State of Wisconsin DET File Transfer Protocol (FTP) Roles and Responsibilities



Similar documents
State of Wisconsin DET File Transfer Protocol Service Offering Definition (FTP & SFTP)

State of Wisconsin Database Hosting Services Roles and Responsibilities

State of Wisconsin. Virtual Private Network (VPN) Roles and Responsibilities

Administering the Web Server (IIS) Role of Windows Server

Administering the Web Server (IIS) Role of Windows Server 10972B; 5 Days

Outline SSS Configuring and Troubleshooting Windows Server 2008 Active Directory

10972-Administering the Web Server (IIS) Role of Windows Server

Entrust IdentityGuard Comprehensive

Implementing and Administering Security in a Microsoft Windows Server 2003 Network

10972B: Administering the Web Server (IIS) Role of Windows Server

USER GUIDE. Lightweight Directory Access Protocol (LDAP) Schoolwires Centricity

CTS2134 Introduction to Networking. Module Network Security

How To Control Vcloud Air From A Microsoft Vcloud (Vcloud)

Secure Data Transfer

State of Wisconsin. Active Directory (AD) Service Offering Definition (SOD)

MCSE SYLLABUS. Exam : Managing and Maintaining a Microsoft Windows Server 2003:

Course: Configuring and Troubleshooting Windows Server 2008 Active Direct-ory Domain Services

M6425a Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services

Exhibit B5b South Dakota. Vendor Questions COTS Software Set

shortcut Tap into learning NOW! Visit for a complete list of Short Cuts. Your Short Cut to Knowledge

HTTP connections can use transport-layer security (SSL or its successor, TLS) to provide data integrity

Upgrade Guide BES12. Version 12.1

Course: 10174B: Configuring and Administering Microsoft SharePoint 2010

How To Use Egnyte

Outline SSC Configuring and Troubleshooting Windows Server 2008 Active Directory

APPENDIX G ASP/SaaS SECURITY ASSESSMENT CHECKLIST

Security IIS Service Lesson 6

MICROSOFT CERTIFIED SYSTEMS ENGINEER Windows 2003 Track

Business Internet service from Bell User Guide

1. How do I access my VPS control panel?

Tk20 Backup Procedure

Question Name C 1.1 Do all users and administrators have a unique ID and password? Yes

Designing a Windows Server 2008 Applications Infrastructure

Information Technology Engineers Examination. Network Specialist Examination. (Level 4) Syllabus. Details of Knowledge and Skills Required for

ASX SFTP External User Guide

How To Backup In Cisco Uk Central And Cisco Cusd (Cisco) Cusm (Custodian) (Cusd) (Uk) (Usd).Com) (Ucs) (Cyse

Configuring and Administering Microsoft SharePoint 2010

Table of Contents. Introduction. Audience. At Course Completion

Passing PCI Compliance How to Address the Application Security Mandates

CTERA Agent for Mac OS-X

COMPLETE COMPUTING, INC.

MCSA Security + Certification Program

MS 10972A Administering the Web Server (IIS) Role of Windows Server

ensure prompt restart of critical applications and business activities in a timely manner following an emergency or disaster

March

MS Configuring, Managing and Troubleshooting Microsoft Exchange Server 2010

SonicWALL PCI 1.1 Implementation Guide

Linux VPS with cpanel. Getting Started Guide

MCSA Objectives. Exam : TS:Exchange Server 2007, Configuring

Microsoft Administering the Web Server (IIS) Role of Windows Server

ITPS AG. Aplication overview. DIGITAL RESEARCH & DEVELOPMENT SQL Informational Management System. SQL Informational Management System 1

Setting Up Scan to SMB on TaskALFA series MFP s.

Table Of Contents. - Microsoft Windows - WINDOWS XP - IMPLEMENTING & SUPPORTING MICROSOFT WINDOWS XP PROFESSIONAL...10

ManageEngine EventLog Analyzer. Best Practices Document

Build Your Knowledge!

Deploying and Managing a Public Key Infrastructure

ManageEngine EventLog Analyzer. Best Practices Document

Module 5 Introduction to Processes and Controls

ShareFile Security Overview

Security. TestOut Modules

How Managed File Transfer Addresses HIPAA Requirements for ephi

Configuring Advanced Windows Server 2012 Services 5 Days

Achieving PCI COMPLIANCE with the 2020 Audit & Control Suite.

Data Stored on a Windows Server Connected to a Network

Setup and Configuration Setup Assistant Migration Assistant System Preferences Configuration Profiles System Information

Administering the Web Server (IIS) Role of Windows Server

Course 10174B: Configuring and Administering Microsoft SharePoint 2010

DRAFT Standard Statement Encryption

McAfee Network Security Platform Administration Course

MCSA/MCITP: Enterprise Windows Server 2008 Course 9952; 14 Days, Instructor-led

DiamondStream Data Security Policy Summary

Initial Setup of Mac Mail with IMAP for OS X Lion

Configuring Advanced Windows Server 2012 Services

Configuring, Managing and Troubleshooting Microsoft Exchange Server 2010 Service Pack 2

IBX Business Network Platform Information Security Controls Document Classification [Public]

Course Active Directory Services with Windows Server

Cisco Application Networking Manager Version 2.0

Configuring, Managing and Troubleshooting Microsoft Exchange Server 2010 Service Pack 2

Configuring, Managing and Troubleshooting Microsoft Exchange Server 2010 Service Pack 2

Service Descriptions

Configure Backup Server for Cisco Unified Communications Manager

Backup and Restore with 3 rd Party Applications

CTERA Agent for Linux

Copyright 2012 Trend Micro Incorporated. All rights reserved.

