Download end of section

Survey
yes no Was this document useful for you?
   Thank you for your participation!

* Your assessment is very important for improving the workof artificial intelligence, which forms the content of this project

Document related concepts

Network tap wikipedia , lookup

Airborne Networking wikipedia , lookup

Zero-configuration networking wikipedia , lookup

Transcript
A & E SPECIFICATIONS
THLK-S2-WB, THLK-H2-RB
STANDARD CAPACITY AND HIGH CAPACITY HARDWARE VIRTUAL PRIVATE
NETWORK TRANSMISSION SYSTEM
PART 1 – GENERAL
The intent of this document is to specify the minimum criteria for the design, supply, installation,
and commissioning of the KBC Network’s Standard Capacity and High Capacity ThruLink units.
1.01 SUMMARY
A.
ThruLink is a hardware Virtual Private Network (VPN) device that enables secure communications
to be established over any standard, public or private IP network using AES, Blowfish or Camellia
encryption up to 256 bit. ThruLink is a tunneling device that constantly monitors the parameters
of the communications channel to ensure optimization of the available bandwidth. It performs
behind firewalls, NAT devices and will not affect TTL, UPnP, VLAN information, broadcast,
multicast or any other traffic. By enabling secure communications to be set up over public
networks eg. the internet, ThruLink can eliminate the need for leased lines. The system is
designed to be configured by non-specialist personnel and for rapid deployment with minimal set
up and maintenance free operation.
1.02 SECTION INCLUDES
A.
B.
C.
THLK-S2-WB ThruLink Standard Capacity – 2 RJ45 ports – Standalone
THLK-S3-WB ThruLink Standard Capacity - 3 RJ45 ports - Standalone
THLK-H2-RB ThruLink High Capacity – 2 RJ45 ports - 19” Rack Mount
1.03 REFERENCES
A.
B.
C.
D.
E.
1.04
Conformity for Europe (CE)
Federal Communications Commission (FCC)
Australian Communications Authority (C-Tick)
Restriction of Hazardous Substances (RoHS)
Waste Electrical & Electronic Equipment (WEEE)
DEFINITIONS
A.
B.
C.
No Substitutes: The exact make and model number identified in this specification shall be
provided without exception.
Or Equal: Any item may be substituted for the specified item provided that in every technical
sense, the substituted item provides the same or better capability and functionality
Or Approved Equal: A substitute for the specified item may be offered for approval by the
Owner. The proposed substitution must, in every technical sense, provide the same or better
capability and functionality as the specified item. Such requests for approval shall be submitted
in accordance with the provisions of PART 1.06 – SUBMITTALS, and must be obtained within the
time frames outlined.
00000 - 1
Section Title
A & E SPECIFICATIONS
1.05 SYSTEM DESCRIPTION
A.
Performance Requirements:
1.
2.
3.
4.
5.
6.
7.
8.
Provide a secure Virtual Private Network over a Wide Area Network (WAN) or Local Area
Network (LAN) using AES-128, AES-192, AES-256, Blowfish-128, Blowfish-192,
Blowfish-256, or Camellia-128, Camellia-192, Camellia-256, encryption.
Monitor the parameters of the communications channel to optimize the bandwidth
potential.
Minimize path latency through any network.
Provide isolation for ThruLink traffic from other network traffic.
Perform from behind firewalls and NAT devices.
Provide no impact on TTL, UPnP, VLAN information, broadcast, multicast or any other
traffic.
Possess the ability to be expanded as system requirements grow.
Possess the ability to be updated over the network.
1.06 SUBMITTALS
A.
B.
C.
D.
1.07
General: Submittals shall be made in accordance with the Conditions of the Contract and
Submittal Procedures Section.
Shop Drawings and Schematics: Shall depict ThruLink in final proposed “as built” configuration.
The following must be provided:
1.
Connection diagrams for interfacing equipment.
2.
List of connected equipment.
3.
Locations for all major equipment components to be installed under this specification.
Product Data: The following shall be provided:
1.
Technical data sheets.
2.
A complete set of instruction manuals.
Quality Assurance Submittals: The following shall be submitted:
1.
Test Report: The final test report shall indicate that every device was tested
successfully in a system test.
DELIVERY, STORAGE AND HANDLING
A.
B.
C.
D.
General: Delivery, storage, and handling of ThruLink shall be in accordance with the
manufacturer’s recommendations.
Ordering: The manufacturer’s ordering instructions and lead-time requirements must be followed
in order to avoid installation delays.
Delivery: ThruLink shall be delivered in the manufacturer’s original, unopened, undamaged
container with identification labels intact.
Storage and Protection: ThruLink shall be stored and protected from exposure to harmful
weather conditions and at the environmental conditions recommended by the manufacturer.
1.08 PROJECT/SITE CONDITIONS
A.
B.
1.09
Temperature Requirements: Standard ThruLink products shall operate in an environment with an
ambient temperature range of –33˚C to +74˚ C without the assistance of fan-forced cooling. The
High Capacity products shall operate in an environment with an ambient temperature range of
