P a g e 1 F5 BIG-IP LTM Installation - (SOW) Description This SOW includes the establishment of network connectivity and standard load balancing functionality for either a single F5 BIG-IP LTM platform or a High Availability LTM pair physically located in the same data centre. this SOW may be extended at the mutual discretion of the reseller and Firewall Systems. SOW extension may be charged at the Firewall Systems F5 Consulting daily rate on the Firewall Systems web site. A FIREWALL SYSTEMS network consultant will be onsite for up to 2 days to complete the works described in the section below entitled "Deliverables". Products Covered All F5 BIG-IP LTM chassis up to the 8800 model. For any work required that exceeds the 2 days timeframe, further engagement must be purchased using the Firewall Systems F5 Consulting daily rate. Some of these deliverables may be completed prior to site arrival and some may be performed post site visit. Locations Covered The standard Scope of Works covers work performed in any Capital City metropolitan area in Australia. Any travel associated with the service outside of the 2 days work or outside the coverage area will be charged at 50% of the current hourly rate. No implementation, configuration tasks other than those specifically mentioned will be performed within the scope of this implementation. Where this document states customer that definition cover our reseller partners and also the end-user customer Timeline / Scheduling FIREWALL SYSTEMS Implementation Services are typically provided for new product purchases during local business hours of 9AM - 5PM, Monday - Friday, excluding holidays. If the time allotted is not sufficient to complete the implementation as planned,
P a g e 2 Deliverables Your FIREWALL SYSTEMS consultant will perform the following tasks to install and configure a single LTM appliance, or a HA pair of LTM appliances located within the same physical data centre. COMPLETE N/A DELIVERABLES 1. Customer signs off acceptance of Scope of Works a. Including review of all works and architectures 2. Install License (requires internet connectivity) 3. Physical installation of device. 4. Configuration of management settings and software upgrade 5. Configure VLANs, IP addresses and interfaces for and test basic routing capabilities. 6. Configure standard LTM configuration. a. Virtual server network forwarding / routing b. Load Balancing up to 20 virtual servers, associated pools profiles and nodes including cert/key imports c. Persistence profiles (simple, sticky, cookie insert) d. Simple irules limited to consisting of no more than three if/else conditional statements or one switch conditional statement for one of the following irule events: CLIENT_ACCEPTED, HTTP_REQUEST and the following irule commands: active_members, snat, snatpool, pool, IP::remote_addr, TCP::client_port, IP::client_addr, log, HTTP::host, HTTP::uri, PLUGIN::disable, and HTTP::redirect. 7. Simple Service monitors and health checks for above. 8. Failover configuration and testing as required for config. 9. Nat and SNAT configuration as required 10. Setup basic system monitoring (Syslog / SNMP) 11. Remote user authentication for 10 accounts through LDAP, AD and radius. 12. Knowledge transfer to cover a. Operational functionality b. Basic administrative changes c. Troubleshooting (qkview, tcpdump, etc) 13. Introduction to F5 support services and processes. a. in web portal, askf5 etc 14. Provide a basic as built diagram in Visio format.
