Web Application Firewall

This service may be used to create rules to protect web applications from unwanted web traffic, hacks, brute force attacks, cross-site scripting, SQL injection, and other common exploits. The WAF must also provide protection against the OWASP top ten risks.

VPN Gateway

This service may be used to establish secure site to site connectivity between the subnets in Siddhast environment and Government Organization’s on-premises IT infrastructure. It can also be used to provide site to site connectivity two different subnets within the CSP’s Cloud environment.

Public IP

This service can be used to assign Public IP(s) to resources within a subnet in the Cloud environment.

Storage Services

Storage Services

The Storage services can be defined in various categories Object Storage, File Storage, Block Storage, and Archival Storage. The Managed Storage Services is a storage infrastructure that is provisioned keeping the user needs in mind.

Service Scope
The Storage services can be defined in various categories Object Storage, File Storage, Block Storage, and Archival Storage. The Managed Storage Services is a storage infrastructure that is provisioned keeping the user needs in mind. The roles & responsibility of a SP include but are not limited to:-

· Scalable Storage Capacity is provisioned as per requirements and availability of resources
· The SATA / SAS / SSD disks shall be made available to the User Departments, meeting the iops requirement Guidelines for Service Providers Offering Cloud Services through Government e-Marketplace (GeM) Cloud Management Office Page 9 of 19
· The provisioning, configuration, management, maintenance and support of storage devices shall be done by the SP
· Create and Assign storage LUNs over the SAN to the managed server
· Any other activity associated with operations and management of Storage Services

Load Balancer

Load Balancer

Load balancer as a service has to act as a proxy and distributes networks of application traffic across a number of virtual servers. Virtual load balancer shall be capable to increase the capacity i.e. (concurrent users and reliability of the application across the virtual machines (VMs) ). The virtual server has to improve the overall performance of applications by decreasing the burden on virtual servers associated with managing and maintaining applications and network sessions as well as by performing application specific tasks.

Managed Database as a Service (Basic)

Managed Database as a Service (Basic)

Database as a Service is a managed service offering by the Cloud Service Providers wherein in operating system and all low level components such as drivers, I/O, network, etc. are managed and optimized by the Cloud Service Providers. All objects created using “Database as a Service” are transparent to the underlying operating system. Activities such as OS management, antivirus, encryption, hardening, etc. are included under this service. Automated failover, backup & recovery, isolation & security, scaling, automated patching, advanced monitoring, and routine maintenance are responsibilities of the CSP. Each database as a service will be offered by the Cloud Service Providers with a minimum storage inclusion of 50 GB HDD or 50 GB SSD. CSPs shall be required to provide a transparent view of the database activities managed by them

Basic Cloud Services (Load Balancer)

Basic Cloud Services,

Load Balancer

Load balancer as a service has to act as a proxy and distributes networks of application traffic across a number of virtual servers. Virtual load balancer shall be capable to increase the capacity i.e. (concurrent users and reliability of the application across the virtual machines (VMs) ). The virtual server has to improve the overall performance of applications by decreasing the burden on virtual servers associated with managing and maintaining applications and network sessions as well as by performing application specific tasks.

Product Lease Service

Product Lease Service

Product Lease Service is a Service  under which one party agrees to
rent a new product owned by another party. It guarantees the lessee,
use of the product and guarantees the lessor, regular payments from
the lessee for a specified number of months or years

It guarantees the lessee, use of the product and guarantees the
lessor, regular payments from the lessee for a specified number of
months or years

Following Items are leased by Siddhast

health Kiosk
computer workstation
diesel generators- DG Sets
Router
Layer 2 Access Switch
Layer 3 Access Switch
Desktop Computers
Laptop-Notebook
Camera for CCTV System
Video Recorder for CCTV System
Supply & Installation of Pole / Mast Suitable for CCTV System (Accessories)
Cables suitable for CCTV System (Accessories)
Layer-3 Distribution Switch
Layer-3 Core Switch
Liquid Crystal Display LCD Panel or Monitors
Installation & Commissioning charges for CCTV Cameras (Accessories)
Laying & Installation Charges for Cables (with or without conduit)
Suitable for CCTV System(Accessories)
SFP module with installation suitable for CCTV System (Accessories)
computer servers
Blade Server
GPS Tracking System
Vehicle Navigation System
Professional Large Format Display
Multifunction Machines MFM
Semi Rugged Notebook – Laptop
Docking Station
Haemodialysis Machine
PLASTIC BODY EVAPORATIVE COOLERS- DESERT COOLER
STEEL BODY EVAPORATIVE COOLERS- DESERT COOLER
PORTABLE MOBILE LAB -WITH POWER BACKUP
Tablet Based Digital Monitoring and Attendance System

