Enterprise Infrastructure Reference Implementation

Slides:



Advertisements
Similar presentations
SIP and Instant Messaging. SIP Summit SIP and Instant Messaging What Does Presence Have to Do With SIP? How to Deliver.
Advertisements

ODDR&E PBR11 Issue: Deployable Force 07/06/09 Page-1 ASD(R&E) Joint Situational Awareness & Decision Support Development Campaign CLOUDBREAK Program Manager:
Enterprise CAL Overview. Different Types of CALs Standard CAL base A component Standard CAL is a base CAL that provides access rights to basic features.
Keeping the War Fighter Informed
UNCLASSIFIED 1 Enterprise Architecture Career Path Working Group Walt Okon Senior Architect Engineer Architecture & Infrastructure Directorate Office of.
UNCLASSIFIED National Senior Leadership Decision Support Service (NSLDSS JCTD) DISA Customer Conference Lt Col Kevin Nyberg
Know the Earth…Show the Way NATIONAL GEOSPATIAL-INTELLIGENCE AGENCY Approved for public release NGA # Gregory Black Director, eGEOINT Management.
Connecting People With Information DoD Net-Centric Services Strategy Frank Petroski October 31, 2006.
Connecting People With Information Conclusions DoD Net-Centric Data Strategy (DS) and Community of Interest (COI) Training For further information .
A Combat Support Agency. Vision & Mission ServicesAgenciesCOCOMS NATO & Coalitions 2 Industry.
Federal Student Aid Technical Architecture Initiatives Sandy England
© 2006 IBM Corporation IBM Software Group Relevance of Service Orientated Architecture to an Academic Infrastructure Gareth Greenwood, e-learning Evangelist,
UNCLASSIFIED Strike COI Spiral 1 Lessons Learned and Implementation JFCC Global Strike and Integration Col Bryan Bartels JFCC GSI J32, C2 Development.
Realising the Potential of Service Oriented Architecture Kris Horrocks Connected Systems Division Microsoft.
Page 1Prepared by Sapient for MITVersion 0.1 – August – September 2004 This document represents a snapshot of an evolving set of documents. For information.
Microsoft Office Sharepoint Server 2007 (MOSS) Overview Momentum Microsoft November 15, 2007.
Africa Information Highway and SDMX implementation in Africa Beejaye Kokil Economic & Social Statistics Division African Development Bank
11 DoD Information Sharing Update for WJTSC Plenary Session Office of the Assistant Secretary of Defense for Networks and Information Integration OASD(NII)
Enterprise SharePoint Service (ESPS) 17 August 2011 A Combat Support Agency Defense Information Systems Agency.
Office 365: Efficient Cloud Solutions Wednesday March 12, 9AM Chaz Vossburg / Gabe Laushbaugh.
A Combat Support Agency Defense Information Systems Agency UNCLASSIFIED Program Executive Office GIG Enterprise Services (PEO-GES) 101 Briefing As of October.
Managing Data Interoperability with FME Tony Kent Applications Engineer IMGS.
1.Database plan 2.Information systems plan 3.Technology plan 4.Business strategy plan 5.Enterprise analysis Which of the following serves as a road map.
Forge.mil Success Stories and Lessons Learned
DoD Architecture Registry System DARS 16 September 2009 Walt Okon Senior Architect Engineer Senior Architect Engineer for Information Sharing Enterprise.
Civilian Human Resources Management  Military Health Systems  Military and Other Human Resources Management Department of Defense – Human Resources Management.
A Combat Support Agency Defense Information Systems Agency Forge.mil OSS Methodologies/Consumption Guy Martin, Aaron Lippold Forge.mil Community Management.
9/11/ SUPPORT THE WARFIGHTER DoD CIO 1 Sample Template Community of Interest (COI) Steering Committee Kick-off Date: POC: V1.0.
Interoperability Tests for IEC Scott Neumann November 12, 2009.
DoD Acquisition Domain (Sourcing) (DADS) Analysis of Alternatives (AoA) E-Business/SPS Joint Users’ Conference November 15-19, 2004 Houston, TX.
Connecting People With Information DoD Transformation to Net-Centric Operations via Net-Centric Strategies For further information OSD at:
0 Architecting and Engineering the Naval Force: A Warfare Systems Perspective 18 June 2009 RDML (Sel) Jerry K. Burroughs SPAWAR Chief Engineer Distribution.
