National architecture for digital services in Finland



Similar documents
VETUMA Electronic identification and signature service for citizens

TrustedX: eidas Platform

Server based signature service. Overview

Logout in Single Sign-on Systems

ELM Manages Identities of 4 Million Government Program Users with. Identity Server

Singapore s National Electronic Health Record

Building next generation consortium services. Part 3: The National Metadata Repository, Discovery Service Finna, and the New Library System

SERVICE ORIENTED ARCHITECTURE

TrustedX - PKI Authentication. Whitepaper

Egnyte Single Sign-On (SSO) Installation for OneLogin

National Library and Library Network in Finland - cooperation being the driving force of success

Cloud Fulfilment. Magento Integration Document. For API Version: 1.0. Document Version 1.0 June Cloud Fulfilment Magento Integration Version 1.

The Vetuma Service of the Finnish Public Administration SAML interface specification Version: 3.5

EDI legal aspects in Estonia

Building Digital Infrastructure - Finnish National Architecture for Digital Services Pauli Kartano Ministry of Finance, Public ICT

Technical Layer (Technical Interoperability) Information Layer (Information Interoperability. Business Layer (Business Process Interoperability)

NATIONAL EHEALTH ARCHITECTURE - FROM STRATEGY TO PRACTICE. Ministry of Social Affairs and Health, Finland

X-Road. egovernment interoperability framework

IBM. How can we support the requirement of creating dynamic, flexible and cost effective solution in the IAM area?

EHR Interoperability Framework Overview

Introduction to the SIF 3.0 Infrastructure: An Environment for Educational Data Exchange

Mitra Innovation Leverages WSO2's Open Source Middleware to Build BIM Exchange Platform

Government's Adoption of SOA and SOA Examples

State of Wisconsin Division of Enterprise Technology (DET) SharePoint 2010 Service Offering Definition (SOD)

A Summary of Principles of Enterprise Architecture of Public Entities

Axway API Portal. Putting APIs first for your developer ecosystem

The National Finnish Patient Record Archive & EMC Documentum-DMX-Centera solution Yves Mahieu EMEA Director Healthcare

How To Build A Connector On A Website (For A Nonprogrammer)

Sentinet for Windows Azure SENTINET

Entitlements Access Management for Software Developers

Re-Shaping Retail Integration. Changing retail landscape with Social-Mobile-Analytics-Cloud.

Protect Everything: Networks, Applications and Cloud Services

How to avoid building a data swamp

Cloudbuz at Glance. How to take control of your File Transfers!

White Paper November Technical Comparison of Perspectium Replicator vs Traditional Enterprise Service Buses

AAA for IMOS: Australian Access Federation & related components

Interoperability testing in Finland. Konstantin Hyppönen Summit on Interoperability (DK)

ENTERPRISE CONTENT MANAGEMENT. Trusted by Government Easy to Use Vast Scalability Flexible Deployment Automate Business Processes

Google Identity Services for work

RTS/X. Scalable Solution for Payment Processing Systems. Guiding Principles of the system architecture. Overview

Public Key Infrastructure for a Higher Education Environment

Network Identity. 1. Introduction. Kai Kang Helsinki University of Technology Networking Laboratory

D.I.M. allows different authentication procedures, from simple confirmation to electronic ID.

Configuration Guide - OneDesk to SalesForce Connector

Government Service Bus

Prof. Dr. Lutz Heuser SAP Research

PUR1311/19. Request for Information (RFI) Provision of an Enterprise Service Bus. to the. European Bank for Reconstruction and Development

Raytheon Oakley Systems

TREADING THE PATH THE PORTUGUESE ADMINISTRATIVE MODERNIZATION EXPERIENCE

Ensuring the Security of Your Company s Data & Identities. a best practices guide

SOA in the pan-canadian EHR

Tomáš Müller IT Architekt 21/04/2010 ČVUT FEL: SOA & Enterprise Service Bus IBM Corporation

Global eid Developments. Detlef Eckert Chief Security Advisor Microsoft Europe, Middle East, and Africa

Advanced SharePoint Tools to Enhance Project Management

Business Transformation for Application Providers

POTENTIAL DHH TECHNICAL ARCHITECTURE

FEDERAL MAIN GOVERNMENT

Architecture, Implementations, Integrations, and Technical Overview

A Holistic Framework for Enterprise Data Management DAMA NCR

ILM et Archivage Les solutions IBM

GEC4. Miami, Florida

Course Outline: Course 20489B: Developing Microsoft SharePoint Server 2013 Advanced Solutions

