Quantcast
Channel: Forum Microsoft Identity Manager
Viewing all 4767 articles
Browse latest View live

You could be our Fabulous February FIM Guru!

$
0
0

Fabulous February is here at last!

This is the month some of the greatest names in TechNet Wiki history will step forth and give us knowledge!

That's YOU by the way!

Drop us a little ray of sun, a few lines of love, or virtual valentine!

Your revelations could enrich so many more if you copied it for posterity into the wiki of wisdom

We need heroes! We need YOU! Join us and grow your reputation amongst some of the greats of the community!

All you have to do is add an article to TechNet Wiki from your own specialist field. Something that fits into one of the categories listed on the submissions page. Copy in your own blog posts, a forum solution, a white paper, or just something you had to solve for your own day's work today.

Drop us some nifty knowledge, or superb snippets, and become MICROSOFT TECHNOLOGY GURU OF THE MONTH!

This is an official Microsoft TechNet recognition, where people such as yourselves can truly get noticed!

HOW TO WIN

1) Please copy over your Microsoft technical solutions and revelations toTechNet Wiki.

2) Add a link to it on THIS WIKI COMPETITION PAGE (so we know you've contributed)

3) Every month, we will highlight your contributions, and select a "Guru of the Month" in each technology.

If you win, we will sing your praises in blogs and forums, similar to the weekly contributor awards. Once "on our radar" and making your mark, you will probably be interviewed for your greatness, and maybe eventually even invited into other inner TechNet/MSDN circles!

Winning this award in your favoured technology will help us learn the active members in each community.

 

January's entries are now being judged, but below are December's mighty winners and contenders!

Guru Award BizTalk Technical Guru - December 2015  

Gold Award Winner

Peter LindgrenBizTalk: Create SSO Bindings Without Joining Active Directory (AD) DomainSK: "Very good article"
SW: "Pragmatic Approach in Development Environment"

Silver Award Winner

Steef-Jan WiggersBizTalk Server : Call external code in an orchestrationSW: "Good explanation and demonstration when to use/call external code in an orchestration."
SK: "Great work here"

Guru Award Forefront Identity Manager Technical Guru - December 2015  

Gold Award Winner

Wim BeckFIM2010: Outbound System Scoping Filter SyntaxSøren Granfeldt: "The best"
PG: "Nice solution, very helpful"

Silver Award Winner

Jeff IngallsHow to Use PowerShell to Create a CSV of FIM/MIM Metaverse ConnectionsPG: "Nice solution, well documented, very helpful"
Søren Granfeldt: "Very interesting read"

Guru Award Microsoft Azure Technical Guru - December 2015  

Gold Award Winner

XAML guyIoT Suite - Under The Hood - Remote MonitoringAS: "Very good article. Just made me play around with the stuff."
JH: "Good explanation of the remote monitoring sample of the IoT Suite. More articles about the IoT Suite are more than appreciated."

Silver Award Winner

Sajid Ali KhanJumpStart into Big Data with HDInsightJH: "Nice article to get started with HDInsight. Lots of easy to follow graphics."
AS: "Nice post. But somehow I really wanted to jump start with Big Data without having to deal with Hadoop :)"

Bronze Award Winner

Ken CenerelliAzure Infographics and Visio TemplatesAN: "Just listing infographics does not add any value for the users. One can just stop by: https://azure.microsoft.com/en-us/documentation/infographics/ and review / download all"
JH: "Good collection of the infographics available for Azure."

Guru Award Miscellaneous Technical Guru - December 2015  

Gold Award Winner

Ken CenerelliCommand Prompt improvements in Windows 10Richard Mueller: "Very interesting and useful information. Well written and explained."

Silver Award Winner

SYEDSHANUASP.Net Web Photo Editing Tool Using HTML 5Richard Mueller: "Lots of well commented code. Good images. Good use of Wiki guidelines. We could use an "Other Resources" section."

Bronze Award Winner

Hussain Shahbaz KhawajaVisual Studio Community for Java DevelopersRichard Mueller: "Good images. We could use links and references."

