Support-Info: Criteria Based Groups (Negative Conditions vs. Positive Conditions)

UTILIZED PRODUCTS Microsoft Identity Manager 2016 Service Pack 1 (4.4.1302) SQL Server 2012 BLOG PURPOSE: Discussion of Criteria Based Groups and the difference between a negative condition vs. a positive condition. SCENARIO: Use of Negative vs Positive Conditions Recently, I worked on an issue concerning the use of Negative Conditions within a Criteria Based Group…

Tuning FIM Service MA Export Processing

An introduction to FIM Service MA export configuration, system event requests, and FIMService partitioning.  This applies to both FIM 2010 R2 and MIM 2016. Credits: Thank you to David Steadman for his collaboration in this post. Introduction When working with the FIM Service management agent, it's possible to get into a situation where an export…

[SUPPORT TIP] How to delete a single group from the Identity Management Portal using PowerShell

PURPOSE The purpose of this blog is to illustrate how to delete a single group in the FIM Portal. SCRIPT #———————————————————————————————————- set-variable -name URI -value "http://localhost:5725/resourcemanagementservice' " -option constant #———————————————————————————————————- function DeleteObject { PARAM($objectType, $objectId) END { $importObject = New-Object Microsoft.ResourceManagement.Automation.ObjectModel.ImportObject $importObject.ObjectType = $objectType $importObject.TargetObjectIdentifier = $objectId $importObject.SourceObjectIdentifier = $objectId $importObject.State = 2 $importObject |…

[FIM Portal Access] The server principal is “S-1-9-3….” is not able to access the database. “FIMService” under the current security context

Hi Everyone! Over the past couple of days we have been working on an issue related to portal access where the root cause was not immediately evident and took some digging to get to. Just to clarify the overall problem; when attempting to access the portal we were seeing a pretty common error from FIM/MIM…

[FIM SYNC RULE – INFO] Dealing with the Null Function in a Sync Rule

Hello.  Tim Macaulay here from the FIM Support team here at Microsoft.  Recently I came across an issue that I felt needed a bit more clarification in how it works currently. Recently I worked an issue where FIM was recognized as deleting the value from an attribute on outbound flow to Active Directory.  Reviewing the…

[SUPPORT TROUBLESHOOTING] Forefront Identity Manager Synchronization Service Not Starting – Error creating com objects

PROBLEM SCENARIO In a recent issue that i was working, the Forefront Identity Manager Synchronization Service was failing to start.  In review of the Application Event Log the following was received.   APPLICATION EVENT LOG The server encountered an unexpected error and stopped. "BAIL: MMS(3176): d:\bt\37281\private\source\miis\shared\maxml\cdext.cpp(416): 0x80070057 (The parameter is incorrect.) BAIL: MMS(3176): d:\bt\37281\private\source\miis\shared\xmlpe\xstack.cpp(405): 0x80070057…