1 調達内容 品目分類番号 14 導入計画物品及び数量 OUIDシステム 一式 調達方法 借入 導入目的 大阪大学に関わるすべての人が 一意な生涯ID(OUID)の利用を通じて 大阪大学のリソース・学びにアクセスできる 環境
国立大学法人大阪大学(大阪府)/官報政府調達 / 資料提供招請に関する公表
締切
非公表
開札
非公表
公告日
05/21
2026年
予定価格
非公表
この案件は公表されていません
基本情報
- 発注機関
- 国立大学法人大阪大学
- 所在地
- 大阪府
- 入札方式
- 官報政府調達 / 資料提供招請に関する公表
- データの出どころ
- 官報(政府調達)
- 取得日時
- 2026/07/19 01:40
案件の詳細
〇第2号
1 調達内容
品目分類番号 14
導入計画物品及び数量 OUIDシステム
一式
調達方法 借入
導入目的 大阪大学に関わるすべての人が
一意な生涯ID(OUID)の利用を通じて
大阪大学のリソース・学びにアクセスできる
環境の実現のため、統合的なID認証・管理
基盤を提供し、学内外の様々な情報システム
との認証連携・データ連携を実現するもので
ある。
導入予定時期 令和10年10月以降
調達に必要とされる基本的な要求要件
A.本システムは、統合ID認証基盤と統合
ID管理基盤から構成される。
B.統合ID認証基盤は以下の機能を有する
こと。
B1.シングルサインオン機能
a.認証・認可連携に対応したサービス
(Webアプリケーション)に対して、
OASIS‑SAML20、OIDCに準拠し
たシングルサインオン機能。連携先に
学術認証フェデレーション参加SPを
含む。
b.シングルサインオン可能なシステム
のリンク集を掲載するポータルサイト
およびFAQ等を掲載する利用者向け
ガイドラインWebページ。
c.連携先SP/RPからログアウトし
た場合、すべての連携先SP/RPか
らログアウトした状態にするシングル
ログアウト機能。
B2.認証機能
a.IDまたはメールアドレスをユーザ
名としたパスワード及び二次認証によ
る多要素認証、パスキー認証、証明書
認証、ソーシャルアカウント認証機能。
b.利用者自身によるパスワードおよび
二次認証変更機能。
c.パスワード忘れ等により認証ができ
ない場合の、リカバリ用メールアドレ
ス、マイナンバーカードを用いた利用
者自身によるオンラインパスワードリ
セット・再設定機能、および、二次認
証が出来ない場合の二次認証一時解除
機能。利用者自身で利用者自身による
パスワードリセット機能。
d.所定の時間、SP/RPの認証セッ
ションを維持する機能。
B3.認証情報管理機能
a.統合ID管理基盤からの連携を受
け、IDごとに持つ属性を保持する機
能。
b.認証時に利用者が指定したユーザ名
をキーとして、ユーザ名に紐づくID
が持つ属性をSP/RPに送信する機
能。
c.利用者が認証に用いたIDが持つ属
性情報に応じて、利用可能なSP/R
Pを制御する機能。
B4.管理者向け機能
a.管理者が、認証連携するSP/RP
を追加・変更・削除する機能。
b.利用者の認証ログを取得し、管理者
が認証ログを閲覧する機能。
c.管理者が利用者の認証情報をリセッ
トする機能。
C.統合ID管理基盤は以下の機能を有する
こと。
C1.ID管理機能
a.1利用者に対して、大学のシステム
内で一意となるIDを付与する機能。
b.1利用者が複数の身分を有する場合
に、1利用者としての情報とは別に、
身分ごとの情報を管理する機能(ロー
ルID機能)。
c.ID、ロールIDに紐づく属性情報
を管理し、ユーザ名をキーとした問合
せに対して1利用者が持つ複数ロール
IDのうち1つのロールIDが持って
いる属性を回答する機能。
C2.データ取込み機能
a.利用者情報の源泉となるシステムか
ら提供されるデータ(CSV)を自動
または手動により取込み、ユーザ登録
を行う機能。源泉システムは複数あり、
システムによってキーとなる情報が異
なる。
b.データ取込み時、生成ルールを基に
IDに紐づく属性情報を生成する機
能。
c.データ取込み時、1利用者の情報が
重複してデータベースに登録される
際、同一人物である可能性を候補する
機能(名寄せ候補機能)。
d.名寄せ候補の一覧に対して管理者が
同一人物と判定した場合は、ロールの
情報は分岐したまま1利用者の情報を
上書きする機能。
C3.マスタ管理機能
a.所属マスタ、役職マスタ等、利用者
に付与する属性情報のマスタについ
て、管理者がCSVインポートにより
