<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Netweaver Identity Management Weblog</title>
	<atom:link href="http://sgciam.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://sgciam.wordpress.com</link>
	<description>Extracting maximum value from Identity and Access Management</description>
	<lastBuildDate>Fri, 16 Sep 2011 18:25:20 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='sgciam.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Netweaver Identity Management Weblog</title>
		<link>http://sgciam.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://sgciam.wordpress.com/osd.xml" title="Netweaver Identity Management Weblog" />
	<atom:link rel='hub' href='http://sgciam.wordpress.com/?pushpress=hub'/>
		<item>
		<title>IT Architectural Principles?</title>
		<link>http://sgciam.wordpress.com/2011/09/16/it-architectural-principles/</link>
		<comments>http://sgciam.wordpress.com/2011/09/16/it-architectural-principles/#comments</comments>
		<pubDate>Fri, 16 Sep 2011 18:22:35 +0000</pubDate>
		<dc:creator>Gregg Dippold</dc:creator>
				<category><![CDATA[IT Architecture]]></category>
		<category><![CDATA[analysis principles]]></category>
		<category><![CDATA[it architectural principles]]></category>
		<category><![CDATA[it architecture]]></category>
		<category><![CDATA[principles of design]]></category>

		<guid isPermaLink="false">http://sgciam.wordpress.com/?p=716</guid>
		<description><![CDATA[If you survey the information on the web concerning IT architectural principles you mostly find descriptions like this.  This is pretty consistent what others have published whether IBM, Gartner, Forrester et. al. After some explanations, they go on to list &#8230; <a href="http://sgciam.wordpress.com/2011/09/16/it-architectural-principles/">Continue reading <span class="meta-nav">&#8594;</span></a><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=716&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://sgciam.files.wordpress.com/2011/09/principledef-copy.jpg"><img class="aligncenter size-medium wp-image-717" title="Principle defined" src="http://sgciam.files.wordpress.com/2011/09/principledef-copy.jpg?w=300&#038;h=216" alt="Dictionary definition of principle" width="300" height="216" /></a></p>
<p>If you survey the information on the web concerning IT architectural principles you mostly find descriptions like <a href="http://pubs.opengroup.org/architecture/togaf8-doc/arch/chap29.html">this</a>.  This is pretty consistent what others have published whether IBM, Gartner, Forrester et. al.</p>
<p>After some explanations, they go on to list a set of rules that should apply to the deployment of IT.  The perspective here is really policy based.  As a policy they are simply constraints on what is permissible and/or a listing of &#8220;best practices.&#8221;  I believe this approach can be subsumed by a broader category, one with a results focus.  IT&#8217;s sole purpose as is any tool is to act as a productivity multiplier, to make the organization more efficient.  The role of the architect is to make decisions which once made are not so easily reversed. This semi-permanent aspect of decision making is why architects should be experienced practitioners that are well versed in computer science fundamentals.</p>
<p>Drawing on the work of <a href="http://www.systematic-innovation.com">Darrell Mann</a> and others, IT Architectural Principles with a results focus can be split into two categories, analysis and design, the first no one enjoys doing the second everyone does.   See diagram below.</p>
<p><a href="http://sgciam.files.wordpress.com/2011/09/archprinciples.jpg"><img class="aligncenter size-medium wp-image-718" title="architectural principles" src="http://sgciam.files.wordpress.com/2011/09/archprinciples.jpg?w=300&#038;h=213" alt="a diagram of architectural principles" width="300" height="213" /></a><br />
In the category of analysis, the principles &#8211; as defined by the opengroup &#8211; become just another series of constraints which influence our design (sometimes to the detriment of the organization when a broader context is not considered).  With the exception of the last item, the listing is straight forward in meaning. What is meant by sticking points are those areas which are sometimes called engineering tradeoffs.</p>
<p>Regarding the design principles, these are derived from a millennia of trail and error with modularity allowing the architect to encapsulate complexity and increase his solution choices, flexibility allowing us to reverse decisions, adapt to change and resilience to withstand the shock of disastrous events.</p>
