DoD Enterprise White Pages

Slides:



Advertisements
Similar presentations
Distributed Data Processing
Advertisements

Welcome to Middleware Joseph Amrithraj
Certification Authority. Overview  Identifying CA Hierarchy Design Requirements  Common CA Hierarchy Designs  Documenting Legal Requirements  Analyzing.
1 UNCLASSIFIED Army Enterprise Migration to DISA LTC Peter Barclay, CIO/G6 Mr. Kevin Mott, NETCOM Mr. Jose Ortega, PEO EIS Mr. Donald Greenlee, PEO.
Password?. Project CLASP: Common Login and Access rights across Services Plan
Sentry: A Scalable Solution Margie Cashwell Senior Sales Engineer Sept 2000 Margie Cashwell Senior Sales Engineer
Understanding Active Directory
UNCLASS DoD Public Key Infrastructure LCDR Tom Winnenberg DISA API1 Chief Engineer 25 April 2002.
2 Systems Architecture, Fifth Edition Chapter Goals Describe client/server and multi-tier application architecture and discuss their advantages compared.
Windows 2000 Remote Access. Remote Access Overview With Windows 2000 remote access, remote access clients connect to remote access servers and are transparently.
© 2004 IBM Corporation BEA WebLogic Server Introduction and Training.
DISA’s Transformation to a Platform Service Provider A Combat Support Agency Defense Information Systems Agency DISA Computing Services August 2011.
A Combat Support Agency Defense Information Systems Agency DoD Enterprise .
Enterprise SharePoint Service (ESPS) 17 August 2011 A Combat Support Agency Defense Information Systems Agency.
Clinic Security and Policy Enforcement in Windows Server 2008.
Module 1 Introduction to Managing Microsoft® Windows Server® 2008 Environment.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
©Kwan Sai Kit, All Rights Reserved Windows Small Business Server 2003 Features.
Technology Overview. Agenda What’s New and Better in Windows Server 2003? Why Upgrade to Windows Server 2003 ?  From Windows NT 4.0  From Windows 2000.
Introduction to distributed systems Dr. S. Indran 23 January 2004.
CS 493/693: Distributed Systems Programming V. “Juggy” Jagannathan CSEE, West Virginia University March 21, 2005.
Microsoft Active Directory(AD) A presentation by Robert, Jasmine, Val and Scott IMT546 December 11, 2004.
Windows Azure Dave Glover Developer Evangelist Microsoft Australia Tel:
第十四章 J2EE 入门 Introduction What is J2EE ?
A Combat Support Agency Rapid Access Computing Environment (RACE) 17 August 2011 A Combat Support Agency Defense Information Systems Agency.
Simplify and Strengthen Security with Oracle Application Server Allan L Haensgen Senior Principal Instructor Oracle Corporation Session id:
Source: Peter Eeles, Kelli Houston, and Wojtek Kozaczynsky, Building J2EE Applicationa with the Rational Unified Process, Addison Wesley, 2003 Prepared.
Module 9: Fundamentals of Securing Network Communication.
1 Introduction to Microsoft Windows 2000 Windows 2000 Overview Windows 2000 Architecture Overview Windows 2000 Directory Services Overview Logging On to.
PS Security By Deviprasad. Agenda Components of PS Security Security Model User Profiles Roles Permission List. Dynamic Roles Static Roles Building Roles/Rules.
Module 9: Designing Public Key Infrastructure in Windows Server 2008.
COGNOS 8BI Introduction and Architecture
Cole David Ronnie Julio. Introduction Globus is A community of users and developers who collaborate on the use and development of open source software,
Module 9 User Profiles and Social Networking. Module Overview Configuring User Profiles Implementing SharePoint 2010 Social Networking Features.
Implementing Microsoft Exchange Online with Microsoft Office 365
UNCLASSIFIED Service Oriented Architecture, Information Sharing and the FEA DRM 23 January 2006 Bryan Aucoin DNI CIO Chief Architect
The Hierarchical Trust Model. PGP Certificate Server details Fast, efficient key repository –LDAP, HTTP interfaces Secure remote administration –“Pending”
Active Directory Domain Services (AD DS). Identity and Access (IDA) – An IDA infrastructure should: Store information about users, groups, computers and.
Net-Centric Computing Overview
Internet and Distributed Application Services
Introduction ITEC 420.
5th Edition, Irv Englander
CLOUD ARCHITECTURE Many organizations and researchers have defined the architecture for cloud computing. Basically the whole system can be divided into.
Integrated Management System
Platform as a Service (PaaS)
ORACLE ADF ONLINE TRAINING COURSE
Microsoft Office SharePoint Server 2007 Enterprise Search
Consulting Services JobScheduler Architecture Decision Template
Securing the Network Perimeter with ISA 2004
Principles of Network Applications
Program Executive Office GIG Enterprise Services (PEO-GES)
Veeam Backup Repository
Enterprise Application Architecture
SharePoint Online Management and Control
DoD Identity & Access Management (IdAM) Portfolio Overview
Comparison June 2017.
Introduction to z/OS Security Lesson 4: There’s more to it than RACF
Web-Services-based Systems Architecture, Design and Implementation
Goals Introduce the Windows Server 2003 family of operating systems
Partner Logo Azure Provides a Secure, Scalable Platform for ScheduleMe, an App That Enables Easy Meeting Scheduling with People Outside of Your Company.
Datacastle RED Delivers a Proven, Enterprise-Class Endpoint Data Protection Solution that Is Scalable to Millions of Devices on the Microsoft Azure Platform.
Distributed System Using Java 2 Enterprise Edition (J2EE)
SharePoint Online Hybrid – Configure Outbound Search
Web Application Server 2001/3/27 Kang, Seungwoo. Web Application Server A class of middleware Speeding application development Strategic platform for.
Component-based Applications
2/27/2019 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Certificate Revocation
COMPONENTS – WHY? Object-oriented source-level re-use of code requires same source code language. Object-oriented source-level re-use may require understanding.
System Center Operations Manager 2007 – Technical Overview
Hosting Geodesign and Analysis Services in Your Portal for ArcGIS
Presentation transcript:

