Peter's profileIdentity UndergroundBlogLists Tools Help

Blog


    11/12/2009

    Forefront(TM) Identity Manager 2010 RC1 Demo Virtual Hard Disk Image

    As announced on the FIM 2010 technet forum : the FIM 2010 RC1 VHD is available for download.
    It was posted the Microsoft Connect site for FIM 2010 first.
     
    Here it is on the MS download site.

    Winsec event - 26/11/2009 : Microsoft NAP (Network Access Protection) en Cisco NAC (Network Admission Control)

    See you at the next Winsec (Microsoft Security User Group Belgium) event:

    Microsoft NAP (Network Access Protection) en Cisco NAC (Network Admission Control), on Thursday 26th of November 2009, with the valued cooperation of event sponsor Cisco Belgium.

     

    Location

    :

    Cisco Belgium Office, Pegasus Park

    Address

    :

    De Kleetlaan 6A, 1831 Diegem

    Time

    :

    from 18h00 to +/- 21h30

    Sandwiches and beverages will be provided.

     

    The agenda will be:

    18:00 - 18:30 Doors open and networking opportunity (with sandwiches and beverages)

    18:30 - 18:35 Welcome and introduction – Peter Geelen (Winsec)

    18:35 - 19:35 Microsoft Network Access Protection - Jan De Clercq (Winsec)

    19:35 - 19:45 BREAK

    19:45 - 20:45 Cisco Network Access Control - Stefan Avgoustakis (Cisco)

    20:40 - 21:30 Q&A + Social networking

     

    To subscribe: send an email to winsec@winsec.be.

     

    The route description (http://www.cisco.com/web/BE/pdfs/contact_plan.pdf):

    Download invitation : NL - FR - ENU

    10/22/2009

    System error creativity on ILM 2007

    image

    Thanks, Pieter!

    9/30/2009

    FIM 2010 RC1 released

    Forefront™ Identity Manager 2010 Release Candidate 1 has been released.
     
    The download is here!
     
    9/8/2009

    ILM ERPMA with SAPRouter

    Recently I helped out on an ILM setup with SAP.

    The connection was using a SAP router.

    This is not the same a SAP Message server.

    Except for the important difference in functionality, the ILM ERPMA help is not completely clear on the method to connect to these type of SAP Servers.

    The ERPMA in ILM (and its configuration tool) needs a connection string to communicate with the SAP server.

    Below you’ll find some interesting links with information on the SAP connection string:

    The last link provides an interesting insight on the connection string for connecting to a SAP Router.

    This document discusses a similar issue.

    The ILM ERPMA help and different SAP related documents offer 2 types of structure for the SAP connection string.

    1. (/H/.../S/.../W/...)
    2. ASHOST=XXXXX R3NAME=XXX GROUP="xxxx" CLIENT=NNN SYSNR=NN

    But after some research, tt became clear, that you also can use a mix of them, like

    ASHOST="/H/saprouter/H/sapapplicationserver" R3NAME=XXX GROUP="xxxx" CLIENT=NNN SYSNR=NN

    If no group available, it is defaulted to public. No need to put it in the connection string.

    This document confirms this setting

    http://download.oracle.com/docs/cd/E12825_01/epm.111/pr_developer_vol3.pdf

    More specific, check the section: single hop SAPRouter connection

    Additionally you might need to create a file (in c:\Windows) with the name sapmsg.ini

    In this sample they’ve put the following entry in the file (where XYZ is the ini of the system):

    Message Server

    XYZ=/H/100.200.300.400/H/100.200.300.401

    Also , if you need more detailed information while troubleshooting the ERPMA, enable verbose logging:

    -> Enabling and Disabling SAP RFC and CPIC Trace

    ILM 2007 FP1 Developer Edition?

    When you plan to upgrade your ILM server to another version, carefully check the supported upgrade paths on the ILM 2007 FAQ at MS: http://www.microsoft.com/windowsserver/ilm2007/faq.mspx#EJCAC

    A while ago I was updating a ILM 2007 server, used for a proof-of-concept, to a test & development server.

    I used the setup files to reinstall the new version on top of the old (eval) software.

    Then I got this message:

    ILM 2007 FP1 Developer Edition

    I didn’t know ILM 2007 had a “developer edition”…

    After a check with PSS: It doesn’t.

