Supported attributes reference
The following table consists of the attributes that can be mapped on a user during provisioning.
|
The user principal name (UPN) of the user. The UPN is an Internet-style login name for the user based on the Internet standard
|
||
|
The name displayed in the address book for the user. This property is required when a user is created and it cannot be cleared during updates. |
||
|
The mail alias for the user. This property must be specified when a user is created. |
||
|
The city in which the user is located. |
||
|
The country/region in which the user is located; for example, "US" or "UK". |
||
|
The name for the department in which the user works. |
||
|
The telephone number of the user’s business fax machine. |
||
|
The given name (first name) of the user. |
||
|
The user’s job title. |
||
|
The primary cellular telephone number for the user.
|
||
|
The office location in the user’s place of business. |
||
|
The postal code for the user’s postal address. The postal code is specific to the user’s country/region. In the United States of America, this attribute contains the ZIP code. |
||
|
The preferred language for the user. Should follow |
||
|
The state or province in the user’s address. |
||
|
The street address of the user’s place of business. |
||
|
The user’s surname (family name or last name). |
||
|
The primary telephone number of the user’s place of business. |
||
|
Required for the licensing feature. Needs to be mapped to an attribute that contains the Required for users that will be assigned licenses due to legal requirement to check for availability of services in countries. Examples include: "US", "JP", and "GB". |
||
|
A string value that can be used to classify user types in your directory, such as "Member" and "Guest". |
||
|
Map password to a field so the content will become the user’s initial password instead of the less secure default. The field can also be set to a static default value. This field is required when a user is created. It can not be updated, but the user can be forced to update their password on their next login by setting their resetPassword field to true. The password must satisfy minimum requirements as specified by the user’s |
||
|
Determines if a user needs to do a password reset the next time they login. Default value is true, but can be mapped to an attribute. |
||
|
Required for the manager feature. Sets the user DN of the associated manager. |
||
|
Required for the manager feature. A custom field that we set on a user in Azure, which holds the user’s DN from AD and is used to lookup users in Azure in order to set the manager field on a user in Azure. Sets the user DN. Users and managers must be created or updated with the |
||
|
Required for the licensing feature. Can be mapped in PingFederate to a single or multi-valued attribute in LDAP. Used for the IDs or names of the license(s) assigned to users. The usageLocation field must also be set for a license to be successfully assigned. |
||
|
Part of the licensing feature. Can be mapped in PingFederate to a single or multi-valued attribute in LDAP. Used for the IDs or names of disabled plans for individual users’ licenses. |
||
|
This property is used to associate an on-premises Active Directory user account to their Azure AD user object. This property must be specified when creating a new user account in the Graph if you are using a federated domain for the user’s |
||
|
A list of additional email addresses for the user. |