James Page Keystone Ldap

Channel Version Revision Published Runs on
latest/stable 0 0 19 Mar 2021
Ubuntu 16.10 Ubuntu 16.04 Ubuntu 14.04
juju deploy james-page-keystone-ldap
Show information
You will need Juju 2.9 to be able to run this command. Learn how to upgrade to Juju 2.9.


16.04 14.04 16.10


Keystone Domain backend for LDAP or Active Directory Read more

Discuss this charm

Share your thoughts on this charm with the community on discourse.

Join the discussion


This subordinate charm provides a LDAP domain backend for integrating a Keystone v3 deployment with an external LDAP based authentication system.


Use this charm with the Keystone charm, running with preferred-api-version=3:

juju deploy keystone
juju config keystone preferred-api-version=3
juju deploy keystone-ldap
juju add-relation keystone-ldap keystone

Configuration Options

LDAP configuration is provided to this charm via configuration options:

juju config keystone-ldap ldap-server="ldap://" \
            ldap-user="cn=admin,dc=test,dc=com" \
            ldap-password="password" \

By default, the name of the application ('keystone-ldap') is the name of the domain for which a domain specific configuration will be configured; you can change this using the domain-name option:

juju config keystone-ldap domain-name="myorganisationname"

The keystone charm will automatically create a domain to support the backend once deployed.

Additional LDAP configuration options can be passed as a comma delimited string using the ldap-config-flags configuration option:

juju config keystone-ldap \

This allows the LDAP configuration of the backend to be tailored to an individual LDAP configuration.


Please report bugs on Launchpad.

For general questions please refer to the OpenStack Charm Guide.