Skip to content
Docs

Directory sign-in (LDAP)

Let users sign in with their existing directory accounts on Business Premium and Enterprise, so your directory governs who has access.

Last updated July 17, 2026

#What LDAP sign-in does

LDAP lets users authenticate with their existing directory accounts (such as Active Directory) instead of separate local passwords. It's available on Business Premium and Enterprise and is configured under Settings → System Configuration. When directory accounts are managed centrally, enabling or disabling someone there governs their FileAgent access too.

#Configuring it

Enter the directory connection and search details your directory team provides, then test sign-in with a directory account. LDAP, SAML SSO, and local accounts can coexist; administrators choose the default login method on the sign-in screen.

#Best practices

  • Keep a local administrator account as a recovery path in case the directory is unreachable.
  • Use a directory service account with read access scoped to what FileAgent needs to look up users.
  • Combine directory sign-in with FileAgent roles and job-scoped access — the directory proves identity; FileAgent controls what each user can do.