Docs

Browse releases →

openldap

OpenLDAP client libraries, tools, and directory server

openldap

OpenLDAP client libraries, tools, and directory server

2.7.0 · aarch64-darwin

Credentials and TLS

Root password and TLS key material use opaque references delivered through service credentials; plaintext values are not accepted by the module.

Directory state

The suffix and root DN define a durable package-owned database. Changing identity fields does not migrate existing directory data automatically.

OptionTypeDescription
configattribute set of attribute set of any valueDesired values for the package's declared config artifacts.
credentialsattribute set of submoduleOpaque references for the package's declared credentials.
database1 child
enablebooleanEnable the package-owned OpenLDAP server.
listenUrlsnon-empty list of string matching (ldap|ldaps|ldapi)://[^[:space:]]*LDAP, LDAPS, or local-domain listener URLs passed to slapd.
rootDnstring matching [A-Za-z][^[:cntrl:]]*Directory administrator distinguished name for the primary database.
rootPasswordsubmoduleOpaque reference to the directory administrator password.
suffixstring matching [A-Za-z][^[:cntrl:]]*Distinguished-name suffix served by the primary directory database.
tls5 children