# ▪️ How can I set up a user for LDAP Authentication?

:::info
Available to users with an Admin role.

:::

Set up LDAP authentication for users once a directory server is [**configured for user authentication**](/doc/84919841-0001-4283-af30-bf8e13b9d62f).


:::info
LDAP authentication must be switched on for users in the [**User Manager**](/doc/5ad41734-a805-4712-8aff-6d8f8f11b37a) module to allow them to log in with their directory server credentials to **LearningSpace Experience**.

:::

LDAP authentication can be switched on for one user at a time **or** for a group of selected users:

### Switch On LDAP for a User


1. Open a user for editing.
2. Check **Authenticate by LDAP server** in the **Account** tab.  
     
   ![](https://outline-production-attachments.s3-accelerate.amazonaws.com/uploads/6c0da235-ff99-49fd-81af-d32f613692dd/636d495d-3d4b-4f53-a7da-243b89075623/55804210.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Content-Sha256=UNSIGNED-PAYLOAD&X-Amz-Credential=AKIA4EOUDTOVUICLPZ4P%2F20260909%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20260909T144500Z&X-Amz-Expires=86400&X-Amz-Signature=7a1a79cb49d11e7009d4c89845b8fa7d6a912f8a825e84ed3f3228c7a236369a&X-Amz-SignedHeaders=host&x-amz-checksum-mode=ENABLED&x-id=GetObject)

### Switch on LDAP for Multiple Users


1. Select users from the **Users** panel on the right.  

   
:::info
   Click the **All Users** option on the left to display every user registered in your system or select a group to filter users.

   :::

   
:::tip
   Use the select-all checkbox in the **Users** panel to select every user in one go.

   :::
2. Click **Open** on the right.  
     
   ![](https://outline-production-attachments.s3-accelerate.amazonaws.com/uploads/6c0da235-ff99-49fd-81af-d32f613692dd/a0b4aa08-417a-441c-867c-1c9f1b012299/55804209.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Content-Sha256=UNSIGNED-PAYLOAD&X-Amz-Credential=AKIA4EOUDTOVUICLPZ4P%2F20260909%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20260909T144500Z&X-Amz-Expires=86400&X-Amz-Signature=a33ddc258e28e05e1b800c084f1d76c353d0af9858e6568cb23cc5f46cf1e1e1&X-Amz-SignedHeaders=host&x-amz-checksum-mode=ENABLED&x-id=GetObject)  
   The '**Edit Multiple User**' pop-up will open, where you can manage the settings of your selected users all at once.  
     
3. At '*Reset authentication method to*:' open the drop-down.
4. Select 'LDAP server authentication':  
     
   ![](https://outline-production-attachments.s3-accelerate.amazonaws.com/uploads/6c0da235-ff99-49fd-81af-d32f613692dd/4918629b-b17c-4fb4-9838-94328734be69/55804211.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Content-Sha256=UNSIGNED-PAYLOAD&X-Amz-Credential=AKIA4EOUDTOVUICLPZ4P%2F20260909%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20260909T144500Z&X-Amz-Expires=86400&X-Amz-Signature=d3b663a3bdde6bb71d1fb6709fe992e69f1821c016fd3b1e04b00f8feda8aa1c&X-Amz-SignedHeaders=host&x-amz-checksum-mode=ENABLED&x-id=GetObject)


Once **LDAP Authentication** is switched on for users, fill in the **Authentication ID** inside their profiles. **LDAP Login Settings** in the [**Directory Access Settings (old version)**](https://help.caelearningspace.com/cf/pages/viewpage.action?pageId=8388702) tab determines the required **Authentication ID** for users.


:::info
If the **Authentication ID** has been set to **Email** in the **Directory Access Settings (old version)**, you do not have to add anything to the user's profile.

:::


:::warning
When **LDAP Authentication** is switched on, users cannot log in with their **LearningSpace Experience** email and password or modify them even if their credentials are added to their profiles.

