Setup LDAP Authentication for PoolParty

This configuration allows to change authentication for PoolParty to LDAP. Users can login with their LDAP credentials.

Users have to be created in PoolParty with the appropriate roles and groups.


You must create at least one user who has assigned PoolPartyUser as well as PoolPartySuperAdmin roles in PoolParty, which is also available in LDAP before you configure LDAP authentication.

The username must match the LDAP username!


STEP 1: Stop the PoolParty Server

STEP 2: Adapt the auth.xml File

Replace the content of the file with the sample configuration provided below. Find it in these paths, respectively:

  • GNU Linux: /opt/poolparty/config/auth.xml

  • Windows: C:\Users\Public\PoolParty\config\auth.xml

Change the variables {LDAP_SERVER_URLS}, {USER_DN} and {CUSTOM-DN} according to your LDAP server setup (see also the Spring - LDAP Authentication documentation).

<?xml version="1.0" encoding="UTF-8"?>
<beans:beans xmlns=""
    <beans:bean id="pptLdapAuthenticationProvider" class="">
            <beans:bean id="authenticator" class="">
                <beans:constructor-arg ref="contextSource"/>
                <beans:constructor-arg ref="ldapTemplate"/>
                <!-- Distinguish user name pattern || ou=people -->
                <beans:property name="dnPattern" value="{USER_DN}"/>  
                <!-- Distinguish custom property pattern (uid, employeeNumber, whatever) -->                   
                <beans:property name="caPattern" value="{CUSTOM_DN}"/>                
            <beans:bean id="authoritiesPopulator" class="">
                <beans:constructor-arg ref="defaultUserDetailsService"/>
    <ldap:ldap-template id="ldapTemplate" context-source-ref="contextSource"/>
    <beans:bean id="contextSource" class="">
        <beans:constructor-arg value="{LDAP_SERVER_URLS}"/>
        <beans:property name="userDn" value="<USER-ALLOWED-TO-QUERY-LDAP>"/>
        <beans:property name="password" value="<PASSWORD>"/>                
        <authentication-provider ref="pptLdapAuthenticationProvider"/>

STEP 3: Start the PoolParty Server