<p>I believe following these principles versus thinking only about organizational rules, policies and constraints permit us to produce more innovative designs, increasing efficiency in the organization and fulfilling the proper role of architecture.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sgciam.wordpress.com/716/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sgciam.wordpress.com/716/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sgciam.wordpress.com/716/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sgciam.wordpress.com/716/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sgciam.wordpress.com/716/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sgciam.wordpress.com/716/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sgciam.wordpress.com/716/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sgciam.wordpress.com/716/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sgciam.wordpress.com/716/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sgciam.wordpress.com/716/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sgciam.wordpress.com/716/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sgciam.wordpress.com/716/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sgciam.wordpress.com/716/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sgciam.wordpress.com/716/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=716&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sgciam.wordpress.com/2011/09/16/it-architectural-principles/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">gdippold</media:title>
		</media:content>

		<media:content url="http://sgciam.files.wordpress.com/2011/09/principledef-copy.jpg?w=300" medium="image">
			<media:title type="html">Principle defined</media:title>
		</media:content>

		<media:content url="http://sgciam.files.wordpress.com/2011/09/archprinciples.jpg?w=300" medium="image">
			<media:title type="html">architectural principles</media:title>
		</media:content>
	</item>
		<item>
		<title>XAMCL? No Thanks</title>
		<link>http://sgciam.wordpress.com/2011/07/30/xamcl-no-thanks/</link>
		<comments>http://sgciam.wordpress.com/2011/07/30/xamcl-no-thanks/#comments</comments>
		<pubDate>Sat, 30 Jul 2011 19:56:38 +0000</pubDate>
		<dc:creator>Gregg Dippold</dc:creator>
				<category><![CDATA[Enterprise Risk Management]]></category>
		<category><![CDATA[IAM General]]></category>
		<category><![CDATA[authorization policy]]></category>
		<category><![CDATA[epistemology]]></category>
		<category><![CDATA[xamcl]]></category>

		<guid isPermaLink="false">http://sgciam.wordpress.com/?p=711</guid>
		<description><![CDATA[XAMCL? No Thanks That there are no new problems seems widely understood (save for the child and naïf) but it seems rarely do people bother to understand the historical solutions to these problems, that is to say, we focus almost &#8230; <a href="http://sgciam.wordpress.com/2011/07/30/xamcl-no-thanks/">Continue reading <span class="meta-nav">&#8594;</span></a><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=711&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>XAMCL? No Thanks</p>
<p>That there are no new problems seems widely understood (save for the child and naïf) but it seems rarely do people bother to understand the historical solutions to these problems, that is to say, we focus almost exclusively on the facts of the problem without ever bothering to look at the principles or rules that may already be understood.  This kind of reflective thinking, along with analysis of principles derived from the experience of our predecessors whether extant or having suffered debitum naturae, extracts a large cognitive cost.  &#8220;Math is hard,&#8221; the philosopher Barbie once observed, as is all real analysis.</p>
<p>What we frequently do, because it extracts a low cognitive cost, is simply to allow things to move in the direction dictated by the promoter with the large megaphone, to prattle on mindlessly like a child, to ignore what has gone before, to ignore what theory there is and prefer the clustering of like minded people even if this is nothing more than a coterie of idiot enthusiasts.  It is easier to sit on the band wagon collecting money with all the other simpletons, than to go against the flow and think for yourself.</p>
<p>Nothing embodies this more than the widespread use of XML for things which it is poorly suited, especially data management.  In its early stages there were vigorous arguments against adopting it, but logic and reason are no match for fads backed by large corporations motivated by &#8220;innovation&#8221;, and quarterly results.</p>
<p>In proposing to use xml as the common &#8220;language&#8221; of security policy the authors of the specification write the following:</p>
<p>&#8220;XML is a natural choice as the basis for the common security-policy language, due to the ease with which its syntax and semantics can be extended to accommodate the unique requirements of this application, and the widespread support that it enjoys from all the main platform and tool vendors.&#8221;</p>
<p>This is specious reasoning if it can be called reasoning at all.  Can anyone show me a text based format that can&#8217;t be extended to accommodate the requirements of an application? In the second half of that sentence they note that xml has widespread &#8220;support.&#8221;    Socialism had widespread support among the intelligentsia,  but it doesn&#8217;t work well either.  To exchange data we only need to agree what to pass and what it means.  All real meaning exists in the hemispheres of the brain.  Since logic ignores context, the meaning is documented so we are not left to speculate.  If that view, that concept is missing we are stuck with speculation.  Anyone who has tried reading uncommented code or peered into a database without knowing the conceptual model, know this well.  Nearly all the early claims of xml&#8217;s benefits (especially about meaning and tags) have been abandoned and we are left with these two, everybody does it and I can make it do anything.</p>
