Appendix_A.3_-_Rev._01_-_15_Mar_2016.pdf

PDF 165 KB Posted

Attached to
SETEC Information Technology and Communications Infrastructure Project Federal contract opportunity
Solicitation number
SWHARC16R0004
Issued by
Department of State Office of Acquisition Management

About this file

Revised Appendix A.3

View the file

Other files for this federal contract opportunity

Show all 18

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

SWHARC16R0004

APPENDIX A.3, REVISION 01

LIST OF EQUIPMENT

15 MAR 2016

Kit 1- Desktop Computing

Item Quantity Desktop PC 30 Monitor 30 MS Office 30 MS Windows 30 Antivirus software 30

UPS 550 30

Printer 3 Scanner 3 Switch (48 port Access layer) 1 Switch Port Module 1 Gig SFP 2

UPS 300 1

Kits needed 100

Kit 2- Database and Processing

Applications Server 1 Data Base Server 1 Storage System (NAS) 1 Rack package (cabinet, monitor, KVM, keyboard, etc.) 1

PDU 1

Server Rails 3

UPS 3 KVA 1

SQL Server Enterprise software license 1 MS Server 2012 Operating System 2 Switch (24 ports) 1 Switch Port Module 1 Gig SFP 2

Kit 3- Security

Firewall 1 Router 1

Kit 4- Communications

VOIP Control Unit 1 Switch Port module 1 Gig SFP 2 Kits needed 80

Item Minimum Specifications Qty Desktop PC · Intel Core i7-4770 3.4GHz

· 8GB RAM DDR3

· 1TB SATA

· Intel HD Graphics 4600

· DVD/RW

· USB 3.0

· 3 year warranty for on-site parts and service

Monitor · Monitor 20 in. to 21.5 in. measured diagonally 3000 UPS 300 VA 300VA 120V 6 outlets (3 battery backup, 3 surge protection), telephone protection; output frequency=47-63 Hz; 100 UPS 550 VA 550VA 120V 8 outlets (4 battery backup, 4 surge protection), telephone protection; output frequency=47-63 Hz; 3000 Printer Requires a high performance printer that prints professional-quality black and white, two-sided documents in letter, A4 and legal-size, with high reliability, with easy mobile printing options and print large volumes at high speed printing.

The minimum computer printer features to consider are:

Print speed black and white:

• Normal: Up to 45 ppm First page output .

• Up to 9.0 seconds, Print quality black (best).

• Up to 1200 x 1200 DPI.

Duty cycle (monthly, A4).

• Up to 120,000 pages.

• recommended monthly volume of 2000 to 17.000 pages.

• technology Laser.

• Processor speed 800 MHz.

• WQVGA Resistive 10.9 cm (4.3 ") with Start button.

Optional wireless capability.

Connectivity.

• Standard 1 USB 2.0 for high-speed devices,

• 2 USB 2.0 host (for connections of third parties)

• 1 Ethernet.

Scanner Capable of sending digital images to either a local folder or network location;

email;

SharePoint 2007 and 2010; capable of sending to cloud locations such as Google Drive;

Capable to send to network location;

send to print or fax.

Capable to send to web based folder;

Resolution up to 600 PPP;

daily work cycle up to 3000 pages;

Depth in bits = 48; levels of gray scale = 256;

capable of multiple source feed detection;

digital format output for the following file types-PDF, FIFF, DOC, RTF, WPD, EXL, TXT, XML, XPS, HTML, OPF, JPG, BMP, PNG;

Duplex output capable;

blank page elimination capable;

Color correction capable;

long page size capable;

savable user profiles;

LCD control panel;

Compatible with Windows 8 (32 bits, 64 bits), Windows 7 (32 bits, 64 bits), Windows Vista (32 bits, 64 bits), Windows XP (32 bits, 64 bits) with Service Pack 3.1

PC Windows Operating System

Windows 7 or better Pro 64-bit (Spanish) 3000

MS Office Office 2013 Home and Business 32/64-bit (Spanish) 3000 Antivirus Software

Kaspersky Small Office Security or Equal Endpoint Security for Business -Select Latin America Edition. 3 year license

PDU Rack mountable PDU with 12 outlets 100 Rack · 19" Standard Closed Cabinet 42 U

· 2500 lbs.

