18The Sync Engine runs best on Clean Data Unique identifiersValidated source dataConsistent formattingFree text avoidedMinimise double-entryPicture: Library of Virginia, JA Bonsack patented cigarette rolling machine
19Find the Source Per object type or object sub-category: One Object source,One Attribute source for each attribute.Make sure everyone understands where the sources are!Photo: findaspring.com
20Clean up existing accounts Account identificationRemove old accountsMove unmanaged accounts out of scopePhoto: Microsoft ClipArt
21Get a full production data set for Dev and Test Rules must be able to deal with real, not idealised, dataJoins and data cleaning analysisIdentify exceptionsUnderstand scalePhoto: gking.harvard.edu
26Scenario HR/AD/FIM Portal Sync already in place. Cloud-based subscriber solution “ProjectSTAR” to be adopted for all project management tasks.Two-tiered subscription:Project Manager: $250 pcmProject Resource: $25 pcmAccount management options:Manually create cloud account with separate password, and manually assign license type; orFederated access with automatic license assignment.
27ProjectSTAR FIM Portal ADFS FIM Sync HR AD Identifier Is Authenticated Application RoleFIM PortalCSVADFSFIM SyncADHR
28Using FIM to integrate a cloud application DemoUsing FIM to integrate a cloud application
29ROI realised on this integration… We already know who our users are – so we can tell the application provider straight away,Rapid deployment!Manage licensing through an internal PortalControl costs!No new interface to learn!Ensure Federation tokens contain correct informationMeet security and compliance requirements!Allow self-service and delegated approvalMinimises admin tasks for the IT department!
30Architect a Great IAM Solution with FIM 2010 R2 Understand the environmentDevelop for automationBe realisticPicture: murrayriver.com.au
31Related Content SIM423 FIM Best Practices – Technical Deep Dive Exam Forefront Identity Manager 2010, ConfiguringContact Me Later By…Blog: