Skip to main content

LdapSettings

Resource LdapSettings in pulumi-portainer.
5 min read

Resource LdapSettings in pulumi-portainer.

Pulumi type: portainer:index/ldapSettings:LdapSettings.

name is the Pulumi resource name. Nested object fields are documented under that object. They are not arguments of this resource.

Example#

Only required arguments are set. A string in angle brackets stands in for that argument. Any other value is an option or example written in the SDK description.

Arguments#

PropertyTypeRequiredDescription
adminAutoPopulatebooleannoWhether auto admin population is enabled
adminGroupSearchSettingsLdapSettingsAdminGroupSearchSetting (input)[]noLDAP admin group search settings
adminGroupsstring[]noSaved admin group list
anonymousModebooleannoEnable anonymous mode. When enabled, ReaderDN and Password will not be used
autoCreateUsersbooleannoAutomatically provision users and assign them to matching LDAP group names
groupSearchSettingsLdapSettingsGroupSearchSetting (input)[]noLDAP group search settings
ldapSettingsIdstringno
passwordstringnoPassword of the account used to search users
readerDnstringnoAccount that will be used to search for users (e.g. cn=readonly-account,dc=ldap,dc=domain,dc=tld)
searchSettingsLdapSettingsSearchSetting (input)[]noLDAP user search settings
serverTypenumbernoLDAP server type
startTlsbooleannoWhether LDAP connection should use StartTLS
tlsConfigLdapSettingsTlsConfig (input)noTLS configuration for LDAP
urlstringnoURL or IP address of the LDAP server (deprecated, use urls)
urlsstring[]noURLs or IP addresses of the LDAP server

Outputs#

Computed outputs are produced by the provider. They are not constructor arguments.

PropertyTypeComputedDescription
adminAutoPopulatebooleannoWhether auto admin population is enabled
adminGroupSearchSettingsLdapSettingsAdminGroupSearchSetting (output)[]noLDAP admin group search settings
adminGroupsstring[]noSaved admin group list
anonymousModebooleannoEnable anonymous mode. When enabled, ReaderDN and Password will not be used
autoCreateUsersbooleannoAutomatically provision users and assign them to matching LDAP group names
groupSearchSettingsLdapSettingsGroupSearchSetting (output)[]noLDAP group search settings
ldapSettingsIdstringno
passwordstringnoPassword of the account used to search users
readerDnstringnoAccount that will be used to search for users (e.g. cn=readonly-account,dc=ldap,dc=domain,dc=tld)
searchSettingsLdapSettingsSearchSetting (output)[]noLDAP user search settings
serverTypenumbernoLDAP server type
startTlsbooleannoWhether LDAP connection should use StartTLS
tlsConfigLdapSettingsTlsConfig (output)noTLS configuration for LDAP
urlstringnoURL or IP address of the LDAP server (deprecated, use urls)
urlsstring[]noURLs or IP addresses of the LDAP server

LdapSettingsAdminGroupSearchSetting (input)#

Input object LdapSettingsAdminGroupSearchSetting. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
groupAttributestringnoLDAP attribute used to identify group membership for admin users (e.g. member).
groupBaseDnstringnoBase distinguished name under which to search for admin groups.
groupFilterstringnoLDAP search filter used to match admin groups (e.g. (objectClass=groupOfNames)).

LdapSettingsGroupSearchSetting (input)#

Input object LdapSettingsGroupSearchSetting. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
groupAttributestringnoLDAP group attribute
groupBaseDnstringnoBase DN for group search
groupFilterstringnoLDAP group search filter

LdapSettingsSearchSetting (input)#

Input object LdapSettingsSearchSetting. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
baseDnstringnoBase DN for user search
filterstringnoLDAP search filter
userNameAttributestringnoAttribute used for username

LdapSettingsTlsConfig (input)#

Input object LdapSettingsTlsConfig. Fields below belong to this object, not to the parent.

PropertyTypeRequiredDescription
tlsbooleannoWhether TLS is enabled
tlsCaCertstringnoTLS CA certificate
tlsCertstringnoTLS certificate
tlsKeystringnoTLS key
tlsSkipVerifybooleannoSkip TLS verification

LdapSettingsAdminGroupSearchSetting (output)#

Output object LdapSettingsAdminGroupSearchSetting. Fields below belong to this object.

PropertyTypeAlways presentDescription
groupAttributestringyesLDAP attribute used to identify group membership for admin users (e.g. member).
groupBaseDnstringyesBase distinguished name under which to search for admin groups.
groupFilterstringyesLDAP search filter used to match admin groups (e.g. (objectClass=groupOfNames)).

LdapSettingsGroupSearchSetting (output)#

Output object LdapSettingsGroupSearchSetting. Fields below belong to this object.

PropertyTypeAlways presentDescription
groupAttributestringyesLDAP group attribute
groupBaseDnstringyesBase DN for group search
groupFilterstringyesLDAP group search filter

LdapSettingsSearchSetting (output)#

Output object LdapSettingsSearchSetting. Fields below belong to this object.

PropertyTypeAlways presentDescription
baseDnstringyesBase DN for user search
filterstringyesLDAP search filter
userNameAttributestringyesAttribute used for username

LdapSettingsTlsConfig (output)#

Output object LdapSettingsTlsConfig. Fields below belong to this object.

PropertyTypeAlways presentDescription
tlsbooleanyesWhether TLS is enabled
tlsCaCertstringyesTLS CA certificate
tlsCertstringyesTLS certificate
tlsKeystringyesTLS key
tlsSkipVerifybooleanyesSkip TLS verification