Identity Sync (LDAP)
Configure LDAP identity synchronization to automatically import users and groups from enterprise directory services into MaiAgent, with support for LDAP password login
Use Cases
How Is This Different from SSO?
Comparison
Identity Sync (LDAP)
Third-Party Login (SSO)
Prerequisites
Your IT contact needs to provide
MaiAgent-side requirements
Accessing Identity Sync Settings

1. Connection Settings

Field Entry Rules
Field
Description
Example (JumpCloud)
Example (AD)
Test Connection

Common Errors
Error Message
Possible Cause
Resolution
2. Sync Scope
Simple Mode (Recommended)


Advanced Mode
Requirement
LDAP Filter
3. Group Mapping

Operation Options
Mapping Examples
LDAP Group
MaiAgent Role
Purpose
4. Login & Sync

LDAP Password Login
Manual Sync Trigger
Last Sync Result
5. Sync Logs

Action Types
Action
Meaning
Trigger Methods
Verifying Sync Success
Verification 1: Check Users in Member Management

Verification 2: Check Roles in Role Permission Management

Verification 3: Check Execution History in Sync Logs
Verification Reference Table
What You Want to Know
Where to Look
Operational Recommendations
Operation
Consequence
Operation
Consequence
Initial Role Permission Configuration
Walkthrough (Using JumpCloud as an Example)
Step 1: Find Connection Information in JumpCloud


Step 2: Confirm the User Has LDAP Bind DN Enabled

Step 3: Assemble Connection Parameters
Field
Value
Step 4: Enter and Test in MaiAgent
Step 5: Set Sync Scope and Execute
FAQ
Q1. Test connection shows "Invalid credentials," but I'm sure the password is correct
Q2. Why weren't some users synced?
Q3. Can I sync only a specific department?
Q4. When an employee changes their LDAP password, do I need to wait for a sync on the MaiAgent side?
Q5. After enabling LDAP password login, can the original MaiAgent local password still be used?
Q6. When an employee leaves, will MaiAgent automatically deactivate them?
Q7. What happens in MaiAgent if an LDAP group is renamed or deleted?
Q8. How often does automatic sync run? Can it be adjusted?
Appendix: Connection Examples for Different LDAP Systems
Microsoft Active Directory
Field
Value
JumpCloud
Field
Value
OpenLDAP / FreeIPA
Field
Value
Azure AD (Entra ID)
Goal
Recommended Approach
Next Steps
Last updated
Was this helpful?
