LDAP directory integration in Zaperon connects your organization's existing LDAP-based identity infrastructure directly to the Zaperon platform, enabling automatic user and group synchronization for centralized access management. Once connected, user identities are synced from your LDAP directory into Zaperon, eliminating manual provisioning and ensuring access policies always reflect your current organizational structure.
LDAP integration is the process of linking your organization's LDAP directory server to Zaperon so that user identities and group memberships sync continuously into the platform. Zaperon uses this synchronized data as the authoritative identity source for all Zero Trust access decisions, ensuring that any change in your LDAP directory including new users, attribute updates, and deprovisioned accounts is automatically reflected in Zaperon at the next sync.
Active Zaperon administrator account with directory management permissions
Eliminate manual user provisioning by automatically syncing user identities from your LDAP directory into Zaperon
Use your LDAP directory as the single source of truth for all authentication and access control decisions across the platform
Automatically revoke access when a user is removed or disabled in the LDAP directory at the next sync
Apply Zero Trust Access Policies at the group level using LDAP group memberships without individual user configuration
Maintain a verified, auditable identity source that supports governance and regulatory compliance requirements
Automating User Provisioning for On-Premises Identity Infrastructure
Organizations running on-premises LDAP directories can use LDAP integration to automatically provision users into Zaperon without migrating to cloud-based identity providers. This allows IT teams to retain their existing directory infrastructure while gaining the benefits of Zero Trust access control through Zaperon.
Enforcing Group-Based Zero Trust Policies Using LDAP Groups
LDAP groups can be synced into Zaperon and used to apply access policies at the department or role level. When a user's group membership changes in the LDAP directory, their access permissions in Zaperon are updated automatically at the next sync, reducing manual policy management overhead.
Instant Access Revocation on Offboarding
When an employee's LDAP account is disabled or deleted, Zaperon reflects that change after the next directory sync and automatically revokes their access to all connected applications and resources without requiring manual intervention in Zaperon.
Supporting Hybrid Identity Environments
Organizations running both LDAP and cloud-based directories can integrate their LDAP server with Zaperon alongside other directory sources, maintaining a unified identity foundation for access management across hybrid environments.
Maintaining Compliance with Identity Governance Requirements
Regulatory frameworks require organizations to demonstrate that user access is tightly controlled and aligned with current employment status. LDAP integration with Zaperon provides a continuous, automated identity governance layer that supports audit readiness and compliance reporting across frameworks including GDPR, HIPAA, SOC 2, RBI, and SEBI.
Before integrating LDAP with Zaperon, ensure the following are in place:
Active Zaperon administrator account with directory management permissions
LDAP server address and port number available and accessible from your network
Bind DN username and password with sufficient read permissions on the LDAP directory
Base DN configured to point to the correct organizational unit or directory root
LDAP server connection type confirmed (Standard or StartTLS)
Sync group configured if group-based sync is required
Note your LDAP server details as these will be required during Zaperon directory configuration
Back up any existing directory configurations in Zaperon before making changes
Refer to Sync a Directory after completing this integration to verify users are populating correctly
Note: Syncing your LDAP directory will override existing directory data in Zaperon. Ensure your LDAP directory data is accurate and up to date before initiating a sync to avoid overwriting correctly configured user or group information in Zaperon.
1. In the Admin Dashboard, go to Directories >Add Directory.
2. Fill all the details in Basic Settings section & click Connect.
3. A confirmation dialog will appear. directory successfully connected to zaperon.
4. In Attribute Mapping tab, you can create mapping of the columns in directory to attributes in Zaperon. Click on Add Custom Attribute to create a mapping.
5. New custom attribute field can be linked to the columns of directory. After filling details click Save.
6. Click on Next.
7. In Group Attribute tab, you can map groups columns in directory in Zaperon and click Save.
8. A confirmation dialog will appear. directory saved successfully.
9. You’ll see new Active Directory in directory table has been added and data will be automatically synced in Zaperon. For subsequent sync, you can click on sync icon in the Actions column.
Once your LDAP directory is added in Zaperon, you can manage it throughout its lifecycle without reconfiguring the integration.
Use the following options to update settings, control sync behavior, or remove the directory when it is no longer required:
→ Refer to Sync a Directory.
→ Refer to Edit a Directory.
→ Refer to Delete a Directory.
Integrating LDAP with Zaperon establishes a secure, automated identity sync between your LDAP directory server and the Zaperon platform. By using your LDAP directory as the authoritative identity source, organizations can eliminate manual provisioning, enforce group-based Zero Trust policies, automate offboarding access revocation, and maintain a continuously accurate identity foundation that supports both security and compliance requirements across the organization.