<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-3943262423279778929</id><updated>2011-12-15T09:05:07.361-08:00</updated><title type='text'>Directory Services Inc Blog</title><subtitle type='html'></subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://directoryservicesinc.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://directoryservicesinc.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Directory Services</name><uri>http://www.blogger.com/profile/04146231633684509113</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>7</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-3943262423279778929.post-7441544726610867294</id><published>2010-12-02T09:51:00.000-08:00</published><updated>2010-12-02T09:51:55.529-08:00</updated><title type='text'>Setting up GroupWise 8 Web Access Auto Forward</title><content type='html'>After you have setup Novells Groupwise Web Access you are not told that it does not have the industry standard &amp;amp;nbsp;auto forwards functionality. &amp;amp;nbsp;What is meant by hot having an auto forward is that when the unlucky end user who want to connect to the Groupwise WebAccess service they must type in the full http://webmail.yourcompany.com/gw/webacc.&lt;br /&gt;&lt;br /&gt;If you want to make the groupwise web mail service more more accessible to your end users by only having to type in the simple URL address like http://webmail.yourcompany.com you have to include the html shown below in a files call index.html.&lt;br /&gt;&lt;br /&gt;This file must be place in the linux directory &amp;nbsp;/srv/www/htdocs/&lt;br /&gt;&lt;br /&gt;&amp;lt;html&amp;gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;head&amp;gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp; &amp;nbsp; &amp;lt;META HTTP-EQUIV="REFRESH" Content="0;url=http://webmail.yourcompany.com/gw/webacc"&amp;gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/head&amp;gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;body&amp;gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/body&amp;gt;&lt;br /&gt;&amp;lt;/html&amp;gt;&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3943262423279778929-7441544726610867294?l=directoryservicesinc.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://directoryservicesinc.blogspot.com/feeds/7441544726610867294/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://directoryservicesinc.blogspot.com/2010/12/blog-post.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default/7441544726610867294'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default/7441544726610867294'/><link rel='alternate' type='text/html' href='http://directoryservicesinc.blogspot.com/2010/12/blog-post.html' title='Setting up GroupWise 8 Web Access Auto Forward'/><author><name>Directory Services</name><uri>http://www.blogger.com/profile/04146231633684509113</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3943262423279778929.post-5641130730239214763</id><published>2010-11-15T14:07:00.001-08:00</published><updated>2010-11-15T14:07:08.937-08:00</updated><title type='text'>Android Dead Battery Issues Solved</title><content type='html'>I  bought an Sprint HTC Hero Android phone about a 8 months ago and have been really happy with the new phone.  Recently took a trip and the android phone battery  just died.  There was no warning or other indication that the battery could be having problems. &lt;br /&gt;&lt;br /&gt;However, after a  a bit of  research/Googling the issue some people have had success reviving the battery by putting it into the refrigerator or freezer.    I happened to have a deep freezer available and I following the information on the internet I  left the battery in the freezer over night.   The next morning I retrieved the battery from the deep freezer and wiped off the condensation and voila the battery was back working again.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3943262423279778929-5641130730239214763?l=directoryservicesinc.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://directoryservicesinc.blogspot.com/feeds/5641130730239214763/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://directoryservicesinc.blogspot.com/2010/11/android-dead-battery-issues-solved.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default/5641130730239214763'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default/5641130730239214763'/><link rel='alternate' type='text/html' href='http://directoryservicesinc.blogspot.com/2010/11/android-dead-battery-issues-solved.html' title='Android Dead Battery Issues Solved'/><author><name>Directory Services</name><uri>http://www.blogger.com/profile/04146231633684509113</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3943262423279778929.post-7589561858618092410</id><published>2010-06-23T14:17:00.000-07:00</published><updated>2010-06-25T10:45:39.665-07:00</updated><title type='text'>Achieving dynamic failover and recovery with the Novell User Application</title><content type='html'>&lt;p class="MsoNormal" style="tab-stops:2.5in"&gt;Have you implemented the Novell user Application with a Microsoft SQL Server cluster and have the JDBC Connection fail every time the MS SQL Server cluster switches over to a member node?