Configuring ID mappings in Active Directory Users and Computers for Windows Server 2016 (and subsequent) versions

You can configure ID mappings in Active Directory Users and Computers (ADUC) for Windows Server 2016 (and subsequent) versions. You can also compare how IDMU attributes map to RFC 2307 attributes.

To configure ID mappings in Active Directory Users and Computers (ADUC) for Windows Server 2016 (and subsequent) versions, perform the following steps:
  1. On the domain controller, click Administrative Tools and launch Active Directory Users and Computers (ADUC).
    Figure 1. Opening the Active Directory Users and Computers directory
    This figure displays the Active Directory Users and Computers directory.
  2. Enable Advanced Features from the View menu.
    Figure 2. Enabling Advanced Features
    This figure enables Advanced Features.
  3. Go to the specific user object under Users.
    Figure 3. Accessing the user object in the Users directory
    This figure displays the user object in the Users directory.
  4. Right-click on User object to open the Properties menu, and then go to the Attribute Editor tab.
    Figure 4. Displaying the user object properties
    This figure displays the user object properties.
  5. For Users, specify uidNumber. For Groups, specify gidNumber.
    For information on how user information for Microsoft Identity Management for UNIX (IDMU) component Unix attributes map to RFC 2307 attributes, use this table:
    Table 1. User identification attributes
    Field on IMU Unix Attributes tab RFC2307 AD attribute
    UID uidNumber
    Logon Shell loginShell
    Home Directory unixHomeDirectory
    Primary group name or group identifier (GID) primaryGroupID
    For information on how groups information for Microsoft Identity Management for UNIX (IDMU) component Unix attributes map to RFC 2307 attributes, use this table:
    Table 2. Group identification attribute
    Field on IMU "Unix Attributes" tab RFC2307 AD attribute
    Group identifier (GID) gidNumber