The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Authentication using LDAP

Prev Next

The LDAP communication from the client Managers is over a secure communication. Therefore, LDAP configuration information is valid and can be passed onto all the Managers.

The LDAP server configuration in the Central Manager should be synchronized with all Managers.

If a LDAP configuration is done at the Central Manager, and no LDAP server exists at the Manager level, then after synchronization, the Manager will inherit the configuration with a suffix "Inherited".

If the Manager has its own LDAP configuration, it will not inherit the configuration from the Central Manager level; it will have its own customized configuration with a suffix "Customized".

At any time, if a user deletes the configuration made at the Manager level, the inherited configuration is displayed.

For more information on configuring a LDAP server, see Configuration of LDAP servers.

Note

If LDAP servers are configured with the Central Manager, and the LDAP servers exist in private networks and Managers exist in public network, the LDAP configuration needs to be customized at the Manager in a way that it reaches the LDAP server through translated public IP address.