Active Directory Federation Services (ADFS) in Production Project Charter. Version 1.2



Similar documents
Cloud Based and Collaboration Project Charter

Microsoft Premier Deployment. Office 365 Service Description

State Data Center Projects Steering Committee February 19, Jefferson, Rm 5229

Managing Office 365 Identities and Services 20346C; 5 Days, Instructor-led

Course 20346: Managing Office 365 Identities and Services

Managing Office 365 Identities and Services

Managing Office 365 Identities and Services

High Level Design. Forefront Identity Manager Global Address List Synchronization. Karen McLaughlin

Program Lifecycle Methodology Version 1.7

Based on this request, below is the current CHA Exchange environment:

Mod 2: User Management

Microsoft Active Directory Project

Encore Software Solutions (V3) Identity Lifecycle Management and Federated Security Suite (ILM/FSS) Overview and Technical Requirements

How To Write A Project Management Plan

Agenda. Federation using ADFS and Extensibility options. Office 365 Identity overview. Federation and Synchronization

Office 365 deployment checklists

2.1 Initiation Phase Overview

Statement of Work Office 365 Migration. Gateway Unified School District

SharePoint 2013 Project Charter

Centrify Cloud Connector Deployment Guide

Office 365 deploym. ployment checklists. Chapter 27

Project Planning Worksheet

Load Balancing Microsoft AD FS. Deployment Guide

OE PROJECT CHARTER TEMPLATE

Office 365. Migrating and Managing Your. Business in the Cloud. Matthew Katzer. Don Crawford

Cloud Based Device Management Using Enterprise Mobility Suite Production Pilot Service Definition Document

Project Team Roles Adapted for PAAMCO

Designing for Office 365 Infrastructure

PHASE 8: IMPLEMENTATION PHASE

Bill Fiddes Learning and Development Specialist Rob Latino Program Manager in Office 365 Support

Active Directory Infrastructure Design Document

VoteCal Statewide Voter Registration System Project. Master Project Management Plan. Version 1.2

Business Case Analysis for Office 365

Project Charter. UT Web Infrastructure Project Document Version 9.0 Prepared by John Lovelace & David Moss Last Edited March 13, 2012

PROJECT SCOPE STATEMENT

Helping Coyotes Catch Road Runners Since Project Alpha: Call Tracking System Upgrade

Microsoft Office365 with Active Directory Federated Services (ADFS) Authenticating Users Using SecurAccess Server by SecurEnvoy

Virtualized Disaster Recovery (VDR) Overview Detailed Description... 3

Identity and Access Management for the Hybrid Enterprise

Mod 3: Office 365 DirSync, Single Sign-On & ADFS

Drupal Foundation Project Charter

Big data variety, 179 velocity, 179 volume, 179 Blob storage containers

Designing for Office 365 Infrastructure

Integrating Single Sign-on Across the Cloud By David Strom

MNLARS Project Audit Checklist

Deployment Guide for Enterprises

ITRM Guideline CPM Date: January 23, 2006 SECTION 5 PROJECT CLOSEOUT PHASE

ITEC 495 V1WW (SU10) Team 1 Michael Wilson Craig Irwin Randy Haines Casey Jensen. Assignment 1-3-6: Project Write Up. Professor Wayne Smith

SPHOL300 Synchronizing Profile Pictures from On-Premises AD to SharePoint Online

Welcome to IBM SmartCloud Notes!

locuz.com Microsoft Practice Active Directory Services

Module: Sharepoint Administrator

Bridging the gap between local IT and Cloud services, keeping you in control

The Secret Mix of Successful GIS Project Management

SERVICES WORK ORDER. Effective date of this Work Order: Work Order Number:

Statement of Work. Catapult Systems. The Microsoft Consulting Co. May 6, This document was developed specifically far Williamson County.

F, G I, J, K. Line of Business Applications (LOB), 10 Lync, 107 Lync administration conferencing add-on configuration, 419 functions, 371 set up, 419

KEMP LoadMaster. Enabling Hybrid Cloud Solutions in Microsoft Azure

Crosswalk Between Current and New PMP Task Classifications

SECTION I PROJECT SUMMARY (TRW)

Department of Administration Portfolio Management System 1.3 June 30, 2010

Web Drive Limited TERMS AND CONDITIONS FOR THE SUPPLY OF SERVER HOSTING

MICROSOFT EXAM QUESTIONS & ANSWERS

Ondřej Výšek Sales Lead, Microsoft MVP.

Amazon.com, Inc. and its affiliates. All rights reserved.

