User Data Stores Reference
Generic LDAPv3
- LDAPv3 Repository Plug-in Class Name
-
ssoadmattribute:sunIdRepoClass - Attribute Name Mapping
-
ssoadmattribute:sunIdRepoAttributeMapping - LDAPv3 Plug-in Supported Types and Operations
-
ssoadmattribute:sunIdRepoSupportedOperations - LDAP Server
-
Format: LDAP server host name:port | server_ID | site_ID
ssoadmattribute:sun-idrepo-ldapv3-config-ldap-server - LDAP Bind DN
-
A user or admin with sufficient access rights to perform the supported operations.
ssoadmattribute:sun-idrepo-ldapv3-config-authid - LDAP Bind Password
-
ssoadmattribute:sun-idrepo-ldapv3-config-authpw - LDAP Connection Heartbeat Interval
-
Specifies how often should OpenAM send a heartbeat request to the directory.
This setting controls how often OpenAM should send a heartbeat search request to the configured directory. If a connection becomes unresponsive (e.g. due to a network error) then it may take up to the interval period before the problem is detected. Use along with the Heartbeat Time Unit parameter to define the exact interval. Zero or negative value will result in disabling heartbeat requests.
ssoadmattribute:openam-idrepo-ldapv3-heartbeat-interval - LDAP Connection Heartbeat Time Unit
-
Defines the time unit corresponding to the Heartbeat Interval setting.
This setting controls how often OpenAM should send a heartbeat search request to the configured directory. If a connection becomes unresponsive (e.g. due to a network error) then it may take up to the interval period before the problem is detected. Use along with the Heartbeat Interval parameter to define the exact interval.
ssoadmattribute:openam-idrepo-ldapv3-heartbeat-timeunit - LDAP Organization DN
-
ssoadmattribute:sun-idrepo-ldapv3-config-organization_name - LDAP Connection Mode
-
Defines which protocol/operation is used to establish the connection to the LDAP Directory Server.
If 'LDAP' is selected, the connection won’t be secured and passwords are transferred in cleartext over the network.
If 'LDAPS' is selected, the connection is secured via SSL or TLS.
If 'StartTLS' is selected, the connection is secured by using StartTLS extended operation.
ssoadmattribute:sun-idrepo-ldapv3-config-connection-mode - LDAPS Server Protocol Version
-
Defines which protocol version is used to establish the secure connection to the LDAP Directory Server.
ssoadmattribute:openam-idrepo-ldapv3-config-secure-protocol-version - LDAP Connection Pool Maximum Size
-
ssoadmattribute:sun-idrepo-ldapv3-config-connection_pool_max_size - Maximum Results Returned from Search
-
ssoadmattribute:sun-idrepo-ldapv3-config-max-result - Search Timeout
-
In seconds.
ssoadmattribute:sun-idrepo-ldapv3-config-time-limit - LDAPv3 Plug-in Search Scope
-
ssoadmattribute:sun-idrepo-ldapv3-config-search-scope - LDAP Users Search Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-users-search-attribute - LDAP Users Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-users-search-filter - LDAP User Object Class
-
ssoadmattribute:sun-idrepo-ldapv3-config-user-objectclass - LDAP User Attributes
-
ssoadmattribute:sun-idrepo-ldapv3-config-user-attributes - Create User Attribute Mapping
-
Format: attribute name or TargetAttributeName=SourceAttributeName
ssoadmattribute:sun-idrepo-ldapv3-config-createuser-attr-mapping - Attribute Name of User Status
-
ssoadmattribute:sun-idrepo-ldapv3-config-isactive - User Status Active Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-active - User Status Inactive Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-inactive - LDAP Groups Search Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-groups-search-attribute - LDAP Groups Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-groups-search-filter - LDAP Groups Container Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-container-name - LDAP Groups Container Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-container-value - LDAP Groups Object Class
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-objectclass - LDAP Groups Attributes
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-attributes - Attribute Name for Group Membership
-
ssoadmattribute:sun-idrepo-ldapv3-config-memberof - Attribute Name of Unique Member
-
ssoadmattribute:sun-idrepo-ldapv3-config-uniquemember - Attribute Name of Group Member URL
-
ssoadmattribute:sun-idrepo-ldapv3-config-memberurl - Default Group Member’s User DN
-
User automatically added when group is created.
ssoadmattribute:sun-idrepo-ldapv3-config-dftgroupmember - LDAP People Container Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-people-container-name - LDAP People Container Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-people-container-value - Authentication Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-naming-attr - Persistent Search Base DN
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearchbase - Persistent Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearch-filter - Persistent Search Scope
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearch-scope - The Delay Time Between Retries
-
In milliseconds.
ssoadmattribute:com.iplanet.am.ldap.connection.delay.between.retries - DN Cache
-
Used to enable/disable the DN Cache within the OpenAM repository implementation.
