---
name: framework-financial-services-satellite-architecture-responsibilities
title: Satellite reference architecture shared responsibility model
description: In IBM Cloud, the responsibilities for deploying, operating, and securing products are shared between IBM and our customers. This IBM Cloud&reg; shared responsibility model is one of the most important things to understand when interpreting the control requirements of the IBM Cloud Framework for Financial Services. Here we dive deeper into this shared responsibility model for the Satellite reference architecture.
last-updated: 2024-10-09
---

> ## Documentation Index
> The table of contents for this documentation set is at https://cloud.ibm.com/docs/framework-financial-services?format=markdown
> The index for all IBM Cloud docs is at: https://cloud.ibm.com/docs/llms.txt
> Use these files to discover more information as needed.

# Satellite reference architecture shared responsibility model
{: #satellite-architecture-shared-responsibilities}

In IBM Cloud, the responsibilities for deploying, operating, and securing products are shared between IBM and our customers. This [IBM Cloud&reg; shared responsibility model](https://cloud.ibm.com/docs/overview?topic=overview-shared-responsibilities&format=markdown) is one of the most important things to understand when interpreting the control requirements of the IBM Cloud Framework for Financial Services. Here we dive deeper into this shared responsibility model for the [Satellite reference architecture](https://cloud.ibm.com/docs/framework-financial-services?topic=framework-financial-services-satellite-architecture-about&format=markdown).
{: shortdesc}

## Shared responsibilities for IBM Cloud products
{: #satellite-architecture-shared-responsibilities-roles}

All services that run in IBM Cloud as part of the Satellite reference architecture are considered [managed products](https://cloud.ibm.com/docs/overview?topic=overview-shared-responsibilities&format=markdown#managed-responsibilities) in the IBM Cloud shared responsibility model. Each of these products has their own [service-specific shared responsibilities](https://cloud.ibm.com/docs/framework-financial-services?topic=framework-financial-services-shared-responsibilities&format=markdown). 

Due to the hybrid nature of Satellite, there is a unique set of [Satellite-specific shared responsibilities](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown) for components that run in the on-premises Satellite location.

For all products, these responsibilities cut across the following five task areas, which intersect with the IBM Cloud Framework for Financial Services's [best practices and requirements](https://cloud.ibm.com/docs/framework-financial-services?topic=framework-financial-services-best-practices&format=markdown):

| Types of tasks | Description |
| - | - |
| [Incident and operations management](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#incident-and-ops) | Includes tasks such as monitoring, event management, high availability, problem determination, recovery, and full state backup and recovery.  |
| [Change management](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#change-management) | Includes tasks such as deployment, configuration, upgrades, patching, configuration changes, and deletion. |
| [Identity and access management](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#iam-responsibilities) | Includes tasks such as authentication, authorization, access control policies, and approving, granting, and revoking access. |
| [Security and regulation compliance](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#security-compliance) | Includes tasks such as security controls implementation and compliance certification. |
| [Disaster Recovery](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#disaster-recovery) | Includes tasks such as providing dependencies on disaster recovery sites, provision disaster recovery environments, data and configuration backup, replicating data and configuration to the disaster recovery environment, and failover on disaster events. |
{: summary="The rows are read from left to right. The first column is the title for the set of tasks. The next column describe the tasks."}
{: caption="Tasks areas in IBM Cloud shared responsibility model" caption-side="top"}

## Additional roles for shared responsibility matrix
{: #satellite-architecture-shared-responsibilities-roles}

The two-party view of responsibility doesn't adequately account for the broader set of roles (often represented by teams or even different companies) that need to collaborate to ensure that the overall solution provides a secure platform for workloads and data. In the following diagram and table, a broader set of roles is defined.

![Roles for Satellite reference architecture RACI matrix](../images/satellite-raci-roles/satellite_raci_roles_05_17_beta2.svg){: caption="Roles for Satellite reference architecture RACI matrix" caption-side="bottom"}

| Role | Description |
| - | - |
| Workload consumer | Line-of-business organization that uses the workload or represents the internal or external users of the workload.  |
| Workload provider | Client IT development and operations team responsible for developing, deploying, and managing the workload and user responsibility for the PaaS layer (for example, by providing updated operating system images or requesting worker node upgrades). |
| IBM Cloud on-premises PaaS provider | IBM Cloud development and operations teams responsible for the Satellite components deployed on-premises. Many supporting services, processes, and operations run in IBM Cloud. |
| On-premises IaaS / data center provider | Client IT operations and facilities teams responsible for the data center, networking, hardware, and virtualization that supports the on-premises PaaS and workload. |
| IBM Cloud IaaS / data center provider | IBM Cloud development and operations teams responsible for the direct Satellite management capabilities and supporting services that run in IBM Cloud. |
{: summary="The rows are read from left to right. The first column is the title for the role. The next columns describe the role."}
{: caption="Roles for deploying, managing, and operating all components of the Satellite reference architecture" caption-side="top"}



## Overview of shared responsibilities
{: #overview-by-resource}


Review the following table of who is responsible for particular cloud resources when using Satellite. In the table, "Shared" means that there is a shared responsibility between the workload provider and the IBM Cloud on-premises PaaS provider.