登録、更新する機能。
C4.ワークフロー申請機能
a.源泉システムに含まれない利用者に
ついて、特定の職員がID発行を申請
し、管理者が承認することでIDの発
行、変更、失効を行う機能。
b.管理者および特定の職員が、過去の
申請の検索を行う機能。
c.特定の職員に申請の権限を付与する
機能。
C5.管理者向け機能
a.管理者が利用者の情報を検索し、個
別に編集する機能。
b.管理者が利用者の情報を検索し、特
定の帳票形式およびCSVで出力する
機能。
d.管理者アカウントに応じた権限管理
を設定する機能(全体管理、ユーザ登
録担当、パスワードリセット担当等)。
e.サーバへのリモートアクセスを制
御・管理する機能。
C6.証跡機能
a.利用者情報に対する操作履歴や、プ
ロビジョニング記録を証跡ログとして
保存する機能。
b.管理者が利用者ごとの証跡ログを検
索・参照・出力する機能。
C7.利用者向け機能
a.利用者が自身の属性情報を編集する
機能。
b.利用者が自身のパスワードを編集・
リセットする機能。
C8.IDプロビジョニング機能
a.更新された利用者情報をシステムご
との連携条件に応じて取得・加工し、
同期する機能。
D.システムの障害時において、サーバ・
ネットワークの冗長化等により、本システ
ムのサービスを停止させないための対策を
実施すること。
E.サーバ上での作業用アカウント、データ
連携用アカウントについてはセキュリティ
の観点から不要な操作権限を制限すること
(必要な制限事項は本学と協議し実施する
こと。)
F.定期的に各サーバのバックアップデータ
の取得を行い、災害等非常時のために退避
が可能なこと。
G.SNMP等による監視および重要サービ
スの死活確認等の障害検知の機能を有する
こと。また、保守時はアクセス元のIP・
端末の制限、あるいはセキュリティトーク
ンの利用など、セキュリティに十分な配慮
を行った仕組みを導入すること。
H.システムの障害を防止するための十分な
保守体制、障害発生時の迅速な対応及びシ
ステム運用に関するサポート体制を提供で
きること。
c.管理者が利用者のパスワード、二次
I.本学からのシステム保守担当者への質
認証をリセットする機能。
問・問い合わせに対応すること。
J.本学からの問合せやシステム保守担当者
からの課題提起をきっかけにシステムの設
定変更等が必要となった場合、作業を実施
すること。また、本システムが脆弱性の影
響を受けることが発覚した場合、脆弱性対
応を行うこと。
K.現在稼働中の全学IT認証基盤システム
と認証連携及びデータ連携を行なっている
連携先システムについて、次期システムで
同等の連携を行うための移行作業を実施す
ること。移行に当たって連携先システムの
設定や利用者の操作方法に変更が生じる場
合、提案段階で明らかにすること。
2 資料及びコメントの提供方法 上記1の物
品に関する一般的な参考資料及び同の要求要
件等に関するコメント並びに提供可能なライブ
ラリーに関する資料等の提供を招請する。
資料等の提供期限 令和8年6月22日17時
15分(郵送の場合は必着のこと。)
提供先 〒5650871 大阪府吹田市山田丘
11 大阪大学経理部経理契約課契約第三
係 吉弘 周平 電話0668794010
3 説明書の交付 本公表に基づき応募する供給
者に対して導入説明書を交付する。
交付期間 令和8年5月21日から令和8年
6月22日まで。
交付場所 上記2に同じ。
4 説明会の開催 本公表に基づく導入説明会を
開催する。
開催日時 令和8年5月26日13時30分
開催場所 大阪大学D3センター吹田本館
2階大会議室
5 その他 この導入計画の詳細は導入説明書に
よる。なお、本公表内容は予定であり、変更す
ることがあり得る。
6 Summary
Classification of the products to be pro‑
cured : 14
Nature and quantity of the products to be
rent : OUID System 1 Set
Type of the procurement : products to be
rent
Basic requirements of the procurement :
A.This system consists of an Integrated
ID Authentication System and an In‑
tegrated ID Management System.
