Windows Integrated Authentication
If the Server is being installed on premise, as member of an Active Directory domain and that domain is used as default Kerberos realm, it is recommended to set the UUID mapping to objectGUID for users and groups:
Do this only if this is the sole LDAP directory configuration.
This additional mapping instructs Relution to use the Active Directory GUIDs as internal surrogate keys for it’s data structures. In all other cases leave the UUID mapping unset to cause the software to assign unique surrogate keys automatically as needed.
For Active Directory the following attribute mappings are recommended:
First name: givenName
Last name: sn
User locked: userAccountControl