Hi folks,
Inmy otherpost:http://social.technet.microsoft.com/Forums/en-US/4428df6a-467f-44e1-8431-f16a2b1b9f5c/configuration-fim-2010-r2-between-domains?forum=ilm2
Hadasked whether it waspossible to
perform the following actionswith MicrosoftForefrontIdentityManager 2010R2.
-If you changethe password on thedomainA, should synchronizethedomino B;
-If you changethe password on the
domainB,should notsynchronizethedomainA;
-Createuser indomain
A,should bereplicated to thedominoB;
-Createuser indomain
B,should not bereplicatedin the fieldA;
DominikTrojnarinformed methat it was possibleby performing the followingactions:
WithFIMSynchronization ServiceandPCNSonly(noneedforFIMService).INFIMSynchronizationyoupreparetwomanagementagents (one foreachdomain)andenable passwordsynchronizationonThem.
MoreoverinAgentThat Is
connectedtodomainA,youcreate "ProjectionRule"insideMAproperties.In both agents you should create join rules that would match pre-existing accounts of two users.
InthedomainyouhavetoinstallPCNSon every
DCandconfigureitto pointFIMServer.
Did some testingwithout much success.
I needhelp from youwhich wayorwhichsteps to completethe following configuration:
- Createuser indomain A,should bereplicated to thedominoB;
Recalling thatthe structureof the environmentis as follows:
Domain A (footwear.com);
DomainB(Nautica.com);
Thecustomer environmenthas notrust relationship betweenthedomains.
Thanks a lot!
Wilsterman Fernandes