Hybrid Architecture. Office 365. On-premises Exchange org (Exchange 2007+) Provisioned via DirSync. Secure Mail flow

User identity, Account Provisioning, Directory Synchronization, Federation

One Washington. Project Charter

Integrating Active Directory Federation Services (ADFS) with Office 365 through IaaS

INTEGRATE OFFICE 365 WITH ON-PREMISE ERP

Best Practices Statement Project Management. Best Practices for Managing State Information Technology Projects

Creating the Conceptual Design by Gathering and Analyzing Business and Technical Requirements

Using Exclaimer Signature Manager with Office 365

Identity. Provide. ...to Office 365 & Beyond

Outline SSS Configuring and Troubleshooting Windows Server 2008 Active Directory

Infrastructure solution Options for

SINGLE & SAME SIGN-ON ASPECTS

PMP Examination Tasks Puzzle game

Implementing Microsoft Azure Infrastructure Solutions

Company A Project Plan

Microsoft Infrastructure Assessment

COMMUNICATIONS & COLLABORATION. Ryan Lenger Scott Fuller. Isaac Podolefsky

This course is intended for IT professionals who are responsible for the Exchange Server messaging environment in an enterprise.

Transcription:

Active Directory Federation Services (ADFS) in Production Project Charter Version 1.2

Document Revision History Version Number Date Description 0.0 8-7-12 Initial charter from RonM 1.0 8-21-12 Updates based on feedback from group 1.1 8-30-12 Updates per project team 1.2 9-5-12 Added info about creating a service ADFS in Production Project Charter 10/16/2012 2 of 10

Table of Contents PROJECT STATEMENT... 4 BUSINESS DRIVERS/BACKGROUND... 4 GOAL STATEMENT... 5 OBJECTIVES... 5 SCOPE... 7 COST PROJECTION... 8 PROJECT ORGANIZATION... 9 PROJECT APPROACH... 9 ASSUMPTIONS AND CONSTRAINTS... 9 PERFORMANCE MEASURES/OUTCOMES... 10 ACCEPTANCE... 10 ADFS in Production Project Charter 10/16/2012 3 of 10

Project Statement The project team will design, implement and test the deployment of redundant Active Directory Federation Services (ADFS) components in the Production environment. This work will be completed by 11/30/2012. Business Drivers/Background In line with the OCIO strategic direction, the State of Washington is currently evaluating hosting several applications in the cloud and also deploying enterprise applications. It is desirable that state employees accessing cloud-based and enterprise applications be able to use their existing user accounts and passwords rather than having to maintain separate user accounts and passwords for each service. This is typically referred to as Single Sign On (SSO). Due to increasing interest in the SSO technology, it was decided that CTS should move forward with the production ADFS deployment although there is not currently a commitment for users to adopt it. Adding the ADFS infrastructure to the Enterprise Active Directory (EAD) environment will give application developers a method for using the state s EAD forest to authorize access into applications not in the EAD forest. The developers will need to make their applications claims aware. The core components that will be deployed are the ADFS proxies and ADFS servers. All servers will be fully redundant and disaster recoverable. ADFS in Production Project Charter 10/16/2012 4 of 10

Goal Statement A production-ready deployment of Active Directory Federation Services (ADFS) in the Enterprise Active Directory (EAD) forest. Objectives In support of the project goal, CTS will complete the following objectives: Develop all required project management documentation. Create a detailed ADFS Production Design. Install and configure Active Directory Federation Services (ADFS) servers in the production EAD environment per the detailed design. Configure proxy services for ADFS. Verify functionality using a claims aware application for verification of Single Sign On (SSO). Create the rate structure for customers to order the ADFS service upon completion. Create the on-boarding process for new customers Project Deliverables Project Phase Initiate Planning Execute Close Deliverable Project Registration Project Charter Project Plan Production Design Procurement of hardware and software Network installed and configured Load-balancers installed and configured Proxy solution installed and configured ADFS servers installed and configured Firewalls installed and configured ADFS software installed and configured to work with Sharepoint Sharepoint installed and configured to work with ADFS Rate structure and on-board process completed Post Implementation Review Complete project documentation ADFS in Production Project Charter 10/16/2012 5 of 10

High-Level Schedule Start Date: Completion Date Key Milestone Description 8/9/12 Project Kickoff The formal start of the project, make sure everyone (team, stakeholders) has a common understanding of the project and their roles. 8/9/12 8/14/12 Initiate Phase Complete The charter and required project management documents are complete and approved by management. 8/9/12 8/21/12 Production Design Approved The necessary groups have been consulted and approve the technical design. 8/22/12 9/28/12 Procurement Complete The necessary hardware, software, licensing and certificates have been ordered and received. 8/22/12 9/4/12 Install and configure Oly Network Complete 8/22/12 9/10/12 Install and configure Spo Network Complete The network configurations have been added in Olympia. The network configurations have been added in Spokane. 9/11/12 9/18/12 Firewall Configurations Complete The Firewall rules have been configured and implemented for ADFS. 9/11/12 10/8/12 Install Servers Complete The procured servers (VM & physical) have been racked, network connected, software loaded, and configured per the technical specifications. 10/9/12 10/22/12 Configure Proxy Solution Complete The agreed upon proxy solution is installed and configured to work with ADFS. 10/23/12 11/22/12 Configure ADFS The ADFS application is installed & configured on the necessary servers and configured to work with Sharepoint. 9/11/12 11/23/12 Rate Structure and On-board Process Complete The necessary cost center, and business components are customer ready. 11/23/12 11/30/12 Closeout Post Implementation Review (PIR) and sharepoint closeout are complete. ADFS in Production Project Charter 10/16/2012 6 of 10

