dokumen sebutharga
Transcription
dokumen sebutharga
DOKUMEN SEBUTHARGA SEBUTHARGA BAGI MEMBEKAL, MENGHANTAR, MEMASANG, MENGUJI, MENTAULIAH DAN MENYENGGARA (DALAM TEMPOH JAMINAN) SISTEM RANGKAIAN KOMPUTER (NETWORK CLUSTERING) DI LEMBAGA PERINDUSTRIAN KAYU MALAYSIA NO RUJUKAN SEBUTHARGA : 39/2011 KANDUNGAN PENGENALAN SEBUTHARGA LEMBAGA PERINDUSTRIAN KAYU MALAYSIA KENYATAAN SEBUTHARGA KEMENTERIAN PERUSAHAAN PERLADANGAN DAN KOMODITI i BAHAGIAN I : ARAHAN DAN SYARAT-SYARAT KEPADA PENYEBUTHARGA ITEM PERKARA MUKA SURAT 1 ARAHAN AM 4 2 BIDANG KERJA PENYEBUTHARGA 4 3 KEPERLUAN KELAYAKAN PENYEBUTHARGA 5 4 BORANG SEBUTHARGA 5 5 PENYERAHAN SEBUTHARGA 6 6 KOS SEBUTHARGA 7 7 TAKLIMAT 7 8 HARGA DAN TEMPOH SAH LAKU 7 9 HAK KEBENARAN MTIB UNTUK MENERIMA ATAU 7 MENOLAK SEBAHAGIAN ATAU SEMUA SEBUTHARGA 10 PERJANJIAN KONTRAK 8 11 BON PELAKSANAAN 8 12 PENERIMAAN SEBUTHARGA 9 13 DEMONSTRASI DAN UJIAN ‗BENCHMARK‘ 9 14 PENYEDIAAN TAPAK 10 15 PERALATAN SAMPINGAN 10 16 TEMPOH PEMBEKALAN DAN PEMASANGAN 10 PERALATAN 17 JADUAL PELAKSANAAN 11 18 TEMPOH JAMINAN 11 19 KHIDMAT SOKONGAN DAN PENYENGGARAAN 11 20 PENERIMAAN SEMENTARA 11 21 PENERIMAAN AKHIR 12 22 JADUAL BAYARAN 12 23 PENENTUAN TEKNIKAL 13 24 TEMPOH KONTRAK 13 25 TARIKH TUTUP 14 ii BAHAGIAN II : LATAR BELAKANG SISTEM RANGKAIAN KOMPUTER SEDIA ADA DI MTIB 1. PENGENALAN 16 2. SISTEM RANGKAIAN SEMASA 16 BAHAGIAN III : KEPERLUAN MINIMUM TEKNIKAL 1. PENGENALAN 22 2. SKOP PROJEK 23 3. CADANGAN GAMBARAJAH FIZIKAL RANGKAIAN BARU MTIB 27 4. BILANGAN NODE/PENGGUNA BAGI SETIAP TINGKAT 28 3. SPESIFIKASI TEKNIKAL TERPERINCI 29 4. MIGRASI 51 5. KURSUS DAN LATIHAN SOKONGAN 51 6. MANUAL DAN DOKUMENTASI 53 7. SOKONGAN DAN PENYENGGARAAN 53 BAHAGIAN IV : FORMAT MAKLUMBALAS 1. DOKUMEN TAWARAN KEWANGAN 56 2. DOKUMEN TAWARAN TEKNIKAL 57 BAHAGIAN V : SOAL SELIDIK S1 : SOAL SELIDIK MENGENAI JADUAL HARGA 59 S2 : SOAL SELIDIK MENGENAI PROFIL SYARIKAT 65 S3 : SOAL SELIDIK MENGENAI PENGALAMAN DAN KEUPAYAAN SYARIKAT 67 S4 : SOAL SELIDIK MENGENAI PELAKSANAAN PROJEK 69 S5 : SOAL SELIDIK MENGENAI PERALATAN RANGKAIAN DAN PERISIAN 71 iii S6 : SOAL SELIDIK MENGENAI LATIHAN 112 S7 : SOAL SELIDIK MENGENAIL MANUAL DAN DOKUMENTASI 114 S8 : SOAL SELIDIK MENGENAI SOKONGAN DAN PENYENGGARAAN 116 S9 : SOAL SELIDIK MENGENAI MIGRASI BAHAGIAN VI BORANG I 119 : BORANG : BORANG AKUAN PENYEBUTHARGA iv 122 PENGENALAN SEBUTHARGA SEBUTHARGA BAGI MEMBEKAL, MENGHANTAR, MEMASANG, MENGUJI, MENTAULIAH DAN MENYENGGARA (DALAM TEMPOH JAMINAN) SISTEM RANGKAIAN KOMPUTER (NETWORK CLUSTERING ) DI LEMBAGA PERINDUSTRIAN KAYU MALAYSIA PERINGATAN : 1. Penyebutharga-penyebutharga dikehendaki membaca dan memahami keseluruhan butir-butir dokumen sebutharga sebelum mengemukakan tawaran. 2. Pastikan dokumen sebutharga adalah lengkap pada kesemua muka surat. Sekiranya terdapat maklumat lanjut yang diperlukan, adalah menjadi tanggungjawab penyebutharga untuk mendapatkan penjelasan daripada Unit Perolehan, MTIB. 3. Penyebutharga dikehendaki mengemukakan sebutharga mengikut format maklumbalas yang telah dilampirkan. 1 BAHAGIAN I ARAHAN DAN SYARAT-SYARAT KEPADA PENYEBUTHARGA BAHAGIAN I 2 BAHAGIAN I ARAHAN DAN SYARAT-SYARAT KEPADA PENYEBUTHARGA LEMBAGA PERINDUSTRIAN KAYU MALAYSIA, TINGKAT 14, MENARA PGRM, NO.8, JALAN PUDU ULU, CHERAS, P.O. BOX 10887, 50728 KUALA LUMPUR. ………………………………………………………… ……………………………………………………….. ……………………………………………………….. ……………………………………………………….. ……………………………………………………….. ……………………………………………………….. Tuan/Puan, SEBUTHARGA MEMBEKAL, MENGHANTAR, MEMASANG, MENGUJI, MENTAULIAH DAN MENYENGGARA (DALAM TEMPOH JAMINAN) SISTEM RANGKAIAN KOMPUTER (NETWORK CLUSTERING) DI LEMBAGA PERINDUSTRIAN KAYU MALAYSIA Nombor Sebutharga : 3 1.0 ARAHAN AM 1.1 Sebutharga adalah dipelawa dari pembekal-pembekal bagi ―Membekal, Menghantar, Memasang, Menguji dan Mentauliah dan Menyenggara (dalam tempoh jaminan) Sistem Rangkaian Komputer (Network Clustering) di Lembaga Perindustrian Kayu Malaysia (MTIB). 1.2 Pembekal yang mengemukakan sebutharga adalah tertakluk kepada syarat-syarat dan arahan-arahan yang terdapat dalam dokumen ini dan kontrak. Arahan-arahan dan syarat-syarat yang dinyatakan hendaklah disifatkan sebagai syarat kontrak. Sebutharga yang tidak mengikut syarat-syarat yang dinyatakan tidak akan dipertimbangkan. 2.0 BIDANG KERJA/SKOP PENYEBUTHARGA 2.1 Membekal, menghantar, memasang, menguji, mentauliah serta menyenggara sehingga tamat tempoh jaminan perkakasan dan perisian seperti yang telah ditetapkan dalam dokumen ini. 2.2 Mencadangkan rangkaian baru setempat (LAN) yang bersesuaian dan mengikut keperluan di MTIB. 2.3 Menyediakan latihan kepada pegawai / wargakerja MTIB dalam penggunaan dan pengurusan sistem rangkaian, perkakasan dan perisian. 2.4 Membekalkan kepakaran teknikal dalam melaksanakan kerja-kerja berkenaan rangkaian. 2.5 Menyediakan jadual pelaksanaan atau perancangan yang lengkap bagi semua aktiviti yang berkaitan dilaksanakan dengan berkesan. 4 dan memastikan penjadualan 2.6 Mengintegrasikan dan menghubungkan sistem rangkaian MTIB di Menara PGRM 1 dan 2 melalui konsep network clustering. 2.7 Membolehkan wargakerja MTIB mengakses internet dan sistem luar melalui protocol IPv4 dan IPv6. 2.8 Membekal sistem rangkaian yang menyokong redundancy atau network clustering yang berspesifikasi terkini, menyokong protocol IPv6 serta berkeupayaan dan mempunyai fleksibiliti untuk sokongan penyenggaraan sehingga tempoh 8 tahun. 3.0 KEPERLUAN KELAYAKAN PENYEBUTHARGA 3.1 Tawaran dipelawa kepada pembekal-pembekal berikut :- i. Berdaftar dengan Kementerian Kewangan Malaysia yang masih sah laku di bawah kod 210101, 210102,210103,210104,210105,210106. ii. Berdaftar sebagai Kontraktor Bumiputera dengan Kementerian Kewangan Malaysia yang masih sahlaku. iii. Berpengalaman dalam kerja-kerja pemasangan/ penyenggaraan perkakasan sistem rangkaian komputer sekurang-kurangnya selama tiga (3) tahun. 3.2 MTIB berhak untuk membatalkan perlantikan syarikat sekiranya perkhidmatan tidak mematuhi syarat yang ditetapkan/tawaran yang dipersetujui seperti di dalam dokumen sebutharga. 4.0 BORANG SEBUTHARGA 4.1 Sebutharga hendaklah dikemukakan menggunakan format Borang Sebutharga seperti yang dibekalkan pada Borang I dalam Bahagian VI. Sebutharga-sebutharga yang tidak dikemukakan menggunakan 5 format borang sebutharga yang berkenaan tidak akan diterima. Penyebutharga - penyebutharga boleh mengemukakan borang atau dokumen tambahan untuk memberi penerangan-penerangan. 4.2 Penyebutharga perlu menandatangani Borang Akuan Sebutharga seperti yang dilampirkan bagi mengesahkan tawaran sebutharga. 5.0 PENYERAHAN SEBUTHARGA 5.1 Dokumen sebutharga perlu dikemukakan seperti format maklumbalas yang dinyatakan serta memenuhi keperluan pada Bahagian IV. Semua Soal Selidik seperti Bahagian V hendaklah dilengkapakan serta memenuhi keperluan ditetapkan. 5.2 Cadangan sebutharga hendaklah dikemukakan sebanyak dua (3) naskah iaitu satu (1) asal dan satu (2) salinan dalam 2 bahagian yang berasingan iaitu ‗Dokumen Tawaran Kewangan‘ dan ‗Dokumen Tawaran Teknikal‘ senarai turutan di Bahagian IV. 5.4 Sebutharga hendaklah dialamatkan (dengan dimasukkan pada peti yang disediakan) kepada :- Ketua Pengarah, Lembaga Perindustrian Kayu Malaysia, Tingkat 14, Menara PGRM, No. 8, Jalan Pudu Ulu, Cheras, 50728 Kuala Lumpur. (U.P.: Unit Perolehan) 5.5 MTIB tidak akan bertanggungjawab ke atas kehilangan borangborang penyertaan sebutharga akibat kesilapan alamat yang dihantar secara pos atau melalui tangan. 6 6.0 KOS SEBUTHARGA 6.1 Penyebutharga mestilah menanggung sendiri semua kos berkaitan dengan penyediaan dan penghantaran sebutharga. MTIB tidak akan bertanggungjawab ke atas kos-kos tersebut. 7.0 TAKLIMAT 7.1 MTIB akan mengadakan satu taklimat dengan PenyebuthargaPenyebutharga pada 15 Jun 2011 (Rabu) jam 9.30 pagi bertempat di Dewan Persidangan MTIB, Tingkat 13, Menara PGRM, No. 8, Jalan Pudu Ulu, Cheras, Kuala Lumpur untuk memberikan penjelasan tentang arahan dan syarat sebutharga, spesifikasi sebutharga, bahagian sistem komputer yang akan dipasang dan lain-lain perkara yang berkaitan dengan sebutharga ini. 8.0 HARGA DAN TEMPOH SAH LAKU 8.1 Semua harga sebutharga mestilah di dalam RINGGIT MALAYSIA bagi setiap item dan berdasarkan kepada format yang disediakan. Jadual harga yang dikemukakan mestilah dinyatakan dalam angka yang tepat bagi unit harga dan jumlah harga (termasuk penghantaran, pemasangan dan lain-lain tugas). 8.2 Harga yang disebutkan dalam sebutharga hendaklah sah laku di dalam tempoh tidak kurang dari 90 hari dari tarikh tutup sebutharga. 8.0 MTIB BERHAK UNTUK MENERIMA ATAU MENOLAK SEBAHAGIAN ATAU SEMUA SEBUTHARGA 8.1 MTIB tidak terikat untuk menerima tawaran sebutharga yang terendah atau mana-mana sebutharga yang diterima. 7 8.2 MTIB juga berhak untuk menerima sebahagian atau keseluruhan cadangan dalam tawaran sebutharga. 8.3 Keputusan MTIB adalah muktamad dan MTIB tidak akan teragakagak untuk memberi apa-apa alasan bagi penolakan mana-mana sebutharga. 10.0 PERJANJIAN KONTRAK 10.1 Penyebutharga yang berjaya adalah dikehendaki mengikat kontrak dengan MTIB bagi membekal, menghantar, memasang, menguji, mentauliah dan menyenggara dalam tempoh jaminan sistem rangkaian. Denda akan dikenakan dalam kontrak jika tidak memenuhi syarat-syarat kontrak supaya sistem rangkaian komputer dilaksanakan dengan baiknya. Berdasarkan perjanjian kontrak, penerimaan MTIB disertai dengan pengesahan pembekal yang berjaya akan terikat dengan kontrak di antara MTIB dengan penyebutharga tanpa mengambilkira perjanjian kontrak disediakan/dilaksanakan atau tidak dilaksanakan. Penyebutharga yang berjaya mesti menanggung sendiri risiko berkenaan kontrak mengikut syarat-syarat, spesifikasi dan jadual sebahagiannya mestilah menurut status, peraturan atau melalui undang-undang dan keperluan mana-mana kebenaran. 11.0 BON PELAKSANAAN 11.1 Sebelum sesuatu kontrak bekalan yang melebihi nilai RM200,000.00 tetapi tidak melebihi RM500,000.00 disempurnakan, penyebutharga atau pembekal yang berjaya adalah dikehendaki memberi bon pelaksanaan 2.5 % dari jumlah harga kontrak. Bagi kontrak yang melebihi RM500,000.00 jumlah bon pelaksanaan ialah 5 % daripada jumlah harga kontrak. 8 11.2 Bon pelaksanaan hendaklah dalam bentuk jaminan bank dari bank berdaftar di Malaysia yang diluluskan. Bon pelaksanaan hendaklah sahlaku selepas tarikh tamat tempoh kontrak dan pembekalan peralatan yang terakhir dengan syarat semua peralatan berkaitan berkeadaan baik dan memuaskan sehingga tamat tempoh waranti. 11.3 Penyebutharga yang berjaya dan telah mengikat kontrak dengan MTIB dikehendaki membayar tuntutan gantirugi sekiranya didapati pihak penyebutharga tersebut melanggar syarat-syarat kontrak (break of contract) dan disabitkan kesalahan. 12.0 PENERIMAAN SEBUTHARGA 12.1 MTIB akan memberi notis bertulis kepada pesebutharga yang berjaya apabila sebutharganya disetujuterima. Notis ini boleh mengandungi syarat-syarat kontrak sebagai tambahan kepada syarat-syarat yang dilampirkan bersama ini dan sekiranya demikian sebutharga ini tidaklah boleh dipertimbangkan sehingga syarat tambahan ini dipersetujui oleh penyebutharga yang berjaya. 13.0 DEMONSTRASI DAN UJIAN ‘BENCHMARK’ 13.1 Semua penyebutharga boleh diminta membuat demonstrasiperalatannya apabila dikehendaki sedemikian. 13.2 Semua penyebutharga boleh dikehendaki melakukan ujian ‗Benchmark‘ yang ditentukan oleh MTIB. Ujian ini mesti dilakukan pada sistem komputer yang sama atau sesuai mengikut sistem yang dicadangkan. 9 14.0 PENYEDIAAN TAPAK 14.1 Semua penyebutharga yang berjaya adalah dikehendaki untuk mendapatkan pandangan daripada MTIB berkenaan penyediaan tapak dan keperluan-keperluan yang berkaitan sebelum pemasangan secara fizikal. Tapak ini mestilah mempunyai ruang kerja yang sesuai; dan boleh mendapat kemudahan/keperluan peralatan/perisian komputer dalam jarak perkakasan itu bagi kakitangan MTIB; bekalan tenaga elektrik, pengurusan dan simpanan peralatan, alat-alat, barang simpanan, bekalan dan aksesori. 14.2 Penyebutharga yang berjaya mesti bersama-sama MTIB dalam memeriksa penyusunan tapak yang sudah disempurnakan dan jika tidak dipersetujui, mestilah memberi notis bertulis bagi sebarang pertukaran yang dikehendaki. 15.0 PERALATAN SAMPINGAN 15.1 Penyebutharga mungkin mencadangkan aksesori tambahan yang boleh digunakan dalam perkakasan yang ditawarkan atau bagi menyempurnakan konfigurasi bagi sistem yang dicadangkan. Item ini mesti dinilaikan dengan harga yang berasingan. Bagaimanapun, MTIB berhak untuk mencadangkan samaada aksesori tambahan ini perlu dibeli dan melihat pula kepada keperluan yang berkaitan. 16.0 TEMPOH PEMBEKALAN DAN PEMASANGAN PERALATAN 16.1 Pembekal adalah dikehendaki menyempurnakan pembekalan, pemasangan dan pengujian semua peralatan berkaitan dalam tempoh maksimum 75 hari (21/2 bulan) daripada tarikh surat setuju terima ditandatangani (tidak termasuk 30 hari penerimaan sementara dan 30 hari penerimaan akhir). 10 17.0 JADUAL PELAKSANAAN 17.1 Penyebutharga dikehendaki menyediakan satu Jadual Pelaksanaan Pembekalan peralatan yang terperinci dan lengkap bagi tujuan penghantaran, pemasangan, pengujian dan pengtauliahan bagi peralatan yang dicadangkan kepada MTIB. 18.0 TEMPOH JAMINAN 18.1 Sistem yang ditawarkan hendaklah dilitupi dengan tempoh jaminan tidak kurang daripada tiga (3) tahun daripada tarikh penerimaan akhir. 18.2 Dalam tempoh jaminan ini semua khidmat baikpulih, penyenggaraan, penggantian peralatan yang rosak dan kos buruh hendaklah diberi secara onsite dan percuma. Penyebutharga yang menawarkan tempoh jaminan yang lebih lama dan syarat-syarat yang lebih baik akan diberi keutamaan. Sila cadangkan tempoh jaminan bagi sistem kabel dan setiap peralatan (Bahagian V ( S1)). 19.0 KHIDMAT SOKONGAN DAN PENYENGGARAAN 19.1 Jika diperlukan, pembekal yang berjaya boleh dikehendaki menyedia dan memberikan khidmat penyenggaraan dan sokongan selepas tamat tempoh jaminan dengan pihak MTIB, berasaskan suatu perjanjian penyenggaraan yang akan ditentukan kemudian. 20.0 PENERIMAAN SEMENTARA 20.1 Pengujian penerimaan sementara dijalankan ke atas peralatan yang dibekalkan untuk tempoh tiga puluh (30) hari dari tarikh siap pemasangan. MTIB akan memaklumkan secara bertulis tarikh penerimaan sementara sekiranya peralatan tersebut berfungsi dengan sepenuhnya dan sistem down time tidak melebihi 5 %. Sistem down 11 time bermaksud tempoh apabila peralatan tidak dapat berfungsi kerana sistem breakdown. 20.2 MTIB mempunyai hak untuk melanjutkan tempoh ujian bagi penerimaan sementara sekiranya terdapat sebarang peralatan yang tidak berfungsi kerana kesilapan/kelemahan dalam pemasangan, mutu kerja (workmanship) atau kecacatan pada peralatan. 