Changes for page AI Artificial Intelligence Tools with Student Data Security in Mind - With Google Gemini Info
Last modified by ericj@remc1_org on 2026/08/19 16:32
From version 9.1
edited by Lauren Keller
on 2024/08/16 10:59
on 2024/08/16 10:59
Change comment:
There is no comment for this version
To version 3.1
edited by Josh Hiner
on 2024/06/27 09:16
on 2024/06/27 09:16
Change comment:
There is no comment for this version
Summary
-
Page properties (3 modified, 0 added, 0 removed)
-
Objects (1 modified, 0 added, 0 removed)
Details
- Page properties
-
- Title
-
... ... @@ -1,1 +1,1 @@ 1 -REMC1 Standards - Google Gemini licensingFERPA and Cybersecurity1 +REMC1 Standards - Google Gemini FERPA and Cybersecurity - Author
-
... ... @@ -1,1 +1,1 @@ 1 -XWiki. lkeller@remc1_org1 +XWiki.josh@remc1_org - Content
-
... ... @@ -1,57 +1,40 @@ 1 1 {{toc/}} 2 2 3 -= ={{id name="WARNING:-Google-Gemini-is-only-FERPA-compliant-if-you-have-Google-Ed-Workspaces-and-pay-for-a-license."/}}WARNING: Google Gemini is only FERPA compliant if you have Google Ed Workspaces and pay for a license. ==3 += {{id name="WARNING:-Google-Gemini-is-only-FERPA-compliant-if-you-have-Google-Ed-Workspaces-and-pay-for-a-license."/}}WARNING: Google Gemini is only FERPA compliant if you have Google Ed Workspaces and pay for a license. = 4 4 5 -* **Gemini free version is NOT TO BE ENABLED** in any remc1 google workspaces ([[remc1.net>>url:http://remc1.net||shape="rect"]], [[remc1.org>>url:http://remc1.org||shape="rect"]] or any other in the future). 6 -* Furthermore no REMC1 org data is to be fed into any employee’s personal gemini free access or anyone else’s Gemini instance (outside REMC1’s licensed FERPA safe enabled Gemini). Gemini free is currently disabled in [[remc1.org>>url:http://remc1.org||shape="rect"]] and can only be enabled if you have a license to utilize Gemini along with group membership (see below/next section). 7 7 * The free version sifts through all your email and documents sucking the data into its public database. 8 8 * Create a burner personal account if you want to use Google Gemini. Dont use it with your normal Google Email either unless you want it to suck all your emails and drive documents into the public database (including banking, HIPAA, FERPA, PII info etc..) everything then have it cranked out to other public who ask gemini questions. There are people/bad actors who craft questions to try and reveal/pull this info back out etc.. Its an identity theft attack vector. 9 9 * Here is the REMC1 official template response to Gemini requests - Accurate as of May 2024. Inquiry pending to Google for Ed licensing. 10 10 ** [[https:~~/~~/docs.google.com/document/d/1Y7O1Yxe9FwbC68NXJBgpq29WhRf-9EJXQAbzJFYdSGI/edit>>url:https://docs.google.com/document/d/1Y7O1Yxe9FwbC68NXJBgpq29WhRf-9EJXQAbzJFYdSGI/edit||data-card-appearance="inline" shape="rect"]] 11 11 12 -= ={{id name="How-Gemini-is-Enabled-for-remc1.org-staff-(only-with-an-assigned-license)"/}}How Gemini is Enabled for [[remc1.org>>url:http://remc1.org||shape="rect"]] staff(only with an assigned license)==10 += {{id name="How-Gemini-is-Enabled-for-remc1.org-staff"/}}How Gemini is Enabled for [[remc1.org>>url:http://remc1.org||shape="rect"]] staff = 13 13 14 -June 2024: We have three Gemini licenses all assigned to Josh, Steve, Hayley. 12 +* June 2024: We have three Gemini licenses all assigned to Josh, Steve, Hayley 13 +* Currently its enabled via a security group called GeminiEnable 14 +* This group is setup through the admin console NOT [[groups.google.com>>url:http://groups.google.com||shape="rect"]]. You cannot use a [[groups.google.com>>url:http://groups.google.com||shape="rect"]] group to control services it has to be added in the admin console (as of June 2024 -JDH) 15 +* Here are the steps utilized to enable. ALSO… I went to admin->clicked on the apps waffle->Gemini->User Access (right hand square pane)->Groups section (middle left pane, click on the arrow by groups), Now select GeminiEnable, Now notice this is where I enforce the setting to ONLY ALLOW USERS WITH A GEMINI LICENSE. This way if someone gets happy and adds more individuals WITHOUT licensing they still wont be able to enable Gemini and feed all remc data into the public engine. 16 +* Ok Here are the steps utilized to enable the service via the GeminiEnable group 17 +* For this step, you need admin privileges for Groups, Organizational Units (top-level), and Service Settings. Learn more about [[Administrator privilege definitions>>url:https://support.google.com/a/answer/1219251||shape="rect"]]. 18 +(% start="1" %) 19 +*1. In your Google **Admin console** (at [[admin.google.com>>url:http://admin.google.com||shape="rect"]])... 20 +*1. ((( 21 +Go to Menu ->apps 15 15 16 -It is enabled via the security group GeminiEnable. 