<p>A while back there was a question posted on a Linked-In group titled &#8220;Is Role Based Access Control a dead end and Rule Based Access the future?&#8221; inevitably several said the answer to the problem is XAMCL. I don&#8217;t think so.  What drives the problems with role design versus using rules are really fundamental philosophical questions of categorization and classification (distinctly different concepts) and how we manage complexity.  To say the solution will be adapting yet another complex xml standard is laughable.  It really shows that one does not understand the fundamental nature of the problem. Maybe xml is the way to go but I doubt there was much reflective thinking before they started writing.  My best guess is that XAMCL will be as widely adapted as SPML and most likely will spawn efforts like <a href="http://www.simplecloud.info/">this</a> for the same reasons.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sgciam.wordpress.com/711/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sgciam.wordpress.com/711/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sgciam.wordpress.com/711/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sgciam.wordpress.com/711/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sgciam.wordpress.com/711/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sgciam.wordpress.com/711/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sgciam.wordpress.com/711/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sgciam.wordpress.com/711/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sgciam.wordpress.com/711/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sgciam.wordpress.com/711/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sgciam.wordpress.com/711/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sgciam.wordpress.com/711/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sgciam.wordpress.com/711/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sgciam.wordpress.com/711/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=711&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sgciam.wordpress.com/2011/07/30/xamcl-no-thanks/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">gdippold</media:title>
		</media:content>
	</item>
		<item>
		<title>NetWeaver Identity Management 7.1 Implementation Challenges</title>
		<link>http://sgciam.wordpress.com/2010/10/18/netweaver-identity-management-7-1-implementation-challenges/</link>
		<comments>http://sgciam.wordpress.com/2010/10/18/netweaver-identity-management-7-1-implementation-challenges/#comments</comments>
		<pubDate>Mon, 18 Oct 2010 21:43:59 +0000</pubDate>
		<dc:creator>Gregg Dippold</dc:creator>
				<category><![CDATA[Netweaver Identity Management 7.1]]></category>
		<category><![CDATA[Netweaver IdM General]]></category>
		<category><![CDATA[linkedin]]></category>
		<category><![CDATA[netweaver identity management deployment]]></category>
		<category><![CDATA[Netweaver Identity Management GUI]]></category>

		<guid isPermaLink="false">http://sgciam.wordpress.com/?p=703</guid>
		<description><![CDATA[Challenge 1:  Self Service is Not Intuitive for Unsophisticated Users Companies deploying NetWeaver Identity Management will find that that the interface for self service for the least technical employees will require training.   Clicking a self service task to request a &#8230; <a href="http://sgciam.wordpress.com/2010/10/18/netweaver-identity-management-7-1-implementation-challenges/">Continue reading <span class="meta-nav">&#8594;</span></a><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=703&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>Challenge 1:  Self Service is Not Intuitive for Unsophisticated Users</strong><br />
Companies deploying NetWeaver Identity Management will find that that the interface for self service for the least technical employees will require training.   Clicking a self service task to request a privilege or business role will result in a standard WebDynPro interface that will show them two search boxes. The one on the left will be for searching for what they want (Available) and the one on the right what they already have had assigned.    Experience has shown that this interface can cause confusion with unsophisticated users. Companies will want to make judicious use of access controls to limit what choices are presented to the self service client.  This requires that logic be established in advance based upon some set to which they are a member.  Additionally, companies will want to train employees in advance of deployment to reduce help desk calls.</p>
<p><strong>Challenge 2:  Fragmented Documentation</strong><br />
The documentation for accomplishing end to end workflows is scattered across many different documents.  There are few scenario based use case “how-to” documents.  Companies deploying NetWeaver IdM 7.1 will want to permit sufficient time for their deployment team to work with the product in order to gain a full understanding, before undertaking a deployment.  Alternatively, companies can bring in outside experts to assist, and train personnel.</p>
<p><strong>Challenge 3:  Limitations in the Staging Environment </strong><br />