The DN Cache is used to cache DN lookups which tend to happen in bursts during authentication. The DN Cache can become out of date when a user is moved or renamed in the underlying LDAP store and this is not reflected in a persistent search result. Enable when the underlying LDAP store supports persistent search and move/rename (mod_dn) results are available.
ssoadmattribute:sun-idrepo-ldapv3-dncache-enabled - DN Cache Size
-
In DN items, only used when DN Cache is enabled.
ssoadmattribute:sun-idrepo-ldapv3-dncache-size
Sun DS with OpenAM schema
- LDAPv3 Repository Plug-in Class Name
-
ssoadmattribute:sunIdRepoClass - Attribute Name Mapping
-
ssoadmattribute:sunIdRepoAttributeMapping - LDAPv3 Plug-in Supported Types and Operations
-
ssoadmattribute:sunIdRepoSupportedOperations - LDAP Server
-
Format: LDAP server host name:port | server_ID | site_ID
ssoadmattribute:sun-idrepo-ldapv3-config-ldap-server - LDAP Bind DN
-
A user or admin with sufficient access rights to perform the supported operations.
ssoadmattribute:sun-idrepo-ldapv3-config-authid - LDAP Bind Password
-
ssoadmattribute:sun-idrepo-ldapv3-config-authpw - LDAP Connection Heartbeat Interval
-
Specifies how often should OpenAM send a heartbeat request to the directory.
This setting controls how often OpenAM should send a heartbeat search request to the configured directory. If a connection becomes unresponsive (e.g. due to a network error) then it may take up to the interval period before the problem is detected. Use along with the Heartbeat Time Unit parameter to define the exact interval. Zero or negative value will result in disabling heartbeat requests.
ssoadmattribute:openam-idrepo-ldapv3-heartbeat-interval - LDAP Connection Heartbeat Time Unit
-
Defines the time unit corresponding to the Heartbeat Interval setting.
This setting controls how often OpenAM should send a heartbeat search request to the configured directory. If a connection becomes unresponsive (e.g. due to a network error) then it may take up to the interval period before the problem is detected. Use along with the Heartbeat Interval parameter to define the exact interval.
ssoadmattribute:openam-idrepo-ldapv3-heartbeat-timeunit - LDAP Organization DN
-
ssoadmattribute:sun-idrepo-ldapv3-config-organization_name - LDAP Connection Mode
-
Defines which protocol/operation is used to establish the connection to the LDAP Directory Server.
If 'LDAP' is selected, the connection won’t be secured and passwords are transferred in cleartext over the network.
If 'LDAPS' is selected, the connection is secured via SSL or TLS.
If 'StartTLS' is selected, the connection is secured by using StartTLS extended operation.
ssoadmattribute:sun-idrepo-ldapv3-config-connection-mode - LDAPS Server Protocol Version
-
Defines which protocol version is used to establish the secure connection to the LDAP Directory Server.
ssoadmattribute:openam-idrepo-ldapv3-config-secure-protocol-version - LDAP Connection Pool Maximum Size
-
ssoadmattribute:sun-idrepo-ldapv3-config-connection_pool_max_size - Maximum Results Returned from Search
-
ssoadmattribute:sun-idrepo-ldapv3-config-max-result - Search Timeout
-
In seconds.
ssoadmattribute:sun-idrepo-ldapv3-config-time-limit - LDAPv3 Plug-in Search Scope
-
ssoadmattribute:sun-idrepo-ldapv3-config-search-scope - LDAP Users Search Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-users-search-attribute - LDAP Users Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-users-search-filter - LDAP User Object Class
-
ssoadmattribute:sun-idrepo-ldapv3-config-user-objectclass - LDAP User Attributes
-
ssoadmattribute:sun-idrepo-ldapv3-config-user-attributes - Create User Attribute Mapping
-
Format: attribute name or TargetAttributeName=SourceAttributeName
ssoadmattribute:sun-idrepo-ldapv3-config-createuser-attr-mapping - Attribute Name of User Status
-
ssoadmattribute:sun-idrepo-ldapv3-config-isactive - User Status Active Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-active - User Status Inactive Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-inactive - LDAP Groups Search Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-groups-search-attribute - LDAP Groups Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-groups-search-filter - LDAP Groups Container Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-container-name - LDAP Groups Container Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-container-value - LDAP Groups Object Class
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-objectclass - LDAP Groups Attributes
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-attributes - Attribute Name for Group Membership
-
ssoadmattribute:sun-idrepo-ldapv3-config-memberof - Attribute Name of Unique Member
-
ssoadmattribute:sun-idrepo-ldapv3-config-uniquemember - Attribute Name of Group Member URL
-
ssoadmattribute:sun-idrepo-ldapv3-config-memberurl - LDAP Roles Search Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-roles-search-attribute - LDAP Roles Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-roles-search-filter - LDAP Roles Object Class
-
ssoadmattribute:sun-idrepo-ldapv3-config-role-objectclass - LDAP Roles Attributes
-
ssoadmattribute:sun-idrepo-ldapv3-config-role-attributes - LDAP Filter Roles Search Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-filterroles-search-attribute - LDAP Filter Roles Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-filterroles-search-filter - LDAP Filter Roles Object Class
-
ssoadmattribute:sun-idrepo-ldapv3-config-filterrole-objectclass - LDAP Filter Roles Attributes
-
ssoadmattribute:sun-idrepo-ldapv3-config-filterrole-attributes - Attribute Name for Filtered Role Membership
-
ssoadmattribute:sun-idrepo-ldapv3-config-nsrole - Attribute Name of Role Membership.
