Menu

#48 Active Directory / MEPS Verification

MEPS
open
5
2005-03-22
2005-03-22
No

Since the history of MEPS it has long be a procedural
challenge to stay abreast of the constant arrival and
departure of personnel. Since the installation of MEPS,
MEPS has become the source of record for the status
of staff within the MTF. The secondary source of staff
data is increasingly becoming Active Directory since to
do business in the MTF a user now needs an account,
period. As a result we now have two valuable sources of
data on the status (or absences) of staff members
within the MTF, but for some reason the list of staff
members each produces never matches on another.
This is due to the lack of a standardized and enforced
out processing system.
To aid MTFs, IACH recommends taking a data report
form the MTFs OU in AD by comparing it to data in
MEPS. The MTFs will benefit from this background data
transfer in at least two distinct ways: 1. The network
staff will increase network security by removing
departed staff in a timely manner. 2. The identification of
staff members within the facility that have domain
access accounts but are not in MEPS
These actions can be accomplished by utilizing MEPS
reports that show users who are in the AD but have
departed the MEPS system. Secondly, the reports can
identify staff who have active domain access but are not
in the MEPS system. The end result is a
synchronization of databases and a process that will
benefit the MTFs security and aid in the tracking of staff
members.

Discussion

  • Neil Watkins

    Neil Watkins - 2005-03-22

    Logged In: YES
    user_id=950643

    To follow with the original statement, this process can assist
    in providing accurate domain names to MEPS which is the
    cornerstone of MEPS access. Also, you can update missing
    email address for staff who have not provided one to MEPS.

     
  • Neil Watkins

    Neil Watkins - 2005-03-23

    Logged In: YES
    user_id=950643

    Sponsorship obtained:
    LTC John R. Lee, DCA
    May F. Garlick; C, IMD
    Daniel Thompson, Network Team Leader
    Jonathan Mullins, Network Administrator
    LTC Daniel Sengstacke; C, EPD and HR FMT

     
  • christopher logan

    Logged In: YES
    user_id=695786

    Neil/Dave, problem at BAMC. We are trying to use MEPS to
    identify account that can be deleted from the OU. What I did
    was provided a departed roster and we started removed
    accounts from the OU for personnel listed as departed 6
    months ago...some of these personnel should have remained
    active at BAMC. At BAMC we are looking to use the On-line
    Checklist so that Personnel can check to ensure that all
    stations have signed off...to include inprocessing.

    Once a baseline is established for what we consider accurate
    I think this would be a useful...it would save the IMD
    personnel who is responsible for cleaning up the OU the time
    of reviewing who is active or not active in MEPS/OU etc....

     

Log in to post a comment.