Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Trust Relationship ModelUniversity - End-userNREN - End-user

TERENA Trust

(home-for-homeless) 

No Trust

(out of scope for Trusted Cloud Drive)

Global Cloud Storage ProviderCloud storage (opt.)Cloud storage (opt.)

Cloud storage (opt.) OR

NREN storage infrastructure (opt.)

Cloud Storage Provider
TERENAAdmin/clearing (opt.)Admin/clearing (opt.)

Admin/clearing &

Cloud Broker

  • Personal Data Controller
  • Encryption
  • Keys are stored here
  • Trusted relationship with end-users

 <outsourcing agreement> (opt.)

  • Trust delegated to Cloud Provider
NREN / Data centre

Storage infrastructure

  • Raw storage capacity
  • Store encrypted data blob only
  • No personal information leaked

Storage infrastructure &

Cloud Broker

  • Personal Data Controller
  • Encryption
  • Keys are stored here
  • Trusted relationship with end-users

<outsourcing agreement>

  • Trust delegated to TERENA
  • Match federations with storage infrastructures

 <outsourcing agreement> (opt.)

  • Trust delegated to Cloud Provider
University / Institute

Cloud Broker

  • Personal Data Controller
  • Encryption
  • Keys are stored here
  • Trusted relationship with end-users

<outsourcing agreement>

  • Trust delegated to NREN

<outsourcing agreement>

  • Trust delegated to NREN

 <outsourcing agreement>

  • Trust delegated to Cloud Provider
End-user<no client needed><no client needed><no client needed>

DAV client with local key store

  • Encryption
  • Keys are stored here
POTENTIAL USE CASES

BELNET may follow this model

NIIF may follow this model

Scre/CARNet may follow this modelHome for Homeless - TBC