-
ssoadmattribute:sun-idrepo-ldapv3-config-nsroledn - Attribute Name of Filtered Role Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-nsrolefilter - LDAP People Container Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-people-container-name - LDAP People Container Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-people-container-value - Authentication Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-naming-attr - Knowledge Based Authentication Attribute Name
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-kba-attr - Knowledge Based Authentication Active Index
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-kba-index-attr - Persistent Search Base DN
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearchbase - Persistent Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearch-filter - Persistent Search Scope
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearch-scope - The Delay Time Between Retries
-
In milliseconds.
ssoadmattribute:com.iplanet.am.ldap.connection.delay.between.retries - DN Cache
-
Used to enable/disable the DN Cache within the OpenAM repository implementation.
The DN Cache is used to cache DN lookups which tend to happen in bursts during authentication. The DN Cache can become out of date when a user is moved or renamed in the underlying LDAP store and this is not reflected in a persistent search result. Enable when the underlying LDAP store supports persistent search and move/rename (mod_dn) results are available.
ssoadmattribute:sun-idrepo-ldapv3-dncache-enabled - DN Cache Size
-
In DN items, only used when DN Cache is enabled.
ssoadmattribute:sun-idrepo-ldapv3-dncache-size
OpenDJ
- LDAPv3 Repository Plug-in Class Name
-
ssoadmattribute:sunIdRepoClass - Attribute Name Mapping
-
ssoadmattribute:sunIdRepoAttributeMapping - LDAPv3 Plug-in Supported Types and Operations
-
ssoadmattribute:sunIdRepoSupportedOperations - LDAP Server
-
Format: LDAP server host name:port | server_ID | site_ID
ssoadmattribute:sun-idrepo-ldapv3-config-ldap-server - LDAP Bind DN
-
A user or admin with sufficient access rights to perform the supported operations.
ssoadmattribute:sun-idrepo-ldapv3-config-authid - LDAP Bind Password
-
ssoadmattribute:sun-idrepo-ldapv3-config-authpw - LDAP Connection Heartbeat Interval
-
Specifies how often should OpenAM send a heartbeat request to the directory.
This setting controls how often OpenAM should send a heartbeat search request to the configured directory. If a connection becomes unresponsive (e.g. due to a network error) then it may take up to the interval period before the problem is detected. Use along with the Heartbeat Time Unit parameter to define the exact interval. Zero or negative value will result in disabling heartbeat requests.
ssoadmattribute:openam-idrepo-ldapv3-heartbeat-interval - LDAP Connection Heartbeat Time Unit
-
Defines the time unit corresponding to the Heartbeat Interval setting.
This setting controls how often OpenAM should send a heartbeat search request to the configured directory. If a connection becomes unresponsive (e.g. due to a network error) then it may take up to the interval period before the problem is detected. Use along with the Heartbeat Interval parameter to define the exact interval.
ssoadmattribute:openam-idrepo-ldapv3-heartbeat-timeunit - LDAP Organization DN
-
ssoadmattribute:sun-idrepo-ldapv3-config-organization_name - LDAP Connection Mode
-
Defines which protocol/operation is used to establish the connection to the LDAP Directory Server.
If 'LDAP' is selected, the connection won’t be secured and passwords are transferred in cleartext over the network.
If 'LDAPS' is selected, the connection is secured via SSL or TLS.
If 'StartTLS' is selected, the connection is secured by using StartTLS extended operation.
ssoadmattribute:sun-idrepo-ldapv3-config-connection-mode - LDAPS Server Protocol Version
-
Defines which protocol version is used to establish the secure connection to the LDAP Directory Server.
ssoadmattribute:openam-idrepo-ldapv3-config-secure-protocol-version - LDAP Connection Pool Maximum Size
-
ssoadmattribute:sun-idrepo-ldapv3-config-connection_pool_max_size - Maximum Results Returned from Search
-
ssoadmattribute:sun-idrepo-ldapv3-config-max-result - Search Timeout
-
In seconds.
ssoadmattribute:sun-idrepo-ldapv3-config-time-limit - LDAPv3 Plug-in Search Scope
-
ssoadmattribute:sun-idrepo-ldapv3-config-search-scope - LDAP Users Search Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-users-search-attribute - LDAP Users Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-users-search-filter - LDAP User Object Class
-
ssoadmattribute:sun-idrepo-ldapv3-config-user-objectclass - LDAP User Attributes
-
ssoadmattribute:sun-idrepo-ldapv3-config-user-attributes - Create User Attribute Mapping
-
Format: attribute name or TargetAttributeName=SourceAttributeName
ssoadmattribute:sun-idrepo-ldapv3-config-createuser-attr-mapping - Attribute Name of User Status
-
ssoadmattribute:sun-idrepo-ldapv3-config-isactive - User Status Active Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-active - User Status Inactive Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-inactive - LDAP Groups Search Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-groups-search-attribute - LDAP Groups Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-groups-search-filter - LDAP Groups Container Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-container-name - LDAP Groups Container Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-container-value - LDAP Groups Object Class
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-objectclass - LDAP Groups Attributes
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-attributes - Attribute Name for Group Membership
-
ssoadmattribute:sun-idrepo-ldapv3-config-memberof - Attribute Name of Unique Member
-
ssoadmattribute:sun-idrepo-ldapv3-config-uniquemember - Attribute Name of Group Member URL
-
ssoadmattribute:sun-idrepo-ldapv3-config-memberurl - LDAP People Container Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-people-container-name - LDAP People Container Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-people-container-value - Authentication Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-naming-attr - Knowledge Based Authentication Attribute Name
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-kba-attr - Knowledge Based Authentication Active Index
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-kba-index-attr - Persistent Search Base DN
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearchbase - Persistent Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearch-filter - Persistent Search Scope
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearch-scope - The Delay Time Between Retries
-
In milliseconds.
ssoadmattribute:com.iplanet.am.ldap.connection.delay.between.retries - DN Cache
-
Used to enable/disable the DN Cache within the OpenAM repository implementation.
The DN Cache is used to cache DN lookups which tend to happen in bursts during authentication. The DN Cache can become out of date when a user is moved or renamed in the underlying LDAP store and this is not reflected in a persistent search result. Enable when the underlying LDAP store supports persistent search and move/rename (mod_dn) results are available.
ssoadmattribute:sun-idrepo-ldapv3-dncache-enabled - DN Cache Size
-
In DN items, only used when DN Cache is enabled.
ssoadmattribute:sun-idrepo-ldapv3-dncache-size
Tivoli Directory Server
- LDAPv3 Repository Plug-in Class Name
-
ssoadmattribute:sunIdRepoClass - Attribute Name Mapping
-
ssoadmattribute:sunIdRepoAttributeMapping - LDAPv3 Plug-in Supported Types and Operations
-
ssoadmattribute:sunIdRepoSupportedOperations - LDAP Server
-
Format: LDAP server host name:port | server_ID | site_ID
ssoadmattribute:sun-idrepo-ldapv3-config-ldap-server - LDAP Bind DN
-
A user or admin with sufficient access rights to perform the supported operations.
ssoadmattribute:sun-idrepo-ldapv3-config-authid - LDAP Bind Password
-
ssoadmattribute:sun-idrepo-ldapv3-config-authpw - LDAP Connection Heartbeat Interval
-
Specifies how often should OpenAM send a heartbeat request to the directory.
This setting controls how often OpenAM should send a heartbeat search request to the configured directory. If a connection becomes unresponsive (e.g. due to a network error) then it may take up to the interval period before the problem is detected. Use along with the Heartbeat Time Unit parameter to define the exact interval. Zero or negative value will result in disabling heartbeat requests.
ssoadmattribute:openam-idrepo-ldapv3-heartbeat-interval - LDAP Connection Heartbeat Time Unit
-
Defines the time unit corresponding to the Heartbeat Interval setting.
This setting controls how often OpenAM should send a heartbeat search request to the configured directory. If a connection becomes unresponsive (e.g. due to a network error) then it may take up to the interval period before the problem is detected. Use along with the Heartbeat Interval parameter to define the exact interval.
ssoadmattribute:openam-idrepo-ldapv3-heartbeat-timeunit - LDAP Organization DN
-
ssoadmattribute:sun-idrepo-ldapv3-config-organization_name - LDAP Connection Mode
-
Defines which protocol/operation is used to establish the connection to the LDAP Directory Server.