&lt;/p&gt;&lt;p class="MsoNormal" style="tab-stops:2.5in"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="tab-stops:2.5in"&gt;This can be troublesome as you are forced to either script an automatic restart or manually perform the restart.&lt;span style="mso-spacerun:yes"&gt;   &lt;/span&gt;However, there is a way to enable the Novell User App seamless maintain connection when the Microsoft cluster switches between member nodes. &lt;/p&gt;&lt;p class="MsoNormal" style="tab-stops:2.5in"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="tab-stops:2.5in"&gt;One approach that has worked for me is to use XA transaction specification to enable a truly fault tolerant implementation.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="tab-stops:2.5in"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="tab-stops:2.5in"&gt;&lt;b style="mso-bidi-font-weight:normal"&gt;Pre requisites for this solution&lt;br /&gt;&lt;br /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/p&gt;&lt;ul style="margin-top:0in" type="disc"&gt;&lt;li class="MsoNormal" style="mso-list:l0 level1 lfo1;tab-stops:list .5in left 2.5in"&gt;MS      SQL Cluster using 2005 &lt;/li&gt;&lt;li class="MsoNormal" style="mso-list:l0 level1 lfo1;tab-stops:list .5in left 2.5in"&gt;XA      Transaction Enabled on Microsoft cluster &lt;/li&gt;&lt;ul style="margin-top:0in" type="circle"&gt;&lt;li class="MsoNormal" style="mso-list:l0 level2 lfo1;tab-stops:list 1.0in left 2.5in"&gt;&lt;a href="http://msdn.microsoft.com/en-us/library/aa342335(SQL.90).aspx"&gt;http://msdn.microsoft.com/en-us/library/aa342335(SQL.90).aspx&lt;/a&gt;&lt;/li&gt;&lt;/ul&gt;&lt;li class="MsoNormal" style="mso-list:l0 level1 lfo1;tab-stops:list .5in left 2.5in"&gt;XA      JDBC Driver&lt;/li&gt;&lt;li class="MsoNormal" style="mso-list:l0 level1 lfo1;tab-stops:list .5in left 2.5in"&gt;XA      Capable Application Server such as JBOSS.&lt;/li&gt;&lt;/ul&gt;&lt;p class="MsoNormal" style="margin-left:.25in;tab-stops:2.5in"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="margin-left:.25in;tab-stops:2.5in"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="tab-stops:2.5in"&gt;Once you have the pre requisites met you will then need to make a copy of the Novell User Application resource files. Typically this is “instancename.xml” such as “userapp.xml” or “idm.xml”. Rename this to an “.org” extension in case you need to roll back to a known working copy.&lt;/p&gt;&lt;p class="MsoNormal" style="tab-stops:2.5in"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="tab-stops:2.5in"&gt;Now that you have a backup here is an example of what a (XA enabled) userapp.xml file needs to look like.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;center&gt;&lt;textarea id="code-source" rows="20" name="code-source"&gt;&lt;br /&gt;&lt;?xml version="1.0" encoding="UTF-8"?&gt;&lt;datasources&gt;&lt;br /&gt;&lt;xa-datasource&gt;&lt;br /&gt;&lt;jndi-name&gt;IDMUADataSource&lt;/jndi-name&gt;&lt;br /&gt;&lt;track-connection-by-tx/&gt;&lt;br /&gt;&lt;isSameRM-override-value&gt;false&lt;/isSameRM-override-value&gt;&lt;br /&gt;&lt;xa-datasource-class&gt;com.microsoft.sqlserver.jdbc.SQLServerXADataSource&lt;/xa-datasource-class&gt;&lt;br /&gt;&lt;xa-datasource-property name="ServerName"&gt;Your Database Server Name here&lt;/xa-datasource-property&gt;&lt;br /&gt;&lt;xa-datasource-property name="DatabaseName"&gt;Your database Name&lt;/xa-datasource-property&gt;&lt;br /&gt;&lt;xa-datasource-property name="SelectMethod"&gt;cursor&lt;/xa-datasource-property&gt;&lt;br /&gt;&lt;xa-datasource-property name="User"&gt;Database User Name&lt;/xa-datasource-property&gt;&lt;br /&gt;&lt;xa-datasource-property name="Password"&gt;Database User password &lt;/xa-datasource-property&gt;&lt;br /&gt;&lt;xa-datasource-property name="URL"&gt;jdbc:sqlserver://xx.x.xx.xx:port Number&lt;/xa-datasource-property&gt;&lt;br /&gt;&lt;new-connection-sql&gt;select 1&lt;/new-connection-sql&gt;&lt;br /&gt;&lt;check-valid-connection-sql&gt;SELECT 1&lt;/check-valid-connection-sql&gt;&lt;br /&gt;&lt;metadata&gt;&lt;br /&gt;&lt;type-mapping&gt;MS SQLSERVER2005&lt;/type-mapping&gt;&lt;br /&gt;&lt;/metadata&gt;&lt;br /&gt;&lt;/xa-datasource&gt;&lt;br /&gt;&lt;/datasources&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/textarea&gt;&lt;/center&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;p class="MsoNormal" style="margin-left:-.75in;tab-stops:2.5in"&gt;&lt;!--[if mso &amp; !supportInlineShapes &amp; supportFields]&gt;&lt;v:shape id="_x0000_i1025" type="#_x0000_t75" style="'width:540pt;height:450pt'"&gt;  &lt;v:imagedata croptop="-65520f" cropbottom="65520f"&gt; &lt;/v:shape&gt;&lt;span style="'mso-element:field-end'"&gt;&lt;/span&gt;&lt;![endif]--&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="tab-stops:2.5in"&gt;&lt;span style="Trebuchet MS&amp;quot;font-family:&amp;quot;;"&gt;Now that you have made the changes to the DataSource definition files, you can now restart your Application server to make the changes take effect and then watch the log files closely to determine if the configuration works in your environment.