+5°C to +35°C without the assistance of fan-forced cooling.
Humidity Requirements: Products shall operate in an environment with relative humidity of 0% to
95% (non-condensing).
WARRANTY
A.
Manufacturer shall warrant ThruLink products to be free from defects in material or workmanship
for a period of at least two years. Maintenance releases for embedded software shall be
supported for the full warranty period.
00000 - 2
Section Title
A & E SPECIFICATIONS
PART 2 – PRODUCTS
2.01
2.02
ACCEPTABLE MANUFACTURER
A.
KBC NETWORKS, 25691 Atlantic Ocean Drive, Suite B3, Lake Forest, CA 92630, USA.
Telephone: +1-949-297-4930, Fax: +1-949-297-4933
Email: [email protected], Internet: www.kbcnetworks.com
B.
Substitutions: Not Permitted
C.
All modules shall be supplied from a single manufacturer
SYSTEM PERFORMANCE
A.
The
ThruLink
products
features/functions/specifications:
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
22.
23.
24.
shall
include,
as
a
minimum,
the
following
The system shall use tunneling technology to provide a secure Virtual Private Network
over any standard public or private IP network.
The system shall operate through fixed public, 3G, mobile, wireless and satellite
networks.
The system shall offer AES-128, AES-192, AES-256, Blowfish-128, Blowfish-192,
Blowfish-256, Camellia-128, Camellia-192 and Camellia-256 encryption.
The system shall provide monitoring of the communications channel to ensure
optimization of the available bandwidth.
Management of the unit shall be achieved via the Internet or SNMPv3.
The system shall be scalable to allow network expansion as system requirements grow.
The system shall perform from behind firewalls and NAT devices.
The system shall not affect TTL, UPnP, VLAN information, broadcast, multicast or any
other traffic.
The Standard Capacity unit shall be available in a dual LAN port format to reduce the
need for a switch when connecting two LAN devices.
The system shall support the following protocols: IP, User Datagram Protocol (UDP),
Transmission Control Protocol (TCP), Dynamic Host Control Protocol (DHCP), Dynamic
Domain Name System (DDNS), Simple Network Management Protocol (SNMP) 3.0.
The standard Capacity unit shall have a bandwidth of 80Mbps (unencrypted) and
30Mbps encrypted the High Capacity unit shall have a bandwidth of 650Mbps
unencrypted and 400Mbps encrypted.
System configuration of all parameters shall be accomplished via the Graphical User
Interface (GUI).
The system shall eliminate the requirement to make network changes.
The system shall be optimized for constant video streaming.
The system shall provide failover functionality for vital uptime requirements.
The Standard Capacity unit shall be temperature hardened for unconditioned
environments.
The system shall provide diagnostic tools including network traffic monitoring, basic
traceroute and ping function.
The Standard Capacity unit shall provide two or three 10/100 RJ45 connectors, a serial
DB9 connector, a jack socket for power input and shall have the ability to be powered by
a Power Injection Module (PIM) via the WAN RJ45 port.
The High Capacity unit shall provide two 10/100/1000 RJ45 connectors, a serial DB9
connector, an LCD display and an IEC power connector.
Standard Capacity units shall be available in standalone configurations and High
Capacity units in rack mount configurations.
The system shall be able to be configured by non-specialist personnel and shall be
designed for rapid deployment with minimal set up and maintenance free operation.
The Standard Capacity unit shall have an operating temperature of -33°C to +74°C and
an operating humidity of 0% to 95% (non- condensing).
The High Capacity unit shall have an operating temperature of +5°C to +35°C, a nonoperating temperature of -40°C to +70°C and an operating humidity of 0% to 95%
(non- condensing).
The system radiated emission shall be compliant with FCC Part 15, Class A and EN55022
specifications.
00000 - 3
Section Title
A & E SPECIFICATIONS
2.03
2.04
SIGNAL SPECIFICATIONS
A.
Ethernet Interface Specifications
1.
Ethernet Compliance: IEEE 802.3, 802.3u, 802.3x
2.
Interface: RJ45 Auto-MDI/MDI-X
3.
Data Rate: 10/100 Mbps (Manual or auto-negotiate for the Standard Capacity unit and
10/100/1000 Mbps for the High Capacity Unit.
4.
Operating Mode: Half or full-duplex
5.
Network Protocols: Unicast/Multicast, UDP, TCP, IP, DHCP, DNS, SNMPv3
B.
Bandwidth
1.
Standard Capacity unit: 80Mbps unencrypted, 30Mbps encrypted
High Capacity unit: 650Mbps unencrypted, 400Mbps encrypted.
POWER SPECIFICATIONS
A.
B.
C.
D.
2.05
MECHANICAL SPECIFICATIONS
A.
B.
2.06
Standard Capacity: +12 Volts DC
High Capacity: 100-240Volts AC
Standard Capacity Current draw <300 mA @ 12 VDC
High Capacity power: 250W
Standard Capacity: 7.5 x 6.5 x 1.125 in. (190 x 165 x 29 mm.)
High Capacity: 15.5 x 17.2 x 1.7 in. (394 x 437 x 44 mm.)
ENVIRONMENTAL SPECIFICATIONS
A.
B.
C.
D.
E.
F.
Standard Capacity Operating Temperature: -33°C to +74° C
High Capacity Operating Temperature: +5°C to +35°C
High Capacity Non-Operating Temperature: -40°C to +70° C
Humidity: 0% to 95% (non condensing)
Emissions: FCC Part 15, Class A
Mean Time between Failure: >100,000 hours
00000 - 4
Section Title
A & E SPECIFICATIONS
PART 3 - EXECUTION
3.01
EXAMINATION