21.0 PENERIMAAN AKHIR 21.1 Pengujian penerimaan akhir akan dijalankan untuk tempoh enam puluh (30) hari dari tarikh penerimaan sementara. Dalam tempoh tersebut, penyebutharga bertanggungjawab membetulkan sebarang kelemahan yang dikesan. MTIB akan memaklumkan secara bertulis tarikh penerimaan akhir sekiranya dalam tempoh berkenaan peralatan tersebut berfungsi dengan sepenuhnya dengan sistem downtime tidak melebihi 1 %. 21.2 Sekiranya peralatan tersebut gagal memenuhi ciri-ciri yang dikehendaki walaupun kerja-kerja pembaikan telah dijalankan oleh penyebutharga dalam tempoh yang telah dinyatakan, MTIB berhak mendapatkan gantian. Sekiranya peralatan tersebut perlu diganti dengan yang lain, pihak penyebutharga hendaklah menanggung segala kos yang terlibat. 21.3 MTIB mempunyai hak untuk melanjutkan tempoh ujian sekiranya terdapat sebarang peralatan yang tidak berfungsi kerana kesilapan atau kelemahan dalam pemasangan, mutu kerja (workmanship) atau kecacatan pada peralatan. 22.0 JADUAL BAYARAN 22.1 Pembekal yang berjaya akan ditawarkan harga kontrak mengikut peratusan berdasarkan kepada jadual seperti dibawah :- 12 i. Selepas penerimaan setuju terima : 20% daripada harga kontrak ii. Selepas penghantaran, pemasangan : 50% daripada harga dan konfigurasi kontrak iii. Selepas penerimaan sementara : 20% daripada harga kontrak iv. Selepas penerimaan akhir : 10% daripada harga kontrak 22.2 Pembayaran untuk setiap fasa tidak akan dikeluarkan sehingga fasa sebelumnya disempurnakan dan diluluskan oleh MTIB. 23.0 PENENTUAN TEKNIKAL 23.1 Penentuan teknikal yang perlu dibekalkan hendaklah memenuhi Spesifikasi Minimum Teknikal (Soal Selidik 5)). 23.2 Penyebutharga adalah dikehendaki menyatakan keterangan terperinci spesifikasi teknikal yang dicadangkan dan maklumbalas yang perlu dikepilkan bersama dokumen sebutharga. 23.3 Penyebutharga tidak dibenarkan membuat tawaran pilihan jenama bagi mana-mana item yang dimasuki bagi sebutharga ini. Jika terdapat tawaran pilihan, MTIB akan memilih tawaran pertama sahaja. 23.4 Pihak kerajaan tidak akan melayan sebarang tuntutan bagi bayaran tambahan harga akibat perbezaan antara tafsiran penyebutharga dengan tafsiran MTIB mengenai penentuan tersebut. 24.0 TEMPOH KONTRAK MTIB berhak menentukan tarikh permulaan kontrak dan tarikh tamat kontrak. 13 25.0 TARIKH TUTUP Tarikh tutup sebutharga adalah jam 12.00 tengahari. Pada 23 Jun 2011 (Khamis). Sebutharga-sebutharga hendaklah dikemukakan kepada Lembaga Perindustrian Kayu Malaysia pada atau sebelum waktu dan tarikh tersebut. Sebutharga-sebutharga yang lewat tidak akan dipertimbangkan. 14 BAHAGIAN II LATAR BELAKANG SISTEM RANGKAIAN KOMPUTER SEDIA ADA DI MTIB 15 BAHAGIAN II LATAR BELAKANG SISTEM RANGKAIAN KOMPUTER SEDIA ADA DI MTIB 1.0 Pengenalan Sistem rangakaian Sistem rangkaian komputer di ibu pejabat MTIB kali terakhir dipertingkatkan pada tahun 2002. Ini adalah untuk capaian pengguna dalaman dan luaran MTIB ke atas perkhidmatan ICT dalaman dan internet. 2.0 Sistem Rangkaian Semasa Kemudahan internet pada masa ini adalah menerusi TM Direct 2.0 Mbps dan TIME Metro-E 4.0 MBps.Talian EG*Net 2.0 Mbps telah digunakan untuk akses aplikasi EG/HRMIS. Sistem rangkaian dalaman MTIB berkeupayaan 100/1000 Mbps yang berada pada bangunan utama PGRM1(LAN 1) serta PGRM 2( LAN2). Pengkabelan backbone yang terletak diantara Core Switch di tingkat 16 Bilik Server PGRM 1 ke tingkat 10, 13 dan 14 menggunakan Fiber.UTP untuk tingkat 15,17 dan 9. ). Bilangan keseluruhan adalah sebanyak 490 nodes. Gambarajah rangkaian semasa adalah seperti 2.1,2.2 dan 2.3. 16 2.1 Gambarajah Logikal Rangkaian Semasa 17 2.2 Gambarajah Fizikal Rangkaian Semasa 18 2.3 Pecahan Rangkaian Semasa LAN 1 dan LAN 2 19 2.4 Senarai Pelayan / Peralatan Rangkaian ( selain switch dan peralatan pengguna) Pada masa ini MTIB dilengkapi dengan komputer pelayan dan peralatan-peralatan rangkaian seperti berikut : 1. PRISMA 1 2. HP Proliant ML310 3. HP Proliant DL380 4. Dell 1850 Power Edge 5. HP Proliant DL380 6. HP Proliant BL460C 7. HP Proliant BL460C (3x) 8. HP DX200MT 9. Anti Spam 10. PRISMA 2 11. PRISMA 3 12. Link Load Balancer 13. Tandberg 14. Tellabs 8120 (Modem) 15. Cisco Servers 2600 (Router) 16. Cisco Servers 1800 (Router) 17. WS2000 Sophos Gateway AV 18. Tandberg MPS (VC) 19. Firewall 20. HP Proliant DL160G5 (2x) 21. Antivirus 22. HP Proliant DL380 20 DMZ External Internal BAHAGIAN III KEPERLUAN MINIMUM TEKNIKAL 21 BAHAGIAN III KEPERLUAN MINIMUM TEKNIKAL 1.0 Pengenalan Sebutharga ini dikeluarkan bagi membolehkan penyebutharga di kalangan pembekal-pembekal yang berkelayakan mengemukakan cadangan penyelesaian menyeluruh bagi pelaksanaan Sistem Rangkaian Komputer Network Clustering di ibupejabat MTIB. Penyelesaian yang dicadangkan mesti memenuhi keperluan asas dan minimum agar dilaksanakan dengan efisen dan platform berintegrasi untuk memastikan keberkesanan dalam pengukuhan infrastruktur rangkaian dan perkhidmatan sokongan ICT MTIB. Sistem ini diwujudkan untuk meningkatkan penyampaian perkhidmatan MTIB melalui pengoptimuman penggunaan ICT serta Perkhidmatan Elektronik. Penyebutharga-penyebutharga perlu mencadang dan memberi ― Sebutharga Bagi Membekal, Menghantar, Memasang, Menguji, Mentauliah dan Menyenggara Perkakasan (dalam tempoh jaminan) Sistem Rangkaian Komputer ( Network Clustering ) di Lembaga Perindustrian Kayu Malaysia‖. 1.1 Latar Belakang Perolehan ini dicadangkan penting bagi menyokong pelaksanaan fungsi MTIB berdasarkan keperluan pangkalan data berpusat dan pengintegrasian maklumat elektronik dengan pelbagai sistem dalaman MTIB serta agensi kerajaan berkaitan. Ini juga bagi memastikan ketersediaan tinggi infrastruktur rangkaian ICT sebagai sokongan utama dalam penyampaian perkhidmatan dan pelaksanaan aktiviti menerusi ICT kepada pelanggan 22 2.0 Skop Projek Skop kerja bagi pelaksanaan Sistem Rangkaian Komputer ( Network Clustering) adalah merangkumi penyelesaian menyeluruh perkara-perkara berikut : 2.1 Perkakasan dan perisian 2.1.1 Penyebutharga bertanggungjawab memastikan kesesuaian antara peralatan dan perisian tanpa kos tambahan tersembunyi. 2.1.2 Peralatan rangkaian dan perisian hendaklah fleksibel untuk peningkatan dan pengembangan pada masa hadapan. 2.1.3 Penyebutharga hendaklah mengemukakan cadangan spesifikasi peralatan dan penyelesaian menyeluruh sistem yang bersesuaian berdasarkan spesifikasi minimum teknikal yang diperlukan atau yang lebih baik. 2.1.4 Penyebutharga hendaklah menyenaraikan semua perisian termasuk perisian melaksanakan pihak cadangan ketiga yang penyelesaian digunakan untuk menyeluruh yang dicadangkan kepada MTIB. 2.1.5 Penyebutharga digalakkan mencadangkan konfigurasi, rekabentuk dan penyelesaian menyeluruh terbaik kepada MTIB. 2.1.6 Semua konfigurasi rangkaian mesti memenuhi keperluan di MTIB termasuk VLAN, pelayan dan keselamatan. 2.1.7 Penyebutharga juga hendaklah menyediakan gambarajah logikal dan fizikal yang dicadangkan selepas pengujian dan pentauliahan. 23 2.2 Ringkasan Keperluan Spesifikasi Minimum 2.2.1 Cadangan arkitektur rangkaian baru (LAN) MTIB berdasarkan perkara - perkara berikut : i. Ketersediaan tinggi Komponen utama rangkaian mempunyai jalur lebar yang besar dan berprestasi tinggi supaya mencapai tahap ketersediaan fizikal yang kukuh dan stabil berdasarkan ciri-ciri berikut : a) Network Core Redundancy through XVN (IRF) technology ii. b) Server Layer Redundancy c) Access Layer Redundancy Kebolehskalaan arkitektur rangkaian Semua komponen rangkaian boleh menyokong penggunaan teknologi IPV6 selaras dengan kehendak teknologi semasa dan memenuhi ciri-ciri seperti RIPng, BGP4 dan OSPFv3. Selain itu, rekabentuk rangkaian mengambilkira penyambungan mencapai 10GB antara Core Switch. 2.2.2 Sistem rangkaian setempat baru (LAN) merangkumi empat (4) komponen iaitu Core Switch, DMZ/ Server Farm Switch, Floor Access Switch dan perisian NMS (Network Management System). Keterangan lanjut adalah seperti berikut : i. Core switch Peranti utama yang bertindak menjadi perantara komunikasi di antara setiap floor switch. Paranti ini juga 24 boleh menyokong jalur lebar yang besar di samping mempunyai kabel berdaya tinggi bagi meningkatkan kelajuan talian dan lebar jalur berprestasi tinggi. ii. DMZ/Server Farm Switch Sebuah peranti yang akan dihubungkan dengan core switch dan firewall memastikan kelancaran laluan data disamping memiliki ciri-ciri dual stack platform Ipv4 dan Ipv6. iii. Floor switch Peranti yang diletakkan di setiap tingkat untuk hubungan dengan Core Switch dan pengguna mengakses data. iv. Perisian Network Management System ( NMS) Perisian Network Management System bermaksud sistem perisian termasuk konfigurasi, integrasi dan ‗customization’ yang mengawal operasi keseluruhan. Ini termasuk sebagai rujukan penyelesaian kepada masalah rangkaian berkaitan serta notifikaso automatik kepada pentadbir rangkaian menerusi emel dan sms. 2.2.3 Kapasiti i. Sistem rangkaian LAN baru hendaklah berupaya untuk berkomunikasi dengan pelayan-pelayan yang sediada menerusi konfigurasi IPV4 dan untuk menggunakan IPV6 . 25 memastikan beralih kepada kesediaan serta teknologi yang ii. Rekabentuk rangkaian hendaklah mengambilkira konsep redundant melibatkan penyambungan mencapai 10 Gigabit antara setiap core switch. iii. Core Switch yang dicadangkan juga dikehendaki untuk menyokong pengembangan rangkaian sehingga mencapai 384 Gpbs . Ini boleh digunakan oleh aplikasi yang memerlukan rangkaian jalur lebar berprestasi tinggi seperti Voice Over Internet Protocol (VoIP), 3G dan aplikasi yang menggunakan persidangan video; atau jalur lebar berprestasi rendah seperti komunikasi tanpa wayar. iv. Sistem rangkaian sehingga ke pengguna perlu mencapai keupayaan 1 Gbps. v. Sistem/ peralatan rangkaian yang dicadangkan juga perlu bersedia untuk peningkatan akan datang kepada 10 Gb ( sehingga ke peringkat DMZ/servers dan Backbone / Access Switch). 26 3.0 Cadangan Gambarajah Fizikal Rangkaian Baru MTIB 27 4.0 Bilangan Node Rangkaian bagi Setiap Tingkat Bilangan node rangkaian (‗data point‘) yang perlu dihubungkan dengan rangkaian baru MTIB adalah seperti berikut : Tingkat Bilangan nodes/pengguna terkini Menara PGRM 1 17 44 16 142 15 115 14 115 13 68 Menara PGRM 2 10 110 9 40 Jumlah 634 28 5.0 Spesifikasi Teknikal Terperinci Penyebutharga dikehendaki mencadangkan perkakasan dan perisian berdasarkan spesifikasi minimum teknikal yang diperlukan seperti berikut: ITEM 1 : CORE SWITCH (2 unit) Spesifikasi Teknikal Terperinci Core Switch A) i. A) 1 unit Core Switch Chasis ii. iii. iv. 2 unit 1400W AC Power Supply 1 unit 384 Gbps Fabric Module 1 unit 24 port Gig-T Module v. 1 unit 24-Port GbE SFP Module vi. 2 unit 10G XFP LC SR Tranceiver vii. 1 unit 1G SFP LC LX Tranceiver viii. 5 unit 1G SFP LC SX Tranceiver (item ii-viii : for each unit of Core Switch Chassis) Capacity and Performance Requirement 1 Min. 5-slot chassis, with two slots for load-sharing switch fabrics and three slots for switching I/O modules, supports a maximum of 28 10Gigabit ports or 144 10/100/1000 ports auto-sensing 10/100/1000 ports or 288 SFP ports, or a combination 2 3 4 5 6 7 8 9 B) Support 276 Mpps throughput performance Support 480 Gbps switching performance Support 256, 000 entries of routing table size Support 512, 000 entries of MAC address table size Support VPN Firewall Module Support Load Balancing Module Support Netstream Module Support Wireless Controller Module Layer 2 Switching 1 Supports up to 1024 port or IEEE 802.1Q-based VLANs 2 Supports MAC-based VLANs, protocol-based VLANs, and IP-subnetbased VLANs for added flexibility 29 3 4 5 6 Support port isolation Support BPDU tunneling Support GARP VLAN Registration Protocol (GVRP) Support port mirroring (up to 4 mirroring groups, with unlimited number of ports per group 7 Supports standard IEEE 802.1D Spanning Tree Protocol, IEEE 802.1w Rapid Spanning Tree Protocol for faster convergence, and IEEE 802.1s Multiple Spanning Tree Protocol 8 9 10 11 C) Support IGMP and MLD snooping Support Device Link Detection Protocol (DLDP) Support IEEE 802.1ad QinQ and Selective QinQ Support Super VLAN (RFC 3069), also called VLAN aggregation, is used to save IP address space Layer 3 Services 1 Support Address Resolution Protocol (ARP): static ARP, gratuitous ARP and proxy ARP 2 Support User Datagram Protocol (UDP) helper 3 Support Dynamic Host Configuration Protocol (DHCP) 4 Support Domain Name System (DNS) 5 Support Static IPv4 routing 6 Support Routing Information Protocol (RIP); RIPv1 and RIPv2 7 Support OSPF, including ECMP, NSSA, and MD5 authentication for increased security and graceful restart for faster failure recovery 8 Support Intermediate system to intermediate system (IS-IS) 9 Support Border Gateway Protocol 4 (BGP-4) 10 Support policy-based routing 11 Support IP performance optimization: set of tools to optimize performance of IPv4 networks; includes directed broadcasts, customization of TCP parameters, support of ICNP error packets, and extensive display capabilities 12 Support Unicast Reverse Path Forwarding (uRPF) 13 Support Static IPv6 routing 14 Support Dual stack: maintains separate stacks for IPv4 and IPv6 to ease transition from an IPv4-only network to an IPv6-only network design 15 Support Routing Information Protocol next generation (RIPng) 16 17 18 19 20 21 22 23 24 D) Support OSPFv3 Support IS-IS for IPv6 Support BGP+ Support IPv6 tunneling Support Multiprotocol Label Switching (MPLS) Support Multiprotocol Label Switching (MPLS) Layer 3 VPN Support Multiprotocol Label Switching (MPLS) Layer 2 VPN Support Virtual Private LAN Service (VPLS) Support service loopback Security 30 1 Supports powerful ACLs for both IPv4 and IPv6 2 Support RADIUS and TACACS+ 3 Support switch management logon security for RADIUS or TACACS+ authentication for secure switch CLI logon 4 Support Secure Shell (SSHv2) 5 Support DHCP snooping 6 Support IP source guard 7 Support ARP attack protection 8 Support port security 9 Support IEEE 802.1X: provides port-based user authentication with support for Extensible Authentication Protocol (EAP) MD5, TLS, TTLS, and PEAP with choice of AES, TKIP, and static or dynamic WEP encryption for protecting wireless traffic between authenticated clients and the access point 10 Support MAC authentication 11 Support multiple user authentication methods as below: - IEEE 802.1X: industry-standard method of user authentication using an IEEE 802.1X supplicant on the client in conjunction with a RADIUS server - Web-based authentication: similar to IEEE 802.1X, it provides a browser-based environment to authenticate clients that do not support the IEEE 802.1X supplicant - MAC-based authentication: client is authenticated with the RADIUS server based on the client's MAC address 12 Support