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="tab-stops:2.5in"&gt;&lt;span style="Trebuchet MS&amp;quot;font-family:&amp;quot;;"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="tab-stops:2.5in"&gt;&lt;i style="mso-bidi-font-style:normal"&gt;&lt;span style="Trebuchet MS&amp;quot;font-family:&amp;quot;;"&gt;Now that we have the capability to use XA transactions with Microsoft SQL server cluster you can achieve robust highly available application environments (read nearly continuous uptimes 99.999 %) with the Novell User application&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/i&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="tab-stops:2.5in"&gt;&lt;span style="Trebuchet MS&amp;quot;font-family:&amp;quot;;"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3943262423279778929-7589561858618092410?l=directoryservicesinc.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://directoryservicesinc.blogspot.com/feeds/7589561858618092410/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://directoryservicesinc.blogspot.com/2010/06/achieving-dynamic-failover-and-recovery.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default/7589561858618092410'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default/7589561858618092410'/><link rel='alternate' type='text/html' href='http://directoryservicesinc.blogspot.com/2010/06/achieving-dynamic-failover-and-recovery.html' title='Achieving dynamic failover and recovery with the Novell User Application'/><author><name>Directory Services</name><uri>http://www.blogger.com/profile/04146231633684509113</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3943262423279778929.post-3441911998133483743</id><published>2010-06-21T15:38:00.000-07:00</published><updated>2010-06-21T15:39:20.502-07:00</updated><title type='text'>Novell Identity Manager and Java Mail Authentication Exception</title><content type='html'>&lt;p class="MsoNormal"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;I recently came across an interesting situation where I was getting a Java Mail Authentication Exception when attempting to send an email message using the Novell email templates.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;&lt;span style="mso-spacerun:yes"&gt; &lt;/span&gt;I did the usual checks to make sure that I had permission to send mail and I checked the Template permission to double check that I had specified the host IP address and from address in the Default Notification Collection.&lt;span style="mso-spacerun:yes"&gt;   &lt;/span&gt;&lt;span style="mso-spacerun:yes"&gt; &lt;/span&gt;All the fields were filled out so there should not have been a problem yet I kept getting the “Java Authentication” exception.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;To analyze the issue in more depth I setup a tcpdump (&lt;b style="mso-bidi-font-weight:normal"&gt;tcpdump -vv -x -X -s 0 -i eth0 'port 25'&lt;/b&gt;)&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;so I could view the traffic generated by the send mail command.&lt;span style="mso-spacerun:yes"&gt;   &lt;/span&gt;I tried to send another email transaction and it wasn’t generating any outgoing traffic. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;I then uninstalled and reinstalled the Novell IDM and I was still receiving &lt;span style="mso-spacerun:yes"&gt; &lt;/span&gt;the Java mail Authentication Exception.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;After writing several java mail debug utilities, I finally came to the conclusion there must to something incorrect about the way the Novell JVM was seated.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;So after forcing the remove of the Novell JVM then reinstalling the Novell IDM system everything starting working! No more java Authentication Exceptions!!.&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;So here is how to fix the issues.&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;&lt;b&gt;Step 1. &lt;/b&gt;&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;Find the Novell JVM package name. You can get this bye querying for the package.&lt;span style="mso-spacerun:yes"&gt; &lt;/span&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="margin-left:1.25in;text-indent:-.25in;mso-list:l0 level1 lfo1; tab-stops:list 1.25in"&gt;&lt;span style="font-family:Symbol; mso-fareast-font-family:Symbol;mso-bidi-font-family:Symbol"&gt;&lt;span style="mso-list:Ignore"&gt;·&lt;span style="font:7.0pt &amp;quot;Times New Roman&amp;quot;"&gt;        &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;rpm -qa | grep -i jvm&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="margin-left:1.25in"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;you should get something like &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="margin-left:1.25in"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;(&lt;b style="mso-bidi-font-weight:normal"&gt;novell-NOVLjvml-3.6.10-20090519&lt;/b&gt;)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;&lt;b&gt;Step 2.