The Security Framework 4.1 Programming and Design

SAML-Based SSO Solution

National Patient Summary in Finland

The Jamcracker Enterprise CSB AppStore Unifying Cloud Services Delivery and Management for Enterprise IT

SAML-Based SSO Solution

SERVER CERTIFICATES OF THE VETUMA SERVICE

HOL9449 Access Management: Secure web, mobile and cloud access

Project Title: Judicial Branch Enterprise Document Management System RFP Number: FIN122210CK DMS TECHNICAL REQUIREMENTS

Trust and Dependability in Cloud Computing

Licia Florio Project Development Officer Identity Federations in Europe

About Me. Software Architect with ShapeBlue Specialise in. 3 rd party integrations and features in CloudStack

XpoLog Center Suite Data Sheet

API-Security Gateway Dirk Krafzig

MIT Tech Talk, May 2013 Justin Richer, The MITRE Corporation

SIF 3: A NEW BEGINNING

11.1. Performance Monitoring

FOR A PAPERLESS FUTURE. Petr DOLEJŠÍ Senior Solution Consultant SEFIRA Czech Republic

UW System Identity & Access Management (IAM) Recommended Strategic Roadmap

Interoperability Support systems Nationwide components (Estonia)

Developing Microsoft SharePoint Server 2013 Advanced Solutions MOC 20489

Requirements set for account holders and representatives of emissions trading accounts

The Role of Identity Enabled Web Services in Cloud Computing

NCSU SSO. Case Study

Protecting Official Records as Evidence in the Cloud Environment. Anne Thurston

ICT IN THE FINNISH SOCIAL SECURITY ADMINISTRATION

Only LDAP-synchronized users can access SAML SSO-enabled web applications. Local end users and applications users cannot access them.

Beyond the SOA/BPM frontiers Towards a complete open cooperative environment

SERVER CERTIFICATES OF THE VETUMA SERVICE

Towards an EXPAND Assessment Model for ehealth Interoperability Assets. Dipak Kalra on behalf of the EXPAND Consortium

Administering Jive Mobile Apps

Essential Elements of a Master Data Management Architecture

nexus Hybrid Access Gateway

Single Sign On. SSO & ID Management for Web and Mobile Applications

The Power of the Unica Marketing Platform

In ediscovery and Litigation Support Repositories MPeterson, June 2009

Service-Oriented Architecture and Software Engineering

Concepts and Architecture of the Grid. Summary of Grid 2, Chapter 4

Dropbox for Business. Secure file sharing, collaboration and cloud storage. G-Cloud Service Description

Transcription:

National architecture for digital services in Finland In a Nutshell Version 1.2 Population Register Centre 23.5.2016

Programme Producing Suomi.fi Services The National Architecture for Digital Services Programme Production use and development Schedule 9.6.2014-31.12.2017 Projects Suomi.fi Services for organizations Steering Ministry of Finance Roles and authorizations Service views Digital Authorizations Service Views Operation Population Register Centre Budget 100 million Data exchange layer Digital authentication Finnish Service Catalogue Data Exchange Layer e- Identification Other digitalization development Messaging

Background All projects are operating at full speed Several sub projects Positioning the Suomi.fi- services in the end- user s digital service process is presented below Coherent user experience Service discovery Authentication Digital service Roles and authorities Base register data Interaction Decision Suomi.fi Service Views Suomi.fi e- Identification Suomi.fi Digital Authorization Suomi.fi Data Exchange Layer Suomi.fi Messaging Suomi.fi Messaging Suomi.fi Finnish Service Catalogue Authorization Register Suomi.fi Service Views Suomi.fi Service Views Suomi.fi Service Views Administration Map Service

Suomi.fi Services For Citizens / Companies / Authorities Suomi.fi For service providers: - Single identity, many roles - Strong authentication - Services targeted for life events - Authorizations - Interaction and messaging My data Me As a citizen Representing a company As an official Other person Company Private services My messages Public services

Suomi.fi Services, Complete View Service Providers - Digital services - Systems - Registers - Authentication tools - e- Identification Service Views Open information - Service information,guides, maps etc. Services, content for authenticated users Own data Authority delegation Own messages Digital Authorizations suomi.fi enterprisefinland.fi official s view Messaging Communication, support - esuomi.fi during the programme - Public Service Info Support and management site - Common for all services - Management of services and data - Customer support for service providers Data Exchange Layer Finnish Service Catalogue

Digital Service Platform creates norms and enables transactions between service providers and users Service providers Digital Single Market Users (user groups) Service market on a certain field, e.g. social services E.g. parents E.g. the unemployed Organi- zation Company Authority Connectors / APIs / data User experience / User interface Integration Catalogue Service Views Data Exchange Layer e- Identifi- cation Digital Authori- zations Electronic signature Electronic letter of attorney Finnish Service Catalogue Messaging Time booking service Opendata.fi Data registers Event logs and analytics engine

Suomi.fi Digital Authorizations Enables acting on behalf of another person or a company.