Guru Award SharePoint 2010 / 2013 Technical Guru - December 2015  

Gold Award Winner

Danish IslamSharePoint: Filter Dropdown values on List InfoPath form based on Current UserRichard Mueller: "Good use of Wiki guidelines. Great images. The "See Also" is good, but because the links are not Wikis, it should be "Other Resources"."

Silver Award Winner

Jesper ArneckeSharePoint 2013 - Workflow Manager – Scripted InstallationRichard Mueller: "Lots of code. References are good, but we could use a "See Also" section."

Bronze Award Winner

Danish IslamSharePoint: Hiding or Ordering Fields on Default List FormsRichard Mueller: "Great use of Wiki guidelines. We can use some references."

Guru Award Small Basic Technical Guru - December 2015  

Gold Award Winner

SYEDSHANUMicrosoft Small Basic: Painting Tool Using Graphics WindowRZ: "This is very nicely done! Fantastic tool for painting and illustrating the drawing capabilities of SmallBasic"

Silver Award Winner

Ed Price - MSFTSmall Basic Sample: Leap Year CheckerRZ: "Leap year calculation is always interesting -- the rules are always just a bit more complicated than you expect :)"

Guru Award SQL BI and Power BI Technical Guru - December 2015  

Gold Award Winner

Greg Deckler (Quick Solutions)Merge Query with MPT: "Greg, nice tip. It's good to see how simple M script techniques like this can supercede the out-of-the-box script generated by the UI tool. I'll use this often."

Guru Award SQL Server General and Database Engine Technical Guru - December 2015  

Gold Award Winner

Ronen ArielySQLCLR: Percentage User-Defined Aggregate FunctionsDurval Ramos: "This article is interesting, but needs more details to demonstrate how to create and use an assembly .Net on SQL Server"

Guru Award System Center Technical Guru - December 2015  

Gold Award Winner

C Sharp ConnerSolution - Correctly restoring Data Warehouse and Registering to SCSM when Cube Process Jobs have gone BadAB: "Nice solution"
Nicolas Bonnet: "Thank you for posting this C Sharp Corner :)"

Silver Award Winner

Adin ErmieService Manager 2012 R2 Installation Fails To Identify SQL Server Instance, and Throws ‘Access Denied’ ErrorNicolas Bonnet: "Nice tip Adin, trhanks"
AB: "Useful read!"

Guru Award Transact-SQL Technical Guru - December 2015  

Gold Award Winner

Naomi NT-SQL: Finding Difference in Columns in the TableDurval Ramos: "This article provides an useful solution to compare values. A very well written and good article that have "Conclusion" to the reader"
Richard Mueller: "Great article. Good use of Wiki guidelines and good code examples."
Samuel Lester: "Outstanding solution! Thanks again for the great depth of your submissions! Job well done!"

Silver Award Winner

Natig GurbanovHow to find incorrect datetime data from "Char" format columnDurval Ramos: "An interesting article about how to use ISDATE function "
Richard Mueller: "Grammar needs work and references would help."
Samuel Lester: "Another good tip, thanks again"

Bronze Award Winner

Natig GurbanovSql Server:Unusual String FunctionsRichard Mueller: "A good effort, but grammar needs work and we could use more explanation."
Samuel Lester: "Fun tip, thanks for covering this rarely discussed function"
Durval Ramos: "Nice, could do with some more work"

Guru Award Universal Windows Apps Technical Guru - December 2015  

Gold Award Winner

Umer QureshiHow to create and use custom controlJH: "Nice article. Love the animated pictures."

Silver Award Winner

Sajid Ali KhanJumpStart With Data Binding in UWPJH: "Very informative article about data binding. Unfortunately some of the pictures are missing."

Bronze Award Winner

Umer QureshiIntroduction To Data Binding Using Model ClassJH: "Good example of one of the greatest features of XAML."

Guru Award Visual Basic Technical Guru - December 2015  

Gold Award Winner

tommytwotrainSpace Invaders game using a DataTable and DataGridViewAnthony D. Green: "Bonus points for being fun. It's also well presented and informative."
AN: A great fun article, well laid out too"
Richard Mueller: "A very well written article. Lots of code and good references."
Carmelo La Monica: "Very nice work, is very good to see a game with Datagrid. Congrats for work and vb net code."

Silver Award Winner

SYEDSHANUExternal Program Text Read using VB.NETCarmelo La Monica: "Nice article, great animate images and vb net code."
AN: "Very nice article, lots to read and love"
Anthony D. Green: "Well structured but needs some proof reading. It's an informative example of using the Win32 API through P/Invoke but lacks sufficient motivation for the example."
Richard Mueller: "Grammar needs work and we could use references."

Bronze Award Winner

.paul.InputDialog DemoRichard Mueller: "Great examples and code."
Carmelo La Monica: "Great work, very interesting sample and code. Congrats."
ANThe article is too short/simple. It re-implements funtionality available in the platform without demonstrating clear benefit. It's more of a code sample than an article.

Guru Award Visual C# Technical Guru - December 2015  

Gold Award Winner

Anil KumarC# Delegate – a silent hero behind modern programmingJaliya Udagedara: "Explains one of the most important types in .NET Framework. It would have been good if explained with more sample code."
Carmelo La Monica: "Fantastic topic, great code, congrats!"

Silver Award Winner

Qasim ChaudhryHow To Customize Identity in ASP.NET MVC5Jaliya Udagedara: "Good! Step by step guide to customize ASP.NET Identity."
Carmelo La Monica: "I'm not expert of AspNet, but this article is very useful and detailed in all parts!"

Bronze Award Winner

SYEDSHANUSPC CP and Cpk Chart in C# Windows FormsCarmelo La Monica: "Fantastic, i mean is similar to tool for debug, great work."
Jaliya Udagedara: "Needs some explanations to the code."

Guru Award Wiki and Portals Technical Guru - December 2015  

Gold Award Winner

Andy ONeillTechNet Guru Iconography SuggestionsRichard Mueller: "What fun! Lots of good ideas here. Gets me thinking."

Guru Award Windows PowerShell Technical Guru - December 2015  

Gold Award Winner

Ken CenerelliList Services With PowerShellRichard Mueller: "Well written article. The "See Also" section should only include Wiki articles, so those links could go in the "References" section."

Guru Award Windows Presentation Foundation (WPF) Technical Guru - December 2015  

Gold Award Winner

Andy ONeillSeasons GreetingsPeter Laker: "Yey for the seasonal article!"

Silver Award Winner

Umer QureshiDifference between Grid and StackPanelPeter Laker: "Nice explanation, thanks Umer"

 

Thanks in advance!
Pete Laker


#PEJL
Got any nice code? If you invest time in coding an elegant, novel or impressive answer on MSDN forums, why not copy it over toTechNet Wiki, for future generations to benefit from! You'll never get archived again, and you could win weekly awards!

Have you got what it takes o become this month's TechNet Technical Guru? Join a long list of well known community big hitters, show your knowledge and prowess in your favoured technologies!


FIM Enable-RemoteMailbox for Hybrid Exchange

$
0
0

Hello,

Firstly I know that what I am trying to accomplish is not an easy task, possibly? But I have a scenario where I need to use FIM to enable remote mailboxes for new users being provisioned. I already have AD, and Office 365 licensing setup and working. The environment has a single Exchange 2013 server on-premises for management purposes and all mailboxes live in Exchange Online. All existing objects are remote mailboxes today as they have been moved to Exchange Online or provisioned as a remote mailbox manually. 

Would it be best to use the PowerShell MA developed by Søren Granfeldt to create a new remote mailbox after the AD user has been provisioned? If so does anyone have any tips on the process and the PowerShell code to accomplish this task? 

I was thinking I could basically write the import script to include attributes where I can determine if a remote mailbox already exists or not. Then write the export script based on an attribute like RemoteMailboxEnabled (true of false) and define my set and workflows to run the Exchange Outbound rule. Then let DirSync/ AADConnect take care of the rest as the account will have the necessary items for a mailbox to be created in Exchange Online at this point.

Any help is greatly appreciated. 

Thank you so much. 