&lt;/b&gt;&lt;span style="mso-spacerun:yes"&gt;   &lt;/span&gt;Remove the Novell jvm package &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="margin-left:1.25in;text-indent:-.25in;mso-list:l0 level1 lfo1; tab-stops:list 1.25in"&gt;&lt;span style="font-family:Symbol; mso-fareast-font-family:Symbol;mso-bidi-font-family:Symbol"&gt;&lt;span style="mso-list:Ignore"&gt;·&lt;span style="font:7.0pt &amp;quot;Times New Roman&amp;quot;"&gt;        &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;rpm -e novell-NOVLjvml-3.6.10-20090519&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;&lt;b&gt;Step 3. &lt;/b&gt;&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;Remove the Novell IDM package using the uninstaller.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="margin-left:1.25in;text-indent:-.25in;mso-list:l0 level1 lfo1; tab-stops:list 1.25in"&gt;&lt;span style="font-family:Symbol; mso-fareast-font-family:Symbol;mso-bidi-font-family:Symbol"&gt;&lt;span style="mso-list:Ignore"&gt;·&lt;span style="font:7.0pt &amp;quot;Times New Roman&amp;quot;"&gt;        &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;Change to the directory (/root/idm/Uninstall_Identity_Manager)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="margin-left:1.25in;text-indent:-.25in;mso-list:l0 level1 lfo1; tab-stops:list 1.25in"&gt;&lt;span style="font-family:Symbol; mso-fareast-font-family:Symbol;mso-bidi-font-family:Symbol"&gt;&lt;span style="mso-list:Ignore"&gt;·&lt;span style="font:7.0pt &amp;quot;Times New Roman&amp;quot;"&gt;        &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;Run the uninstaller (./Uninstall_Identity_Manager)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="margin-left:1.25in;text-indent:-.25in;mso-list:l0 level1 lfo1; tab-stops:list 1.25in"&gt;&lt;span style="font-family:Symbol; mso-fareast-font-family:Symbol;mso-bidi-font-family:Symbol"&gt;&lt;span style="mso-list:Ignore"&gt;·&lt;span style="font:7.0pt &amp;quot;Times New Roman&amp;quot;"&gt;        &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;Reinstall the Novell IDM System.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="margin-left:1.25in;text-indent:-.25in;mso-list:l0 level1 lfo1; tab-stops:list 1.25in"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="margin-left:1.25in;text-indent:-.25in;mso-list:l0 level1 lfo1; tab-stops:list 1.25in"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="margin-left:1.25in;text-indent:-.25in;mso-list:l0 level1 lfo1; tab-stops:list 1.25in"&gt;&lt;span style="font-family:&amp;quot;Trebuchet MS&amp;quot;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3943262423279778929-3441911998133483743?l=directoryservicesinc.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://directoryservicesinc.blogspot.com/feeds/3441911998133483743/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://directoryservicesinc.blogspot.com/2010/06/novell-identity-manager-and-java-mail.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default/3441911998133483743'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default/3441911998133483743'/><link rel='alternate' type='text/html' href='http://directoryservicesinc.blogspot.com/2010/06/novell-identity-manager-and-java-mail.html' title='Novell Identity Manager and Java Mail Authentication Exception'/><author><name>Directory Services</name><uri>http://www.blogger.com/profile/04146231633684509113</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3943262423279778929.post-8787367182700135211</id><published>2010-05-26T19:55:00.001-07:00</published><updated>2010-05-26T19:55:58.282-07:00</updated><title type='text'>A Perspective on Identity Management</title><content type='html'>&lt;p class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="font-size:10.0pt; font-family:Tahoma;color:black"&gt;Organizations have many mundane tasks that are crucial to the organization’s ability to function efficiently on a day to day basis.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;These tasks such as provisioning and de-provisioning of user accounts are driven by internal and external changes in the organization due to policy, personnel changes and regulatory compliance mandates. &lt;span style="mso-spacerun:yes"&gt; &lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="font-size:10.0pt; font-family:Tahoma;color:black"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="font-size:10.0pt; font-family:Tahoma;color:black"&gt;While these tasks can be done by manually by your internal IT staff it does not enable the organization to timely and consistently execute on these repetitive and mundane tasks like an Identity Automation system.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;Further, these tasks are also a direct expression of what the organization policy is in regards to providing access to physical and electronic resources.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;&lt;span style="mso-spacerun:yes"&gt; &lt;/span&gt;What must be considered is that internal IT Staff may be very good at providing these services, what happens when they are sick, on vacation or leave for another job. More likely, what&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;if they are swamped with infrastructure project are over worked or buried in other day to day tasks.