Campus ID News
Card, mobile credential, payment and security
FEATURED
PARTNERS
slider OhioUoffice 1

Ohio University’s journey to securing its ID card production

CampusIDNews Staff   ||   Nov 16, 2017  ||   , ,

Following an audit process in 2015, the then year-old Ohio University OneCard office decided to make changes to the way it secures and logs ID card production.

The issuance security upgrades at the Ohio OneCard office were outlined in a presentation given at NACCU 2017 by Joshua Bodnar, director of Access, Transaction, and Video Services at Ohio University. In the presentation, Bodnar describes the changes made to the card production process, as well as the susceptibilities uncovered by the initial system audit.

One of the major concerns raised was that the OneCard office was not tracking the reproduction of ID cards. “We were not tracking when the ID was printed, what cards were printed, and what staff members were printing them,” Bodnar says.

This exposed the risk of employees making copies of ID cards without anyone knowing. “We wouldn’t have any way to know if a large number of IDs were printed when they shouldn’t have been,” Bodnar adds.

Office staff were also not keeping track of card stock and printing supplies. Unlocked boxes of cards and ribbons would be left out next to printers. When these issues came to light, Bodnar and the OneCard team realized that they needed to better secure both materials and the card production process.

Securing card production

The first step was to secure the office’s workstations, taking away shared windows accounts, and instead requiring staff needing access to IDWorks to be put in an Active Directory group managed by the OneCard office. Additionally, only those in the Active Directory can access the workstations. This was done to prevent the risk of unauthorized users accessing personal information stored on the machines.

Access to the Internet was also disabled at the workstations to avoid the risk of employees visiting potentially unsafe websites. Users are also logged out of the computers if they leave the machine idle for over five minutes.

Prior to the new security changes, users could stay logged in all day, and when the computers were restarted they would automatically log in using a worker’s credentials. This left personal information open for anyone to access, which Bodnar wanted to prevent.

Preserving data logs

With multiple machines, the OneCard office decided it was important for all of the print logs to be stored together. To accomplish this, the OneCard team decided to leverage software that the university already had, nxlog and Kibana.

Ohio University was already using nxlog to send logging data to the campus’ central logstash system. The print logs are installed on each machine and are written on the machines’ text files and a shared network, and then stored in the centralized logging system. Meanwhile, Kibana makes it easier to search the logs and provide a visual for the collected data.

Pages: 1 2

Subscribe to our weekly newsletter

RECENT ARTICLES

Jeff Koziol, Allegion, talks about custom DESfire keys

Why custom DESfire keys give campuses more control

Jeff Koziol says DESFire has become the preferred credential technology standard on campus, and he advocates for a custom DESfire site key approach. This, he says, allows institutions to own and control their credential infrastructure rather than relying on a manufacturer-controlled system. In this way, campuses gain greater flexibility in selecting vendors, integrating new technologies, […]
BYPPOCampus food delivery
Jul 23, 26 / ,

BYPPOCampus food delivery employs students, integrates meal plans, eliminates vehicles

As university life evolves, so does the way students access food delivery. Traditional services like Uber Eats and DoorDash can be challenging to integrate on a campus. Key delivery points are often inaccessible via cars and physical addresses can be vague. This frustrates drivers unfamiliar with the campus. The departure of Starship’s delivery robots from […]
Paul Bowers University of Michigan video promo

Bots streamline card production at University of Michigan

Faced with thousands of incoming students and a growing volume of conference credentials, the University of Michigan found itself relying on a surprisingly manual process. Its legacy card production software lacked print queue functionality, requiring staff to repeatedly initiate print jobs throughout the day. To keep up, the institution hired temporary workers each summer, but […]
CIDN logo reversed
The only publication dedicated to the use of campus cards, mobile credentials, identity and security technology in the education market. CampusIDNews – formerly CR80News – has served more than 6,500 subscribers for more than two decades.
Twitter

Great inverview on the Public Key Open Credential (PKOC) standard with ELATEC's Jason Ouellette, Chairman of the Board for the @PSIAlliance.

Attn: friends in the biometrics space. Nominations close Friday for the annual Women in Biometrics Awards. Take five minutes to recognize a colleague or even yourself. http://WomenInBiometrics.com

Load More...
Contact
CampusIDNews is published by AVISIAN Publishing
315 E. Georgia St.
Tallahassee, FL 32301
www.AVISIAN.com[email protected]
Use our contact form to submit tips, corrections, or questions to our team.
©2026 CampusIDNews. All rights reserved.