Publishing Enterprise Mobile Services
About Network Rail
• We are a Private Company of 35,500 People • Revenue of around £6 billion per annum • Every Year We Support
• 1.46 Billion Passenger Journeys • 273,000 Freight Trains
• Future Demand
About Network Rail
• We Own & Run Britain’s Rail Infrastructure: • 20,000 Miles of Track
• 40,000 Bridges & Tunnels • 6,500 Level Crossings
• 22,000 Switches & Crossings • 8,200 Commercial Properties • 17 Major Stations
About Network Rail
• Network Rail are:
• UK’s Largest Private Landowner • UK’s 4th Largest TelCo
• Network Rail do not:
• Operate passenger or freight trains • Set passenger rail fares
Network Rail Corporate Structure
Asset
Management
Corporate Services
Network
Operations
Infrastructure
Projects
About Network Rail
Our role:
• A better railway for a better Britain • More reliable
• Greater capacity and efficiency • Safer
What is most important to Network Rail?
Two Disasters
•
Potters Bar (May 2002)
• Commuter train coach derailed at 97mph • 7 people killed
• 76 people injured
•
Lambrigg, Cumbria (February 2007)
• Virgin Pendelino derailed at 96mph • 1 person killed
The Investigation
• Caused by faulty Switch & Crossing Assets • Paper-based processes led to inaccurate
asset management information
• Paper-based audit trail led to inspections being missed
• Network Rail could not accurately locate similar infrastructure due to inadequate Switch & Crossing asset information
A new approach was needed
• Align information to business processes • Connect people to information
• Maintain accurate asset information • Leverage information to deliver service • Automate business processes
S&C Asset Data Verification
• Goal: To save lives by enabling proactive management of S&C assets
• Objective: Enable S&C inspection & return accurate data in 15-20 minutes • Deliver a Corporate Application Store
• Implement Mobile Device Management
• Develop the S&C FieldReach iPhone Application • Develop new Web interfaces to ABB Ellipse
• Deploy around 9,000 iPhones to track side staff
Architectural Principles
• Guiding Principles
• Flexible – not Rigid
• Sustainable – not Disposable
• Valuable to the Enterprise – not Locally • Resilient – not Fragile
• Open – not Restricted
• Governed – not a Consensus • Simple – not Complicated • Transparent – not Privileged
• All mobiles and tablets are treated as external Internet devices • Mobile devices are Corporately Owned, Personally Enabled
Why Forum Sentry?
• Support for all the protocols and data types required • HTTPS, SMTP, SFTP, JMS, JBOSS, XML
• Weblogic, WebSphere MQ etc.
• Security capabilities exceeded the competition • Layer 4-7 Inspection & Validation
• Encryption & PKI
• Transaction Auditing
• Integration with ADFS, SAML, OAM, SiteMinder, RSA • Cost around 50% of competitive solutions
A Solution Overview
Malware Scanning Source Validation Web Services Web Services Apple iPhone PKI S&C Data Verification Applicaton ABB Ellipse Forum Sentry WebSphere Application Server Schema Validation EncryptionThe Implementation Experience
• Sentry devices configuration & deployment within 5 days (elapsed) • Agile multi-party solution development & testing took about 3 weeks
• We found a ForumOSTM bug where Sentry converted a GET request to POST
• Reported to Forum Support & within 1 day issue had been replicated • Within 3 days an unsupported fix had been returned for testing
S&C Asset Data Verification Result
• Go-Live completed on schedule in July 2012 • Penetration test showed zero vulnerabilities • No service incidents since launch in July 2012 • 22,000 inspections completed by December 2012 • Inspection and data input takes 15-20 minutes • Service is used to process 70,000 work orders p.a.
Ongoing Journey with Forum Sentry
• Now: Mobility Integration Gateway
• Mobile Enterprise Application Platform • Now: Identity Federation
• Active Directory Federation • Oracle Access Manager • X509 Certificates
Mobile Services Architecture
Malware Scanning Authentication & Identity Federation LDAP SAML Multi-Protocol Web Services Smart Phone 3rd Party Directory Services PKI etc App2 App3 App1 MEAP SOA Transactional Systems Directory Services Forum Sentry WebSphere Message Broker Master Data Management Websphere MQ Oracle BPM Real-Time Data Feeds Schema Validation EncryptionThe Gateway to Network Rail
• Forum Sentry will act as the gateway for all industry-specific mobile services • Integration to SOA architecture & BPM
• Enable IT services for track-side staff
• Advance the technology enabled railway
• Forum Sentry will be used to replace 3 different systems for B2B data feeds • Push & Pull services from Enterprise Service Bus
• Enhanced security for critical transactions with industry partners