Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Trust Relationship ModelUniversity - End-userNREN - End-user

TERENA Trust

 

No Trust

(out of scope for Trusted Cloud Drive)

Global Cloud Storage ProviderCloud storage (opt.)Cloud storage (opt.)

Cloud storage (opt.) OR

NREN storage infrastructure (opt.)

Cloud Storage Provider

  • Trusted relationship with end-users
  • Keys are stored here (opt.)
  • Maintain client applications !!!
TERENAAdmin/clearing (opt.)Admin/clearing (opt.)

Admin/clearing &

Cloud Broker

  • Personal Data Controller
  • Encryption
  • Keys are stored here
  • Trusted relationship with end-users

 <outsourcing agreement> (opt.)

  • Trust delegated to Cloud Provider
NREN / Data centre

Storage infrastructure

  • Raw storage capacity
  • Store encrypted data blob only
  • No personal information leaked

Storage infrastructure &

Cloud Broker

  • Personal Data Controller
  • Encryption
  • Keys are stored here
  • Trusted relationship with end-users

<outsourcing agreement>

  • Trust delegated to TERENA
  • Match federations with storage infrastructures

 <outsourcing agreement> (opt.)

  • Trust delegated to Cloud Provider
University / Institute

Cloud Broker

  • Personal Data Controller
  • Encryption
  • Keys are stored here
  • Trusted relationship with end-users

<outsourcing agreement>

  • Trust delegated to NREN

<outsourcing agreement>

  • Trust delegated to NREN

 <outsourcing agreement>

  • Trust delegated to Cloud Provider
End-user<no client needed><no client needed><no client needed>

User Specific client application is needed

  • Encryption
  • Keys are stored/handled here
POTENTIAL USE CASES

NRENs to follow this model:

  • BELNET
  • NIIF

NRENs to follow this model:

  • Scre/CARNet
  • PSNC
  • CESNET

Home for Homeless - TBC

Commercial solutions are available such as:

  • SpiderOak
  • PowerFolder
  • etc...