Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

eduroam core service (to-do)

logs of ETLR servers (contain IPaddress, MAC address, outer-identity, CUI, ON, ...)

eduroam F-ticks

Dataset description:

Data needed for eduroam authentication for end users.

Usage log messages for each international and national roaming authentication request.

Purpose of processing:

Enable eduroam users to use WiFi service when visit another organization or federation using their home identity.

Log data provides basic statistical information about service usage. It provides statistics about the number of logins for national and international roaming. The data is used for generation of usage statistics that are publicly available at https://monitor.eduroam.org and for reporting to EC and other stakeholders.

Data source:

NROs Federation top level Radius servers. IdPs and SPs can optionally send F-ticks data as well.

Data storage and access:

Authentication data are not stored.

F-ticks data are stored in the SQL database that is operated in the infrastructure provided by CARNet. The raw data is accessible only by the personnel of eduroam operations team.

Data transfer:

Authentication data are forwarded to appropriate Federation level RADIUS server in encrypted form.

F-ticks data are not transferred to any other party or system.

Data retention:F-ticks data are kept permanently. (question)
Personal data processed:Yes

...


Data itemIs personal data (DPO fills in)
1REALM - As in users EPPN used for the authentication (for example “@education.lu”) - contains the user’s country of origin and the institution of originNo ?
2Calling-Station-Id - User’s device MAC addressNo ?
3Viscountry - ISO country code of the NRO that generated the log messageNo ?
4Visinst - Identifier of visited institution i.e. operator-name RADIUS attributeNo ?
5Result - Authentication outcome: OK / FAILNo ?

eduroam Database - NRO information

...