When does class start/end?
Class hours may vary, please reach out to contact@ascendientlearning.com if you have any questions.
The aim of this course is to showcase the key features and capabilities of the versatile and powerful PingAM (AM), formerly known as ForgeRock® Access Management. It provides the student with the...
Read MoreThe aim of this course is to showcase the key features and capabilities of the versatile and powerful PingAM (AM), formerly known as ForgeRock® Access Management. It provides the student with the knowledge and confidence to manage their own environment. It is accepted that this course is not able to demonstrate all the features and capabilities of AM. Further information and guidance can be found in the documentation and knowledge base in the online repositories at: Backstage https://backstage.forgerock.com.
Upon completion of this course, you should be able to:
The target audiences for this course include:
The following are the prerequisites for successfully completing this course:
Start with an unprotected website and end up with a fully functional access management solution where every user trying to access the website is redirected to AM for authentication.
Explore the AM admin UI, view the role of cookies used during and after authentication, and describe authentication trees and nodes:
Show how PingGateway, formerly known as ForgeRock® Identity Gateway, integrated with AM, can protect a website:
Create security policies to control which users can access specific areas of the website:
Improve access management security in AM with MFA, context-based risk analysis, and continuous risk checking.
Increase authentication security using MFA:
Describe how AM can take into account the context of an authentication request in order to make access decisions:
Review the AM tools used to check the risk level of requests continuously:
Implement OAuth2 based protocols; namely, OAuth2 and OIDC, to enable low-level devices and mobile applications to make requests that access resources belonging to a subscriber. AM can be configured to function as an OIDC client and delegate authentication to social media OIDC providers.
Integrate clients using OAuth2 by demonstrating the use of the OAuth2 Device Code grant type flow with AM configured as the OAuth2 authorization server (AS):
Integrate an application using OIDC and the Authorization grant type flow with AM as an OIDC provider:
Authenticate OAuth2 clients with AM using various approaches and obtain certificate-bound access tokens using mutual TLS (mTLS) to provide token proof-of-possession (PoP):
Request and obtain security tokens from an OAuth2 authorization server, including security tokens that employ impersonation and delegation semantics:
Provide a way for users to register and authenticate to AM using a social account:
Demonstrate federation across entities using SAML2 with AM.
Demonstrate single sign-on (SSO) functionality across organizational boundaries:
Delegate authentication to a third-party IdP using SAML2 and examine the metadata:
Install a new AM instance configured with external directory server data stores as the foundation for an AM cluster, modify the AM configuration to harden security, upgrade an AM instance to a new version, and deploy the Ping Identity Platform, formerly known as the ForgeRock® Identity Platform, to the Google Cloud Platform (GCP).
Install AM using interactive and command-line methods creating the foundations for a cluster topology, and upgrade an AM 7.0.1 instance to AM 7.3:
Explore a few default configuration and security settings that need to be modified before migrating to a production-ready solution:
Create an AM cluster with a second AM instance added to the first AM instance that has already been installed:
Deploy the Identity Platform into a cluster in a Google Kubernetes Environment (GKE):
6 options available
Live Virtual | 9:00AM – 5:00PM PDT | |
Language English | |
Select from 1 options below | |
Live Virtual |9:00AM – 5:00PM PDT
|
Live Virtual | 9:00AM – 5:00PM EDT | |
Language English | |
Select from 1 options below | |
Live Virtual |9:00AM – 5:00PM EDT
|
Live Virtual | 9:00AM – 5:00PM PDT | |
Language English | |
Select from 1 options below | |
Live Virtual |9:00AM – 5:00PM PDT
|
Live Virtual | 9:00AM – 5:00PM EDT | |
Language English | |
Select from 1 options below | |
Live Virtual |9:00AM – 5:00PM EDT
|
Live Virtual | 9:00AM – 5:00PM EDT | |
Language English | |
Select from 1 options below | |
Live Virtual |9:00AM – 5:00PM EDT
|
Live Virtual | 9:00AM – 5:00PM PST | |
Language English | |
Select from 1 options below | |
Live Virtual |9:00AM – 5:00PM PST
|
Class hours may vary, please reach out to contact@ascendientlearning.com if you have any questions.
Classes typically include a 1-hour lunch break around midday. However, the exact break times and duration can vary depending on the specific class. Your instructor will provide detailed information at the start of the course.
Most courses are conducted in English, unless otherwise specified. Some courses will have the word "FRENCH" marked in red beside the scheduled date(s) indicating the language of instruction.
GTR stands for Guaranteed to Run; if you see a course with this status, it means this event is confirmed to run. View our GTR page to see our full list of Guaranteed to Run courses.
We have training locations across the United States and Canada - View a complete list of classroom training locations.
At Ascendient Learning, we offer training that is Instructor-Led, Online, Virtual, and Self-Paced.
Yes, we provide training for groups, individuals and private on sites. View our group training page for more information.
As a vendor-authorized training partner, we offer a curriculum that our partners have vetted. We use the same course materials and facilitate the same labs as our vendor-delivered training. These courses are considered the gold standard and, as such, are priced accordingly.
It depends on your requirements, your role in your company, and your depth of knowledge. The good news about many of our learning paths, you can start from the fundamentals to highly specialized training.
We continuously work with our vendors to evaluate and refresh course material to reflect the latest training courses and best practices.
Ascendient Learning instructors have an average of 27 years of practical IT experience and have also served as consultants for an average of 15 years. To stay current, instructors spend at least 25 percent of their time learning new, emerging technologies and courses.
Lab access is dependent on the vendor and the type of training you sign up for. However, many of our top vendors will provide lab access to students to test and practice. The course description will specify lab access.
We will work with you to identify training needs and areas of growth. We offer a variety of training methods, such as private group training, on-site of your choice, and virtually. We provide courses and certifications that are aligned with your business goals.
Getting started on a certification pathway depends on your goals and the vendor you choose to get certified in. Many vendors offer entry-level IT certification to advanced IT certification that can boost your career. To get access to certification vouchers and discounts, please contact info@ascendientlearning.com.
You will get access to the PDF of course books and guides, but access to the recording and slides will depend on the vendor and type of training you receive.
View our filing status and how to request a W9.
I found the labs to be the most useful since I am a hands on learning kind of person
Craig is a wonderful teacher and willing to help with any and all issues during the course.
The hands-on learning was incredibly useful since it allowed me to try out what was being taught.
The practical lab exercises and that we had a VM running the actual software to follow along and play with.
The discussions and labs involving Federation and SAML were the most interesting to me, but I also enjoyed the presentations explaining the concepts of Realms, Policies, Web Agents, Identity Stores, etc.
Ascendient Learning is the coming together of three highly respected brands; Accelebrate, ExitCertified, and Web Age Solutions - renowned for their training expertise - to form one company committed to providing excellence in outcomes-based technical training.
With our winning team, we provide a full suite of customizable training to help organizations and teams upskill, reskill, and meet the growing demand for technical development because we believe that when talent meets drive, individuals rise, and businesses thrive.