DHCP protection 13 Support Endpoint Admission Defense (EAD) 14 Support port isolation E) Quality of Service (QoS) 1 Support IEEE 802.1p prioritization 2 Support Class of Service (CoS): sets the IEEE 802.1p priority tag based on IP address, IP Type of Service (ToS), Layer 3 protocol, TCP/UDP port number, source port, and DiffServ 3 Support Bandwidth shaping as below: - Port-based rate limiting: provides per-port ingress/egress enforced maximum bandwidth - Classifier-based rate limiting: uses access control list (ACL) to enforce maximum bandwidth for ingress traffic on each port - Guaranteed minimum: provides per-port, per-queue egress-based guaranteed minimum bandwidth 4 Support congestion avoidance: weighted Random Early Detection (WRED)/RED 5 Support congestion actions: strict priority (SP) queuing, weighted round robin (WRR), WFQ, and WRED 6 Support supports Committed Access Rate (CAR) and line rate F) Intrusion detection/prevention system (IDS/IPS) 31 1 Supports deep packet inspection and examines the packet payload as well as the frame and packet headers 2 Support signature-based detection 3 Support protocol anomaly-based detection 4 Support severity-based action policies 5 Support signature update service G) Firewall 1 2 3 4 H) Support stateful firewall Support zone-based access policies Support Application-level gateway (ALG) Support NAT/PAT Virtual Private Network (VPN) 1 Support IPSec feature 2 Support Generic Routing Encapsulation (GRE) 3 Support manual or automatic key exchange (IKE) I) Resiliency and high availability 1 2 3 4.0 5.0 6.0 7.0 Support redundant/Load-sharing fabrics, management, fan assemblies, and power supplies Support hot swappable for all the modules Support dual internal power supplies Support separate data and control paths Support passive design system: backplane has no active components for increased system reliability Support IEEE 802.3ad Link Aggregation Control Protocol (LACP): supports up to 128 trunks, each with 8 links per trunk; supports static or dynamic groups and userselectable hashing algorithm Support to creates virtual resilient switching fabrics, where two or more switches perform as a single Layer 2 switch, Layer 3 router; switches do not have to be co-located and can be part of a disaster recovery system; servers or switches can be attached using standard LACP for automatic load-balancing and high availability; simplifies network operation by eliminating the complexity of Spanning Tree, Equal-Cost Multipath (ECMP), or VRRP 8.0 Support Ring Resiliency Protection Protocol (RRPP): provides standard sub 200 ms recovery for ring Ethernet-based topology 9.0 Support Virtual Router Redundancy Protocol (VRRP) 10.0 Support hitless patch upgrades 11.0 Support graceful restart for OSPF, IS-IS, BGP, LDP, and RSVP 12.0 Support ultrafast protocol convergence (< 50 ms) with standard-based failure detection—Bidirectional Forwarding Detection (BFD): enables link connectivity monitoring and reduces network convergence time for RIP, OSPF, BGP, IS-IS, VRRP, MPLS, and IRF 32 13.0 Support smart link: allows 50 ms failover between links J) Convergence 1.0 Support LLDP-MED (Media Endpoint Discovery) 2.0 Support Multicast Source Discovery Protocol (MSDP) 3.0 Support Internet Group Management Protocol (IGMP): is used by IP hosts to establish and maintain multicast groups; supports v1, v2, and v3; utilizes Any-Source Multicast (ASM) or Source-Specific Multicast (SSM) to manage IPv4 multicast networks 4.0 Support Protocol Independent Multicast (PIM): is used for IPv4 and IPv6 multicast applications; supports PIM dense mode (PIM-DM), sparse mode (PIM-SM), and source-specific mode (PIM-SSM) 5.0 Support Multicast Border Gateway Protocol (MBGP) 6.0 Support Multicast Listener Discovery (MLD) protocol 7.0 Support Multicast VLAN 8.0 Support Voice VLAN K) Warranty & Maintenance 1.0 3 years 24 x 7 hardware replacement (include engineer onsite plus 2 hours response time onsite hardware support) 2.0 a) The hardware warranty period shall be minimum of 36 months (3 years) upon the issue of practical completion certificate. The extension of the hardware warranty (directly from manufacturer) life time warranty is required. The warranty must includes: - Unlimited phone calls support directly from manufacturer - Manufacturer continues to provide Hardware Replacement even after the End of Sales of the supplied equipment. 33 ITEM 2 : DMZ / SERVER FARM SWITCH (1 UNIT) Spesifikasi Teknikal Terperinci A) DMZ / Server Farm Switch i. 24 port 10/100/1000 Switch ii. 2 units SX 1G SFP LC SX Tranciever (item ii one unit for relevant switch) A) Ports and Performance 1.0 24 RJ-45 autosensing 10/100/1000 ports (IEEE 802.3 Type 10BASE-T, IEEE 802.3u Type 100BASE-TX, IEEE 802.3ab Type 1000BASE-T); Duplex: 10BASE-T/100BASE-TX: half or full; 1000BASE-T: full only 2.0 Support 1 extended module slot 3.0 Support 4 fixed 1000/10000 SFP+ ports 4.0 Support 1 RJ-45 serial console port 5.0 Support 512 MB SDRAM, 512 MB flash; packet buffer size: 4 MB 6.0 Support 358 BTU/hr (377.69 kJ/hr) 7.0 Suppport 155 million pps throughput 8.0 Support 208 Gbps routing/switching capacity 9.0 Support 16,000 entries of routing table size 10.0 Support 32,000 entries of MAC address table size 11.0 Support to creates virtual resilient switching fabrics, where two or more switches perform as a single Layer 2 switch, Layer 3 router; switches do not have to be co-located and can be part of a disaster recovery system; servers or switches can be attached using standard LACP for automatic load-balancing and high availability; simplifies network operation by eliminating the complexity of Spanning Tree, Equal-Cost Multipath (ECMP), or VRRP 12.0 Support accessories module as below: - 4-port 10-GbE SFP+ Module - 2-port 10-GbE SFP+ Module - 16-port Gig-T Module - 16-port GbE SFP Module - Wireless Controller Module (up to 64 Access Point licenses) B) Layer 2 Switching 1.0 Support GARP VLAN Registration Protocol (GVRP) which allows automatic learning and dynamic assignment of VLANs 2.0 3.0 4.0 5.0 6.0 7.0 8.0 Support 32K MAC addresses Support 4094 port-based VLANs Support IEEE 802.1ad QinQ and Selective QinQ Support Gigabit Ethernet port aggregation Support 10 GbE port aggregation Support Spanning Tree/MSTP, RSTP, and STP Root Guard Support IPFIX/sFlow 34 C) 1.0 2.0 3.0 4.0 5.0 6.0 Layer 3 Features Support Address Resolution Protocol (ARP) Support static ARPs; gratuitous ARP and proxy ARP Support Dynamic Host Configuration Protocol (DHCP) client, relay and server Support Layer 3 IPv4 routing: static routes, RIP and RIPv2, OSPF, IS-IS, and BGP Support Layer 3 IPv6 routing: static routes, RIPng, OSPFv3, IS-ISv6, and BGP4+ Support Bidirectional Forwarding Detection (BFD) to enables link connectivity monitoring and reduces network convergence time for RIP, OSPF, BGP, IS-IS, VRRP, MPLS, and IRF 7.0 Support Virtual Router Redundancy Protocol (VRRP) and VRRP Extended 8.0 9.0 10.0 11.0 12.0 Support policy based routing Support IGMPv1, v2, and v3 Support PIM-SSM, PIM-DM, and PIM-SM (for IPv4 and IPv6) Support Equal-Cost Multipath (ECMP) Support of MPLS, including MPLS VPNs and MPLS Traffic Engineering (MPLS TE) 13.0 Support of VPLS for data center to data center communication at Layer 2; provides support of hierarchical VPLS for scalability 14.0 Support IPv6 native as below: - IPv6 host - Dual stack (IPv4/IPv6) - MLD snooping - IPv6 ACL/QoS - IPv6 routing D) Security 1.0 Support Unicast Reverse Path Forwarding (URPF) 2.0 Support denial-of-service (DoS) attacks and DHCP snooping 3.0 Support advanced processor queuing mechanism which helps prevent denial-of-service (DoS) attacks, while DHCP snooping helps ensure that devices can only receive an IP address from a legitimate DHCP server on the network 4.0 Support IEEE 802.1X-based dynamic delivery of QoS, ACLs, and VLANs 5.0 Support Guest VLAN 6.0 Support port isolation 7.0 Support MAC-based authentication 8.0 Support IP source guard 9.0 Support HTTPS management 10.0 Support Multi-Customer Edge (MCE)-Multicast Virtual Routing and Forwarding (MVRF) 11.0 Support Public Key Infrastructure (PKI) 12.0 Support RADIUS/HWTACACS 13.0 Support Secure Shell (SSHv2) 14.0 Support IP Source Guard 35 E) Quality of Service (QoS) 1.0 Support powerful QoS feature which creates traffic classes based on ACLs, IEEE 802.1p precedence, IP, DSCP or ToS precedence 2.0 Support filter, redirect, mirror, or remark 3.0 Supports strict priority queuing (SP), weighted round robin (WRR), weighted fair queuing (WFQ), weighted random early discard (WRED), weighted deficit round robin (WDRR), and SP+WDRR F) Convergence 1.0 Support Voice VLAN to automatically assigns VLAN and priority for IP phones 2.0 Support IGMP v1, v2, and v3 3.0 Support PIM dense mode (DM), sparse mode (SM), and source-specific mode (SSM) 4.0 Support LLDP-MED G) Monitor and diagnostic 1.0 Support port mirroring to enables traffic on a port to be simultaneously sent to a network analyzer for monitoring 2.0 Support OAM (IEEE 802.3ah) to detects data link layer problems that occurred in the ―last mile"; monitors the status of the link between the two devices 3.0 Support CFD (IEEE 802.1ag) to provides a Layer 2 link Operations, Administration and Maintenance (OAM) mechanism used for link connectivity detection and fault locating H) Management 1.0 Support remote configuration and management 2.0 Support IEEE 802.1ab LLDP discovery 3.0 USB Support to allows users to copy switch files to and from a USB flash drive 4.0 Support DHCP options as below: - DNS Relay and SMTP Redirection - DHCP: Server (RFC 2131), Client, and Option-82 Relay (RFC 3046) 5.0 Support SNMPv1, v2c, and v3 6.0 Support full feature CLI and web interface 7.0 Support Remote monitoring (RMON): events, alarm, history, and statistics group I) Warranty & Maintenance 1.0 a) The hardware warranty period shall be minimum of 36 months (3 years) upon the issue of practical completion certificate. The extension of the hardware warranty (directly from manufacturer) life time warranty is required. The warranty must includes: - Unlimited phone calls support directly from manufacturer 36 - Manufacturer continues to provide Hardware Replacement even after the End of Sales of the supplied equipment. ITEM 3 : ACCESS SWITCH 1 (6 UNIT) Spesifikasi Teknikal Terperinci A) Access Switch 1 (With Slots) i. 48 port 10/100/1000 Switch with 2 slot ii. 11 units X120 1G SFP LC SX Transceiver (item ii one unit for relevant switch) A) Ports and Performance 1.0 Support 48 RJ-45 auto-sensing 10/100/1000 ports (IEEE 802.3 Type 10Base-T, IEEE 802.3u Type 100Base-TX, IEEE 802.3ab Type 1000BaseT); Media Type: Auto-MDIX; Duplex: 10Base-T/100Base-TX: half or full; 1000Base-T: full only 2.0 Support 4 dual-personality ports; auto-sensing 10/100/1000Base-T or SFP 3.0 4.0 5.0 Support 2 port expansion module slots Support 1 RJ-45 serial console port Supports a maximum of 48 auto-sensing 10/100/1000 ports 6.0 7.0 8.0 9.0 10.0 11.0 12.0 Support < 3.2 μs 1000 Mb latency Support < 2.6 μs 10 Gbps latency Support 130.9 million pps throughput Suppport 176 Gbps routing/switching capacity Support 32 entries of routing table size Supports up to 9216-byte frame size Support high-bandwidth CX4 local stacking to achieves 12 Gbps per connection, allowing for up to 96 Gbps total stacking bandwidth (full duplex) in a resilient stacking configuration 13.0 Support virtualizes multiple devices as one logical device; to deliver advantages in reliability, distributed deployment, and easy management B) 1.0 2.0 3.0 4.0 5.0 6.0 C) Layer 2 Switching Supports 16K MAC address table support IEEE 802.1Q, with 4094 simultaneous VLAN IDs Support GARP VLAN Registration Protocol (GVRP) Support IEEE 802.1ad QinQ and Selective QinQ Support 10 GbE port aggregation Support IGMP and MLD snooping Layer 3 Services 37 1.0 Support Address Resolution Protocol (ARP): static ARP, gratuitous ARP and proxy ARP 2.0 Support Dynamic Host Configuration Protocol (DHCP) client and Relay 3.0 4.0 5.0 D) 1.0 2.0 3.0 4.0 5.0 7.0 8.0 9.0 10.0 11.0 12.0 13.0 14.0 15.0 16.0 17.0 18.0 E) 1.0 2.0 3.0 Support loopback interface address Support User Datagram Protocol (UDP) helper function Support static routing to provides manually configured routing for both IPv4 and IPv6 networks Security Support Access Control Lits (ACLs) which provides IP Layer 2 to Layer 4 traffic filtering supports global ACL, VLAN ACL, port ACL, and IPv6 ACL Support IEEE 802.1X Support MAC based authentication Support identity-driven security and access control as below: - Per-user ACLs - Automatic VLAN assignment Support securely encrypts all access methods (CLI, GUI, or MIB) through SSHv2, SSL, and/or SNMPv3 Support Secure File Transfer Protocol (FTP) Support Guest VLAN Support Endpoint Admission Defense (EAD) Support port security Support port isolation Support STP BPDU port protection Support STP root guard Support DHCP protection which blocks DHCP packets from unauthorized DHCP servers, preventing denial-of-service attacks Support IP source guard Support dynamic ARP protection Support RADIUS/HWTACACS Quality of Service (QoS) Support broadcast control Support Advanced classifier-based QoS: classifies traffic using multiple match criteria based on Layer 2, 3, and 4 information Support applies QoS policies such as setting priority level and rate limit to selected traffic on a port, VLAN, or whole switch 4.0 supports the following congestion actions: strict priority (SP) queuing, weighted round robin (WRR), and SP+WRR 5.0 supports Committed Access Rate (CAR) and line rate F) 1.0 2.0 3.0 4.0 Convergence Support IEEE 802.1AB Link Layer Discovery Protocol (LLDP) Support LLDP-MED Support LLDP-CDP compatibility Support voice VLAN which automatically assigns VLAN and priority for IP phones 38 5.0 Support IP multicast snooping (data-driven IGMP) G) 1.0 2.0 3.0 4.0 5.0 6.0 7.0 8.0 9.0 10.0 Management Support remote configuration and management Support manager and operator privilege levels Support HWTACACS Support Secure Web GUI Support complete session logging Support SNMPv1, v2c, and v3 Support Remote monitoring (RMON) Support IEEE 802.1AB Link Layer Discovery Protocol (LLDP) Support sFlow (RFC 3176) Support Remote Intelligent Mirroring which mirrors ingress/egress ACLselected traffic from a switch port or VLAN to a local or remote switch port anywhere on the network 11.0 12.0 Support Device Link Detection Protocol (DLDP) Supports pingv6, tracertv6, Telnetv6, TFTPv6, DNSv6, syslogv6, FTPv6, SNMPv6, DHCPv6, and RADIUS for IPv6 K) 1.0 Warranty & Maintenance a) The hardware warranty period shall be minimum of 36 months (3 years) upon the