NetWeaver IdM 7.1 uses an xml export file to move from development to Test and Test to Production.    The file is exported using a built in utility.  The file is created within the identity center by selecting export.  Many settings between environments are not exported for example, repositories, event agents, provisioning/deprovisioning tasks on privileges must be done manually.  There are some bugs, for example, complex linking between tasks are sometimes broken during import.   These limitations can be mitigated with manual adjustments but the process is lengthy.<br />
<strong>Challenge 4:   Job Customization Frequently Requires Custom JavaScript</strong><br />
Under NetWeaver IdM 7.1 the imported “SAP Provisioning Framework” has greatly simplified system deployment, however, there are simple functions, for example, E-Mail notifications which still must be done entirely in JavaScript.  This also applies to any non-simple data modification.   This slows down deployment.  The alternatives are to custom development Java templates or wait for the product to mature.</p>
<p><strong>Challenge 5:  Few Useful Reports Available in Default Installation</strong></p>
<p>Most of the default reports available lack the simplicity of being able to easily show standard audit information like “who did what to whom and when”.  Although extensive audit information is stored the database, it is not always easy to extract the data without extensive SQL queries.  The documentation itself does not clearly explain the complex relationship between the data in the tables.  There are no shortcuts available , careful analysis of the underlying tables and proper query writing must be done.</p>
<p>&nbsp;</p>
<p>NB: Since I am on a project and can&#8217;t go to Tech Ed watch <a href="http://idm-thoughtplace.blogspot.com/">Matt Pollicove&#8217;s blog</a> for updates on whether these challenges are being addressed.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sgciam.wordpress.com/703/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sgciam.wordpress.com/703/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sgciam.wordpress.com/703/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sgciam.wordpress.com/703/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sgciam.wordpress.com/703/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sgciam.wordpress.com/703/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sgciam.wordpress.com/703/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sgciam.wordpress.com/703/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sgciam.wordpress.com/703/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sgciam.wordpress.com/703/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sgciam.wordpress.com/703/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sgciam.wordpress.com/703/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sgciam.wordpress.com/703/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sgciam.wordpress.com/703/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=703&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sgciam.wordpress.com/2010/10/18/netweaver-identity-management-7-1-implementation-challenges/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">gdippold</media:title>
		</media:content>
	</item>
		<item>
		<title>Identity Management Business Case Part II</title>
		<link>http://sgciam.wordpress.com/2010/10/07/identity-management-business-case-part-ii/</link>
		<comments>http://sgciam.wordpress.com/2010/10/07/identity-management-business-case-part-ii/#comments</comments>
		<pubDate>Thu, 07 Oct 2010 11:30:52 +0000</pubDate>
		<dc:creator>Gregg Dippold</dc:creator>
				<category><![CDATA[IAM General]]></category>
		<category><![CDATA[IAM Business Case]]></category>
		<category><![CDATA[Identity Management Business Case]]></category>
		<category><![CDATA[it project business case]]></category>
		<category><![CDATA[it project feasibility]]></category>
		<category><![CDATA[linkedin]]></category>
		<category><![CDATA[process re-engineering]]></category>

		<guid isPermaLink="false">http://sgciam.wordpress.com/?p=696</guid>
		<description><![CDATA[I have previously posted a straight forward method for creating an identity management business case and based on the downloads I have had it&#8217;s been popular.  I also know it&#8217;s effective because it&#8217;s been proven.    Most people shy away from &#8230; <a href="http://sgciam.wordpress.com/2010/10/07/identity-management-business-case-part-ii/">Continue reading <span class="meta-nav">&#8594;</span></a><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=696&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>I have previously posted a straight forward method for creating an identity management business case and based on the downloads I have had it&#8217;s been popular.  I also know it&#8217;s effective because it&#8217;s been proven.    Most people shy away from the real options part, however.  Everyone seems to understand discounted cash flows, but many do not understand real options.</p>
<p>I am now posting a stronger model that is complementary to the other one and can be used for other initiatives besides IAM.    It combines real options with Knowledge Value Added (KVA).  The methodology is derived from the work of <a href="http://www.amazon.com/Johnathan-Mun/e/B001IO9TR2">Johnathan Mun</a> so if you want to go back to the source start there.</p>