| Resource | [Incident and operations management](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#incident-and-ops) | [Change management](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#change-management) | [Identity and access management](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#iam-responsibilities) | [Security and regulation compliance](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#security-compliance) | [Disaster Recovery](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#disaster-recovery) |
| - | - | - | - | - | - |
| Client data | Workload provider | Workload provider | Workload provider | Workload provider | Workload provider |
| Application | Workload provider | Workload provider | Workload provider | Workload provider | Workload provider |
| Satellite Location | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#incident-and-ops) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#change-management) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#iam-responsibilities) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#security-compliance) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#disaster-recovery) |
| Satellite Host | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#incident-and-ops) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#change-management) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#iam-responsibilities) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#security-compliance) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#disaster-recovery) |
| Satellite Config | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#incident-and-ops) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#change-management) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#iam-responsibilities) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#security-compliance) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#disaster-recovery) |
| Satellite Link | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#incident-and-ops) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#change-management) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#iam-responsibilities) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#security-compliance) | [Workload provider](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#disaster-recovery) | 
| Satellite Storage | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#incident-and-ops) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#change-management) | [Workload provider](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#iam-responsibilities) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#security-compliance) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#disaster-recovery) |
| Satellite-enabled services | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#incident-and-ops) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#change-management) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#iam-responsibilities) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#security-compliance) | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#disaster-recovery) |
| Operating System | Workload provider | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#change-management) | Workload provider | [Shared](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#security-compliance) | Workload provider |
| Virtual and bare metal servers | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider |
| Virtual storage | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider |
| Virtual network | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider |
| Hypervisor | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider |
| Physical servers and memory | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider |
| Physical storage | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider |
| Physical network and devices | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider |
| Facilities and data centers | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider | On-prem IaaS / data center provider |
{: summary="The rows are read from left to right. The resource area of comparing responsibilities is in the first column. The next five columns describe whether you, IBM , or both have shared responsibilities for a particular area."}
{: caption="Overview of shared responsibilities." caption-side="top"}

## Satellite location control plane and workload clusters
{: #satellite-location-control-plane-workload-clusters}



The following table goes a level deeper and shows the shared responsibilities for the control plane worker nodes and your workload clusters in the Satellite location. In the table, "Shared" means that there is a shared responsibility between the workload provider and the IBM Cloud on-premises PaaS provider.


| Resource | Control plane worker nodes | Workload clusters |
| - | - | - |
| Client data | n/a | Workload provider |
| Application | Shared | Workload provider |
| Satellite Host | Shared | Shared |
| Satellite Config | Shared | n/a |
| Satellite Link | Shared [^tabletext-1] | n/a |
| Satellite Storage | Shared [^tabletext-2] | Shared [^tabletext-3] |
| Host networking | On-premises PaaS provider | Workload provider |
| Operating System | Shared [^tabletext-4] | Shared [^tabletext-5] |
| Virtual and bare metal servers | On-premises IaaS / data center provider | On-premises IaaS / data center provider |
| Virtual storage | On-premises IaaS / data center provider | On-premises IaaS / data center provider |
| Virtual network | On-premises IaaS / data center provider | On-premises IaaS / data center provider |
| Hypervisor | On-premises IaaS / data center provider | On-premises IaaS / data center provider |
| Physical servers and memory | On-premises IaaS / data center provider | On-premises IaaS / data center provider |
| Physical storage | On-premises IaaS / data center provider | On-premises IaaS / data center provider |
| Physical network and devices | On-premises IaaS / data center provider | On-premises IaaS / data center provider |
| Facilities and data centers | On-premises IaaS / data center provider | On-premises IaaS / data center provider |
{: summary="The rows are read from left to right. The resource area for comparing responsibilities in the Satellite location is in the first column. The next two columns describe whether you, IBM, or both have shared responsibilities for a particular area."}
{: caption="Overview of shared responsibilities in Satellite location." caption-side="top"}

[^tabletext-1]: Responsibility is shared, except that the workload provider is solely responsible for [Identity and access management](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#iam-responsibilities).

[^tabletext-2]: Responsibility is shared, except that the workload provider is solely responsible for [Change management](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#change-management) and [Security and regulation compliance](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#security-compliance).

[^tabletext-3]: Responsibility is shared, except that the workload provider is solely responsible for [Change management](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#change-management) and [Security and regulation compliance](https://cloud.ibm.com/docs/satellite?topic=satellite-responsibilities&format=markdown#security-compliance).

[^tabletext-4]: {{site.data.content.workload-provider-responsibilities-operating-system}}

[^tabletext-5]: {{site.data.content.workload-provider-responsibilities-operating-system}}

## Other on-premises components outside of the IBM Cloud Satellite location
{: #other-components}

The workload provider and on-premises IaaS / data center provider are solely responsible for edge plane, management plane, and other applications that you run in the on-premises environment outside of the Satellite location.

## Next steps
{: #next-steps}

- [Satellite architecture best practices](https://cloud.ibm.com/docs/framework-financial-services?topic=framework-financial-services-satellite-architecture-best-practices&format=markdown)