P a g e 3 Exclusions Any tasks not listed above will need to be scoped as a billable engagement. Examples of tasks which are NOT included in the standard scope of works are (including but not limited to): Migrations from competitive platforms. Complex irules not defined in the deliverables. Complex Monitors such as scripted and external. TMOS initiated commands Advanced configuration options Configuration validation against live traffic System monitoring (basic syslog / SNMP setup) configuration LDAP/TACACS/RADIUS authorization Complex irules (multiple conditions / functions) Complex Monitors (ECV, scripted, external) Complex persistence (other than Source Address Affinity or Cookie Insert) Feature / profile tuning (compression, rate shaping, SSL, TCP, etc) Header / content transformation Client Authentication configuration IPv6 Gateway configuration RAM Cache configuration Rate Shaping configuration Dynamic Routing configuration Global Load balancing module configuration Ad-hoc knowledge transfer regarding advanced features Migration services Deployments with these complexities should be scoped separately and will result in a customized SOW. requested information in a timely manner may adversely impact Firewall Systems ability to fulfil the stated deliverables. All onsite work will be performed at a single physical location, utilizing a single FIREWALL SYSTEMS consultant and a single round-trip travel arrangement. Prior to the arrival of the implementation consultant, Customer will provide Firewall Systems with a complete Pre- Install Checklist Failure to provide a completed checklist may result in the implementation being rescheduled. During the full course of the implementation, Customer will provide FIREWALL SYSTEMS consultant with appropriate access, guidance and technical resources, including detailed information and hands-on assistance as required for the successful progress of the implementation The number of labour hours expended towards delivery of this service under no circumstances shall exceed 2 days. Deliverables which are not met may require service(s) delivered under an additional hourly rate. Valid internet connectivity is already available at the installation site. All rack, power and cabling work is to be completed prior to installation date. That the customer has read this Scope of Works and understands the Deliverables and Exclusions and further understands that hourly charges may result should the Scope be extended. Conditions and Assumptions Customer and Firewall Systems agree upon the following requirements and assumptions regarding information, accesses and resources conditional to performing the work described above. Failure to provide
P a g e 4 Warranties Certain laws imply terms, conditions and warranties ( Prescribed Terms ) into contracts for the supply of goods or services and prohibit the exclusion, restriction or modification of such terms, conditions and warranties. The liability of Distribution Central Pty Limited and its respective business units in respect of a breach of a Prescribed Term is limited, to the extent permissible by law and at the option of Distribution Central: A In the case of Goods, to the; A1. Replacement of the Goods; or A2. Payment of the cost of replacing the Goods; or A3. Refund of the Purchase Price paid by the Customer or issue of a credit adjustment. B In the case of Services to the; B1. Supply of the Services again; or B2. The payment of the cost of having the services supplied again. Unless the terms and warranties are included in these Terms all prior discussions, quotations, warranties and Prescribed Terms, to the extent permitted by law, are excluded.
P a g e 5 Firewall Systems Consultant: Reseller Contact (prior to start of installation) A single reseller employee must be identified below as the party responsible for managing the implementation. This person will provide all assistance required and should also be authorised to sign off on the completed deliverables. P/O Number Reseller Sign Off Installation of LTM appliance as per above Scope of Works: Signature: Date: End User Contact (prior to start of installation) A single end-user employee must be identified below as the party responsible for managing the implementation at their end. This person will provide all assistance and should also be authorised to sign off on the completed deliverables. End User Sign Off Installation of LTM appliance as per above Scope of Works: Signature: Date: Firewall Systems is a business unit of Distribution Central Pty Limited ABN 70 006 687 056 www.firewalls.com.au resellers@firewalls.com.au NSW Unit 3, 43 Herbert St, Artarmon 2064 P: 02 8986 5000 F: 02 8986 5001 VIC Level 6, 10 Queens Rd, Melbourne 3004 P: 03 9290 4800 F: 03 9290 4801 QLD Level 5, 9 Sherwood Road, Toowong 4066 P: 07 3310 8718 F: 07 3310 8800 WA PO Box 2412, Warwick, Perth 6024 P: 0412 247 778 F: 02 8986 5001 2008 Distribution Central Pty Limited. Brand names and trademarks mentioned are trademarks or registered trademarks of their respective companies. Product specifications and availability are subject to change. 5001 NW TAS Dec 07.
P a g e 6 Completion of work Work is considered completed when the customer has signed off below. Work is also considered complete 5 days after the installation if there are no objections. Reseller Sign off The reseller agrees that the Scope of Works has been successfully fulfilled. Reseller Sign Off The Reseller agrees that the Scope of Works has been successfully fulfilled. Signature: Date: End User Sign off The End User agrees that the Scope of Works has been successfully fulfilled. End User Sign Off Installation of LTM appliance as per above Scope of Works Signature: Date: Firewall Systems is a business unit of Distribution Central Pty Limited ABN 70 006 687 056 www.firewalls.com.au resellers@firewalls.com.au NSW Unit 3, 43 Herbert St, Artarmon 2064 P: 02 8986 5000 F: 02 8986 5001 VIC Level 6, 10 Queens Rd, Melbourne 3004 P: 03 9290 4800 F: 03 9290 4801 QLD Level 5, 9 Sherwood Road, Toowong 4066 P: 07 3310 8718 F: 07 3310 8800 WA PO Box 2412, Warwick, Perth 6024 P: 0412 247 778 F: 02 8986 5001 2008 Distribution Central Pty Limited. Brand names and trademarks mentioned are trademarks or registered trademarks of their respective companies. Product specifications and availability are subject to change. 5001 NW TAS Dec 07.