authentication_backend: password_reset: disable: false refresh_interval: 5m ldap: implementation: custom address: ldap://lldap:3890 timeout: 5s start_tls: false tls: skip_verify: false minimum_version: TLS1.2 base_dn: {{ env "X_AUTHELIA_LDAP_DOMAIN" }} attributes: username: uid display_name: displayName mail: mail group_name: cn additional_users_dn: ou=people users_filter: (&(|({username_attribute}={input})({mail_attribute}={input}))(objectClass=person)) additional_groups_dn: ou=groups groups_filter: (member={dn}) user: uid=admin,ou=people,{{ env "X_AUTHELIA_LDAP_DOMAIN" }} password: {{ secret "/run/secrets/AUTHENTICATION_BACKEND_LDAP_PASSWORD" }}