You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 24 Next »

The following preliminary service scenarios are envisioned:

  • Hosted Service Scenarios
    • A) One cloud broker instance is hosted at a central location (e.g., TERENA offices), metadata is stored at the same place (i.e. inside the broker), storage data is stored in the public cloud contracted by TERENA - This is the scenario of the current pilot installation!
    • B) One cloud broker instance is hosted at a central location (e.g., TERENA offices), metadata is stored at the same place (i.e. inside the broker), storage data is either stored in the public cloud or in the data storage facilities provided by NRENs participating in the pilot coordinated by TERENA.
  • Brokered Service Scenarios
    • A) Several cloud broker instances are hosted by NRENs or end-sites, metadata is stored locally (i.e. inside the distributed brokers), storage data is stored in the public cloud that is brokered to NRENs by TERENA.
    • B) Several cloud broker instances are hosted by NRENs or end-sites, metadata is stored locally (i.e. inside the distributed brokers), storage data is stored in the mix of public cloud and data storage facility of NRENs brokered and coordinated by TERENA.

Other potential scenarios may come up...

Trust Relationship Models


Trust Relationship Model

University - End-user

(TERENA Franchise)

NREN - End-user

(Brokered SS A and B)

TERENA Trust

 (Hosted SS A and B)

No Trust

(out of scope for Trusted Cloud Drive)

Global Cloud Storage ProviderCloud storage (opt.)Cloud storage (opt.)

Cloud storage (opt.) OR

NREN storage infrastructure (opt.)

Cloud Storage Provider

  • Trusted relationship with end-users
  • Keys are stored here (opt.)
  • Maintain client applications !!!
TERENAAdmin/clearing (opt.)Admin/clearing (opt.)

Admin/clearing &

Cloud Broker

  • Personal Data Controller
  • Encryption
  • Keys are stored here
  • Trusted relationship with end-users

 <outsourcing agreement> (opt.)

  • Trust delegated to Cloud Provider
NREN / Data centre

Storage infrastructure

  • Raw storage capacity
  • Store encrypted data blob only
  • No personal information leaked

Storage infrastructure &

Cloud Broker

  • Personal Data Controller
  • Encryption
  • Keys are stored here
  • Trusted relationship with end-users

<outsourcing agreement>

  • Trust delegated to TERENA
  • Match federations with storage infrastructures

 <outsourcing agreement> (opt.)

  • Trust delegated to Cloud Provider
University / Institute

Cloud Broker

  • Personal Data Controller
  • Encryption
  • Keys are stored here
  • Trusted relationship with end-users

<outsourcing agreement>

  • Trust delegated to NREN

<outsourcing agreement>

  • Trust delegated to NREN

 <outsourcing agreement>

  • Trust delegated to Cloud Provider
End-user<no client needed><no client needed><no client needed>

Specific client application is needed

  • Encryption
  • Keys are stored/handled here
POTENTIAL USE CASES

NRENs to follow this model:

  • BELNET
  • NIIF

NRENs to follow this model:

  • Scre/CARNet
  • PSNC
  • CESNET

Home for Homeless - TBC

  • TERENA

Commercial solutions are available such as:

  • SpiderOak
  • PowerFolder
  • etc...

TERENA Franchise idea

TERENA Trusted Cloud Drive API Store


ProviderItemAUPSLAPrice
TERENA

Trusted Cloud Broker platform

default plugins (S3, local FS)

Download...

n/an/a

free of charge

NREN X

Storage back-end API plugin

Download...

E.g., only national federation

Agree (Yes/No)

Availability, MTTR, etc.

 

Service fee x

Pay...

NREN Y

Storage back-end API plugin

Download...

E.g, only TERENA countries

Agree (Yes/No)

Availability, MTTR, etc.

Service fee x

Pay...

Commercial Z

Storage back-end API plugin

Download...

E.g, only EU countries

Agree (Yes/No)

Availability, MTTR, etc.

Service fee y

Pay...

Commercial W

Storage back-end API plugin

Download...

E.g, global

Agree (Yes/No)

Availability, MTTR, etc.

Service fee x

Pay...

  • No labels