Are you the publisher? Claim or contact us about this channel


Embed this content in your HTML

Search

Report adult content:

click to rate:

Account: (login)

More Channels


Showcase


Channel Catalog


Channel Description:

This forum is for IT Professionals who have questions/issues or other feedback about Forefront Identity Manager (FIM) 2010 suite

older | 1 | .... | 77 | 78 | (Page 79) | 80 | 81 | .... | 204 | newer

    0 0

    Hi Folks,

    Is possible configure the FIM 2010 R2 for execute this action:

    -If you changethe password on the domainA, should synchronizethedomino B;
    -If you changethe password on the domainB,should notsynchronizethedomainA;
    -Createuser indomain A,should bereplicated to thedominoB;
    -Createuser indomain B,should not bereplicatedin the fieldA;

    Thanks a lot!


    Wilsterman Fernandes


    0 0

    Hi,

    I am able to Register and Reset my password via the web portal but When i click on "Forget your password" link for reseting my password in FIM 2010 R2 Clients Addins then its gives below error. However, client is working perfectly on some other machines. so please suggest me and why this error is coming.

     

    Regards

    Anil Kumar


    0 0
  • 09/11/14--05:50: Dirsync not for Office 365
  • Hi

    Is it possible to synchronise AD accounts from one Domain to anoher, without FIM? For example by modifying Dirsync?

    Regards
    Peter


    0 0
  • 09/11/14--13:52: AD Manager attribute
  • Hi,

    We have an HR system, and one of the user attributes is the 'manager' field, which contains the firstName and surname of their manager.

    Since the AD manager attribute is a reference attribute, can we just export this HR manager value (firstName and surname) into the AD Manager field?

    Or do we need some means of a work around and use code to set the manager attribute in AD?

    Thanks,

    SK



    0 0

    How do you create the proxyaddresscollection via FIM workflows. I'd like to be able to generate new accounts to have specific SMTP addresses before provisioning to 365. Only problem seems to be when passing it back to AD that the multiple values get placed as a single line.

    Thanks for any help.


    0 0

    Hi,

    I am able to Register and Reset my password via the web portal but When i click on "Forget your password" link for reseting my password in FIM 2010 R2 Clients Addins then its gives below error. However, client is working perfectly on some other machines. so please suggest me and why this error is coming.

    Regards

    Anil Kumar


    0 0

    Hi,

    I've set up the BHOLD MA (Access Management Microsoft) in FIM 2010 R2 to export users to the BHOLD Core.
    I'm using the http://technet.microsoft.com/en-us/library/jj853094(v=ws.10).aspx lab guide to help me out.

    The only difference, I'm preferring to use portal sync rules instead of using the attributeflow in the BHOLD MA itself. (easier and powerful)

    I've configured a Synchronization rule in the FIM Portal, however, it complains that when I'm trying to flow department (MV) to OrganizationalUnit (CS) (a BHold orgunit is not the same as an AD OU) are not matching types: String versus Reference.

    When I configure this on the BHOLD MA agent itself as explained in the above lab guide, there's no error!

    Question: has anyone ever used portal sync rules to populate BHOLD CORE with users? Is it possible? 

    Kind regards,
    David




    0 0

    Hi All.

    I will be offering Forefront Identity Manager 2010 R2 Certificate Management training in Helsinki, Finland at Sovelto. This is a course that I authored with my former business partner, Paul Adare.

    The course runs from October 20th until October 23rd.

    Details are available at http://www.sovelto.fi/kurssit/kurssivalikoima/Pages/BrianKomar.aspx

    Thanks!

    Brian Komar


    0 0

    Hi,

    I have a requirement to upgrade my FIM CM setup from FIM 2010 to FIM 2010 R2 SP1. I am not looking for an in place upgrade, instead I would like to have a new parallel setup (new FIM 2010 R2 servers, new SQL 2012 servers), connecting to the same AD and PKI.

    Thank You.



