Last modified by ericj@remc1_org on 2026/08/19 16:32

From version 8.1
edited by Lauren Keller
on 2024/08/16 10:50
Change comment: There is no comment for this version
To version 4.1
edited by Josh Hiner
on 2024/06/27 09:25
Change comment: There is no comment for this version

Summary

Details

Page properties
Title
... ... @@ -1,1 +1,1 @@
1 -REMC1 Standards - Google Gemini licensing FERPA and Cybersecurity
1 +REMC1 Standards - Google Gemini FERPA and Cybersecurity
Author
... ... @@ -1,1 +1,1 @@
1 -XWiki.lkeller@remc1_org
1 +XWiki.josh@remc1_org
Content
... ... @@ -2,8 +2,6 @@
2 2  
3 3  = {{id name="WARNING:-Google-Gemini-is-only-FERPA-compliant-if-you-have-Google-Ed-Workspaces-and-pay-for-a-license."/}}WARNING: Google Gemini is only FERPA compliant if you have Google Ed Workspaces and pay for a license. =
4 4  
5 -* **Gemini free version is NOT TO BE ENABLED** in any remc1 google workspaces ([[remc1.net>>url:http://remc1.net||shape="rect"]], [[remc1.org>>url:http://remc1.org||shape="rect"]] or any other in the future).
6 -* Furthermore no REMC1 org data is to be fed into any employee’s personal gemini free access or anyone else’s Gemini instance (outside REMC1’s licensed FERPA safe enabled Gemini). Gemini free is currently disabled in [[remc1.org>>url:http://remc1.org||shape="rect"]] and can only be enabled if you have a license to utilize Gemini along with group membership (see below/next section).
7 7  * The free version sifts through all your email and documents sucking the data into its public database.
8 8  * Create a burner personal account if you want to use Google Gemini. Dont use it with your normal Google Email either unless you want it to suck all your emails and drive documents into the public database (including banking, HIPAA, FERPA, PII info etc..) everything then have it cranked out to other public who ask gemini questions. There are people/bad actors who craft questions to try and reveal/pull this info back out etc.. Its an identity theft attack vector.
9 9  * Here is the REMC1 official template response to Gemini requests - Accurate as of May 2024. Inquiry pending to Google for Ed licensing.
... ... @@ -11,30 +11,32 @@
11 11  
12 12  = {{id name="How-Gemini-is-Enabled-for-remc1.org-staff-(only-with-an-assigned-license)"/}}How Gemini is Enabled for [[remc1.org>>url:http://remc1.org||shape="rect"]] staff (only with an assigned license) =
13 13  
14 -June 2024: We have three Gemini licenses all assigned to Josh, Steve, Hayley.
12 +* June 2024: We have three Gemini licenses all assigned to Josh, Steve, Hayley
13 +* Currently its enabled via a security group called GeminiEnable
14 +* This group is setup through the admin console NOT [[groups.google.com>>url:http://groups.google.com||shape="rect"]]. You cannot use a [[groups.google.com>>url:http://groups.google.com||shape="rect"]] group to control services it has to be added in the admin console (as of June 2024 -JDH)
15 +* Here are the steps utilized to enable. ALSO… I went to admin->clicked on the apps waffle->Gemini->User Access (right hand square pane)->Groups section (middle left pane, click on the arrow by groups), Now select GeminiEnable, Now notice this is where I enforce the setting to ONLY ALLOW USERS WITH A GEMINI LICENSE. This way if someone gets happy and adds more individuals WITHOUT licensing they still wont be able to enable Gemini and feed all remc data into the public engine.
16 +* Ok Here are the steps utilized to enable the service via the GeminiEnable group
17 +* For this step, you need admin privileges for Groups, Organizational Units (top-level), and Service Settings. Learn more about [[Administrator privilege definitions>>url:https://support.google.com/a/answer/1219251||shape="rect"]].
18 +(% start="1" %)
19 +*1. In your Google **Admin console** (at [[admin.google.com>>url:http://admin.google.com||shape="rect"]])...
20 +*1. (((
21 +Go to Menu ->apps
15 15  
16 -It is enabled via the security group GeminiEnable.
17 17  
18 -This group is set up through the admin console (NOT [[groups.google.com>>url:http://groups.google.com||shape="rect"]]). You cannot use a [[groups.google.com>>url:http://groups.google.com||shape="rect"]] group to control services; it has to be added in the admin console (as of June 2024 -JDH):
19 19  
20 -* Make a security group (if your group label does not have 'Security' in it, it's the wrong group type. You can find instructions online walking you through steps to change a 'Mailing' group to a 'Security' group, but they appear to be outdated, and it's possible you can no longer do so