Scope In Scope: The design, installation and configuration of ADFS for the production Enterprise Active Directory (EAD) to enable claims verification. A redundant ADFS infrastructure design and implementation in Olympia. An ADFS design and infrastructure capable of being manually recovered in Spokane in case of regional emergency. Configuration of the ADFS environment to communicate with the CTS sharepoint environment for test and verification of claims awareness. The development of a rate model and other activities related to standing up a new service. Out of Scope: The design, installation or configuration of any ADFS infrastructure to communicate with any other application except for CTS sharepoint. The Directory Synchronization (DirSync) components. The Exchange hybrid server components. External agency testing. (These will be handled as separate projects.) Modification to the pre-production environment. (Will be done in separate effort.) ADFS in Production Project Charter 10/16/2012 7 of 10

Cost Projection The total estimated cost of the project. One-Time Costs Monthly Costs Hardware (2 ADFS servers, 2 Proxy servers) $22,100 Software (6) Windows @ $463, (2) SCOM @ $275, (2) 2-year certificates @ $350 $4,050 Labor and Benefits $0 Admin $0 Training $0 Other (FTE Costs approx 420 hrs) $30,000 - VM costs (4 virtual servers and storage) $240 $1,007 - Firewall costs $250 $500 Overall Total $56,640 $1,507 Initiate / Planning Phase (30 hours) CSD PM, CSD Design Group, TSD Design Group, ESS Design Group: Create charter, Review / approve the conceptual design and detailed design. Execute Phase (370 hours) CSD PM, CSD Server Support, CSD Messaging Group, ESS Firewalls, ESS DNS, ESS Gateways, TSD EDN Group, NCC technicians: Install / Provision servers, configure network and load-balancers, configure Firewalls, Configure DNS, configure servers and software, Develop Service model Close-out Phase (20 hours) CSD PM, technicians: Post Implementation Review (PIR), update documents, closeout project ADFS in Production Project Charter 10/16/2012 8 of 10

Project Organization Roles and Responsibilities Roles and responsibilities assigned to each individual or group resource to the project. Executive Sponsor: Christy Ridout Provide overall guidance on project scope and direction. Sustaining Sponsors: Wendy Huff (CSD), Agnes Kirk (Security), Michael Martel (Network) Provide overall guidance and direction to staff in respective divisions. Project Sponsor: Lance Calisch Provide oversight of project. Create Rate and Service model Project Manager: Ron Mathews Oversee the project and coordinate all project work. Design Team: Karen McLaughlin, Joel Eussen, Matt Stevens, Paul Kramer, Aaron Robel Review proposed design to ensure that adherence to DIS strategic technology vision. Serve as resources to all teams in evaluating and proposing technical alternatives for resolving project issues. Serve as technical leads for the project. Project Support: Jay Knowlton, Donna Martin, Ken Joubert, David Salang, Brook Schurr, Joel Dalke Assist with design validation, implementation and testing. Assist with the creation and maintenance of technical documentation. Project Approach Project will be tracked using standard project management processes. Project Manager will conduct weekly status meeting with Project Team, Project Sponsor and any affected client agencies. Documentation will be maintained in both the CSD Sharepoint site and CTS shared drive. Assumptions and Constraints Assumptions: The necessary technical resources will be assigned for the project. There will be sufficient funding for infrastructure items. Constraints: ADFS in Production Project Charter 10/16/2012 9 of 10

Design and technical staff are redirected to critical operation issues and tasks. Performance Measures/Outcomes A completed production technical design that will provide a redundant, disaster recoverable environment. A working ADFS installation. A configuration that supports Sharepoint logon access through ADFS. Acceptance We, the undersigned project members, have reviewed this document and approve its contents: Name and Title Signature Date Christy Ridout Executive Sponsor Wendy Huff Sustaining Sponsor Agnes Kirk Sustaining Sponsor Bruce Shurtz Sustaining Sponsor Lance Calisch Project Sponsor Karen McLaughlin Design Team Jay Knowlton Project Support Ron Mathews Project Manager ADFS in Production Project Charter 10/16/2012 10 of 10