Keep Existing MIM Connections to Other Systems and Remove AD User Provisioning RRS feed

  • Question

  • Our company is moving to a new Identity Management System which will eventually replace MIM.  It has been proposed to migrate in a phased approach starting with pulling Active Directory user provisioning out of MIM and doing the provisioning with the new Identity Management System.

    Is this possible without affecting the current MIM environment?  What are the possible issues that could occur by provisioning AD users outside of MIM?

    Tuesday, August 27, 2019 6:38 PM


  • Hi,

    Unfortunately, that's impossible to answer without looking at how the solution is implemented in MIM.

    You could, e.g. have an an inbound flow from AD that sets a MV attribute, that then triggers the provisioning to other systems. Pulling the AD provisioning could potentially cripple the system, if that's how it's implemented.

    You'll probably need to analyze the implementation in detail to answer these questions.



    Did my post help? Please use "Mark as answer" or "Propose as answer". Thank you!

    • Marked as answer by Cynthia Hayes Wednesday, August 28, 2019 7:08 PM
    Wednesday, August 28, 2019 9:36 AM