2.237 Attribute securityIdentifier

This attribute specifies a unique value of variable length used to identify a user account, group account, or logon session to which an ACE applies.

 cn: Security-Identifier
 ldapDisplayName: securityIdentifier
 attributeId: 1.2.840.113556.1.4.121
 attributeSyntax: 2.5.5.17
 omSyntax: 4
 isSingleValued: TRUE
 schemaIdGuid: bf967a2f-0de6-11d0-a285-00aa003049e2
 systemOnly: FALSE
 searchFlags: 0
 isMemberOfPartialAttributeSet: TRUE
 systemFlags: FLAG_SCHEMA_BASE_OBJECT
 schemaFlagsEx: FLAG_ATTR_IS_CRITICAL

Version-Specific Behavior: First implemented on Windows 2000 Server operating system.

In Windows 2000 Server, attribute isMemberOfPartialAttributeSet is not defined.

The schemaFlagsEx attribute was added to this attribute definition in Windows Server 2008 operating system.