Connector Version Release History

The Connectors for Forefront Identity Manager (FIM) and Microsoft Identity Manager (MIM) are updated frequently.


This topic is on FIM and MIM only. These Connectors are not supported for install on Azure AD Connect. Released Connectors are preinstalled on AADConnect when upgrading to specified Build.

This topic list all versions of the Connectors that have been released.

Related links:

1.1.604.0 (AADConnect 1.1.614.0)

Fixed issues:

  • Generic Web Services:
    • Fixed an issue preventing a SOAP project from being created when there were two or more endpoints.
  • Generic SQL:
    • In the operation of import the GSQL was not converting time correctly, when saved to connector space. The default date and time format for connector space of the GSQL was changed from 'yyyy-MM-dd hh:mm:ssZ' to 'yyyy-MM-dd HH:mm:ssZ'.

1.1.551.0 (AADConnect 1.1.553.0)

Fixed issues:

  • Generic Web Services:

    • The Wsconfig tool did not convert correctly the Json array from "sample request" for the REST service method. This caused problems with serialization this Json array for the REST request.
    • Web Service Connector Configuration Tool does not support usage of space symbols in JSON attribute names
      • A Substitution pattern can be added manually to the WSConfigTool.exe.config file, e.g. <appSettings> <add key=”JSONSpaceNamePattern” value="__" /> </appSettings>
  • Lotus Notes:

    • When the option Allow custom certifiers for Organization/Organizational Units is disabled then the connector fails during export (Update) After the export flow all attributes are exported to Domino but at the time of export a KeyNotFoundException is returned to Sync.

      • This happens because the rename operation fails when it tries to change DN (UserName attribute) by changing one of the attributes below:
        • LastName
        • FirstName
        • MiddleInitial
        • AltFullName
        • AltFullNameLanguage
        • ou
        • altcommonname
    • When Allow custom certifiers for Organization/Organizational Units option is enabled, but required certifiers are still empty, then KeyNotFoundException occurs.


Fixed issues:

  • Generic Web Services:

    • Can’t import Server configuration if WebService Connector is present
    • WebService Connector is not working with multiple Web Services
  • Generic SQL:

    • No object types are listed for single value referenced attribute
    • Delta import on Change Tracking strategy deletes object when value is removed from multi-value table
    • OverflowException in GSQL connector with DB2 on AS/400


  • Added option to enable\disable searching OUs before opening GlobalParameters page


Released: 2017 March


  • Generic SQL:
    Scenario Symptoms: It is a well-known limitation with the SQL Connector where we only allow a reference to one object type and require cross reference with members.
    Solution description: In the processing step for references were "*" option is chosen, ALL combinations of object types will be returned back to the sync engine.
  • This will create many placeholders
  • It is required to make sure the naming is unique cross object types.
  • Generic LDAP:
    Scenario: When only few containers are selected in specific partition, then the search still will be done in whole partition. Specific will be filtered by Synchronization Service, but not by MA which might cause performance degradation.

    Solution description: Changed GLDAP connector's code to make it possible go through all containers and search objects in each of them, instead of searching in the whole partition.

  • Lotus Domino:

    Scenario: Domino mail deletion support for a person removal during an export.
    Solution: Configurable mail deletion support for a person removal during an export.

Fixed issues:

  • Generic Web Services:

    • When changing the service URL in Default SAP wsconfig projects through WebService Configuration Tool then the following error happens: Could not find a part of the path


  • Generic LDAP:

    • GLDAP Connector does not see all attributes in AD LDS
    • Wizard breaks when no UPN attributes are detected from the LDAP directory schema
    • Delta Imports Failing with discovery errors not present during full import, when "objectclass" attribute is not selected
    • A "Configure Partitions and Hierarchies” configuration page, doesn’t show any objects which type is equal to the partition for Novel servers in the Generic
      LDAP MA. They showed only objects from RootDSE partition.
  • Generic SQL:

    • Fix for Generic SQL watermark Delta Import multivalued attribute not imported bug
    • When exporting deleted\added values of multivalued attribute, they are not deleted\added in data source.
  • Lotus Notes:

    • A specific field "Full Name" is shown in the metaverse correctly however when exporting to Notes the value for the attribute is Null or Empty.
    • Fix for duplicate Certifier error
    • When the Object without any data is selected on the Lotus Domino Connector with other objects then we receive the Discovery error while performing Full-Import.
    • When Delta Import is being running on the Lotus Domino Connector, at the end of that run, the Microsoft.IdentityManagement.MA.LotusDomino.Service.exe service sometimes returns an Application Error.
    • Group membership overall works fine and is maintained, except when running the export to try to remove a user from membership it shows as successful with an update, but the user doesn’t actually get removed from membership in Lotus Notes.
    • An opportunity to choose mode of export as “Append Item at bottom” was added in configuration GUI of Lotus MA to append new items at bottom during the export for multi-valued attributes.
    • Connector will add the needed logic to delete the file from the Mail Folder and ID Vault.
    • Delete membership not working for cross NAB member.
    • Values should be successfully deleted from multi-valued attribute

Released: 2016 March

New Connector
Initial release of the Generic SQL Connector.

New features:

  • Generic LDAP Connector:
    • Added support for delta import with Isode.
  • Web Services Connector:
    • Updated the csEntryChangeResult activity and setImportErrorCode activity to allow object level errors to be returned back to the sync engine.
    • Updated the SAP6 and SAP6User templates to use the new object level error functionality.
  • Lotus Domino Connector:
    • For export, you need one certifier per address book. You can now use the same password for all certifiers to make the management easier.

Fixed issues:

  • Generic LDAP Connector:
    • For IBM Tivoli DS, some reference attributes were not detected correctly.
    • For Open LDAP during a delta import, whitespaces at the beginning and end of strings were truncated.
    • For Novell and NetIQ, an export that moved an object between OUs/containers and at the same time renamed the object failed.
  • Web Services Connector:
    • If the web service had multiple end-points for same binding, then the Connector did not correctly discover these end-points.
  • Lotus Domino Connector:
    • An export of the fullName attribute to a mail-in database did not work.
    • An export which both added and removed member from a group only exported the added members.
    • If a Notes Document is invalid (the attribute isValid set to false), then the Connector fails.

Older releases

Before March 2016, the Connectors were released as support topics.

Generic LDAP



Lotus Domino

Next steps

Learn more about the Azure AD Connect sync configuration.

Learn more about Integrating your on-premises identities with Azure Active Directory.