· KVM Net Controller for Rack 1U (minimum 1 per rack)

· 16 Ports

· LCD 19"

UPS 3KVa Rack mountable UPS with 3000Va output and 60Hz frequency. 100 Applications Server

Dual processor core 6 with 3.4 Ghz or better; 32GB RAM; Dual hard drives of 45015k SAS RAID 1; Ethernet adaptor 331i 1Gb with 4 port controller; Memory expansion up to 24 DIM slots; slidable server rails for cabinet; 3 year onsite warranty for parts and support.

Database Server Dual processor core 6 with 3.4 Ghz or better; 32GB RAM; Dual hard drives of 45015k SAS RAID 1; Ethernet adaptor 331i 1Gb with 4 port controller; Memory expansion up to 24 DIM slots; slidable server rails for cabinet; 3 year onsite warranty for parts and support.

MS Windows Server 2012

Pre-installed MS Window Server 2012, 64 bits, Spanish version. 200

Storage System Capacity: High density storage, 16 GB of memory, 2 rear SSD 120 GB SFF and 8 LFF SAS drives 4TB. 2U rackmount, network controller, Ethernet adapter 33li GB. Smart Array 3GB. 32TB raw internal SAS. Synchronization and file sharing, snapshots, replication, file classification, quotas, file screening, slidable server rails for cabinet

• Processor: at least six-core processors to 1.9 GHz processing unit

• Disk Management: Capacity RAID 0, 1, 1 / 0.3, 5, or equivalent. The implementation of the RAID architecture will be based on the architecture of the arrangement and will be done by hardware.

• Availability: Redundancy in power supplies, fans and battery backup. The components will be Hot Plug or Hot Swap technology or may be replaced by non-disruptive means.

Gig SFP SFP for FiberOptic uplink connectivity 560

Network Switch (48)

Network Switch 48 port:

The connectivity solution data center must be provided under a scheme of high availability considering the following or similar:

• Must support within its architecture high processing support and high density 10GE interfaces.

• The power supply that feeds this team must have at least 90% efficiency.

• The system should have redundancy overall control modules, power supplies and fan modules.

• The system must support online insertion or removal without impacting service all redundant elements: general control modules, power supplies and fan modules.

• The system must allow visual indication of status by LED power supplies, fans, general control modules, and modules for I / O.

• The proposed architecture must have mechanisms that allow ventilation air flow so the front to the rear through the modules to isolate the cold air from the hot aisles. Likewise, switch modules must be able to be accessed from the rear to avoid wiring changes during maintenance sessions.

• The switch must have the ability to modularly increase its support in processing performance.

• The operating system must be modular, so that there can be continuity in service with the idea of avoiding service interruption before maintenance, renovation and certification of software.

• The switch operating system must have the ability to perform virtual connections with the idea of having the ability to separate resources for each connection to simulate independent and separate devices.

• Support management through command line interface or through web GUI programming interface using a XML-based API. Support for SNMP v1, v2c and v3.

• Each module should handle general control diagnosis and protocol decoding.

• Each general control module must meet the following requirements:

• A dedicated 10/100/1000 interface for out of band management

• A console port.

• Visual indicator (LED) indicating identification overall control module, the type of operation the control module (active or passive) power management.

• proactive and arousal during startup and operation monitoring switch of variables such as:

• The switch must support port circuit the following:

• 48 RJ-45 autosensing 10/100/1000 ports

• 4 fixed Gigabit Ethernet SFP ports: 2 SFP+ 10GbE ports

• processing support (full-duplex) in the case of traffic in Layer 2 and Layer 3 IPv4 and for IPv6 traffic case.

FEATURES:

• IPv4

• IPv6

• OSPF Version 2 (IPv4) and version 3 (IPv6)

• Border Gateway Protocol (BGP)

• Routing Information Protocol Version 2 (RIPv2)

• Unicast IPv4 and IPv6

• VRRP

• generic encapsulation for tunneling through IPv4 and IPv6

• Support restarting routing protocols without disrupting routing packets for IPv4

• Support OSPFv3 restart without interrupting routing packets for IPv6

• Traffic classification based on recognition protocols and applications.

• Assign maximum bandwidth for traffic class.

• Support frame tagging to identify security groups for access to network resources based on user profile.

• Support to check ARP packets that are valid IP addresses.

• Prevent IP traffic IP addresses with MAC addresses that do not correspond to the table of DHCP snooping.

• Mechanisms to prevent traffic on a LAN to be affected by a storm of broadcast traffic, or unicast MultiCAS a physical interface.

• Limit the number of MAC addresses that can be connected to a port, allowing connection to a physical port only based on its MAC address device.

