You can then create an authentication policy that uses the gateway to migrate new users the first time they sign on. User objects can also be configured to use the gateway for credential validation using the PingOne Users API. For more information, see Manually migrating users to PingOne. If you are using Microsoft Active Directory, you can also set up Kerberos authentication.

To set up a gateway:

  1. Add an LDAP gateway.
  2. Start a gateway instance.
  3. Verify a gateway instance.
  4. Add a user type.
  5. Optional: Create an authentication policy that uses a gateway.
  6. Optional: Add an authentication policy to an application.