This product has charges associated with it for TurnKey integration, maintenance, and support. OpenLDAP is a preconfigured open-source appliance with automated security updates and backup tools.
This product has charges associated with it for TurnKey Linux integration, automated security updates, backup tooling, and bundled support.
TurnKey OpenLDAP helps save you time and money by providing a ready-to-run OpenLDAP solution that is secure, supported and easy to maintain. The system auto-updates itself with security fixes and is built in a transparent 100% open source process free of hidden backdoors.
OpenLDAP is an open source implementation of the Lightweight Directory Access Protocol (LDAP) developed by the OpenLDAP Project, a collaborative effort to develop a robust, commercial-grade, fully featured, and open source LDAP suite of applications and development tools.
Highlights
Secure, supported and easy to maintain: auto-updated daily with latest security patches. Bundled support for no extra charge.
Free from hidden backdoors and vendor lock-in: transparent 100% opensource build of Debian GNU/Linux with no proprietary components or secret sauce.
Free 1-click backup, restore and migrate: bundled backup software saves changes to files, databases and package management to encrypted storage which servers can be automatically restored from.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Try this product free for 7 days according to the free trial terms set by the vendor. Usage-based pricing is in effect for usage beyond the free trial terms. Your free trial gets automatically converted to a paid subscription when the trial ends, but may be canceled any time before that.
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time. Alternatively, you can pay upfront for a contract, which typically covers your anticipated usage for the contract duration. Any usage beyond contract will incur additional usage-based costs.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
If you are an AWS Free Tier customer with a free plan, you are eligible to subscribe to this offer. You can use free credits to cover the cost of eligible AWS infrastructure. See AWS Free Tier for more details. If you created an AWS account before July 15th, 2025, and qualify for the Legacy AWS Free Tier, Amazon EC2 charges for Micro instances are free for up to 750 hours per month. See Legacy AWS Free Tier for more details.
You pay by the hour for the EC2 instance type you run this preconfigured OpenLDAP appliance on. The software itself carries no license fee; your hourly rate reflects the compute size you choose. Options span many instance families, including general-purpose (t3, m8i-flex), compute-optimized (c-series), memory-optimized (r8i), and storage-optimized (i7i) types. Larger sizes cost more per hour because they provide more CPU, memory, or storage. Smaller sizes like t3.micro suit light directory workloads, while larger sizes handle heavier demand. Pick the size that fits your workload; you can change instance types as your needs shift.
Top-of-mind questions for buyers
Am I charged when the instance is stopped or paused?
The hourly software rate meters running time only. A stopped instance stops accruing hourly software charges. You may still pay underlying AWS storage fees for the attached volume while the instance is stopped. Restarting the instance resumes hourly charges at the rate for your chosen size.
What does one billable hour actually cover for this appliance?
One hour covers running the preconfigured OpenLDAP appliance on one EC2 instance of the size you selected. The software carries no separate license fee. The appliance ships with the LDAP directory server, web-based administration, and TLS support ready to run. You pay only the per-hour rate for that compute size.
Does my hourly rate change automatically if I switch to a larger instance size?
No automatic change happens. You choose the instance size when you launch, and you can move to a different size later. Your hourly rate then reflects the new size you run. Larger sizes bill at higher hourly rates because they supply more CPU, memory, or storage.
www.turnkeylinux.org
Helpful?
Vendor refund policy
90 day money back guarantee if you are not fully satisfied.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
After creating an EC2 instance with 1-Click, browse to http://<Public_DNS>/ for
system initialization instructions.
Alternatively, log in via SSH as user 'admin' to the running instance. Be sure
to use the SSH keypair selected during launch.
This inital step is required to set sensitive passwords & install security
updates. You may also be asked to set a domain name for your server. If this is
required, then it must be a valid domain name (i.e. have DNS configured).
Accessing the software main web app
http://<Public_DNS>/
This may redirect to https and/or the domain set at initialisation.
OS commands via SSH
Log into the running instance via SSH as user 'admin', using the SSH keypair
set at launch time. Use sudo to run commands requiring root access.
Web based System Admin control panel
https://<Public_DNS>:12321
Remove scary browser warnings
By default TurnKey AMIs ship with randomly generated self signed SSL/TLS
certifcates. This will cause scary warning in your web browser When accessing
https.
To remove the browser warnings, you will need to get a SSL/TLS certificate
signed by an authorized Certificate Authority (CA). The recommended way to do
that is to get a free Let's Encrypt SSL certificate. TurnKey comes with a built
in tool to do that within your instance:
Ensure that you have your chosen domain DNS records configured and your
domain resolves to your instance.
E-mail support is provided through the TurnKey Hub at no additional cost. Once you sign up to the TurnKey Hub, your AWS marketplace subscription will be automatically identified. support@turnkeylinux.org
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Open source implementation of LDAP protocol for directory services and authentication management
Automated Security Patching
Daily automated security updates and patches applied to the system without manual intervention
Backup and Restore Functionality
Bundled backup software with one-click backup, restore, and migrate capabilities that saves file, database, and package management changes to encrypted storage
Open Source Architecture
Transparent 100% open source build based on Debian GNU/Linux without proprietary components or hidden backdoors
Pre-configured Appliance
Ready-to-run preconfigured OpenLDAP solution requiring minimal setup and configuration time
Passwordless Authentication
Drag-and-drop workflows and APIs enabling passwordless login experiences without traditional password-based authentication.
Multi-Factor Authentication
Built-in multi-factor authentication (MFA) and step-up authentication controls that can be embedded into existing authentication flows.
Bot Attack Prevention
Bot protection mechanisms designed to stop bot attacks on login pages and prevent unauthorized access attempts.
Enterprise User Management
SAML SSO, role-based access control (RBAC), tenant management, and automated user provisioning via SCIM protocol for B2B applications.
Account Takeover Protection
Security features designed to protect against account takeover attacks and unauthorized account access.
Just-In-Time Access Management
Dynamic access provisioning that eliminates standing privileges and grants temporary, time-limited permissions based on immediate need.
Fine-Grained Access Control
Granular role-based and attribute-based access provisioning with policy-driven automation to enforce least privilege principles across cloud infrastructure and data repositories.
Multi-Platform Access Request Integration
Access request and approval workflows through multiple channels including Slack, Teams, CLI, and developer portal with ChatOps-based approval mechanisms.
Centralized Access Governance
Unified management and monitoring of access across cloud infrastructure, databases, CI/CD tools, incident response tools, identity providers, and Kubernetes environments.
Automated Compliance Policy Enforcement
Policy-based access flow automation with support for SOC2 and regulatory compliance requirements, including break-glass and on-call access patterns for incident response.
Turnkey's Open LDAP comes with a bundle of dependent packages and is easy to install. it has a unique username and has a self-password reset tool that can be used to reset the password for your username, and it will sync to hundreds of AWS servers in one go with the sshd service installed on the host servers. Adding users with GID and UID is an easy process. This is especially useful if you operate an SSH to hundreds of servers daily. It does support Amazon Web Services instances very well without getting any password syncing errors.
What do you dislike about the product?
It is doing an excellent job with an accessible LDAP server, and there aren't things I dislike about it. It's just we need to be careful of configurations with groups and adding GID and UIDs
What problems is the product solving and how is that benefiting you?
It supports Sha512 password encryption which is very secure and takes less time to sync the password. It is the most benefit for my company
Rizwan A.
OpenLDAP is reach featured and light weight directory service
Reviewed on Dec 09, 2022
Review provided by G2
What do you like best about the product?
LDAP by its nature is lightweight and fast. It's structured for hierarchical access to user information and easy to search based on all of this information. It also has support for an SSL protocol (LDAPS) which I highly recommend. Also it has huge community of support.
What do you dislike about the product?
It does not have inbuilt user interface, so you have to be a skilled person to operate this. And It only supports LDAP protocol while other Directory Services support much protocol such as Kerberos
What problems is the product solving and how is that benefiting you?
First of all OpenLDAP is free and opensource in nature these will help us in cost management, secondly It has easily managing interface so we no longer required expert to manage it.
Jose G.
Good, practical, straight forward
Reviewed on Jun 19, 2022
Review provided by G2
What do you like best about the product?
It is a great universal directory which you can integrate with many different applications
What do you dislike about the product?
The Ldap and Ldiff format can be overwhelming
What problems is the product solving and how is that benefiting you?
The use of a central identification for many different application