires=86400&X-Amz-Signature=b0d9665825add38eac745d0934d81979fa50647b1b8df76bc7127206a7a264f6&X-Amz-SignedHeaders=host&x-amz-checksum-mode=ENABLED&x-id=GetObject)  
     
   The '**Edit Multiple User**' pop-up will open, where you can manage the settings of your selected users all at once.  
3. At '*Reset authentication method to*:' open the drop-down.
4. Select 'LDAP server authentication':

  
 ![](https://outline-production-attachments.s3-accelerate.amazonaws.com/uploads/6c0da235-ff99-49fd-81af-d32f613692dd/1ede105d-22f3-414a-a71f-963d4aa9b224/55804205.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Content-Sha256=UNSIGNED-PAYLOAD&X-Amz-Credential=AKIA4EOUDTOVUICLPZ4P%2F20260909%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20260909T151500Z&X-Amz-Expires=86400&X-Amz-Signature=74da62e0dc9ef88cf6b314de91f877cc09ada8264d2367f31fa93093198d804a&X-Amz-SignedHeaders=host&x-amz-checksum-mode=ENABLED&x-id=GetObject)  

### Switch On LDAP for a User Group

LDAP sync can be enabled for complete **User groups** under **LDAP Settings** on the LDAP tab of the Edit Group pop-up:  
  
 ![](https://outline-production-attachments.s3-accelerate.amazonaws.com/uploads/6c0da235-ff99-49fd-81af-d32f613692dd/5b1ce81d-f53a-4b1a-94c2-e5e2fac0bc2b/66356223.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Content-Sha256=UNSIGNED-PAYLOAD&X-Amz-Credential=AKIA4EOUDTOVUICLPZ4P%2F20260909%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20260909T151500Z&X-Amz-Expires=86400&X-Amz-Signature=8075278508e4886bd641c9f5dc23f0243c06c59e937e507ac8564b5ccab9d26c&X-Amz-SignedHeaders=host&x-amz-checksum-mode=ENABLED&x-id=GetObject)  

Once **LDAP Authentication** is switched on for users, fill in the **Authentication ID** inside their profiles. **LDAP Login Settings** in the **Directory Access Settings** tab determine the required **Authentication ID** for users.


:::info
If the **Authentication ID** has been set to **Email** in the **Directory Access Settings**, you do not have to add anything to the user's profile.

:::


:::warning
**Warning**

While the email address is not needed in a user's **LearningSpace Essentials** when **LDAP Authentication** is switched on, this also means that users cannot log in with their **LearningSpace** email and password or modify their credentials.

:::


1. Open each user for editing.
2. If you set up a [**full DN sequence**](/doc/directory-access-settings-jzbz24tyW8) for authentication:

   
   1. Provide the user's **LDAP ID** stored on your directory server in the corresponding field if the **Authentication ID** has been set to **'LDAP ID'** in the [**Directory Access Settings**](/doc/directory-access-settings-jzbz24tyW8) tab.   
        
      ![](https://outline-production-attachments.s3-accelerate.amazonaws.com/uploads/6c0da235-ff99-49fd-81af-d32f613692dd/237dc42b-248c-4a3b-a605-cd9a019864a5/55804096.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Content-Sha256=UNSIGNED-PAYLOAD&X-Amz-Credential=AKIA4EOUDTOVUICLPZ4P%2F20260909%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20260909T151500Z&X-Amz-Expires=86400&X-Amz-Signature=1352831fc3cff7f50379b8a9e67af8addf6050a8bc1c9cda3697eafc9cf377f6&X-Amz-SignedHeaders=host&x-amz-checksum-mode=ENABLED&x-id=GetObject)  
   2. If the Authentication ID has been set to 'UCID' in the Directory Access Settings tab, provide the user's UCID stored on your directory server in the corresponding field.   
         
      ![](https://outline-production-attachments.s3-accelerate.amazonaws.com/uploads/6c0da235-ff99-49fd-81af-d32f613692dd/86fd57d2-ae79-498b-9276-72c359635152/55804097.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Content-Sha256=UNSIGNED-PAYLOAD&X-Amz-Credential=AKIA4EOUDTOVUICLPZ4P%2F20260909%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20260909T151500Z&X-Amz-Expires=86400&X-Amz-Signature=b1659ea7755f38e92f85c6aad9a159dbd6c54f1c6bbd89b0ac9bf9eabb9d79aa&X-Amz-SignedHeaders=host&x-amz-checksum-mode=ENABLED&x-id=GetObject)  
3. Provide the user's samAccountName if you set up the [**Resolve samAccountName**](/doc/directory-access-settings-jzbz24tyW8) method for authentication:  
     
   ![](https://outline-production-attachments.s3-accelerate.amazonaws.com/uploads/6c0da235-ff99-49fd-81af-d32f613692dd/3c647b93-7d30-4958-a52c-32d34145f25a/55804098.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Content-Sha256=UNSIGNED-PAYLOAD&X-Amz-Credential=AKIA4EOUDTOVUICLPZ4P%2F20260909%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20260909T151500Z&X-Amz-Expires=86400&X-Amz-Signature=a26b910060567a59133f873ddffd1e2ce7a16cf8b1c80de46d0f2b2bdf245f90&X-Amz-SignedHeaders=host&x-amz-checksum-mode=ENABLED&x-id=GetObject)



:::success
**Troubleshooting: Directory Server Is Down**


If your directory server is down, withdraw LDAP authentication from users and allow them to log in with their **LearningSpace Essentials** credentials as a temporary solution.

:::

---

**Documents**

- [User Guide](https://kb.learningspace.elevatehealth.net/s/ess-hs/doc/user-guide-QPZfKJ0BV1)
- [FAQ](https://kb.learningspace.elevatehealth.net/s/ess-hs/doc/faq-AZnS7tDFgM)
- [Release Notes](https://kb.learningspace.elevatehealth.net/s/ess-hs/doc/release-notes-fqaGSPScxH)
- [iPad support - Technical information](https://kb.learningspace.elevatehealth.net/s/ess-hs/doc/ipad-support-technical-information-iHec00YAzm)
- [Customer Aftercare One-Pager](https://kb.learningspace.elevatehealth.net/s/ess-hs/doc/customer-aftercare-one-pager-GOIZYTEgud)
- [Preventing Copy-Paste in LearningSpace](https://kb.learningspace.elevatehealth.net/s/ess-hs/doc/preventing-copy-paste-in-learningspace-uEubHwXVD2)