# LDAP Authentication

**URL:** <https://discourse.nodered.org/t/ldap-authentication/93997>\
**Category:** General\
**Created:** [18 December 2024 12:08 UTC](https://discourse.nodered.org/t/ldap-authentication/93997 "2024-12-18T12:08:12Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![ZeploiT](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/zeploit/32/97356_2.png) [@ZeploiT](https://discourse.nodered.org/u/ZeploiT)\
**Post date:** [18 December 2024 12:08 UTC](https://discourse.nodered.org/t/ldap-authentication/93997/1 "2024-12-18T12:08:12Z")

</div>

Greetings,

Im using Node-RED version 4.0.6. I want to login with LDAP to Node-RED but the extensions that I find are deprecated and cant be usable for me.

Is there a better way to implement LDAP login for Node-RED without using extensions?

---

<div class="post-metadata">

**Author:** ![marcus-j-davies](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/marcus-j-davies/32/103435_2.png) [@marcus-j-davies](https://discourse.nodered.org/u/marcus-j-davies)\
**Post date:** [18 December 2024 12:26 UTC](https://discourse.nodered.org/t/ldap-authentication/93997/2 "2024-12-18T12:26:31Z")

</div>

Where is Node RED sitting? On a windows Server?  
You could use an IIS reverse proxy and have IIS trigger windows auth?

I.e have IIS manage authentication

---

<div class="post-metadata">

**Author:** ![TotallyInformation](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/totallyinformation/32/31_2.png) [@TotallyInformation](https://discourse.nodered.org/u/TotallyInformation)\
**Post date:** [18 December 2024 20:20 UTC](https://discourse.nodered.org/t/ldap-authentication/93997/3 "2024-12-18T20:20:21Z")

</div>

> [@ZeploiT](#):
>
> Is there a better way to implement LDAP login for Node-RED without using extensions?

Most people would do this via a proxy. Marcus has mentioned doing it on Windows with IIS but on all platforms you could also use something like NGINX with a suitable extension. Most people would prefer to use Linux for this but it can also be done on Windows if needed though I'd agree that IIS with AD/AAD integration is best there.

---

<div class="post-metadata">

**Author:** ![ZeploiT](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/zeploit/32/97356_2.png) [@ZeploiT](https://discourse.nodered.org/u/ZeploiT)\
**Post date:** [3 January 2025 13:46 UTC](https://discourse.nodered.org/t/ldap-authentication/93997/4 "2025-01-03T13:46:55Z")

</div>

Thanks for the answer. This method seems very effective. Node Red is running in Linux environment and I checked if I can do it with Nginx. But I came across a problem.

While Nodered running on port 1880 on server, I cannot redirect requests coming to port 1880 on Nginx to LDAP server. Port 1880 needs to be open for Nginx to listen, but this port is used by Node Red.

What I want is for NodeRed needs to be running and for requests coming to NodeRed (i.e. port 1880) to be directed to our LDAP URL.

What method should I follow in this case?

---

<div class="post-metadata">

**Author:** ![hardillb](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/hardillb/32/12373_2.png) [@hardillb](https://discourse.nodered.org/u/hardillb)\
**Post date:** [3 January 2025 16:41 UTC](https://discourse.nodered.org/t/ldap-authentication/93997/5 "2025-01-03T16:41:01Z")

</div>

Which LDAP auth plugins have you used?

> **[GitHub - hardillb/node-red-contrib-ldap-auth: A Node-RED authentication plugin that uses LDAP as...](https://github.com/hardillb/node-red-contrib-ldap-auth)**
>
> A Node-RED authentication plugin that uses LDAP as the backend user store.

is not deprecated.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex026/uploads/nodered/original/1X/d073cd938eafa2e558d7c2cd59003b3ef4963033.png) [@system](https://discourse.nodered.org/u/system)\
**Post date:** [3 April 2025 16:41 UTC](https://discourse.nodered.org/t/ldap-authentication/93997/6 "2025-04-03T16:41:22Z")

</div>

This topic was automatically closed 90 days after the last reply. New replies are no longer allowed.
