OIM - pass thru authentication?? Possible?

Hi all,
While I am intending to use OIM 9.0.3 for provisioning/de-provisioning. I am thinking of some sort of pass through authentication to the existing AD, thus, my users do not have to remember another set of username/pw.
Is that at all possible? If not, what would be your approach? Having OID running behind (that is not in the plan right now)? Does even OID have pass through type capability like Sun Java DS?

Thanks kevinp.
If I understand your suggestion correctly, rather than passing the authentication responsibility to AD, it is indeed staying within OIM. The only difference is that pwd sync just saves the users from remembering two sets of username/pwd. Correct?

Similar Messages

  • Pass-Thru Authentication OIM 11g

    Is there any documentation on configuring pass-thru authentication in OIM to an AD or LDAP instance?
    Thanks

    Apparently, this does not exists for OIM. I need to put a OAM instance in front of OIM in order to authenticate against AD

  • Pass thru authentication error message customization

    Dear All,
    I'm trying to customize the error messages displayed during the authentication failure.
    Users are authenticated against the AD i.e. pass thru authentication.
    I'm not able to customize the error messages.
    I have searched in WPmessgaes and RAMessages file. no success.
    following is error:
    AD (Windows Active Directory):Error: missing required authentication information: 'password'
    new error msg that I want to display:
    Error: Invalid login credential, please try again.
    Kindly share your ideas and experience on same.
    Thanks in advance.
    Cheers:
    Amar

    We've had that problem. We opened a ticket with Sun and they confirm it as bug in 7.1.

  • Pass-thru authentication against AD

    Hellos,
    When using pass-thru authentication against the AD resource, the manual suggests that the user enters the complete DN of his/her AD account as the IDM login ID!!
    Can it be arranged so that the user only needs to enter the samaccountname and not the complete DN.
    I mean, samaccountnames are as unique as DNs. A simple lookup to get DN (if samaccountname is found) is all that is needed.
    When shown to customers, they express horror when it is suggested that to login to IDM they have to type 50 odd characters!
    Does any customer willingly USE pass-thru where they have to (correctly) type in such a lengthy string.

    The answer is yes, you can use samaccountname. Your deployment may necessitate additional configuration to make this happen.
    In our case, the samaccountname is the same as the IDM accountId. When the user logs in, IDM finds the user object and then uses the password against the AD account linked to the user.
    If the accountId and samaccountname are not the same, then you could use a Login correlation rule to find the IDM user which has that samaccountname.
    As far as anyone using the full DN to login with, I've never seen anyone do it. Our users certainly wouldn't stand for it, and I think that's the case most places.
    Jason

  • PAss thru authentication from solaris 2.9 proxy 36sp2 - iws 6 sp5

    hi,
    we have a scenario where user's are authenticated at the proxy, then when they access a protected web dir they are authenticated again (the auth window pops up etc)..
    given that both these authneticate from the same directory is it possible to pass thru the authentication so that the window does not pop up twice?
    thanks

    Hi
    This as per the HTTP/1.1 RFC (RFC2616)
    The Connection general-header field allows the sender to specify options that are desired for that particular connection and MUST NOT be communicated by proxies over further connections.
    The Connection header has the following grammar:
    Connection = "Connection" ":" 1#(connection-token)
    connection-token = token
    HTTP/1.1 proxies MUST parse the Connection header field before a message is forwarded and, for each connection-token in this field, remove any header field(s) from the message with the same name as the connection-token. Connection options are signaled by the presence of a connection-token in the Connection header field, not by any corresponding additional header field(s), since the additional header field may not be sent if there are no parameters associated with that connection option.
    Read the following at
    http://www.w3.org/Protocols/rfc2616/rfc2616-sec8.html#sec8.1.3
    and
    http://www.w3.org/Protocols/rfc2616/rfc2616-sec14.html#sec14.10
    Regards
    Nagendra HK

  • Printing using raw pass thru mode with PCL 5e

    I have an HP LaserJet P3015 printer on our network and have been doing some testing for a company that needs this printer to work.
    We have an application that writes using a network connection to pass thru in RAW data mode to the printer device. We use a set of print commands using the PCL 5 control character commands for CR, LF, TOP of Page etc...
    With the new printer and drivers, for some reason, we get a blank page printed after each 1 page document we send.
    This software has always worked in the past with earlier versions of printers and drivers.
    We are using Windows XP.
    We are using the LaserJet P3015 PCL 5e drivers
    Any help would be appreciated.
    PS. We already tried the postscript, universal and PCL6 drivers and they do NOT work.

    Hi,
    first of: I haven't tried anything of this myself due to lack of a XBox and/or other applicable devices.
    But this Apple article http://support.apple.com/kb/HT3924 includes the following paragraph:
    +"The Mini DisplayPort in the 27-inch iMac can receive only DisplayPort compliant video and audio signals. Converters not made by Apple may provide options to convert other electrical, video, and audio protocols to Mini DisplayPort compliant signals."+
    To me that sounds like what you want to do is indeed possible.
    But since Audio-Thru is not an OSX feature you might also have to use the freebie LineIn from RogueAmoeba http://www.rogueamoeba.com/freebies/ to get the audio signal from the MiniDisplay Port-In to the headphone out.
    Hope it helps
    Stefan

  • I would like to connect my Apple TV to my receiver using an HDMI cable and pass thru dolby digital. I do not have optical inputs on my receiver.

    I want to connect my Apple TV to my receiver using an HDMI cable. This should allow me to pass thru high definition video and simultaneously decode Dolby Digital material with an HDMI connection from my receiver to my TV without the use of an optical cable (my receiver does not have an optical input). I am unable to decode 5.1 material and don't understand why this is not working. In the audio setting I have Dolby Digital output turned on.

    Welcome to the Apple Community.
    Are you sure the content you are playing has Dolby Digital.

  • I have HDMI connection to the receiver and on to the TV - but no audio from my new Apple TV.  I have checked all connections and the video is xlnt.  Have also toggled thru every possible Dolby/Audio combination in settings.  Help!  Any suggestions?

    I have an HDMI connection to the receiver and on to the TV - but there is non audio from my Apple TV.  Not for movies, music, YouTube etc.   I have checked all of the connections and the video is xlnt.  Have also toggled thru all possible Dolby/Audio combinations in settings.  Help!  Any suggestions?

    Hello again Parker -
    The basic setup is Digital Cable Box, DVD Player, Denon Receiver/Amp and TV Monitor.  To that I added the Apple TV.  The Receiver only has two HDMI IN slots (one for cable and one for the DVD) and one out to the Monitor. 
    [I bought a switcher to toggle the DVD and the AppleTV back and forth but just disconnected the DVD to simplify when I ran in to trouble.]
    So now I have:
         HDMI from the Cable Box to the Receiver
         HDMI from the Apple TV to the Receiver (in the old DVD slot which always worked well)
         HDMI from the Receiver to the Monitor
         RCA's from the Receiver to the Subwoofer and the other speakers
    In addition I have some backup connections:
         S-Video, Optical Audio and L/R RCA's from the Cable Box to the Receiver
         S-Video from the Receiver to the Monitor
    Wait - JUST FOUND IT! 
    By going thru the excercise to track all of the connections per your suggestion, I found an anomaly when I switched Receiver sockets for the HDMI links.  The video moved but the audio didn't.  Turns out the monitor was using the optical audio feed from the receiver.  So I disconnected the optical audio and the monitor automatically switched to the HDMI audio feed!   Looked promising...
    So I first connected an optical audio feed from the ATV to the receiver - Audio!  Then I pulled it, but the audio didn't switch to the HDMI feed.  It stopped.  Would be OK if all I was going to use is the ATV, but I need the DVD player too and I can't use a switcher to toggle between them if I have to unplug the optical audio each time.
    This is becoming a career!  Any suggestions?
    Will

  • Can I use Apple TV as an ethernet pass-thru?

    If I use wifi to connect Apple TV to my network, can the ethernet port on ATV be used as a "pass thru" to get internet to another device?

    no when ethernet is connected wifi is disabled
    it offers no kind og routing or switching or hotspot abilities

  • What does this statement mean: "There is a problem with your authentication, possibly due to inactivity. For your safety, you have been logged out and must sign in again to continue?"

    I am able to make it to the site for about 2 seconds and then I am quickly logged off and the statement, "There is a problem with your authentication, possibly due to inactivity. For your safety, you have been logged out and must sign in again to continue."
    I don't have a clue as to the problem but since this is impacting my participation in these classes and ultimately could have a negative impact on my grade, I am more than a little concerned!

    Have you allowed this site to set cookies?

  • How to make udp datagram pass thru proxy server?

    I have to make a video stream system. And I found that there are a lot of user is behind the firewall or proxy server, how should i do to make the udp streaming media pass thru the firewall or proxy????
    does the https tunnel help?

    Thanks for your advise, but does http tunnel only accept for the TCP problem? since my server will broadcast a stream of udp to the user, so how should i do that?

