You can then create an authentication policy that uses the gateway to migrate new users the first time they sign on. User objects can also be configured to use the gateway for credential validation using the PingOne Users API. Learn more in Manually migrating users to PingOne.

If you are using Microsoft Active Directory (AD), you can also set up Kerberos authentication. Learn more about setting up AD in Best practices for configuring Active Directory for LDAP gateways.

To set up a gateway:

  1. Add an LDAP gateway.
  2. Start a gateway instance.
  3. Verify a gateway instance.
  4. Add a user type.
  5. Optional: Create an authentication policy that uses a gateway.
  6. Optional: Add an authentication policy to an application.