How to add a custom attribute and include it in the self-update layout in ADSelfService Plus

How to add a custom attribute and include it in the self-update layout in ADSelfService Plus

Objective 

This article explains how to add a custom LDAP attribute in ADSelfService Plus and include it in the self-update layout. This allows end users to view and update organization-specific attributes (e.g., Employee ID or Location) through the ADSelfService Plus portal, reducing IT overhead and improving data accuracy in Active Directory.

Prerequisites 

  • The LDAP attribute must already exist in Active Directory.
  • Have administrative access to ADSelfService Plus.
  • The end user must be part of a self-service policy with the Self Update feature enabled.

Steps to add a custom attribute to a self-update layout

Step 1: Create the custom attribute in ADSelfService Plus
  1. Log in to ADSelfService Plus as an administrator.
  2. Navigate to Configuration > Self-Service > Directory Self Service.
  3. Click Manage Custom Attributes in the top-right corner.
  4. In the pop-up window, click Click Here to add a new attribute.
  5. Enter the required details:
    • Display Name: A user-friendly name for the attribute (e.g., Employee ID).
    • LDAP Name: The exact LDAP attribute name from your Active Directory schema (e.g., employeeID).
    • Data Type: The type of input field to be used.
  6. Click Save.
 
Step 2: Add this attribute to a self-update layout
  1. Navigate to Configuration > Self-Service > Directory Self-Service > Self Update Layout.
  2. You have two options:
    1. Edit an existing layout: Click the Edit (pencil) icon for the layout you want to modify.
    2. Create a new layout: Click the Create New Layout button in the top-right corner.
  3. In the layout editor, locate your custom attribute in the left pane under the Custom Attributes section.
  4. Drag and drop the custom attribute into the layout area.
  5. Optionally, you can group or reorder fields as needed. To customize an attribute's properties—such as making it Mandatory or Read-only or defining its character length—click the Edit option that appears when you hover over the attribute.
  6. Click Save.
 
Step 3: Associate the layout with an appropriate policy
  1. While on the Self Update Layout page, click Assign Policies in the top-right corner.
  2. In the pop-up window, locate the desired self-service policy. From the drop-down list next to the policy, choose the layout you just created or edited to apply it to the associated users.
  3. Click OK.

Validation and confirmation  

To ensure the custom attribute is configured correctly, follow these steps:
  • Log in to the ADSelfService Plus end portal as a test user who falls under the configured policy.
  • Navigate to My Info.
  • Confirm the custom attribute appears in the layout and is editable (if not marked as read-only).
  • Make a change to the custom attribute's value and click Save.  
  • Verify if the changes are reflected in Active Directory.

How to reach support                                 

If the issue persists, contact our support team here

                  New to ADSelfService Plus?

                    • Related Articles

                    • How to enable self-update for custom AD attributes in ADSelfService Plus

                      IT administrators might need to create custom attributes for a variety of reasons such as to route Active Directory based custom messages, application integration, or including specific flags on Active Directory objects. Before you can create a ...
                    • Multi-factor authentication techniques in ADSelfService Plus

                      Let's take a look into the various authentication methods supported by ADSelfService Plus for enterprise multi-factor authentication (MFA). Why should you use MFA? Authentication based solely on usernames and passwords is no longer considered secure. ...
                    • Troubleshooting Guide for Common Errors in ADSelfService Plus End User Portal

                      Permission denied. Please contact your administrator. Cause: There are two reasons why this error could occur: End users trying to access any of the self-service features in ADSelfService Plus such as password reset or directory self-update need to ...
                    • How to add a custom attribute in ADSelfService Plus

                      Objective This article guides you through the process of adding a custom LDAP attribute in ADSelfService Plus. Custom attributes allow administrators to map additional Active Directory fields (e.g., employeeID or officeLocation) to ADSelfService ...
                    • Configuring high availability in ADSelfService Plus

                      ADSelfService Plus utilizes automatic failover to support high availability in case of system and product failures. Essentially, this means that when the ADSelfService Plus service on one machine fails, another instance of ADSelfService Plus running ...