Select the form you would like to fill out. The ad-hoc form is very simple, but will add up to two weeks of processing time. The guided form is more complicated but enables us to process your request much faster. Ad-Hoc Form Guided Form
Background Information
If you have had previous discussions with someone in Ga Tech Identity and Access Mgt (IAM) on this need, tell us who you have been working with?
Paste any previous correspondence or background data here, that might help us understand your need.
Application Information
What is the name of your application?
Briefly describe your application, and its business purpose. Please include names of commercial
or open-source products. Will it be hosted on GT campus or off-campus?: (Required Response)
Who uses the application? (Required Response)
How do users access the application?
Which of the application's network traffic is encrypted? Authentication Information
Do you need to authenticate users? If so, please fill out this section. How will your application authenticate users (ie, check their passwords)? CAS (login.gatech.edu)
Please provide the full URLs for your application including custom port numbers if necessary. Also provide dev/test/prod URLs if you have multiple environments.
Shibboleth
GTED (LDAP based)
If you are using GTED for authentication from a site hosted off campus, what hostname(s) will your application be using?
Kerberos (requires specific approval)
If you are using Kerberos for authentication from a site hosted off campus, what hostname(s) will your application be using?
Other (please specify)
Data Request
If you need to
read data , do you need that from:
Georgia Tech Role System (GRS)
CAS SAML Attributes (limited attributes available)
What hostname(s) will your application be using? Select requested SAML attributes (check all that apply) GT Account (All applications that use login.gatech.edu get the user's GT Account. If you only want their GT Account you do not need to use this form) Names Common Name (cn) ex. Burdell, George P displayName ex. George P BurdellConfidential Names These attributes provide access to names of confidential students. Access requires additional data stewardship scrutiny. gtLegalCN ex. Burdell, George P gtLegalDisplayName ex. George P BurdellE-Mail Primary E-Mail Address Secondary E-Mail AddressesAffiliations Prmary Affiliation ex. student List of all affiliations ex student@cs,employee@mgt eduPersonAffiliationEntitlements EntitlementsID Numbers EmplID GTID PIDM DirGUID gtPersonDirectoryIDCourse Information List of Active Courses List of Courses which have recently ended List of Upcoming Courses List of Courses a user is registered for List of courses a user is teaching If you are looking for data not listed above, please describe what you need:
GTED (LDAP)
If you wish to connect to GTED from off campus, please enter the IP/hostname you will be connecting to GTED from:
GTED (SQL)
Banner (SQL)
Peoplesoft (SQL)
Buzzapi web services
Shibboleth
Other (please specify)
What information do you need? (Please state, in layman terms/English , what type of data you are requesting, even if you know the LDAP attribute names. For example, say Name info, Title, Dept, whether they are student/employee/alumni, what GTAD groups they belong to, what GRS roles they are in, etc. You can also add the LDAP terminology if you like, and this is helpful, but first describing the need in business terms will allow a better understanding of your needs for Cybersecurity, Data Stewards, Identity Mgt, Mgt, and others. Common name data (cn ,givenName,sn,displayName) GT Identifiers (dn, gtDirGUID, gtPIDM,gtEmplid,gtGTID, gtIMSID, gtMagePersonIndex,gtAccessCardNumber, gtPersonDirectoryId, uid, uidNumber, gidNumber, eduPersonPrincipalName)
Email address info (mail, primary email address, all known email addresses).
Whether they are staff/student/alumni/guest/affiliate (affiliation).
What services people or accounts are entitled to use. About whom do you need information?
(if different than application-users described above. ex.students,employees,guests,retirees..) Do you need access to information about students who have requested
FERPA confidentiality? (Required Response) If the answer is YES, please explain Why this is needed. See link below for what FERPA confidential means.
See: http://www.registrar.gatech.edu/students/formlanding/confid.php Note: There are about 20 current students (as of May 09) that have
requested confidentialityNote: Saying yes here means greatly increased data-steward scrutiny What will this information be used for?
Access End Date (How long do you need access to this data?) Describe any storage of this information within your system, including
reasons, locations (hostnames, computer locations), technologies (flat
files, logs, database), and retention times: What information will be shown to application users about themselves and about others? To what information do you already access, from what systems, and what data-steward approvals have you recently obtained?
Account Setup Process
If you are using LDAP, rather than CAS or Shiboleth or SQL, then you will have an account created for you to access LDAP. In that case, the account will have a 1 year password expiration policy, and will need periodic password resets
Who should be documented as responsible for the account (if not you)?
What general responsibility is this account a part of? (Mage service role, eg, "Math application development" or "ISYE systems administration") Can you easily have a password reset within Mage? If it is not easy for you to have passwords reset, do you have a PGP key we can use to get the password to you? (If not, we will call you at the above telephone number.)