70-158 · Question #69
You administer a Forefront Identity Manager (FIM) 2010 server in your company network. The FIM server synchronizes user resources between an Active Directory Domain Services (AD DS) domain and a…
The correct answer is B. Create an outbound synchronization rule. C. On the Active Directory outbound sync rule, add the outbound attribute flow rule Source: Name; E. Select the Use as Existence Test check box for the displayName attribute. To verify successful AD account creation, configure an outbound synchronization rule to provision accounts from FIM to AD DS, map the HR 'Name' attribute to the AD 'displayName', and designate 'displayName' as an existence test.
Question
Options
- ACreate an inbound synchronization rule.
- BCreate an outbound synchronization rule.
- COn the Active Directory outbound sync rule, add the outbound attribute flow rule Source: Name;
- DOn the Active Directory outbound sync rule, add the outbound attribute flow rule Source: Name;
- ESelect the Use as Existence Test check box for the displayName attribute.
How the community answered
(64 responses)- A23% (15)
- B42% (27)
- D34% (22)
Why each option
To verify successful AD account creation, configure an outbound synchronization rule to provision accounts from FIM to AD DS, map the HR 'Name' attribute to the AD 'displayName', and designate 'displayName' as an existence test.
An inbound synchronization rule defines flow from a connected data source *to* the FIM metaverse, but the problem focuses on provisioning *from* the metaverse *to* AD DS and verifying creation *in* AD.
An outbound synchronization rule is necessary to define how user objects and their attributes are provisioned and flow from the FIM metaverse to the Active Directory domain.
This attribute flow defines that the 'Name' attribute (from HR, projected to the metaverse) will be used as the source to populate an attribute in Active Directory (implicitly, 'displayName', as stated in the question), which is crucial for account creation.
This choice is a duplicate of option C and does not represent an additional, distinct step in the solution.
Marking 'displayName' as an existence test enables FIM to check if an object with that 'displayName' already exists in Active Directory, allowing it to confirm if the provisioning process successfully created or identified the target account.
Concept tested: FIM 2010 Outbound Provisioning and Existence Tests
Topics
Community Discussion
No community discussion yet for this question.