# Rancher 2.0 Beta Authentication

**URL:** <https://forums.suse.com/t/rancher-2-0-beta-authentication/10038>\
**Category:** Rancher 2.0 Tech Preview\
**Created:** [April 10, 2018, 4:18am UTC](https://forums.suse.com/t/rancher-2-0-beta-authentication/10038 "2018-04-10T04:18:25Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![Conan](https://sea2.discourse-cdn.com/flex022/user_avatar/forums.suse.com/conan/32/3700_2.png) [@Conan](https://forums.suse.com/u/Conan)\
**Post date:** [April 10, 2018, 4:18am UTC](https://forums.suse.com/t/rancher-2-0-beta-authentication/10038/1 "2018-04-10T04:18:26Z")

</div>

Currently. Rancher 2.0 Beta Authentication only have Active Directory and GitHub much less than 1.6? Is there a plan to support more authentication mechanism such Open LDAP ?

---

<div class="post-metadata">

**Author:** ![vincent](https://sea2.discourse-cdn.com/flex022/user_avatar/forums.suse.com/vincent/32/7156_2.png) [@vincent](https://forums.suse.com/u/vincent)\
**Post date:** [April 10, 2018, 6:59am UTC](https://forums.suse.com/t/rancher-2-0-beta-authentication/10038/2 "2018-04-10T06:59:46Z")

</div>

Not for 2.0. Local, AD, and GitHub account for almost the large majority of the usage in 1.x. The next driver added will likely be SAML.

---

<div class="post-metadata">

**Author:** ![Conan](https://sea2.discourse-cdn.com/flex022/user_avatar/forums.suse.com/conan/32/3700_2.png) [@Conan](https://forums.suse.com/u/Conan)\
**Post date:** [April 11, 2018, 1:53am UTC](https://forums.suse.com/t/rancher-2-0-beta-authentication/10038/3 "2018-04-11T01:53:52Z")

</div>

I thought most of Enterprise Application support LDAP. No LDAP 🙄  
Vote for _LDAP_

---

<div class="post-metadata">

**Author:** ![parin921996](https://avatars.discourse-cdn.com/v4/letter/p/4491bb/32.png) [@parin921996](https://forums.suse.com/u/parin921996)\
**Post date:** [April 12, 2018, 5:04pm UTC](https://forums.suse.com/t/rancher-2-0-beta-authentication/10038/4 "2018-04-12T17:04:39Z")

</div>

I would like to request for LDAP .

---

<div class="post-metadata">

**Author:** ![vincent](https://sea2.discourse-cdn.com/flex022/user_avatar/forums.suse.com/vincent/32/7156_2.png) [@vincent](https://forums.suse.com/u/vincent)\
**Post date:** [April 12, 2018, 5:30pm UTC](https://forums.suse.com/t/rancher-2-0-beta-authentication/10038/5 "2018-04-12T17:30:38Z")

</div>

It will likely be added later, but not in 2.0.0.

The reality is most of those enterprises use ActiveDirectory\*. We generally know exactly what our customers use, and have a pretty good idea from telemetry what community users use. [Open]LDAP and “Azure AD”\*\* are by far the least used options, accounting for \<3% of installs in telemetry combined.

\*: which is _not_ the same as LDAP, because Microsoft / embrace, extend, extinguish  
\*\*: which is basically OAuth and has nothing to do with LDAP or ActiveDirectory at all except for the name.

---

<div class="post-metadata">

**Author:** ![jslatten](https://sea2.discourse-cdn.com/flex022/user_avatar/forums.suse.com/jslatten/32/964_2.png) [@jslatten](https://forums.suse.com/u/jslatten)\
**Post date:** [April 12, 2018, 6:59pm UTC](https://forums.suse.com/t/rancher-2-0-beta-authentication/10038/6 "2018-04-12T18:59:52Z")

</div>

@vincent Is there any way to get Rancher 2.0 to work with LDAP? I’ve modified the schema configuration in Rancher, but no such luck. I’m getting an error in my directory server logs that’s complaining about the suffix:

[12/Apr/2018:18:44:21.490232544 +0000] conn=700972 op=1 BIND dn=“username” method=128 version=3  
[12/Apr/2018:18:44:21.490480078 +0000] conn=700972 op=1 RESULT err=49 tag=97 nentries=0 etime=0 - No such suffix (username)

Any assistance anyone can provide is greatly appreciated.

Thanks,  
Justin
