-
Research
and PublicationsStay -
Conferences
and EventsAnnual Conference
October 15–18, 2013
Register now!Events for all Levels and Interests
Whether you're looking for a conference to attend face-to-face to connect with peers, or for an online event for team professional development, see what's upcoming.
Stay -
Career
DevelopmentEDUCAUSE Institute
Leadership/Management Programs
Explore MoreCareer Center
Leadership and Management Programs
EDUCAUSE Institute
Advanced Programs
Project Management
Jump Start Your Career Growth
Explore EDUCAUSE professional development opportunities that match your career aspirations and desired level of time investment through our interactive online guide.
Stay -
Focus Areas
and InitiativesLatest Topics
EDUCAUSE organizes its efforts around three IT Focus Areas
Join These Programs If Your Focus Is
Stay -
Connect
and ContributeFind Others
Get on the Higher Ed IT Map
Employees of EDUCAUSE member institutions and organizations are invited to create individual profiles.
Stay -
About
EDUCAUSEUncommon Thinking for the Common Good™
EDUCAUSE is the foremost community of higher education IT leaders and professionals.
Stay
Filter by type
- Podcasts (36)
- Blogs (30)
- Articles, Briefs, Papers, and Reports (104)
- Blogs and Wikis (1)
- Certification, Education, Training and Tutorials (1)
- Effective Practices (5)
- Government Documents, Laws, Testimonies or Reports (8)
- Infographics (1)
- Letters (1)
- Plans and Guidelines (2)
- Policies and Procedures (4)
- Presentations and Seminars (455)
- Programs and Projects (2)
- Surveys (3)
- Tools (4)
Filter by Publications
Filter by Presentations
Filter by Library Taxonomy
- Identity and Access Management [x]
- Cybersecurity (663)
- Authentication (231)
- Networking and Emerging Technologies (168)
- Security Management (163)
- Network Applications (124)
- Information Technology Management and Leadership (119)
- Middleware (118)
- Authorization (116)
- Policy and Law (107)
- Access Control (103)
- Network Security and Applications (97)
- Information Systems and Services (79)
- Shibboleth (73)
- Federal Policy and Law (69)
- Federated Identity Management (67)
- Single Sign On (SSO) (59)
- Privacy (52)
- Data Security (51)
- Campus Policy and Law (46)
Identity management refers to the policies, processes, and technologies that establish user identities and enforce rules about access to digital resources. In a campus setting, many information systems–such as e-mail, learning management systems, library databases, and grid computing applications–require users to authenticate themselves (typically with a username and password). An authorization process then determines which systems an authenticated user is permitted to access. With an enterprise identity management system, rather than having separate credentials for each system, a user can employ a single digital identity to access all resources to which the user is entitled. Federated identity management permits extending this approach above the enterprise level, creating a trusted authority for digital identities across multiple organizations. In a federated system, participating institutions share identity attributes based on agreed-upon standards, facilitating authentication from other members of the federation and granting appropriate access to online resources. This approach streamlines access to digital assets while protecting restricted resources. [Source: 7 Things You Should Know About Federated Identity Management]
Suggested Resources
- New! 2011 ECAR Identity Management in Higher Education Report
- EDUCAUSE/InCommon Partnership: EDUCAUSE has partnered with the InCommon Federation to provide members who use our web resources, the benefits and ease of Federated Identity Management access.
- Identity & Access Management (IAM) Working Group: This EDUCAUSE working group operates an open mailing list for general discussion of Identity and Access Management (IAM) topics and maintains a website with additional resources and links. The Higher Education Information Security Council (HEISC) also maintains a chapter dedicated to Access Control as part of the Information Security Guide.
- IAM Tools & Effective Practices Wiki: The IAM Tools & Effective Practices project team (IAM-TEP) is focused on providing a set of resources for IAM Architects to use in implementing a cohesive program on their respective campuses.
- IAM Online: IAM Online is a new monthly series delivering interactive education on Identity and Access Management (IAM), including federated identity management essentials, advanced issues in IAM, and hot topics from the EDUCAUSE Identity and Access Management Working Group. Experts will provide overviews, answer questions and lead discussions.
- InCommon: The InCommon Federation eliminates the need for researchers, students, and educators to maintain multiple passwords and usernames. Online service providers no longer need to maintain user accounts. Identity providers manage the levels of their users' privacy and information exchange. InCommon uses SAML-based authentication and authorization systems (such as Shibboleth®) to enable scalable, trusted collaborations among its community of participants. InCommon also offers a Certificate Service for the higher education community, as well as a number of training and education programs such as CAMP.