PO320: Reporting with the EPM Solution Keshav Puttaswamy Program Manager Lead Project Business Unit Microsoft Corporation.
OASIS ebXML Registry Standard Open Forum 2003 on Metadata Registries 10:30 – 11:15 January 20, 2003 Kathryn Breininger The Boeing Company Chair, OASIS.
Enterprise User Enabling Warfighter Capability
I n t e g r i t y - S e r v i c e - E x c e l l e n c e Headquarters U.S. Air Force 1 Lt Gen Bill Lord, SAF/CIO A6 Chief of Warfighting Integration and.
Evaluation and Testbed Development Bhavani Thuraisingham The University of Texas at Dallas Jim Massaro and Ravi Sandhu.
Certification and Accreditation CS Phase-1: Definition Atif Sultanuddin Raja Chawat Raja Chawat.
Adoption of Commercial EDI Standards for DoD Logistics Business Transactions Integrated Product Team (EDI IPT) – Expanded DEFENSE LOGISTICS AGENCY Report.
Strategic Mobility 21 Focused on Making Decision Relevant Data A Logistics Multiplier in All Domains Strategic Mobility 21 Focused on Making Decision Relevant.
Interfacing Registry Systems December 2000.
Delivering business value through Context Driven Content Management Karsten Fogh Ho-Lanng, CTO.
OEI’s Services Portfolio December 13, 2007 Draft / Working Concepts.
A Combat Support Agency Defense Information Systems Agency UNCLASSIFIED UNCLASSIFIED Spectrum Access: The Tools to Connect GEMSIS 15 Aug 2011.
FEA DRM Management Strategy Presented by : Mary McCaffery, US EPA.
Maritime Information Sharing Standards and Architecture
D Appendix D.11. Toward Net-Centric Acquisition Oversight A Proposal for an Acquisition Community of Interest (COI) MID 905 Streamlined Acquisition.
EPA Geospatial Segment United States Environmental Protection Agency Office of Environmental Information Enterprise Architecture Program Segment Architecture.
March 2004 At A Glance NASA’s GSFC GMSEC architecture provides a scalable, extensible ground and flight system approach for future missions. Benefits Simplifies.
1 Interim Implementation Guidance for Net- Centric Data Strategy in the C2 Capability Portfolio COL Carl Porter OASD NII/DoD CIO C2 Programs and Policy.
Last Updated 1/17/02 1 Business Drivers Guiding Portal Evolution Portals Integrate web-based systems to increase productivity and reduce.
The DoD Information Enterprise Strategic Plan and Roadmap (SP&R)
A Net-Centric DoD NII/CIO 1 Sample Template Community of Interest (COI) Steering Committee Kick-off Date: POC:
Kemal Baykal Rasim Ismayilov
Connecting People With Information Transforming the Way the DoD Manages Data M. David Allen OASD(NII)/DoD CIO May 23, 2006 “The.
Module 1: Overview of Microsoft Office SharePoint Server 2007.
March 2004 At A Glance The AutoFDS provides a web- based interface to acquire, generate, and distribute products, using the GMSEC Reference Architecture.
8a Certified. About Us  Headquarters in Vienna, VA  Service Disabled Veteran-owned Small Business  SBA 8(a) program participant  Small Disadvantaged.
8a Certified. About Us  Headquarters in Vienna, VA  Service Disabled Veteran-owned Small Business  SBA 8(a) program participant  Small Disadvantaged.
Copyright c 2004 OSIsoft Inc. All rights reserved. Visualizing Performance Management Managing Information with RtPortal Gregg Le Blanc - OSIsoft Brian.
Defense Information Systems Agency A Combat Support Agency
Chris Menegay Sr. Consultant TECHSYS Business Solutions
DARS Update DoDAF 2.0 Plenary Tool Vendor Session 22 July 2008.
Improving Mission Effectiveness By Exploiting the Command’s Implementation Of the DoD Enterprise Services Management Framework - DESMF in the [name the.
Program Executive Office GIG Enterprise Services (PEO-GES)
Universal Core Task Force Connecting People With Information
Single Point of Entry (SPOE)
Project Information Management Jiwei Ma
1/18/2019 Transforming the Way the DoD Manages Data Implementing the Net Centric Data Strategy using Communities of Interest Introduction
2/15/2019 Transforming the Way the DoD Manages Data Implementing the Net Centric Data Strategy using Communities of Interest Introduction
Presentation transcript:

