Schema extensions and custom attributes

Use the interface and tools that are provided by IBM® Security Privileged Identity Manager to extend the IBM Security Privileged Identity Manager user schema and add the custom attributes.

For more information about adding new attributes to the IBM Security Privileged Identity Manager User schema, see the IBM Security Privileged Identity Manager documentation.

The IBM Security Privileged Identity Manager adapter supports the following types of custom attributes:
  • Boolean
  • Integer
  • Case-sensitive string
  • Not case-sensitive string
  • Coordinated Universal Time (UTC) coded time

Prefix the attribute names with erPIM to easily identify the attributes that are used with IBM Security Identity Governance and Intelligence.

Note:
  • If Security Directory Server is being used as the directory server application, the name of the attribute must be unique within the first 16 characters.
  • The IBM Security Privileged Identity Manager adapter supports a multi-line value for custom attributes with string syntax.
  • The custom attributes are supported for User account class only.