Scope
All faculty, staff, and students accessing data centers in TSRB, Coda 1306, Klaus, and CCB.
Definitions:
- OIT: Office of Information Technology
- USG: University System of Georgia
- TSO: Technology Services Organization
- DC: Datacenter
CoC Data Center Permitted Accesses
Access to COC DCs is restricted to “need only” which means there must be a valid reason to acquire access other than a role in the list.
Klaus Advanced Computing Building
Klaus has the additional restriction of no faculty or students apart from those working for TSO. No endpoints or servers should be installed here that would require open access to this DC.
DC accesses allowed
The following accesses are permitted in the Data centers:
- GT Police Department
- TSO employees and student workers
- Faculty with endpoints in the data center. Klaus is restricted
- Students authorized by faculty to access applicable endpoints in the Datacenter. Klaus restricted
- The Dean
- The Chief of Staff
- CoC Facilities employees only. No student workers
- GT Facilities employee that may require after hours or unattended access.
- OIT Network team for evening/weekend support as needed
- Other groups that are deemed by TSO leadership to require extended unattended access. Permanent groups require updates to documentation
Temporary Access
Temporary access may be needed for contractors or GT workers working on a short-term project in the Data centers. These projects would make escorts an unfeasible option due to various reasons. The temporary access start and end dates must be monitored to ensure it is removed in an acceptable window. The reason for temporary access must be documented as well. In the event a project goes longer than intended, then an extension with a new end date can be requested.
Access to TSO Endpoints
TSO maintains endpoints that provides services to the College. These endpoints, except for switches powering the cabinets, will be secured with different locking mechanisms to restrict non-TSO access.
Requesting DC Access
Access is provided by facilities but requires approval by TSO-designated personnel. This can be done by emailing building@cc.gatech.edu or tsrb-building@cc.gatech.edu. This will generate a RT ticket for tracking and discussions will be stored on the ticket for historical purposes.
DC Access Logs
Access to the DCs is controlled by GT keycards known as Buzzcards. Access Granted and Declined logs are centrally maintained by OIT and entered daily into the TSO RT system for review and historical tracking. In the event an affiliated space requires a physical key or a master key for the DC is used, those logs are stored by Traka and will be pulled as needed for investigation. Facilities track and monitor any assigned keys
DC Cameras
CoC data centers have cameras that always record. These cameras are maintained by GTPD, and recordings can be requested for investigation purposes.
Access Audits
Audits are performed at a minimum of annually to ensure access is still needed. This will include reaching out to managers and faculty members to verify. These discussions are to be stored historically for review and verification on request.
The access list will be reviewed quarterly for changes and validation that proper processes were followed.
Involuntary Terminations
Involuntary terminations require immediate revocation of access. Facilities or TSO should be notified immediately to ensure access is removed.
Links to More Information
- USG Information Technology Handbook: https://www.usg.edu/information_technology_services/it_handbook/
- GT Cybersecurity Policy: https://policylibrary.gatech.edu/information-technology/cyber-security-policy
- GT Incident Response Procedure: https://security.gatech.edu/incident-response/
- TSO helpdesk: https://support.cc.gatech.edu/