Suomi.fi Digital Authorizations in Short Enabling online checking of a person s authority for making transactions on behalf of other persons or organizations, and giving these authorizations. Grandparents Children Katri 66 years Liisa Kumpulainen 35 Ossi 70 years Martta 72 Aarno 75 Matti Kumpulainen 37 Anni 7 Onni 2 Elias 16 Ex- wife Companies Accounting bureau Accountant Maija s Company Maija Matikainen 40 Entrepreneur Right to make transactions on behalf of another

Suomi.fi Digital Authorizations 1. Registry based checking of a person s authority for making transactions on behalf of other persons or organizations 2. Requesting and/or creating digital authorizations REQUEST? APPROVAL Authorizations Registry

Suomi.fi Service Views Citizen s and company s window to public services.

Suomi.fi Service Views 1. Digital Services easily accessible 2. Information about all service channels Suomi.fi Service Views 3. Own data in public services 4. Messages and interaction with public authorities Services Messages 5. Smart service guides My Data Service Views = Suomi.fi + EnterpriseFinland.fi Suomi.fi Finnish Service Catalogue

Service Views = National service for citizens, entrepreneurs and officials = Suomi.fi+EnterpriseFinland.fi The user can: in different roles, easily find public services (based on Finnish Service Catalogue) see their own data in several base registers receive push services, messages and documents (Messaging) from authorities according to their unique situation (life events) and official (register- based) digital profile authorize another person to act on their behalf. My data Service guides Finnish Service Catalogue Services Local service view (municipality's services) Messaging Digital services, single sign- on Service points and service map CMS and publishing processes ROLE 1 Citizen Entrepreneur Official TARGET GROUP 2 Employer, employee Student Unemployed Etc. Support and guidance Analytics, statistics Digital Authorizations

Suomi.fi Finnish Service Catalogue All necessary service data in one place.

Suomi.fi Finnish Service Catalogue A new base register with standardized metadata of Digital services Local service points Telephone services Includes open API for all information A new law will make it mandatory for all public service producers to manage the metadata descriptions of their services in this repository A critical component of Suomi.fi Service Views = an interoperable resource for service metadata

Suomi.fi Finnish Service Catalogue Suomi.fi Finnish Service Catalogue makes data easily accessible and makes it possible to produce service data at one go, as a part of the normal service production. Own service data Other service data Suomi.fi Finnish Service Catalogue Services and their channels defined in a uniform way Possible to utilize data in any digital service Suomi.fi Service Views Own digital service Other digital services

Suomi.fi Data Exchange Layer Unifying digital services and securely exchanging data.

Suomi.fi Data Exchange Layer in Short A standardized way to exchange data between organizations and the possibility to create secure service collections. Environ- ment Suomi.fi Data Exchange Layer Integration Catalogue Data exchange

Suomi.fi Data Exchange Layer Base registers Government services Municipalities services Private sector services Government network Municipalities networks ESB ESB Suomi.fi Data Exchange Layer ( X- Road in Finland ) Internet Service Views Citizens Companies Officials Finnish Service Catalogue e- Identification National service architecture for digital services Digital Authorizations API catalogue X- Road Admin Logs, reports, security

Suomi.fi e- Identification Replacement for Tunnistus.fi and Vetuma services.

Suomi.fi e- Identification Strong identification to public services Replaces current Vetuma and Tunnistus.fi services, incl. Centralized contracts and financing Provides Single Sign- on to all public services (SAML 2.0) Supports strong authentication using bank authentication (Tupas), mobile certificate and card authentication (HST) Eidas federation between EU- countries Browser based, scalable, secure, responsive and accessible (WCAG AA level audited)

How does it work? Suomi.fi e- Identification Digital Service Redirection for authentication Provides digital service Public organization Admin view Suomi.fi e- Identification Uses the selected authentication tools Main user User management etc. Management Technical Service management and configuration IT provider

Suomi.fi Messaging Straightforward interaction with public organizations.

Suomi.fi Messaging We enable digital messaging for the authorities regardless of the format the client prefers to receive alerts and messages. Suomi.fi Messaging is a centralized message operator for the authorities. It takes care of delivering the messages to the users in the user s preferred channel. My Messages section in Service Views is an own digital mailbox for citizens and companies representatives. It is produced with Suomi.fi Messaging, and will replace the current Asiointitili service.

More information and support material: www.esuomi.fi Beta version: beta.suomi.fi