RSS feed for FIM Hotfixes
Now you can be informed about FIM 2010 hotfixes through an RSS newsfeed http://services.social.microsoft.com/feeds/feed/FIM2010_Hotfixes http://feeds.feedburner.com/IdentityLifecycleManagerilmBestPractices
Now you can be informed about FIM 2010 hotfixes through an RSS newsfeed http://services.social.microsoft.com/feeds/feed/FIM2010_Hotfixes http://feeds.feedburner.com/IdentityLifecycleManagerilmBestPractices
Carol presented a solution to a very thorny problem – how to overcome the lack of delegation in BPOS. In BPOS a user is either an admin or a user. So she used FIM to provide the delegation. Very detailed, very complete solution. She illustrated some of the scripts she has posted on her blog such as http://www.wapshere.com/missmiis/a-script-to-create-sets-and-mprs-from-templates Well done Carol! http://feeds.feedburner.com/IdentityLifecycleManagerilmBestPractices
Link to Jeremy and Craig’s solution please? Sami - Jul 1, 2011Link to Jeremy and Craig’s solution please? http://www.identitytrench.com/2010/11/simple-reporting-in-fim-2010-with-ssrs.html
Jeremy and Craig had an interesting shoot out showing off their differing versions of reporting from FIM. Jeremy has an “agent” that he uses to pull the data out of FIM and store it in SQL, after which doing SSRS reports is not terribly difficult. Craig’s approach was to start off by creating a generic SSRS Data Processing extension for PowerShell, and then adjusted to pull data from FIM. Both approaches look very slick.
This TEC session on the Directory Services track was short but sweet illustrating how to connect ADFS to Google and SalesForce. http://feeds.feedburner.com/IdentityLifecycleManagerilmBestPractices
Any chance of getting an online version of this talk? Paul - Apr 2, 2011Any chance of getting an online version of this talk?
I did a lunch time presentation in partnership with Jonathan Sander. We presented how we can use Quest VWorkspace and Quest One Identity Manager to build a corporate store (we code named it VIPER) to provide a dynamic desktop experience. http://feeds.feedburner.com/IdentityLifecycleManagerilmBestPractices
This session at TEC was quite interesting. Ikrima presented quite a lot of material about how to extend FIM with your own authentication activities, demonstrating a OTP password reset approach. Code is available at https://github.com/ikrima/Public-Development http://feeds.feedburner.com/IdentityLifecycleManagerilmBestPractices
Hey readers, our Identity Practice at Ensynch is keeping us very busy. We would like to have more Identity consultants as part of our team. Come work with me and the rest of our fantastically talented Identity Team. We are looking for people with experience in Forefront Identity Manager 2010 and people with experience in ADFS 2.0. We are looking for both Full Time Employees as well as people interested in being contractors for us.
After I introduced Brad Turner and turned the time over to him, he showed off some really cool FIM extensions to enable RBAC. He even showed how it fits the NIST RBAC definitions even through level 3. The key design decision was to extend the Set and Group objects. The Set then functions as a role. This allows for both explicit and criteria based membership. A new object type for a Role Membership allows for the user’s membership in a role to expire at an individual time.