Self-host LLDAP
updated Sep 2026deployed by usprices checked · Jul 2026Install verified on Ubuntu 26.04 · Sep 2026 · how we test
We earn commissions when you shop through the links below. Full disclosure →
A lightweight LDAP server for user and group management with a web UI, built to be the user directory behind Authelia, Keycloak, Nextcloud and other apps that authenticate over LDAP. It implements an opinionated subset of LDAP rather than a full directory server.
Key facts
CategorySSO & Identity
LicenseGPL-3.0
StackRust, SQLite
Min RAM128 MB
Official imageyes
Measured idle RAM3 MB
Difficulty
What you need
- Any VPS with at least 128 MB of RAM
- A domain you control — most self-hosted setups need HTTPS in front of them
- Under an hour if you've used Docker before
Where to host itaffiliate disclosure
Hetzner Cloudrun it on
From $23.59/mo · 2 vCPU / 4 GB / 80 GB · EU + USKamaterafree trial
From $4/mo · 1 vCPU / 1 GB / 20 GB · US + EU + AsiaDigitalOceanalso works on
From $6/mo · 1 vCPU / 1 GB / 25 GB · US + EU + AsiaPaid link — we earn a commission if you shop through it.
Install
Run these commands on your server:
# LLDAP — web UI on :17170; LDAP (:3890) stays internal unless you publish it
LLDAP_PASS=$(openssl rand -hex 12) && echo "admin password: $LLDAP_PASS"
docker run -d --name lldap --restart unless-stopped -p 17170:17170 -v lldap_data:/data \
-e LLDAP_JWT_SECRET=$(openssl rand -hex 32) -e LLDAP_KEY_SEED=$(openssl rand -hex 32) \
-e LLDAP_LDAP_BASE_DN=dc=example,dc=com -e LLDAP_LDAP_USER_PASS=$LLDAP_PASS \
lldap/lldap:stable
# → http://SERVER_IP:17170 (user: admin)More in SSO & Identity
SSO & Identity
Authelia
Go
moderateRead guide →
SSO & Identity
authentik
PythonGoTypeScript
moderateRead guide →
SSO & Identity
Casdoor
GoReact
easyRead guide →
SSO & Identity
Keycloak
JavaQuarkus
hardRead guide →