|
|
Metadirectory Technical Status Meeting
https://fsuid.fsu.edu/admin
12/07/2004
- Project Status
- Big
push to get FSUID setups completed before HR go-live: slowly spamming ~6K
users; dept HR rep special “lookup” helpdesk page created that shows
“incomplete FSUIDs” and gives them the ability to spam as well.
- CAS-enabled
FSUID, Secure Login & Blackboard (woo hoo! – this rocks!). Only uses port 443 J.
- Have
access to HR EPM (ERP datawarehouse) tables for getting employee information
after go-live.
- New
DSC form at http://www.ais.fsu.edu/logins.html
for FSUID access.
- Now
populating“fsuEduLibraryNumber” in load-mod-mds.pl (every 4 hour eDir
load script). Using an existing
“employeeStatus” attribute to contain active employee status based on
appointment dates and status.
- Renamed
“Exchange/Outlook” to “Windows” in various places.
- Enforce
the user renaming their FSUID to an email style IFF card type == 18 and
they have an all-numeric FSUID.
- Web
application list displays more meaningful name of FSUID web app.
- Continuing
to provide CARS user functions in FSUID –Working on a “CARS API” via an
SSH tunnel and Oracle PL/SQL calls for CARS account management (Breeze is
writing the PL/SQL calls)
- Added
button on Helpdesk page for renaming an FSUID back to the userkey value
when fsuEduUserRole is VISITOR and the FSUID is in email format.
- Handling
deletes of visitor “email-style” FSUIDs by hand (problems@ais.fsu.edu)
- Added
logging code whenever an FSUID is renamed to FSHTDB.FSUID_CHG_TRACKING on
marge’s UDB instance. Added FSUSN
as a field so we can track FSUID name changes per person.
- DIRXML
news update – rebuilding mdsdev.
- Note
email/event archive at http://fsuid.fsu.edu/admin/project-history/.
- Action Items
- Get
HR data feed working from PS HR EPM tables; modify existing attributes
(org codes to PS account codes, for instance) and add new ones to get
further relationships out of PS and into the eDir. Initial plan is to create a table
similar to the current HRMS “employee” table with larger field values, if
needed.
- Get
LDAP authentication working under AIX 5.2 (either natively using
secldapclntd or using open source packages) – thanks to UCS for
providing access to aim1.acns.fsu.edu for AIX testing.
- Get
LDAP authentication & attribute updating working with UCS-configured
BlueSocket box (thanks to UCS for providing the box!).
- Clean
up some FSU AD directory attribute mismatches (e.g, “Johnsons”).
- Start
playing with Mike Barker’s Bb instance running on Oracle 10g, with the
goal being the ability to natively deliver all FSUID and Secure Login as
a Bb portal module (resides on http://havoc.us.fsu.edu;
ask Mike for access).
- [IS]
Provide an option for departmental creation of visitor accounts and AD
Exchange accounts with appropriate associations (College of Medicine).
- [IS]
Write web-based documentation explaining how to use eDir for authentication
(pure LDAP, UNIX passwd file, RADIUS, Apache auth_ldap, etc.).
- [Group
– longer term] Continue working SSN ŕ
FSNSN replacement discussions with campus. Pushing in IS out to customers to start using FSUSN which
is now populated in USER_ACCOUNT.
Secure Login beginning to
use FSUSN in place of SSN.
- Work
with ERP/Bryan Spaulding on BusObj FSUID/group A&A.
|