none
Configuring the CA for FIM CM ... RRS feed

  • Question

  • Hello,

    I am trying to configure the FIM CM component in a test environment. While following the technet article http://technet.microsoft.com/en-us/library/gg418598(v=ws.10).aspx, I came across a step to configure the FIM CM Exit Module and Policy Module where it says  "In the Certificate dialog box, enter the thumbprint of the Agent that you obtained earlier. Click OK twice." However, it is not clear where/how do I get the thumbprint. Can someone please help?

    Thanks!
    John

    Saturday, February 9, 2013 1:09 PM

Answers

All replies

  • FIM Guy,

    This is talking aboutthe certificates that are issued to the FIM CM agent accounts based on these cert templates:

    http://technet.microsoft.com/en-us/library/gg430118(v=ws.10).aspx

    This link describes how make and publish the cert templates. They actually need to be issued to the FIM CM accounts. You can get this thumbprint from the CA after this has been done.

    Saturday, February 9, 2013 4:38 PM
  • Hi John,

    you need to get the certificate SHA1 thumbprint of the FIM agent certificate. It is the same value what you have configured (or the Wizard did it for you) in the c:\program files\microsoft forefront identity manager\2010\certificate management\wen\web.config in line <add key="Clm.SigningCertificate.Hash" value="01E1F657B70E2F4E1D51CC43FBFC25DDE75704E9" />

    Copy and paste this value (without quotes, the above value is only a example).

    If you get the thumbprint from the certificate please see this article before http://secattic.blogspot.com/2010/07/copy-paste-error-on-certificate-serial.html

    Let me know how it goes,

    Lutz

    Saturday, February 9, 2013 4:41 PM