Single Window Systems
In the OIC Member States
83
Data layer:
Includes component types such as single data layer and Microsoft ® SQL
Server 2008 EE data tools components and Web services, encapsulating the
complexities of distributing data across SW.
The TULPAR IT architecture is not designed to avoid the loss of service (downtime) whether
planned or unplanned. This is due to lack of High Availability (HA) approach (the percentage of
the agreed service timeframe for which the component or service is available). The current ICT
Infrastructure is not providing the hardware / software clustering and virtualization services
in which the SW will effectively provide the required level of service. The virtualization is used
only for SW test and development environment.
The infrastructure is setup on dedicated hardware, which dramatically increases the cost to
expand the Infrastructure. The future plan is to combine the server clustering (N+1 spare node
failover) and virtualization services in order to utilize the maximum of the hardware
resources.
4.2.4.1.1
Centralized / Common Data Layer
The TULPAR operational data resides on a single database repository (MS SQL Server 2008).
This represents a high risk in case of non-responsive or locked database, and thus is
downgrading the performance and efficiencies of operations. There is also no separation of
operational and archive data (written off and expired certificates and licenses). The process of
archiving data should be automated and configured to periodically archive data to a data
warehouse system. The data warehouse (for backup and archiving) and clustering systems will
dramatically increase the performances of the SW System and simplify the restoration and
recovery of the operational database.
With regards to reporting and analysis services, the current setup of TULPAR produces
complex ICT administrative tasks. The reporting and analysis services are performed by
querying the operational database. The TULPAR application and enquiry systems are not
flexible; in case of minor changes or request for additional report and analysis would require
an enormous amount of administrative efforts.
Authentication and Authorization Services
The authentication service of the TUPLAR platform is based on the single sign-on protocol for
all provided services. The authentication combines the entry of user name and password for
registered users, and is not supporting strong password policy, or any additional
authentication mechanism (e.g. SMS or email validation). The authorization services are role-
based: The agencies have three levels of roles – operator (acceptance and validation of
structured and unstructured data set), officer (processing of requests) and director (decision
making level).




