---
title: Multi-Domain for AD Users
slug: kronpam-reference-guide-3-5-0/multi-domain-for-ad-users
description: Learn how each Active Directory user is assigned a unique ID and how this ID is used to track configuration changes. Discover where the Object GUID information is located and how it is utilized when a username is modified in LDAP. Easily monitor Audit log
docTags: 
createdAt: 2022-12-01T08:20:37.000Z
---

Every Active Directory user has a unique ID, and any configuration made for the user is bound with this unique ID. Therefore, Object GUID information from the LDAP is located in a column that the user accounts page.

![](https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/xrKtrdB_Qyc3po3x0Legg_image.png "ObjectGUID attribute in User Accounts")

When a username changes on the LDAP, it is also changed in Kron PAMt according to ObjectGUID. Therefore, Audit logs, Activity Logs, and Session Logs can be followed easily in case the username changes on the source. Username changes are available on the user group properties.

To see user information changes on the LDAP:

1. Navigate to **Users** > **Choose the Group of Users.**
2. Then Users will be listed.
3. Click the green arrow button on the User.
4. Click on the **User History**.

If more than one domain exists on Kron PAM, users can select a domain on the WEB GUI page by configuration.

1. Navigate to **System Config Manager**.
2.   Set the **show\.sc.portal.login.domain&#x20;**&#x61;s true.
3.   Save this property.

::Image[]{src="https://api.archbee.com/api/optimize/g9cApVza9NIhSh0pjZYtA/VC6utCTZG1vsoD9lQZ-jW_image.png" size="42" width="382" height="679" position="center" caption="Select the domain for AD users" showCaption="true"}