    But it’s just a strange way to tell you that you’re not following the right upgrade path

    9/2/2009

    New Belux Technet Livemeetings – H2 2009

    Technet Live Meetings (Dutch / Nederlands)

    *   Secure Web Access with TMG - 8 september 2009 (NL – register here)

    *   Transitioning from Exchange 2003-Exchange 2007 to Exchange 2010 - 17 september 2009 (NL – register here)
    *   What's new in System Center Configuration Manager SP2? - 29 september 2009 (NL – register here)
    *   Unified Communications - 6 oktober 2009 (NL register here)
    *   What's new in Windows Server 2008 R2 Active Directory - 20 oktober 2009 (register here)
    *   Data Integration using SQL Server 2008 Integration Services: Overview - 29 oktober 2009 (Register here)
    *   What's new in System Center Configuration Managers SP2? - 19 november 2009 (register here)
    *   TechNet event: Meer informatie over Windows 2008 R2 en Windows 7 Remote Desktop Services - 21 september 2009 (NL – register here)

    For the French Speaking

    *   Transitioning from Exchange 2003-Exchange 2007 to Exchange 2010 - Septembre 17, 2009 (register here)
    *   What's new in System Center Configuration Manager SP2? - Septembre 29, 2009 (register here)
    *   Unified Communications - Octobre 6, 2009 (register here)
    *   What's new in Windows Server 2008 R2 Active Directory - Octobre 20, 2009 (register here)
    *   Data Integration using SQL Server 2008 Integration Services: Overview - Octobre 29, 2009 (register here)
    *   What's new in System Center Configuration Managers SP2? - Novembre 19, 2009 (register here)
    *   En savoir plus sur Windows 2008 R2 et Windows 7 Remote Desktop Services - 21 septembre 2009 (register here)<>

    Watch TechDays'09 video's & experts interviews on www.techdays.be

    8/17/2009

    Event: Securing Hyper-V (joint event of MVUG with the Winsec User Group)

    Securing Hyper-V (joint event of MVUG with the Winsec User Group)

    Date and time: THURSDAY 1st October 2009, start at 18u30 until around 21u00.
    Event Location:
    Microsoft BELUX
    - Corporate Village - Leonardo Da Vincilaan 3 - B-1935 Zaventem
    Entry: Free

    Focus: with the rising popularity of virtualization, it is time to start thinking about how you secure your virtual environment. During this presentation, best practices for securing a virtual environment based on Microsoft’s Hyper-V are discussed, both from the angle of the Hyper-V host as from the angle of the guests. Further it will be shown how you can use Authorization Manager (AzMan) to provide role-based access control for Hyper-V, separating host administrators from guest administrators and precisely delegating control to them, which will also be shown using System Center Virtual Machine Manager (SC VMM).

    To subscribe: send an e-mail to winsec[at]winsec.be.

    More info : http://www.winsec.be or http://www.mvug.be

    8/14/2009

    TEC 2009 - presentation free online

    A while ago Quest posted some of the TEC 2009 presentations on YouTube.

    In the ILM space, the ones below are certainly to bookmark.

    YouTube - Human Behavior: the Other 90% of the Problem
         

    YouTube - ILM 2 from IT Pro Perspective
        

    YouTube - Provision OTP through ILM 2 or Microsoft Forefront Identity Manager 2010
       

     

    8/13/2009

    ILM Resource Kit vs Windows 2008

    If you are planning to use the MIIS Resource Kit tools with ILM 2007 (FP1) on Windows 2008...
    A small hint: run the tools in Windows 2003 compatibility mode.

    If not, you might run into some unpleasant surprises (like applications hanging...)
     
    Kind regards,
    Peter

    Winsec event recording on FIM 2010

    If you didn't make it to the Winsec user group event on FIM 2010 / ILM "2":, or if you wish to review the presentation & demo, check the links below:
     
    The post on the Winsec site is here.
     
     

     

    Direct link Part 2: http://www.microsoft.com/belux/technet/nl/chopsticks/default.aspx?id=1180

     

    interview Winsec @ Techdays Online

    They said, never look at yourself when you got recorded.
      
    But the Microsoft video crew passed by the Winsec booth, no way back.
     

    Direct link: http://www.microsoft.com/belux/technet/nl/chopsticks/default.aspx?id=1196

    (Sorry, can't get the embedded link posted on Live Spaces)

    7/1/2009

    MVP ILM 2009

     
    I'm proud to announce that I've received the Microsoft MVP award on Identity Lifecycle Manager, the second year.
     
    It's a great honor.
    I wish to thank all people that supported me, the community, the Winsec companions, fellow MVPs, my colleagues, my company, ...
    And especially my wife Katrien.
     
    It made it possible to keep up the good work!
     
    Thank you!
    6/30/2009

    Brucon Security Conference - Discount for Winsec Members

    Brucon is an annual two-day conference by and for the security and hacker community. The conference offers lectures and workshops on a multitude of topics like computer security, privacy, information technology and its implications on society. It takes place at the Surfhouse in Brussels, Belgium on September 18 and 19.

    Besides presentations on IPv6 security, MPLS hacking, Cyberwarfare, Social engineer techniques, Cloud Computing Security, Open source Information gathering, Dangers of Social networks, and much more, there will be interesting workshops and other events. More information about the program is available on
    www.brucon.org. The content will be updated as time progresses so keep an eye on our website.

    Visitors are welcome to actively contribute to the conference. Do you have a topic to discuss like a tool, a website, your blog or any project that could be interesting to others, please submit it as a lightning talk on our wiki. Do you any suggestions or questions about our event? Feel free to contact us at
    crew_at_brucon.org.