<p>As side note, some people think it is foolish to share methodologies that you have developed and all the big consulting firms protect theirs.  A methodology is just a process, and the only thing that matters is the execution of it.  It can be downloaded at the Risk Horizon website <a href="http://www.riskhorizon.net/downloads.html" target="_blank">here</a>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sgciam.wordpress.com/696/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sgciam.wordpress.com/696/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sgciam.wordpress.com/696/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sgciam.wordpress.com/696/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sgciam.wordpress.com/696/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sgciam.wordpress.com/696/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sgciam.wordpress.com/696/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sgciam.wordpress.com/696/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sgciam.wordpress.com/696/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sgciam.wordpress.com/696/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sgciam.wordpress.com/696/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sgciam.wordpress.com/696/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sgciam.wordpress.com/696/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sgciam.wordpress.com/696/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=696&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sgciam.wordpress.com/2010/10/07/identity-management-business-case-part-ii/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">gdippold</media:title>
		</media:content>
	</item>
		<item>
		<title>Netweaver IdM Connector Development Kit</title>
		<link>http://sgciam.wordpress.com/2010/09/30/netweaver-idm-connector-development-kit/</link>
		<comments>http://sgciam.wordpress.com/2010/09/30/netweaver-idm-connector-development-kit/#comments</comments>
		<pubDate>Thu, 30 Sep 2010 10:10:39 +0000</pubDate>
		<dc:creator>Gregg Dippold</dc:creator>
				<category><![CDATA[Netweaver Identity Management 7.1]]></category>
		<category><![CDATA[linkedin]]></category>
		<category><![CDATA[Netweaver Identity Management Connectors]]></category>
		<category><![CDATA[Netweaver IdM Integration]]></category>

		<guid isPermaLink="false">http://sgciam.wordpress.com/?p=689</guid>
		<description><![CDATA[In the middle of September SAP began its push for certified solutions to increase the number of connectors for NW IdM.  This is the latest &#8220;integration scenario.&#8221;  Sometimes I think that SAP sets the standard for clunky phrases and naming &#8230; <a href="http://sgciam.wordpress.com/2010/09/30/netweaver-idm-connector-development-kit/">Continue reading <span class="meta-nav">&#8594;</span></a><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=689&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>In the middle of September SAP began its <a href="http://www.sdn.sap.com/irj/scn/weblogs?blog=/pub/wlg/21025">push</a> for certified solutions to increase the number of connectors for NW IdM.  This is the latest &#8220;integration scenario.&#8221;  Sometimes I think that SAP sets the standard for clunky phrases and naming conventions.  They are looking for partners and developers to increase the number of connectors.  The best part of this is that you get to pay for the privilege of improving their product.</p>
<blockquote><p>And there is an additional “ONE TIME OFFER” from SAP: Every company that  signs a certification agreement in the category “NW-IDM-CON” before  December 31<sup>st</sup>. 2010 will receive <strong><span style="text-decoration:underline;">a 20 percent discount on the certification fee</span></strong>.</p></blockquote>
<p>At least you are getting the certification discount;  I suppose you can then sell your connector to others after achieving certification.  I wonder how many &#8220;uncertified&#8221; connectors will start to circulate that people will write for their own use.   At times it seems that SAP is entirely driven by revenue generation.   I can&#8217;t help but wonder how better off they would be if they actually encouraged a vibrant developer community.</p>
<p>I haven&#8217;t had a chance to review the kit yet but having worked on custom jobs under 7.0, the documentation has to be better than just javadocs.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sgciam.wordpress.com/689/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sgciam.wordpress.com/689/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sgciam.wordpress.com/689/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sgciam.wordpress.com/689/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sgciam.wordpress.com/689/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sgciam.wordpress.com/689/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sgciam.wordpress.com/689/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sgciam.wordpress.com/689/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sgciam.wordpress.com/689/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sgciam.wordpress.com/689/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sgciam.wordpress.com/689/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sgciam.wordpress.com/689/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sgciam.wordpress.com/689/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sgciam.wordpress.com/689/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=689&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sgciam.wordpress.com/2010/09/30/netweaver-idm-connector-development-kit/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">gdippold</media:title>