Enterprise Infrastructure Reference Implementation Defense Information Systems Agency A Combat Support Agency Enterprise Infrastructure Reference Implementation (EIRI) DISA CTO 1

The Situation and a Better Solution Today’s Pt-to-Pt Quagmire - Interfaces - A Net-Centric Enterprise - Services - On the left you can see how we do it today. You have to subscribe to an RSS feed for every system where you want to consume data. Based on technology, you can dynamically discover new sources of data and services leveraging enterprise services specifications and standards Based on socialization – call a buddy and subscribe to an RSS feed. Based on technology to dynamically discover new sources of data and services leveraging enterprise services specifications and standards.

Industry Example 3

DoD Example 4 4

From Systems to Services, From Programs to Capabilities Objectives Rapid Development…of Enterprise Mission Services EIRI is a leading-edge effort intended to develop the processes and procedures to rapidly and cost-effectively deliver information sharing capabilities to the Department EIRI will leverage Net-Centric Enterprise Services (NCES) standards and capabilities in exposing data net-centrically EIRI will provide shoulder-to-shoulder assistance to help organizations implement those processes and procedures Exposed to the Enterprise Discoverable Leverages NCES Machine to Machine (M2M) or NCES compliant Web Service Authorized (Attribute Based Access Control (ABAC)) Available (Instrumented with NCES compliant EnSM) From Systems to Services, From Programs to Capabilities 5 5

Rules for Enterprise Services in C2 JCTDs Attribute WS-Service Attribute Store Enterprise Level Policy WS-Service Policy Store Local Level Policy Decision Point Permit, Deny Unk,N/A User Request PEP Authorization JUM Message Broker Message Topic Publishers Subscribers Message Bus Mediation Service Stores information in a centralized repository Uses Xquery for access, manipulate and retrieve operations Searches and locates information with pinpoint accuracy Extensive full-text, structured, geospatial, and real-time search features Analyzes to understand and exploit what you have Built in indexes to speed analysis of data Delivers content to users in multiple contexts Send content to multiple devices and users Data Repository

Data Exchange Design Approaches Web Service (Request/Response) Use when data needed by the consumer is specific and bound by indicated parameters JUM Interface (Publish/Subscribe ) Joint User Messaging (JUM) Use when data is frequently updated, relatively small, and relevant to a large number of users SharePoint Reference Implementation Package add-on which will allows for communication with JUM Use if you already have SharePoint and now wish to share data Hybrid – some combination of these design approaches A Web Service (Request/Response) is the appropriate model when the data needed by the consumer is specific and bounded by indicated parameters, and/or when it otherwise makes sense for the consumer to initiate the request on a one-time or periodic basis. Request/Response is more appropriate when the datasets being shared are potentially large. JUM (Publish/Subscribe) is the appropriate model when the data is frequently updated, individual updates are relatively small, and subsets of the data are relevant to large numbers of consumers. JUM also makes sense when updates or notifications need to be pushed rapidly to consumers rather than waiting for them to request updates. While Publish/Subscribe is ideal for high-frequency, event-driven data updates, it should not be used for database replication. Microsoft SharePoint Reference Implementation is appropriate when the data is manually entered and the users already utilize SharePoint, but wish to share data to a broader audience through JUM. 7 7

Web Service (Request/Response) One of the most basic use cases is one in which a web service is stood up to expose a database or other information source to the Enterprise on a query-like basis. Consumers of the information make requests to the web service, specifying the parameters of the data they require. The web service validates the requestors’ identity, and calls out to validate the requestors’ authorization making use of an externalized security architecture. The web service then structures the request in a way that can be understood by the source (e.g., a database call, file access or an application API call). Upon retrieving the data from the source, the web service structures the data into an XML document according to the interface definition for the web service (i.e., the XML schema) and returns it to the consumer.

Joint User Messaging (JUM) (Publish/Subscribe) Event Driven Information Publication A very common use case is the event-driven publication of data; this is a very simple and effective mechanism for shared relatively small, frequently updated information with a potentially large audience of consumers. In this case, the web service publishes data via Joint User Messaging (JUM) to one or more topics. All messages published are received by the applications and users subscribe to those topics. JUM handles authentication and authorization of publishers and subscribers as well as the reliable delivery of the messages. Data from the information source is published by the web service to the appropriate JUM topics using the defined message formats. This form of interaction is typically a machine-to-machine exchange of information.