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;&lt;span style="mso-spacerun:yes"&gt; &lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="font-size:10.0pt; font-family:Tahoma;color:black"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="font-size:10.0pt; font-family:Tahoma;color:black"&gt;Regardless of reason for the absence of these key personnel it &lt;span style="mso-spacerun:yes"&gt; &lt;/span&gt;impacts &lt;span style="mso-spacerun:yes"&gt; &lt;/span&gt;the organization negatively.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;The result is access permission (keys) to the organization’s services are not properly maintained resulting in potentially security breaches, delay in servicing request and impacting other projects or departments.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;For example, a terminated employee may gain improper access to data or services while the operational personnel are struggling to with day to day workloads.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;&lt;span style="mso-spacerun:yes"&gt; &lt;/span&gt;&lt;span style="mso-spacerun:yes"&gt; &lt;/span&gt;Correcting these issues will result in an expenditure of time and effort from employees, managers and support personnel to identify and correct the required access controls. Take an afternoon to perform the exercise of quantifying this type of potential breach, and then multiply it by the number of times per week this could (and probably does) happen.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;Congratulations, you just found your IDM budget!&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="font-size:10.0pt; font-family:Tahoma;color:black"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="font-size:10.0pt; font-family:Tahoma;color:black"&gt;When you look at it from this perspective, providing an Identity Automation system to address these key day to day tasks is an critical organizational objective.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;However, making the best technological choice to support the organization short term, medium and long term goals in this space is not quite as easy as it seems.&lt;span style="mso-spacerun:yes"&gt;  &lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="font-size:10.0pt; font-family:Tahoma;color:black"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="font-size:10.0pt; font-family:Tahoma;color:black"&gt;We will be addressing these questions in upcoming posts, so please subscribe.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3943262423279778929-8787367182700135211?l=directoryservicesinc.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://directoryservicesinc.blogspot.com/feeds/8787367182700135211/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://directoryservicesinc.blogspot.com/2010/05/perspective-on-identity-management.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default/8787367182700135211'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default/8787367182700135211'/><link rel='alternate' type='text/html' href='http://directoryservicesinc.blogspot.com/2010/05/perspective-on-identity-management.html' title='A Perspective on Identity Management'/><author><name>Directory Services</name><uri>http://www.blogger.com/profile/04146231633684509113</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3943262423279778929.post-7306910502058932877</id><published>2010-05-18T09:02:00.000-07:00</published><updated>2010-05-18T09:02:06.357-07:00</updated><title type='text'>3 Reasons Identity Management is a “MUST”… and strategies to make it affordable</title><content type='html'>&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;(Repost from Digital Avenger Blog http://digitalavenger.wordpress.com)&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;Let me be clear about what I’m saying. Identity Management for companies with employees that have access to critical data is a&amp;nbsp;&lt;span style="text-decoration: underline;"&gt;MUST, not a want&lt;/span&gt;.&amp;nbsp; Over the years I have had the privilege to work with many companies large and small, who have different business needs.&amp;nbsp; In many cases I hear all the reasons, (and sometimes excuses) for not implementing a solution, policy or methodology. Sometimes these reasons even make perfect sense!&amp;nbsp; In making any business decision, the choice to do, or not do anything is weighed by what I call the “risk vs. reward scale”.&amp;nbsp; Regarding Identity Management (IDM), if you have employees with access to critical business information, you MUST put at least basic IDM in place!&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;So what is Identity Management? Bill Brant, CEO of&amp;nbsp;&lt;a href="http://www.directoryservicesinc.com/" style="color: #105cb6; text-decoration: underline;" target="_blank" title="Directory Services, Inc."&gt;Directory Service, Inc&lt;/a&gt;. says “IDM is the technological automation and enforcement of business policies and processes to manage the lifecycle of electronic credentials, entitlements authorization and compliance mandates.”