|
|
Metadirectory Technical Status Meeting
http://fsuid.fsu.edu
2/26/2004
- Project
Status
- Loading production data into mdsoti
- The bad
(Outlook security/password distractions), the good (grabbing AD associations) and the ugly (Windows password sync
difficulties on FSU AD)
- Version “.3” of fsuEduPerson:
- Multi-valued the AD attributes (some of us
have more than one AD account, like the FSUCard accounts)
- Added L3L4 & 30-character department
string
- Added attributes for HR/FIN PS instance
- Added “FSUSN” (re-use “fsuEduUserCode”?)
- Insufficient buffer error (-649) attempting
to change fsuEduLdap2PasswordChangeRequired problem?
- ERP/To-ha’ is ordering three decent-sized
Dell servers for “eDir cluster” to be installed at NWR. PS Instances will point to this
cluster for their LDAP authentication binds.
- FYI: “Standing” metadirectory block times for
Jeff, Sean & Ethan:
- Mondays, 2 PM – 4 PM
- Fridays, 2 PM – 4 PM
- In my office (UCC6142); have a “war room”
set up
- Action
Items
- [Ethan,
Jeff, Steve] Re-do the FSU AD shim/remote loader/password sync
install (when UCS WSG deems it “safe”)
- [Ethan,
Jeff, Sean] Feed eDir with Ethan’s “identity merger” script (load
up production data!)
- [Jeff,
Ethan, Sean, Derek] DirXML rulesets for FSU AD, ldap1, ldap2
- [Jeff,
Ethan, Dongmei] Mutate http://www.fsu.edu/password
into fsuid.fsu.edu metadirectory identity/password changer page
with eDir updating
- [Tom,
Jeff, Sean] Get mdsacns up as a read/write replicant
- [Jeff,
Sean (80%)] Move
“fsuid.fsu.edu” to mdsoti & get SSL cert installed
- [Jeff,
Sean, Ethan] Finish “production-izing” all eDir instances (software
firewalls, backup strategies (e.g., Tivoli client installed on
NWR-hosted boxes, etc.))
- [Jeff,
Sean, Ethan, To-ha’] Configure the three new Dell servers bought by
ERP to support eDir (nominally 2 production and one development)
- [Jeff,
Ritch, Ethan (50%)] Test PS instance
authentication with eDir via LDAP and group filtering using the new
fsuEduPerson “PS Instance” attributes. Test LDAP authentication with eDir and a Business
Objects instance (Penny, Greg
& Scott assistance)
- [Chuck,
other HR functional people] Work HR PeopleSoft gaps connected to
metadirectory
- [Group]
Continue working SSN –> FSNSN replacement discussions with campus
& design “FSUSN” algorithm (new SSN-like private attribute)
|