When ClickHouse server is configured as a part of a cluster with a secret, and there is an LDAP user directory with a role mapping, authentications for users from that directory fails.
If the <secret> is removed from the cluster config, or role mapping is disabled for LDAP user directory, users are authenticated successfully.