# LDAP / Active Directory: Additional field mappings

**URL:** https://community.zammad.org/t/ldap-active-directory-additional-field-mappings/3801
**Category:** No implementation planned
**Created:** [January 14, 2020, 8:57am UTC](https://community.zammad.org/t/ldap-active-directory-additional-field-mappings/3801 "2020-01-14T08:57:05Z")
**Posts on this page:** 7
**Page:** 1

<div class="post-metadata">

### Author: ![dxsdata](https://community.zammad.org/user_avatar/community.zammad.org/dxsdata/32/2354_2.png) [@dxsdata](https://community.zammad.org/u/dxsdata)
#### Post date: [January 14, 2020, 8:57am UTC](https://community.zammad.org/t/ldap-active-directory-additional-field-mappings/3801/1 "2020-01-14T08:57:05Z")

</div>

Hi,

it would be great if you could add some more mappings to the LDAP integration tool:

- Organization (in AD: “company”)
- Avatar (in AD: “thumbnailPhoto”)

If this is not planned for the near future, maybe you could give me a hint how and where I could e.g. sync it via a custom PHP script in DB directly etc.  
(Or, as an alternative, e.g. a way to set a custom base URL from where the avatar image is retrieved)

Thank you!

---

<div class="post-metadata">

### Author: ![MrGeneration](https://community.zammad.org/user_avatar/community.zammad.org/mrgeneration/32/9260_2.png) [@MrGeneration](https://community.zammad.org/u/MrGeneration)
#### Post date: [January 14, 2020, 11:09am UTC](https://community.zammad.org/t/ldap-active-directory-additional-field-mappings/3801/2 "2020-01-14T11:09:40Z")

</div>

Thumbnail is, as far as I’m aware, not possible at the moment.  
However, mapping of other active directory fields to zammad user objects is perfectly possible already.

---

<div class="post-metadata">

### Author: ![dxsdata](https://community.zammad.org/user_avatar/community.zammad.org/dxsdata/32/2354_2.png) [@dxsdata](https://community.zammad.org/u/dxsdata)
#### Post date: [January 14, 2020, 8:21pm UTC](https://community.zammad.org/t/ldap-active-directory-additional-field-mappings/3801/3 "2020-01-14T20:21:13Z")

</div>

Regarding the “company” attribute, I am able to select it from the LDAP Attribute column dropdowns, but an organization attribute is not selectable in the Zammad Attribute column (in my version, there are currently 11 Zammad attribute items which can be mapped).

Thumbnail: This is working e.g. with project tools like OpenProject, which seems to be also based on Ruby. Maybe it would be possible just to take the code part from there? I am not a Ruby expert unfortunately…

---

<div class="post-metadata">

### Author: ![MrGeneration](https://community.zammad.org/user_avatar/community.zammad.org/mrgeneration/32/9260_2.png) [@MrGeneration](https://community.zammad.org/u/MrGeneration)
#### Post date: [January 21, 2020, 11:54am UTC](https://community.zammad.org/t/ldap-active-directory-additional-field-mappings/3801/4 "2020-01-21T11:54:41Z")

</div>

Organizations are mapped internally via domain based assesment.  
As it’s a search field (technically when updating the user manually) _and_ the organization has to be present, this is technically not possible during the sync.

Hownever, as you normally map a mail address, this technically is possible if you use domain based assignment\*.

The LDAP-Synch does not create new Organizations for you. Technically this could be an issue if you’d do, because it could conflict with your domain based assignment and also settings might be off (e.g. sharing organization defaults to “yes” which might be a huge issue in that case). You simply have not enough control over automatic creation of organization by ldap which could cause issues.

`*` Please note that domain assignment based on domains is done exactly once during user creation. Zammad then will not automatically assign existing users to newly created organizations.

> [@dxsdata](#):
>
> Thumbnail: This is working e.g. with project tools like OpenProject, which seems to be also based on Ruby. Maybe it would be possible just to take the code part from there? I am not a Ruby expert unfortunately…

When I said it’s not possible, I did not mean technically, but in Zammad scope. 🙂  
We currently are focussing on other issues within Zammad.

Technically the logic behind that is a bit complex, because every ldap sources stores those kind of images differently. However, you can create a feature request for it if not already available.

---

<div class="post-metadata">

### Author: ![Frederik](https://community.zammad.org/letter_avatar_proxy/v4/letter/f/b19c9b/32.png) [@Frederik](https://community.zammad.org/u/Frederik)
#### Post date: [October 30, 2020, 10:17am UTC](https://community.zammad.org/t/ldap-active-directory-additional-field-mappings/3801/5 "2020-10-30T10:17:45Z")

</div>

We would also very much appreciate implementation of the feature to sync LDAP pictures into Zammad 🙂

---

<div class="post-metadata">

### Author: ![system](https://community.zammad.org/uploads/default/original/1X/5c5afaea2d23f811dbec33cd4edb02fa29d3262f.png) [@system](https://community.zammad.org/u/system)
#### Post date: [March 6, 2021, 12:57am UTC](https://community.zammad.org/t/ldap-active-directory-additional-field-mappings/3801/6 "2021-03-06T00:57:07Z")

</div>

This topic was automatically closed after 416 days. New replies are no longer allowed.

---

<div class="post-metadata">

### Author: ![MrGeneration](https://community.zammad.org/user_avatar/community.zammad.org/mrgeneration/32/9260_2.png) [@MrGeneration](https://community.zammad.org/u/MrGeneration)
#### Post date: [April 23, 2024, 9:32am UTC](https://community.zammad.org/t/ldap-active-directory-additional-field-mappings/3801/7 "2024-04-23T09:32:13Z")

</div>

We are currently not planning to implement this feature request due to missing feedback / hearts from the community. This might change in future.