  • Use of LEFT, MID  functions in MS Access expression evaluating a SQL pass-thru on an Oracle Backend

    As the title above suggests this is a somewhat complex problem.
    I have the following expression on a field in a MS Access Make Table query.
    Left([SYN4_View Invalid Last Candidates]![LastName],3). The table it is referring to: SYN4_View Invalid Last Candidates is a SQL Pass-thru query on an Oracle backend. So, when the expression attempts to evaluate in MS Access 2003 I get the following error msg:
    Undefined function 'left' in expression.
    I am assuming this is because LEFT function can't evaluate the output of the SQL P-T. I can't use SUBSTR as Access doesn't recognize it.
    I would appreciate suggestions

    robleh7 wrote:
    I don't have access to the Oracle dB. No pun intended here. Everything I do, I must do from the MS Access 2003 front-end
    wow .. that's kinda like sending soldiers into a war zone with a bear trap attached to their legs. O_0
    Kind of blatantly trying to hamper your ability to do your job, don't you think?

  • Looking for an docking station for DV9205us that has power pass-thru

    I have an HP DV9205us and am looking for a docking station that has a power pass-thru.  The power plug on my latop doen't always power up the laptop and this has gotten on my nerves.  Is the ES631AA#ABA the only docking station that works with the DV9205us

    Thanks for the link.
    Hadn't seen that review, but it matches what I conclude about that particular model - there's still lots of connecting & disconnecting to do. It has only one USB port docked, and another one sitting up top.  I have many items I'll be attaching via USB, such as Wacom, backup drive, external drive for photos, mouse.  And would prefer a Powered version so I don't have to connect the power cord each time either.  And if you notice that video, he shpws his desktop consisting on nothing but a keyboard & a monitor.  So with the lid closed on the MBA, how's he move the cursor around?  Missing a mouse there. (Yes - he could have a wirelesss mouse, but personally, I find a wired mouse much better - but he has NONE.
    Hoping to find someone who has actually used one.
    From my research, it seems the Landing Zone MAY do what I want, but I can't get answers from them to questions.  They have units for 2012 - 2013 MBA's, but I don't see anything on their site about the 2014 model I have.
    And there's a few other brands out there - but seeking real life experiences.

  • How to make rtp udp datagram pass thru proxy server?

    I have to make a video stream system. And I found that there are a lot of user is behind the firewall or proxy server, how should i do to make the udp streaming media pass thru the firewall or proxy????
    does the https tunnel help?

    Tunnelling with HTTP is the only way.

  • 802.1x authentucation only on Virtaul machine. i want to by pass EAP authentication on Host machine

    i want to do EAP authentication (802.1x) authentication by the client installed on Virtual machine. i want to by pass EAP authentication(802.1x) on Host machine, because i wanted to test it on the client in VM not on the host machine. for wifi it works fine because i can have a USB wifi NIC which connects to VM directly and the authentication goes fine as host machine NIC does not come into the picture at all.
    but in Case of wired VM NIC has to go via Host NIC.

    Hello,
    I managed to do that with a VM and a host, both authenticating in wired, behind a phone. The host would receive an ACL limiting its traffic to just internet and the VM could access the internal network. (do not ask to discuss the use case).
    The considerations were that :
    both host and VM would need to be on the same dynamically assigned VLAN, as 2960/3750 do not support two DATA domain hosts in different vlans (3850 apparently supports or will support it), so I had to have 802.1X both on host and in VM.
    the VSwitch in VMworkstation had to be in bridge mode.
    authentication mode multiauth had to be enabled in the interface in order to cope with multiple authenticated sessions behind the same interface.
    What is exactly your question?
    Gustavo

Maybe you are looking for

  • How Do I Get At My Disk Image In Finder?

    Hello I've used Disk Utility to create a disk image. I want to copy that .dmg file to a USB stick drive to back it up. How do I do that? I've tried dragging the icon from Disk Utility but that didn't work. I know the file is actually stored in /Volum

  • CWS request removal from block list

    I had a client who is using CWS report that one of my domains is being blocked due to its inclusion in a malware database in CWS. Does anyone know of any way to request removal of a domain from the CWS block list? I called TAC and they stated that th

  • Leaf Node with minOccurs 0 and without mapping

    I am developing some new mapping in XI. The above is the message I am getting in XI test. Is this because it is ecpecting all subordinate (idoc)segments to be mapped before testing? Thank-You.

  • Same volume for all songs in your iPod?

    Is it for real "iVolume 2.0.2 for the Mac"? Or another application? Did someone tried it, and it really worked? It is worth while buying it? I have some old CDs I bought years ago and they have really diferent volume level. Thank you in advance.

  • Hello I cannot seem to get my airport to connect to a network

    Hello< the airport in my notebook will not connect to my network.  I just reconfigured the router (a linksys router) and my sisters macbook connects fine but mine does not.  The airport is on and when i try to put in the WPA password i get the color