[midPoint] How to config options for application-role per a service

Bao Tran bao.tran at csit.fi
Fri Mar 6 10:46:35 CET 2026


Hi all,
We are implementing a Service + Application Role structure in midPoint and
are struggling with the GUI presentation. We reviewed the official
documentation and the sample configurations but have not been able to find
a clear answer.

Service :

   -

   VPN

Roles (application-role):

   -

   VPN-access     -> induce VPN.Printer
   -

   VPN-manager  -> induce VPN.Printer
   -

   VPN-admin       -> induce VPN.Printer




Our goal is for the GUI to present these three roles as selectable options
when request/assign service-VPN access — specifically:

1. When an end-user requests access to the VPN service, they should be
shown the three application roles and be able to select one.
2. When an administrator opens a user's profile and assigns the VPN
service, the same three options should be presented.

We understand this may involve role catalog configuration or a specific
relation between the service and its application roles, but we are unsure
of the correct approach.

Any guidance or pointers to relevant documentation or examples would be
greatly appreciated.
-- 
Bao Tran
Software developer
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.evolveum.com/pipermail/midpoint/attachments/20260306/eb5276aa/attachment.htm>


More information about the midPoint mailing list