issue of practical completion certificate. The extension of the hardware warranty (directly from manufacturer) life time warranty is required. The warranty must includes: - Unlimited phone calls support directly from manufacturer - Manufacturer continues to provide Hardware Replacement even after the End of Sales of the supplied equipment. ITEM 4 : ACCESS SWITCH 2 (3 UNIT) Spesifikasi Teknikal Ditetapkan A) Access Switch i. 48 port 10/100/1000 Switch A) Ports and Performance 1.0 Support 48 RJ-45 auto-sensing 10/100/1000 ports (IEEE 802.3 Type 10Base-T, IEEE 802.3u Type 100Base-TX, IEEE 802.3ab Type 1000Base-T); Media Type: Auto-MDIX; Duplex: 10Base-T/100Base-TX: half or full; 1000Base-T: full only 2.0 Support 4 dual-personality ports; auto-sensing 10/100/1000Base-T or SFP 3.0 Support 1 RJ-45 serial console port 4.0 Supports a maximum of 48 auto-sensing 10/100/1000 ports 39 5.0 6.0 7.0 8.0 9.0 10.0 11.0 Support < 3.2 μs 1000 Mb latency Support < 2.6 μs 10 Gbps latency Support 130.9 million pps throughput Suppport 176 Gbps routing/switching capacity Support 32 entries of routing table size Supports up to 9216-byte frame size Support high-bandwidth CX4 local stacking to achieves 12 Gbps per connection, allowing for up to 96 Gbps total stacking bandwidth (full duplex) in a resilient stacking configuration 12.0 Support virtualizes multiple devices as one logical device; to deliver advantages in reliability, distributed deployment, and easy management B) 1.0 2.0 3.0 4.0 5.0 6.0 Layer 2 Switching Supports 16K MAC address table support IEEE 802.1Q, with 4094 simultaneous VLAN IDs Support GARP VLAN Registration Protocol (GVRP) Support IEEE 802.1ad QinQ and Selective QinQ Support 10 GbE port aggregation Support IGMP and MLD snooping Layer 3 Services C) 1.0 Support Address Resolution Protocol (ARP): static ARP, gratuitous ARP and proxy ARP 2.0 Support Dynamic Host Configuration Protocol (DHCP) client and Relay 3.0 Support loopback interface address 4.0 Support User Datagram Protocol (UDP) helper function 5.0 Support static routing to provides manually configured routing for both IPv4 and IPv6 networks Security D) 1.0 Support Access Control Lits (ACLs) which provides IP Layer 2 to Layer 4 traffic filtering 2.0 supports global ACL, VLAN ACL, port ACL, and IPv6 ACL 3.0 Support IEEE 802.1X 4.0 Support MAC based authentication 5.0 Support identity-driven security and access control as below: 7.0 8.0 9.0 10.0 11.0 12.0 13.0 14.0 15.0 - Per-user ACLs - Automatic VLAN assignment Support securely encrypts all access methods (CLI, GUI, or MIB) through SSHv2, SSL, and/or SNMPv3 Support Secure File Transfer Protocol (FTP) Support Guest VLAN Support Endpoint Admission Defense (EAD) Support port security Support port isolation Support STP BPDU port protection Support STP root guard Support DHCP protection which blocks DHCP packets from unauthorized DHCP servers, preventing denial-of-service attacks 40 16.0 Support IP source guard 17.0 Support dynamic ARP protection 18.0 Support RADIUS/HWTACACS Quality of Service (QoS) E) 1.0 Support broadcast control 2.0 Support Advanced classifier-based QoS: classifies traffic using multiple match criteria based on Layer 2, 3, and 4 information 3.0 Support applies QoS policies such as setting priority level and rate limit to selected traffic on a port, VLAN, or whole switch 4.0 supports the following congestion actions: strict priority (SP) queuing, weighted round robin (WRR), and SP+WRR 5.0 supports Committed Access Rate (CAR) and line rate F) 1.0 2.0 3.0 4.0 Convergence Support IEEE 802.1AB Link Layer Discovery Protocol (LLDP) Support LLDP-MED Support LLDP-CDP compatibility Support voice VLAN which automatically assigns VLAN and priority for IP phones 5.0 Support IP multicast snooping (data-driven IGMP) G) 1.0 2.0 3.0 4.0 5.0 6.0 7.0 8.0 9.0 10.0 Management Support remote configuration and management Support manager and operator privilege levels Support HWTACACS Support Secure Web GUI Support complete session logging Support SNMPv1, v2c, and v3 Support Remote monitoring (RMON) Support IEEE 802.1AB Link Layer Discovery Protocol (LLDP) Support sFlow (RFC 3176) Support Remote Intelligent Mirroring which mirrors ingress/egress ACLselected traffic from a switch port or VLAN to a local or remote switch port anywhere on the network 11.0 Support Device Link Detection Protocol (DLDP) 12.0 Supports pingv6, tracertv6, Telnetv6, TFTPv6, DNSv6, syslogv6, FTPv6, SNMPv6, DHCPv6, and RADIUS for IPv6 K) Warranty & Maintenance 1.0 a) The hardware warranty period shall be minimum of 36 months (3 years) upon the issue of practical completion certificate. The extension of the hardware warranty (directly from manufacturer) life time warranty is required. The warranty must includes: - Unlimited phone calls support directly from manufacturer - Manufacturer continues to provide Hardware Replacement even after the End of Sales of the supplied equipment. 41 ITEM 5 : ACCESS SWITCH 3 (3 UNIT) Spesifikasi Teknikal Ditetapkan A) Access Switch 3 i. 24 port 10/100/1000 Switch A) Ports and Performance 1.0 Support 24 RJ-45 auto-sensing 10/100/1000 ports (IEEE 802.3 Type 10Base-T, IEEE 802.3u Type 100Base-TX, IEEE 802.3ab Type 1000Base-T); Duplex: 10BaseT/100Base-TX: half or full; 1000Base-T: full only 2.0 Support 4 dual-personality ports; auto-sensing 10/100/1000Base-T or SFP 3.0 Support 1 RJ-45 serial console port 4.0 Support < 3.2 μs 1000 Mb latency 5.0 Support < 2.6 μs 10 Gbps latency 6.0 Support 95.2 million pps throughput 7.0 Suppport 128 Gbps routing/switching capacity 8.0 Support 32 entries of routing table size 9.0 Supports up to 9216-byte frame size 10.0 Support high-bandwidth CX4 local stacking to achieves 12 Gbps per connection, allowing for up to 96 Gbps total stacking bandwidth (full duplex) in a resilient stacking configuration 11.0 Support virtualizes multiple devices as one logical device; to deliver advantages in reliability, distributed deployment, and easy management B) 1.0 2.0 3.0 4.0 5.0 6.0 Layer 2 Switching Supports 16K MAC address table support IEEE 802.1Q, with 4094 simultaneous VLAN IDs Support GARP VLAN Registration Protocol (GVRP) Support IEEE 802.1ad QinQ and Selective QinQ Support 10 GbE port aggregation Support IGMP and MLD snooping C) Layer 3 Services 1.0 Support Address Resolution Protocol (ARP): static ARP, gratuitous ARP and proxy ARP 2.0 Support Dynamic Host Configuration Protocol (DHCP) client and Relay 3.0 Support loopback interface address 4.0 Support User Datagram Protocol (UDP) helper function 5.0 Support static routing to provides manually configured routing for both IPv4 and IPv6 networks D) Security 1.0 Support Access Control Lits (ACLs) which provides IP Layer 2 to Layer 4 traffic filtering 2.0 supports global ACL, VLAN ACL, port ACL, and IPv6 ACL 42 3.0 Support IEEE 802.1X 4.0 Support MAC based authentication 5.0 Support identity-driven security and access control as below: - Per-user ACLs - Automatic VLAN assignment 7.0 Support securely encrypts all access methods (CLI, GUI, or MIB) through SSHv2, SSL, and/or SNMPv3 8.0 Support Secure File Transfer Protocol (FTP) 9.0 Support Guest VLAN 10.0 Support Endpoint Admission Defense (EAD) 11.0 Support port security 12.0 Support port isolation 13.0 Support STP BPDU port protection 14.0 Support STP root guard 15.0 Support DHCP protection which blocks DHCP packets from unauthorized DHCP servers, preventing denial-of-service attacks 16.0 Support IP source guard 17.0 Support dynamic ARP protection 18.0 Support RADIUS/HWTACACS E) Quality of Service (QoS) 1.0 Support broadcast control 2.0 Support Advanced classifier-based QoS: classifies traffic using multiple match criteria based on Layer 2, 3, and 4 information 3.0 Support applies QoS policies such as setting priority level and rate limit to selected traffic on a port, VLAN, or whole switch 4.0 supports the following congestion actions: strict priority (SP) queuing, weighted round robin (WRR), and SP+WRR 5.0 supports Committed Access Rate (CAR) and line rate F) 1.0 2.0 3.0 4.0 Convergence Support IEEE 802.1AB Link Layer Discovery Protocol (LLDP) Support LLDP-MED Support LLDP-CDP compatibility Support voice VLAN which automatically assigns VLAN and priority for IP phones 5.0 Support IP multicast snooping (data-driven IGMP) G) 1.0 2.0 3.0 4.0 5.0 6.0 7.0 8.0 9.0 10.0 Management Support remote configuration and management Support manager and operator privilege levels Support HWTACACS Support Secure Web GUI Support complete session logging Support SNMPv1, v2c, and v3 Support Remote monitoring (RMON) Support IEEE 802.1AB Link Layer Discovery Protocol (LLDP) Support sFlow (RFC 3176) Support Remote Intelligent Mirroring which mirrors ingress/egress ACLselected traffic from a switch port or VLAN to a local or remote switch port anywhere on the network 43 11.0 Support Device Link Detection Protocol (DLDP) 12.0 Supports pingv6, tracertv6, Telnetv6, TFTPv6, DNSv6, syslogv6, FTPv6, SNMPv6, DHCPv6, and RADIUS for IPv6 K) Warranty & Maintenance 1.0 a) The hardware warranty period shall be minimum of 36 months (3 years) upon the issue of practical completion certificate. The extension of the hardware warranty (directly from manufacturer) life time warranty is required. The warranty must includes: - Unlimited phone calls support directly from manufacturer - Manufacturer continues to provide Hardware Replacement even after the End of Sales of the supplied equipment. ITEM 6 : Network Cabling (Lot) Spesifikasi Teknikal Terperinci A) Network Cabling 1.0 6 Core Premiumline Fiber Optic Cable 50/125 um Indoor type of fiber optic cable Multimode 50/125 micron fiber From level 13 to 16 , level 14 to 16, level 15 to 16,level 16 to 16, level 17 to 16 2.0 Supply and install 24 Port Fiber Patch Panel – 1 unit a. 1U Loaded SC Duplex Fiber Patch Panel b. 24 Port c/w SC Connector 3.0 Supply and install 6 Port Fiber Patch Panel – 4 unit (floor) a. 1U Loaded SC Duplex Fiber Patch Panel b. 6 Port c/w SC Connector 4.0 Termination and testing – Lot a. Termination with fusion splicing c/w 1m pigtail b. Testing for each core at both side B) To relocate existing fibre optic cable from level 10 to 9, PGRM 2 C) UTP Cabling ( Lot) 1.0 2.0 From level 10 to 9 (Tower 2) Each core at both side D) Warranty and maintainance 3 years ( parts,replacement and engineer on site) 44 ITEM 7 : NMS (NETWORK MANAGEMENT SYSTEM) (1 UNIT) Spesifikasi Teknikal Ditetapkan i. 1 unit Network Management System (NMS) Platform (50-60 nodes) A. Objectives 1.0 Develop an affordable, easy to use and powerful web-browser-based centralize network monitoring system to provide an up-to-date and accurate network information. 2.0 Facilitate monitoring and tracking of status, performance and consumption of leased line, switches, routers and servers within each of data center network. 3.0 Provide a pro-active and cost-effective centralize notification system in order to alert administrator in the event of any devices from any data center go down. 4.0 Achieve a higher internal operating efficiency and reduce Total Cost of Ownership (TCO) through a complete and reliable NMS solution. B. Spesifications : 1.0 Reliable software for NMS 2.0 The proposed NMS shall offers single unified platform management and monitoring of entire IT infrastructure from network switches and routers to applications 3.0 The proposed NMS shall provide user-friendly windows and Unix GUI management console (web-based system) 4.0 The proposed NMS shall generally provide network and device monitoring to ease of network administrator troubleshooting 5.0 The proposed NMS shall offers a comprehensive platform that integrates network technologies and provides full fault, configuration, accounting, performance, and security management functionality for small-to-medium IT infrastructures. 6.0 The proposed NMS shall compatible with Microsoft® Windows® or Linux operating systems. C. Features and Benefits : 1.0 Key Features: a. Mapping, monitoring, notification, reporting, web-access and user access right. Describe how the proposed solution do all these. b. 45 2.0 a. b. c. d. Distributed monitoring Centralized configuration Centralized access to all data 50 - 60 nodes Unlimited number of proxies 3.0 Scalability a. Processing of thousands of availability and performance checks per second 4.0 a. b. c. d. e. f. Real-time monitoring Performance monitoring Availability monitoring Integrity monitoring Flexible notification conditions Alerting user ( email, SMS and winpop-up) Logging 5.0 a. b. c. d. Visualization User-defined views and slide shows Mapping Graphing Zooming 6.0 Fast Problem resolution a. Hierarchical IT Services b. Real-time SLA reporting 7.0 Reporting and trending a. Easy integration of 3rd party tools b. Analysis of yearly/monthly/daily statistics 8.0 Auto discovering a. Discovery by IP range, services and SNMP b. Automatic monitoring of discovered devices 9.0 Web monitoring a. Web performance and availability monitoring b. Flexible scenarios 10.0 a. b. c. d. Flexibility Support of IPv4 and IPv6 Easily extendable native agents Any notifications methods Run on any platform 11.0 Aggregation monitoring a. Monitoring of a group of hosts as a single host 12.0 Agentless monitoring 46 a. b. c. d. Monitoring of remote services (FTP,SSH,HTTP, other) Support of SNMP v1,2,3 Support of IPMI SNMP traps 13.0 a. b. c. d. e. f. g. High Performance agents All platforms supported ( UNIX, Windows, Novell) Memory utilization Network utilization Disk I/O Disk space availability File Checksums Monitoring of log files and more 14.0 a. b. c. Security Flexible user permission Authentication with password or IP Address or other else Other related 15.0 a. b. c. Escalation and notifications Repeated notifications Unlimited escalations Be notified while problem is resolved 16.0 Management functions a. Ping, traceroute to a host b. Any other functions 17.0 a. b. c. Dashboard Personalized dashboard Favourite resources High level view 18.0 Easy Administration a. All data is stored in a database b. Centralized configuration and storage in formation D. Scope of Work 1.0 Designing on the overall network monitoring structure 2.0 Installing NMS system at server/ computer 3.0 Configuring on monitoring intervals and setting up of notification alerts Mapping of monitored devices and arranging to best suit MTIB network 4.0 structure 5.0 Arranging mapping into hierarchical level 6.0 Customizing the display icon of monitored device 7.0 Configuring shape and color of device states 8.0 Configuring on devices threshold alerts 47 9.0 Configuring on components of monitoring for device such as a. Device State b. Performance Monitoring c. Active Monitoring 10.0 Setup of notification alerts based on critical level and priority 11.0 Configure on User Access Rights 12.0 Setup & testing of following notification mode; a. Email b. Sounds c. Winpopup d. SMS Testing & commissioning on NMS system upon completion of 13.0 installation 14.0 Develop the NMS solution: Customize up to 50 reports (Performance, Availability, Health, a. Downtime and utilization report). Customize grouping of notification message and sent to various level of b. personnel. c. Customize time of notifications and content of message. Document the NMS system after commissioning and administrator 15.0 training at MTIB (for 5 person) E. Provide Sample of screenshot of the proposed NMS solution. F. Warranty 1 year (onsite) ITEM 8 : Network Equipment Rack (1 Unit) Spesifikasi Teknikal Terperinci A) Network Equipment Rack 42 U 1.0 2.0 42 U Rack 8-12 Extension power 48 ITEM 9 : Professional Service (1 Lot) Spesifikasi Teknikal Terperinci A) Professional Service Requirement : 1.0 2.0 3.0 4.0 -Physical installation -Configuration new & existing switch -Testing active equipment - Housing ITEM 10 : Training and T.O.T (1 Lot) Spesifikasi Teknikal Terperinci A) Training and T.O.T Requirement : 1.0 Training for Installation and Administration by Professional Certified Trainer ( Min 1 Pax) 2.0 Training on Networking Technologies - Switching and Routing - Wireless Network 49 Peralatan rangkaian sedia ada yang akan digunakan semula adalah seperti berikut : Lokasi Peralatan Cadangan 3 Com Superstack 5500 G- EI Dijadikan Internal Server MENARA PGRM 1 Tingkat 16 switch MENARA PGRM 2 Tingkat 10 Tingkat 9 3 Com 1000 Base X Switch Dikekalkan 3 Com 1000 Base X Switch Dikekalkan 3 Com 4200 3CR17661-91 Dikekalkan 3 Com 3CR 17334-91 Switch Digantikan daripada dengan switch tingkat 15. 