* Your assessment is very important for improving the workof artificial intelligence, which forms the content of this project
Download Possibilities for collaboration with Volkswagen
Cracking of wireless networks wikipedia , lookup
Wireless security wikipedia , lookup
Information security wikipedia , lookup
Deep packet inspection wikipedia , lookup
Access control wikipedia , lookup
Security-focused operating system wikipedia , lookup
Unix security wikipedia , lookup
Computer security wikipedia , lookup
Mobile security wikipedia , lookup
Possibilities for collaboration with Volkswagen and Audi unique or seldom data exchange only once or rarely, small data volume, asynchronous collaboration Type of contract Non-disclosure agreement Evaluation of information security Specified provider Regular data exchange, low up to high data volume, synchronous / asynchronous collaboration SimplX OFTP & OFTP2 OFTP2 CAx-dataexchange with HyperKVS commercial resp. EDI-data exchange CAx-dataexchange with HyperKVS SimplX SimplX Contract Contract CSN-Contract CSN-Contract X X X X*1 1 X* Internet Internet X X X permanent data exchange, high data volume, synchronous collaboration, integrated scope of development HyperKVS CONNECT X X Internet Internet X Access to applications within Audi- / Volkswagen Intranet ECA QTS Virtueller Client Secure i.do Client Citrix/WTS Sprungserver VW DMS Remote Graphics Secure Partner Client ePortal EngineeringPortal HyperKVS & CONNECT & HyperKVS & CSN-Contract CONNECT & CSN-Contract CSN-Contract CSN-Contract X X Access to special applications resp. Access to VW / Audi net X X X CSN-Contract CSN-Contract X X X X X X Secure VI Client Remote Access Remote Access Contract Contract X X X X X X *1special requirements operational services gmbh & Co. KG Automotive Desk Rudolf-Ehrlich-Str. 7 08058 Zwickau / Germany Phone +49 375 6061 9904 (international) Fax: +49 1805 23 12 55 [email protected] Name: Möglichkeiten Datenaustausch Version: 1.5 (23.03.2016) Status: released SimplX, OFTP & OFTP2 back to start SimplX With the solution SimplX for data exchange, CAx data could be exchanged once or rarely via Internet. SimplX provides you the possibility to upload and download CAx data. Please note: SimplX for Volkswagen/Audi is only possible, if your responsible contact person from Volkswagen/Audi confirms the cooperation with Volkswagen Group including Volkswagen AG, Audi AG, VW of America, VW China and VW Portugal. If your company works together with a contact person of another Volkswagen group company please get in touch with our Service Support Center. The Partner company can use any internet provider. The access for SimplX is granted for only one person. Access for a second person is possible only in justified exceptional cases. The following options for SimplX are available: SimplXS: · use for 30 days, only one-time · renewal not possible Preconditions: · valid non-disclosure agreement · VDA self-assessment SimplXL: · use for 1 year · renewal possible Preconditions: · valid non-disclosure agreement · proof of an adequate level of information security More information, terms and conditions you will find in contract documents for SimplXS and SimplXL for Volkswagen. OFTP2 With Odette File Transfer Protocol 2 (OFTP2) it is possible, to send and receive data encrypted via Internet between the supplier and Volkswagen/Audi. This protocol is recommended by VDA (association of the German automotive industry) too. Differently to OFTP1 it will be established a SSL/ TLS-encrypted TCP/IP connection. Each TCP/IP package will be encrypted. Files have only been encrypted if they were saved or routed from a provider. The OFTP2 certificate for TLS encryption is provided by the Odette organisation. Please note: OFTP2 or SimplX for Volkswagen/Audi are only possible, if your responsible contact partner from Volkswagen/Audi belongs to: - Volkswagen (PKW, Germany) Audi AG VW of America VW Portugal VW Polen VW Group China VW Slovakia Bugatti. If partner companies with contact person of other corporate groups need OFTP2 or SimplX please get in contact with our Service Support Center. operational services gmbh & Co. KG Automotive Desk Rudolf-Ehrlich-Str. 7 D-08058 Zwickau Phone +49 375 6061 9904 Fax: +49 1805 23 12 55 [email protected] Name: Möglichkeiten Datenaustausch Version: 1.5 (23.03.2016) Status: freigegeben HyperKVS, CONNECT and VW DMS back to start HyperKVS HyperKVS is an application for data exchange, for audit-proof storage and for file conversion of CAx data to the format that is needed. HyperKVS is used by all parties that are involved within the process of product creation. Due to the worldwide use by more than 1.900 suppliers and partner companies HyperKVS connects design engineers, methods engineers, purchasers as well as quality managers of the corporate group with their partner companies. With HyperKVS you have the possibility to save data directly to the platform, to link them to a design version and to make them available for the design engineer. Released data can be