What’s FIM all about?. Agenda What is FIM Why are we implementing FIM How is FIM related to Office 365 What will FIM do How does FIM differ from ILM (current.

Slides:



Advertisements
Similar presentations
Click to edit Master title style ManageEngine ADManager Plus 6 What's New? ADManager Plus offers: AD Automation | AD Management | AD Reporting | AD Delegation.
Advertisements

ADManager Plus Simplify Your Active Directory Management.
UTILIZING WITH ITA. offers an entire suite of benefits for you and your students. You can also set up s for the purpose.
Identity & Infrastructure Applications Development & Release Plans Tim Purkiss.
© University of Reading Go to View > Master > Slide Master to put your unit name here 20 April 2014 IT Services Identity Management.
CRM 3.0 Whats New in Microsoft CRM 3.0 – Technical.
SP Business Suite Deployment Kick-off
Florida CRD Updates April 1, 2011 Telamon Corporation.
Whether you like it or not! Importance increases significantly with SharePoint 2013 Pretty much every investment area relies on Profiles for core.
1111 Superior Avenue Suite 310 Cleveland Ohio Tel: Fax: Identity Management.
Copyright Tom Parker, Ron DiNapoli, Andrea Beesing, Joy Veronneau This work is the intellectual property of the authors. Permission is granted for.
and Collaboration Services Office 365 Off-boarding TIF-CSI December 2014.
Princeton University Business Units and Set IDs Enhancing Security and Streamlining Data Input Kristina Miller, Systems Manager, Office of the Dean of.
Technology Steering Group January 31, 2007 Academic Affairs Technology Steering Group February 13, 2008.
Virtual techdays INDIA │ august 2010 Managing Active Directory Using Microsoft Forefront Identity Manager: Amol R Bhandarkar │ Tech Specialist –
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 9: Implementing and Using Group Policy.
Chapter 9 Chapter 9: Managing Groups, Folders, Files, and Object Security.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 9: Implementing and Using Group Policy.
Administering Active Directory
Hands-On Microsoft Windows Server 2003 Administration Chapter 3 Administering Active Directory.
Technology Steering Group January 31, 2007 Academic Affairs Technology Steering Group February 13, 2008.
IT:Network:Applications.  Exchange Recipients  Defining Addresses  Managing Mailboxes  Mailbox Types  Assigning Permissions.
Guide to MCSE , Enhanced 1 Activity 9-1: Creating a Group Policy Object Using the MMC Objective: To create a GPO using the Group Policy Object Editor.
LDAP Management at Stony Brook Making Active Directory and PeopleSoft Work Together SUNY Technology Conference Rochester, New York Monday June 12, 2006.
#CONVERGE2014 Session 1304 Managing Telecom Directories in a Distributed or Multi-Vendor Environment David Raanan Starfish Associates.
Microsoft Identity and Access Solutions Market Trends and Futures
IT:Network:Applications Fall  Running one “machine” inside another “machine”  OS in Virtual machines sees ◦ CPU(s) ◦ Memory ◦ Disk ◦ USB ◦ etc.
NERCOMP Managing Campus Affiliates Managing Campus Affiliates Faculty? Student? Faculty? Student? Staff? Criss Laidlaw Director of Administrative.
9.1 © 2004 Pearson Education, Inc. Lesson 9: Implementing Group Policy in Windows 2000 Server Exam Microsoft® Windows® 2000 Directory Services Infrastructure.
Auditing Logical Access in a Network Environment Presented By, Eric Booker and Mark Ren New York State Comptroller’s Office Network Security Unit.
MCTS Guide to Configuring Microsoft Windows Server 2008 Active Directory Chapter 3: Introducing Active Directory.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 9: Implementing and Using Group Policy.
© 2011 PLANET TECHNOLOGIES, INC. Extending User Profiles with Line of Business Data Patrick Curran, MCT FEBRUARY 24, 2013.
Group Management at Brown James Cramton Brown University April 24, 2007.
The FIM Team User Group Proudly sponsored by November 2014.
RMsis – v Simplify Requirement Management for JIRA.
Active Directory Administration Lesson 5. Skills Matrix Technology SkillObjective DomainObjective # Creating Users, Computers, and Groups Automate creation.
Protecting Privacy of Institutional Data Being aware of and respecting student, faculty and staff requests for privacy of personal data in LAN/NOS environments.
Riva Managed Identity Integration for Active Directory and Novell ® GroupWise ® Aldo Zanoni CEO, Managing Director Omni Technology Solutions
Virtual techdays INDIA │ august 2010 virtual techdays INDIA │ august 2010 Moving/Co-existing your messaging platform to the cloud with Exchange.
Office of the Vice Provost for Information Technology Confidential Administrators’ Forum Automated Account Deactivation for Staff at Rice Nov 9, 2010.
Chapter 8 Configuring and Managing Shared Folder Security.
ITS – Identity Services ONEForest Security Jake DeSantis Keith Brautigam
Federico Guerrini IDA TSP, EMEA Incubation Team From Identity Synchronization to Identity Management.
Employee Self-Service. Agenda History PeopleSoft at Queen’s PeopleSoft Upgrade What is MyHR? Benefits of Self-Service Challenges Questions.
MCSE Guide to Microsoft Exchange Server 2003 Administration Chapter Three Managing Recipients.
Operating Systems Concepts 1/e Ruth Watson Chapter 9 Chapter 9 Accounts and Groups Ruth Watson.
Chapter4 Part2. User Account Management Once Active Directory is installed and configured, you enable users to access network servers and resources through.
Designing Group Policy Planning Deployment of Group Policy Troubleshooting Group Policy.
GROUP POLICY. Group Policy is a hierarchical infrastructure which allows systems administrators to configure computer and user settings from a central.
BE-com.eu Brussel, 26 april 2016 EXCHANGE 2010 HYBRID (IN THE EXCHANGE 2016 WORLD)
Live. learn. work. play Superior Ave E Suite 310 Cleveland Ohio Tel: Fax:
UConn Libraries Office 365 Mail Migration
BIM 360 Glue Migration to BIM 360 Account Administration (HQ)
Microsoft - Managing Office 365 Identities and Requirements
Timeline.
HUAWEI eSight Secure Center Feature Introduction
Rutgers Connect / O365 – Migration Mini-KickOffs
ACTIVE DIRECTORY ADMINISTRATION
Active Directory Administration
Braindumps
PSJA AUTOMATION WORKFLOW AND LESSONS LEARNED
CCS Services – CCS-ITEE-NI&S Advisory Subcommittee Spring 2018 Update
Managing Digital Identity
CCS Services – DCSS Spring 2018 Update
Migrating to Office 365 from Google mail and exchange
Managing Enterprise Directories: Operational Issues
University of Northern Colorado
UserCreator User management for schools
Presentation transcript:

