menu

Replacement of LDAP/Single Sign-On systems

As the following schedule, LDAP/Single Sign-On(SSO) systems will be replaced with the new ones due to expired at the end of this February.
LDAP servers manage the information of users and groups, etc., of JAIST.
JAIST-SSO System integrates authentication information to use various JAIST systems.

Schedule

Date: Feb. 23, 2025 

 

Service Impact

  • If you are using the service which authenticate by the JAIST-SSO System, there will be a period of time when you will be temporarily unable to authenticate. In that case, please wait a while and try again. 
  • Also, we are going to change reference settings on LDAP clients between Feb. 23th and 25th. 
  • Due to the system update, the services of JAIST account (change the password, email address registration, etc.) will be temporarily closed or updated.

<Service Outage Schedule> (added on 2025/2/19)
- Password change and self-maintenance: From 8:00 a.m. on Sunday, February 23, 2025
- Change email address: From 5:00 p.m. on Friday, February 21, 2025 to around the end of March

- The JAIST-SSO authentication of Overleaf (online Latex editor) will not be available for a while.
  Please use the non-JAIST-SSO sign-in method.


For details, we will be informed on the our website and sent email to you after the service started.


What will change

This section presents the changes to the system from the user's point of view following the replacement of JAIST-SSO.
* Detailed procedures and other information will be updated on each page as necessary.
* These are current plans and are subject to change.

Logo of JAIST-SSO

The JAIST-SSO page logo will be new after the system replacement.

OTP (Email)

OTP (Email) will be introduced as a new authentication factor.
When you select OTP (Email) in the authentication list, you will receive an OTP (8-digit number) at your pre-registered email address. By entering this OTP, you will be successfully logged in.

 

 

JAIST-SSO Flow

The flow when authenticating from an off-campus network changes.

After replacement, the authorisation list is displayed after entering the correct username and password.
There, select "OTP (Authenticator)", "OTP (Email)" or "Client Certificate" and authenticate.

The existing authentication factors 'OTP (app)', 'Client Certificate', and 'FIDO2' will continue to be available.

 

 

User Profile

The functions of self-maintenance (User Attributes Setting), password Setting and Authentication Device Setting are combined as a User Profile page.
In User Attributes Setting, you can register a password reset email address and set the items to be displayed on the multi-factor authentication factor selection screen.

 

The URL will be changed from the pre-update system, so please be aware.