Hi Experts, Need some assistance. I have an Outbound Sync Rule and through that I want to write EmployeeStartDate to an attribute in AD called ExtensionAttributeC24 which is date time attribute. I tried multiple permutations and combinations of using string, custom functions but I always end up getting " Syntax-violation" on AD MA Export. Connected Data Source Error Code : 87 Connected Data Source Error: The parameter is incorrect. I am stuck here, please suggest a way through. Please note that I am using Sync Rule . Thank You, Parin Das
Add date to AD attribute ExtensionAttributeC24
MIM 2016 Support for PostGre SQL
Hi EveryOne,
I wish to know if there is anyone who has been able to integrate the MIM 2016 SP1 Generic SQL Connector successfully with PostGre SQL 9.x Database.
The configuration works, and Import works as well but I am having some issues with Export Run. Troubleshooting with PostGre ODBC Logs shows that Export activity from MIM is not recorded, while Import activities are well logged.
On the MIM Synchronization Console, the error is described as "unexpected error 0x8ffe2740" after Export run.
I am almost concluding that this issue could because PostGre SQL is not on the list of supported Databases for MIM 2016 Generic SQL Connectors.
https://docs.microsoft.com/en-us/microsoft-identity-manager/reference/microsoft-identity-manager-2016-connector-genericsql
Appreciate some advice from anyone with some experience with this or a workaround to address the issue.
Thanks
Export to Postgre
Hello,
I'm trying to export to a table in Postgre using the Generic SQL Connector but failing. The objects are created in the connector space but fails on the export run profile. Verbose logging on the connector shows it falling over after it initiates the Export base Constructor. It then generates the Exception error while exporting cs entries to the Database server with the ever helpful "Object reference not set to an instance of an object"
Has anyone successfully exported to Postgre??
TIA
Rob
FIM Outbound Synchronisation Rules - "Not Applied" Status
Hi,
I am trying to configure a process of synchronising data from an HR database through to AD using FIM 2010. At this stage we do not want to provision/de-provision users.
I had followed the procedures outlined on techNet (without defining any Management Policy Rules and Workflows - as I understood they were only for the provisioning process) however no data is being synchronised into AD. When reviewing the FIM synchronisation process I can see that all attributes are in an "Not applied" state.
The Expected Rule List attribute is being imported in the FIM Agent (within the Person object). And there are three synchronisation rules; AD Import (for Exchange information), AD Outbound, HR Import.
I am fairly new to FIM and am unsure where to begin with the troubleshooting process.
~D
Galsync not working in MIM 2016
I have an issue with Galsync in MIM 2016 where I encountered error when Export profile is run
In one forest, there is a parent and child relationship. Let named it as rootA and childB concept while the other is a single domain called C.
MIM 2016 resides in childB environment and running in windows 2012R2.
Exchange 2016 is installed in both childB and C domains.
The export profile has a status stopped-extension-dll-exception when it is run under domain C management agent.
I have done port query from MIM 2016 server to domain C (port 53, 88, 135,389) and domain C's Exchange 2016 server (port 80 and 443).
I have also checked the exhange powershell URI to domain C exchange which is http://exchange2016.domainC.com/powershell.
I have also read from some online forums which stated that a one-way trust from domain C to domain childB is needed while others said no.
Please help if you guys got any suggestions. Thanks
PAM SAMPLE PORTAL - Justification (Required)
Hello Experts,
Is there any way to force Justification Required instead of Optional in PAM Sample Portal or MIM Portal?
Oops! Something went wrong. The ajax calls failed, please contact your administrator. Status code: 406. Error: Not Acceptable.
Getting below error sometimes when using PAM Sample portal.
Oops! Something went wrong. The ajax calls failed, please contact your administrator.
Status code: 406.
Error: Not Acceptable.
Can anyone share the solution to fix it?
Thanks!
How to call a class library function from a MPR workflow?
Hi,
I have a function on a class library. That function/method is being called in a FIM attribute flow Rule Extension.
Now I would to also use that same function on a MPR workflow. How can I do it?
Thanks,
JD
No mapping between account names and security IDs was done
we are getting lots of below errors in MIM sync for SharePoint 2016. Any idea how it could be fixed.
No mapping between account names and security IDs was done at System.Web.Services.Protocols.SoapHttpClientProtocol.ReadResponse
Unrecognized Guid Error
Hi,
I am trying to join the MA via FIM Synch Engine Console. However, After I join the MA and Click on Lineage TAB and then Metaverse Object properties button i am getting this Error "Unrecognized GUID Format".
