Blog

RSS feed for FIM Hotfixes

Now you can be informed about FIM 2010 hotfixes through an RSS newsfeed http://services.social.microsoft.com/feeds/feed/FIM2010_Hotfixes http://feeds.feedburner.com/IdentityLifecycleManagerilmBestPractices

Continue reading

Using FIM to manage BPOS/Office 365

Carol presented a solution to a very thorny problem – how to overcome the lack of delegation in BPOS. In BPOS a user is either an admin or a user. So she used FIM to provide the delegation. Very detailed, very complete solution. She illustrated some of the scripts she has posted on her blog such as http://www.wapshere.com/missmiis/a-script-to-create-sets-and-mprs-from-templates Well done Carol! http://feeds.feedburner.com/IdentityLifecycleManagerilmBestPractices

Continue reading

FIM 2010 reporting using SQL Server Reporting Services (Jeremy and Craig)

Link to Jeremy and Craig’s solution please? Sami - Jul 1, 2011Link to Jeremy and Craig’s solution please? http://www.identitytrench.com/2010/11/simple-reporting-in-fim-2010-with-ssrs.html

Continue reading

FIM 2010 reporting using SQL Server Reporting Services (Jeremy and Craig)

Jeremy and Craig had an interesting shoot out showing off their differing versions of reporting from FIM. Jeremy has an “agent” that he uses to pull the data out of FIM and store it in SQL, after which doing SSRS reports is not terribly difficult. Craig’s approach was to start off by creating a generic SSRS Data Processing extension for PowerShell, and then adjusted to pull data from FIM. Both approaches look very slick.

Continue reading

Cloud computing single sign-on. Making ADFS work with Google and Salesforce (Nikita Ryumin)

This TEC session on the Directory Services track was short but sweet illustrating how to connect ADFS to Google and SalesForce. http://feeds.feedburner.com/IdentityLifecycleManagerilmBestPractices

Continue reading

Desktop Virtualization and Identity Management

Any chance of getting an online version of this talk? Paul - Apr 2, 2011Any chance of getting an online version of this talk?

Continue reading

Desktop Virtualization and Identity Management

I did a lunch time presentation in partnership with Jonathan Sander. We presented how we can use Quest VWorkspace and Quest One Identity Manager to build a corporate store (we code named it VIPER) to provide a dynamic desktop experience. http://feeds.feedburner.com/IdentityLifecycleManagerilmBestPractices

Continue reading

Creating Authentication Activities in FIM (Ikrima Elhassan)

This session at TEC was quite interesting. Ikrima presented quite a lot of material about how to extend FIM with your own authentication activities, demonstrating a OTP password reset approach. Code is available at https://github.com/ikrima/Public-Development http://feeds.feedburner.com/IdentityLifecycleManagerilmBestPractices

Continue reading

Recruiting

Hey readers, our Identity Practice at Ensynch is keeping us very busy. We would like to have more Identity consultants as part of our team. Come work with me and the rest of our fantastically talented Identity Team. We are looking for people with experience in Forefront Identity Manager 2010 and people with experience in ADFS 2.0. We are looking for both Full Time Employees as well as people interested in being contractors for us.

Continue reading

Designing and Implementing RBAC Solutions with FIM 2010 Group Management

After I introduced Brad Turner and turned the time over to him, he showed off some really cool FIM extensions to enable RBAC. He even showed how it fits the NIST RBAC definitions even through level 3. The key design decision was to extend the Set and Group objects. The Set then functions as a role. This allows for both explicit and criteria based membership. A new object type for a Role Membership allows for the user’s membership in a role to expire at an individual time.

Continue reading