Any thoughts on a good method for projecting or joining accounts in AD into FIM. My issue is that there is one primary AD user account for most people - but some may also have one or more privileged/test accounts that are associated with them. I am currently using employeeid as the primary key in the metadirectory. However I get ambiguous matches if I use that for the *special* accounts. I am tempted to created a whole new object class for these accounts -- but that may get me into more trouble. I f I project them in as new objects in FIM - I might lose my provisioning flow by matching them to employee status
↧