If 'LDAP' is selected, the connection won’t be secured and passwords are transferred in cleartext over the network.
If 'LDAPS' is selected, the connection is secured via SSL or TLS.
If 'StartTLS' is selected, the connection is secured by using StartTLS extended operation.
ssoadmattribute:sun-idrepo-ldapv3-config-connection-mode - LDAPS Server Protocol Version
-
Defines which protocol version is used to establish the secure connection to the LDAP Directory Server.
ssoadmattribute:openam-idrepo-ldapv3-config-secure-protocol-version - LDAP Connection Pool Maximum Size
-
ssoadmattribute:sun-idrepo-ldapv3-config-connection_pool_max_size - Maximum Results Returned from Search
-
ssoadmattribute:sun-idrepo-ldapv3-config-max-result - Search Timeout
-
In seconds.
ssoadmattribute:sun-idrepo-ldapv3-config-time-limit - LDAPv3 Plug-in Search Scope
-
ssoadmattribute:sun-idrepo-ldapv3-config-search-scope - LDAP Users Search Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-users-search-attribute - LDAP Users Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-users-search-filter - LDAP User Object Class
-
ssoadmattribute:sun-idrepo-ldapv3-config-user-objectclass - LDAP User Attributes
-
ssoadmattribute:sun-idrepo-ldapv3-config-user-attributes - Create User Attribute Mapping
-
Format: attribute name or TargetAttributeName=SourceAttributeName
ssoadmattribute:sun-idrepo-ldapv3-config-createuser-attr-mapping - Attribute Name of User Status
-
ssoadmattribute:sun-idrepo-ldapv3-config-isactive - User Status Active Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-active - User Status Inactive Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-inactive - LDAP Groups Search Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-groups-search-attribute - LDAP Groups Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-groups-search-filter - LDAP Groups Container Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-container-name - LDAP Groups Container Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-container-value - LDAP Groups Object Class
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-objectclass - LDAP Groups Attributes
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-attributes - Attribute Name for Group Membership
-
ssoadmattribute:sun-idrepo-ldapv3-config-memberof - Attribute Name of Unique Member
-
ssoadmattribute:sun-idrepo-ldapv3-config-uniquemember - Default Group Member’s User DN
-
User automatically added when group is created.
ssoadmattribute:sun-idrepo-ldapv3-config-dftgroupmember - LDAP People Container Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-people-container-name - LDAP People Container Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-people-container-value - Authentication Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-naming-attr - Knowledge Based Authentication Attribute Name
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-kba-attr - Knowledge Based Authentication Active Index
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-kba-index-attr - Persistent Search Base DN
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearchbase - Persistent Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearch-filter - Persistent Search Scope
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearch-scope - The Delay Time Between Retries
-
In milliseconds.
ssoadmattribute:com.iplanet.am.ldap.connection.delay.between.retries - DN Cache
-
Used to enable/disable the DN Cache within the OpenAM repository implementation.
The DN Cache is used to cache DN lookups which tend to happen in bursts during authentication. The DN Cache can become out of date when a user is moved or renamed in the underlying LDAP store and this is not reflected in a persistent search result. Enable when the underlying LDAP store supports persistent search and move/rename (mod_dn) results are available.
ssoadmattribute:sun-idrepo-ldapv3-dncache-enabled - DN Cache Size
-
In DN items, only used when DN Cache is enabled.
ssoadmattribute:sun-idrepo-ldapv3-dncache-size
Active Directory
- LDAPv3 Repository Plug-in Class Name
-
ssoadmattribute:sunIdRepoClass - Attribute Name Mapping
-
ssoadmattribute:sunIdRepoAttributeMapping - LDAPv3 Plug-in Supported Types and Operations
-
ssoadmattribute:sunIdRepoSupportedOperations - LDAP Server
-
Format: LDAP server host name:port | server_ID | site_ID
ssoadmattribute:sun-idrepo-ldapv3-config-ldap-server - LDAP Bind DN
-
A user or admin with sufficient access rights to perform the supported operations.
ssoadmattribute:sun-idrepo-ldapv3-config-authid - LDAP Bind Password
-
ssoadmattribute:sun-idrepo-ldapv3-config-authpw - LDAP Connection Heartbeat Interval
-
Specifies how often should OpenAM send a heartbeat request to the directory.
This setting controls how often OpenAM should send a heartbeat search request to the configured directory. If a connection becomes unresponsive (e.g. due to a network error) then it may take up to the interval period before the problem is detected. Use along with the Heartbeat Time Unit parameter to define the exact interval. Zero or negative value will result in disabling heartbeat requests.
ssoadmattribute:openam-idrepo-ldapv3-heartbeat-interval - LDAP Connection Heartbeat Time Unit
-
Defines the time unit corresponding to the Heartbeat Interval setting.
