UC Santa CruzInformation Technology Services

Identity Management News

September 2009: "I Forgot" functionality under development

"I Forgot" (my password) functionality is under development. When released, this will provide a method for users to use "challenge questions" to reset their password if they forget either their CruzID Blue or CruzID Gold password.

September 12, 2009: CruzID Manager/SlugMail interfaces complete

Modificiations in support of the Gmail/Slugmail account creation and password management went into production. Changes should be invisible to end-users.

April 2009: Shibboleth in production

The IDM Shibboleth server is now running in production mode. Systems that want to authenticate using Shibboleth and the CruzID Gold password can now request access by submitting an ITR request for IDM services. (Service type: Shibboleth).

January 2009: Shibboleth, InCommon and UCTrust

UCSC is now a memeber of the UCTrust and InCommon higher education federations. The campus Shibboleth service is running in a testing mode. This service will allow users to autheticate to applications running at other campuses using local UCSC credentials. We are currently working to complete the software build that enables UCSC employees to manage their CruzID passwords through the IDM web application (see http://its.ucsc.edu/idm/password-strategy.php for additional information).

November 2008: IDM Hardware transition complete

The IDM team has made extensive architecture improvements that allow us to run multiple virtual servers on the same physical hardware, thus helping to reduce the physical footprint in the Data Center. We've retired the old hardware, which consisted of 17 physical servers, and brought up newer and higher capacity hardware that totals 10 physical servers but equates to 32 virtual servers. The new hardware and virtual serving improves system performance and response, and provides enough capacity to run the multiple, and redundant servers necessary to support the suite of IDM applications. In addition, these servers are load-balanced and can support failover in the event of a problem with a particular component

September 2008: IDM Two-Password Strategy Defined

In order to support applications with more stringent security requirements, IDM will be supporting a new password in addition the existing, centrally managed (Kerberos) password. Details of the strategy are outlined in the Password Strategy document. The new password will be referred to as the "CruzID Gold" password, while the existing account will be referred to as the "CruzID Blue" password.