Identity
Cloud Identity Engine Attributes (Azure)
Table of Contents
Expand All
|
Collapse All
Identity Docs
Cloud Identity Engine Attributes (Azure)
Learn about Entra-ID / Azure attributes.
You can collect the following types of default attributes and their associated Active
Directory fields:
User Attributes
| Directory Sync Attribute | Directory Field |
|---|---|
| BusinessPhones | businessPhones |
| CompanyName | companyName |
| Country | country |
| Department | department |
| EmployeeId | employeeId |
| FaxNumber | faxNumber |
| Given Name | givenName |
| Groups | memberOf |
| IsResourceAccount | isResourceAccount |
| LastPasswordChangeDateTime | lastPasswordChangeDateTime |
| Location | officeLocation |
| Mail If
you do not configure a value for the Mail
attribute, the Cloud Identity Engine uses the value of the
User Principal Name. | |
| Manager | manager |
| MobilePhone | mobilePhone |
| Name | displayName |
| OnPremisesDistinguishedName | onPremisesDistinguishedName |
| OnPremisesDomainName | onPremisesDomainName |
| OnPremisesExtensionAttributes | onPremisesExtensionAttributes |
| OnPremisesImmutableId | onPremisesImmutableId |
| OnPremisesLastSyncDataTime | onPremisesLastSyncDateTime |
| OnPremisesProvisioningErrors | onPremisesProvisioningErrors |
| OnPremisesSamAccountName | onPremisesSamAccountName |
| OnPremisesSyncEnabled | onPremisesSyncEnabled |
| OtherMails | otherMails |
| PasswordPolicies | passwordPolicies |
| PasswordProfile | passwordProfile |
| PostalCode | postalCode |
| PreferredLanguage | preferredLanguage |
| SignInSessionsValidFromDateTime | signInSessionsValidFromDateTime |
| State | state |
| StreetAddress | streetAddress |
| Sur Name | surname |
| Title | jobTitle |
| Unique Identifier | objectGUID |
| UsageLocation | usageLocation |
| User Principal Name | userPrincipalName |
| UserAccountControl | accountEnabled |
| UserType | userType |
| createdDateTime | createdDateTime |
| onPremisesSecurityIdentifier | onPremisesSecurityIdentifier |
| onPremisesUserPrincipalName | onPremisesUserPrincipalName |
Role Assignments Attributes
The Cloud Identity Engine only collects these attributes if
you select the Collect Roles and Administrators (Administrative
roles) option when you set up your Azure directory.
| Directory Sync Attribute | Directory Field |
|---|---|
| Description | description |
| Is Builtin | isBuiltIn |
| Is Enabled | isEnabled |
| Name | displayName |
| Role Permissions | rolePermissions |
| Template Id | templateId |
| Unique Identifier | objectGUID |
Group Attributes
| Directory Sync Attribute | Directory Field |
|---|---|
| Classification | classification |
| DeletedDateTime | deletedDateTime |
| Description | description |
| Group Type | groupTypes |
| Groups | memberOf |
| Mail Nick Name | mailNickname |
| MailEnabled | mailEnabled |
| Member | member |
| Name | displayName |
| OnPremisesDomainName | onPremisesDomainName |
| OnPremisesLastSyncDateTime | onPremisesLastSyncDateTime |
| OnPremisesProvisioningErrors | onPremisesProvisioningErrors |
| OnPremisesSecurityIdentifier | onPremisesSecurityIdentifier |
| OnPremisesSyncEnabled | onPremisesSyncEnabled |
| RenewedDateTime | renewedDateTime |
| SAM Account Name | onPremisesSamAccountName |
| SID | securityIdentifier |
| SecurityEnabled | securityEnabled |
| Unique Identifier | objectGUID |
| Visibility | visibility |
| createdDateTime | createdDateTime |
Computer Attributes
| Directory Sync Attribute | Directory Field |
|---|---|
| ComplianceExpirationDateTime | complianceExpirationDateTime |
| Device ID | deviceId |
| Groups | memberOf |
| IsCompliant | isCompliant |
| IsManaged | isManaged |
| LastLogonTime | approximateLastSignInDateTime |
| Manufacturer | manufacturer |
| MdmAppId | mdmAppId |
| Model | model |
| Name | displayName |
| OS | operatingSystem |
| OSVersion | operatingSystemVersion |
| ProfileType | profileType |
| Serial Number | deviceId |
| SystemLabels | systemLabels |
| TrustType | trustType |
| Unique Identifier | objectGUID |
| UserAccountControl | accountEnabled |
| createdDateTime | createdDateTime |
Application Attributes
| Directory Sync Attribute | Directory Field |
|---|---|
| App Id | appId |
| App Roles | appRoles |
| Application TemplateId | applicationTemplateId |
| Description | description |
| DisabledByMicrosoftStatus | disabledByMicrosoftStatus |
| Identifier Uris | identifierUris |
| Name | displayName |
| Unique Identifier | objectGUID |
| createdDateTime | createdDateTime |
| web | web |