Multi-Affiliation Management Overview
In higher education, identity management isn’t just about creating and managing accounts — it’s about understanding and supporting the fluid relationships individuals have with your institution. This advanced 3-day course builds upon the midPoint learning pathway to tackle complex identity scenarios.
Learn how to effectively configure midPoint to handle various identity relationships common in academic institutions. Through hands-on exercises and real-world examples, you’ll learn techniques for managing concurrent roles, implementing grace periods, and orchestrating smooth identity transitions while maintaining appropriate access levels and security controls.
Course Snapshot
Delivery: Virtual, Instructor-Led
Duration: 3 days (16 hours total)
Times: 10 a.m. – 4 p.m. ET
Upcoming Training Dates:
- November 10-12, 2026
Price:
$1,500- InCommon Participants
$1,880 – Non-Participants
Pre-requisites required, see below
What You’ll Learn
- Manage multiple user identities coming from different sources to midPoint.
- Incorporate custom attributes specified by the eduPerson schema.
- Build a single user profile using attributes coming from different sources.
- Handle complex lifecycle changes that are common for higher education.
- Design robust solutions to control multiple and shifting affiliations per person automatically.
Access to course materials in Canvas
Access to a course Slack channel with instructors and peers
1 hour of assigned pre-work to prepare the training environment. Details will be communicated 1 week prior to the training
3 days full virtual instruction, lab exercises, and discussions
Digital Completion Badge
Ongoing community support and shared learning
Hands-on exercises with a secure virtual environment
IAM Architects
System Administrators
IT Professionals involved in user provisioning
Security Engineers focused on access governance
Anyone looking to implement or manage midPoint
Completion of First Steps, Group Synchronization, and Intermediate midPoint training courses (see Evolveum website for training opportunities or existing equivalent midPoint knowledge, including:
- Synchronization, provisioning, and management of user accounts and groups to/from midPoint
- Using simulations to safely test new configurations
- Using tasks to automate synchronization processes
- Understanding of application roles, business roles, and basic principles of role engineering
- Using MidPoint Studio to manage the midPoint configuration through XML files
Course Content
Getting Started: Get the right tools for the class and that you’ve got the basic knowledge covered.
Environment Overview: Review the full training environment, get introduced to three source applications, learn about the initial midPoint environment.
Working with Multiple Identity Sources: Gain an understanding of multi-source identity concepts. Learn how midPoint can help control the data you store about users when information about them comes from multiple external systems.
Extending the Correlation Capabilities: Learn about the smart correlation mechanism, demonstrating configuration possibilities and explaining the correlation confidence computation.
Transforming Affiliations into Role Assignments: Learn how to revise the business roles and application roles in midPoint. Explore initial role set-up and all its nuances inside the training environment.
Dealing With Affiliation Changes: Review meta-roles in-depth. Learn how to use policies and policy rules to automatically reflect changes in the users’ affiliations.
Integrating the eduPerson Schema: Learn about the eduPerson schema and automatic attribute value computation. Use information about users to automatically transform it to the eduPerson attributes in midPoint and in the target system.
Handling Users’ Lifecycles: Understand the user life cycle in more detail, covering the various stages a user can be in as well as the events that trigger shifting from one stage to another.
midPoint Training Instructors
IDENTITY ENGINEER, EVOLVEUM
Peter Balčirák
EXPERT IDENTITY ENGINEER, EVOLVEUM
Ivan Noris
Featured Resources
midPoint Quick Start Guide
Ready to explore midPoint? This guide helps you get up and running on your local machine in just minutes using Docker. We’ve included a ready-to-use BASH script that simplifies the entire process.
InCommon midPoint Working Group
A space for institutions using or exploring midPoint to connect, collaborate, and deepen their understanding of this powerful identity management tool.
Regulatory Compliance with midPoint
As cybersecurity regulations tighten across the globe, staying compliant is more challenging – and more crucial – than ever. The EU leads the charge with a surge of legislation like NIS2, DORA, and eIDAS 2.0, making identity governance a central pillar of regulatory compliance.
midPoint Training FAQs
Payment, Cancellation, and Refund Policy
How long will I have access?
Do you offer certificates or badges of completion?
Do you offer custom midPoint training options?
Questions about midPoint Training?
Our team is here to provide guidance and help you navigate your training options. Reach out to us directly!
Ready to Boost Your Skills in Other TAP Software?
Explore all of our Trusted Access Platform software component training options to broaden your skills.
