TurnKey OpenLDAP helps save you time and money by providing a ready-to-run OpenLDAP solution that is secure, supported and easy to maintain. The system auto-updates itself with security fixes and is built in a transparent 100% open source process free of hidden backdoors.
TurnKey OpenLDAP helps save you time and money by providing a ready-to-run OpenLDAP solution that is secure, supported and easy to maintain. The system auto-updates itself with security fixes and is built in a transparent 100% open source process free of hidden backdoors.
OpenLDAP is an open source implementation of the Lightweight Directory Access Protocol (LDAP) developed by the OpenLDAP Project, a collaborative effort to develop a robust, commercial-grade, fully featured, and open source LDAP suite of applications and development tools.
Highlights
Secure, supported and easy to maintain: auto-updated daily with latest security patches. Bundled support for no extra charge.
Free from hidden backdoors and vendor lock-in: transparent 100% opensource build of Debian GNU/Linux with no proprietary components or secret sauce.
Free 1-click backup, restore and migrate: bundled backup software saves changes to files, databases and package management to encrypted storage which servers can be automatically restored from.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time. Alternatively, you can pay upfront for a contract, which typically covers your anticipated usage for the contract duration. Any usage beyond contract will incur additional usage-based costs.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
If you are an AWS Free Tier customer with a free plan, you are eligible to subscribe to this offer. You can use free credits to cover the cost of eligible AWS infrastructure. See AWS Free Tier for more details. If you created an AWS account before July 15th, 2025, and qualify for the Legacy AWS Free Tier, Amazon EC2 charges for Micro instances are free for up to 750 hours per month. See Legacy AWS Free Tier for more details.
You pay by the hour for the software, billed per running instance. The price you pay depends only on which Amazon EC2 instance size you launch. Each dimension maps to a specific instance type, from small burstable options like t3a.micro and t3.small to larger compute-focused sizes such as c8i.large and c7a.large. Smaller instances carry lower hourly rates; larger instances carry higher rates. There are no tiers, plans, or feature differences between dimensions. The OpenLDAP software is identical across all of them. You simply choose the instance size that fits your workload and pay the matching hourly rate.
Top-of-mind questions for buyers
What does the hourly rate cover, and does the OpenLDAP software cost more on larger instance types?
The hourly rate covers the software licence for the running instance. The rate maps to the Amazon EC2 instance size you launch. Smaller sizes carry lower rates; larger sizes carry higher rates. The OpenLDAP software itself is identical across every size. You also pay separate AWS charges for the underlying compute.
Am I charged the software rate when my instance is stopped or powered off?
The software rate meters running instance-hours. A fully stopped instance does not accrue the hourly software charge. Note that persistent-disk (EBS-backed) servers can be turned off to save usage fees, while some server types can only be rebooted or destroyed, not stopped. Underlying AWS storage fees may still apply while stopped.
If I need a different instance size later, can I move my OpenLDAP setup without losing my configuration?
Yes. The included backup and migration tool saves your files, databases, and package changes to encrypted storage. You can restore that state onto a new server of a different size and pay the matching hourly rate. Restores also work across 32-bit and 64-bit architectures, though custom binaries may need recompiling.
www.turnkeylinux.org+2
Helpful?
Vendor refund policy
90 day money back guarantee if you are not fully satisfied.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
After creating an EC2 instance with 1-Click, browse to http://<Public_DNS>/ for
system initialization instructions.
Alternatively, log in via SSH as user 'admin' to the running instance. Be sure
to use the SSH keypair selected during launch.
This inital step is required to set sensitive passwords & install security
updates. You may also be asked to set a domain name for your server. If this is
required, then it must be a valid domain name (i.e. have DNS configured).
Accessing the software main web app
http://<Public_DNS>/
This may redirect to https and/or the domain set at initialisation.
OS commands via SSH
Log into the running instance via SSH as user 'admin', using the SSH keypair
set at launch time. Use sudo to run commands requiring root access.
Web based System Admin control panel
https://<Public_DNS>:12321
Remove scary browser warnings
By default TurnKey AMIs ship with randomly generated self signed SSL/TLS
certifcates. This will cause scary warning in your web browser When accessing
https.
