Directory Services Project University of Colorado at Boulder
Directory Goal: Trusted, authoritative data source CU Person HR (fac/staff) SIS (student) Idcard (ISO) Telecom (where) FIS (faculty) Uniquid (accounts)
Directory Goal: Identity and relationship management CU UUID HR (EmpID) SIS (SID) Idcard (ISO) Telecom (tele#) FIS (SSN) Uniquid (unixID)
Directory Goal: Usable by applications & services Directory White Pages Active Dir. CalendarUPortalIDCard Secure Netwkg
Directory Goal: Authentication services 2. Authenticate (who), via ID & password, to trusted mechanism 3. Determine Affiliation (what) 4. Grant ticket/cookie (with who/what) 5. Pass ticket to desired application 1. Initial request. Redirect to authentication service 6. Request add’l attributes as needed client Applications AuthN Services Directory trusted authN
Directory Services – Overview Structure
Directory Services – Registry H/R SIS TELE FIS UNIQUID ID CARD etc. LDAP enabled application(s) Registry Update logic Reconciliation Manual entry Oracle Affiliation Registry
Directory Services - Directory Oracle Affiliation Registry Create directory instances UCCS Directory UCB Directory CUSYS Directory UCD Directory UCHSC Directory CU Directory
Send Mail Directory Services - Services UCB Directory UCB Active Directory AuthN Fall 2001 Calendar Winter 2001 Portals White Pages Fall 2001
Project Contacts Paula Vaughan, Project Manager Project Web Page from the UCB - ITS home page (“About ITS” “Projects & Initiatives” “Architecture and Infrastructure Initiatives”) or directly via: