Child pages
  • UCLA Grouper Page

Versions Compared


  • This line was added.
  • This line was removed.
  • Formatting was changed.


UCLA deployed multi-factor authentication (MFA) in its Shibboleth Single Sign-On service in June 2016. Our goal, over time, is to require MFA use campus widefor all sensitive account access. On our way to that goal, we recognize that it is necessary need to develop a flexible architecture allowing enabling us to flexibly configure which population we turn on MFA formanage the MFA-required population. Grouper is the calculation engine we use to track who needs to enroll, who has enrolled, and who are the exceptions.