Campus ID News
Card, mobile credential, payment and security
FEATURED
PARTNERS
slider OhioUoffice 1

Ohio University’s journey to securing its ID card production

CampusIDNews Staff   ||   Nov 16, 2017  ||   , ,

Following an audit process in 2015, the then year-old Ohio University OneCard office decided to make changes to the way it secures and logs ID card production.

The issuance security upgrades at the Ohio OneCard office were outlined in a presentation given at NACCU 2017 by Joshua Bodnar, director of Access, Transaction, and Video Services at Ohio University. In the presentation, Bodnar describes the changes made to the card production process, as well as the susceptibilities uncovered by the initial system audit.

One of the major concerns raised was that the OneCard office was not tracking the reproduction of ID cards. “We were not tracking when the ID was printed, what cards were printed, and what staff members were printing them,” Bodnar says.

This exposed the risk of employees making copies of ID cards without anyone knowing. “We wouldn’t have any way to know if a large number of IDs were printed when they shouldn’t have been,” Bodnar adds.

Office staff were also not keeping track of card stock and printing supplies. Unlocked boxes of cards and ribbons would be left out next to printers. When these issues came to light, Bodnar and the OneCard team realized that they needed to better secure both materials and the card production process.

Securing card production

The first step was to secure the office’s workstations, taking away shared windows accounts, and instead requiring staff needing access to IDWorks to be put in an Active Directory group managed by the OneCard office. Additionally, only those in the Active Directory can access the workstations. This was done to prevent the risk of unauthorized users accessing personal information stored on the machines.

Access to the Internet was also disabled at the workstations to avoid the risk of employees visiting potentially unsafe websites. Users are also logged out of the computers if they leave the machine idle for over five minutes.

Prior to the new security changes, users could stay logged in all day, and when the computers were restarted they would automatically log in using a worker’s credentials. This left personal information open for anyone to access, which Bodnar wanted to prevent.

Preserving data logs

With multiple machines, the OneCard office decided it was important for all of the print logs to be stored together. To accomplish this, the OneCard team decided to leverage software that the university already had, nxlog and Kibana.

Ohio University was already using nxlog to send logging data to the campus’ central logstash system. The print logs are installed on each machine and are written on the machines’ text files and a shared network, and then stored in the centralized logging system. Meanwhile, Kibana makes it easier to search the logs and provide a visual for the collected data.

Pages: 1 2

Subscribe to our weekly newsletter

RECENT ARTICLES

sia corporate credential design guide cover art

Security Industry Association releases comprehensive guide to secure credential issuance

The Security Industry Association (SIA) released its Corporate Credential Design Guide, a new resource produced by their Credential Design Working Group. It specifies recommended practices for the design and implementation of credentials and badges by card issuers and security teams. Though the document is geared toward corporate issuers, it is also highly relevant and beneficial […]
Senator Roem supporting Virginia hunger free campus meal swipe bill
Mar 26, 26 /

Virginia lawmakers table statewide campus meal swipe donation mandate for now

The bill that would enable students at virtually all Virginia universities to donate their unused meal plan credits fell just short of passing this year. State lawmakers voted to continue debating the proposal – supported by the nonprofit Swipe Out Hunger organization – in the 2027 session. The bill was introduced by Senate Democrat Danica Roem […]
UT Austin Mobile ID
Mar 26, 26 / ,

Student-driven mobile ID initiative at UT Austin gets go-ahead

The University of Texas at Austin is preparing to launch mobile student IDs beginning in the 2027–28 academic year. The initiative, driven by strong student demand and backed by university leadership, will allow students, faculty, and staff to access campus services using credentials stored in their mobile wallets. Spearheaded by Student Government leadership, the effort […]
CIDN logo reversed
The only publication dedicated to the use of campus cards, mobile credentials, identity and security technology in the education market. CampusIDNews – formerly CR80News – has served more than 6,500 subscribers for more than two decades.
Twitter

Great inverview on the Public Key Open Credential (PKOC) standard with ELATEC's Jason Ouellette, Chairman of the Board for the @PSIAlliance.

Attn: friends in the biometrics space. Nominations close Friday for the annual Women in Biometrics Awards. Take five minutes to recognize a colleague or even yourself. http://WomenInBiometrics.com

Load More...
Contact
CampusIDNews is published by AVISIAN Publishing
315 E. Georgia St.
Tallahassee, FL 32301
www.AVISIAN.com[email protected]
Use our contact form to submit tips, corrections, or questions to our team.
©2026 CampusIDNews. All rights reserved.