You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 2 Next »

Executive Summary

<Jessica to write after meeting>

Solution Summary

Track: Managing Access

Trusted Access Platform Components: Grouper

Project Team: Pascal Cantin, Chris Russel

Community Collaborators: <who provided significant contribution>

The Environment: <what is unique about your environment? i.e. small/large school, small/large team, includes hospitals, etc.>

Benefits to Organization: 

  • Reducing required time to complete access management request
  • Affecting IT staff to activities that provides more value to the organization.

The Project

Problem Statement:

Our legacy IAM solution (Passport York) has reached some of limits in terms of group provisioning (e.g. automatic provisioning access to AD and Azure AD resources) that we are more and more relying on running ad-hoc scripts and manual interventions to try to keep up.

Impact Statement:

Reduced productivity resulting by the increase of manual work required by the various IT departments of the university to fulfill access management needs.

Scale: Medium to large

Scope:

  • Deploying Grouper and Docker into production
  • Importing necessary attributes and memberships from SIS and PY
  • Provisioning groups and access into AD and Azure AD
  • Developing framework for future reuse

Risks:

  • Developer availability not confirmed yet that could scale back the scope of this project.
  • No Docker infrastructure supported by IT

The Solution

Grouper: An open-source access management solution that can provide automatic group provisioning, based on attribute, role or membership of a person.

The Result

Initial Plan:

  • Grouper PoC installation and configuration: Jan/Feb 2020
  • Validate Grouper PoC with various IT groups: Feb/Mar 2020
  • Deploy Solution production: Mar/Apr 2020
  • Decommission existing scripts: Apr 2020

Actual Implementation:

<how did that go?>

Conclusions & Lessons Learned

<conclusions & lessons learned>

  • No labels