21 -[[image:attach:security_group_01.png||original-height="449" inline="true" alt="security_group_01.png" original-width="520"]]
22 -* By default 'Allow members outside your organization' is toggled off. Leave it that way; you can put anyone you want in the group, from outside the organization even, but only those people with a license in the group have access to Gemini. And you can't assign a license to someone outside your organization
23 -* Accept the defaults on the next page (No restrictions) and click 'Create Group'\\
25 +[[ ~[~[Apps~>~>url:https://admin.google.com/ac/apps~|~|shape="rect"~]~].>>image:url:https://storage.googleapis.com/support-kms-prod/ocGtUSENh4QebLpvZcmLcNRZyaTBcolMRSyl||custom-width="true" original-height="24" src="https://storage.googleapis.com/support-kms-prod/ocGtUSENh4QebLpvZcmLcNRZyaTBcolMRSyl" data-xwiki-image-style-alignment="center" width="250" original-width="24"]]
26 +)))
27 +*1. Click the type of service: **Google Workspace**
28 +*1. In the **Groups **section, find and select your group (in this case GeminiEnable)
29 +*1*. To view the list of access groups, click **Search for a group**.
30 +*1*. Search by group name or address.
31 +If you don’t find your group, it might be a group created in Google Groups, which can't be used as an access group. 
32 +*1. On the right, point at the row for the service.
33 +*1*. To turn on access, click **Turn On**.
34 +*1*. To remove access for the group, click **Unset**. Now, users get the access setting of their organization. However, if the users belong to any other access group with the service turned on, they continue// //to have access to the service.
35 +*1*. (((
36 +To set multiple services, check the box for each service and click **On **or **Unset **in the upper right.
24 24  
25 -To enable Gemini you need admin privileges for Groups, Organizational Units (top-level), and Service Settings. Learn more about [[Administrator privilege definitions>>url:https://support.google.com/a/answer/1219251||shape="rect"]]:
26 -
27 -* In the Google **Admin console** - [[admin.google.com>>url:http://admin.google.com||shape="rect"]]
28 -* Once the group has been created, open the Generative AI menu on the left and select Gemini
29 -* On the right, under Gemini Settings, click in the Service Status section (it should say OFF for everyone)
30 -* On the left, click '**Groups**' in the column under Gemini
31 -** To view the list of access groups, click **Search for a group**
32 -** Search by group name or address (in this case GeminiEnable)
33 -*** If you don’t find your group, it might be a group created in Google Groups, which can't be used as an access group
34 -* On the right, check the 'ON' box in the 'Service Status' section and hit the Save button
35 -* Changes can take up to 24 hours but typically happen more quickly. [[Learn more>>url:https://support.google.com/a/answer/7514107||shape="rect"]]
36 -
37 -= {{id name="REMC1-June-2024-Google-Gemini-Order"/}}REMC1 June 2024 Google Gemini Order =
38 -
39 -* Amusingly enough Mike Richardson is still listed as the contact. I’ll have this fixed for our next CDW order
40 -* {{view-file att--filename="June 2024 REMC1 Gemini Order.pdf"/}}
38 +[[image:url:https://storage.googleapis.com/support-kms-prod/m9V2zwjURYzmpV0LnR9rXu2pmKZRIC6vQ2HX||custom-width="true" original-height="157" src="https://storage.googleapis.com/support-kms-prod/m9V2zwjURYzmpV0LnR9rXu2pmKZRIC6vQ2HX" data-xwiki-image-style-alignment="center" alt="Click the Groups list on the left " width="250" original-width="320"]][[image:url:https://storage.googleapis.com/support-kms-prod/QCqT5l1Ss152u4gv4xN6t0scTtCKBvXlhQ7u||custom-width="true" original-height="157" src="https://storage.googleapis.com/support-kms-prod/QCqT5l1Ss152u4gv4xN6t0scTtCKBvXlhQ7u" data-xwiki-image-style-alignment="center" alt="Find the Turn On link next to an app" width="250" original-width="331"]]
39 +)))
40 +*1*. Changes can take up to 24 hours but typically happen more quickly. [[Learn more>>url:https://support.google.com/a/answer/7514107||shape="rect"]]
Confluence.Code.ConfluencePageClass[0]
id
... ... @@ -1,1 +1,1 @@
1 -874020874
1 +761790470
title
... ... @@ -1,1 +1,1 @@
1 -REMC1 Standards - Google Gemini licensing FERPA and Cybersecurity
1 +REMC1 Standards - Google Gemini FERPA and Cybersecurity