This setting controls how often OpenAM should send a heartbeat search request to the configured directory. If a connection becomes unresponsive (e.g. due to a network error) then it may take up to the interval period before the problem is detected. Use along with the Heartbeat Interval parameter to define the exact interval.
ssoadmattribute:openam-idrepo-ldapv3-heartbeat-timeunit - LDAP Organization DN
-
ssoadmattribute:sun-idrepo-ldapv3-config-organization_name - LDAP Connection Mode
-
Defines which protocol/operation is used to establish the connection to the LDAP Directory Server.
If 'LDAP' is selected, the connection won’t be secured and passwords are transferred in cleartext over the network.
If 'LDAPS' is selected, the connection is secured via SSL or TLS.
If 'StartTLS' is selected, the connection is secured by using StartTLS extended operation.
ssoadmattribute:sun-idrepo-ldapv3-config-connection-mode - LDAPS Server Protocol Version
-
Defines which protocol version is used to establish the secure connection to the LDAP Directory Server.
ssoadmattribute:openam-idrepo-ldapv3-config-secure-protocol-version - LDAP Connection Pool Maximum Size
-
ssoadmattribute:sun-idrepo-ldapv3-config-connection_pool_max_size - Maximum Results Returned from Search
-
ssoadmattribute:sun-idrepo-ldapv3-config-max-result - Search Timeout
-
In seconds.
ssoadmattribute:sun-idrepo-ldapv3-config-time-limit - LDAPv3 Plug-in Search Scope
-
ssoadmattribute:sun-idrepo-ldapv3-config-search-scope - LDAP Users Search Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-users-search-attribute - LDAP Users Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-users-search-filter - LDAP User Object Class
-
ssoadmattribute:sun-idrepo-ldapv3-config-user-objectclass - LDAP User Attributes
-
ssoadmattribute:sun-idrepo-ldapv3-config-user-attributes - Create User Attribute Mapping
-
Format: attribute name or TargetAttributeName=SourceAttributeName
ssoadmattribute:sun-idrepo-ldapv3-config-createuser-attr-mapping - Attribute Name of User Status
-
ssoadmattribute:sun-idrepo-ldapv3-config-isactive - User Status Active Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-active - User Status Inactive Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-inactive - LDAP Groups Search Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-groups-search-attribute - LDAP Groups Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-groups-search-filter - LDAP Groups Container Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-container-name - LDAP Groups Container Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-container-value - LDAP Groups Object Class
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-objectclass - LDAP Groups Attributes
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-attributes - Attribute Name for Group Membership
-
ssoadmattribute:sun-idrepo-ldapv3-config-memberof - Attribute Name of Unique Member
-
ssoadmattribute:sun-idrepo-ldapv3-config-uniquemember - LDAP People Container Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-people-container-name - LDAP People Container Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-people-container-value - Authentication Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-naming-attr - Knowledge Based Authentication Attribute Name
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-kba-attr - Knowledge Based Authentication Active Index
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-kba-index-attr - Persistent Search Base DN
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearchbase - Persistent Search Scope
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearch-scope - The Delay Time Between Retries
-
In milliseconds.
ssoadmattribute:com.iplanet.am.ldap.connection.delay.between.retries - DN Cache
-
Used to enable/disable the DN Cache within the OpenAM repository implementation.
The DN Cache is used to cache DN lookups which tend to happen in bursts during authentication. The DN Cache can become out of date when a user is moved or renamed in the underlying LDAP store and this is not reflected in a persistent search result. Enable when the underlying LDAP store supports persistent search and move/rename (mod_dn) results are available.
ssoadmattribute:sun-idrepo-ldapv3-dncache-enabled - DN Cache Size
-
In DN items, only used when DN Cache is enabled.
ssoadmattribute:sun-idrepo-ldapv3-dncache-size
Active Directory Application Mode (ADAM)
- LDAPv3 Repository Plug-in Class Name
-
ssoadmattribute:sunIdRepoClass - Attribute Name Mapping
-
ssoadmattribute:sunIdRepoAttributeMapping - LDAPv3 Plug-in Supported Types and Operations
-
ssoadmattribute:sunIdRepoSupportedOperations - LDAP Server
-
Format: LDAP server host name:port | server_ID | site_ID
ssoadmattribute:sun-idrepo-ldapv3-config-ldap-server - LDAP Bind DN
-
A user or admin with sufficient access rights to perform the supported operations.
ssoadmattribute:sun-idrepo-ldapv3-config-authid - LDAP Bind Password
-
ssoadmattribute:sun-idrepo-ldapv3-config-authpw - LDAP Connection Heartbeat Interval
-
Specifies how often should OpenAM send a heartbeat request to the directory.
