Solve your Identity crisis without therapy

This blog is designed to cover information that the Security Identity Support Team encounteres and is able to share.

FAQ for FIM 2010 to support SHA2, KSP/CNG and v3 certificate templates for issuing user and agent certificates and MIM 2016 upgrade

~ Milan Milosavljevic | Senior Escalation Engineer Hi everyone, Milan Milosavljevic here from the...

Author: Tim Macaulay Date: 07/14/2016

FAQ for FIM 2010 to MIM 2016 upgrade and SHA2 support

~ Milan Milosavljevic | Microsoft Senior Escalation Engineer UPDATED 7/14/2016: A newer version of...

Author: J.C. Hornbeck Date: 01/11/2016

KB: Microsoft Azure AD Management Agent hangs during Full Import or Delta Import

When you run a Full Import or a Delta Import on the Microsoft Azure Active Directory (Azure AD)...

Author: Tim Macaulay Date: 10/01/2015

HOWTO: How to loop through proxyAddresses and update the primary SMTP

The purpose of this document is to provide an illustration of how to setup a Management Agent Rules...

Author: Tim Macaulay Date: 08/26/2015

Support-Tip (MIISACTIVATE.EXE): Logon failure: the user has not been granted the requested logon type at this computer

PRODUCT FOCUS Microsoft Identity Manager Synchronization Service 2016 Forefront Identity Manager...

Author: Tim Macaulay Date: 08/12/2015

[HOTFIX] A new hotfix rollup package is available for Microsoft Forefront Identity Manager 2010 R2 SP1

A hotfix rollup package (build 4.1.3634.0) is available for Microsoft Forefront Identity Manager...

Author: Tim Macaulay Date: 05/06/2015

[HOTFIX] A FIM 2010 R2 hotfix rollup is now available for the Generic LDAP connector

A new hotfix rollup package is available for Microsoft Forefront Identity Manager 2010 R2. This...

Author: Tim Macaulay Date: 10/29/2014

[HOTFIX] New hotfix available to fix PowerShell connector issue in FIM 2010 R2

A hotfix rollup package (build 1.0.419.911) is available for Microsoft Forefront Identity Manager...

Author: Tim Macaulay Date: 10/23/2014

[HOTFIX] New FIM 2010 R2 hotfix for the WebServices connector

A hotfix rollup package is available for Microsoft Forefront Identity Manager 2010 R2. This hotfix...

Author: Tim Macaulay Date: 10/23/2014

[HOTFIX] A new hotfix rollup (build 4.1.3559.0) is available for Forefront Identity Manager 2010 R2

A hotfix rollup package (build 4.1.3559.0) is available for Microsoft Forefront Identity Manager...

Author: Tim Macaulay Date: 06/18/2014

INFO: FIM Service stops intermittently - FIM Service fails to start

Overview Recently, I worked on an issue where we saw the FIM Service (Forefront Identity Manager...

Author: Tim Macaulay Date: 05/22/2014

[HOTFIX] A hotfix rollup package (build 4.1.3510.0) is available for Forefront Identity Manager 2010 R2

A hotfix rollup package (build 4.1.3510.0) is available for Microsoft Forefront Identity Manager...

Author: Tim Macaulay Date: 04/16/2014

[HOTFIX] Hotfix rollup (build 4.3.1082.0) is available for the Generic LDAP connector for Forefront Identity Manager

A hotfix rollup package (build 4.3.1082.0) is available for Microsoft Forefront Identity Manager...

Author: Tim Macaulay Date: 03/18/2014

[INFO] Certificate Services fail to start after installing CM CA Modules

Issue Upon installation of the FIM CM certification authority modules the certificate services fail...

Author: Tim Macaulay Date: 03/05/2014

[Troubleshooting] GalSync MA: Exchange 2010 Provisioning - “extension-dll-timeout” error on export

Moved...