TM

How do you get a Set's DisplayName from its ObjectID using FIM cmdlets?

$
0
0

I have been trying to get for Documentation purposes a matrix of MPRS / Sets / Workflows. There is a script "How to Use PowerShell to Export all MPRs into a Gridview (or Excel) for Documentation" already in the FIM cmdlets HowTo which is more or less what I need but uses the QUEST set of cmdlets which I do not have.

When I get my MPR object and look at the the PrincipalSet attribute for example, I get a value like urn:uuid:8887df8e-6e84-49f2-a794-f9e9802077e0 

I take this to be the ObjectID of the PrincipalSet.

Wonderful. I am having great difficulties using this string.

When I look around TechNet there is a function called GetResource which is:

GetResource Function

This is an example of a Windows PowerShell function that uses the Import-FIMConfig cmdlet to query the FIM Service database for a resource based on theObjectID. If the query is successful, the function returns a reference to the resource. If no such object is found, the function writes a message to the Windows PowerShell host.

$DefaultUri="http://localhost:5725"function GetResource
{
    PARAM($ObjectIdentifier, $Uri=$DefaultUri)
    END
    {$object= Export-FIMConfig -CustomConfig [System.String]::Format("*[ObjectID='{0}']", $ObjectIdentifier) -Uri $Uriif($object-eq$null)
        {
            Write-Host "Object was not found."
        }else
        {$object
        }
    }
}

Looks good, no example though, no typing either. I guessed $ObjectIdentifier is the value of the ObjectID attribute e.g.

urn:uuid:8887df8e-6e84-49f2-a794-f9e9802077e0

but when I try it, the function just laughs at me and complains about the filter.

How do I use this function to dereference the Set's ObjectID given to be from the MPR object?????


Using PowerShell to get user PIN from FIM CM?

$
0
0

Does anyone have a clue how to retrieve user PIN from FIMCM via the Powershell?

I looked couple of links:

https://msdn.microsoft.com/en-us/library/microsoft.clm.provision.executeoperations.getuserpin%28v=vs.100%29.aspx

http://www.integrationtrench.com/2010/11/use-fim-cm-provision-api-from.html

Which leaded me to a conclusion that this would be a doable thing, however, I'm not that skilled at .NET assemblies and Powershell to get this working so I was hoping that someone has a working solution already made or could at least give a example code how to get it working..

MIM 2016 - SCOM 2012 R2 Management Pack?

$
0
0

Will there be a new/updated SCOM2012 R2 compatible management pack for new Microsoft Identity Manager 2016?

If so, when?

If not, are we expected to try and monitor with the FIM 2010 MP?

Can FIM provision users to Azure Active Directory?

$
0
0

Hi,

I have an Active Directory with FIM and Exchange 2010. Users are synced to this environment via a CSVDE export from another AD.

Can FIM 2010 R2 sync users to Azure Active Directory using the Azure connector so that:

- New users are provisioned (including Exchange 2010 mailboxes, I know Exchange 2010 as a VM isn't officially supported in Azure)
- Old users are deleted
- User account information is updated based on ObjectSid

I know that with an on premise DC\AD you can run the registration script to register Self Service Password Reset (SSPR) answers against FIM - is this still the case when relying exclusively on Azure AD?

Lastly, if we skipped FIM sycnhronisation and relied on AD Connect to sync users from on premise to Azure AD, could we still use FIM SSPR to reset passwords for users?

Temporal Set membership criteria calculation question

$
0
0

Simple question.

If I have a User with an EndDate = 2/2/2016 and the current calendar date is 2/2/2016  and current time is 00:30

At 1am when the temporal sets are calculated in FIM,

Will the Set criteria of "EndDate prior to today" be true and the User joins the Set or will he not?

Import Security Questions via FIM management agent?

$
0
0

Is there a way to import security questions/answers into FIM from another system via the FIM management agent?

I know there are PowerShell commands that can be used to set the questions/answers ... I was just hoping to have FIM do the import as part of the whole management agent run vs trying to write something myself that pulls the questions/answers for AD users that have setup questions in the other system.


