# LDAP as an identity provider

**URL:** <https://forum.keycloak.org/t/ldap-as-an-identity-provider/21405>\
**Category:** Miscellanaeous\
**Created:** [April 11, 2023, 8:44am UTC](https://forum.keycloak.org/t/ldap-as-an-identity-provider/21405 "2023-04-11T08:44:39Z")\
**Posts on this page:** 1\
**Page:** 1

<div class="post-metadata">

**Author:** ![Shryne](https://yyz2.discourse-cdn.com/free1/user_avatar/forum.keycloak.org/shryne/32/1739_2.png) [@Shryne](https://forum.keycloak.org/u/Shryne)\
**Post date:** [April 11, 2023, 8:44am UTC](https://forum.keycloak.org/t/ldap-as-an-identity-provider/21405/1 "2023-04-11T08:44:39Z")

</div>

Hello,

Keycloak offers LDAP for user federation and requires user credentials to access the LDAP server and load all the LDAP users. I don’t want to give Keycloak these user credentials. Instead, I would like to use LDAP only to let users log in, like an identity provider. Is this possible? Is there an implementation for that?