50 6.0 Migrasi 6.1 Penyebutharga hendaklah mencadangkan dan menyediakan pelan migrasi lengkap kepada MTIB.Peringkat yang terlibat dan tempoh pelaksanaan masa yang diperlukan. 6.2 Pelan migrasi lengkap perlu disediakan oleh pembekal yang berjaya daripada sistem rangkaian sedia ada kepada sistem rangkaian baru yang dicadangkan. Konfigurasi pelayan dan aplikasi yang sedia ada tidak terjejas apabila proses migrasi tersebut. 6.3 Pembekal hendaklah memastikan rangkaian berada dalam keadaan baik dan memuaskan apabila proses installasi dan migrasi dilakukan. 6.4 Pembekal juga hendaklah memastikan migrasi tersebut berjalan dengan lancar dan mengekalkan kestabilan rangkaian dan sistem keadaan seperti sebelum migrasi. 7.0 Kursus dan latihan sokongan 7.1 Penyebutharga dikehendaki mencadangkan strategi latihan dan pemindahan pengetahuan/teknologi (TOT) bersesuaian untuk wargakerja teknikal dan pengguna MTIB. 7.2 Kursus dan latihan sokongan di pusat latihan bertauliah dan di MTIB daripada segi teori dan ―hands-on‖ berhubung pengurusan rangkaian dan penggunaan peralatan yang dibekalkan (penyelesaian menyeluruh) perlu disediakan oleh penyebutharga. Senarai subjek atau tajuk latihan yang disediakan hendaklah dinyatakan mengikut format Soal Selidik ( Bahagian V ) 7.3 Bidang-bidang yang harus diliputi adalah seperti berikut : - 51 i. Rangkaian komputer pengendalian dan termasuk penyelesaian pengkongfigurasian, masalah peralatan rangkaian serta perisian pengurusan rangkaian. ii. T.O.T penyelesaian pentadbiran, menyeluruh pengurusan, penggunaan, pengkofigurasian dan penyelenggaraan sistem NMS yang dibekalkan. iii. 7.4 Pengkabelan yang yang dicadangkan Latihan sokongan ini perlu kerana sistem rangkaian tersebut akan dikendalikan oleh personnel teknikal IT dan wargakerja MTIB. 7.5 Penyebutharga perlu menyertakan carta perjalanan latihan seperti nama, objektif latihan atau kursus, kandungan, tempoh latihan, bilangan peserta untuk kursus di pusat latihan bertauliah adalah 1 orang dan 10 orang di MTIB. 7.6 Latihan dan kursus yang diberikan hendaklah disampaikan oleh pengajar dikalangan yang bertauliah atau dalam bidang rangkaian yang berkaitan. 7.7 Kos adalah berdasarkan untuk setiap latihan termasuk dokumen, sumber dan bahan latihan. 7.8 Penyebutharga hendaklah memberi segala maklumat terperinci mengenai pelaksanaan latihan yang akan dikendalikan termasuk bilangan, kelayakan dan pengalaman penceramah latihan. 7.9 Latihan atau kursus hendaklah atau boleh dikendalikan semasa pelaksanaan sesuatu kerja dan dijalankan secara bersambungan untuk memberi peluang kepada wargakerja MTIB mengurus produk atau perkhidmatan secara berperingkat. Selain itu, ia juga bertujuan memastikan kemahiran diperolehi secara efektif oleh wargakerja MTIB. 52 8.0 Manual dan Dokumentasi 8.1 Penyebutharga yang berjaya dikehendaki menyediakan sekurangkurangnya dua (2) salinan hardcopy manual dan dokumentasi mengenai kegunaan operasi peralatan termasuk rangkaian yang dicadangkan untuk rujukan personnel teknikal IT dan pengguna semasa pengendalian dan penyenggaraan. Kesemua dokumen manual mestilah asli, lengkap dan dibukukan dengan kemas.Dua salinan (2) softcopy dalam bentuk CD juga perlu dibekalkan. 8.2 Penyebutharga perlu menyenaraikan menyatakan bilangan salinan setiap kesemua dokumen dan kandungan manual atau dokumen. 9.0 Sokongan dan penyelenggaraan 9.1 MTIB memerlukan komitmen penuh daripada pembekal untuk memastikan kerja-kerja penyenggaraan berada dalam persekitaran baik di samping membantu wargakerja MTIB. Sokongan dan penyenggaraan hendaklah diberikan sehingga tamat tempoh jaminan 3 tahun selepas penerimaan akhir / pentauliahan ke atas semua sistem perkakasan penyelesaian menyeluruh yang dibekalkan. 9.2 Perkakasan dan perisian rangkaian yang dicadangkan dan dibekalkan hendaklah diselenggara dalam masa empat (4) tahun selepas tempoh jaminan. Alat ganti bagi sistem komputer berkenaan hendaklah boleh diperolehi dalam tempoh tersebut. 9.3 Sebarang kerosakan kepada perkakasan dan perisian semasa tempoh jaminan hendaklah ditanggung oleh pihak pembekal daripada segi peralatan, perkhidmatan, pertukaran, kewangan dan lain-lain yang bersangkutan 9.4 Semasa dalam tempoh jaminan, jika berlaku kerosakan kepada perkakasan atau perisian, penyebutharga berjaya hendaklah memberi 53 maklumbalas dalam tempoh tidak melebihi dua (2) jam dari masa menerima laporan daripada MTIB.Tempoh yang diambil untuk membaiki kerosakan hendaklah tidak melebihi empat (4) jam.Jika kerosakan tidak dapat dibaiki dalam tempoh berkenaan, penggantian peralatan hendaklah dilaksanakan atau menyediakan ‗on-loan‘ item agar pengguna tidak menghadapi masalah atas kekurangan peralatan tersebut. 9.5 Pembekal hendaklah mempunyai perkhidmatan berpusat. Sokongan adalah daripada pembekal dan pihak pengilang. 9.6 Selepas tempoh jaminan, penyebutharga hendaklah bersetuju menjalankan kontrak penyenggaraan jika dikehendaki oleh MTIB. 9.7 Penyebutharga hendaklah mengemukakan sebagaimana maklumbalas yang maklumat berkenaan, terperinci mengenai penyenggaraan dan perkhidmatan sokongan terlibat untuk kegunaan penilaian oleh MTIB. 54 BAHAGIAN IV FORMAT MAKLUMBALAS 55 BAHAGIAN IV FORMAT MAKLUM BALAS Maklumat yang dikemukakan hendaklah merupakan maklumbalas berkaitan kepada dokumen sebutharga ini. Jawapan dikehendaki disediakan secara spesifik bagi setiap soalan yang diberi. Untuk soalan yang tidak berkenaan sila catatkan dan nyatakan sebabnya. Maklumat tambahan yang dirasakan perlu untuk menyokong cadangan sebutharga hendaklah dikemukakan di bahagian yang berasingan dalam cadangan dengan rujukan bersesuaian. Cadangan sebutharga dikehendaki dihantar dalam format yang digariskan seperti di bawah :- DOKUMEN TAWARAN KEWANGAN 1. Surat Rasmi penyebutharga dengan keterangan mengenai nama, alamat emel, nombor telefon dan nombor faksimili wakil yang patut dihubungi. 2. Salinan Perakuan Kontraktor Bumiputera dengan Kementerian Kewangan yang masih sah laku. 3. Ringkasan Eksekutif 4. Borang Akaun Sebutharga 5. Jadual Harga. Penyebutharga mesti menyatakan unit harga mengikut item dan jumlah harga bagi barangan dan perkhidmatan yang dicadangkan untuk dibekalkan. Isikan semua jadual harga seperti dalam soalselidik Bahagian V ( S1) 6. Latarbelakang penyebutharga dan maklumat terperinci wargakerja penyebutharga khususnya kumpulan teknikal dan lain-lain. 7. Maklumat Mengenai Kepakaran Penyebutharga seperti Bahagian V soalselidik. 56 DOKUMEN TAWARAN TEKNIKAL 1. Mengandungi satu atau lebih muka surat yang menggariskan bahagian tawaran/ cadangan dan bahagian kecil tawaran/cadangan. 2. Maklumat Mengenai Kepakaran Penyebutharga seperti keperluan dalam Bahagian V Soalselidik (S3). 3. Maklumat dan kumpulan teknikal penyebutharga serta carta organisasi projek ini. (S4) 4. Jadual-jadual spesifikasi teknikal seperti dikehendaki dalam Bahagian III dan soal selidik (S5), (S6), (S7), dan (S8). 5. Jadual Cadangan Pelaksanaan Kerja termasuk latihan dan penyerahan dokumentasi 6. Lain-lain keperluan yang dinyatakan dan maklumat tambahan yang boleh menyokong cadangan sebutharga seperti brosur. 57 BAHAGIAN V SOAL SELIDIK 58 S1 : JADUAL HARGA 59 S1 : JADUAL HARGA a) HARGA PERKAKASAN DAN PERISIAN PERKAKASAN NOMBOR DAN PERISIAN MODEL (TERPERINCI) KUANTITI JUMLAH (RM) 60 HARGA SEUNIT (RM) HARGA KESELURUHAN (RM) b) HARGA PERKHIDMATAN PERKHIDMATAN (TERPERINCI) JUMLAH KOS (RM) JUMLAH(RM) 61 c) HARGA KURSUS DAN LATIHAN SOKONGAN KURSUS DAN LATIHAN SOKONGAN (TERPERINCI) JUMLAH (RM) 62 JUMLAH KOS JUMLAH HARGA KONTRAK ITEM JUMLAH KOS (RM) a) Perkakasan dan Perisian b) Perkhidmatan c) Kursus dan Latihan Sokongan JUMLAH SEMUA KOS (RM) 63 S2 : SOAL SELIDIK MENGENAI PROFIL SYARIKAT 64 S2. SOAL SELIDIK MENGENAI PROFIL SYARIKAT Arahan : Semua butir-butir dalam ruangan yang dinyatakan di bawah ini hendaklah dilengkapkan oleh penyebutharga dengan betul dan tepat. Kegagalan berbuat demikian akan menyebabkan tawaran sebutharga ditolak dan tidak dipertimbangkan. Gunakan lampiran lain ika perlu.(kepilkan salinan borang akaun pemilikan yang berkenaan. Butir-butir Syarikat 1. No Pendaftaran Syarikat: …………………….. Tarikh Tamat: …………………. 2. No. Pendaftaran Kem. Kewangan: …………. Tarikh Tamat: ………………….. 3. 4. 5. 6. Taraf Syarikat*: Bumiputera/ Bukan Bumiputera Peratus Modal:…….% Bumiputera / …..% Bukan Bumiputera / …….% Lain-lain Tempoh Sah Pengiktirafan Syarikat bumiputera: …………..hingga …………. Jenis Syarikat*: Perseorangan: Perseorangan/ Perkongsian/ Sdn. Bhd./ Lain-lain …………………….(Nyatakan) 7. No. Telefon syarikat : .................................. 8. Alamat Syarikat : ............................................................ ............................................................ 9.Tempoh Sah Laku tawarn sebutharga :.....................(Min 90 hari) 10. Tempoh siap kerja : ..............................................(maksimum 75 hari,tidak termasuk 30 hari penerimaan sementara dan 30 penerimaan akhir Butir-butir Modal 1. Modal Dibenarkan 2. Modal Dibayar : RM…………………… : RM…………………… Pemegang Saham Senarai Pemegang-pemegang Saham Bil. Nama/Jawatan No. K/P % Pegangan 1. ……………………………………… ……………… ……………… 2. ……………………………………… ……………… ……………… 3. ……………………………………… ……………… ……………… - Sila potong yang tidak berkenaan - Sila majukan aliran tunai syarikat (penyata bank) tiga (3) bulan terakhir 65 S3: SOAL SELIDIK MENGENAI PENGALAMAN DAN KEUPAYAAN SYARIKAT 66 S3. SOAL SELIDIK MENGENAI PENGALAMAN DAN KEUPAYAAN SYARIKAT 1. Sila nyatakan dan sertakan kedudukan bilangan kakitangan teknikal, tahun pengalaman dan kelayakan. 2. Kerja dalam tangan atau projek yang masih dikendalikan yang melibatkan nama organisasi , jenis kerja, lokasi dan tarikh projek tersebut dijadualkan tamat. Ringkasan seperti jadual di bawah : Nama Syarikat / Organisasi serta Lokasi Jenis Kerja / Skop Projek Tempoh dan Tarikh Dijadualkan Tamat Nilai projek (RM) 3. Senarai pengalaman kerja-kerja seumpamanya yang telah dilaksanakan dalam tempoh tiga (3) tahun ke belakang. 67 S4 : SOAL SELIDIK MENGENAI PELAKSANAAN PROJEK 68 S4 :SOAL SELIDIK MENGENAI PELAKSANAAN PROJEK 1. Sila sertakan jadual dan pelaksanaan terperinci serta lengkap bagi pelaksanaan projek yang dicadangkan kepada MTIB 2. Sila lukiskan carta organisasi dan tanggungjawab bagi setiap kakitangan (termasuk latar belakang dan pengalaman) yang terlibat dalam projek ini. 3. Sila sertakan salinan personnel-personnel ( seperti certified installer) yang terlibat untuk perkhidmatan professional rangkaian untuk pelaksanaan projek. 69 S5 : SOAL SELIDIK PERALATAN RANGKAIAN DAN PERISIAN 70 5 : SOAL SELIDIK MENGENAI PERALATAN RANGKAIAN Taraf (W/U) Spesifikasi Teknikal Terperinci 1. 2. 3. 4. 5. 6. Sila sertakan gambarajah lengkap dan fizikal rangkaian yang lengkap berdasarkan perkakasan dan penyelesaian yang dicadangkan (Wajib). Penyebutharga dikehendaki mengisi ruang kosong dibawa dengan lengkap berserta cadangan catatan/ keterangan lain. Semua butir-butir di dalam lampiran ini hendaklah diisi dengan betul dan lengkap. Kemudahan lampiran tambahan, jika ruang tidak mencukupi. Sila nyatakan jenama, model dan sertakan brosur produk yang ditawarkan. Penyebutharga bertanggungjawab memastikan kesesuaian antara peralatan dan perisian tanpa kos tambahan tersembunyi Peralatan rangkaian dan perisian hendaklah fleksibel untuk peningkatan dan pengembangan pada masa hadapan. 