Enforce Password History FIM 2010 R2
I know that MS released a fix for FIM 2010 so that you could enforce the Password History through FIM, but I am testing with FIM 2010 R2 and was curious if anyone had any success getting it to work? My hope was that the patches were part of the R2 release, but I do not see the registry key that you need to enable as there is not "PerMAInstance": [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FIMSynchronizationService\Parameters\PerMAInstance\*ADMA] "ADMAEnforcePasswordPolicyHistory" Any help would be appreciated!
May 22nd, 2012 4:41pm

Hello all, Im having issues trying to make FIM 2010 R2 validate the enforce Password History, the DC have this enforcement because have W2008R2 SP1 and the FIM get it with the Upgrade to R2. Ive an scenario with different domains so ive configured one MA per domain, ive added the Registry keys and required parameters: Parameters\PerMAInstance\Domain1 ADMA ADMAEnforcePasswordPolicy (Key: RegDword Value: 1Hex) \Domain2 ADMA ADMAEnforcePasswordPolicy (Key: RegDword Value: 1Hex) ... One Registry Key per domain and ive restarted the FIM Services. This changes were made to apply the policy but just work on two domains and ive other two that doesnt apply it and shows the error: The password does not comply with your organizations password policy. And then permits to provide another one but dont accept any new password suggestion. At eventviewer it shows: PWReset Activity's MIIS Password Set call failed because of a policy violation. The web portal received a fault error from the FIM service. Details: Microsoft.ResourceManagement.WebServices.Faults.ServiceFaultException: DataRequiredFaultReason at Microsoft.ResourceManagement.WebServices.ResourceFactoryClient.Create(Message request) at Microsoft.IdentityManagement.CredentialManagement.Portal.Common.ResetProxy.InteractWithPasswordResetActivity(SecureString newPassword, String activityEndpoint, String workflowInstanceId, ContextualSecurityToken sessionSecurityToken) Web Portal: FIM Password Reset Portal Session Id: 1ydljtrpp3e5xy55jpaqya45 IP Address: And: Message: An error has occurred. Please try again, and if the problem persists, contact your help desk or system administrator. (Error 3000) Source: Attributes: Details: System.InvalidProgramException: Error while performing the password reset operation: PWUnrecoverableError at Microsoft.IdentityManagement.CredentialManagement.Portal.Reset.AttemptToResetPassword() at System.Web.UI.WebControls.Button.OnClick(EventArgs e) at System.Web.UI.WebControls.Button.RaisePostBackEvent(String eventArgument) at System.Web.UI.Page.RaisePostBackEvent(IPostBackEventHandler sourceControl, String eventArgument) at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint) CorrelationId: RequestId: ErrorCode: 3000
Free Windows Admin Tool Kit Click here and download it now
August 15th, 2012 1:26pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics