Skip to main content
 
Constructing the New York State-Local Internet Gateway Prototype: A Technical View



Architecture and Infrastructure

Security

The Prototype’s user access control system increased user confidence in conducting G2G business using Internet technologies. Accounts and access rights to the Prototype and its applications were managed by a role-based access control system. Users logged into the system once using a single user name and password and were then able to access all appropriate applications. The Prototype used the roles to manage the applications available to individual users on their home pages.

While the Prototype was secure within the scope of the project, a production level State-Local Gateway would require much more attention to other areas of security such as financial transactions, data sets that have high security requirements, account maintenance, system availability, and client access. These different production level characteristics contain their own complex security requirements, which require careful planning, testing, policies, and deployment for continued ongoing operation.