I am creating a new ActiveDirectory (v5) driver for IDM 3.6 with
Designer 3.0.1.

The "match users based on NT logon name" rule matches the
"DirXML-ADAliasName" attribute to a sAMAccountName style value. But the
Schema Mapping maps DirXML-ADAliasName to the userPrincipalName in AD,
which appears to contain a user@long.nt.domain type value.

My driver never matches any of my users because of this. Seems like a

Would I be better off matching on CN (which gets mapped to
sAMAccountName), or adding the @long.nt.domain onto the end of the



