Focused Area of Interest- CSfC.docx

DOCX document 17 KB Posted

Attached to
AF CyberWorx Commercial Solutions Opening (CSO) Federal contract opportunity
Solicitation number
FA7000-23-S-C001
Issued by
Department of the Air Force Headquarters Air Force Academy

About this file

This document is a Focused Area of Interest related to a federal contract opportunity issued by the Air Force CyberWorx. It describes the Air Force's interest in solutions that can support PACAF's expansion of the Commercial Solutions for Classified (CSfC) program to securely extend the SIPR network over commercial circuits and provide warfighters access to classified information.

The key requirements include: expanding the current single-site CSfC service capabilities to support at least three major operating bases with potential for five; delivering an Enterprise SIPRNet Gateway, Mobile Access Capability Package, Multi-Site Connectivity Capability Package, and Enterprise MILS Gateway; and providing operations, administration, and networking support. Solutions must be compatible with Joint and/or DAF MAJCOMs like USAFE's CSfC. Proposals should address fielding and integration of new technologies, including planning, engineering, licensing, services, and support for the initial period and two option years. The response period for this focused area of interest is July 15, 2024 to July 26, 2024.

View the file

Other files for this federal contract opportunity

Show all 17

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

1. Focused Interest Period – Commercial Solutions for Classified (CSfC) (15 July 2024 – 26 July 2024)

1.1. For the period of 15 July 2024 to 26 July 2024 Air Force CyberWorx has a focused interest in exploring solutions that can support PACAF’s expansion of Commercial Solutions for Classified in order to securely extend SIPR network over commercial circuits and provide warfighters access to classified information required to execute missions.

1.2. PACAF desires to expand their current single-site CSfC service capabilities to support at least three major operating bases with potential to be expanded to support five major operating bases using and architecture outlined in section 1.6 or equivalent.

1.3. Solution must be compatible with Joint and/or DAF MAJCOMs like USAFEs CSfC

1.4. Proposals should address fielding and integration of new technologies with existing infrastructure to include planning and engineering support prior to and during the effort. This should include licensing, services, and support for the covered, proposed period of performance and two (2) unfunded option years of service and support in meeting these objectives.

1.5. Submissions should follow same guidelines as outlined in the body of the CSO.

1.6. Additional requirement information:

CSfC is a program by the National Security Agency (NSA) that provides a framework for protecting classified data in communication systems using commercially available encryption solutions. It ensures that commercial products can be used to build secure communication systems for handling classified information. CSfC provides a standardized approach to securing classified communications, making it easier for organizations to implement robust security measures. It requires compliance with stringent security standards and involves complex setup and management processes.

HQ PACAF A65 requires a secure way to extend SIPR network over commercial circuits and provide warfighters access to classified information required to execute missions. PACAF currently has one CSfC service providing site and would like to expand their capability into an architecture with three fully meshed sites (with potential for 5 in the future) in a theater-wide gray network capable of delivering support and centralized management to multiple Capability Packages (CPs) simultaneously resulting in enhanced scalability, and site survivability.

Proposed solutions must be able to deliver the following or may consist of equivalent architecture: Enterprise SIPRNet Gateway, registered Mobile Access (MA) Capability Package (CP), Multisite Connectivity (MSC) Capability Package (CP), and Enterprise MILS Gateway, including operations, administration, and networking related activities.

The Enterprise SIPRNet Gateway will consist of the VPN devices required to support both the MA and MSC CP solutions provided, as well as all management and SIEM required by the MA and MSC CPs. The design should address redundant SIPRNet connectivity between sites to provided required management and SIEM and allow scaling out to other bases in the future. The Mobile Access Capability Package (MA CP) should provide an outer (GRAY) VPN tunnel and inner (RED) VPN tunnel using Aruba, Cisco, or other NSA CSfC approved encrypted tunnel equipment and be able to support multiple solutions for end users.

The Multi-Site Connectivity Capability Package (MSC CP) should use NSA CSfC approved solutions such as Juniper, Palo Alto, and Cisco to create an outer (GRAY) VPN tunnel and inner (RED) VPN tunnel. Solutions should plan to support Forcepoint’s TTC-R or similar NSA approved solutions as a multi-enclave thin client solution and maintain the option to replace a TACLANE with an Aruba RAP (Remote Access Point) or similar capability as a point-of-presence for a Small Mobile Office Kit (POP SMOK) that can support access to SIPRNet at 500+Mbs.

The Enterprise MILS Gateway includes the Multi-Enclave Client Network (MECNET) consisting of all the equipment required to support Forcepoint’s TTC-R or similar NSA approved multi-enclave thin clients connectivity, as well as all management and security information and event management (SIEM) required by the MA CP. MILS will have full mesh interconnectivity between the three sites utilizing the EG network.

File details come from the government source that posted it. Updated .