)
号
第
達
調
府
政
外
号
(
報
官
日
曜
木
日
月
年
和
令
B.The Integrated ID authentication in‑
frastructure shall have the following
functions.
B1.Single Sign‑On (SSO) Functions
services
a.A single sign‑on function compli‑
ant with OASIS‑SAML 2.0 and OIDC
applications)
for
(web
authentication/
support
that
authorization federation,
including
SPs participating in academic aut‑
hentication federations.
b.A portal site that lists links to sys‑
tems that support single sign‑on, and
a user guideline web page that in‑
cludes FAQs and other information.
c.A single logout function that, when
a user logs out from a federated
SP/RP, logs the user out from all
federated SPs/RPs.
B2.Authentication Functions
a.Authentication functions
includ‑
ing : password plus multi‑factor aut‑
hentication using a secondary factor
with an ID or email address as the
username ; passkey authentication ;
certificate authentication ; and social
account authentication.
b.A function that allows users to
change their passwords and second‑
ary authentication methods by them‑
selves.
c.If authentication is not possible
due to a forgotten password, etc.,
functions including : online password
reset/reconfiguration by the user
using a recovery email address and a
My Number Card ; a temporary se‑
condary‑authentication bypass func‑
tion when secondary authentication
cannot be performed ; and a user
self‑service password reset function.
d.A function to maintain authentica‑
tion sessions between users and be‑
tween SPs/RPs for a specified peri‑
od of time.
B3.Authentication Information Ma‑
C2.Data Import Functions
nagement Functions
a.A function to retain, for each ID,
the attributes received via federation
from the Integrated ID management
infrastructure.
b.A function to send to an SP/RP
the attributes held by the ID linked
to the username, using the username
specified by the user at the time of
authentication as the key.
c.A function to control which SPs/
RPs can be used according to the at‑
tribute information held by the ID
used for authentication.
B4.Administrator Functions
a.A function that allows administra‑
tors to add, modify, and delete SPs/
RPs to be federated for authen‑
tication.
b.A function to acquire users aut‑
hentication logs and allow adminis‑
trators to view them.
c.A function that allows administra‑
tors to reset users authentication in‑
formation.
C.The Integrated ID management
in‑
frastructure shall have the following
functions.
C1.ID Management Functions
a.A function to assign each user a
unique ID within the Universitys sys‑
tems.
b.A function to manage role‑specific
information separately from user in‑
formation when a user holds multiple
positions (Role ID function).
c.A function to manage attribute in‑
formation linked to IDs and Role
IDs, and in response to inquiries
keyed by username, return the attrib‑
utes held by one of the multiple Role
IDs possessed by a user.
a.A function to automatically or ma‑
nually import data (CSV) provided
from source systems that serve as
the origin of user information and re‑
gister users. There are multiple
source systems, and the key informa‑
tion differs depending on the system.
b.A function to generate attribute
information linked to IDs based on
generation rules at the time of data
import.
c.A function to identify candidates
that may refer to the same person
when information for one user is re‑
gistered in duplicate in the database
at the time of data import (candidate
record linkage function).
d.If an administrator determines
that entries in the record‑linkage
candidate list refer to the same per‑
son, a function to overwrite the user
information while keeping role infor‑
mation separated.
C3.Master Data Management Func‑
tions
a.For master data of attribute infor‑
mation to be granted to users (e.g.,
department master, position master),
a function that allows administrators
to register and update it via CSV im‑
port.
C4.Workflow Application Func‑
tions
a.For users not
included in the
source systems, a function whereby
designated staff apply for ID issu‑
ance and administrators approve it,
thereby issuing, changing, or revok‑
ing IDs.
b.A function that allows administra‑
tors and designated staff to search
past applications.
c.A function to grant application pri‑
vileges to designated staff.
