!--a11y-->
Authentication Using an LDAP Bind to a Directory Server 
Purpose
With this PAS option, the user is authenticated using an LDAP bind to a directory server. The PAS verifies the LDAP bind and then issues the user a logon ticket for access to further SAP services. Note that in this case, you can alternatively store the user’s ID to use for the logon ticket in the directory server instead of using the user external ID mapping table in the SAP system.
Prerequisites
For the prerequisites for using an LDAP bind for PAS, see the following topics:
Process Flow
See the graphic below:
Using an LDAP Bind to a Directory Server for Authentication

The process is as follows:
Result
The user accesses the SAP service after authenticating him or herself using an LDAP bind on the directory server.
When the user accesses further SAP services, the logon ticket is used for Single Sign-On access.