User Tools

Site Tools


security:addhealth

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
security:addhealth [2026/07/08 16:22] – [UCOP & UCI Policies] jnilssonsecurity:addhealth [2026/07/08 22:45] (current) jnilsson
Line 1: Line 1:
 ====== Add Health Data Security ====== ====== Add Health Data Security ======
  
-This page is designed to be used as a quick reference for the policies and restrictions that govern the access to and use of Add Health Restricted-Use Data that is hosted at University of California, Irvine. It does not cover the entirety of the Restricted-Use Data Hosting Agreement. Users are responsible for reviewing and adhering to all relevant agreements and policies.+This page is designed to be used as a reference for the policies and restrictions that govern the access to and use of Add Health Restricted-Use Data that is hosted at University of California, Irvine. It does not cover the entirety of the Restricted-Use Data Hosting Agreement. Users are responsible for reviewing and adhering to all relevant agreements and policies.
  
-The [[https://docs.google.com/document/d/177qbM7F9G-eqKAnX7I-f63O_pzfQMKbP55i8oVzc-uc/edit?usp=sharing|Privacy and Security Program]] maps our security controls to the high protection obligation level requirements as defined in the [[https://policies.unc.edu/TDClient/2833/Portal/KB/Article/131245/Information-Security-Controls-Standard|UNC Information Security Controls Standard]].+==== Privacy and Security Program ====
  
-===== UNC Policies =====+The Restricted-Use Data Hosting Agreement requires institutions to maintain a [[https://docs.google.com/document/d/177qbM7F9G-eqKAnX7I-f63O_pzfQMKbP55i8oVzc-uc/edit?usp=sharing|Privacy and Security Program]] which maps our security controls to the high protection obligation level requirements as defined in the [[https://policies.unc.edu/TDClient/2833/Portal/KB/Article/131245/Information-Security-Controls-Standard|UNC Information Security Controls Standard]].
  
-Below are links to the relevant UNC policies:+===== UNC Policies =====
  
   * [[https://addhealth.cpc.unc.edu/data/restricted-use-data/restricted-use-data-hosting-agreements/|Restricted-Use Data Hosting Agreement]]   * [[https://addhealth.cpc.unc.edu/data/restricted-use-data/restricted-use-data-hosting-agreements/|Restricted-Use Data Hosting Agreement]]
Line 49: Line 49:
   * Supporting UCI and UNC incident response activities.   * Supporting UCI and UNC incident response activities.
  
 +===== Onboarding procedure =====
 +
 +When a new user is confirmed and approved by the PI:
 +  - Notify System administrators, who will create the user account
 +  - Authentication can be configured for new user accounts one of two ways:
 +    - Provide an [[:howto:sshkey|SSH key]] to [[socit@uci.edu]]
 +    - Schedule an on-boarding meeting (virtual or in-person) during which a password and MFA token will be configured.
 +  - Accounts will be set to expire after 1 year. Annual confirmation of current active users is required to re-enable accounts.
 +
 +===== UCI Add Health server details =====
 +
 +^ Hostname | addhealth.socsci.uci.edu |
 +^ IP address | 128.195.247.155 |
 +^ Access Protocols | [[:howto:linux_basics#ssh|SSH]] |
 +^ Session timeout | 30 minutes |
 +
 +==== Firewall Restrictions: Allowed Network Access ====
 +
 +Only connections from on-campus or from the [[https://www.oit.uci.edu/services/security/vpn/|Cisco AnyConnect VPN]] will be allowed to connect to the server. If you are off-campus or on a UCI-WiFi network, you must first connect to the VPN before attempting to connect to the Add Health server.
 +
 +Firewall restrictions in place on the server only allow connections from these subnets:
 +^ Subnet name ^ CIDR ^
 +| Campus Network 128.195 | 128.195.0.0/16 |
 +| Campus Network 128.200 | 128.200.0.0/16 |
 +| VPN | 172.23.0.0/20 |
 +
 +
 +===== Maintenance and Backup Schedule =====
  
 +^ Maintenance/Security updates | Monthly, on the 1st Monday, 9am-11am |
 +^ Full System Backup | Weekly on Sunday |
 +^ Differential file-level backup | Nightly |
security/addhealth.1783527767.txt.gz · Last modified: 2026/07/08 16:22 by jnilsson