This was the second implementation with Cirrus Identity on this R1 campus. The Account Linking module and the SAML Proxy were already implemented to improve access for medical school users to campus services.
To implement social login for alumni to library services, Cirrus Identity partnered with the CISO, Identity Management and Library teams to implement the Gateway solution. The campus selected the social login providers and Cirrus worked to configure them and set up the Account Linking module to link the alumni’s chosen social login account to their campus account.
When alumni access Library services through EZproxy, they are given a choice to use their existing campus login or select a social login. If they select a social login, they authenticate with that provider and if it’s their first time logging in with a social account, they are directed to “link” their account to a campus identifier, either by logging in with their campus account or completing an online IDVerify process provided by Cirrus. The questions presented in the IDVerify process are configured by the campus through an API that verifies responses to the IDVerify form. All answers data remains on campus and only the unique campus identifier is passed to the Cirrus Proxy and onto the Library services. The alumni only have to link their social login once. When they come back a second time and authenticate with their social login, they are taken directly to the Library services.
This IDVerify automated process allowed this campus to retire their in-house developed solution. The Library and IAM teams tested the configuration and it was seamlessly rolled out to alumni.