diff --git a/installers/charm/keystone/src/charm.py b/installers/charm/keystone/src/charm.py
index cb5c88c51e89d227ff7066c8a7cce3ede10b21b1..39a7a007eee4b8f0f278a37cce3b41bd4540726a 100755
--- a/installers/charm/keystone/src/charm.py
+++ b/installers/charm/keystone/src/charm.py
@@ -379,7 +379,7 @@ class KeystoneCharm(CharmedOsmBase):
                 "user_pass_attribute": config_ldap.ldap_user_pass_attribute,
                 "user_enabled_mask": str(config_ldap.ldap_user_enabled_mask),
                 "user_enabled_default": config_ldap.ldap_user_enabled_default,
-                "user_enabled_invert": config_ldap.ldap_user_enabled_invert,
+                "user_enabled_invert": str(config_ldap.ldap_user_enabled_invert),
                 "group_objectclass": config_ldap.ldap_group_objectclass,
             }
             ldap_envs = {
@@ -429,7 +429,7 @@ class KeystoneCharm(CharmedOsmBase):
                 ldap_envs["LDAP_TLS_CACERT_BASE64"] = "tls_cacert_base64"
 
             if config_ldap.ldap_use_starttls:
-                ldap_secrets["use_starttls"] = config_ldap.ldap_use_starttls
+                ldap_secrets["use_starttls"] = str(config_ldap.ldap_use_starttls)
                 ldap_secrets["tls_cacert_base64"] = config_ldap.ldap_tls_cacert_base64
                 ldap_secrets["tls_req_cert"] = config_ldap.ldap_tls_req_cert
                 ldap_envs["LDAP_USE_STARTTLS"] = "use_starttls"