    Normal registration fees (including VAT) for BruCON are:

    • 180 Euro early bird (prior to July 1st 2009)
    • 250 Euro 1st of July - 31st of August 2009
    • 300 Euro afterwards and at doors

     Students fees²:

    • 50 Euro early bird (prior to July 1st 2009)
    • 90 Euro afterwards and at doors

    1 Early birds can win a security course, check www.brucon.org for more info. Early bird payments must be received before 1st of  July to be applicable.


    ² Only applies to the first 50 students. After this, normal conference prices will apply.

    WINSEC members get a 10% discount on conference tickets using promo-code.

    (Request the promocode at info(at)winsec.be).

    Additionally, BruCON is offering the following three courses from renowned trainers:

    • Crash course in Penetration Testing by Joe McCray, and Chris Gates
    • Web 2.0 Hacking: Attacks and defenses by Shreeraj Shah
    • Social engineering techniques for IT Security professionals by Sharon Conheady

    See the Brucon website for more information.

    MS ILM Forum Greatest Hits launched

    Source: MS Identity Lifecycle Manager forum

    "This forum is a great repository for valuable information that enables you to learn about and troubleshoot ILM.
    In an effort to provide you with a faster, easier, and more valuable forum experience, we have created the Greatest Hits Collection.
    The Greatest Hits Collection is a set of technical articles that are developed to address the following three key areas:

    • Discoverability – For common questions, you should be able to find your answer quickly and easily without the need to read several related posts to find authoritative information.
    • In-Depth Content - There are questions that require more than just a one- or two-liner as response.
    • Dependability - Strategic questions require a single authoritative response, which must be technically relevant and accurate, not an individual’s opinion.

    Each Greatest Hit Article is a result of a collaborative effort to develop helpful technical information.
    While written by an ILM expert, each article has been reviewed (prior to its release) by a group of identity management specialists from Microsoft and thought leaders from this community to ensure technical accuracy and relevancy of the content.
    The content of the Greatest Hit Articles spans a broad range of areas from general information about how to approach an identity management related problem to technical descriptions of features.
    Greatest Hits articles are filling a gap between a typical forum post and Microsoft’s official core documentation."

    I'm proud to announce that I've added a Greatest Hits Article to the list: How to get the maximum return on your forum question.

    Thanks to all the people who supported me and who provided valuable feedback.

    5/12/2009

    Download updated ILM "2" RC virtual hard disk available

    A new image of the Identity Lifecycle Manager "2" RC Demo Virtual Hard Disk has been published at:
     
    Enjoy!
     
    (*20/5/2009 download link is updated)
    5/10/2009

    Community Day 2009: Register now!

    The new Community Day website is alive and kicking!

    Do not miss out on the biggest joint event of this year: Community Day 2009!

    Eleven Belgian Microsoft User Groups combine their efforts to organize this unique networking and knowledge sharing event. A unique opportunity to learn about Microsofts latest developments and technologies like Exchange 2010, Silverlight 3, Visual Studio 2010, SQL Server 2008, Windows 2008R2, Powershell V2, Forefront Identity Manager 2010, XNA 3.1. and OCS R2.

    The Community Day 2009 will take place on Thursday 25th June 2009 in Utopolis, Mechelen, where we will bring together 300 IT Pros and developers.

    The Community Day 2009 is supported by BESUG, BIWUG, IT-Talks, MVUG, Pro-Exchange, SCUG, SQLUG, VBIB, Visug, WinSec, XNA-BUG.

    Register now for free for this all day event on our website!

    Yours sincerely,
    on behalf of The Community Day team

    5/4/2009

    TechED 2008 US DVD rescue

    At latest Winsec user group events and the recent Techdays, there were some TechED DVD sets to give away.
     
    Running the DVDs, you might run into some known issues with the Silverlight player.
     
    Or this Technet DVD Map to download.
     
     
     
     
    4/30/2009

    Winsec UG event : 19/05/2009 – ILM “2” / FIM 2010

    On Tuesday 19th of May 2009 Winsec organizes an event on the next generation identity lifecycle manager.

    Lately there has been a lot of news and lots of changes concerning MS Identity Lifecycle Manager. In a short presentation and in a practical, interactive, demo we will show you around, guided by some practical scenarios.

    What has changed since MIIS 2003 and ILM 2007? What are the new ILM components? Which resources are available to get started? How to implement out-of-the box scenarios?

    All presented to you by the only 2 Belgian MVPs on ILM.

    You’re invited to join us for the event and for the drink afterwards.

    Seats are limited.

    This exclusive event is sponsored by Traxion Belgium (http://www.traxion.com)

    • Date: 19/05/2009
    • Doors open: 18h30
    • Start: 19h00
    • End: 21h30
    • Food & beverage provided.

    Location: Battenbroek Clubhouse, Battenbroekstraat 1, 2800 MECHELEN.

    Route description: http://www.brasserie-battenbroek.be/route.php

    To register, send an e-mail to: info(at)winsec.be. (Important: You need to remove the brackets in the address before sending the mail)

     

    Be there!