downloaded directly from HyperKVS. With HyperKVS you can view drawings on your screen. The drawing will be converted into tiff format. Normally the viewer „Imaging for Windows“ is sufficient. Besides the csn contract, the application contract KVS is necessary for using HyperKVS. If you want to use HyperKVS for VW and Audi, you have to conclude a CSN and KVS contract for each group. The prices for the second contract for CSN and KVS is reduced up to 50% compared to the first contract for CSN and KVS. For more technical details please see the document „contract KVS“ as well as the document „technische Informationen“. CONNECT The future-oriented concern product data management provides the technical and procedural solution for the modular building set strategy of VW. Since 2007 an integrated product data management system for vehicle projects and module developments for the involved concern brands, locations, business division and their external supplier has been used. The IT solution CONNECT which is specially configured for the concern based on the standard software Teamcenter from Siemens PLM. Different product data will be provided worldwide using a central database. Besides the CSN contract, the application contract CONNECT is necessary for using CONNECT. The service charge covers the synchronous collaboration at the data platform with Volkswagen and Audi, even if you exchange data to only one brand. For more technical details please see the document „contract CONNECT“ as well as the document „technische Informationen“. VW DMS Volkswagen DMS is the abbreviation for Document-Management-System as a central management system for an organized saving of files. Within the system documents will we saved confidential and structured. They will be centrally provided. On the basis of the given quality characteristics a high-grade search regarding the functional properties can take place. Documents can be shared easily with others and at the same time these documents are retrievable very fast due to full-text search. Besides the CSN contract, the application contract DMS is necessary for using VW DMS. operational services gmbh & Co. KG Automotive Desk Rudolf-Ehrlich-Str. 7 D-08058 Zwickau Phone +49 375 6061 9904 Fax: +49 1805 23 12 55 [email protected] Name: Möglichkeiten Datenaustausch Version: 1.5 (23.03.2016) Status: freigegeben back to start Information other services and applications QTS Quality assurance component tracking system: QTS online serves in particular to improve communications and the exchange of information between AUDI AG and its partners. QTS creates transparency about defective parts and complaints, from the dealer through to the supplier and improves availability of information by means of direct access to various communication-capable IT platforms. Reduced administration and tax costs as a result of the online provision of centralised Audi data to decentralised partner systems. Citrix/WTS Sprungserver Volkswagen ePortal Audi Enterprise 2.0 – Plattform Citrix server for access to several systems within the intranet of VW / Audi. Separate activation and appliation processes are necessary. Volkswagen AG runs an e2e platform within the intranet for variant applications in different security zones. Internal and external development partners have access to a worldwide and consistent communication and integration platform. The access to existing backend systems as well as data exchange between applications takes place via standardized gateways of the e2e platform. Audi Engineering Portal is replaced by Audi Enterprise 2.0 platform as central platform for communication and applications in the development process: Efficient and effective networking of internal and external developers in compliance with the security standards of AUDI AG. Central provider of news and relevant information on processes and CAx-methods in vehicle development Applications. Central access to applications in the following fields: · · · · ECA CAE (CAE-Bench2, FlowGuide, LoCo) CAT (FzgSi-Datentransfer) Project management (ChESS) Collaboration (Projekt-Raum, Wiki, Jira) ECA means Engineering Center Aggregate. ECA is a windchill database adapted to the demands of the aggregate development for the administration of CAD data, parts and parts lists. operational services gmbh & Co. KG Automotive Desk Rudolf-Ehrlich-Str. 7 D-08058 Zwickau Phone +49 375 6061 9904 Fax: +49 1805 23 12 55 [email protected] Name: Möglichkeiten Datenaustausch Version: 1.5 (23.03.2016) Status: freigegeben back to start Secure i.do Client Secure i.do Client The solution is used for stationary connection of external partners to the VW intranet from the partner's own and approved premises in the Wolfsburg region. Work using the Volkswagen i.do clients is to be carried out on the Secure Remote Access Network (Secure RAN). The Volkswagen intranet is accessed transparently by the user, in other words, the user can access all required applications in accordance with the access rights granted. The technical connection is handled by a certified provider. A typical deployment scenario is the provision of support and development services on VW IT systems located in the VW network. The product comprises technical, organizational and process-related components. Technical responsibility (TKF) lies with WAN / Security Planning (K-SION/1) and is coordinated with the IT Security Organization (K-SIS/G1) and Volkswagen Corporate Security (K-SK). The product can be used in the Wolfsburg region as well as in Gifhorn and Braunschweig. VW information with maximum confidentiality status is collected, processed or saved in accordance with the IT security requirement classification for external partners. The data classification of VW information is performed by the customer. The technical product attributes imposes the following additional requirements with respect to the working environment for activities as part of the contractual relationship with Volkswagen AG. · · · · · · · · · · · · The users in the partner company are the company's own internal permanent employees. In particular, no loan and temporary staff or subcontractors are deployed. All users are managed in a room reservation plan with reference to the workplace (room/ network socket) and the terminal used. Only authorized personnel as set out in the room reservation plan have access to the working environment. Within the working environment, users exclusively perform activities within the framework of the contractual relationship with Volkswagen. If users are absent from their workplaces, they have to remove the authorization objects (PKI card or similar) provided to them for performing their activities from the working environment and from the terminal and personally hold them in safe keeping. The commissioning department and/or corporate security at Volkswagen AG receives unrestricted, authorized access to the premises as well as access to the equipment; also for the purpose of forensic examinations including deputizing arrangements. Users may not perform user and authorization management in the working environment, such as for systems handling with confidential and secret data. Hardware is to be used exclusively within the framework of Volkswagen orders via the remote connection in the working environment only. Only the remote solution clients may be used in the working environment. If the working environment is not located within a confidential zone, external protection must be ensured. The service is performed in approved rooms located within a confidential zone. The qualification and suitability of employees in relation to handling confidential data must be ensured as part of the HR process. Additional information can be found in the Product information sheet, technical information and security requirements of the product Secure Partner Client. operational services gmbh & Co. KG Automotive Desk Rudolf-Ehrlich-Str. 7 D-08058 Zwickau Phone +49 375 6061 9904 Fax: +49 1805 23 12 55 [email protected] Name: Möglichkeiten Datenaustausch Version: 1.5 (23.03.2016) Status: freigegeben back to start Secure Partner Client Secure Partner Client The solution is used for the stationary connection of external partners to the VW intranet from the partner's own and approved premises. Work using partner company clients is to be carried out on the Volkswagen Partner Access Network (PAN). Dedicated access is provided to the Volkswagen intranet, in other words, the user can access selected applications using the access rights granted. Access to the VW network drives is technically not possible. The technical connection is handled by a certified provider. A typical deployment scenario is the provision of support and development services on VW IT systems located in the VW network. The product comprises technical, organizational and process-related components. Technical responsibility (TKF) lies with WAN / Security Planning (K-SION/1) and is coordinated with the IT Security Organization (K-SIS/G1) and Volkswagen Corporate Security (K-SK). The product can be used worldwide. VW information with maximum confidentiality status is collected, processed or saved in accordance with the IT security requirement classification for external partners. The data classification of VW information is performed by the customer. The technical product attributes imposes the following additional requirements with respect to the working environment for activities as part of the contractual relationship with Volkswagen AG. · · · · · · · · · · · The users in the partner company are the company's own internal permanent employees. In particular, no contract and short-term staff or subcontractors are deployed. All users are managed in a room reservation plan with reference to the workplace (room/ network socket) and the terminal used. Only authorized personnel as set out in the room reservation plan have access to the working environment. Within the working environment, users exclusively perform activities within the framework of the contractual relationship with Volkswagen. If users are absent from their workplaces, they have to remove the authorization objects (PKI card or similar) provided to them for performing their activities from the working environment and from the terminal and personally hold them in safe keeping. Users may not perform user and authorization management in the working environment, such as for systems handling with confidential and secret data. Access to VW network drives is not possible. Partner hardware is to be used exclusively within the framework of Volkswagen orders via the remote connection in the working environment only. Only the remote solution clients may be used in the working environment. If the working environment is not located within a confidential zone, external protection must be ensured. The qualification and suitability of employees in relation to handling confidential data must be ensured as part of the HR process. Additional information can be found in the Product information sheet, technical information and security requirements of the product Secure Partner Client. operational services gmbh & Co. KG Automotive Desk Rudolf-Ehrlich-Str. 7 D-08058 Zwickau Phone +49 375 6061 9904 Fax: +49 1805 23 12 55 [email protected] Name: Möglichkeiten Datenaustausch Version: 1.5 (23.03.2016) Status: freigegeben back to start Secure VI Client Secure VI Client The solution is used to connect external partners to the VW intranet. Partner company clients are to be used which access virtualized Volkswagen i.do clients via the Volkswagen Partner Access Network (PAN). The Volkswagen intranet is accessed transparently by the user, in other words, the user can access all required applications in accordance with the access rights granted. VW network drives can be accessed as part of executing the order. The technical connection is handled by a certified provider. A typical deployment scenario is the provision of support and development services on VW IT systems located on the VW intranet. The product comprises technical, organizational and process-related components. Technical responsibility (TKF) lies with WAN / Security Planning (K-SION/1) and is coordinated with the IT Security Organization (K-SIS/G1) and Volkswagen Corporate Security (K-SK). The product can be used worldwide. Volkswagen information with maximum confidentiality status is collected, processed or saved in accordance with the IT security requirement classification for external partners. The data classification of Volkswagen information is performed by the customer. The technical product attributes imposes the following additional requirements with respect to the working environment for activities as part of the contractual relationship with Volkswagen AG. · Usage is at own discretion within the approved premises. · If users are absent from their workplaces, they have to remove the authorization objects (PKI card or similar) provided to them for performing their activities from the working environment and from the terminal and personally hold them in safe keeping. · Users may not perform user and authorization management in the working environment, such as for systems handling with confidential and secret data. Additional information can be found in the Product information sheet, technical information and security requirements of the product Secure Partner Client. operational services gmbh & Co. KG Automotive Desk Rudolf-Ehrlich-Str. 7 D-08058 Zwickau Phone +49 375 6061 9904 Fax: +49 1805 23 12 55 [email protected] Name: Möglichkeiten Datenaustausch Version: 1.5 (23.03.2016) Status: freigegeben back to start Virtueller Client Virtueller Client The solution is used by external partner companies for access to the Audi-Intranet. Based on use of partner clients virtual Audi-clients are accessible via Audi Partner Access Network (internal access). Due to the transparent access to the Audi-Intranet all necessary applications are visible for the user in accordance with the access rights have been given. This technical connection is provided by certified providers. Typical application fields are support and development of Audi IT-systems within the Audi-Intranet. Remote Graphics Remote Graphics The solution is used by external partner companies for access to the Audi-Intranet. Based on use of partner company clients virtual Audi-clients for CAx-applications are accessible via Audi Partner Access Network (internal access). Due to the transparent access to the Audi-Intranet all necessary applications are visible for the user in accordance with the access rights have been given. This technical connection is provided by certified providers. Typical application field are development services with Audi CAx-systems within the Audi-Intranet. Additional information can be found in the user guide and user application form Remote Graphics. operational services gmbh & Co. KG Automotive Desk Rudolf-Ehrlich-Str. 7 D-08058 Zwickau Phone +49 375 6061 9904 Fax: +49 1805 23 12 55 [email protected] Name: Möglichkeiten Datenaustausch Version: 1.5 (23.03.2016) Status: freigegeben back to start Non-disclosure agreement and proof of information security Confidentiality agreement: For each legal company the existence of a confidentiality agreement with the particular brand is mandatory. That means if you want to exchange data with Volkswagen and Audi you have to conclude a confidentiality agreement with Volkswagen and a second one with Audi. All Volkswagen departments at Wolfsburg finalizes a corresponding agreement on own initiative with the process B2B-identity at the B2B platform. For more details please contact our Service Support Center. information security assessment: Proof of an appropriate level of information security is a basic precondition for technical connection to Volkswagen’s and/or Audi’s partner company network and for the provision of information. A partner company must provide proof of appropriate information security in the form of an assessment performed by an auditor. operational services GmbH & Co. KG (OS) carries out such assessments on behalf of the Volkswagen Group. Assessment of the information security of a partner company is only initiated by OS at the request of the Volkswagen Group as a rule. The assessment content varies depending on the approval(s) that is/are being aimed for and is specified jointly by OS and the Volkswagen Group on a binding basis. The aim of an information security assessment is to issue one or more approvals as per the assessment remit. Assessments are always carried out in a location and company-specific manner, the partner company’s DUNS No. is used to ensure unique identification. Various assessment methods are available to OS in order to assess information security at partner companies. It is mandatory that the decision as to which assessment method is used in a particular case is taken by the Volkswagen Group. The partner company is billed for OS’s services. This is based on the partner company and OS signing an information security assessment contract in which services and costs are stated accordingly. Additional information can be found in the service specification Information security for Partner companies. operational services gmbh & Co. KG Automotive Desk Rudolf-Ehrlich-Str. 7 D-08058 Zwickau Phone +49 375 6061 9904 Fax: +49 1805 23 12 55 [email protected] Name: Möglichkeiten Datenaustausch Version: 1.5 (23.03.2016) Status: freigegeben back to start Provider In order to exchange data with Volkswagen resp. Audi you need a network connection to the respective partner net . This technical connection is only possible via special VPNs resp. access technologies. Therefore a special portfolio was defined by Volkswagen and Audi. In most cases a separate provider contract is necessary. This contract will be concluded directly between the company that requires the access and the provider. In case of using particular applications an internet based VPN connection can be prepared without the need for a provider contract. An overview about the applications and services that need a specified provider you will find on page 1 of this document. Germany bidirectional communication (e.g. Printing Services ) outside Germany location unidirectional communication (e.g. QTS, KVS Web-access, Citrix) bidirectional communication (e.g. Printing Services ) application only VW and AUDI ENX (e.g. T-Systems) VPN (Vodafone) VPN Offnet (BT) SFV (WOBCOM , COM-IN) OEM VW, AUDI and other ENX (e.g. T-Systems) only VW and AUDI ENX (e.g. T-Systems) Internet-VPN VPN (Vodafone) VPN Offnet (BT) SFV (WOBCOM, COM-IN) unidirectional communication (e.g. QTS, KVS Web-access, Citrix) application OEM VW, AUDI and other ENX (e.g. T-Systems) only VW and AUDI ENX (e.g. T-Systems) ANX (as ENX Certified Service Provider) VPN Offnet (BT) OEM VW, AUDI and other ENX (e.g. T-Systems) ANX (as ENX Certified Service Provider) only VW and AUDI OEM ENX (e.g. T-Systems) ANX (as ENX Certified Service Provider) Internet-VPN VPN Offnet (BT) VW, AUDI and other ENX (e.g. T-Systems) ANX (as ENX Certified Service Provider) Hints: Please be aware of the limited regional availability of the provider WOBCOM and COM-IN Summary of network access types – technical requirements Network access is provided on the basis of the TCP/IP protocol. At the moment we offer the following connection types for the Volkswagen resp. Audi partner network: ENX European Network Exchange: the communication network for European automobile industry (e.g. operational services as service provider of T-Systems) ANX Automotive Network Exchange: Communication network of automobile industry in North America ENX-CSP (Certified Service Provider) VPN Virtual Private Network: network connection by provider Vodafone or BT. VPN Offnet Internet VPN SFV Network connection by provider BT (for partner companies outside Germany). The technical requirement for the Internet VPN connection is an internet access by any internet provider. At the moment this kind of network connection can only be used for unidirectional network traffic from the company to Volkswagen resp. Audi. leased line, standard fixed line, e.g. by Provider Vodafone, WOBCOM or COM-IN operational services gmbh & Co. KG Automotive Desk Rudolf-Ehrlich-Str. 7 D-08058 Zwickau Phone +49 375 6061 9904 Fax: +49 1805 23 12 55 [email protected] Name: Möglichkeiten Datenaustausch Version: 1.5 (23.03.2016) Status: freigegeben back to start Provider Access via ENX ENX (European Network Exchange) is the European automobile industry's communication network. It is operated as virtual private network on an IP basis. This connection is the favored one if you want to get access to the partner network of Volkswagen or Audi. ENX is the preferred solution for companies that set a high value on data encoding, in case of need for larger bandwidth or in case of communication with other OEM’s at the same time, that are using ENX too. ENX is offered with demand-actuated connection types (dial connect, ficed connect). For ENX registration please visit the webpage: http://www.enxo.com. Operational services is an integrated part of T-Systems, so you can mandate operational services for your ENX connection and your CSN network access at the same time. Thus you will have a competent partner for all questions regarding your access to the partner network of Volkswagen and Audi. ANX has met all the requirements and passed audit review by German TÜV Rheinland Group, which allows ANX to act as an ENX Certified Service Provider (CSP). operational services gmbh & Co. KG Automotive Desk Rudolf-Ehrlich-Str. 7 D-08058 Zwickau Phone +49 375 6061 9904 Fax: +49 1805 23 12 55 [email protected] Name: Möglichkeiten Datenaustausch Version: 1.5 (23.03.2016) Status: freigegeben back to start Provider Access via VPN, BT, SFV and Internet VPN Access via VPN VPN Company Net is a MPLS-based network providing an exclusive connection to the Partner Network of Volkswagen and Audi (contrary to ENX). Data exchange with other OEMs or engineering suppliers is not possible. VPN Company Net is offered by the external provider Vodafone. Several connection types based on ISDN and DSL are possible: VPN Company Dialog ISDN, bandwidth from 64kBit/s up to 128 kBit/s VPN Company Dialog ADSL flat and SDSL flat, typical DSL-bandwidths VPN Company Net Leased Line, bandwidth from 2 Mbit/s Access via BT BT is a leading provider of global communication services, offering a secure and scalable network connection to Volkswagen and Audi. For further information please see the separate BT information sheet. Access via leased line If two locations frequently communicate large volumes of information between each other, a leased line (fixed line) for transmitting data as well as voice and image information is a viable option. Such lines can be used 24h a day, are never busy and connect immediately. A fixed price is charged for their provision and is payable at the end of the agreed billing period. A standard fixed line is a special line type and marks a digital leased line offering bandwidths of 64 kBit to 34 Mbit. For the connection to the partner network of Volkswagen and Audi, following providers are considered: Company Net Leased Line by Vodafone WOBCOM (Volkswagen – Wolfsburg and surrounding countryside) COM-IN (connection to Audi and Volkswagen, Ingolstadt and surrounding countryside) Access via Internet VPN The technical requirement for the Internet VPN connection is an internet access by any internet provider. This can be setup via a Router (VPN pass-through must be enabled) or via a local internet access on the selected PC. For encryption the IPSec protocol is used together with a CA-certificate (trusted certificate authority) and a hardware-token with username and PIN for authentication. At the moment this kind of network connection can only be used for unidirectional network traffic from the company to the OEM (e.g. QTS, Host, Citrix, E-Portal and KVS Web-Access).The use of OFTP with this kind of network connection is not possible and therefore not approved. The price for this connection was firmly calculated and is charged per user. In case of using the InternetVPN connection a one-time charge for the Hardware-Token is due plus a monthly charge per user. The license model requires one hardware-token per user. For details please see document annex-2 CSN pricelist. Internet-VPN runs only with operating system Windows version Windows 7 or higher. Internet VPN can only be used within the company site that meets the requirements regarding information security and non-disclosure agreement of the Volkswagen group. The use of Internet VPN within any private area for example office at home requires a special permit. The compliance with requirements regarding information security and non-disclosure agreement of the Volkswagen group is also mandatory in this case. In case of need the company has to provide evidence on demand. operational services gmbh & Co. KG Automotive Desk Rudolf-Ehrlich-Str. 7 D-08058 Zwickau Phone +49 375 6061 9904 Fax: +49 1805 23 12 55 [email protected] Name: Möglichkeiten Datenaustausch Version: 1.5 (23.03.2016) Status: freigegeben