BOI’s relationship with Cyfuture began with the former assigning the latter an important assignment of centralizing all its business functions, which BOI aimed to achieve through a unified website.
The biggest challenge surrounding the assignment was adhering to the stringent norms of banking and cyber security. The volume of data that BOI estimated would go through our network presented unprecedented challenges. It needed a robust host that could handle domestic as well as foreign websites with one System Integrator and centralize monitoring and control of the entire setup. Given the size of data and security level involved, the client needed flexibility, scalability and control without compromising with the security, a challenge of which it notified Cyfuture at the start. Other challenges that the bank encountered were –
Cyfuture suggested the required components be hosted on its Tier III data centers and, as added measures for resilience, include disaster recovery, which would be maintained on another location for security purposes. A network operation center for monitoring and maintenance was subsequently configured. The entire service would remain managed.
3 servers were configured. Each had hexa-core Intel Xeon (64bit), 32 GB (8x4GB) RAM, 1 TB usable SAS HDD in RAID 5, Dual NIC and RPS with latest Windows OS and SQL 2016 or above or Oracle or DB2.
DR servers comprised a dedicated server with same configuration as primary server, as above, with suitable replication tool license (Max 2 CPU Servers) and replication management. The recovery time was kept below 15 minutes and a DR drill was projected to be followed every quarter.
To enhance security, a dedicated firewall was provided. This would monitor data as it enters and outgoes the network and ensure that only genuine network traffic skimmed in and out of the system.
Since the client wanted stringent security measures possible with equal emphasis on maintenance, the solution specifications and timelines decided were as follows
DR Drill in every
6 months
Patch management
on monthly basis.
RPO and RTO –
15 Mins and 2 hours.
The following specifications were carefully carved as per the business requirements –
The proposed solutions were implemented and all requirements were appropriately met.