Optimal IdM User Conference - Following TEC - May 3rd 2012 Home | Contact Us

Virtual Identity Server for Identity Lifecycle Manager

(VIS for ILM) - Multi-forest connectivity and enhanced group population

Overview


The Virtual Identity Server for ILM is a special edition of the Virtual Identity Server that extends Microsoft's Identity Lifecycle Manager product. VIS for ILM is comprised of a custom ILM management agent (MA) that leverages the Virtual Identity Server to provide powerful multi-forest capabilities and enhanced group management features.

The management agent allows ILM to manage group membership by updating user objects directly instead of managing group objects. As a result, Active Directory (AD) group objects no longer need to be imported into the metaverse, reducing complexity and speeding the deployment of ILM. Users are added or removed from AD groups by directly modifying the “memberOf” user attribute that is made read and write capable by the VIS for ILM management agent.

The result is an easier, more flexible way to perform group management in ILM, providing the fastest processing time available today. In customer scenarios with very large Active Directory Groups, processing times have been reduced from two plus hours to sub-minute processing.