&amp;nbsp; If you are in management like me, let me translate in English. IDM automates your logins so your company is secure, and you don’t lose millions of dollars, PLUS it increases productivity so you can make millions of dollars. The following are my top three reasons IDM is a must, not a want.&lt;br /&gt;&lt;/div&gt;&lt;h3 style="font-family: Arial,Helvetica,Georgia,sans-serif; font-size: 14px; margin: 0px; padding: 9px 0px 0px;"&gt;Reason One (1):&amp;nbsp;&amp;nbsp; Provision of new employee credentials&lt;/h3&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;Companies that do not have Identity Management spend days to weeks to properly provision a new employee, and with a high probability of improper provisions. &amp;nbsp;The popular method used to accomplish this task is a simple email request.&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;span style="text-decoration: underline;"&gt;Typical email thread&lt;/span&gt;:&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;strong&gt;HR to IT Admin&lt;/strong&gt;:&amp;nbsp; “Jack is starting today with us, can you get him a login?”&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;strong&gt;IT Admin to HR&lt;/strong&gt;: Sure what does he need?&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;strong&gt;HR to IT Admin:&lt;/strong&gt;&amp;nbsp;“He is working in Sales, ask his supervisor.”&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;strong&gt;IT Admin to Supervisor&lt;/strong&gt;: “Jack is starting today, and I need to get him a login, what accesses does he need?”&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;strong&gt;Supervisor to IT Admin&lt;/strong&gt;: “I don’t know, how about just copy the access rights from Jill, she’s been here a while, so whatever she has must be right?&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;span style="text-decoration: underline;"&gt;Risk to the company&lt;/span&gt;: &amp;nbsp;Jill was the Engineering Manager and Marketing Supervisor before becoming the top sales person in the company.&amp;nbsp; Each new position gave her role specific rights that were never properly taken away as she changed roles.&amp;nbsp; Now she is being used as the “template” for user rights to new hires.&amp;nbsp; Jack the new hire, just gained access to engineering blueprints, and new “go to market” strategies. In addition, the back and forth emailing took two weeks because the supervisor was on vacation.&amp;nbsp; Adding a face slap to a poke in the eye, Jack the “new hire” is still being paid even though he had no access to do his job. Sound familiar?&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;span style="text-decoration: underline;"&gt;IDM to the rescue&lt;/span&gt;:&amp;nbsp; A company with IDM could implement automated provisioning of credentials by role.&amp;nbsp; A company would define the accesses any given role can have, and further, lock out accesses for roles they should not have i.e. the janitor does not need access to the accounting system.&amp;nbsp; The IDM system’s automatic provisioning process tool performed this task in seconds, and Jack was properly provisioned before he sat at his new desk.&lt;br /&gt;&lt;/div&gt;&lt;h3 style="font-family: Arial,Helvetica,Georgia,sans-serif; font-size: 14px; margin: 0px; padding: 9px 0px 0px;"&gt;Reason Two (2): Deprovisioning of terminated employee credentials.&lt;/h3&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;In a company without Identity Management the same situation occurs as in the scenario above, but with more immediate consequences.&amp;nbsp; The popular method of conducting deprovisioning of credentials in a company without Identity management is by way of a simple email request.&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;span style="text-decoration: underline;"&gt;Typical email thread&lt;/span&gt;:&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;strong&gt;Supervisor to HR:&amp;nbsp;&lt;/strong&gt;“Jack has been terminated immediately for bad attendance. Please put all the termination protocols in place. He has been removed from the facility, but he did not have his badge with him.”&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;strong&gt;HR to Supervisor&lt;/strong&gt;: “Out of Office Reply” I’m sorry, but I’m out of the office the next two weeks on my honeymoon.&amp;nbsp; I my absence please contact the supervisor”.&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;strong&gt;Supervisor to Manager&lt;/strong&gt;: “I just fired Jack, and need the termination protocols, but HR is out of the office, what now”?&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;strong&gt;Manager to Supervisor&lt;/strong&gt;: &amp;nbsp;“Who is her Backup in HR?”&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;strong&gt;Supervisor to Manager&lt;/strong&gt;: &amp;nbsp;“I am, but I don’t know the protocol.”&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;strong&gt;Manager to HR&lt;/strong&gt;:&amp;nbsp; “when you get back from your honeymoon, please terminate the supervisor, he hired Jack who we think may have stole engineering plans and sold our marketing plan to the competition after he was terminated because he still had his accesses for the last two weeks! Of course we cannot prove it.”