- National Strategy for Trusted Identities in Cyberspace (NSTIC): Resources include a July 2011 response to the Department of Commerce Notice of Inquiry for Models for a Governance Structure for NSTIC (prepared by EDUCAUSE, Internet2, and InCommon).
- Shibboleth®: The Shibboleth System is a standards based, open source software package for web single sign-on across or within organizational boundaries. It allows sites to make informed authorization decisions for individual access of protected online resources in a privacy-preserving manner.
- US Trust Federations: This community collaboration group is exploring the building of federations within and across state boundaries. Invited participants include StateNets and Higher Education Systems staff. This effort is supported by Internet2, EDUCAUSE and InCommon.
Updated July 2011
Latest News
InCommon will be heavily involved in a $1.8 million grant awarded to Internet2 to build a consistent and robust privacy infrastructure. Partners include Carnegie Mellon, Brown, University of Texas...
Virginia Tech has become the first identity provider to achieve Bronze and Silver certification as part of the InCommon Assurance Program.
The annual EDUCAUSE Conference in Denver will provide an opportunity to explore the range and depth of issues that campuses must consider as they build...
Advance CAMP will be held October 4-5, 2012, after the Internet2 Fall Member Meeting in Philadelphia, PA. The meeting will feature an unconference-style agenda, providing substantial time for...
A major milestone in the implementation of the NSTIC, "Trusted Federal Systems (TFS) will facilitate collaboration among multiple stakeholders to help drive the creation of consensus standards...
Eve Maler, an expert on emerging identity and security at Forrester Research, discusses the past, present, and future of SAML in this webinar recording.
Library Items on this Topic
EDUCAUSE Library Items for Identity and Access Management
-
Getting Started with Federations: Build or Buy?
-
October 15, 2010
|
A session at the EDUCAUSE 2010 Annual Conference
Moving to a federated world entails getting your head around new policy implications, business process considerations, and technical implementations. This session will present case studies of campu…
-
IdM/IAM and Remote Student Services: Risk Assessment and Identity Management Practices
-
October 15, 2010
|
A session at the EDUCAUSE 2010 Annual Conference
Most campuses offer personalized remote services; some are considering remote identity proofing practices to support higher security access, but all must assess the institutional risk and level of …
-
From Headaches to Happiness with Person Registry
-
October 15, 2010
|
A session at the EDUCAUSE 2010 Annual Conference
Learn how the University of South Florida IDM Team created a person registry by asking the following questions in an environment with multiple internally and externally controlled systems of record…
-
Spotlight on Cloud Computing Series: Community Clouds
-
June 23, 2010
Many institutions in the education community are considering moving some aspect of their business to "the cloud." Moving to the cloud could mean outsourcing your e-mail to Google or mig…
-
Federated Identity: A Recipe for Higher Education
-
June 24, 2010
Key Takeaways Federated identity is a transformative technology that will turn higher education institutions into both identity consumers and identity providers. The ROI for federated i…
-
Top-Ten IT Issues, 2010
-
June 10, 2010
© 2010 Bret L. Ingerman, Catherine Yang, and the 2010 EDUCAUSE Current Issues Committee. The text of this article is licensed under the Creative Commons Attribution-NonCommercial-NoDerivs 3.0 Li…
-
Seminar 01Z - Identity Management for Security Professionals: Leveraging Federations PLEASE NOTE: Separate registration and fee is required to attend this seminar.
-
April 14, 2010
|
A session at the Security 2010
Two challenges facing the higher education community are managing security and privacy and integrating SaaS, or cloud computing, into the IT organization. This seminar is designed to explain how yo…
-
Electronic Records Management: Today’s High Stakes
-
April 20, 2010
This ECAR research bulletin discusses the issues involved in successful electronic records management and provides guidance on how to start and sustain an electronic records management program a…
-
Who's There? A Methodology for Selecting Authentication Credentials
-
April 13, 2010
|
A session at the Security 2010
Many different types of credentials can be used for authentication. How do you pick? This presentation will describe the relationships between personal digital identities, identity proofing, creden…
-
Federated Identity Management: Addressing the Risky Business
-
April 14, 2010
|
A session at the Security 2010
With increased losses in PII data, regulatory compliance, and SaaS, the protection of identities becomes paramount for security professionals. Accessing restricted resources held by a partner can b…



















