Identity Cloud service instance management

This page presents a RACI matrix of the roles and responsibilities of different parties.

Legend

KeyDefinitionExplanation
RResponsibleThose who do the work to achieve the task.
AAccountableThe one ultimately answerable for the correct and thorough completion of the deliverable or task, and the one who delegates the work to those Responsible.
CConsultedThose whose opinions are sought, typically subject matter experts; and with whom there is two-way communication.
IInformedThose who are kept up-to-date on progress, often only on completion of the task or deliverable; and with whom there is just one-way communication.


Responsibility assignment matrix

FunctionCustomer operationsCustomer managed DNS (operations)Customer managed PKI digital certificates (operations)

Customer transition team
and/or integrator

Ubisecure Sales EngineeringUbisecure SupportUbisecure OperationsUbisecure DevOps









Customer information

  • Technical contacts
  • Authorized network source addresses
  • Customer network security
  • SSH keys
R / C

RAIIC - Special requirements or questions

Customer information

  • Domain names
  • Mail server (SPF, DKIM, DMARC, etc.)
R / C

R - Customer managed DNS


RAI

R - Ubisecure managed DNS

C - Special requirements or questions

Digital certificate management

  • Choosing a Certificate Authority (CA)
  • Generating a private key
  • Certificate Signing Request (CSR)
  • Obtaining the certificate from the CA
  • All the above for certificate renewals
  • Revocations
A - Customer managed DNS

R - Customer managed DNS

A / CCC

R - Ubisecure managed DNS

I

C

Digital certificate deployment to the Identity Cloud service instance

  • TLS, OCSP, HSTS, DH parameters, etc.
A
CAC
RC

Ubisecure provided information

  • Service endpoints
  • Access credentials
  • Documentation site
I

IAIR

Cost allocation codes

  • Customer Account
  • Service Agreement ID (SAID)
I

IAIR

Authorized network source address changes implementation to the Identity Cloud service instance

I

I
IR

Service instance provisioning

  • Ubisecure managed configuration
  • Custom CMDB initialization (default)
I

IAIRC

Control Desk and custom configuration database initialization

  • Custom CMDB creation
  • Custom jobs creation
  • Custom job notification list management
  • Implementing user management as requested by the customer
I

I(C)IRC

Custom configuration (in the custom CMDB)

  • Identity Server customization
  • Requesting custom CMDB user management actions
I (R)

RCC
C - Special requirements or questions

Control Desk operation

  • Custom configuration updates
  • Service instance restart
  • Custom web application re-deployment

Requesting Control Desk user management actions

R

R
C
C

Service instance logs access

  • SSH access to monitor server
R

R
C

Application integrationsI (R)

RCC
C - Automation support
Identity Cloud monitoring and alarmsI

I
I / RA / RC
Customer application monitoring and alarmsA / R

CIII
Maintenance window scheduling

R - Customer planned maintenance

I



I(I)I

R - Ubisecure planned maintenance

I