7. Penyebutharga hendaklah mengemukakan cadangan spesifikasi peralatan dan penyelesaian menyeluruh sistem yang bersesuaian berdasarkan spesifikasi minimum teknikal yang diperlukan atau yang lebih baik. 71 Pematuhan (Ya/Tidak) Spesifikasi Teknikal Yang (Wajib Diisi) 8. Penyebutharga hendaklah menyenaraikan semua perisian termasuk perisian pihak ketiga yang digunakan untuk penyelesaian melaksanakan menyeluruh yang cadangan dicadangkan kepada MTIB. 9. Penyebutharga konfigurasi, digalakkan rekabentuk mencadangkan dan penyelesaian menyeluruh terbaik kepada MTIB. 10. Penyebutharga juga hendaklah menyediakan gambarajah logikal dan fizikal yang dicadangkan selepas pengujian dan pentauliahan. ITEM 1 : CORE SWITCH (2 unit) A) Core Switch i. Taraf (W/U) W 1 unit Core Switch Chasis ii. iii. iv. 2 unit 1400W AC Power Supply 1 unit 384 Gbps Fabric Module 1 unit 24 port Gig-T Module W W W v. 1 unit 24-Port GbE SFP Module W 72 Pematuhan (Ya/Tidak) Spesifikasi Teknikal Yang (Wajib Diisi) A) vi. 2 unit 10G XFP LC SR Tranceiver W vii. 1 unit 1G SFP LC LX Tranceiver W viii. 5 unit 1G SFP LC SX Tranceiver (item ii-viii : for each unit of Core Switch Chassis) W Capacity and Performance Requirement 1 Min. 5-slot chassis, with two slots for load-sharing switch fabrics and three slots for switching I/O modules, supports a maximum of 28 10-Gigabit ports or 144 10/100/1000 ports auto-sensing 10/100/1000 ports or 288 SFP ports, or a combination 2 Support 276 Mpps throughput performance 3 Support 480 Gbps switching performance 4 Support 256, 000 entries of routing table size 5 Support 512, 000 entries of MAC address table size 6 Support VPN Firewall Module 7 Support Load Balancing Module 8 Support Netstream Module 9 Support Wireless Controller Module B) W W W W W W W W W Layer 2 Switching 1 Supports up to 1024 port or IEEE 802.1Q-based VLANs 2 Supports MAC-based VLANs, protocol-based VLANs, and IP-subnet-based VLANs for added flexibility 3 Support port isolation 4 Support BPDU tunneling 73 W W W W 5 Support GARP VLAN Registration Protocol (GVRP) 6 Support port mirroring (up to 4 mirroring groups, with unlimited number of ports per group 7 Supports standard IEEE 802.1D Spanning Tree Protocol, IEEE 802.1w Rapid Spanning Tree Protocol for faster convergence, and IEEE 802.1s Multiple Spanning Tree Protocol 8 Support IGMP and MLD snooping 9 Support Device Link Detection Protocol (DLDP) 10 Support IEEE 802.1ad QinQ and Selective QinQ 11 Support Super VLAN (RFC 3069), also called VLAN aggregation, is used to save IP address space C) W W W W W W Layer 3 Services 1 Support Address Resolution Protocol (ARP): static ARP, gratuitous ARP and proxy ARP 2 Support User Datagram Protocol (UDP) helper 3 Support Dynamic Host Configuration Protocol (DHCP) 4 Support Domain Name System (DNS) 5 Support Static IPv4 routing 6 Support Routing Information Protocol (RIP); RIPv1 and RIPv2 7 Support OSPF, including ECMP, NSSA, and MD5 authentication for increased security and graceful restart for faster failure recovery 8 Support Intermediate system to intermediate system (IS-IS) 9 Support Border Gateway Protocol 4 (BGP-4) 10 Support policy-based routing 74 W W W W W W W W w 11 Support IP performance optimization: set of tools to optimize performance of IPv4 networks; includes directed broadcasts, customization of TCP parameters, support of ICNP error packets, and extensive display capabilities 12 Support Unicast Reverse Path Forwarding (uRPF) 13 Support Static IPv6 routing 14 Support Dual stack: maintains separate stacks for IPv4 and IPv6 to ease transition from an IPv4-only network to an IPv6-only network design 15 Support Routing Information Protocol next generation (RIPng) 16 Support OSPFv3 17 Support IS-IS for IPv6 18 Support BGP+ 19 Support IPv6 tunneling 20 Support Multiprotocol Label Switching (MPLS) 21 Support Multiprotocol Label Switching (MPLS) Layer 3 VPN 22 Support Multiprotocol Label Switching (MPLS) Layer 2 VPN 23 Support Virtual Private LAN Service (VPLS) 24 Support service loopback D) W W W W W W W W W W W W W W Security 1 Supports powerful ACLs for both IPv4 and IPv6 2 Support RADIUS and TACACS+ 3 Support switch management logon security for RADIUS or TACACS+ authentication for secure switch CLI logon 4 Support Secure Shell (SSHv2) 5 Support DHCP snooping 6 Support IP source guard 75 W W W W W 7 Support ARP attack protection 8 Support port security 9 Support IEEE 802.1X: provides port-based user authentication with support for Extensible Authentication Protocol (EAP) MD5, TLS, TTLS, and PEAP with choice of AES, TKIP, and static or dynamic WEP encryption for protecting wireless traffic between authenticated clients and the access point 10 Support MAC authentication 11 Support multiple user authentication methods as below: - IEEE 802.1X: industry-standard method of user authentication using an IEEE 802.1X supplicant on the client in conjunction with a RADIUS server - Web-based authentication: similar to IEEE 802.1X, it provides a browser-based environment to authenticate clients that do not support the IEEE 802.1X supplicant - MAC-based authentication: client is authenticated with the RADIUS server based on the client's MAC address 12 Support DHCP protection 13 Support Endpoint Admission Defense (EAD) 14 Support port isolation E) Quality of Service (QoS) 1 Support IEEE 802.1p prioritization 2 Support Class of Service (CoS): sets the IEEE 802.1p priority tag based on IP address, IP Type of Service (ToS), Layer 3 protocol, TCP/UDP port number, source port, and DiffServ 3 Support Bandwidth shaping as below: 76 W W W W W W W W W W W W W W W W - Port-based rate limiting: provides per-port ingress/egress enforced maximum bandwidth - Classifier-based rate limiting: uses access control list (ACL) to enforce maximum bandwidth for ingress traffic on each port - Guaranteed minimum: provides per-port, per-queue egress-based guaranteed minimum bandwidth 4 Support congestion avoidance: weighted Random Early Detection (WRED)/RED 5 Support congestion actions: strict priority (SP) queuing, weighted round robin (WRR), WFQ, and WRED 6 Support supports Committed Access Rate (CAR) and line rate F) Intrusion detection/prevention system (IDS/IPS) W 1 Supports deep packet inspection and examines the packet payload as well as the frame and packet headers 2 Support signature-based detection 3 Support protocol anomaly-based detection 4 Support severity-based action policies 5 Support signature update service W G) W W W W W W W W Firewall 1 2 3 4 H) W Support stateful firewall Support zone-based access policies Support Application-level gateway (ALG) Support NAT/PAT W W W W Virtual Private Network (VPN) 1 Support IPSec feature W 77 2 Support Generic Routing Encapsulation (GRE) 3 Support manual or automatic key exchange (IKE) I) W W Resiliency and high availability 1 2 3 4.0 5.0 6.0 7.0 8.0 9.0 10.0 11.0 Support redundant/Load-sharing fabrics, management, fan assemblies, and power supplies Support hot swappable for all the modules Support dual internal power supplies Support separate data and control paths Support passive design system: backplane has no active components for increased system reliability Support IEEE 802.3ad Link Aggregation Control Protocol (LACP): supports up to 128 trunks, each with 8 links per trunk; supports static or dynamic groups and user-selectable hashing algorithm Support to creates virtual resilient switching fabrics, where two or more switches perform as a single Layer 2 switch, Layer 3 router; switches do not have to be colocated and can be part of a disaster recovery system; servers or switches can be attached using standard LACP for automatic load-balancing and high availability; simplifies network operation by eliminating the complexity of Spanning Tree, Equal-Cost Multipath (ECMP), or VRRP Support Ring Resiliency Protection Protocol (RRPP): provides standard sub 200 ms recovery for ring Ethernet-based topology Support Virtual Router Redundancy Protocol (VRRP) Support hitless patch upgrades Support graceful restart for OSPF, IS-IS, BGP, LDP, and RSVP 78 W W W W W W W W W 12.0 Support ultrafast protocol convergence (< 50 ms) with standard-based failure detection—Bidirectional Forwarding Detection (BFD): enables link connectivity monitoring and reduces network convergence time for RIP, OSPF, BGP, IS-IS, VRRP, MPLS, and IRF 13.0 Support smart link: allows 50 ms failover between links W W J) Convergence 1.0 Support LLDP-MED (Media Endpoint Discovery) 2.0 Support Multicast Source Discovery Protocol (MSDP) 3.0 Support Internet Group Management Protocol (IGMP): is used by IP hosts to establish and maintain multicast groups; supports v1, v2, and v3; utilizes Any-Source Multicast (ASM) or Source-Specific Multicast (SSM) to manage IPv4 multicast networks 4.0 Support Protocol Independent Multicast (PIM): is used for IPv4 and IPv6 multicast applications; supports PIM dense mode (PIM-DM), sparse mode (PIM-SM), and source-specific mode (PIM-SSM) 5.0 Support Multicast Border Gateway Protocol (MBGP) 6.0 Support Multicast Listener Discovery (MLD) protocol 7.0 Support Multicast VLAN K) Total Solution 1.0 To supply all cables, connectors and items/parts to complete the system solutions 2.0 To do all installations, configuration and testing according to minimum requirements stated in the document (RFP). L) Warranty & Maintenance 1.0 3 years 24 x 7 hardware replacement (include engineer onsite plus 2 hours response time onsite hardware 79 W W W W W W W W support) 2.0 a) The hardware warranty period shall be minimum of 36 months (3 years) upon the issue of practical completion certificate. The extension of the hardware warranty (directly from manufacturer) life time warranty is required. The warranty must includes: - Unlimited phone calls support directly from manufacturer - Manufacturer continues to provide Hardware Replacement even after the End of Sales of the supplied equipment. 80 W U W ITEM 2 : DMZ / SERVER FARM SWITCH (1 UNIT) Spesifikasi Teknikal Terperinci A) Taraf (W/U) DMZ / Server Farm Switch i. 24 port 10/100/1000 Switch ii. 2 units SX 1G SFP LC SX Tranciever (item ii one unit for relevant switch) W W Ports and Performance A) 1.0 24 RJ-45 autosensing 10/100/1000 ports (IEEE 802.3 Type 10BASE-T, IEEE 802.3u Type 100BASE-TX, IEEE 802.3ab Type 1000BASE-T); Duplex: 10BASE-T/100BASE-TX: half or full; 1000BASE-T: full only 2.0 Support 1 extended module slot 3.0 Support 4 fixed 1000/10000 SFP+ ports 4.0 Support 1 RJ-45 serial console port 5.0 Support 512 MB SDRAM, 512 MB flash; packet buffer size: 4 MB 6.0 Support 358 BTU/hr (377.69 kJ/hr) 7.0 Suppport 155 million pps throughput 8.0 Support 208 Gbps routing/switching capacity 9.0 Support 16,000 entries of routing table size 10.0 Support 32,000 entries of MAC address table size W W W W W W W W W W 81 Pematuhan (Ya/Tidak) Spesifikasi Teknikal Yang (Wajib Diisi) 11.0 Support to creates virtual resilient switching fabrics, where two or more switches perform as a single Layer 2 switch, Layer 3 router; switches do not have to be co-located and can be part of a disaster recovery system; servers or switches can be attached using standard LACP for automatic loadbalancing and high availability; simplifies network operation by eliminating the complexity of Spanning Tree, Equal-Cost Multipath (ECMP), or VRRP 12.0 Support accessories module as below: - 4-port 10-GbE SFP+ Module - 2-port 10-GbE SFP+ Module - 16-port Gig-T Module - 16-port GbE SFP Module - Wireless Controller Module (up to 64 Access Point licenses) W W W W W W B) Layer 2 Switching 1.0 Support GARP VLAN Registration Protocol (GVRP) which allows automatic learning and dynamic assignment of VLANs 2.0 Support 32K MAC addresses 3.0 Support 4094 port-based VLANs 4.0 Support IEEE 802.1ad QinQ and Selective QinQ 5.0 Support Gigabit Ethernet port aggregation 6.0 Support 10 GbE port aggregation 7.0 Support Spanning Tree/MSTP, RSTP, and STP Root Guard 8.0 Support IPFIX/sFlow W W W W W W W W W W W W C) Layer 3 Features 1.0 Support Address Resolution Protocol (ARP) 2.0 Support static ARPs; gratuitous ARP and proxy 82 ARP 3.0 Support Dynamic Host Configuration Protocol (DHCP) client, relay and server 4.0 Support Layer 3 IPv4 routing: static routes, RIP and RIPv2, OSPF, IS-IS, and BGP 5.0 Support Layer 3 IPv6 routing: static routes, RIPng, OSPFv3, IS-ISv6, and BGP4+ 6.0 Support Bidirectional Forwarding Detection (BFD) to enables link connectivity monitoring and reduces network convergence time for RIP, OSPF, BGP, ISIS, VRRP, MPLS, and IRF 7.0 Support Virtual Router Redundancy Protocol (VRRP) and VRRP Extended 8.0 Support policy based routing 9.0 Support IGMPv1, v2, and v3 10.0 Support PIM-SSM, PIM-DM, and PIM-SM (for IPv4 and IPv6) 11.0 Support Equal-Cost Multipath (ECMP) 12.0 Support of MPLS, including MPLS VPNs and MPLS Traffic Engineering (MPLS TE) 13.0 Support of VPLS for data center to data center communication at Layer 2; provides support of hierarchical VPLS for scalability 14.0 Support IPv6 native as below: - IPv6 host - Dual stack (IPv4/IPv6) - MLD snooping - IPv6 ACL/QoS - IPv6 routing W W W W W W W W W W W W W W W W W D) Security 1.0 Support Unicast Reverse Path Forwarding (URPF) W 83 2.0 Support denial-of-service (DoS) attacks and DHCP snooping 3.0 Support advanced processor queuing mechanism which helps prevent denial-of-service (DoS) attacks, while DHCP snooping helps ensure that devices can only receive an IP address from a legitimate DHCP server on the network 4.0 Support IEEE 802.1X-based dynamic delivery of QoS, ACLs, and VLANs 5.0 Support Guest VLAN 6.0 Support port isolation 7.0 Support MAC-based authentication 8.0 Support IP source guard 9.0 Support HTTPS management 10.0 Support Multi-Customer Edge (MCE)-Multicast Virtual Routing and Forwarding (MVRF) 11.0 Support Public Key Infrastructure (PKI) 12.0 Support RADIUS/HWTACACS 13.0 Support Secure Shell (SSHv2) 14.0 Support IP Source Guard W W W W W W W W W W W W W E) Quality of Service (QoS) 1.0 Support powerful QoS feature which creates traffic classes based on ACLs, IEEE 802.1p precedence, IP, DSCP or ToS precedence 2.0 Support filter, redirect, mirror, or remark 3.0 Supports strict priority queuing (SP), weighted round robin (WRR), weighted fair queuing (WFQ), weighted random early discard (WRED), weighted deficit round robin (WDRR), and SP+WDRR W W W W W W F) Convergence 1.0 Support Voice VLAN to automatically assigns VLAN and priority for IP phones 84 2.0 Support IGMP v1, v2, and v3 3.0 Support PIM dense mode (DM), sparse mode (SM), and source-specific mode (SSM) 4.0 Support LLDP-MED W W W W W W G) Monitor and diagnostic 1.0 Support port mirroring to enables traffic on a port to be simultaneously sent to a network analyzer for monitoring 2.0 Support OAM (IEEE 802.3ah) to detects data link layer problems that occurred in the ―last mile"; monitors the status of the link between the two devices 3.0 Support CFD (IEEE 802.1ag) to provides a Layer 2 link Operations, Administration and Maintenance (OAM) mechanism used for link connectivity detection and fault locating H) 1.0 2.0 3.0 4.0 5.0 6.0 7.0 I) W W Management Support remote configuration and management Support IEEE 802.1ab LLDP discovery USB Support to allows users to copy switch files to and from a USB flash drive Support DHCP options as below: - DNS Relay and SMTP Redirection - DHCP: Server (RFC 2131), Client, and Option-82 Relay (RFC 3046) Support SNMPv1, v2c, and v3 Support full feature CLI and web interface Support Remote monitoring (RMON): events, alarm, history, and statistics group W W W W W W W W W Total Solution 85 W To supply all cables, connectors and items/parts to complete the system solutions To do all installations, configuration and testing according to minimum requirements stated in the document (RFP). W J a) The hardware warranty period shall be minimum of 36 months (3 years) upon the issue of practical completion certificate. The extension of the hardware warranty (directly from manufacturer) life time warranty is required. The warranty must includes: - Unlimited phone calls support directly from manufacturer - Manufacturer continues to provide Hardware Replacement even after the End of Sales of the