• Management via SSH v2

• Support for SNMPv3

• PIM Sparse Mode (Any-Source Multicast IPv4 and IPv6).

• Bidirectional PIM for IPv4 and IPv6.

• IGMP v1, v2 and v3.

• IGMP snooping

• Multicast Listener Discovery

• Limit the number of MAC addresses that can be connected to a port, allowing connection to a physical port only based on its MAC address device

Network Switch (24)

Network Switch 24 port:

The connectivity solution data center must be provided under a scheme of high availability considering the following or similar:

• Must support within its architecture high processing support and high density 10GE interfaces.

• The power supply that feeds this team must have at least 90% efficiency.

• The system should have redundancy overall control modules, power supplies and fan modules.

• The system must support online insertion or removal without impacting service all redundant elements: general control modules, power supplies and fan modules.

• The system must allow visual indication of status by LED power supplies, fans, general control modules, and modules for I / O.

• The proposed architecture must have mechanisms that allow ventilation air flow so the front to the rear through the modules to isolate the cold air from the hot aisles. Likewise, switch modules must be able to be accessed from the rear to avoid wiring changes during maintenance sessions.

• The switch must have the ability to modularly increase its support in processing performance.

• The operating system must be modular, so that there can be continuity in service with the idea of avoiding service interruption before maintenance, renovation and certification of software.

• The switch operating system must have the ability to perform virtual connections with the idea of having the ability to separate resources for each connection to simulate independent and separate devices.

• Support management through command line interface or through web GUI programming interface using a XML-based API. Support for SNMP v1, v2c and v3.

• Each module should handle general control diagnosis and protocol decoding.

• Each general control module must meet the following requirements:

• A dedicated 10/100/1000 interface for out of band management

• A console port.

• Visual indicator (LED) indicating identification overall control module, the type of operation the control module (active or passive) power management.

• proactive and arousal during startup and operation monitoring switch of variables such as:

• The switch must support port circuit the following:

• 24 RJ-45 autosensing 10/100/1000 ports

• 2 SFP+ 10GbE ports

• processing support (full-duplex) in the case of traffic in Layer 2 and Layer 3 IPv4 and for IPv6 traffic case.

FEATURES:

• IPv4; IPv6; OSPF Version 2 (IPv4) and version 3 (IPv6); Border Gateway Protocol (BGP); Routing Information Protocol

Version 2 (RIPv2); Unicast IPv4 and IPv6

• VRRP

• generic encapsulation for tunneling through IPv4 and IPv6

• Support restarting routing protocols without disrupting routing packets for IPv4

• Support OSPFv3 restart without interrupting routing packets for IPv6

• Traffic classification based on recognition protocols and applications.

• Assign maximum bandwidth for traffic class.

• Support frame tagging to identify security groups for access to network resources based on user profile.

• Support to check ARP packets that are valid IP addresses.

• Prevent IP traffic IP addresses with MAC addresses that do not correspond to the table of DHCP snooping.

• Mechanisms to prevent traffic on a LAN to be affected by a storm of broadcast traffic, or unicast MultiCAS a physical interface.

• Limit the number of MAC addresses that can be connected to a port, allowing connection to a physical port only based on its MAC address device.

• Management via SSH v2

• Support for SNMPv3

• PIM Sparse Mode (Any-Source Multicast IPv4 and IPv6).

• Bidirectional PIM for IPv4 and IPv6.

• IGMP v1, v2 and v3.

• IGMP snooping

• Multicast Listener Discovery

• Limit the number of MAC addresses that can be connected to a port, allowing connection to a physical port only based on its MAC address device

SQL Server Software

SQL Server 2014 Standard Edition 100

Firewall The solution should contemplate a systems intrusion prevention, application control, Gateway based on the following features:

• must have redundant power supply into alternating current.

• network security device that detects unauthorized network as attacks by intruders by analyzing traffic in real time activity. Online protection system able to detect and stop malicious traffic.

• Support remote management with support for Telnet, SSL and SNMP protocols.

• must have type graphical interface GUI administration support HTTP / SSL.

• Methods authenticated by user, client and log in to the firewall

• Ability to authenticate sessions for any service. That is, any protocol and / or application running under the TCP /

UDP /

• Control access to applications, services and predefined protocols.

• What support schemes both authenticated users Firewall and VPN, RADIUS, operating system password, the password itself Firewall, Digital Certificates.

• perimeter antivirus module to provide virus scanning traffic for POP, FTP, HTTP and SMTP.

