The following are recordings of live on-site EmpowerID Admin training sessions conducted by Phil Garinger the week of 9/19/2022 - 9/23/2022 in Frankfurt, Germany.
Core Identity/Person/Account Authentication Security/RBAC Platform Architecture External Systems/Account Stores EmpowerID Platform Architecture Overview EmpowerID Servers EmpowerID Database Server Roles Jobs and Services Permanent Workflows Logging into EmpowerID Persona Switching Navigating the Web UI Dashboard ViewOne page EditOne page Person Account Group Topics Covered
EmpowerID Critical Concepts
EmpowerID System Architecture
Using the EmpowerID Web User Interface
Managing IT Resources in EmpowerID
Session Two – EmpowerID Concepts Sessions
Connector overview - OOB versus Custom Connectors Account Stores and Resource Systems Overview Connecting to AD Creating a Universal Flat File connector Account inbox processing External Roles and Locations Dynamic Hierarchy for Roles/Locations Role and Location Mapping Provisioning Policies (RET) Attribute Flow Rules Default Attribute Policies Joiner Processing Mover Processing Leaver Processing Topics Covered
Connecting to External Systems
Identity Lifecycle Processing
Sessions
Traditional RBAC versus EmpowerID RBAC Model RBAC/TRBAC Overview Security Components (management roles, Access Levels, Operations) Creating and using Query Based Collections Configuring Access Management in EmpowerID (RBAC Pyramid) Approval Flow Policies Access Request Policies Visibility Restriction Policies Data Filters RBAC Assignment/Scope Types – BRL, Group, QBC, MR, Location Creating/Managing Management roles and assignments RBAC Strategy, Building a coherent RBAC architecture EmpowerID Business Roles and Locations When to use Business Roles versus Management roles Practical Persona Example Password Policies Password Self Service workflows and processes Topics Covered
EmpowerID Security Model
Visibility Filtering
Practical RBAC Configuration
Password Management
Sessions
Approval Flow Policies Access Request Policies Creating and using Query Based Collections Visibility Restriction Policies Data Filters Password Policies Password Self Service workflows and processes Topics Covered
EmpowerID Security Model
Visibility Filtering
Password Management
Session 1 – Approval and Access Request Policies Session 2 – Data Filters, Query-Based Collections, and Password Policies Sessions
IAM Shop Overview Requesting Resources My Resources Managing Resources through IAM Shop Process Flow Provisioning Policies – Account provisioning Role/Location assignments Management Role assignments Group access Assignments Dynamic Hierarchy for groups and management roles Processing jobs Localized text, emails, and email configuration Workflow Parameters Noun Verb UI Actions Global system settings Audit Logs and Troubleshooting Topics Covered
Self-Service / IAM Shop
Birthright Access Configuration
Miscellaneous system configuration
Session 1 – Birthright Access Configuration and Miscellaneous Configuration Session 2 – Eligibility, Notifications, Localization, Nouns, Verbs and UI Actions, Audit Logging Sessions