    0 0

    Hello,

    I started FIM 2010 training. I am using MOC virtual machines. At the begining of lesson, HR management software can not sync with AD. How can i resolve this issue?  


    0 0

    Hello,

    I have an SQL MA which is used to create users in the FIM portal, these users are then provisioned to AD via declarative provisioning. Sometimes a user may drop out of the SQL MA and return a few days later, while I have a join rule set to the users' unique IDs (accountName), the SQL MA fails to join the user and I receive a failed-creation-via-web-services error as FIM MA attempts to create a duplicate user with the same accountName.

    What might I be doing wrong?

    Thanks


    0 0

    Hi folks,

    Inmy otherpost:http://social.technet.microsoft.com/Forums/en-US/4428df6a-467f-44e1-8431-f16a2b1b9f5c/configuration-fim-2010-r2-between-domains?forum=ilm2


    Hadasked whether it waspossible to perform the following actionswith MicrosoftForefrontIdentityManager 2010R2.


    -If you changethe password on thedomainA, should synchronizethedomino B;
    -If you changethe password on the domainB,should notsynchronizethedomainA;
    -Createuser indomain A,should bereplicated to thedominoB;
    -Createuser indomain B,should not bereplicatedin the fieldA;

    DominikTrojnarinformed methat it was possibleby performing the followingactions:


    WithFIMSynchronization ServiceandPCNSonly(noneedforFIMService).INFIMSynchronizationyoupreparetwomanagementagents (one foreachdomain)andenable passwordsynchronizationonThem.


    MoreoverinAgentThat Is connectedtodomainA,youcreate "ProjectionRule"insideMAproperties.In both agents you should create join rules that would match pre-existing accounts of two users.

    InthedomainyouhavetoinstallPCNSon every DCandconfigureitto pointFIMServer.

    Did some testingwithout much success.

    I needhelp from youwhich wayorwhichsteps to completethe following configuration:

    - Createuser indomain A,should bereplicated to thedominoB;


    Recalling thatthe structureof the environmentis as follows:

     
    Domain A (footwear.com);
    DomainB(Nautica.com);


    Thecustomer environmenthas notrust relationship betweenthedomains.

    Thanks a lot!


    Wilsterman Fernandes



    0 0

    Hi Everyone, I installedFIMPassword Resetand RegistrationService, butwhen I try tologinto the portal.I getthe following error.
    I followed the steps in "TestLab"and alsofollowed the instructionson the requirements ofFIMself-servicePasswordReset. Greetings andthank you very muchfor yourhelp.

    Error:

    An error has occurred. Please try again, and if the problem persists, contact your help desk or system administrator. (Error 3000)

    Go to Self-Service Password Registration home page

    An error has occurred. Please try again, and if the problem persists, contact your help desk or system administrator. (Error 3000)

    Details: System.Security.Principal.IdentityNotMappedException: Some or all identity references could not be translated. at System.Security.Principal.SecurityIdentifier.Translate(IdentityReferenceCollection sourceSids, Type targetType, Boolean forceSuccess) at System.Security.Principal.SecurityIdentifier.Translate(Type targetType) at System.Security.Principal.WindowsIdentity.GetName() at System.Security.Principal.WindowsIdentity.get_Name() at Microsoft.IdentityManagement.CredentialManagement.Portal.Components.RegistrationDriver.GetDomainAndUserName(String& domain, String& userName) at Microsoft.IdentityManagement.CredentialManagement.Portal.Components.RegistrationDriver.InitiateRegistration() at Microsoft.IdentityManagement.CredentialManagement.Portal.Registration.Next() at System.Web.UI.WebControls.Button.OnClick(EventArgs e) at System.Web.UI.WebControls.Button.RaisePostBackEvent(String eventArgument) at System.Web.UI.Page.RaisePostBackEvent(IPostBackEventHandler sourceControl, String eventArgument) at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)



    0 0

    The idea:

    When communicating amongst our own staff via email we'd like to see our display names in this format:

    Firstname Lastname (Division/Department/Branch/Unit)

    Whereas, when we send emails to people outside the company, we'd like to be seen as:

    Firstname Lastname (Company Name)

    Is this technically possible?