		</media:content>
	</item>
		<item>
		<title>SailPoint Overview Part II</title>
		<link>http://sgciam.wordpress.com/2010/09/21/sailpoint-overview-part-ii/</link>
		<comments>http://sgciam.wordpress.com/2010/09/21/sailpoint-overview-part-ii/#comments</comments>
		<pubDate>Tue, 21 Sep 2010 11:30:46 +0000</pubDate>
		<dc:creator>Gregg Dippold</dc:creator>
				<category><![CDATA[Enterprise Risk Management]]></category>
		<category><![CDATA[linkedin]]></category>
		<category><![CDATA[Policy]]></category>
		<category><![CDATA[Role Mining]]></category>
		<category><![CDATA[SailPoint IdentityIQ]]></category>

		<guid isPermaLink="false">http://sgciam.wordpress.com/?p=685</guid>
		<description><![CDATA[SailPoint began their product with a governance model instead of starting with provisioning.  I think this gives the product a distinct advantage.  Rather being focused entirely on a select group of technical employees and making their lives easier, they instead &#8230; <a href="http://sgciam.wordpress.com/2010/09/21/sailpoint-overview-part-ii/">Continue reading <span class="meta-nav">&#8594;</span></a><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=685&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>SailPoint began their product with a governance model instead of starting with provisioning.  I think this gives the product a distinct advantage.  Rather being focused entirely on a select group of technical employees and making their lives easier, they instead focused on the business initially and now they are bringing in provisioning elements.  It is much harder to bolt on re-certification and role analysis to an existing product then add provisioning.  I also like their approach to role management which is both top down and bottom up.  As has been pointed out by Gregory in this <a href="http://sgcri.wordpress.com/2009/05/22/enterprise-role-management-lost-in-the-technical-trap/">post</a>, just doing bottom up role mining is a mistake since many people have access they never use.  In the next couple of blog posts I will highlight some specific features of the product.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sgciam.wordpress.com/685/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sgciam.wordpress.com/685/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sgciam.wordpress.com/685/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sgciam.wordpress.com/685/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sgciam.wordpress.com/685/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sgciam.wordpress.com/685/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sgciam.wordpress.com/685/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sgciam.wordpress.com/685/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sgciam.wordpress.com/685/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sgciam.wordpress.com/685/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sgciam.wordpress.com/685/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sgciam.wordpress.com/685/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sgciam.wordpress.com/685/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sgciam.wordpress.com/685/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=685&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sgciam.wordpress.com/2010/09/21/sailpoint-overview-part-ii/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">gdippold</media:title>
		</media:content>
	</item>
		<item>
		<title>New Home for Enterprise Risk Management Posts</title>
		<link>http://sgciam.wordpress.com/2010/09/20/new-home-for-enterprise-risk-management-posts/</link>
		<comments>http://sgciam.wordpress.com/2010/09/20/new-home-for-enterprise-risk-management-posts/#comments</comments>
		<pubDate>Mon, 20 Sep 2010 13:00:36 +0000</pubDate>
		<dc:creator>Gregg Dippold</dc:creator>
				<category><![CDATA[Enterprise Risk Management]]></category>

		<guid isPermaLink="false">http://sgciam.wordpress.com/?p=682</guid>
		<description><![CDATA[With the risk intelligence blog in limbo. I have decided to post my enterprise risk management topics here.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=682&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>With the risk intelligence blog in limbo.  I have decided to post my enterprise risk management topics <a href="http://riskhorizon.wordpress.com" target="_blank">here</a>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sgciam.wordpress.com/682/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sgciam.wordpress.com/682/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sgciam.wordpress.com/682/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sgciam.wordpress.com/682/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sgciam.wordpress.com/682/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sgciam.wordpress.com/682/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sgciam.wordpress.com/682/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sgciam.wordpress.com/682/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sgciam.wordpress.com/682/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sgciam.wordpress.com/682/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sgciam.wordpress.com/682/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sgciam.wordpress.com/682/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sgciam.wordpress.com/682/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sgciam.wordpress.com/682/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=682&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sgciam.wordpress.com/2010/09/20/new-home-for-enterprise-risk-management-posts/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">gdippold</media:title>
