Case studies

Eliminating Legacy Identity Complexity in Higher Education with Microsoft Entra ID and miniOrange

Operating under a unified group structure, a higher education organisation in the United Arab Emirates brings together Abu Dhabi University, Liwa University, and Khawarizmi General College. It supports approximately 11,200 students, faculty, and staff across multiple campuses, with a diverse application landscape spanning cloud services and legacy ERP systems.

Challenges

The organisation’s identity estate was fragmented across its three institutions, with a hybrid Microsoft architecture and only partial single sign-on adoption. The legacy One Identity Manager platform was out of support, with manual provisioning and inconsistent joiner, mover, and leaver processes, creating an end-of-life risk that required urgent remediation.

A dual MFA model using Microsoft Authenticator and DUO introduced operational complexity, with inconsistent enforcement and variable user experience across applications. Oracle PeopleSoft, including HRMS, SIS, and FSCM, remained outside modern authentication coverage along with other LDAP-based applications and could not natively integrate with Microsoft Entra ID without code changes. There was also no unified identity governance in place, with limited Conditional Access, no Privileged Identity Management, and no automated Access Reviews.

Solution

Oreta standardised identity and access management on Microsoft Entra ID as the central authentication and policy enforcement layer, leveraging existing Microsoft 365 A5 and Microsoft Entra P2 licensing across the group. miniOrange Access Gateway was deployed as middleware to federate Oracle PeopleSoft applications (HRMS, SIS, FSCM) with Microsoft Entra ID, enabling single sign-on and multi factor authentication for legacy ERP systems without application code changes.

Modern identity controls were implemented across Conditional Access, Identity Protection, modern MFA, and FIDO2 passwordless authentication for privileged access. Privileged Identity Management and recurring Access Reviews were also enabled to strengthen governance and oversight. Automated joiner, mover, and leaver workflows driven by PeopleSoft HRMS and SIS replaced the out-of-support One Identity Manager with native Microsoft Entra ID lifecycle automation.

Outcome

• 11,200+ users unified across Abu Dhabi University, Liwa University, and Khawarizmi General College into a single Microsoft Entra ID identity fabric.
• Oracle PeopleSoft federated with Microsoft Entra ID via miniOrange, enabling SSO and MFA for legacy ERP without code changes.
• Full Microsoft Entra ID P2 governance implemented, including Conditional Access, Identity Protection, Privileged Identity Management, and Access Reviews.
• HR-driven joiner, mover, and leaver workflows replacing the out-of-support One Identity Manager platform.

Other Case Studies

Let's talk