LDAP
This section includes a general guide for configuring an LDAP provider and guides for specific LDAP providers in Immuta. The getting started section below provides best practices for setup and configuration.
Getting started with LDAP
Start by creating a few initial subscription and data policies so that you know the user metadata you will need from your IAM. For example, will user attributes be used to author policies, or will groups also be needed? The subscription and data policies below illustrate the need for both groups and attributes to be imported from the IAM to enforce appropriate access controls:
Subscription policy: Allow all users in the
Marketinggroup to access data sources taggedMarketing.Data policy: Mask all columns tagged
Locationexcept for users with the attributeAccessLevel.Gold.
Validate that your provider is supported by Immuta. If your provider is not listed, reach out to your Immuta representative for guidance.
Configure your LDAP provider in Immuta with LDAP sync enabled. For guidance specific to Okta, see the Okta LDAP interface page.
Next steps
Once your IAM is configured, complete one of the following tasks:
Last updated
Was this helpful?