To remove the browser warnings, you will need to get a SSL/TLS certificate
signed by an authorized Certificate Authority (CA). The recommended way to do
that is to get a free Let's Encrypt SSL certificate. TurnKey comes with a built
in tool to do that within your instance:
Ensure that you have your chosen domain DNS records configured and your
domain resolves to your instance.
E-mail support is provided through the TurnKey Hub at no additional cost. Once you sign up to the TurnKey Hub, your AWS marketplace subscription will be automatically identified. support@turnkeylinux.org
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Open source implementation of Lightweight Directory Access Protocol (LDAP) for directory services
Automated Security Updates
System auto-updates daily with latest security patches
Backup and Restore Functionality
Bundled backup software with 1-click backup, restore and migrate capabilities that saves changes to files, databases and package management to encrypted storage
Open Source Architecture
Transparent 100% open source build based on Debian GNU/Linux with no proprietary components
Automated Threat Detection
Built with transparent open source process free of hidden backdoors and vendor lock-in
Passwordless Authentication
Drag-and-drop workflows and APIs enabling passwordless login experiences without traditional password-based authentication.
Multi-Factor Authentication
Built-in multi-factor authentication (MFA) and step-up authentication controls that can be embedded into existing authentication flows.
Bot Attack Prevention
Bot protection mechanisms designed to stop bot attacks on login pages and prevent unauthorized access attempts.
Enterprise User Management
SAML SSO, role-based access control (RBAC), tenant management, and automated user provisioning via SCIM protocol for B2B applications.
Account Takeover Protection
Security features designed to protect against account takeover attacks and unauthorized account access.
Just-In-Time Access Management
Dynamic access provisioning that eliminates standing privileges and grants temporary, time-limited permissions based on immediate need.
Fine-Grained Access Control
Granular IAM access provisioning with role-based and policy-based access flows that enforce least privilege principles across cloud resources.
Multi-Platform Access Integration
Centralized management and access request capabilities across cloud infrastructure, databases, CI/CD tools, incident response systems, IdP, Kubernetes, and additional enterprise resources.
Automated Approval Workflows
ChatOps-based approval mechanisms integrated with Slack and Teams, combined with policy-based auto-approval capabilities for streamlined access provisioning.
Compliance and Regulatory Automation
Automated conversion of access policies to just-in-time and just-enough access flows designed to satisfy SOC2 and other access control regulatory requirements.
Turnkey's Open LDAP comes with a bundle of dependent packages and is easy to install. it has a unique username and has a self-password reset tool that can be used to reset the password for your username, and it will sync to hundreds of AWS servers in one go with the sshd service installed on the host servers. Adding users with GID and UID is an easy process. This is especially useful if you operate an SSH to hundreds of servers daily. It does support Amazon Web Services instances very well without getting any password syncing errors.
What do you dislike about the product?
It is doing an excellent job with an accessible LDAP server, and there aren't things I dislike about it. It's just we need to be careful of configurations with groups and adding GID and UIDs
What problems is the product solving and how is that benefiting you?
It supports Sha512 password encryption which is very secure and takes less time to sync the password. It is the most benefit for my company
Rizwan A.
OpenLDAP is reach featured and light weight directory service
Reviewed on Dec 09, 2022
Review provided by G2
What do you like best about the product?
LDAP by its nature is lightweight and fast. It's structured for heirarchical access to user information and easy to search based on all of this information. It also has support for an SSL protocol (LDAPS) which I highly recommend. Also it has huge community of support.
What do you dislike about the product?
It does not have inbuilt user interface, so you have to be a skilled person to operate this. And It only supports LDAP protocol while other Directory Services support much protocol such as Kerberos
What problems is the product solving and how is that benefiting you?
First of all OpenLDAP is free and opensource in nature these will help us in cost management, secondly It has easily managing interface so we no longer requiered expert to manage it.
Jose G.
Good, practical, straight forward
Reviewed on Jun 19, 2022
Review provided by G2
What do you like best about the product?
It is a great universal directory which you can integrate with many different applications
What do you dislike about the product?
The Ldap and Ldiff format can be overwhelming
What problems is the product solving and how is that benefiting you?
The use of a central identification for many different application