		</media:content>
	</item>
		<item>
		<title>SailPoint IdentityIQ Quick Overview</title>
		<link>http://sgciam.wordpress.com/2010/09/20/sailpoint-identityiq-quick-overview/</link>
		<comments>http://sgciam.wordpress.com/2010/09/20/sailpoint-identityiq-quick-overview/#comments</comments>
		<pubDate>Mon, 20 Sep 2010 12:00:32 +0000</pubDate>
		<dc:creator>Gregg Dippold</dc:creator>
				<category><![CDATA[Enterprise Risk Management]]></category>
		<category><![CDATA[GRC]]></category>
		<category><![CDATA[IAM General]]></category>
		<category><![CDATA[SailPoint]]></category>
		<category><![CDATA[SailPoint IdentityIQ]]></category>

		<guid isPermaLink="false">http://sgciam.wordpress.com/?p=677</guid>
		<description><![CDATA[I had the opportunity courtesy of CTI to train on the SailPoint IdentityIQ product.  I was impressed with the thoroughness of the product.  They are not narrowly focused but offer the  means of nailing down your application identity certifications while &#8230; <a href="http://sgciam.wordpress.com/2010/09/20/sailpoint-identityiq-quick-overview/">Continue reading <span class="meta-nav">&#8594;</span></a><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=677&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>I had the opportunity courtesy of <a href="http://www.cticorp.com">CTI</a> to train on the SailPoint IdentityIQ product.  I was impressed with the thoroughness of the product.  They are not narrowly focused but offer the  means of nailing down your application identity certifications while insuring segregation of duties and least privilege.  This product covers the enterprise and is not  just an IT ecosystem like SAP GRC.  If I have a complaint it is that it relies on too much XML when setting up an application.  XML is nearly useless with its insistence that data must be modeled as 1:N.  The brain may love hierarchies but XML with all it&#8217;s tags and so little data makes hierarchies a headache to work with.  Their developers seem to sense this too because they have moved some areas around web services to json as opposed to SOAP, an approach I have had my fill of.  If enterprise governance is a requirement for you, and you find yourself failing audits, be sure to check out SailPoint.  &lt;shameless plug&gt;Then call Matt Pollicove (who blogs here from time to time) at CTI when you need help implementing.&lt;/shameless plug&gt;</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sgciam.wordpress.com/677/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sgciam.wordpress.com/677/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sgciam.wordpress.com/677/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sgciam.wordpress.com/677/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sgciam.wordpress.com/677/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sgciam.wordpress.com/677/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sgciam.wordpress.com/677/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sgciam.wordpress.com/677/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sgciam.wordpress.com/677/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sgciam.wordpress.com/677/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sgciam.wordpress.com/677/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sgciam.wordpress.com/677/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sgciam.wordpress.com/677/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sgciam.wordpress.com/677/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=677&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sgciam.wordpress.com/2010/09/20/sailpoint-identityiq-quick-overview/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">gdippold</media:title>
		</media:content>
	</item>
		<item>
		<title>IdM Reader&#8217;s Choice Awards</title>
		<link>http://sgciam.wordpress.com/2010/09/15/idm-readers-choice-awards/</link>
		<comments>http://sgciam.wordpress.com/2010/09/15/idm-readers-choice-awards/#comments</comments>
		<pubDate>Wed, 15 Sep 2010 19:00:29 +0000</pubDate>
		<dc:creator>Gregg Dippold</dc:creator>
				<category><![CDATA[Decision Analysis]]></category>
		<category><![CDATA[IAM General]]></category>
		<category><![CDATA[information security magazine]]></category>
		<category><![CDATA[linkedin]]></category>
		<category><![CDATA[readers choice]]></category>

		<guid isPermaLink="false">http://sgciam.wordpress.com/?p=662</guid>
