Contact us
View as Markdown
Ask AI

Open this page in an AI assistant with a ready-made prompt.

Opens a third-party service and shares a pre-filled prompt containing this public page URL, its product documentation URL and /llms.txt. No VirtoSoftware account or tenant data is included. Provider terms and privacy policies apply. Verify answers against the linked documentation.

OpenAI terms · OpenAI privacy policy · Anthropic terms · Anthropic privacy policy

Get user's custom attribute from Active Directory

This activity allows receiving user’s or secure group custom attribute from Active Directory and stores result in variable.

Get user’s custom attribute from Active Directory activity in the SharePoint Workflow Designer

If attribute does not exist, this method returns empty string.

SharePoint Workflow Designer Phrase

Get this user this attribute from this domain and store result in Variable: variable

Parameters

ParameterDescription
this userUser or secure group login name. Ex: “user@domain”, “domain\user” or “user”
this attributeAttribute name
this domainOptional. Domain name. You should enter domain name if user name without adomain, otherwise it will be calculated from the user name.

By default, activity uses the current user when authenticating. If you want to use custom authentication, use “Set Active Directory authentication” activity before. See “LDAP Attribute” table to determine the attribute name.

Table: LDAP Attributes

LDAP AttributeExample
CN - Common NameCN=Guy Thomas. Actually, this LDAP attribute is made up from givenName joined to SN.
descriptionWhat you see in Active Directory Users and Computers. Not to be confused with displayName on the Users property sheet.
displayNamedisplayName = Guy Thomas. If you script this property, be sure you understand which field you are configuring. DisplayName can be confused with CN or description.
DN - also distinguishedNameDN is simply the most important LDAP attribute. CN=Jay Jamieson, OU= Newport,DC=cp,DC=com
givenNameFirstname also called Christian name
homeDriveHome Folder : connect. Tricky to configure
namename = Guy Thomas. Exactly the same as CN.
objectCategoryDefines the Active Directory Schema category. For example,

LDAP attribute names mapped to Active Directory user properties for the custom attribute activity

LDAP AttributeDescription
cCountry or Region
companyCompany or organization name
departmentUseful category to fill in and use for filtering
homephoneHome Phone number, (Lots more phone LDAPs)
l (Lower case L)L = Location. City ( Maybe Office
locationImportant, particularly for printers.
managerBoss, manager
mobileMobile Phone number
ObjectClassUsually, User, or Computer
OUOrganizational unit. See also DN
postalCodeZip or post code
stState, Province or County
streetAddressFirst line of address
telephoneNumberOffice Phone
Updated on August 12, 2026