11.07.2015 Views

Corrigendum to RFP - National Crime Records Bureau

Corrigendum to RFP - National Crime Records Bureau

Corrigendum to RFP - National Crime Records Bureau

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

<strong>Crime</strong> & Criminals Tracking Network and Systems ProjectHaryana Police2 <strong>RFP</strong> VOLUME IA. 5.4. Scope of Services - During Implementation Phase5.4.2.3: Preparation of Solution Design, Technical Architecture1. Point (b), Single Sign On,Single-Sign On – The Solution should enable single-sign-on so that any user once authenticatedand authorized by system is not required <strong>to</strong> be re-authorized for completing any of the services inthe same session. For employees of the Haryana Police, the browser based application accessedon the intranet, through single-sign-on mechanism, will provide access <strong>to</strong> all the core services(based on their roles and responsibilities), Help module, Basic and advanced Reporting etc.Similarly, for external users (Citizens, Hotels, Cyber Cafes, Hospitals, Jails, TransportDepartment etc), based on their profile and registration, the system shall enable single-sign onfacility <strong>to</strong> apply for various services, make payments, submit queries /complaints and checkstatus of their applications.Following details added <strong>to</strong> the clauseEMS should provide Single Sign-On and Web access management across all the modules ofCCTNS solution through a single console. It should work across all modules and should not beconfined <strong>to</strong> a single module and be open <strong>to</strong> integrate with new modules as and when required.Proposed solution should integrate with existing server access control solution at SDC <strong>to</strong> provideholistic access management across moni<strong>to</strong>red servers as wells as applications.2. Point (c), Support for PKI based Authentication and Authorization,The solution shall support PKI based Authentication and Authorization, in accordance with IT Act2000, using the Digital Certificates issued by the Registration Authorities (RA). In particular, PKIbased authentication and authorization shall be implemented by the selected Bidder forofficials/employees involved in processing key G2B and G2C services, including issuance ofnotices, receipts and approvals.Following details added <strong>to</strong> the clauseTo ensure integrity and confidentiality, the data collected (both online and offline) at the policelocation should be digitally signed and encrypted before it is sent from one location <strong>to</strong> other /central data center. Hardware Security module should be integrated with applications at DataCenter in high availability mode and should be able <strong>to</strong> endure the security and integrity of thesigning key, key management and multifac<strong>to</strong>r authentication <strong>to</strong> access the key and mostGovernment of Haryana <strong>Corrigendum</strong> <strong>to</strong> <strong>RFP</strong> for Selection of System Integra<strong>to</strong>r Page 4 of 61

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!