SharePoint Reference Implementation In some cases, information may be published directly by users for consumption by others users and/or by systems. The SharePoint Connector to JUM provides a means by which SharePoint Lists and Workflows can be used to publish information to JUM.

Hybrid Design In some cases, information updates may be too large for publication to JUM, or each consumer might desire a different subset of the update available. In this case, the web service publishes only a notification via JUM to communicate to consumers that new information is available. The web service then exposes a web service that consumer call to request the specific data updates they require.

Use Case Web Service XML Repository TRANSCOM IGC JOPES CDMS ABAC ABAC 1. Point to Point data exchange from TRANSCOM/IGC to JOPES 2. Enterprise data exchange / Joint user Messaging (JUM) and ABAC 3. TRANSCOM to Machine data exchange via JUM pub/sub 4. TRANSCOM to User data exchange using CDMS (translation) via JUM 5. TRANSCOM to XML (store for later use) 6. XML (data repository) to User (forward) 7. User to ABAC enabled Web Service with a Question (Request) 8. Web Service back to User (Response) 9. Disolve Pt To P t Connection between TRANSCOM/IGC and JOPES

Publish in 45 days - now that’s rapid! EIRI Process Preparation Complete Initial Survey EIRI 101 Telecon EIRI 101 ABAC 101 JUM 101 Discuss Design Options Approvals Finalize requirements Finalize design approach Obtain approval Determine ABAC Policy Obtain Port Exceptions Production Operationalize Coordination Weekly Update Mtgs Finalize Schema Develop Interface(s) Implement NCES tools Test S2S Site Visit JUM and/or Web Svc ABAC CDMS, XML, ESM Milestones/Deliverables Register Service Day 45 Day 0 Publish in 45 days - now that’s rapid! 13

COCOM and Partner Participation JFCOM NORTHCOM SOUTHCOM SOCOM TRANSCOM Army NAVY NII Data Pilots Joint Staff EUCOM AFRICOM HHS

Response from Our Partners “The knowledge brought to the table and speed of implementation proved invaluable to the Pilot.” -- Josh Taylor, C2 Data Pilot Phase IVB Project Lead “Puts us on the pub/sub ground floor and this is very exciting“ -- Brig. Gen. Robert Yates, JFCOM “It isn’t that hard” -- Don Runnels, Asynchrony Solutions, supporting TRANSCOM J6 15

In Summary EIRI provides shoulder-to-shoulder engineering and a “how to” process to support the rapid exposure of NCES-compliant mission services to the Enterprise NCES compliance, enterprise attributes, and ABAC security provide assurance that information exposed to the Enterprise is visible, interoperable, secure, and accessible by all authorized users Our data can be our competitive advantage against tomorrow’s threats "... [The] next great opportunity for us is universal situational awareness.  Anything that disrupts the envelope -- we see it and we can act on it, whether it's in the air, on land, or underwater. Our biggest competitive advantage can be our knowledge.”                 - ADMIRAL MICHAEL MULLEN CHAIRMAN OF THE JOINT CHIEFS OF STAFF, 2010 16

EIRI Support Contacts Carlos Vera, EIRI Technical Lead, 703-882-0425, Carlos.Vera@disa.mil Cheryl Porter Brown, 858-220-9225, cheryl@porter-brown.net Wendy Crowell, 816-668-4643 wcrowell@stassociates.com Blaine Newlon, 703-882-1326, blaine.newlon.ctr@disa.mil

Rules for Enterprise Services in C2 JCTDs Purpose : To comply with DoD Policy and Guidance for the net-centric enterprise Policy: All Joint Concept Technology Demonstrations (JCTD) within the Command and Control (C2) portfolio will use the following Enterprise services: Attribute Based Access Control (ABAC) - Access control method that uses identity attributes about Users (Humans and Machines) to make security access decisions to data Joint User Messaging (JUM) - DISA enterprise messaging service Common Data Mediation Service (CDMS) Inbound data can be mediated into a canonical model, allowing data consumers to deal with consistently formatted data regardless of origination Outbound data can be mediated into alternative formats as needed, providing interoperability with alternative data formats without having to couple a system to any one format XML Data Repository (Mark Logic) - Enterprise XML repository. Single copy-of-record content storage, on top of which new information products can be created that slice, dice and re-purpose content in new ways so content is easily accessed. (Enterprise License) Intent to use these four services must be documented in the Implementation Directive of new JCTDs starting in FY11 and complied with by pre-FY11 JCTDs ABAC, CDMS, and JUM Enterprise services available for download at Forge.mil (www.Forge.mil) DOD Information Enterprise Architecture provides additional guidance on transformation to net-centric operations at http://cio-nii.defense.gov/sites/diea/ 19 19

