The aim of this pilot is to explore possible deployment scenarios for a trusted storage service for NRENs. The pilot will be built upon a federated software platform (“the cloud broker facility”) that offers the ability to easily connect different storage back-end (both private and public cloud storage back-end are supported) and store users data in a secure and privacy preserving way (thanks to the separation of storage data and metadata as well as the built-in encryption functionality) in the cloud.
The following aspects will also be explored as part of the pilot:
(i) Longer term sustainability for a potential service;
(ii) Legal aspects and perceived trust issues related to the storage and management of the encryption keys and metadata;
(iii) Software scalability and performance;
Although the software already offers capabilities to test different front-end applications too, this aspect will not be fully explored during the pilot. However, requirements will be collected during the pilot lifetime and recommendations on how to further improve the front-end (end-users) functionalities will be provided.
The pilot will installing and operating the “cloud broker” which will be based on the open software developed by UNINETT Sigma in 2010 as part of the NEON project.
This proposed software has been built with the basic idea of separating the storage data (i.e. encrypted content) from the metadata (i.e. encryption keys, filenames, size, date, etc).
By keeping the metadata store “on premises” data confidentiality is guaranteed under the assumption that the premises are inside a “trusted domain” – e.g. TERENA.
The technical part of the pilot will consist of installing all the components depicted in the picture above: namely a centralised cloud broker for the TERENA’s community (the green box depicted in the picture above), the web portal to access the system (front-end) and the storage back-end. The pilot will be carried out in two phases:
The pilot Phase ii will be operated for a 9-month period after which an evaluation will follow to assess the success of the pilot and to agree on the following steps.
There will be three deliverables produced as part of the pilot:
Latest version of the full project desctiption.
|