LDAP Authentication now easier than ever

If you’re using Wikispaces Private Label, you may want to restrict your site to the members of your organization, but you know the last thing your users need is another password to remember. Previously, if you wanted your users to access your Private Label site with the accounts they already have, you could use our Single Sign-On integration to connect to your authentication server. It’s a powerful feature, but it does require a good bit of configuration.

Now, if your organization is storing user accounts in an LDAP directory (such as OpenLDAP or ActiveDirectory), you can give your users this same access with virtually no setup — all you have to do is fill out a simple form.

Go to Site Administration and click the Authentication link under Settings. You’ll see a form that allows you to add an authentication source. Choose LDAP and fill out the required information. Once you have an LDAP source set up, you won’t need to invite users or get them to set up accounts — all the users in your LDAP directory are essentially members of your site already. All they need to do is log into the site with the username and password they already have. You can also allow users from outside your organization to create accounts in the usual way, or even set up more than one LDAP source if you want to allow users in multiple directories to access your site.

Our help page will walk you through the form. It’s easy to set up, so go give it a try. And as always, if you have any questions, let us know at help@wikispaces.com.

This entry was posted in Features, Private Label. Bookmark the permalink. Both comments and trackbacks are currently closed.

3 Comments

  1. Posted December 17, 2010 at 7:10 am | Permalink

    Hi,
    The LDAP sounds interesting, but it suggests that all members of the LDAP environment would be entitled to log in. What if I just want a subset ?
    Regards

    Phil

  2. Posted December 17, 2010 at 9:52 am | Permalink

    Hi Phil. You can filter with any base DN that gets the users you want, though I suspect you’re looking for finer-grained control. Can you tell us a bit more about which users you want to allow from LDAP? Would you want to specify a list of usernames? Thanks!

  3. Kirk Turner-Rustin
    Posted December 20, 2010 at 6:48 am | Permalink

    I have the same question as Phil. We’d want to specify an LDAP attribute filter to limit logins to certain campus affiliations at our University (e.g., faculty, students, employees). Wikispaces could add a field on the LDAP setup form that allowed input of an attribute filter, then incorporate the filter into the final LDAP URI used to do the pre-login entry search:

    Example filter:
    (|(edupersonaffiliation=student)(edupersonaffiliation=faculty))

    Example URI (should be all one line):
    ldap://some.college.edu/ou=Accounts,dc=college,dc=edu??sub?(|(edupersonaffiliation=student)(edupersonaffiliation=faculty))

    Cheers,
    Kirk

  • Wikispaces Private Label

    Our flexible, scalable wiki environments deliver unlimited wikis, simple editing tools, and powerful central administration for organizations of all sizes.
    Find out more.
    Start your free, 30-day trial.

  • About Us

    Welcome to our blog! This is where we share updates about events and new releases, tips and tricks for using wikis, profiles of a few of our favorite wikis, and more. We're proud to serve a large community of educators, as well as individuals, groups, and organizations of all stripes and sizes.

    Contact us.
    Call us: 415-863-8919
    Site status · We're hiring!

  • Join Us for a Webinar

    Our monthly webinars are a great way to check out examples, learn from experts, and get real-time answers to your questions. Our webinars are always fun, and always free.
    Sign up today.

  • Wikispaces for Educators

    If your wiki is used exclusively for education, you might be eligible for a free upgrade to one of our K–12 plan or Higher Education plan wikis.
    Learn more about our K–12 plan.
    Learn more about our Higher Education plan.