    Regards,

    Anthony


    0 0

    Hello!

    Im trying to create a Manager-Based membership security group. But every time I try it, FIM is trying to add the creator as "Manually-managed membership" and then fails with the error: Group validation failed: A group with calculated membership cannot have explicit members added or removed

    Anyone seen this before? It should not add the creator as member!


    Regards, Remi www.iamblogg.com


    0 0

    Hi,

    Due to some change in the primary fields. We have got a burden to change the criteria for multiple groups. Is there any way to change criteria of more than one group using "Filter" attribute or with some other approach at a time.


    Regards,
    Manuj Khurana


    0 0

    Hi,

    Is it possible without resorting to "hacks" to sync group memberships just using FIM Sync engine? Think if a user is member of a deptartment, we put him on a DL-departmentname-users distribution list - and pulls him off his old department DL.

    It seems it is not possible to write to the group member attribute with custom extension logic, from our research.

    We don't use the portal (where I know this would be easy), because of the license cost, so we are limited to FIM Sync. We are on 2010 R2 latest updates.

    Thanks in advance!

    / Klaus


    ---Sig---


    0 0

    Hi all;

    I've created a criteria-based set that has to filter for users that have an "expiration Time" "prior to" "today".
    xpath filter: /Person[ExpirationTime < fn:current-dateTime()]

    I've got one user where I've set a date expired to a week ago.

    When I click view members it does not return any results. When I change the logic to"expiration Time" "after" "today".  to see how this logic works, it doesn't return any results either.

    I'm working in Belgium, regional settings are d/MM/yyyy H:mm (in 24h format).
    My browser language is also set to nl-BE, where FIM actually uses this in the PORTAL field too:

    Today in Belgium is 16/09/2014 16:45. But My set returns 0 members.

    I've read some articles that FIM needs the format in yyyy/MM/dd format (for import)

    Is it correct that FIM Portal doesn't handle this XPATH current-dateTime() function correctly for foreign regional settings?

    I've tried to set it current-dateTime("d/MM/yyyy") or other variants, but that gives an error when I'm trying to save.

    Kind regards,
    David




    0 0

    I want to generate an Accountname using EmployeeID, FirstName and LastName via a workflow.

    I'm using the Granfeldt Workflow Activity Library (https://fimactivitylibrary.codeplex.com/)
    I'm using the FIM Powershell Workflow Activity (https://fimpowershellwf.codeplex.com/)

    Steps:

    Passing the EmployeeID, FirstName and LastName to the powershell Activity, generating a logonid based on logic.

    Add-PSSnapin FIMAutomation
    $EmployeeID = $fimwf.WorkflowDictionary.EmployeeID
    $Forename = $fimwf.WorkflowDictionary.Firstname
    $Lastname = $fimwf.WorkflowDictionary.Lastname
    
    'logic creating a custom logonid here

       ==> This works

    Returning data back to the workflow via that powershell script:

    $fimwf.WorkflowDictionary.Add('NewAccountName',$newlogonid)

       ==> This works

     Using Lookup Value Activity to read the Workflow data and update the [//Target/AccountName] fails.

     

    This gives an error:

           An error occurred while enumerating the filter 'string' .

    (where string is the actual generated userid that I've got back from the powershell script. Example dab2563)

    I tried with only [//WorkflowData], then this gives the error:

          Index was outside the bounds of the array.

    Any hints to solve this?    

    Kind regards,
    David


    0 0

    After creation of custom attribute for user object in fim can we change the single valued property to multivaled property . Please explain the steps..

older | 1 | .... | 77 | 78 | (Page 79) | 80 | 81 | .... | 204 | newer