)
号
第
達
調
府
政
外
号
(
報
官
日
曜
木
日
月
年
和
令
C5.Administrator Functions
a.A function that allows administra‑
tors to search for user information
and edit it individually.
b.A function that allows administra‑
tors to search user information and
output it in a specified report format
and in CSV format.
c.A function that allows administra‑
tors to reset users passwords and se‑
condary authentication.
d.A function to set permission man‑
agement according to administrator
accounts (e.g., overall administra‑
tion, user registration, password re‑
set).
e.A function to control and manage
remote access to servers.
C6.Audit Trail Functions
a.A function to store operation histo‑
ry on user information and provision‑
ing records as audit logs.
b.A function that allows administra‑
tors to search, view, and output audit
logs by user.
C7.User Functions
a.A function that allows users to edit
their own attribute information.
b.A function that allows users to edit
and reset their own passwords.
C8.ID Provisioning Functions
a.A function to acquire, process, and
synchronize updated user informa‑
tion according to the federation con‑
ditions of each system.
D.In the event of a system failure, imple‑
ment measures (e.g., server and network
redundancy) to prevent suspension of this
systems services.
E.For work accounts on servers and ac‑
counts for data federation, restrict unnec‑
essary operational privileges from a secu‑
rity perspective
restrictions
shall be discussed and implemented with
the University).
(specific
F.Periodically obtain backup data for
each server and ensure that the obtained
backup data can be evacuated/stored
off‑site for emergencies such as disasters.
G.Provide functions for monitoring and
failure detection such as service avai‑
lability checks for critical services using
SNMP, etc. In addition, during mainte‑
nance, introduce mechanisms with suffi‑
cient security considerations, such as re‑
stricting source IP addresses and devices
and/or using security tokens.
H.Be able to provide a sufficient mainte‑
nance structure to prevent system fail‑
ures, prompt response when failures oc‑
cur, and a support structure for system
operations.
I.Respond to questions and inquiries
from the University to the system mainte‑
nance staff.
J.If it becomes necessary to change sys‑
tem settings, etc. triggered by inquiries
from the University or by issues raised by
system maintenance staff, perform the re‑
quired work. In addition, if it is discov‑
ered that this system is affected by vul‑
nerability, carry out vulnerability re‑
mediation.
K.For systems currently federated for
authentication and data integration with
the existing university‑wide IT aut‑
hentication infrastructure, perform mi‑
gration work so that equivalent federa‑
tion is achieved in the next system. If,
during migration, changes arise in the
configuration of federated systems or in
user operating procedures, clarify them
at the proposal stage.
Time limit for the submission of the re‑
quested material : 17 : 15
22 June, 2026
Contact
for
the
point
notice :
YOSHIHIRO Shuhei, Accounting and Con‑
tracts Division, Department of Accounting,
The University of Osaka, 11 Yamadaoka
Suita shi Osaka 5650871 Japan, TEL 06
68794010
資料提供招請に関する公表
6 Summary
Classification of the products to be pro‑
次のとおり物品の導入を予定していますので、
cured : 22, 31
当該導入に関して資料等の提供を招請します。
令和8年5月 21 日
国立大学法人鳥取大学長 原田
入札への参加・仕様書の取得は元の入札システムで行えます(案件名で検索してください)
元サイトの掲載ページを開く →
国立大学法人大阪大学 の他の案件
1 調達内容 については、令和8年3月31日付け号外政府 調達第58号の官報の競争参加者の資格に関す る公示の別表に掲げ…
官報政府調達 / 入札公告
大阪府
非公表
締切 09/08
大阪大学吹田アゴラ 入退室管理システム 一式
官報政府調達 / 入札公告
大阪府
非公表
締切 09/16
微小空間タンパク質 ビオチン化システム 一式
官報政府調達 / 入札公告
大阪府
非公表
締切 09/24
に係る迅速なアフターサービス・ メンテナンスの体制が整備されていることを 証明した者であること。 3 入札書の提出場所等…
官報政府調達 / 入札公告
大阪府
非公表
締切 09/24
大阪大学医学部附属病院患者食提供業務委託
役務
大阪府
非公表
締切 09/25
この機関の過去の落札実績
ベータ
この機関の過去の落札実績はGovBaseに未収録です(収録範囲を正直に表示しています)。