A list of user well-known attributes follows:
Contains the list of groups for which the user is an administrator.
This well-known attribute may improve search performance at sites with many groups. If the %ADMIN_OF% well-known attribute is specified, CA IdentityMinder looks for the user managed groups in the %ADMIN_OF% attribute, instead of checking every group in the user store.
Contains the list of administrator’s admin roles.
The physical attribute which is mapped to %ADMIN_ROLE_CONSTRAINT% must be multivalued to accommodate multiple roles.
We recommend indexing the attribute that is mapped to %ADMIN_ROLE_CONSTRAINT%.
(Required for using the user certification feature)
Contains the certification status of a user.
Note: For more information about user certification, see the Administration Guide.
Maps to a list of users who have delegated work items to the current user.
This attribute is required to use delegation. The physical attribute that mapped to %DELEGATORS% must be multivalued and capable of holding strings.
Important! Editing this field directly using CA IdentityMinder tasks or an external tool can cause significant security implications.
(Required for enabling the email notification feature)
Stores email address of a user.
(Required)
Tracks the status of a user.
Note: The data type of the physical attribute which is mapped to %ENABLED_STATE% must be String.
Contains first name of a user.
(Required)
Contains first and last name of a user.
Contains the list of identity policies that have been applied to a user account.
CA IdentityMinder uses this attribute to determine whether an identity policy must be applied to a user. If the policy has the Apply Once setting enabled and the policy is listed in the %IDENTITY_POLICY% attribute, CA IdentityMinder does not apply the changes in the policy to the user.
Note: For more information about identity policies, see the Administration Guide.
(Required for using the user certification feature)
Contains the date when the role of a user were certified.
Note: For more information about user certification, see the Administration Guide.
Contains last name of a user.
(Required when organizations are supported)
Contains the unique identifier for the organization to which the user belongs.
(Required when organizations are supported)
Contains the user-friendly name of the organization to which the user belongs.
Contains a user’s password.
(Required for password policy support)
Specifies the attribute that tracks password policy information.
(Required)
Contains user-specified question and answer pairs. The question and answer pairs are used in case of forgotten passwords.
(Required)
Stores a user’s login ID.
| Copyright © 2012 CA. All rights reserved. | Tell Technical Publications how we can improve this information |