What’s FIM all about?

Agenda What is FIM Why are we implementing FIM How is FIM related to Office 365 What will FIM do How does FIM differ from ILM (current solution) What does FIM mean to administrators What does FIM mean to users When will FIM be implemented

What is FIM? Microsoft Forefront Identity Manager Identity Management Applies business rules to provision and de-provision BLUE Accounts Recognizes HRMS, Banner, and Guest table as authoritative source systems Manages accounts for alumni and retirees Manages address lifecycle Better manage guest accounts with and without

Why are we implementing FIM Product upgrade to ILM Has been running at CU for over 3 years Office 365 required changes to accounts to AD Fixes logic in ILM that never worked Better manages to deletion of abandoned accounts Adds functionality that was not included in ILM Centralizes logic in FIM Simplifies complex licensing requirements from Microsoft Enable to University to offer to alumni and retirees

How is FIM related to Office 365 Office 365 requires accounts to be configured in a specific way FIM writes and manages attributes in AD required for Office 365 FIM and Office 365 can exist without each other FIM streamlines management of AD accounts, Microsoft licensing, and mailbox management Students have migrated to Office 365 without FIM, but we did have to make manual adjustments to accounts to make this work. These manual adjustments could not be managed long-term FIM makes it easier to manage accounts in the manner required by Office 365

What will FIM do? Primarily FIM creates, manages, disables and deletes AD accounts in accordance with business rules. Creates hidden accounts for accepted students Unhide accounts when student enrolls Maintains student account based on Banner data Manages guest accounts based on start and end date Manages employee accounts based on HRMS data Manages all changes to students, employees, and guests Maintains specific attributes required by Office 365

How does FIM differ from ILM ILM is fed by three ‘feeds’ so it does not know if a person is both a student and employee FIM is fed by a single ‘feed’ with with data about students, staff, and guests ILMs Logic is contained in ILM and in the ‘feeds’ it gets from HR, Banner, and Guests FIMs logic is contained within FIM FIM will do the same things that ILM does, just better

What does FIM mean to administrators? ILM created new users in MigratedUsers OU and adminstrators could move the account to their own OUs Resulting in user objects spread inconsistently across the AD FIM will move and create all users in the UserObjects OU Microsoft best practice for AD management Group Policies Objects applied to user accounts must be updated GPOs applied to computer objects will not be affected All other AD permissions and clean up have nothing to do with FIM

What does FIM mean to users? FIM will handle changes to user much better than ILM Ex. When someone changes their name with HR the name change will be processed by FIM and a new address will automatically be created Manages the AD account throughout all stages in the lifecycle of a user FIM allows alumni and retirees to keep their AD accounts FIM allows for addresses to be tied to an individual just like NetID If a former student comes back to CU years later as a faculty member they will get their same address

When will FIM be implemented? Soon We are in the final stages of testing Project started last Fall We had hoped to get FIM turned on in time for graduation Admissions offices and Alumni offices create unique challenges on the activation of FIM Once FIM is live all new account will be created with mailboxes in the ‘cloud’

Q&A Any questions?