Show TOC

Procedure documentationConfiguring Connection Data for the Directory Service Locate this document in the navigation structure


  1. On the initial screen of the directory service maintenance (transaction LDAP), choose   LDAP Administration   Server  , or the Server button.

    The system displays the Display Server View: Overview screen with the physical connection data of your directory service server.

  2. Switch to change mode and choose New Entries.

    The system displays the New Entries: Details of Added Entries screen.

  3. Enter the following data:



    Server name

    Logical name of the directory service server

    Host Name

    Host name of the directory server.

    Port number

    Port number used (normally 389)

    Product name

    Product name of the LDAP server

    The system only requires this specification to select the correct proposal if a mapping proposal delivered by SAP is to be imported in the configuration of the mapping procedure for this server.

    Protocol version

    Either LDAP Version 2 or LDAP Version 3

    Use version 2 only if you are using a directory service that does not support version 3. To synchronize user master data, you require version 3.

    LDAP Application

    • General

    • User: To perform the user master synchronization, choose this entry.

    • Employee

    • CA certificate


    To use the server as the default server of the system, set this indicator.

    This setting affects the following:

    • Applications that do not explicitly specify a server name

    • The prefilling of the input field for the server name in transaction LDAP

    • The report for user master synchronization

    Base entry

    Distinguished Name of the root node of the directory tree

    System Logon

    Logical name of the LDAP user that is used to log on to the directory. You specify the permissible entries for this field under Defining the System User of the Directory Service.

    Read anonymously

    Read accesses with anonymous logon

  4. To use the server as the default directory service server of the system, activate Default.

  5. To use only anonymous logons for read accesses, activate Read Anonymously.

    Note Note

    The logical name SAP_* (such as SAP_ROOT, SAP_USER or SAP_SERVICES) are reserved for SAP applications.

    End of the note.
  6. Save your entries.