Recommended primary keys

In a standard Active Directory environment, the following primary keys are typically used:

  • Groups table: objectGUID

  • Memberships table: None, because both columns are foreign keys

  • OrganizationalUnits table: objectGUID

  • Users table: objectGUID


It is possible to use distinguishedName as a key for these tables, but it is recommended to use objectGUID when possible, because it is immutable.

  • Folders table: FullName