:::


1. Open a user for editing.
2. If you set up a [**full DN sequence**](/doc/directory-access-settings-KdySdqLiPg) for authentication:  

   
   1. Provide the user's **LDAP ID** stored on your directory server in the corresponding field if the **Authentication ID** has been set to **'LDAP ID'** in the [**Directory Access Settings**](/doc/9d83c700-dcee-49ee-b148-8c74eaec8580) tab.   
        
      ![](https://outline-production-attachments.s3-accelerate.amazonaws.com/uploads/6c0da235-ff99-49fd-81af-d32f613692dd/d1be55af-0933-4dc2-ba51-169b5204c3ce/55804131.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Content-Sha256=UNSIGNED-PAYLOAD&X-Amz-Credential=AKIA4EOUDTOVUICLPZ4P%2F20260909%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20260909T144500Z&X-Amz-Expires=86400&X-Amz-Signature=ff104bd3d7f4aa0c81539964ff8f008f0c40592919a5f39b0f28645d61af0d98&X-Amz-SignedHeaders=host&x-amz-checksum-mode=ENABLED&x-id=GetObject)   
   2. Provide the user's **UCID** stored on your directory server in the corresponding field if the **Authentication ID** has been set to **'UCID'** in the [**Directory Access Settings**](/doc/9d83c700-dcee-49ee-b148-8c74eaec8580) tab.   
        
      ![](https://outline-production-attachments.s3-accelerate.amazonaws.com/uploads/6c0da235-ff99-49fd-81af-d32f613692dd/8422ad21-06be-417e-aab2-2cfec66aa805/55804133.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Content-Sha256=UNSIGNED-PAYLOAD&X-Amz-Credential=AKIA4EOUDTOVUICLPZ4P%2F20260909%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20260909T144500Z&X-Amz-Expires=86400&X-Amz-Signature=9d4b51432ece532d7440afb48cec1b0a2f4765f01d6bb7e279b78255fa2c9a3d&X-Amz-SignedHeaders=host&x-amz-checksum-mode=ENABLED&x-id=GetObject)  

      3\. Provide the user's samAccountName if you set up the **Resolve samAccountName** method for authentication:  
        
      ![](https://outline-production-attachments.s3-accelerate.amazonaws.com/uploads/6c0da235-ff99-49fd-81af-d32f613692dd/10ae09ba-ecfa-447b-9e3d-d0eda5c87180/55804132.png?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Content-Sha256=UNSIGNED-PAYLOAD&X-Amz-Credential=AKIA4EOUDTOVUICLPZ4P%2F20260909%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20260909T144500Z&X-Amz-Expires=86400&X-Amz-Signature=5d7c85bc65797500da32cc33275d73a3854fe37ac205187344e86e959500be7f&X-Amz-SignedHeaders=host&x-amz-checksum-mode=ENABLED&x-id=GetObject)



:::tip
**Troubleshooting: Directory Server Is Down**

If your directory server is down for some reason, withdraw LDAP authentication from users and allow them to log in with their **LearningSpace Experience** credentials as a temporary solution.

:::

---

**Documents**

- [User Guide](https://kb.learningspace.elevatehealth.net/s/exp-hs/doc/user-guide-oarr3rXNmH)
- [FAQ](https://kb.learningspace.elevatehealth.net/s/exp-hs/doc/faq-YLwvsQzPg1)
- [Training Videos](https://kb.learningspace.elevatehealth.net/s/exp-hs/doc/training-videos-TEIl08kVIW)
- [Release Notes](https://kb.learningspace.elevatehealth.net/s/exp-hs/doc/release-notes-W7WkHQOdlB)
- [iPad support - Technical information](https://kb.learningspace.elevatehealth.net/s/exp-hs/doc/ipad-support-technical-information-CvKg62sptV)
- [Customer Aftercare One-Pager](https://kb.learningspace.elevatehealth.net/s/exp-hs/doc/customer-aftercare-one-pager-fm7WLpsnDM)