招請
資料提供招請に関する公表
次のとおり物品の導入を予定していますので、当該導入に関して資料等の提供を招請します。
令和6年9月18日
国立研究開発法人情報通信研究機構
契約担当事理 増山 寛
◎調達機関番号 816 ◎所在地番号 13
1 調達内容
(1) 品目分類番号 71, 27
(2) 導入計画物品及び数量 けいはんなファイアウォールの更改 一式
(3) 調達方法 購入
(4) 導入予定時期 令和7年度第3・四半期以降
(5) 調達に必要とされる基本的な要求要件 本システムは物理的に分離されたネットワーク用のファイアウォールとして、研究系ファイアウォール装置および実験系ファイアウォール装置で構成される。以下に書かれている要件は1台あたりのものとする。
① 研究系ファイアウォール装置
(ア) ハードウェアとソフトウェアが一体となったアプライアンスの次世代ファイアウォールであること。
(イ) ファイアウォール本体2台によるHA構成であること。
(ウ) 複数の仮想ファイアウォールを構成する機能を有すること。
(エ) 悪意のあるWebサイトへのアクセスをブロックする機能を有すること。
(オ) アプリケーション識別、IPS、アンチウィルス、アンチスパイウェア、ログ機能が有効な状態で30Gbps以上の処理能力を有すること。
(カ) 1ポートあたり40Gbps以上の帯域で4ポート以上接続すること。
(キ) 1ポートあたり10Gbps以上の帯域で2ポート以上接続すること。
(ク) 1ポートあたり1Gbpsの帯域で2ポート以上接続すること。
(ケ) アウトオブバンド管理ポートを接続すること。
(コ) 特定通信の帯域を保証および制限する機能を有すること。
② 実験系ファイアウォール装置
(ア) ハードウェアとソフトウェアが一体となったアプライアンスの次世代ファイアウォールであること。
(イ) ファイアウォール本体2台によるHA構成であること。
(ウ) 複数の仮想ファイアウォールを構成する機能を有すること。
(エ) 悪意のあるWebサイトへのアクセスをブロックする機能を有すること。
(オ) アプリケーション識別、IPS、アンチウィルス、アンチスパイウェア、ログ機能が有効な状態で30Gbps以上の処理能力を有すること。
(カ) 1ポートあたり100Gbps以上の帯域で4ポート以上接続すること。
(キ) 1ポートあたり25Gbps以上の帯域で2ポート以上接続すること。
(ク) 1ポートあたり10Gbps以上の帯域で2ポート以上接続すること。
(ケ) アウトオブバンド管理ポートを接続すること。
(コ) 特定通信の帯域を保証および制限する機能を有すること。
2 資料及びコメントの提供方法 上記1(2)の物品に関する一般的な参考資料及び同(5)の要求要件等に関するコメント並びに提供可能なライブラリーに関する資料等の提供を招請する。
(1) 資料等の提供期限 令和6年10月18日17時00分まで必着のこと。
(2) 提出先 〒619-0289 京都府相楽郡精華町光台3-5 情報通信研究機構ユニバーサルコミュニケーション研究所総合企画室 共通基盤グループ 板倉 弘典 電話0774-98-6811 Eメール ci-post@khn.nict.go.jp
3 説明書の交付 本公表に基づき応募する供給者に対して導入説明書を交付する。
(1) 交付期間 令和6年9月18日から令和6年10月18日まで。
(2) 交付場所 情報通信研究機構ホームページの調達情報よりダウンロードして入手すること。
4 説明会の開催 なし。
5 その他 この導入計画の詳細は導入説明書による。なお、本公表内容は予定であり、変更することがあり得る。
6 Summary
(1) Classification of the products to be procured : 71, 27
(2) Nature and quantity of the products to be purchased: Renewal of the Keihanna firewall, 1 set
(3) Type of the procurement: Purchase
(4) Basic requirements of the procurement:
① The firewall for NICT network
(a) The system must be a next-generation firewall appliance that integrates hardware and software
(b) The system must be an HA configuration with two firewall devices
(c) The system must have a function to configure multiple virtual firewalls
(d) The system must have a function to block access to malicious websites
(e) The system must have a throughput of 30 Gbps or higher even when application identification, IPS, anti-virus, anti-spyware, and logging functions enabled
(f) The system must connect four ports or more in a band of 40 Gbps or higher per port
(g) The system must connect two ports or more in a band of 10Gbps or higher per port
(h) The system must connect two ports or more in a band of 1Gbps per port
(i) The system must connect out-of-band management port
(j) The system must have a function to guarantee and limit the band of specific network traffic
② The firewall for JGN network
(a) The system must be a next-generation firewall appliance that integrates hardware and software
(b) The system must be an HA configuration with two firewall devices
(c) The system must have a function to configure multiple virtual firewalls
(d) The system must have a function to block access to malicious websites
(e) The system must have a throughput of 30 Gbps or higher even when application identification, IPS, anti-virus, anti-spyware, and logging functions enabled
(f) The system must connect four ports or more in a band of 100Gbps or higher per port
(g) The system must connect two ports or more in a band of 25Gbps or higher per port
(h) The system must connect two ports or more in a band of 10Gbps or higher per port
(i) The system must connect out-of-band management port
(j) The system must have a function to guarantee and limit the band of specific network traffic