Can anyone provide any suggestion on how fix this?
I think it could be because of AD GUID and METAVERSE GUID are not matching. This is a group which I am trying to fix so it has members.
Below is the Screenshot of the error.
MIM And ADFS integration
Hello Gurus,
I would like to know about how can we provide SSO for a MIM portal exposed to external users via Internet. An admin will be creating the users in MIM portal and will be synced to AD. The users will be using there AD credentials for login to MIM portal. The AD domain is having ADFS. Can somebody guide on this or provide which link/blog can point to the right direction.
MIM 2016 Synchronization Service Error
Hello , plz can anyone help me with errors :
when i run full import = success but full synch i got this error :
status : completed-sync-errors details :sync-rule-required-attr-not-foundand in synchronization rule attribute :connectedObject Type
i verified the portal and they import many users but without any informations .
also Export : ERROR : Failed-modification-via-web-services
thnk u in advance
Portal user property - how to revert
Hi,
I have a boolen property on resource type user in the FIM portal and I need to do one of this two options:
- rename the property and invert the boolean value
- create a new property (with convenient naming) and make it have opposite value of the current used prop.
Note: I have 6000 users and only 500 have the property with value set.
which option do you recomend and how can that be done (MPR+WF, PS,...)??
Many thanks,
JD
MIM Synchronization to ADAM - CN update deletes and recreates user
Hello everyone,
Does anyone know why when i change a dn/CN for a user in my AD, MIM Synch deprovisions and reprovisions the user in my ADAM MA ? is there a way to avoid it ?
this is causing issues as my user is being deleted from the groups he belonged to (local ADAM created groups)
Thanks!
Hicham
Hitch Bardawil
MIM 2016 Synchronization service installation, key is not accepted for existing FIMSynchronizationService database
In the possessor of migration FIM2010 R2 to the set of new servers and MIM2016 I encountered the issue with the backup key set from my existing installation.
Here is the error message: "The Microsoft Identity Manager Synchronization Service setup wizard has detected an invalid backup key set. You must provide a valid key set."
The Synchronization database has been restored from the production server. I tried using the set of key from the initial installation and also exporting the fresh backup key set.
The new environment is on Windows server 2019, SP2019 and SQL Sever 2017. Also a new set of MIM service accounts is used.
Not sure what could be causing the problem?
Thank you.
with MIM 2016 i can deploy without AD, only with azure AD
Hi, i try deployment MIM 2016 service and portal, but not access a portal. onlu send error 1000web page.
I try to fix it but I do not solve it, the online fixes do not solve my case although I have the same events id.
any idea??
Need to remove MIM manually
Hi,
We need to remove MIM manually as all other attempts have failed. Don't even ask ;)
Is there a document that outlines which Folders and Registry Keys we should delete, so as to clean up a Windows Server...so we can install MIM Service/Portal from scratch again?
Otherwise, we'll just re-deploy the VM.
Thanks,
SK
Issue in Accessing MIM Service portal through iPAD
Hi All,
I am facing an issue with accessing MIM Service portal from iPad. When I search for an user and select the user, a screen with all the attributes popup, but I am unable to scroll through the details.
Upon checking this is an common issue in accessing any popup through iPad. Is there any solution or Workaround for the same.
FYI, The scroll is working within the popup when accessing from any Android device.
Please help me with this!!
Thanks in advance!!
keeping history of values in an MA
I'm trying to figure out how to keep a history of mailNickname values for accounts so they never get re-used. I currently have a SQL database of mailNickname values and their associated accountName values. Due to name changes, etc., some accountNames have multiple mailNickname values. While I've not written any code for it yet, it doesn't seem like join resolution extension code (in the event that a person returns to company after hiatus) would be particularly difficult if I have a field that could be used for precedence. What I'm having difficulty finding information on is how to do an update on mailNickname and still keep track of the the old value, since I'm assuming that MIM is going to want to update the existing record instead of creating a new one with a higher precedence. I'm trying to stick with a SQL connector rather than resorting to a PowerShell connector (which I've not had much luck with in the past). Any thoughts on how I might do this?
-Robert
IMVSynchronization.Provision vs MASynchronization.MapAttributesForExport
Hi,
I inherited a FIM solution with custom code on the mentioned interfaces.
I see csentry("xyz") being set on both extensions. When does each one runs?
Is IMVSynchronization.Provision used only for first time provisioning of the resource?
Thanks,
JD