DoD Enterprise White Pages Caroline Bean January 16, 2013 16 JAN 2013

Agenda Overview Architecture COOP Service Desk Backup User Interface 16 JAN 2013 1

Product Information DOD Enterprise White Pages is a web-based user interface that provides the capability to search for, locate, and display persona* based contact information for all DOD Personnel Managed by DISA PEO-ES Located at https://whitepages.mil Government Lead: Caroline Bean Project Lead: Jim Byers (Contractor Support) Development Lead/Architect: Dan Beller (Contract Support) Version 1.0 IOC scheduled for March 2013 *A “persona” is defined as a DoD Person’s current working or other personnel relationship with the DoD. Users may have more than one persona. For example, an individual who has serves the DoD as both a reservist and also a contractor would have two personas. 16 JAN 2013 2

Architecture 2-Tier architecture Web/Application Server as front end DISA’s Enterprise Directory Query Service (EDQS) provides contact information made available by DISA’s Identity Synchronization Service (IdSS) Hosted on the DISA Secure Technology Application Execution (STAX) Platform-as-a-Service (PaaS) White Pages deployed as a web application to a STAX application container Technology Java Platform Enterprise Edition (JEE) Based Application JBoss Enterprise Application Platform (EAP) Active Directory Lightweight Directory Service (AD LDS) Public Key Infrastructure (PKI) Authentication required 16 JAN 2013 3

HTTPS / PKI Authentication Logical Architecture Accreditation Boundary LDAPS HTTPS / PKI Authentication OCSP HTTP IdSS Directory Server Jboss App. Server OCSP Responder STAX Edge Router End User (Internet / NIPRNet) WP APP STAX USER EDQS User access to White Pages Web Application is separate from LDAP Directory No direct user access to LDAP Directory is authorized except through authenticated access to the DoD Enterprise White Pages web application. 16 JAN 2013 4

Implementation Details Standards and profiles X.509 PKI Certificates (CAC/ECA) and Online Certificate Status Protocol (OCSP) Transport Layer Security (TLS) Mutual Authentication HTTPS/HTML/CSS/JavaScript LDAPv3 for searching repository Section 508 for accessibility Interfaces HTTPS to external users LDAPS to EDQS Metrics Number of transactions, number of errors Response times (measured on server) Application up/down time 16 JAN 2013 5

Continuity of Operations (COOP) MAC II system DISA STAX environments are physically distributed to multiple DoD Enterprise Computing Center’s (DECC) Web applications deployed on STAX feature replication of application and data to at least one remote DECC for COOP STAX responsible for COOP planning, testing, and execution STAX guarantees 24-hour maximum restoral time for application and data 16 JAN 2013 6

Service Desk Tier 1 Tier 2 Tier 3 DECC Montgomery (MGM) Service Desk 24/7 Phone: 334-416-3472 DSN: 312-596-3472 Email: disa.montgomery.esd.mbx.mon-service-desk-ticket-requests@mail.mil Tier 2 Secure Technology Application eXecution (STAX) Service Desk DoD Enterprise Email (DEE) Service Desk DoD Enterprise White Pages Program Management Office (PMO) Tier 3 Application Developer/Vendor (Solers/Deloitte) 16 JAN 2013 7

Questions? 16 JAN 2013 8

Basic Search Interface *Though the screen shot says U//FOUO, this is test data and is really UNCLASSIFIED. 16 JAN 2013 9

Advanced Search Interface *Though the screen shot says U//FOUO, this is test data and is really UNCLASSIFIED. 16 JAN 2013 10

Initial Results Interface *Though the screen shot says U//FOUO, this is test data and is really UNCLASSIFIED. 16 JAN 2013 11

Contact Card *Though the screen shot says U//FOUO, this is test data and is really UNCLASSIFIED. 16 JAN 2013 12

Physical Architecture- Directory Server Primary Failover DECC Montgomery STAX PaaS Production East Web Data JBoss EAP EDQS Scaling as Needed EDQS Enclave LDAPS DECC Ogden STAX PaaS Production West Web Data JBoss EAP EDQS Scaling as Needed EDQS Enclave LDAPS EDQS 16 JAN 2013 13