1. General

This Service Level Agreement (hereafter called SLA) is made between the customer, Satama service user, and the service provider, CSC - IT Center for Science Ltd., to cover the provision and support of the service as described hereafter. Amendments, comments and suggestions must be addressed using the communication channels defined in section Communication, reporting and escalation.

The service provider retains right to introduce changes to the infrastructure. If the Customer does not accept the changes, this service subscription can be terminated

2. Scope & description of the service

This SLA applies to Satama service.

Satama is a container registry that stores, manages, and secures container images and Helm charts. It provides role-based access control (RBAC), image vulnerability scanning, and content signing, ensuring a trusted supply chain for containerized workloads. Satama is based on open-source, cloud-native container registry called Harbor. Satama is running on top of Rahti and can be used by either web interface or command line. 

This service is provided under CSC's General Terms of Use for CSC's Services for Research and Education and CSC's Security Policy.

3. Service hours & exceptions

The service is designed to run continuously. However, the following exceptions apply:

4. Service components & dependencies

The service covered by this SLA is made up of the following (technical and logical) service components:

5. Support

Support to the services covered by the scope of this SLA are provided through CSC Service Desk channels and under CSC Service Desk policies: 

CSC Service Desk 
Operating hours: Mon-Fri (excluding Finnish public holidays), see CSC's contact information page 
Phone: +358 (0) 94 57 2821
E-Mail: servicedesk@csc.fi
Web page and contact form: https://research.csc.fi/support 
Response time target: Within Three Working Days

a. Incident handling

Disruptions to the agreed service functionality or quality will be handled according to an appropriate priority based on the impact and urgency of the incident. In this context, the following general priority guidelines apply:
1. Ensuring normal levels of security
2. Restoring normal service operation
Response and resolution times are provided as service level targets (see section 6).

b. Fulfillment of service requests

In addition to resolving incidents, the following standard service requests are defined and will be fulfilled through the defined support channels:

Response and fulfillment times are provided as service level targets (see section 6).

6. Service level targets

The Satama service adheres to the following targets specified in ..:  
Service level: A (Basic)
Service time / incident handling: P1 Weekdays 8.00-16.00
Availability: K1 95%

Availability is calculated by subtracting the service break time from the ideal availability during service time. This information is obtained from internal monitoring systems and defined as Customers' ability to

The Service Provider commits to inform the customer if this SLA is violated or a violation is anticipated. For this, email as a communication channel will be used. A Customer may contact the CSC Service Desk for the case of a possible SLA violation. The case will be analyzed internally and, if the violation is confirmed, CSC will inform the Customer about the reasons for the violation, planned mitigation actions and expected resolution time.

7. Limitations & constraints

The provisioning of the service under the agreed service level targets is subject to the following limitations and constraints:

8. Communication, reporting & escalation

a. General communication

The following contacts will be generally used for communications related to the service in the scope of this SLA:
Contact for the customer and user: servicedesk@csc.fi
Security incident reporting (CSC's Head of Security): security@csc.fi, +358 (0) 94 57 2253

b. Reporting

Service reports regarding availability will be available from the servicedesk by request. The information provided on requested Service Reports is limited to data availability and by data security and privacy constraints.

c. Escalation & complaints

For escalation and complaints, the defined service provider contact point shall be used, and the following rules apply:

  1. First contact shall be established, preferably by e-Mail, to Contact for Customers address (See section Communication, reporting and escalation) explaining the reason for the complaint with a sensible level of detail and clarity. Please also include, if possible, the following information:

    1. Name of the service
    2. Date and time of the events
    3. Usernames of affected users
    4. Channel to use on following communications (If other is preferred)
  2. CSC Service Desk will contact you back within three working days with the more information about the incident and which procedures are or will be adopted to minimize its impact.

9. Information security & data protection

CSC has approved a security policy and also follows security best practices. For CSC's customers, providers and staff there are detailed security guidelines. Many items in our security policies and guidelines refer to external compliance requirements. CSC has also procedures for risk and security management. For more information, please refer to the following page: https://www.csc.fi/security.

The handling of personal information on the Satama service will be described soon.

10. Additional responsibilities of the service provider

Additional responsibilities of the Provider are as follow:

11. Customer responsibilities

The Customer agrees to follow CSC's General Terms of Use for CSC's Services for Research and Education and CSC's Security Policy.

12. Review

There will be reviews of the service performance against service level targets and of this SLA at planned intervals according to the following rules:

13. Glossary of terms

For the purpose of this SLA, the following terms and definitions apply:

An extended list of term definitions adopted on this document can be found in FitSM-0: Overview and vocabulary document.

14. Attribution

This document is based on the FitSM SLA template which is shared under the Creative Commons Attribution 4.0 International License.