The following classes are required for group objects:
objectClass=groupOfNamesobjectClass=idautoGroup
The following values must be present in group objects:
A unique common name for the
cnattributeA unique account identifier for the
idautoIdattribute
| Attribute Name | Friendly Name | Data Type | Multi-Valued | Unique | Indexes | Description/Constraints |
|---|---|---|---|---|---|---|
idautoID | ID | UUID | N | Y | eq | Required unique UUID of the group, which may not be changed |
cn | Group Name | String | N | Y | eq, sub | Required unique name of the group |
description | Group Description | String | N | N | eq, sub | Optional group description |
member | - | DN | Y | N | eq | Distinguished names (DNs) of all current group members |
idautoGroupOwners | - | DN | Y | N | eq | Owners (group membership managers) of the group |
idautoGroupCoOwners | - | DN | Y | N | eq | Co-owners of the group |
idautoGroupCoOwnerEditable | - | Boolean | N | N | - | Whether co-owners may edit group details |
idautoGroupIncludeFilter | - | String | N | N | - | Dynamic membership filter |
idautoGroupExcludeFilter | - | String | N | N | - | Dynamic membership exclusion filter |
idautoGroupStaticIncludes | - | DN | Y | N | eq | DNs of all static group members |
idautoGroupStaticExcludes | - | DN | Y | N | eq | DNs of all static group exclusions |
idautoGroupLastSynced | - | DateTime | N | N | eq | Date and time when the membership was last synced |
| Attribute Name | Friendly Name | Data Type | Multi-Valued | Unique | Indexes | Description/Constraints |
|---|---|---|---|---|---|---|
idautoGroupEmailAddress | Group Email Address | String | N | Y | eq, sub | Unique email address for distribution list groups |
idautoGroupEmailAliases | Group Email Aliases | String | Y | Y | eq, sub | Unique email aliases for distribution list groups |
idautoGroupToSystem1 | Sync Group to System 1 | Boolean | N | N | - | Flag indicating that a group should be synced to System 1 |
idautoGroupToSystem2 | Sync Group to System 2 | Boolean | N | N | - | Flag indicating that a group should be synced to System 2 |
idautoGroupToSystem3 | Sync Group to System 3 | Boolean | N | N | - | Flag indicating that a group should be synced to System 3 |
idautoGroupToSystem4 | Sync Group to System 4 | Boolean | N | N | - | Flag indicating that a group should be synced to System 4 |
idautoGroupToSystem5 | Sync Group to System 5 | Boolean | N | N | - | Flag indicating that a group should be synced to System 5 |
idautoGroupToSystem6 | Sync Group to System 6 | Boolean | N | N | - | Flag indicating that a group should be synced to System 6 |
idautoGroupToSystem7 | Sync Group to System 7 | Boolean | N | N | - | Flag indicating that a group should be synced to System 7 |
idautoGroupToSystem8 | Sync Group to System 8 | Boolean | N | N | - | Flag indicating that a group should be synced to System 8 |
idautoGroupToSystem9 | Sync Group to System 9 | Boolean | N | N | - | Flag indicating that a group should be synced to System 9 |
idautoGroupToSystem10 | Sync Group to System 10 | Boolean | N | N | - | Flag indicating that a group should be synced to System 10 |
| Attribute Name | Friendly Name | Data Type | Multi-Valued | Indexes | Description/Constraints |
|---|---|---|---|---|---|
idautoGroupExt1 | Custom Group Attribute 1 | String | Y | eq, sub | Custom group attribute |
idautoGroupExt2 | Custom Group Attribute 2 | String | Y | eq, sub | Custom group attribute |
idautoGroupExt3 | Custom Group Attribute 3 | String | Y | eq, sub | Custom group attribute |
idautoGroupExt4 | Custom Group Attribute 4 | String | Y | eq, sub | Custom group attribute |
idautoGroupExt5 | Custom Group Attribute 5 | String | Y | eq, sub | Custom group attribute |