Applies to anyone who maintains or operates UW–Madison electronic services that are secured by access controls.
All UW–Madison units that maintain or operate electronic services secured by access controls must configure those applications or systems to:
In August 2006, the NetID Policy Issues Team and the AuthN/Z Coordinating Team, composed of representatives from a variety of UW–Madison units, made policy recommendations for the use of institutionally managed credentials and institutionally managed access control services. The recommendations were reviewed by the chief information officer (CIO) and endorsed by the Identity Management Leadership Group. The recommendations seek to:
Designated representatives of the CIO and vice provost for information technology will set the current compliance standard and determine whether or not an application or system is in compliance.
The standard for compliance is expected to change over time as suitable access control services become available and barriers to migration are reduced.