Attribute Based Access Control (ABAC) Services Attribute Service Policy Service Exposes Individual’s Attributes by using a Web Service Exposes Policy Statements as a Web Service Attribute WS-Service Attribute Store Policy WS-Service Policy Store Enterprise Level Local Level Policy Decision Point Yes or No User Request If needed 20

Joint User Messaging (JUM) Joint User Messaging (JUM ) is an enterprise service to enable user-to-user, user-to-machine, and machine-to-machine messaging across the joint enterprise Information Distribution Suite (IDS) provides the technology platform for JUM, supplying a WS-Notification message broker, messaging bus, and web portal for user interfacing components Publish/Subscribe/Alert instead of Point-to-Point 21

Enterprise Infrastructure Reference Implementations SMADS SkiWeb NGA Maps DISA GISMC NSLDSS Visualization (Strategic Watch) NSLDSS TOI Tracker XML * Data Repository Strategic Watch Server Attribute Based Access AEISS (JUON) LAS Policy Store CPDP CDMS PEP M/IDS Active Conferences: CFACC and ONEC Senior Participants: NCdr, EA Domestic Attack Assessment: NO ATTACK NCES EXERCISE ERSA Joint User Messaging (JUM) DL1123 2 Crew/Pax:7 / 128 Acft Type:B767 / US Call Sign: DL1123 VIP NCES to JUM Bridge Lincoln Labs to DECC Critical Infrastructure Time-to-Decide White House 0+45 min Real-time voice, text, video, application sessions Collaboration Content Discovery Flight Plan Route Interceptors Velocity vector Velocity vectors Presumed target Actual Route of Flt TOI Splash estimate Access to data; improved content awareness DISA DECC COLUMBUS SIPRNet TMSE (GCCS-J) DISA DECC San Antonio * Currently XML Data Repository Not Located in the DECC

Common Data Mediation Service (CDMS)

XML Data Repository Commercial Based Product that: Stores information in a centralized repository Uses Xquery for access, manipulate and retrieve operations Searches and locates information with pinpoint accuracy Extensive full-text, structured, geospatial, and real-time search features Analyzes to understand and exploit what you have Built in indexes to speed analysis of data Delivers content to users in multiple contexts Send content to multiple devices and users

JUM - SOCOM SharePoint Integration 4/20/2017 JUM - SOCOM SharePoint Integration SOCOM SharePoint Connector Reduce the Code using SharePoint Workflow Reduce the Time not having to implement and get new code approve and utilize your current SharePoint users to generate the workflow. Reduce the Cost by utilizing current resources Joint Staff SharePoint Connector

Net-Centric Guidance 2002 2004 2006 2008 2010 ICD 501 8320 It is DoD policy that: 4.1. Data is an essential enabler of network-centric warfare (NCW) and shall be made visible, accessible, and understandable to any potential user in the Department of Defense as early as possible in the life cycle to support mission objectives. Net-Centric Guidance DoD CIO 3-in-1 memo ICD 501 DoD Net-Centric Services Strategy DoD IEA Net-Centric Data Strategy JROCM 010-08 8320.02-M XML Registration Memo DoD 8320.02G DoD Dir 8320.02 CJCSI 6212.01E CJCSI 6212 Wiki 8320 “It is DoD policy that: 4.1. Data is an essential enabler of network-centric warfare (NCW) and shall be made visible, accessible, and understandable to any potential user in the Department of Defense as early as possible in the life cycle to support mission objectives.” 2002 2004 2006 2008 2010 8320 “It is DoD policy that: 4.1. Data is an essential enabler of network-centric warfare (NCW) and shall be made visible, accessible, and understandable to any potential user in the Department of Defense as early as possible in the life cycle to support mission objectives.” 26