Gartner ?
Christopher Bongaarts
cab at umn.edu
Tue Jul 22 12:59:03 EDT 2014
On 7/22/2014 11:02 AM, Steven Carmody wrote:
> I think that Christopher Bongaarts from Minn once mentioned a kludge
> that could be used with Gartner to control access.
Speak the name, and thou shalt summon the daemon....
We're using an extremely coarse-grained access control mechanism:
Gartner requires three attributes, surname, givenName, and mail. For
authorized users (which we base on our library access flags), we release
these attributes to Gartner; for unauthorized users, we release nothing
(except transientID). This has the effect of giving the user an error
page at Gartner that indicates a problem.
We do not deprovision users, but so far no one has contacted me about
excessive head counts (I don't know the details of our contract so I
don't know if there is a billing component based on users actually
logged in).
--
%% Christopher A. Bongaarts %% cab at umn.edu %%
%% OIT - Identity Management %% http://umn.edu/~cab %%
%% University of Minnesota %% +1 (612) 625-1809 %%
More information about the users
mailing list