This setting controls how often OpenAM should send a heartbeat search request to the configured directory. If a connection becomes unresponsive (e.g. due to a network error) then it may take up to the interval period before the problem is detected. Use along with the Heartbeat Time Unit parameter to define the exact interval. Zero or negative value will result in disabling heartbeat requests.
ssoadmattribute:openam-idrepo-ldapv3-heartbeat-interval - LDAP Connection Heartbeat Time Unit
-
Defines the time unit corresponding to the Heartbeat Interval setting.
This setting controls how often OpenAM should send a heartbeat search request to the configured directory. If a connection becomes unresponsive (e.g. due to a network error) then it may take up to the interval period before the problem is detected. Use along with the Heartbeat Interval parameter to define the exact interval.
ssoadmattribute:openam-idrepo-ldapv3-heartbeat-timeunit - LDAP Organization DN
-
ssoadmattribute:sun-idrepo-ldapv3-config-organization_name - LDAP Connection Mode
-
Defines which protocol/operation is used to establish the connection to the LDAP Directory Server.
If 'LDAP' is selected, the connection won’t be secured and passwords are transferred in cleartext over the network.
If 'LDAPS' is selected, the connection is secured via SSL or TLS.
If 'StartTLS' is selected, the connection is secured by using StartTLS extended operation.
ssoadmattribute:sun-idrepo-ldapv3-config-connection-mode - LDAPS Server Protocol Version
-
Defines which protocol version is used to establish the secure connection to the LDAP Directory Server.
ssoadmattribute:openam-idrepo-ldapv3-config-secure-protocol-version - LDAP Connection Pool Maximum Size
-
ssoadmattribute:sun-idrepo-ldapv3-config-connection_pool_max_size - Maximum Results Returned from Search
-
ssoadmattribute:sun-idrepo-ldapv3-config-max-result - Search Timeout
-
In seconds.
ssoadmattribute:sun-idrepo-ldapv3-config-time-limit - LDAPv3 Plug-in Search Scope
-
ssoadmattribute:sun-idrepo-ldapv3-config-search-scope - LDAP Users Search Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-users-search-attribute - LDAP Users Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-users-search-filter - LDAP User Object Class
-
ssoadmattribute:sun-idrepo-ldapv3-config-user-objectclass - LDAP User Attributes
-
ssoadmattribute:sun-idrepo-ldapv3-config-user-attributes - Create User Attribute Mapping
-
Format: attribute name or TargetAttributeName=SourceAttributeName
ssoadmattribute:sun-idrepo-ldapv3-config-createuser-attr-mapping - Attribute Name of User Status
-
ssoadmattribute:sun-idrepo-ldapv3-config-isactive - User Status Active Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-active - User Status Inactive Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-inactive - LDAP Groups Search Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-groups-search-attribute - LDAP Groups Search Filter
-
ssoadmattribute:sun-idrepo-ldapv3-config-groups-search-filter - LDAP Groups Container Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-container-name - LDAP Groups Container Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-container-value - LDAP Groups Object Class
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-objectclass - LDAP Groups Attributes
-
ssoadmattribute:sun-idrepo-ldapv3-config-group-attributes - Attribute Name for Group Membership
-
ssoadmattribute:sun-idrepo-ldapv3-config-memberof - Attribute Name of Unique Member
-
ssoadmattribute:sun-idrepo-ldapv3-config-uniquemember - LDAP People Container Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-people-container-name - LDAP People Container Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-people-container-value - Authentication Naming Attribute
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-naming-attr - Knowledge Based Authentication Attribute Name
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-kba-attr - Knowledge Based Authentication Active Index
-
ssoadmattribute:sun-idrepo-ldapv3-config-auth-kba-index-attr - Persistent Search Base DN
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearchbase - Persistent Search Scope
-
ssoadmattribute:sun-idrepo-ldapv3-config-psearch-scope - The Delay Time Between Retries
-
In milliseconds.
ssoadmattribute:com.iplanet.am.ldap.connection.delay.between.retries - DN Cache
-
Used to enable/disable the DN Cache within the OpenAM repository implementation.
The DN Cache is used to cache DN lookups which tend to happen in bursts during authentication. The DN Cache can become out of date when a user is moved or renamed in the underlying LDAP store and this is not reflected in a persistent search result. Enable when the underlying LDAP store supports persistent search and move/rename (mod_dn) results are available.
ssoadmattribute:sun-idrepo-ldapv3-dncache-enabled - DN Cache Size
-
In DN items, only used when DN Cache is enabled.
ssoadmattribute:sun-idrepo-ldapv3-dncache-size
files
- Files Repository Plugin Class Name
-
ssoadmattribute:sunIdRepoClass - Files Repository Directory
-
ssoadmattribute:sunFilesIdRepoDirectory - Caching
-
ssoadmattribute:sunFilesMonitorForChanges - Cache Update Interval
-
In minutes.
ssoadmattribute:sunFilesMonitoringTime - User Object Classes
-
ssoadmattribute:sunFilesObjectClasses - Password Attribute
-
ssoadmattribute:sunFilesPasswordAttr - Status Attribute
-
ssoadmattribute:sunFilesStatusAttr - Hashed Attributes
-
ssoadmattribute:sunFilesHashAttrs - Encrypted Attributes
-
ssoadmattribute:sunFilesEncryptAttrs
Database Repository (Early Access)
- Database Repository Plugin Class Name
-
ssoadmattribute:sunIdRepoClass - Attribute Name Mapping
-
ssoadmattribute:sunIdRepoAttributeMapping - Database Plug-in Supported Types and Operations
-
ssoadmattribute:sun-opensso-database-sunIdRepoSupportedOperations - Database Data Access Object Plugin Class Name
-
ssoadmattribute:sun-opensso-database-dao-class-name - Connection Type
-
ssoadmattribute:sun-opensso-database-dao-JDBCConnectionType - Database DataSource Name
-
Name specified when configuring a DataSource in the application server for connections
ssoadmattribute:sun-opensso-database-DataSourceJndiName - JDBC Driver Class Name
-
Class name of JDBC driver to use to get connections. URL, JDBC username and password paramters also needed
ssoadmattribute:sun-opensso-database-JDBCDriver - JDBC Driver URL
-
URL used as parameter by JDBC driver
ssoadmattribute:sun-opensso-database-JDBCUrl - Connect This User to Database
-
Connection user name used as parameter by JDBC driver
ssoadmattribute:sun-opensso-database-JDBCDbuser - Password for Connecting to Database
-
Password used as parameter by JDBC driver
ssoadmattribute:sun-opensso-database-JDBCDbpassword - Database User Table Name
-
ssoadmattribute:sun-opensso-database-UserTableName - List of User Attributes Names in Database
-
ssoadmattribute:sun-opensso-database-UserAttrs - User Password Attribute Name
-
Name of attribute column name in DB table for user password
ssoadmattribute:sun-opensso-database-UserPasswordAttr - User ID Attribute Name
-
Name of attribute column name in DB table for user id
ssoadmattribute:sun-opensso-database-UserIDAttr - Attribute Name of User Status
-
Name of attribute column name in DB table to determine if user is active or inactive
ssoadmattribute:sun-opensso-database-UserStatusAttr - User Status Active Value
-
Value stored in the db table’s user status column to represent an Active user
ssoadmattribute:sun-opensso-database-activeValue - User Status Inactive Value
-
Value stored in the db table’s user status column to represent an Inactive user
ssoadmattribute:sun-opensso-database-inactiveValue - Maximum Results Returned from Search
-
Value to determine the maximum number of search results to fetch
ssoadmattribute:sun-opensso-database-config-max-result - Users Search Attribute in Database
-
Name of attribute column name in DB table for users LIKE search queries
ssoadmattribute:sun-opensso-database-config-users-search-attribute - Database Membership table name
-
ssoadmattribute:sun-opensso-database-MembershipTableName - Membership ID Attribute Name
-
Name of attribute column name in DB membership table to uniquely identify a group
ssoadmattribute:sun-opensso-database-MembershipIDAttr - Membership Search Attribute in Database
-
Name of attribute column name in DB table for membership LIKE search queries
ssoadmattribute:sun-opensso-database-membership-search-attribute
Cassandra
- Database Repository Plugin Class Name
-
ssoadmattribute:sunIdRepoClass - Servers
-
ssoadmattribute:sun-idrepo-ldapv3-config-ldap-server - Keyspace
-
ssoadmattribute:sun-idrepo-ldapv3-config-organization_name - Username
-
ssoadmattribute:sun-idrepo-ldapv3-config-authid - Password
-
ssoadmattribute:sun-idrepo-ldapv3-config-authpw - Operations
-
ssoadmattribute:sunIdRepoSupportedOperations - Tables
-
ssoadmattribute:sunIdRepoAttributeMapping - TTL
-
ssoadmattribute:sun-idrepo-ldapv3-config-user-attributes - Attribute Name of User Status
-
ssoadmattribute:sun-idrepo-ldapv3-config-isactive - User Status Active Value
-
ssoadmattribute:sun-idrepo-ldapv3-config-active - Attribute Name for Group Membership
-
ssoadmattribute:sun-idrepo-ldapv3-config-memberof