Introduction
A hotfix rollup package (4.6.258.0) is available for Microsoft Identity Manager (MIM) 2016 Service Pack 2 (SP2). This rollup package resolves some issues and adds some improvements that are described in the "Issues fixed and improvements added in this update" section.
Known issues in this update
PAM Requests
-
After upgrading to build 4.6.258, you will see that the members are no longer removed from shadowPrincipal objects when role is manually deactivated (Close-PAMRequest)
Update Information
Microsoft Download Center
A supported update is available from the Microsoft Download Center. We recommend that all customers apply this update to their production systems.
Prerequisites
To apply this update, you must have the following installed:
-
Microsoft Identity Manager 2016 Service Pack 2 (SP2) build 4.6.34.0
Restart requirement
You must restart the computer after you apply the add-ins and extensions package (Mimaddinsextensions_x(64/86)_kb4560335.msp). You may also have to restart the server components.
Issues fixed and improvements added in this update
Certificate Management
-
Search results don't cause errors because profiles assigned to users are already deleted from Active Directory (AD)
Service and
Portal
-
Resolves issue where approvals created prior to 4.5.412.0 build cannot be approved after MIM Service Pack 2 is installed
-
Language pack reinstall no longer overwrites customer defined RCDC strings
-
MIM Portal renders synchronization rules' attribute mappings correctly in Firefox browser
-
Approval workflows allow a request's displayName to contain a double quote
-
RCDC validation errors handling improved
-
Several accessibility bugs and other MIM Portal bugs fixed
Synchronization
Service
-
Joiner tab disconnectors area is now resizable
Privileged
Access Management
-
PAM Monitoring service processing of expired PAM requests is more efficient
-
New parameter -PrivGroupName added into New-PAMGroup cmdlet
New-PAMGroup -SourceDomain “CONTOSO” -SourceGroupName "GroupA" -PrivGroupName "PAM_GroupA" -
Set-PAMGroup cmdlet now allows groups to be renamed in MIM and in PRIV domain after a source group is renamed
Set-PAMGroup -Group (Get-PAMGroup -PrivDisplayName "PRIV.CONTOSO.87172ce5-92a4-4d6e-8f59-46fffcb64170") -SourceAccountName "GroupTestB" -
New-PAMUser cmdlet no longer sets ‘Password not required’ flag for new users
File information
The global version of this update has the file attributes (or later file attributes) that are listed in the following table. The dates and times for these files are listed in Coordinated Universal Time (UTC). When you view the file information, it is converted to local time. To find the difference between UTC and local time, use the Time Zone tab in the Date and Time item in Control Panel.
File name |
File version |
File size |
Date |
Time |
Mimaddinsextensionslp_x64_kb4560335.msp |
Not Applicable |
4,079,616 |
23-May-20 |
02:24 |
Mimaddinsextensionslp_x86_kb4560335.msp |
Not Applicable |
2,957,312 |
23-May-20 |
02:24 |
Mimaddinsextensions_x64_kb4560335.msp |
Not Applicable |
11,526,144 |
23-May-20 |
02:24 |
Mimaddinsextensions_x86_kb4560335.msp |
Not Applicable |
4,595,712 |
23-May-20 |
02:24 |
Mimcmbulkclient_x86_kb4560335.msp |
Not Applicable |
15,413,248 |
23-May-20 |
02:24 |
Mimcmclient_x64_kb4560335.msp |
Not Applicable |
8,540,160 |
23-May-20 |
02:24 |
Mimcmclient_x86_kb4560335.msp |
Not Applicable |
7,970,816 |
23-May-20 |
02:24 |
Mimcm_x64_kb4560335.msp |
Not Applicable |
20,054,016 |
23-May-20 |
02:24 |
Mimservicelp_x64_kb4560335.msp |
Not Applicable |
12,877,824 |
23-May-20 |
02:25 |
References
Learn about the terminology that Microsoft uses to describe software updates.
Third-party information disclaimer
The third-party products that this article discusses are manufactured by companies that are independent of Microsoft. Microsoft makes no warranty, implied or otherwise, about the performance or reliability of these products.