Skip to main content
Version: Axidian Privilege 3.3

Mapping user directory and PAM attributes

This section contains a list of default values for user directory attributes and their mapping Axidian Privilege attributes.

Active Directory and Samba DC

Directory attributeAxidian Privilege attributeDescription
Users
objectGUIDIDEntity identifier
nameNameUser name
userPrincipalNamePrincipalNameLogin with domain in the format username@domain
Example: pamadmin@company.local
objectSIDSIDUnique entity identifier in the directory in SID format
Example: S-1-5-21-2418255240-4279612882-1152719259
distinguishedNameDistinguishedNamePath to the entity in the directory in DN format
Example: 'cn=pamadmin,cn=users,cn=accounts,dc=my,dc=company'
sAMAccountNameSamAccountNameUser login name
Example: pamadmin
thumbnailPhotoThumbnailPhotoUser thumbnail photo in JPEG or binary file format.
jpegPhotoJpegPhotoUser photo in JPEG format.
User Groups
objectGUIDIDEntity identifier
nameNameGroup name
canonicalNameCanonicalNameFull path to the group in the directory
objectSIDSIDUnique entity identifier in the directory in SID format
Example: S-1-5-21-2418255240-4279612882-1152719259
distinguishedNameDistinguishedNamePath to the entity in the directory in DN format
Example: 'cn=pamadmins,cn=users,cn=accounts,dc=my,dc=company'
sAMAccountNameSamAccountNameUnique Group name

FreeIPA

Directory attributeAxidian Privilege attributeDescription
Users
entryUUIDIDEntity identifier
cnNameUser name
krbPrincipalNamePrincipalNameLogin with domain in the format username@domain
Example: pamadmin@company.local
ipaNTSecurityIdentifierSIDUnique entity identifier in the directory in SID format
Example: S-1-5-21-2418255240-4279612882-1152719259
ipaUniqueIDGUIDUnique Entity identifier in the directory in GUID format
Example: 176f69c4-3f2b-11eb-89aa-005056980f49
entrydnDistinguishedNamePath to the entity in the directory in DN format
Example: 'uid=pamadmin,cn=users,cn=accounts,dc=my,dc=company'
uidSamAccountNameUser login name
Example: pamadmin
jpegPhotoThumbnailPhotoUser thumbnail photo in JPEG or binary file format.
jpegPhotoJpegPhotoUser photo in JPEG format.
User Groups
ipaUniqueIDIDEntity identifier
cnNameGroup name
cnCanonicalNameFull path to the group in the directory
ipaNTSecurityIdentifierSIDUnique entity identifier in the directory in SID format
Example: S-1-5-21-2418255240-4279612882-1152719259
ipaUniqueIDGUIDUnique Entity identifier in the directory in GUID format
Example: 176f69c4-3f2b-11eb-89aa-005056980f49
entryDnDistinguishedNamePath to the entity in the directory in DN format
Example: 'uid=pamadmin,cn=users,cn=accounts,dc=my,dc=company'
cnSamAccountNameUnique Group name

OpenLDAP

Directory attributeAxidian Privilege attributeDescription
Users
entryUUIDIDEntity identifier
cnNameUser name
entrydnDistinguishedNamePath to the entity in the directory in DN format
Example: 'uid=pamadmin,cn=users,cn=accounts,dc=my,dc=company'
uidSamAccountNameUser login name
Example: pamadmin
photoThumbnailPhotoUser thumbnail photo in JPEG or binary file format.
photoJpegPhotoUser photo in JPEG format.
User Groups
entryUUIDIDEntity identifier
cnNameGroup name
cnCanonicalNameFull path to the group in the directory
entryDnDistinguishedNamePath to the entity in the directory in DN format
Example: 'uid=pamadmin,cn=users,cn=accounts,dc=my,dc=company'
cnSamAccountNameUnique Group name