How Reflection Software Facilitates PCI DSS Compliance

Capture Pro Software FTP Server Output Format

Active Directory Services with Windows Server 10969B; 5 days, Instructor-led

Tenrox. Single Sign-On (SSO) Setup Guide. January, Tenrox. All rights reserved.

Transcription:

State of Wisconsin DET File Transfer Protocol (FTP) oles and esponsibilities

Document evision History Date Version Creator Notes File Transfer Protocol & Page 2 6/20/2011

This document describes the DET File Transfer Protocol (FTP) Service roles and responsibilities as they are assigned to the DOA Division of Enterprise Technology (DET) and state agencies that subscribe to the service. FTP support falls under Application Hosting. Functions performed by DET consist of activities general to the management and well-being of the server(s) used to host the FTP daemons and related file stores. This includes operating system updates, security software installation and updates, updates to the FTP software, system monitoring and tuning, disaster recovery planning and related backup and recovery activities, high-level storage allocation and resource planning, and other activities which require administrator-level access to the operating system. Aside from the management of the server itself, DET also manages the creation, deletion, locking/unlocking, monitoring, and overall management of all FTP accounts (user ID and password), either stored within the FTP software or in Active Directory (AD). It will also be DET s responsibility to provide basic FTP usage reports, when requested by agencies. Agency staff members are responsible for managing the appropriate use of their FTP resources, notifying DET of any necessary account deletions, and security breaches involving the use and storage of account credentials. The installation, management, documentation, training, and use of FTP client software are the responsibility of each agency. In regards to additional security devices, such as Secure Socket Layer (SSL) certificates or Secure Shell (SSH) key pairs, DET will be responsible for creating, storing, managing, and distributing SSL certificates and SSH key pairs for sites defined in the FTP server. DET will also be responsible for creating, storing, managing, and distributing server signed SSL certificates, used by accounts. Individual SSH key pairs will be created, stored, managed, and distributed SSL by agency staff. Codes: C D E Administrative staff responsible for the activity Consulted about the activity esponsible through delegation Agency end user responsible for the activity Table 1. DET/Agency Co-Managed oles and esponsibilities esponsibility Category esponsibility DET Agency See Notes 1 Enterprise FTP FTP server configuration 2 Enterprise FTP FTP software installation and configuration 3 Enterprise FTP FTP software version updates and patch installation C 1 File Transfer Protocol & Page 3 6/20/2011

4 Enterprise FTP Create, maintain, and delete local FTP User IDs C 2 5 Enterprise FTP Create, maintain, and delete security groups used to assign authentication and authorization rights C 2, 3 6 Enterprise FTP Create, maintain, and delete IAM accounts for FTP access 2 Enterprise FTP Provision IAM account for FTP access 7 Enterprise FTP 8 Enterprise FTP Create and manage SSL certificate or SSH key pairs for use by FTP sites on the server Create and manage server signed client SSL certificates for use by agencies C 4 9 Enterprise FTP Create and manage SSH key pairs for use by agencies C 5 10 Enterprise FTP Provide on-call support for the FTP environment 11 Enterprise FTP Provide assistance in supporting agency users with FTP related problems, not related to FTP client use, training or education 12 Enterprise FTP 13 Enterprise FTP 14 Network Provide assistance in supporting agency users with SSL or SSH related problems. Procurement and annual subscription maintenance of necessary software licenses and technical support agreements Enable network communication between application servers and clients (e.g. firewall management) DET will ensure the agencies have access to the FTP service and will communicate any needed firewall or network configuration needed that the agencies must put in place to get the data back from the FTP service C 6 15 O/S Administration Manage OS directory structure 16 O/S Administration 17 Manage, maintain and troubleshoot server OS, patches, and hardware, including backups and restores C Performance Monitoring and Tuning Monitor system-level performance 18 Enterprise FTP Install and manage end user FTP client software 19 Enterprise FTP Train users and provide documentation on client FTP use Establish and maintain folder structure for FTP site (first three levels - root level, department level, and category 20 Enterprise FTP level) 21 Enterprise FTP Establish and maintain folder structure beyond first three levels. The first three levels of the FTP folder hierarchy are established by DET to logically organize data by agency and audience. Creation of any sub-folders can be specified by the agency or they may allow DET to create and name folders. C 7 22 Enterprise FTP Notes Provide FTP use and statistic reports by request (ad hoc reporting may incur additional fees) C Note How is this provided? 1 DET submits a change request which is published to agencies in regular communications 2 DET and agencies work together to craft accounts with the appropriate access to meet agency business needs File Transfer Protocol & Page 4 6/20/2011

3 Whenever AD account group membership is changed, the owning agency is notified 4 The agency is responsible for installing the client SSL certificate, after DET has created it 5 Agency must used predefined communication method to exchange client SSH public keys with DET 6 DET and agency must modify their respective firewalls to allow traffic DET makes the actual changes to permissions upon request from agency, whenever those permissions deviate from 7 normal permission inheritance File Transfer Protocol & Page 5 6/20/2011