&amp;nbsp;&lt;em&gt;(side note to reader Yes IDM applies here too for compliance and auditing, but that is another article… Marc).&lt;/em&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;strong&gt;Manager to CEO&lt;/strong&gt;:&amp;nbsp; “I have no idea how our engineering blueprints and our marketing plan got into the hands of our competition?”&amp;nbsp;&amp;nbsp; It must have been Jill, she has rights to both of those areas. By the way, I’m hearing our client list is being aggressively called by our competition as well.&amp;nbsp; It couldn’t have been Jack, he’s been fired for weeks now.”&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;Ok obviously I was on a little bit of a roll there with the Manager reply, but I think you get the picture.&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;span style="text-decoration: underline;"&gt;IDM to the rescue&lt;/span&gt;: A company with IDM could implement automated deprovisioning of credentials by Identity.&amp;nbsp; In this scenario, Jack could have been deprovisioned before he was even out the door.&amp;nbsp; If he tried to access his client database from home, he would have been locked out.&lt;br /&gt;&lt;/div&gt;&lt;h3 style="font-family: Arial,Helvetica,Georgia,sans-serif; font-size: 14px; margin: 0px; padding: 9px 0px 0px;"&gt;Reason Three (3): Identity Synchronization and Password management&lt;/h3&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;Did you ever think that 3M would produce the world’s largest and most used Identity Management and password vault tool! It is true! Its call the “Post-IT” note, and it can cost you millions.&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;Some people may get basic Directory Services and Identity Management confused. Directory Services are a key part of IDM because this is where the Identities are managed. For example, Active Directory, eDirectory, LDAP, are all network directory services. &amp;nbsp;What about your applications that maintain their own “directory service database? This may be your custom built Inventory application, or ERP system for example.&amp;nbsp; How do you get these systems to talk?&amp;nbsp; If you do not have Identity management, you create separate login credentials for each sub system, and have your end users become the (Identity Management).&amp;nbsp; This becomes the Identity Management by “Post-IT” note that was mentioned earlier.&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;&lt;span style="text-decoration: underline;"&gt;IDM to the rescue&lt;/span&gt;:&amp;nbsp; With IDM, companies can synchronize their user passwords between directories and application directory databases giving your end users a single password to manage for all systems.&amp;nbsp; The next step would be to implement SSO, or single sign on, which automatically uses a single login event to sign into multiple databases eliminating the need to manually login to multiple systems many times. I stop short of saying SSO is a “MUST” for all businesses, but it sure is up on the list of “should haves”.&amp;nbsp; I reserve the right to be on the fence on the “SSO vs. Identity sync only” discussion depending on the client needs.&lt;br /&gt;&lt;/div&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;Password management is bundled into this category, but I could add this to the list on its own.&amp;nbsp; Some may argue that this is not IDM because it is a directory service component, but I believe it is a component of IDM, so take it for what it is worth.&amp;nbsp; Password management in this scenario would be more than just enforcing strong password policies; it would include “self service password” assistance using challenge response questions and secure authentication methods like multi factor authentication and one time passwords.&lt;br /&gt;&lt;/div&gt;&lt;h3 style="font-family: Arial,Helvetica,Georgia,sans-serif; font-size: 14px; margin: 0px; padding: 9px 0px 0px;"&gt;Strategies that make it affordable:&lt;/h3&gt;&lt;div style="margin: 0px; padding: 10px 0px 0px;"&gt;There are many different products out there that can facilitate Identity Management and Access Controls. Some of the best are made by&amp;nbsp;&lt;a href="http://www.novell.com/products/identitymanager/" style="color: #105cb6; text-decoration: underline;" target="_blank"&gt;Novell&lt;/a&gt;,&amp;nbsp;&lt;a href="http://www.sun.com/software/identity/index.jsp" style="color: #105cb6; text-decoration: underline;" target="_blank" title="Sun IDM"&gt;Sun&lt;/a&gt;,&amp;nbsp;&lt;a href="http://www.oracle.com/us/products/middleware/identity-management/index.htm" style="color: #105cb6; text-decoration: underline;" target="_blank" title="Oracle IDM"&gt;Oracle&lt;/a&gt;&amp;nbsp;and&amp;nbsp;&lt;a href="http://www-01.ibm.com/software/tivoli/solutions/identity-mgmt/" style="color: #105cb6; text-decoration: underline;" target="_blank"&gt;IBM&lt;/a&gt;.&amp;nbsp; Recently, the Identity Management space has become somewhat commoditized in what I would call the “basic IDM” space. This would be the space I touched on today, with provisioning / deprovisioning, password management, and synchronization of identities. Some of this functionality is being built into the OS and Directory Services of some vendor products from Novell and Microsoft.