|
|
Metadirectory Technical Status Meeting
https://fsuid.fsu.edu/admin
6/22/2004
- Project
Status
- New schema (http://fsuid.fsu.edu/admin/fsuid-schema.html)
& viewer (http://fsuid.fsu.edu/viewer)
- Completed action items from last update: Have
a regular feed of HRMS ßà FSUIDs to
ERP (hope to roll into nightly HRMS feed directly); added a RADIUS
timeout value for Stursa/ERP; Set up an “MDSDEV” tree for eDirectory
development (same schema, different data – currently being used by
Derek Dean for his Secure Login rewrite). Have added FSUID & FSUSN to test USER_ACCT DB2
table. Formalized internal
IS metadirectory team structure & regular meeting schedule.
- User support/issues regarding FSUID use is
increasing; some manual interventions (name changes, incomplete CARS
entries, etc.)
- Action
Items
- [IS] Set
up “Outlook account enabler” web page and have OTI create new FSU AD
accounts disabled by default (this will force Outlook ßà FSUID associations)
- [UCS,
IS] Disable the ability for people to change their passwords using
the “native” interface for CARS, Secure Login (re-direct to
fsuid.fsu.edu) and Active Directory (AD should be done; waiting on others).
- [IS,
Ethan] Move Oracle tables from ODDL machine (“larissa4”) to an OTI
Oracle instance (On hold; data is
fine where it is); Get remaining data from
CARS/Oracle/fire2.fsu.edu (FSUcard type1 & type 2, Privacy (Publish)
flag, phone number, student status ; Finish “production-izing” all eDir
instances (put “modify” Perl scripts in cron on mdsoti, get backups on
mdsoti, etc.) (ongoing)
- [IS]
Build FSUID web page for ERP “visitor” accounts. Use “vis-loginname” convention for FSUIDs (needs to be designed & built)
- [IS,
Ethan] Continue researching/tweaking eDirectory performance options
(split FSUID web pages from
master eDir server?)
- [IS]
Continue converting “raw” web pages into cleaner interfaces (continuing work on fsuid.fsu.edu;
Helpdesk re-design meetings called); continue to fix user
accessibility features in http://fsuid.fsu.edu. Re-enable Secure Login as one
of the possible authentication methods.
- [IS, ODDL]
– Connect C.A.S. to Secure Login, Blackboard & FSUID, all pointing
to eDir. Continue to
investigate using RFC2307 for departmental UNIX authentication.
- [IS] Set up NWR/ERP development eDir
box (sdeved01) (on hold, but we
do have a true development eDir instance in IS – “mdsdev.ais.fsu.edu”)
- [IS,
Ethan – longer term] Actually get DirXML connections configured and
going for ldap1, ldap2, etc.
Migrate the functionality away from the “home grown” Perl
scripts to using the Novell software.
- [IS,
Ethan] Build the FSU AD shim/remote loader/password sync install
(when OTI WSG deems it “safe”).
Populate appropriate user fields/re-arrange the OUs within AD
using the information in the eDir. (Have Dave
Hearn’s 3-tier list; just have to write script to populate & re-org
the OUs in AD)
- [Chuck,
other ERP HR functional people] Work HR PeopleSoft gaps connected
to metadirectory (resurrect Keith Hamilton’s PeopleCode for eDir sync)
- [Group
– longer term] Continue working SSN à FSNSN
replacement discussions with campus & design “FSUSN” algorithm (new
SSN-like private attribute) – (IS
has an initial level of effort – almost 10,000 hours!)
|