On the Attributes screen, select the datastore attributes you want to provision.


This screen appears only if you are configuring an LDAP user store for provisioning.

Several attributes are managed internally by PingFederate and do not require mapping:
  • objectClass
  • unicodePwd
  • objectGUID
  • userAccountControl

You can override the internal management of objectClass and unicodePwd by selecting these attributes and mapping them to SCIM attributes on the Attribute Fulfillment screen. In this case, the values you supply are used. The objectGUID and userAccountControl attributes cannot be overridden and are ignored if selected.

  1. Select a root object class and an attribute from the lists, then click Add Attribute.

    Do not add cn as one of the attributes.

    Do not add CN as one of the attributes
  2. Repeat the previous step for each attribute requiring provisioning.