UNIVERSITY OF TEXAS AT SAN ANTONIO – OFFICE OF INFORMATION TECHNOLOGY TITLE: VERSION: DATE: Account Creation Procedure Draft 8/28/2018 I. Purpose Contractor/temporary, vendor and guest network accounts (hereafter known as accounts) are continually requested and the method of which to create them is constantly questioned. This procedure address what method(s) to use when creating an account. II. Scope This procedure applies to the Office of Information Technology (OIT) and any department requesting an account. III. References CBC http://www.utsa.edu/hr/CBC/index.html CBC Contractor Guidelines http://www.utsa.edu/hr/CBC/Contractor.html CBC Employment Category http://www.utsa.edu/hr/CBC/docs/CBC-EmploymentCategory.pdf CBC Form A http://www.utsa.edu/hr/CBC/CBCForms.html Criminal Background Checklist for Contractors http://www.utsa.edu/hr/CBC/forms/CBCContractorChecklist.pdf HOP 4.30-IX.J.1.c (CBC for Contractors) http://www.utsa.edu/hop/chapter4/4-30.html IDMWEB Site https://idmweb.it.utsa.edu/Account/Login.aspx?ReturnUrl=%2fForms%2f POI Form http://www.utsa.edu/hr/docs/DayONE/POI-PersonOfInterest.pdf POI Guide https://www.utsa.edu/hr/Employment/DayOne/Administrator/NBE-POI.html IV. Roles Contractor/Temporary Outside (non-UTSA) individual(s) that perform various services at UTSA. Examples would be an individual doing custom artwork or someone developing an application for a department. ii. Vendor Similar to a Contractor but is usually the company, performing various services at UTSA, on equipment, systems, etc. purchased by UTSA from the company. Examples would be the hardware company supporting a device UTSA purchased from them or a service provided by a company that UTSA outsourced the service to. iii. Guest Someone not affiliated with UTSA. i. V. Criteria The following table specifies which method of creating an account should be used. If any of the POI accesses are required, the POI method will be used. Otherwise, use the IDMWEB method. Required Access CAT I data/resources VPN and/or O365 Unsupervised network access Greater than 5 days CAT II & III data/resources Internet only via Student Wireless (Guest accounts only have access to the time-restricted Guest Wireless Network) Less than 5 days access & no POI requirements POI x x x x IDMWEB CLASSROOM EDUROAM x x x x x 1 VI. i. Method Person of Interest (POI) A POI created account goes through the normal account provisioning process and receives an email account and a staff flag, set in Active Directory (AD), so other accesses can be requested. ii. Determine if a CBC is required by completing the Criminal Background Checklist for Contractors. If a CBC is required complete the Category A CBC form (there is a fee). Complete the POI form, return it and the completed Criminal Background Checklist for Contractors to HR per the POI Guide. ASAP (IDMWEB) An IDMWEB account does not go through the normal account provisioning process and does not get an email account nor staff flag set in AD. Complete the Network Account Creation Request Form on the IDMWEB site. Follow the instructions and verify the account doesn’t already exist. iii. CLASSROOM Classroom account are created by the OIT AccountMod group. This type of account is primarily for events held at UTSA by various groups. These accounts are limited in location and duration. See the OIT Classroom Account Procedure for more details. iv. EDUROAM Eduroam is for visiting higher education personnel whose home campus subscribes to Eduroam. Though this is not an account creation type, it is a method in which visiting higher education personnel can access the Internet on UTSA’s network via their home campus authentication process. 2