Author: Tim Macaulay Date: 02/04/2014

[Troubleshooting] Windows Azure Active Directory Connector - User Objects Not Provisioned to Azure MA Connector Space

Background This blog is about a custom FIM Solution utilizing the new Windows Azure Active Directory...

Author: Tim Macaulay Date: 02/04/2014

[Troubleshooting] Connectors: Azure Active Directory Connector: stopped-extension-dll-exception

Components FIM Synchronization Service Engine Azure Active Directory Connector (AAD Connector) :...

Author: Tim Macaulay Date: 01/28/2014

Reference: How to have bidirectional flow for EmployeeEndDate and AccountExpires

Overview Recently I worked on a scenario where we had to control the flow of data between...

Author: Tim Macaulay Date: 01/21/2014

[TROUBLESHOOTING] The Synchronization Service Engine Crashes

Symptom During the process of a Full Import on the Active Directory Management Agent there is a...

Author: Tim Macaulay Date: 12/12/2013

[REFERENCE] Installing Forefront Identity Manager Certificate Management Components on Windows Server Certificate Authority

About FIM CM installation files Initial install requires the MSI package. MSI packages are available...

Author: Tim Macaulay Date: 12/12/2013

[REFERENCE] HOW TO: PowerShell Workflow: Execute PowerShell with an account other than FIMService

Introduction: Powershell workflow activities are executed by the FIM Service account by default....

Author: Tim Macaulay Date: 12/12/2013

[Reference] Suppress SSPR Registration Page at Logon

The default behavior of the rich SSPR client is to check the user's password registration status at...

Author: Tim Macaulay Date: 12/12/2013

[Troubleshooting] SSPR Reset Portal - Error attempting to reset password

Issue A user goes to the SSPR reset portal. The questions are answered and the new password entered...

Author: Tim Macaulay Date: 12/12/2013

Reference: New Connectors Available: Windows Azure Active Directory, Generic LDAP, SharePoint User Profile Store

We are pleased to announce that we have released three new Connectors for FIM2010R2 for public...

Author: Tim Macaulay Date: 11/21/2013

[Troubleshooting-BHOLD] There is a problem with this Windows Installer package.

Problem Statement Attempting to install the BHOLD FIM Integration Module on a FIM Server with BHOLD...

Author: Tim Macaulay Date: 10/29/2013

[Troubleshooting] DirSync FIM Sync Service would not start

Background After installing the Directory Synchronization Appliance, Forefront Identity Manager...

Author: Tim Macaulay Date: 10/13/2013

[Troubleshooting] CheckSharepointFarmAdministratorWithOpenPermission

Problem Statement When attempting to install the FIM Portal, it may rol back on you with no visible...

Author: Tim Macaulay Date: 10/11/2013

[Troubleshooting] The FIM server you have entered does not exist or is not running.

Background Had an issue where the FIM Portal was being installed on a separate server than the FIM...

Author: Tim Macaulay Date: 10/11/2013

Support-Info:(SYNC SERVICE): stopped-server: msidmCompositeType or Asynchronous Processing Scenario

Stopped-Server Checklist 0x80230405 (The operation failed because the object cannot be found...

Author: Tim Macaulay Date: 09/30/2013

[Reference] ETW tracing for Microsoft.ResourceManagement.Service

Introduction Event tracing for Windows (ETW) provides a data gathering mechanism that is...

Author: Tim Macaulay Date: 09/28/2013

[Reference:] Refreshing the Interfaces of an ECMA 2.0-based Version of the Lotus Domino Connector

[Reference] Refreshing the Interfaces of an ECMA 2.0-based Version of the Lotus Domino Connector:...

Author: Tim Macaulay Date: 08/13/2013

[Troubleshooting] BHOLD Core installation: Contact your support personnel or package vendor. Custom action CA_CoreProductGetWebsiteExists script error -2147217394,

[Troubleshooting] BHOLD Core installation: Contact your support personnel or package vendor. Custom...