		<description><![CDATA[Information Security Magazine Readers Choice awards are out.  For Identity and Access Management it went Microsoft, IBM and RSA.  I think if you asked professionals who have worked with more than one IdM product, you would have a markedly different &#8230; <a href="http://sgciam.wordpress.com/2010/09/15/idm-readers-choice-awards/">Continue reading <span class="meta-nav">&#8594;</span></a><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=662&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Information Security Magazine Readers Choice awards are out.  For <a href="http://searchsecurity.techtarget.com/magazineFeature/0,296894,sid14_gci1519636_mem1,00.html">Identity and Access Management</a> it went Microsoft, IBM and RSA.  I think if you asked professionals who have worked with more than one IdM product, you would have a markedly different response.  In many cases readers vote, not based on actual experience, but with a &#8220;go with what you know&#8221; heuristic, that is, they vote on names they recognize.  These kinds of votes are useful if you have to make a choice within 1-2 days.  It&#8217;s a safe bet.  If you actually have time to decide and evaluate, it would be malpractice.</p>
<p>The most accurate answer could be had by having people wager on the best product as measured against a set of metrics.  When people are asked to risk their own money, it becomes more than a trivial exercise.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sgciam.wordpress.com/662/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sgciam.wordpress.com/662/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sgciam.wordpress.com/662/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sgciam.wordpress.com/662/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sgciam.wordpress.com/662/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sgciam.wordpress.com/662/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sgciam.wordpress.com/662/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sgciam.wordpress.com/662/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sgciam.wordpress.com/662/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sgciam.wordpress.com/662/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sgciam.wordpress.com/662/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sgciam.wordpress.com/662/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sgciam.wordpress.com/662/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sgciam.wordpress.com/662/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=662&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sgciam.wordpress.com/2010/09/15/idm-readers-choice-awards/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">gdippold</media:title>
		</media:content>
	</item>
		<item>
		<title>Enterprise Portal Bug</title>
		<link>http://sgciam.wordpress.com/2010/07/08/enterprise-portal-bug/</link>
		<comments>http://sgciam.wordpress.com/2010/07/08/enterprise-portal-bug/#comments</comments>
		<pubDate>Thu, 08 Jul 2010 23:37:23 +0000</pubDate>
		<dc:creator>Gregg Dippold</dc:creator>
				<category><![CDATA[IAM General]]></category>

		<guid isPermaLink="false">http://sgciam.wordpress.com/?p=656</guid>
		<description><![CDATA[A fellow traveler in NW IdM world, Geoff, recently encountered  a bug while provisioning 6,000 users to enterprise portal(7.0) with basic roles.  The job failed and it corrupted the portal.  Here is the error message: Exception from Modify operation:com.sap.idm.ic. ToPassException: &#8230; <a href="http://sgciam.wordpress.com/2010/07/08/enterprise-portal-bug/">Continue reading <span class="meta-nav">&#8594;</span></a><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=656&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>A fellow traveler in NW IdM world, Geoff, recently encountered  a bug while provisioning 6,000 users to enterprise portal(7.0) with basic roles.  The job failed and it corrupted the portal.  Here is the error message:</p>
<p>Exception from Modify operation:com.sap.idm.ic.</p>
<div>ToPassException:  SPML exception: Could not update user Object is invalid, most  probably it<br />
doesn&#8217;t exist anymore on the persistency: portal_content/com.sap.idm.identity_management_folder/<br />
com.sap.idm.identity_management_role</div>
<div>Turns out the bug is within portal and SAP is issuing a patch.</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sgciam.wordpress.com/656/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sgciam.wordpress.com/656/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sgciam.wordpress.com/656/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sgciam.wordpress.com/656/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sgciam.wordpress.com/656/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sgciam.wordpress.com/656/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sgciam.wordpress.com/656/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sgciam.wordpress.com/656/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sgciam.wordpress.com/656/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sgciam.wordpress.com/656/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sgciam.wordpress.com/656/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sgciam.wordpress.com/656/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sgciam.wordpress.com/656/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sgciam.wordpress.com/656/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sgciam.wordpress.com&amp;blog=3969875&amp;post=656&amp;subd=sgciam&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sgciam.wordpress.com/2010/07/08/enterprise-portal-bug/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">gdippold</media:title>
		</media:content>
	</item>
	</channel>
</rss>