AD Schema Upgrade when Updating FIM CM 2010R2 to FIM CM 2010R2 SP1?

$
0
0
We have to upgrade an existing FIM Certificate Manager 2010R2 installation to FIM CM 2012R2 SP1. So far I haven't found any information if there is a AD schema upgrade required or not. I guess not, but is there somewhere information about that? Thanks for help.

MIM PAM Role Powershell

$
0
0

Hi,

Is there a way to provision a user to a PAM role with PowerShell without removing the existing members?

Regards,

Yannick


scope attribute not available

$
0
0

greetings

i want to synchronize groups from portal to my AD and have them provisioned but the attribute scope is not available:

as you see on metaverse 'scope' attribute is present, but on the left side there is no scope.

do i need to apply some sort of updates or patch to make it present?

FIM 2010 R2. Problem with EmployeeEndDate attribute.

$
0
0

Hello!

I have csv with users.

I have Sync Rule with inbound attribute flow from csv to Metaverse.

A problem user have EmployeeEndDate in csv - 29.01.2016

Rule - Function DateTimeFormat (yyyy-dd-MMT08:00:00.000)

Flow EmployeeEndDate other users normal.

In Preview a see Error with the attribute EmployeeEndDate.


Alex

PermissionDeniedException: ResourceIsMissing

$
0
0

I am receiving below error for only one mailbox when im trying to add users to that shared mailbox on portal. For other mailbox its working fine.

<RequestStatusDetail xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema" DetailLevel="Information" EntryTime="2016-02-06T17:20:29.4982645Z">Microsoft.ResourceManagement.WebServices.Exceptions.PermissionDeniedException: ResourceIsMissing
   at Microsoft.ResourceManagement.WebServices.RequestDispatcher.ExecuteGetAction(RequestType request)
   at Microsoft.ResourceManagement.WebServices.RequestDispatcher.ExecuteAction(RequestType request)
   at Microsoft.ResourceManagement.WebServices.RequestDispatcher.ExecuteAction[ResponseBodyType](RequestType request)
   at Microsoft.ResourceManagement.WebServices.RequestDispatcher.DispatchRequest[ResponseBodyType](RequestType request, Guid requestIdentifier, Object redispatchSingleInstanceKey, Boolean isRedispatch)
   at Microsoft.ResourceManagement.WebServices.RequestDispatcher.DispatchRequest[ResponseBodyType](RequestType request)
   at Microsoft.ResourceManagement.Workflow.Hosting.RequestWorkItemProcessor.DispatchRequest[TResponseType](RequestType request, Boolean applyAuthorizationPolicy)
   at Microsoft.ResourceManagement.Workflow.Hosting.RequestWorkItemProcessor.ProcessGetWorkItem(ReadRequestWorkItem readWorkItem)
   at Microsoft.ResourceManagement.Workflow.Hosting.RequestWorkItemProcessor.ProcessWorkItem(WorkItem workItem)</RequestStatusDetail>

FIM 2010 R2 reporting - Initialsync error on custom resources in FIM

$
0
0

We just installed fim reporting - scsm2012. Initial sync script is failing. In All resources, reporting, I can the error in the attached screenshot. In event viewer, Reporting job halted due to error. We did not extend the schema of DW. How to solve this problem. TIA.

Microsoft identity manager 2016 single sign on(SSO)

$
0
0
Is there any feature available in MIM 2016 to implement single sign on(SSO). we have 2 active directory forests with exchange implemented in each forest. There are some users having mailboxes in both environments. these users access mail box from send forest using owa. when accessing these mailboxes from second forest there should be any password prompt. it to login to the mailbox silently....Can we achieve this with MIM 2016

FIM Performance Monitoring Tool and Run Profiles backup

$
0
0

Is there any tool available which will help me in monitoring the FIM performance?

Basically if there is some tool which can send me email updates on the run profiles' execution - if there is any error, number of adds/updates/deletes, etc.? It will help monitoring of the support activities much easier instead of having to sit and look through it in the Sync Engine.

Also, are there any scripts available which can help me to archive the Run Profiles so that my DB does not get bloated?