Author: Tim Macaulay Date: 07/30/2013

[Troubleshooting] Forefront Identity Manager Server Database could not be successfully deployed.

[Troubleshooting] Forefront Identity Manager Server Database could not be successfully deployed:...

Author: Tim Macaulay Date: 07/28/2013

[Reference] Steps to enable tracing in the Directory Synchronization Password Synchronization component

[Reference] Steps to enable tracing in the Directory Synchronization Password Synchronization...

Author: Tim Macaulay Date: 07/16/2013

[Troubleshooting] Failed to retrieve schema - Event ID 6331 - A update on the configuration of a MA or MV failed to replicate

[Troubleshooting] Failed to retrieve schema - Event ID 6331 - A update on the configuration of a MA...

Author: Tim Macaulay Date: 07/16/2013

[Reference] Quick Guide to installing BHOLD Core

[Reference] Quick Guide to installing BHOLD Core:...

Author: Tim Macaulay Date: 07/04/2013

[Reference] Setting Manager Attribute from Text-File MA

[Reference] Setting Manager Attribute from Text-File MA:...

Author: Tim Macaulay Date: 07/01/2013

[Troubleshooting] FIM CM – Attempts to Retire Smart Card Receive Error 0x80072116

[Troubleshooting] FIM CM – Attempts to Retire Smart Card Receive Error 0x80072116:...

Author: Tim Macaulay Date: 06/22/2013

[Reference] Improve FIM CM Search Performance When Using Custom or AD Attributes

Improve FIM CM Search Performance When Using Custom or AD Attributes:...

Author: Tim Macaulay Date: 06/22/2013

[Reference] Increasing the Max Pool Size in FIM CM

[Reference] Increasing the Max Pool Size in FIM CM:...

Author: Tim Macaulay Date: 06/22/2013

[Troubleshooting] FIM CM Certificate Request Error: Denied by Policy Module

FIM CM Certificate Request Error: Denied by Policy Module:...

Author: Tim Macaulay Date: 06/21/2013

[Reference] Discovery Errors

[Reference] Discovery Errors:...

Author: Tim Macaulay Date: 06/19/2013

[Troubleshooting] Install FIM Data Warehouse Support Scripts when the Data Warehouse SQL database resides on a Remote SQL Server

[Troubleshooting] Install FIM Data Warehouse Support Scripts when the Data Warehouse SQL database...

Author: Tim Macaulay Date: 06/16/2013

[Reference]: How to easily export a connector space list to excel

[Reference]: How to easily export a connector space list to excel:...

Author: Tim Macaulay Date: 06/16/2013

[Troubleshooting] Event ID 10016 - The application-specific permission settings do not grant Local Activation permission for the COM Server application

[Troubleshooting] Event ID 10016 - The application-specific permission settings do not grant Local...

Author: Tim Macaulay Date: 06/16/2013

[Troubleshooting] Password reset is successful but still throws an error 3000

[Troubleshooting] Password reset is successful but still throws an error 3000:...

Author: Tim Macaulay Date: 06/16/2013

[Troubleshooting] FIM Service upgrade fails on 'GetCertThumbprintFromName'

[Troubleshooting] FIM Service upgrade fails on 'GetCertThumbprintFromName'...

Author: Tim Macaulay Date: 06/04/2013

[Troubleshooting] BHOLD Increase session lifetime for BHOLD core

[Troubleshooting] BHOLD Increase session lifetime for BHOLD...

Author: Tim Macaulay Date: 06/04/2013

[Troubleshooting] FIM Reporting Installation using System Center Service Manager 2012 Sp1

[Troubleshooting] FIM Reporting Installation using System Center Service Manager 2012 Sp1:...

Author: Tim Macaulay Date: 06/03/2013

[Troubleshooting] FIM Reporting - A Transport-level error has occurred during Initial Sync

[Troubleshooting] FIM Reporting - A Transport-level error has occurred during Initial Sync:...

Author: Tim Macaulay Date: 06/03/2013

Next>