CDN Service

CDN Service

Content Delivery Network (CDN) Service helps in reducing the load of hits on the Server by providing the distributed dissemination points for accessing the information or content in selected geographical locations across the globe.
Content Delivery Network (CDN) achieve following:
  • On-Demand Scalability – Delivery of live streaming with websites/on-demand/Archived Videos/Audio/Podcasting Services by improving the end user experience via peak load handling& high availability. The CDN services shall be able to scale incrementally to meet demand during the event or at the time of content delivery/distribution.
  • Reliability–Provide dashboard to view web analytics on profiling of accessibility by users. The content should be delivered as it is from the origin and should not be changed/modified/altered or updated at CDN level by any means. The CDN Service Provider shall ensure that the purposed services shall be available 100% of the time.
  • Security – Provideadequate Security as described under the golden parameters chosen by Buyer.
  • Performance–The content delivered through the CDN services shall not degrade the performance of the origin website or content in any manner, even if the number of hits on the website increases exponentially. The CDN Service Provider should have adequate or more idle/ spare capacity available to handle spikes in traffic. The CDN service shall support all types of desktop & mobile devices.

The following table contains the broader scope & criteria for CDN Services to be complied upon by the Service Provider:

S. No Criteria Description
CDN Strength
1 Real time monitoring, reporting and management features through dashboard The view should be customizable with minimum 5 role-based access for each website separately. There should not be any restrictions of no. of users and concurrent logins in total.
2 Support for Mobile devices including live streaming CDN should support live streaming on all sort of mobile devices
3 High-Availability (Origin should be up and DNS) 100% availability
4 Change request for any addition/removal of website should be implemented  Within 48 Hrs
5 Archived Content – Analytic reports, geographic information etc. should be made available on demand GUI based analytics reports as much as possible with 30 Days Archival must on basis of Real-time which may construed as:

a) within 15 minutes for media Analytics;

b) within 24hrs for Websites.

6 CDN capacity The CDN service provider should have 60% or more idle capacity of ordered value available to handle spikes in traffic.
7 Cache content Availability 99.50%
8 The http/https calls to origin server should be minimized
9 log delivery to client location or by email.
SECURITY
10 Change/Update TLS CDN Owner / Channel Partner would be responsible to update latest certificates
11 Whitelisting of Edge IPs /range of IPs preferable in India IP address pool of the edge server has to be shared for whitelisting
12 Security of Data Security of data’ also encompasses integrity and confidentiality during transit. Data should not be leaked to a third party prior to publishing.
13 Should be capable for handling HTTPS or SSL (latest TLS) based websites The communication between origin and edge servers should also be on HTTPS
Streaming Media and Analytics
14 Stream Protection Stream theft should be taken care i.e. the visitor cannot see the video origin link and cannot embed the video on his webpage.  Pre-defined Token based protection
15 Media analytics for live/on-demand stream Through dashboard or any alternative source showing no. of real time concurrent users, visitors and other related details including Geo Locations, Country wise, ISPs, Browsers, Devices Types etc.
16 Number of websites and live streams There should not be any restriction in number of websites and number of live streams
Data Confidentiality /Integrity
17 Archival of secured data – 30 Days CDN Owner/Authorized partner should not archive without explicit permission from competent authority/ Buyer.
18 Domain Names including top level CDN Owner / Authorized channel partner should allow delivery of content for all sort of domains which includes but not limited tonic.ingov.innkn.in, .in etc.
34 Confidentiality of data CDN Service provider should not store any secured information of any application without seeking permissions from concerned authority
35 Service Support CDN Service Provider should have a fully functional 24 x 7 x 365 Customer Support Centre based in India.
TECHNICAL SUPPORT
38 24X7 Customer support in India email & telephonic support
39 Single Point of Contact from OEM  To expedite support and immediate response.