supplied equipment. W U W 86 ITEM 3 : ACCESS SWITCH 1 (6 UNIT) Taraf (W/U) Spesifikasi Teknikal Terperinci A) Access Switch 1 (With Slots) i. 48 port 10/100/1000 Switch with 2 slot ii. 11 units X120 1G SFP LC SX Transceiver (item ii one unit for relevant switch) A) 1.0 2.0 3.0 4.0 5.0 6.0 7.0 8.0 9.0 10.0 11.0 12.0 W W Ports and Performance Support 48 RJ-45 auto-sensing 10/100/1000 ports (IEEE 802.3 Type 10Base-T, IEEE 802.3u Type 100Base-TX, IEEE 802.3ab Type 1000Base-T); Media Type: Auto-MDIX; Duplex: 10Base-T/100Base-TX: half or full; 1000Base-T: full only Support 4 dual-personality ports; auto-sensing 10/100/1000Base-T or SFP Support 2 port expansion module slots Support 1 RJ-45 serial console port Supports a maximum of 48 auto-sensing 10/100/1000 ports Support < 3.2 μs 1000 Mb latency Support < 2.6 μs 10 Gbps latency Support 130.9 million pps throughput Suppport 176 Gbps routing/switching capacity Support 32 entries of routing table size Supports up to 9216-byte frame size Support high-bandwidth CX4 local stacking to achieves 12 Gbps per connection, allowing for up to 96 Gbps total stacking bandwidth (full duplex) in a resilient stacking configuration W W W W W W W W W W W W 87 Pematuhan (Ya/Tidak) Spesifikasi Teknikal Yang (Wajib Diisi) 13.0 Support virtualizes multiple devices as one logical device; to deliver advantages in reliability, distributed deployment, and easy management B) 1.0 2.0 3.0 4.0 5.0 6.0 Layer 2 Switching Supports 16K MAC address table support IEEE 802.1Q, with 4094 simultaneous VLAN IDs Support GARP VLAN Registration Protocol (GVRP) Support IEEE 802.1ad QinQ and Selective QinQ Support 10 GbE port aggregation Support IGMP and MLD snooping C) 1.0 Layer 3 Services Support Address Resolution Protocol (ARP): static ARP, gratuitous ARP and proxy ARP Support Dynamic Host Configuration Protocol (DHCP) client and Relay Support loopback interface address Support User Datagram Protocol (UDP) helper function Support static routing to provides manually configured routing for both IPv4 and IPv6 networks 2.0 3.0 4.0 5.0 D) 1.0 2.0 3.0 4.0 5.0 W W W W W W W W W W W W Security Support Access Control Lits (ACLs) which provides IP Layer 2 to Layer 4 traffic filtering supports global ACL, VLAN ACL, port ACL, and IPv6 ACL Support IEEE 802.1X Support MAC based authentication Support identity-driven security and access control as below: W W W W W - Per-user ACLs - Automatic VLAN assignment W W 88 7.0 8.0 9.0 10.0 11.0 12.0 13.0 14.0 15.0 16.0 17.0 18.0 Support securely encrypts all access methods (CLI, GUI, or MIB) through SSHv2, SSL, and/or SNMPv3 Support Secure File Transfer Protocol (FTP) Support Guest VLAN Support Endpoint Admission Defense (EAD) Support port security Support port isolation Support STP BPDU port protection Support STP root guard Support DHCP protection which blocks DHCP packets from unauthorized DHCP servers, preventing denial-of-service attacks Support IP source guard Support dynamic ARP protection Support RADIUS/HWTACACS W W W W W W W W W W W W E) 1.0 2.0 Quality of Service (QoS) Support broadcast control Support Advanced classifier-based QoS: classifies traffic using multiple match criteria based on Layer 2, 3, and 4 information 3.0 Support applies QoS policies such as setting priority level and rate limit to selected traffic on a port, VLAN, or whole switch 4.0 supports the following congestion actions: strict priority (SP) queuing, weighted round robin (WRR), and SP+WRR 5.0 supports Committed Access Rate (CAR) and line rate W W W W W F) 1.0 Convergence Support IEEE 802.1AB Link Layer Discovery Protocol (LLDP) 2.0 Support LLDP-MED 3.0 Support LLDP-CDP compatibility W W W 89 4.0 Support voice VLAN which automatically assigns VLAN and priority for IP phones 5.0 Support IP multicast snooping (data-driven IGMP) G) 1.0 2.0 3.0 4.0 5.0 6.0 7.0 8.0 9.0 10.0 11.0 12.0 H) I) 1.0 W W Management Support remote configuration and management Support manager and operator privilege levels Support HWTACACS Support Secure Web GUI Support complete session logging Support SNMPv1, v2c, and v3 Support Remote monitoring (RMON) Support IEEE 802.1AB Link Layer Discovery Protocol (LLDP) Support sFlow (RFC 3176) Support Remote Intelligent Mirroring which mirrors ingress/egress ACL-selected traffic from a switch port or VLAN to a local or remote switch port anywhere on the network Support Device Link Detection Protocol (DLDP) Supports pingv6, tracertv6, Telnetv6, TFTPv6, DNSv6, syslogv6, FTPv6, SNMPv6, DHCPv6, and RADIUS for IPv6 W W W W W W W W W W W W Total Solution To supply all cables, connectors and items/parts to complete the system solutions To do all installations, configuration and testing according to minimum requirements stated in the document (RFP). W W Warranty & Maintenance a) The hardware warranty period shall be minimum of 36 months (3 years) upon the issue of practical completion certificate. The extension of the hardware warranty (directly from manufacturer) life time warranty is required. The 90 W warranty must includes: - Unlimited phone calls support directly from manufacturer W - Manufacturer continues to provide Hardware Replacement even after the End of Sales of the supplied equipment. W 91 ITEM 4 : ACCESS SWITCH 2 (3 UNIT) Taraf (W/U) Spesifikasi Teknikal Ditetapkan A) Access Switch i. 48 port 10/100/1000 Switch W A) Ports and Performance 1.0 Support 48 RJ-45 auto-sensing 10/100/1000 ports (IEEE 802.3 Type 10Base-T, IEEE 802.3u Type 100Base-TX, IEEE 802.3ab Type 1000Base-T); Media Type: Auto-MDIX; Duplex: 10Base-T/100Base-TX: half or full; 1000Base-T: full only 2.0 Support 4 dual-personality ports; auto-sensing 10/100/1000Base-T or SFP 3.0 Support 1 RJ-45 serial console port 4.0 Supports a maximum of 48 auto-sensing 10/100/1000 ports W W W W Support < 3.2 μs 1000 Mb latency Support < 2.6 μs 10 Gbps latency Support 130.9 million pps throughput Suppport 176 Gbps routing/switching capacity Support 32 entries of routing table size Supports up to 9216-byte frame size Support high-bandwidth CX4 local stacking to achieves 12 Gbps per connection, allowing for up to 96 Gbps total stacking bandwidth (full duplex) in a resilient stacking configuration 12.0 Support virtualizes multiple devices as one logical device; to deliver advantages in reliability, distributed deployment, and easy management 5.0 6.0 7.0 8.0 9.0 10.0 11.0 W W W W W W W W 92 Pematuhan (Ya/Tidak) Spesifikasi Teknikal Yang (Wajib Diisi) B) 1.0 2.0 3.0 4.0 5.0 6.0 W W W W W W W W Layer 2 Switching Supports 16K MAC address table support IEEE 802.1Q, with 4094 simultaneous VLAN IDs Support GARP VLAN Registration Protocol (GVRP) Support IEEE 802.1ad QinQ and Selective QinQ Support 10 GbE port aggregation Support IGMP and MLD snooping Layer 3 Services C) 1.0 Support Address Resolution Protocol (ARP): static ARP, gratuitous ARP and proxy ARP 2.0 Support Dynamic Host Configuration Protocol (DHCP) client and Relay 3.0 Support loopback interface address 4.0 Support User Datagram Protocol (UDP) helper function 5.0 Support static routing to provides manually configured routing for both IPv4 and IPv6 networks Security D) 1.0 Support Access Control Lits (ACLs) which provides IP Layer 2 to Layer 4 traffic filtering 2.0 supports global ACL, VLAN ACL, port ACL, and IPv6 ACL 3.0 Support IEEE 802.1X 4.0 Support MAC based authentication 5.0 Support identity-driven security and access control as below: - Per-user ACLs - Automatic VLAN assignment 7.0 Support securely encrypts all access methods (CLI, GUI, or MIB) through SSHv2, SSL, and/or SNMPv3 8.0 Support Secure File Transfer Protocol (FTP) 9.0 Support Guest VLAN 10.0 Support Endpoint Admission Defense (EAD) W W W W W W W W W W W W W W W W W 93 11.0 12.0 13.0 14.0 15.0 Support port security Support port isolation Support STP BPDU port protection Support STP root guard Support DHCP protection which blocks DHCP packets from unauthorized DHCP servers, preventing denial-of-service attacks 16.0 Support IP source guard 17.0 Support dynamic ARP protection 18.0 Support RADIUS/HWTACACS W W W W W W W W Quality of Service (QoS) E) 1.0 Support broadcast control 2.0 Support Advanced classifier-based QoS: classifies traffic using multiple match criteria based on Layer 2, 3, and 4 information 3.0 Support applies QoS policies such as setting priority level and rate limit to selected traffic on a port, VLAN, or whole switch 4.0 supports the following congestion actions: strict priority (SP) queuing, weighted round robin (WRR), and SP+WRR 5.0 supports Committed Access Rate (CAR) and line rate W W W W W W W W F) Convergence 1.0 Support IEEE 802.1AB Link Layer Discovery Protocol (LLDP) 2.0 Support LLDP-MED 3.0 Support LLDP-CDP compatibility 4.0 Support voice VLAN which automatically assigns VLAN and priority for IP phones 5.0 Support IP multicast snooping (data-driven IGMP) G) W W W W Management 94 1.0 2.0 3.0 4.0 5.0 6.0 7.0 8.0 9.0 10.0 11.0 12.0 Support remote configuration and management Support manager and operator privilege levels Support HWTACACS Support Secure Web GUI Support complete session logging Support SNMPv1, v2c, and v3 Support Remote monitoring (RMON) Support IEEE 802.1AB Link Layer Discovery Protocol (LLDP) Support sFlow (RFC 3176) Support Remote Intelligent Mirroring which mirrors ingress/egress ACL-selected traffic from a switch port or VLAN to a local or remote switch port anywhere on the network Support Device Link Detection Protocol (DLDP) Supports pingv6, tracertv6, Telnetv6, TFTPv6, DNSv6, syslogv6, FTPv6, SNMPv6, DHCPv6, and RADIUS for IPv6 W W W W W W W W W W W W W Total Solution H) To supply all cables, connectors and items/parts to complete the system solutions To do all installations, configuration and testing according to minimum requirements stated in the document (RFP). I) Warranty & Maintenance 1.0 a) The hardware warranty period shall be minimum of 36 months (3 years) upon the issue of practical completion certificate. The extension of the hardware warranty (directly from manufacturer) life time warranty is required. The warranty must includes: - Unlimited phone calls support directly from manufacturer - Manufacturer continues to provide Hardware Replacement even after the End of Sales of the supplied equipment. W W W W U W 95 ITEM 5 : ACCESS SWITCH 3 (3 UNIT) Taraf (W/U) Spesifikasi Teknikal Ditetapkan A) Access Switch 3 i. W 24 port 10/100/1000 Switch A) Ports and Performance 1.0 Support 24 RJ-45 auto-sensing 10/100/1000 ports (IEEE 802.3 Type 10Base-T, IEEE 802.3u Type 100Base-TX, IEEE 802.3ab Type 1000Base-T); Duplex: 10BaseT/100Base-TX: half or full; 1000Base-T: full only 2.0 Support 4 dual-personality ports; auto-sensing 10/100/1000Base-T or SFP 3.0 Support 1 RJ-45 serial console port 4.0 Support < 3.2 μs 1000 Mb latency 5.0 Support < 2.6 μs 10 Gbps latency 6.0 Support 95.2 million pps throughput 7.0 Suppport 128 Gbps routing/switching capacity 8.0 Support 32 entries of routing table size 9.0 Supports up to 9216-byte frame size 10.0 Support high-bandwidth CX4 local stacking to achieves 12 Gbps per connection, allowing for up to 96 Gbps total stacking bandwidth (full duplex) in a resilient stacking configuration 11.0 Support virtualizes multiple devices as one logical device; to deliver advantages in reliability, distributed deployment, and easy management B) W W W W W W W W U U W W Layer 2 Switching 96 Pematuhan (Ya/Tidak) Spesifikasi Teknikal Yang (Wajib Diisi) 1.0 2.0 3.0 4.0 5.0 6.0 Supports 16K MAC address table support IEEE 802.1Q, with 4094 simultaneous VLAN IDs Support GARP VLAN Registration Protocol (GVRP) Support IEEE 802.1ad QinQ and Selective QinQ Support 10 GbE port aggregation Support IGMP and MLD snooping W W W W W W C) Layer 3 Services 1.0 Support Address Resolution Protocol (ARP): static ARP, gratuitous ARP and proxy ARP 2.0 Support Dynamic Host Configuration Protocol (DHCP) client and Relay 3.0 Support loopback interface address 4.0 Support User Datagram Protocol (UDP) helper function 5.0 Support static routing to provides manually configured routing for both IPv4 and IPv6 networks D) Security 1.0 Support Access Control Lits (ACLs) which provides IP Layer 2 to Layer 4 traffic filtering 2.0 supports global ACL, VLAN ACL, port ACL, and IPv6 ACL 3.0 Support IEEE 802.1X 4.0 Support MAC based authentication 5.0 Support identity-driven security and access control as below: - Per-user ACLs - Automatic VLAN assignment 7.0 Support securely encrypts all access methods (CLI, GUI, or MIB) through SSHv2, SSL, and/or SNMPv3 8.0 Support Secure File Transfer Protocol (FTP) 9.0 Support Guest VLAN 10.0 Support Endpoint Admission Defense (EAD) 11.0 Support port security 12.0 Support port isolation 97 W W W W W W W W W W W W W W W W W W 13.0 Support STP BPDU port protection 14.0 Support STP root guard 15.0 Support DHCP protection which blocks DHCP packets from unauthorized DHCP servers, preventing denial-of-service attacks 16.0 Support IP source guard 17.0 Support dynamic ARP protection 18.0 Support RADIUS/HWTACACS W W W E) Quality of Service (QoS) 1.0 Support broadcast control 2.0 Support Advanced classifier-based QoS: classifies traffic using multiple match criteria based on Layer 2, 3, and 4 information 3.0 Support applies QoS policies such as setting priority level and rate limit to selected traffic on a port, VLAN, or whole switch 4.0 supports the following congestion actions: strict priority (SP) queuing, weighted round robin (WRR), and SP+WRR 5.0 supports Committed Access Rate (CAR) and line rate W W W F) 1.0 2.0 3.0 4.0 W W W W W Convergence Support IEEE 802.1AB Link Layer Discovery Protocol (LLDP) Support LLDP-MED Support LLDP-CDP compatibility Support voice VLAN which automatically assigns VLAN and priority for IP phones 5.0 Support IP multicast snooping (data-driven IGMP) G) 1.0 2.0 3.0 4.0 Management Support remote configuration and management Support manager and operator privilege levels Support HWTACACS Support Secure Web GUI W W W W W W W W W W W W 98 5.0 6.0 7.0 8.0 9.0 10.0 Support complete session logging Support SNMPv1, v2c, and v3 Support Remote monitoring (RMON) Support IEEE 802.1AB Link Layer Discovery Protocol (LLDP) Support sFlow (RFC 3176) Support Remote Intelligent Mirroring which mirrors ingress/egress ACLselected traffic from a switch port or VLAN to a local or remote switch port anywhere on the network 11.0 Support Device Link Detection Protocol (DLDP) 12.0 Supports pingv6, tracertv6, Telnetv6, TFTPv6, DNSv6, syslogv6, FTPv6, SNMPv6, DHCPv6, and RADIUS for IPv6 H) Total Solution To supply all cables, connectors and items/parts to complete the system solutions To do all installations, configuration and testing according