Thanks!

SQLMA connectors not disappearing from connectorspace when removed from source table

$
0
0

I have a problem with the fim 2010 sql server managemt agent. We have a simple flow importing objects from a sql table and exporting them to active directory (user accounts). the active directory account guid is exported back to the sql database. Deprovisioning is configured to remove the active directory account as soon as the connector disappears on the sql server management agent side.

This has worked fine but now, for some reason objects that are removed from the sql table stay in the sql server managent agent connector space after a full import. I tried emptying the connector space, but that does not cure the problem. New objects are loaded, changed are getting thru, but deleted objects will not remove themselves from the sql ma connector space. This means no deprovisioning is done.

Does this sound familier to anyone? Is there a way to get tracing/verbose logging on the sql agent? If so could you please supply an example of the config needed?

display name of referenced resource not available while adding user in remove operation its showing cannot display instead of No user removed when checked request its showing this value

$
0
0

I am receiving below error for only one mailbox when im trying to add users to that shared mailbox on portal. For other mailbox its working fine.

<RequestStatusDetail xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema" DetailLevel="Information" EntryTime="2016-02-06T17:20:29.4982645Z">Microsoft.ResourceManagement.WebServices.Exceptions.PermissionDeniedException: ResourceIsMissing
   at Microsoft.ResourceManagement.WebServices.RequestDispatcher.ExecuteGetAction(RequestType request)
   at Microsoft.ResourceManagement.WebServices.RequestDispatcher.ExecuteAction(RequestType request)
   at Microsoft.ResourceManagement.WebServices.RequestDispatcher.ExecuteAction[ResponseBodyType](RequestType request)
   at Microsoft.ResourceManagement.WebServices.RequestDispatcher.DispatchRequest[ResponseBodyType](RequestType request, Guid requestIdentifier, Object redispatchSingleInstanceKey, Boolean isRedispatch)
   at Microsoft.ResourceManagement.WebServices.RequestDispatcher.DispatchRequest[ResponseBodyType](RequestType request)
   at Microsoft.ResourceManagement.Workflow.Hosting.RequestWorkItemProcessor.DispatchRequest[TResponseType](RequestType request, Boolean applyAuthorizationPolicy)
   at Microsoft.ResourceManagement.Workflow.Hosting.RequestWorkItemProcessor.ProcessGetWorkItem(ReadRequestWorkItem readWorkItem)
   at Microsoft.ResourceManagement.Workflow.Hosting.RequestWorkItemProcessor.ProcessWorkItem(WorkItem workItem)</RequestStatusDetail>


Exposing a Database as a Web Service

$
0
0

Hi All FIM Guru,

What is the best practise to build connectors.

Every application has some sort of database at the backed, Can we build webservice to query it and insert in Microsoft SQL table and do the processing with SQL MA.

Or

We have to build ECMA always to achieve this.

Regards,
Anirban Singha
India


FIM portal MPR triggered only when Employee EndDate was changed at least 1 year behind

$
0
0

Hello All,

Thank you in Advance.

Issue: MPR was not triggered unless the Employee End date was changed to at least 1 year behind

MPR: DisableUserOnEndDate

Transition Set: Employee Type isPayroll, UserStatus is Active,  Employee End Date prior to today

Workflow: [//Target/UserStatus]-> String "Disabled"

FIM portal date format: (GMT+10:00) Canberra, Melbourne, Sydney

What the MPR does? Disable account after the account expired, set the user account status to Disabled

Issue: MPR was not triggered unless end date was set at least 1 year behind.

Scenario tested:

EmployeeEnd Date             |              MPR Triggered?

05/02/2016                                        not Triggered

05/03/2015                                        not Triggered

05/02/2015                                        Triggered

05/03/2015                                        Triggered

The set seems to be working as it should, when account expired the expired accounts became part of the set immediately, but for some reason the set failed to trigger the workflow until the accountExpired over 1 year. Any idea? Thank you.

Cheers,

Adi


Viewing all 4767 articles
Browse latest View live




Latest Images

<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>
<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596344.js" async> </script>