17 17 18 -== {{id name="Make-a-Security-Group"/}}Make a Security Group == 19 19 20 -Security groups are set up through the admin console. You cannot use a [[groups.google.com>>url:http://groups.google.com||shape="rect"]] group to control services; it has to be added in the admin console (as of June 2024 -JDH): 21 - 22 -* Make a security group. If your group label does not have 'Security' in it, it's the wrong group type; make a new group 23 -* ((( 24 -Fill out the required info:\\ 25 - 26 -[[image:attach:security_group_01.png||custom-width="true" original-height="449" data-xwiki-image-style-alignment="center" alt="security_group_01.png" width="520" original-width="520"]] 25 +[[ ~[~[Apps~>~>url:https://admin.google.com/ac/apps~|~|shape="rect"~]~].>>image:url:https://storage.googleapis.com/support-kms-prod/ocGtUSENh4QebLpvZcmLcNRZyaTBcolMRSyl||custom-width="true" original-height="24" src="https://storage.googleapis.com/support-kms-prod/ocGtUSENh4QebLpvZcmLcNRZyaTBcolMRSyl" data-xwiki-image-style-alignment="center" width="250" original-width="24"]] 27 27 ))) 28 -* ((( 29 -Customize the settings\\ 27 +*1. Click the type of service: **Google Workspace** 28 +*1. In the **Groups **section, find and select your group (in this case GeminiEnable) 29 +*1*. To view the list of access groups, click **Search for a group**. 30 +*1*. Search by group name or address. 31 +If you don’t find your group, it might be a group created in Google Groups, which can't be used as an access group. 32 +*1. On the right, point at the row for the service. 33 +*1*. To turn on access, click **Turn On**. 34 +*1*. To remove access for the group, click **Unset**. Now, users get the access setting of their organization. However, if the users belong to any other access group with the service turned on, they continue// //to have access to the service. 35 +*1*. ((( 36 +To set multiple services, check the box for each service and click **On **or **Unset **in the upper right. 30 30 31 -[[image:attach:security _group_02.png||custom-width="true" original-height="476" data-xwiki-image-style-alignment="center" alt="security_group_02.png" width="697" original-width="697"]]38 +[[image:url:https://storage.googleapis.com/support-kms-prod/m9V2zwjURYzmpV0LnR9rXu2pmKZRIC6vQ2HX||custom-width="true" original-height="157" src="https://storage.googleapis.com/support-kms-prod/m9V2zwjURYzmpV0LnR9rXu2pmKZRIC6vQ2HX" data-xwiki-image-style-alignment="center" alt="Click the Groups list on the left " width="250" original-width="320"]][[image:url:https://storage.googleapis.com/support-kms-prod/QCqT5l1Ss152u4gv4xN6t0scTtCKBvXlhQ7u||custom-width="true" original-height="157" src="https://storage.googleapis.com/support-kms-prod/QCqT5l1Ss152u4gv4xN6t0scTtCKBvXlhQ7u" data-xwiki-image-style-alignment="center" alt="Find the Turn On link next to an app" width="250" original-width="331"]] 32 32 ))) 33 -* ((( 34 -Accept the defaults on the next page (No restrictions) and click 'Create Group'\\ 35 - 36 -[[image:attach:security_group_03.png||custom-width="true" original-height="297" data-xwiki-image-style-alignment="center" alt="security_group_03.png" width="772" original-width="772"]] 37 -))) 38 -* You can put anyone you want in the group, including from outside the organization. Only those people with a license who are also in the group can access Gemini (see below)\\ 39 - 40 -== {{id name="Enable-Gemini"/}}Enable Gemini == 41 - 42 -To enable Gemini you need admin privileges for Groups, Organizational Units (top-level), and Service Settings. Learn more about [[Administrator privilege definitions>>url:https://support.google.com/a/answer/1219251||shape="rect"]]: 43 - 44 -* In the Google **Admin console** - [[admin.google.com>>url:http://admin.google.com||shape="rect"]] 45 -* Once the group has been created, open the Generative AI menu on the left and select Gemini 46 -* On the right, under Gemini Settings, click in the Service Status section (it should say OFF for everyone) 47 -* On the left, click '**Groups**' in the column under Gemini 48 -** To view the list of access groups, click **Search for a group** 49 -** Search by group name or address (in this case GeminiEnable) 50 -*** If you don’t find your group, it might be a group created in Google Groups, which can't be used as an access group 51 -* On the right, check the 'ON' box in the 'Service Status' section and hit the Save button 52 -* Changes can take up to 24 hours but typically happen more quickly. [[Learn more>>url:https://support.google.com/a/answer/7514107||shape="rect"]] 53 - 54 -= {{id name="REMC1-June-2024-Google-Gemini-Order"/}}REMC1 June 2024 Google Gemini Order = 55 - 56 -* Amusingly enough Mike Richardson is still listed as the contact. I’ll have this fixed for our next CDW order 57 -* {{view-file att--filename="June 2024 REMC1 Gemini Order.pdf"/}} 40 +*1*. Changes can take up to 24 hours but typically happen more quickly. [[Learn more>>url:https://support.google.com/a/answer/7514107||shape="rect"]]
- Confluence.Code.ConfluencePageClass[0]
-
- id
-
... ... @@ -1,1 +1,1 @@ 1 - 9120645151 +761921539 - title
-
... ... @@ -1,1 +1,1 @@ 1 -REMC1 Standards - Google Gemini licensingFERPA and Cybersecurity1 +REMC1 Standards - Google Gemini FERPA and Cybersecurity