&amp;nbsp; Novell has Domain Services for Windows, eDirectory, and the IDM bundle edition that ships with Novell Open Enterprise Server 2 (OES2).&amp;nbsp; Most major directory services vendors have free self service password management tools available for eDirectory, Active Directory, Sun Directory Server etc).&amp;nbsp; New companies are building targeted IDM solutions based on open source like,&amp;nbsp;&lt;a href="http://www.directoryserviceinc.com/" style="color: #105cb6; text-decoration: underline;" target="_blank"&gt;GreyTower&lt;/a&gt;&amp;nbsp;from Directory Services, Inc., and Sun. These solutions can be implemented without licensing costs, but also sell support and maintenance if you need it.&lt;br /&gt;&lt;/div&gt;Take the first steps. Contact your trusted Identity Management advisor and discuss your options. Make sure they are not tied to any single vendor or you will get a single option presented that may not fit your business.&amp;nbsp; Remember, IDM is a MUST!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3943262423279778929-7306910502058932877?l=directoryservicesinc.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://directoryservicesinc.blogspot.com/feeds/7306910502058932877/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://directoryservicesinc.blogspot.com/2010/05/3-reasons-identity-management-is-must.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default/7306910502058932877'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default/7306910502058932877'/><link rel='alternate' type='text/html' href='http://directoryservicesinc.blogspot.com/2010/05/3-reasons-identity-management-is-must.html' title='3 Reasons Identity Management is a “MUST”… and strategies to make it affordable'/><author><name>Marc R. Potter</name><uri>http://www.blogger.com/profile/10403909029918142681</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://2.bp.blogspot.com/_eYg0btfFgy8/SrT4XYK-c6I/AAAAAAAAAA0/Za_swkYf0jQ/S220/IMG00160+(1).jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3943262423279778929.post-1673441535990394652</id><published>2010-05-18T08:53:00.000-07:00</published><updated>2010-05-18T08:53:16.960-07:00</updated><title type='text'>Hello, from your new contributor... New things in store.</title><content type='html'>I'm happy to have been invited to contribute to the Directory Services Blog.&amp;nbsp; In my blog "Digital Avenger, I have written a few articles from my point of view on subjects including Identity Management.&amp;nbsp; In the upcoming months I expect to contribute some of my thoughts here on some of the Identity Management strategies and methodologies that I hope help educate and challenge your views of Identity Management.&amp;nbsp; I'll be the first to admit, I'm not the nuts and bolts guy.&amp;nbsp; That would be Bill Brant, CEO of Directory Services whom I've been working closely with over the years.&amp;nbsp; I'm the big picture guy, and at the end of it all, I'll do my best to be honest and forthcoming.&lt;br /&gt;&lt;br /&gt;I'd like to leave you with a taster.&amp;nbsp; Bill and I have been working on some new tool sets and methodologies for Identity Management and integration by leveraging a product authored by Bill that will add flexibility and agility to your Identity implementation, while bringing existing licensing costs down.&amp;nbsp; The foundation Open Source product has been in use for years in some very large companies all over the world, but we are expanding the focus and scope to solve several business processes over several market segments.&amp;nbsp; Our simplest goals are always to fulfill at least one of the following, and hopefully all:&amp;nbsp; 1. Reduce Costs 2. Increase Productivity 3. Minimize Risk.&lt;br /&gt;&lt;br /&gt;To keep informed, please subscribe.&amp;nbsp; We are looking for Case Study Organizations and Early Adopters.&lt;br /&gt;&lt;br /&gt;I'm looking forward to hearing from you.&amp;nbsp; Take care, and I hope you enjoy.&lt;br /&gt;&lt;br /&gt;-- Marc Potter&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3943262423279778929-1673441535990394652?l=directoryservicesinc.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://directoryservicesinc.blogspot.com/feeds/1673441535990394652/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://directoryservicesinc.blogspot.com/2010/05/hello-from-your-new-contributor-new.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default/1673441535990394652'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3943262423279778929/posts/default/1673441535990394652'/><link rel='alternate' type='text/html' href='http://directoryservicesinc.blogspot.com/2010/05/hello-from-your-new-contributor-new.html' title='Hello, from your new contributor... New things in store.'/><author><name>Marc R. Potter</name><uri>http://www.blogger.com/profile/10403909029918142681</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://2.bp.blogspot.com/_eYg0btfFgy8/SrT4XYK-c6I/AAAAAAAAAA0/Za_swkYf0jQ/S220/IMG00160+(1).jpg'/></author><thr:total>0</thr:total></entry></feed>