• The ability of Web filtering included in the device must define lists of exceptions based blocking IP or URL for specific Web sites.

• Ability to static NAT (one to one) and dynamic (many to one).

• Ability included and integrated within the Firewall to detect network attacks and application level, protecting at least the following services: Web applications, DNS, FTP, Windows (Microsoft Networking) and Voice over IP (H.323, SIP).

• Windows access protection (CIFS) networks to shared Windows network resources are accessible only by authorized entities. Furthermore, this traffic can be encrypted by the VPN.

• Protection and support Voice over IP technology SIP, H.323, MGCP and SCCP (Skinny) for encrypted traffic and quality of service.

VPN:

• The solution must be able to be integrated Firewall (sharing the same hardware) with a VPN solution.

• Support schemes VPN site-to-site topologies "Full Meshed" (all-against-all), Star (remote offices to a central office), "Hub and Spoke" (traffic between remote offices, through inspection cener) plus VPN client-to-site (Remote Access

VPN).

• Ability to establish VPN between remote nodes with IP dynamic star and mesh topologies.

• Support for symmetric encryption algorithms: AES256, DES, 3DES.

• Support for VPN clients can be integrated with personal firewall (using the same software) and checker configuration, with centrally managed from the same console VPN policy.

• Must have ability to support VPN client-to-site (client-to-site) based on Secure Sockets Layer (SSL), which are initiated on any computer that has supported browser and are completed in the Gateway VPN.

• integrated capacity increase VPN performance through acceleration software solutions, including as part of the base offering.

• Integrated Certification Authority to the VPN or its management console as a native part of the solution, so that digital certificates are issued to VPN users and VPN Gateway with which communication and the same components of the solution is set (such as management console, administrators, modules, etc.).

• Support data compression algorithms for both VPN site-to-site VPN and for client-to-site made with their own customers.

Router The solution should contemplate a router with the following features or similar:

• Handling switching / routing layer 3 to the IP protocol.

• Handling switching / routing layer 3 to the IP protocol.

• Management protocols such as Trivial File Transfer Protocol (TFTP), RMON support.

• Multi-Protocol Support: TCP / IP, IP version 4, IP version 6, RIP, RIP version 2, OSPF, OSPF Version 2, Version 3 OSPF, IS-IS, PIM, L2TP, Frame Relay (FRF.11, FRF. 12), HDLC, PPP.

• Support Network Time Protocol (NTP).

• Support at least 20 RJ-45 10/100 ports with PoE and Gigabit Ethernet.

• Management of at least 200 tunnels for Virtual Private Networks (VPN).

• Manage user mobility through VPN.

• Support for RADIUS authentication protocol.

• Support PPP.

• Management header compression techniques for efficient use of network resources.

• Both the Flash memory and DRAM must be field upgradeable.

• Management of redundant power supplies:

• Ports and functionalities

• 2-port GbE.

• 2-port 1000BASE-T

• 2 fixed Gigabit Ethernet SFP ports; Memory and Backplane:

• Equipped with DRAM minimum memory of 512 MB and capable of scaling.

• Equipped with minimum 256 MB flash memory;

• Ports:

• 2 10/100/1000 interfaces.

• 1 console port (RJ-45).

• 1 auxiliary port (RJ-45).

• Management via console port.

• Manageable via SNMP.

• Manageable via TELNET.

• Service connectivity to the MPLS VPN network with encryption features.

• The solution must offer different solutions based encryption IPsec tunnels that can be implemented on an MPLS VPN network.

• The Bidder must have the technical capacity to implement, support and administration of the proposed equipment.

VOIP Control Unit

Avaya IPO 500 SMB Communication Solution 185446-T OR EQUAL

· IP control units, 4 slots

· Management control card for trunks

· Secure Digital technology

· Card voice compression channels - Used for VoIP calls

· 2x 24x 10/100/1000Mbps with 4 shared SFP ports (combo with ports 2 1-24) + 2 SFP / 2.5G rear ports

· 13x Telephone IP color screen / touch screen (3.8 inches diagonally with key expansion module)

· 20x Telephone IP B/W, 10/100/1000 port, with a minimum of 1 line

· E1 PSTN connection, Fiber connection to LAN

· General configuration - one PSTN per switch with up to 1 digital trunk per telephonic device, interconnections between switches, voicemail configuration for all devices, with IVR capabilities.

A.3 Cover
Appendix A.3 Kits 031216
Appendix A.3 Technical Specs 031216

File details come from the government source that posted it. Updated .