to minimum requirements stated in the document (RFP). W W W W W W W W W W I) Warranty & Maintenance 1.0 a) The hardware warranty period shall be minimum of 36 months (3 years) upon the issue of practical completion certificate. The extension of the hardware warranty (directly from manufacturer) life time warranty is required. The warranty must includes: W W - Unlimited phone calls support directly from manufacturer - Manufacturer continues to provide Hardware Replacement even after the End of Sales of the supplied equipment. W W 99 ITEM 6 : NETWORK CABLING (LOT) Taraf (W/U) Spesifikasi Teknikal Terperinci A) Network Cabling 1.0 6 Core Premiumline Fiber Optic Cable 50/125 um Indoor type of fiber optic cable Multimode 50/125 micron fiber W W W From level 13 to 16 , level 14 to 16, level 15 to 16,level 16 to 16, level 17 to 16 W W W W 2.0 Supply and install 24 Port Fiber Patch Panel – 1 unit a. 1U Loaded SC Duplex Fiber Patch Panel b. 24 Port c/w SC Connector 3.0 Supply and install 6 Port Fiber Patch Panel – 4 unit (floor) a. 1U Loaded SC Duplex Fiber Patch Panel b. 6 Port c/w SC Connector W W W 4.0 Termination and testing – Lot a. Termination with fusion splicing c/w 1m pigtail b. Testing for each core at both side W W B) To relocate existing fibre optic cable from level 10 to 9, PGRM 2 C) UTP Cabling ( Lot) 1.0 2.0 From level 10 to 9 (Tower 2) Each core at both side W W W W 100 Pematuhan (Ya/Tidak) Spesifikasi Teknikal Yang (Wajib Diisi) D) Warranty and maintainance 3 years ( parts,replacement and engineer on site) 101 W ITEM 7 : NMS (NETWORK MANAGEMENT SYSTEM) (1 UNIT) Taraf (W/U) Spesifikasi Teknikal Ditetapkan Network Management System (NMS) - 1 unit i. 1 unit Network Management System Platform (50-60 nodes) W Specifications 1.0 2.0 Reliable software for NMS The proposed NMS shall offers single unified platform management and monitoring of entire IT infrastructure from network switches and routers to applications W W 3.0 The proposed NMS shall provide user-friendly windows and Unix GUI management console (web-based system) W The proposed NMS shall generally provide network and device monitoring to ease of network administrator troubleshooting 5.0 The proposed NMS shall offers a comprehensive platform that integrates network technologies and provides full fault, configuration, accounting, performance, and security management functionality for small-to-medium IT infrastructures. 6.0 The proposed NMS shall compatible with Microsoft® Windows® or Linux operating systems. W 4.0 C. Features and Benefits : 102 W W Pematuhan (Ya/Tidak) * Spesifikasi Teknikal Yang Ditawarkan (Wajib Diisi) 1.0 Key Features: a. Mapping, monitoring, notification, reporting, web-access and user access right. Describe how the proposed solution do all these. b. 2.0 a. b. c. d. Distributed monitoring Centralized configuration Centralized access to all data 50 - 60 nodes Unlimited number of proxies W W W W W W 3.0 Scalability a. Processing of thousands of availability and performance checks per second w 4.0 a. b. c. d. e. f. Real-time monitoring Performance monitoring Availability monitoring Integrity monitoring Flexible notification conditions Alerting user ( email, SMS and winpop-up) Logging W W W W W W W 5.0 a. b. c. d. Visualization User-defined views and slide shows Mapping Graphing Zooming W W W W 6.0 Fast Problem resolution a. Hierarchical IT Services b. Real-time SLA reporting W W 103 7.0 Reporting and trending a. Easy integration of 3rd party tools b. Analysis of yearly/monthly/daily statistics W W 8.0 Auto discovering a. Discovery by IP range, services and SNMP b. Automatic monitoring of discovered devices W W 9.0 Web monitoring a. Web performance and availability monitoring b. Flexible scenarios W W 10.0 a. b. c. d. Flexibility Support of IPv4 and IPv6 Easily extendable native agents Any notifications methods Run on any platform W W W W 11.0 Aggregation monitoring a. Monitoring of a group of hosts as a single host W 12.0 a. b. c. d. Agentless monitoring Monitoring of remote services (FTP,SSH,HTTP, other) Support of SNMP v1,2,3 Support of IPMI SNMP traps W W W W 13.0 a. b. c. High Performance agents All platforms supported ( UNIX, Windows, Novell) Memory utilization Network utilization W W W 104 Disk I/O Disk space availability File Checksums Monitoring of log files and more W W W W 14.0 a. b. c. Security Flexible user permission Authentication with password or IP Address or other else Other related W W 15.0 a. b. c. Escalation and notifications Repeated notifications Unlimited escalations Be notified while problem is resolved W W d. e. f. g. 16.0 Management functions a. Ping, traceroute to a host b. Any other functions 17.0 a. b. c. w W W Dashboard Personalized dashboard Favourite resources High level view W W 18.0 Easy Administration a. All data is stored in a database b. Centralized configuration and storage in formation D. Scope of Work 1.0 Designing on the overall network monitoring structure 2.0 Installing NMS system at server/ computer 105 W W W W Configuring on monitoring intervals and setting up of notification 3.0 alerts Mapping of monitored devices and arranging to best suit MTIB 4.0 W W network structure 5.0 Arranging mapping into hierarchical level 6.0 Customizing the display icon of monitored device W 7.0 Configuring shape and color of device states 8.0 Configuring on devices threshold alerts W 9.0 Configuring on components of monitoring for device such as a. Device State W W W W b. Performance Monitoring c. Active Monitoring 10.0 W W Setup of notification alerts based on critical level and priority W W 11.0 Configure on User Access Rights 12.0 Setup & testing of following notification mode; W a. Email b. Sounds W c. Winpopup d. SMS W W W Testing & commissioning on NMS system upon completion of 13.0 W installation W 14.0 Develop the NMS solution: 106 Customize up to 50 reports (Performance, Availability, Health, Downtime and utilization report). Customize grouping of notification message and sent to various level b. of personnel. c. Customize time of notifications and content of message. Document the NMS system after commissioning and administrator 15.0 training at MTIB (for 5 person) a. W W W W E. Provide Sample of screenshot of the proposed NMS solution. W W F. Warranty 1 year (onsite) W W 107 ITEM 8 : Network Equipment Rack (1 Unit) Spesifikasi Teknikal Terperinci A) Taraf (W/U) Network Equipment Rack 42 U 1.0 42 U Rack 2.0 8-12 Extension power Pematuhan (Ya/Tidak) Spesifikasi Teknikal Yang (Wajib Diisi) W W W ITEM 9 : Professional Service (1 Lot) Spesifikasi Teknikal Terperinci A) Taraf (W/U) Pematuhan (Ya/Tidak) Professional Service 1.0 -Physical installation 2.0 -Configuration new & existing switch 3.0 -Testing active equipment 4.0 - Housing W W W W 108 Spesifikasi Teknikal Yang (Wajib Diisi) ITEM 10 : Training and T.O.T (1 Lot) Spesifikasi Teknikal Terperinci Taraf (W/U) A) Training and T.O.T 1.0 Training for Installation and Administration by Professional Certified Trainer ( Min 1 Pax) W on Networking 2.0 Training Technologies - Switching and Routing - Wireless Network U Nota: 1) Pematuhan (Ya/Tidak) Spesifikasi Teknikal Yang (Wajib Diisi) U U W - Wajib : Iaitu mesti dipatuhi atau dipenuhi sekurang-kurangnya mengikut spesifikasi yang ditetapkan dan TAWARAN yang lebih tidak akan memberi kelebihan dari segi penilaian. 2) U - Umum : Iaitu mesti dipatuhi atau dipenuhi sekurang-kurangnya mengikut spesifikasi yang ditetapkan dan TAWARAN yang lebih akan memberi kelebihan dari segi penilaian. 3) Tanda '*' : Pilih salah satu 109 PERKHIDMATAN PROFESSIONAL UNTUK PENGKABELAN DAN RANGKAIAN Taraf (W/U) Perkara 1. Kerja-kerja konfigurasi, khidmat rekabentuk, pengujian, sokongan pemasangan, pentauliahan bagi W dan rangkaian, pengkabelan dan penyelesaian menyeluruh hendaklah dilaksanakan menerusi khidmat professional personel-personel bertauliah (certified) dalam bidang berkenaan (Salinan sijil semasa pelaksanaan adalah diperlukan). 2. Sila nyatakan dan terangkan perkhidmatan W yang diberikan (terdiri sekurang-kurangnya perkara-perkara seperti berikut): a. Implementation Design Overview b. Migration Plan c. Design Walkthrough and Detailed Design Description d. Summary of all products supplied, part number, quantity e. Network Management System 110 Pematuhan (Ya/Tidak) * Keterangan Terperinci Yang Ditawarkan (Wajib Diisi) f. Cabling g. Testing Procedure Detail testing procedures Test passing criteria h. Trouble shooting techniques i. Maintenance procedures needed j. Labelling and tagging k. Layer 2 and Layer 3 diagram 111 S6 : SOAL SELIDIK MENGENAI LATIHAN 112 S6:SOAL SELIDIK MENGENAI LATIHAN 1. Sila nyatakan serta terangkan pelan latiha/kursus yang diberikan berdasarkan perkara berikut:i) Nama latihan/kursus ii) Objektif latihan/kursus iii) Kandungan latihan/kursus iv) Tempoh latihan v) Bilangan pesertta mengikuti latihan yang dicadangkan (Bilangan peserta untuk kursus di pusat latihan bertauliah adalah 1 orang dan 10 orang di MTIB) 113 S7 : SOAL SELIDIK MENGENAI MANUAL DAN DOKUMENTASI 114 S7: SOAL SELIDIK MENGENAI MANUAL DAN DOKUMENTASI Sila sediakan sekurang-kurangnya dua salinan manual dan domukentasi mengenai kegunaan operasi peralatan termasuk rangkaian yang dicadangkan untuk rujukan personal teknikal IT dan pengguna semasa pengendalian dan penyelenggaraan Sila senaraikan kesemua dokumen dan nyatakan bilangan salinan setiap kandungan manual atau dokumen seperti dibawah : MANUAL DAN DOKUMENTASI (TEPERINCI) 115 BILANGAN SALINAN S8 : SOAL SELIDIK MENGENAI SOKONGAN DAN PENYENGGARAAN 116 S8: SOAL SELIDIK MENGENAI SOKONGAN DAN PENYENGGARAAN Taraf (W/U) Perkara 1. Sokongan dan penyelenggaraan W hendaklah diberikan sehingga tempoh jaminan tiga (3) tahun selepas penerimaan akhir (pentauliahan) ke atas semua sistem perkakasan yang dibekalkan. 2. Perkakasan dan perisian komputer yang W dicadangkan dan dibekalkan hendaklah boleh disenggarakan dalam masa empat (4) tahun tersebut. Alat ganti bagi sistem komputer berkenaan hendaklah boleh diperolehi dalam tempoh tersebut. 3. Sebarang kerosakan kepada perkakasan dan W perisian semasa tempoh jaminan hendaklah ditanggung sepenuhnya oleh pihak pembekal. 4. Semasa dalam tempoh jaminan, jika berlaku W kerosakan kepada perkakasan atau perisian, penyebutharga yag berjaya hendaklah memberi 117 Pematuhan (Ya/Tidak) * Keterangan Terperinci Yang Ditawarkan (Wajib Diisi) maklumbalas dalam tempoh tidak melebihi dua (2) jam dari masa menerima laporan dari MTIB. Tempoh yang diambil untuk membaiki kerosakan hendaklah tidak melebihi empat (4) jam. Jika kerosakan tidak dapat dibaiki dalam tempoh berkenaan, penggantian peralatan hendaklah dilaksanakan atau menyediakan ‘onloan‘ item agar pengguna tidak menghadapi masalah atas kekurangan peralatan tersebut. 5. Lokasi perkhidmatan berpusat pembekal W 6. Lokasi pejabat perkhidmatan atau sokongan W peringkat kedua (pengilang) yang berhampiran lokasi pemasangan MTIB untuk dihubungi. 7. Selepas hendaklah tempoh jaminan, bersetuju penyebutharga menjalankan W kontrak penyenggaraan jika dikehendaki oleh MTIB. 8. Maklumat tambahan yang berkaitan dengan W sokongan dan penyenggaran, jika ada. 118 S9 : SOAL SELIDIK MENGENAI MIGRASI 119 S9: SOAL SELIDIK MENGENAI MIGRASI Taraf (W/U) Perkara 3. Penyebutharga hendaklah mencadangkan dan menyediakan migrasi kepada pelan MTIB W pelaksanaan (peringkat yang terlibat dan tempoh masa yang diperlukan). 4. Pelan migrasi lengkap perlu disediakan W oleh pembekal yang berjaya daripada sistem rangkaian sedia ada kepada sistem rangkaian baru yang dicadangkan. Konfigurasi pelayan dan aplikasi yang sedia ada tidak terjejas apabila proses migrasi tersebut. 5. Pembekal hendaklah memastikan W rangkaian berada dalam keadaan baik dan memuaskan apabila proses installasi dan migrasi dilakukan. 120 Pematuhan (Ya/Tidak) * Keterangan Terperinci Yang Ditawarkan (Wajib Diisi) 6. Pembekal juga hendaklah memastikan W migrasi tersebut berjalan dengan lancar dan mengekalkan kestabilan rangkaian dan sistem keadaan seperti sebelum migrasi. Nota: 1) W - Wajib : Iaitu mesti dipatuhi atau dipenuhi sekurang-kurangnya mengikut spesifikasi yang ditetapkan dan TAWARAN yang lebih tidak akan memberi kelebihan dari segi penilaian. 2) U - Umum : Iaitu mesti dipatuhi atau dipenuhi sekurang-kurangnya mengikut spesifikasi yang ditetapkan dan TAWARAN yang lebih akan memberi kelebihan dari segi penilaian. 3) Tanda '*' : Pilih salah satu 121 BAHAGIAN VI BORANG 122 BORANG AKUAN SEBUTHARGA Kepada : Lembaga Perindustrian Kayu Malaysia Tingkat 14, Menara PGRM No. 8 Jalan Pudu Ulu, Cheras 56100 Kuala Lumpur Tuan, NOMBOR RUJUKAN SEBUTHARGA : SEBUTHARGA UNTUK MEMBEKAL, MENGHANTAR, MEMASANG, MENGUJI, MENTAULIAH DAN MENYENGGARA DALAM TEMPOH JAMINAN SISTEM RANGKAIAN KOMPUTER (NETWORK CLUSTERING) DI LEMBAGA PERINDUSTRIAN KAYU MALAYSIA Merujuk kepada iklan tuan berkenaan perkara di atas, dan tertakluk kepada Arahan dan Syarat-syarat Kepada Penyebutharga. Pihak yang bertandatangan di bawah menawarkan untuk membekal, menghantar, memasang, menguji, menyenggara dalam tempoh jaminan dan mentauliah sepertimana sebahagian yang terkandung dalam dokumen ini, bersetuju dengan spesifikasi yang dinyatakan dan pelbagai kadar yang ditetapkan oleh pihak yang bertandatangan di bawah berserta senarai harga yang disertakan bersama sebutharga. Pihak yang bertandatangan di bawah bersetuju untuk terikat sepertimana yang ternyata dalam Arahan dan Syarat-syarat Kepada Penyebutharga, spesifikasi dan jadual harga, dan bersetuju dengan harga berdasarkan kepada nilaian barang secara individu yang dibekalkan dari semasa ke semasa. Dan selanjutnya, pihak yang bertandatangan di bawah bersetuju untuk menyiapkan pembekalan, penghantaran, pemasangan, pengujian, penyenggaraan dalam tempoh jaminan, pentauliahan dan bekerja mengikut Arahan dan Syarat-syarat Kepada Penyebutharga yang diberikan. 123 Sebagaimana yang telah difahami, pihak tuan boleh menerima atau menolak sebutharga kami sama ada ianya lebih tinggi atau lebih rendah dari sebutharga lain atau sama. Sebutharga ini akan sentiasa sah selama sembilan puluh hari (90) hari dari tarikh penyerahan sebutharga. Dan selanjutnya, pihak bertandatangan di bawah bersetuju sekiranya pihak tuan menerima sebutharga ini untuk menyediakan penyataan penerimaan deposit Bon Pelaksanaan sekiranya dipohon. Pihak bertandatangan di bawah pasti, selepas penelitian, dokumen yang digunakan dalam sebutharga ini adalah salinan asal seperti yang termasuk dalam cadangan sebutharga. Tandatangan Penyebutharga: ……………………… Tandatangan Saksi kepada Penyebutharga: Nama dan alamat syarikat Tarikh: ………………………… ………………………… Nama dan alamat syarikat Tarikh: ………………………… 124