A.
B.
C.
3.02
Inspect modules before installation to verify physical condition as well as inclusion of all
peripheral materials
Modules shall be free of any cosmetic defects or damage.
Shipping box shall include the module, power supply (surface mount units) and operations
manual.
PREPARATION
A.
3.03
Standard Capacity, Standalone Module (Surface Mount)
1.
Shall be mounted on a properly prepared surface adequate for the size and weight of
module. The placement of the unit shall allow provision for cable installation and
maintenance as indicated on the approved detail drawings and in accordance with the
installation manual.
B.
High Capacity, Rack Mount Module
1.
Shall be installed in a standard EIA 19” (482.6 mm) rack or wall standoff bracket adequate
for the size and weight of the High Capacity unit. The placement of the unit shall allow
provision for cable installation and maintenance as indicated on the approved detail drawings
and in compliance with the installation manual.
INSTALLATION
A.
3.04
General: The ThruLink products must be installed, configured, and tested in accordance with the
manufacturer’s instructions.
TESTING AND CERTIFICATION
A.
The Contractor shall demonstrate the functionality of ThruLink on completion of installation,
documenting the result of all tests and providing these results to the Owner. ThruLink shall be tested
in accordance with the following:
1. The Contractor shall conduct a complete inspection and test of all installed ThruLink equipment.
This includes testing and verifying operation with connected equipment and network
infrastructure.
2. The Contractor shall provide staff to test all devices and all operational features of the system for
witness by the Owner’s representative and the Authority having jurisdiction. All testing must be
witnessed by the Owner’s representative, prior to acceptance.
END OF SECTION
00000 - 5
Section Title
A & E SPECIFICATIONS
Brief Specification
The Hardware Virtual Private Network (VPN) units shall be KBC Networks models THLK-S2-WB (ThruLink,
Standard Capacity, Standalone operation) THLK-S3-WB (ThruLink Standard Capacity, Standalone operation)
and THLK-H2-RB (ThruLink, High Capacity, Rack Mount operation). The units shall be either standalone or
rack mount (refer to contract drawings for mounting type). The system shall use tunneling technology to
provide a secure Virtual Private Network over any standard public or private TCP/IP network. The system shall
operate through fixed public, 3G, mobile, wireless and satellite networks. The system shall offer AES, Blowfish
or Camellia encryption up to 256 bit. The system shall provide monitoring of the communications channel to
ensure optimization of the available bandwidth. The management of the unit shall be achieved by the Internet,
Telnet and SNMPv3.The system shall be scalable to allow network expansion as system requirements grow.
The system shall perform from behind firewalls and NAT devices. The system shall not affect TTL, UpnP, VLAN
information, broadcast, multicast or any other traffic. The Standard Capacity unit shall be available in a dual
LAN port format to reduce the need for a switch when connecting two LAN devices. The system shall support
the following protocols: IP, User Datagram Protocol (UDP), Transmission Control Protocol (TCP), Dynamic Host
Control Protocol (DHCP), Dynamic Domain Name System (DDNS), Simple Network Management Protocol
(SNMP) 3.0. The Standard Capacity unit shall have a bandwidth of 80Mbps (unencrypted) and 30Mbps
encrypted the High Capacity unit shall have a bandwidth of 650Mbps unencrypted and 400Mbps encrypted.
System configuration of all parameters shall be accomplished via the Grahical User Interface (GUI). The
system shall eliminate the requirement to make network changes. The system shall be optimized for constant
video streaming. The system shall provide failover functionality for vital uptime requirements. The Standard
Capacity unit shall be temperature hardened for unconditioned environments. The system shall provide
diagnostic tools including network traffic monitoring, basic traceroute and ping function. The High Capacity unit
shall provide two 10/100/100 RJ45 connectors, an LCD display and an IEC mains power. The Standard
Capacity unit shall provide two or three 10/100 RJ45 connectors, a serial DB9 connector, a jack socket for
power input and shall have the ability to be powered by a Power Injection Module (PIM) via the WAN RJ45
port. The High Capacity unit shall provide two 10/100/1000 RJ45 connectors, a serial DB9 connector, an LCD
display and an IEC power connector. The system shall be able to be configured by non-specialist personnel,
shall be designed for rapid deployment with minimal set up and maintenance free operation. The Standard
Capacity unit shall have an operating temperature of -33°C to +74°C and the High Capacity unit shall have an
operating temperature of +5°C to +35°C and a non-operating temperature of -40°C to +70°C. They shall both
have an operating humidity of 0% to 95% (non-condensing) and a MTBF of greater than 100,000 hours. The
system radiated emission shall be compliant with FCC Part 15, Class A and EN55022 specifications.
00000 - 6
Section Title