Quantcast
Channel: Forum Microsoft Identity Manager
Viewing all articles
Browse latest Browse all 6944

About to implement MS FIM 2010 R2 - should it go in my DMZ or on my Internal Network ?

$
0
0

Any advice on the following would be greatly appreciated..

I have been tasked with setting up MS FIM 2010 R2 to enable "GalSync" between two Organisations (OrgA being my own organisation and OrgB being one of our "Partner" Organisations) --- There is currently no AD connectivity/trusts in place between us ... and I believe the solution that I'm trying to achieve should be possible without Trusts being established...  

From reading the whitepapers and various forums, it seems that MS FIM 2010 R2 is best sited within my Internal network, as it needs access to an SQL server (and we have internal SQL Farms) plus AD etc.. however, my Network/Security colleagues have a different opinion .. i.e. they maintain that as the "synchronization service" is going to be talking to both internal and external domains .. the FIM Server should be in our DMZ...

So - the question - if anybody has experience of such a set up is ...   where is the "best" place for the MS FIM 2010 R2 server to reside ?  and why ?

Regards


Steve Morris


Viewing all articles
Browse latest Browse all 6944

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>