Enterprise SharePoint Service (ESPS) 17 August 2011 A Combat Support Agency

Defense Information Systems Agency
A Combat Support Agency
Enterprise SharePoint Service
(ESPS)
17 August 2011
Enterprise User Target State
A Combat Support Agency
“I can go anywhere in the DOD, login, and be productive.”
“My CAC works at any base I go to – I just
put it in a DoD computer and get an
account.”
“I never have to make up a username,
because its always the same everywhere
– NIPR & SIPR.”
• DoD Visitor
• Automatic account provisioning on
any NIPR computer
• Being installed on all DoD domain
controllers now
• NIPR (FY11) and SIPR (FY12)
• Enterprise Identity
• Persona Username, Display Name &
E-Mail Address (FY11)
• Enterprise Authentication and Access
Control (FY11)
Enterprise User
“I can always be sure people can find
me because there’s just one place to
enter my info.”
• Enterprise User Data
• Personnel Portal at DMDC (FY11)
• Enterprise Identity & Contact Data
Synchronization (FY11)
“Wherever I am, I can get to my email, files & content, use office apps
and find people.”
• Basic Web Services
• E-Mail (FY11)
• SharePoint (FY12)
• Office Web Applications (FY12)
• Directory Services (GAL & White Pages) (FY12)
• File Storage Service (MyStuff) (FY12)
• Content Management Service (FY12)
2
Service Offering
A Combat Support Agency
• SharePoint 2010 (Standard and Enterprise) is a
new service offering
– Standard – Basic features like document libraries, team
sites/calendar, task lists, blogs, & basic work flows
– Enterprise – Standard features + FAST search, Office
Web Apps, performance indicators, and 3rd party tools
– http://thecommunicator.co.cc/2010/05/03/sharepoint2010-feature-comparison-sharepoint-foundation-2010vs-sharepoint-2010-standardenterprise/
• NIPRNet and SIPRNet
• Current Status (NIPRNet only)
– Staging environment – Active
– Production environment – 31 Aug 2011
3
A Combat Support Agency
Enterprise SharePoint Service
(ESPS) Principles (1 of 2)
• Fits the NIST definition for Software as a Service (SaaS)
• Subscribers must have a valid client access license
(CAL) for the appropriate platform (Enterprise or
Standard)
• DISA will manage the multi-tenant environment for the
Department of Defense
• DoD Components will manage their own SP site
collections and content
• Not all customer requirements are appropriate for a
multi-tenant environment like the one that ESPS
provides
4
A Combat Support Agency
Enterprise SharePoint Service
(ESPS) Principles (2 of 2)
• 3rd party software for appropriate functionality is
included
• Subscribers may purchase optional applications,
such as Microsoft Project, which will be integrated
with the platform
• DISA accredits the system
• Subscribers agree to authenticate with the system
using the methodology and mechanisms provided
• Subscribers agree to keep their end user devices &
software current in order to be compatible with the
multi-tenant environment
5
Operational Concept
A Combat Support Agency
• SharePoint (SP) site collections are globally accessible
• SP site collections are provided by one of two CONUS SP instances
• The two CONUS SP instances provide COOP for one another
• Each site collection is active on only one SP instance at any given time
• Users may access either SP instance from the NIPRNet
• Users authenticate with a TLS session directly to SP instances using
their CAC
Initial Operating Capability (IOC)
Base/Post/Camp/Station
Access Point
NIPRNet
CONUS Region
Oklahoma City


Primary for Army
COOP for DISA & Others
Legend
Mechanicsburg


Primary for DISA &
Others
COOP for Army
Primary, active site
COOP, inactive site
6
Staging Environment
A Combat Support Agency
• Staging is required if customer has an existing
SharePoint implementation with content that needs
to be migrated
– Purpose – Provide a test environment for customer and
DISA
– Duration ~ 4 – 6 weeks depending on size of data
– Limited to ~ 50 users
– DECC Mechanicsburg responsible for migration to
production
– All custom applications to be tested in the staging
environment
7
Storage
A Combat Support Agency
• SharePoint is a collaboration platform and is not
intended to provide primary storage
– Other Enterprise services, such as the Cloud Based File
Storage (CBFS) and Enterprise content/records
management
8
service will provide more storage (expected in late FY12)
• Storage is one of the largest cost drivers
• ESPS is similar to commercial SharePoint service
offerings and includes 250 MB/user
– Each DoD Component may allocate the storage for their
organization across its site collections
– Additional storage can be purchased
8
Third Party Functionality
A Combat Support Agency
Functions
Intended Users

Remote BLOB storage

ESPS administrators

Provide selective restore functionality

ESPS administrators

Manage backups

ESPS administrators

Manage user access to site

collections

Respond to security incidents such as
spills

9
ESPS administrators
Site collection administrators


Workflow
Business Process Management


SP site administrators
End users



Data aggregation
Dashboards
Reporting


SP site administrators
End users
9
ESPS Functional Architecture
A Combat Support Agency
Core Services
 Support for all
Enterprise Services
EASF
User Facing
Infrastructure
Web Front End Servers
SP Application Servers
End User
Authorization &
Access
Control
Secure
Network
Access
3.9M persona-based
profiles from data in
the EASF
Subscribe to
Common Services
User
Profile
Remote BLOB
Storage
Centralized billing data
Web Front End Servers
ESPS Common Services
Managed
Metadata
Business
Connectivity
Services
Standard
DB Storage
Web
Analytics
Subscribe to
Common Services
FAST
Search Engine
Remote BLOB
Storage
Storage & Backups
Standard
Platform
OE Storage &
Backups
ESM Tools, including
System Monitoring &
Configuration
Management (SCOM)
User Facing
Infrastructure
ESPS Common Infrastructure
 Supports ESPS sites,
applications, and users
Database Clusters
Optional
Application Servers
Acceleration
& Caching
Data Replication
OE Storage &
Backups
SP Application Servers
 Office
Web
Apps
 CRM
 Project
 Others
Optional
Application Servers
Enterprise
Platform
10
Network Infrastructure
A Combat Support Agency
Stateful
Inspection
Firewalls
Zone 1
[DMZ Extension/Proxy Services]
Load
Balancers
Aggregation
Switch
Core Router
TM
ays
r
r
GA
Colo Switch
Legend
Zone 0
DIS
NC
Core Services
ESPS Common Infrastructure
ore
NIPRNet
User Facing Infrastructure
Scalable Elements
11
ESPS Topology
A Combat Support Agency
12