NPCI ACH Solution Bank on-boarding Technical



Similar documents
Bank s Requirements for participating in CTS. Mumbai- Implementation Meeting. Mumbai- 18 th Jan. 2013

Frequently Asked Questions (FAQs) NACH Credit NATIONAL PAYMENTS CORPORATION OF INDIA

efiletexas.gov Infrastructure Guidelines

Migration and Disaster Recovery Underground in the NEC / Iron Mountain National Data Center with the RackWare Management Module

EFETnet Software System Requirements

msuite5 & mdesign Installation Prerequisites

INSTALLATION MINIMUM REQUIREMENTS. Visit us on the Web

Migration and Building of Data Centers in IBM SoftLayer with the RackWare Management Module

SECURITY OVERVIEW FOR MY.ENDNOTE.COM. In line with commercial industry standards, Thomson Reuters employs a dedicated security team to protect our

Disaster Recovery Cloud Computing Changes Everything. Mark Hadfield CEO - LegalCloud Peter Westerveld IT Director - Minter Ellison Lawyers

System Requirements - filesmart

Migration and Building of Data Centers in IBM SoftLayer with the RackWare Management Module

CERTIFICATIONS / DATAFARMAR&B

Workflow Solutions Data Collection, Data Review and Data Management

Microsoft Windows Apple Mac OS X

Minimum System Requirements

For windows erver, Which edition of Windows server 2008 is required ( i. e. Web / Standard / Enterprise )?? Kindly suggest.

VMware vsphere Data Protection

Talk With Someone Live Now: (760) One Stop Data & Networking Solutions PREVENT DATA LOSS WITH REMOTE ONLINE BACKUP SERVICE

6. Is it mandatory to have the digital certificate issued from NICCA? Is it mandatory for the sender and receiver to have a NIC id?...

Vidyo Network Configuration Guide Windows XP and Vista

How To Connect To Bloomerg.Com With A Network Card From A Powerline To A Powerpoint Terminal On A Microsoft Powerbook (Powerline) On A Blackberry Or Ipnet (Powerbook) On An Ipnet Box On

Introweb Remote Backup Client for Mac OS X User Manual. Version 3.20

Oracle Health Sciences Network Patient Recruiter Cloud Service - Overview

Alaska Alternate Assessment. Website Security Assurances. June App3.6_Test_Site_Security

White Paper ClearSCADA Architecture

Compulink Advantage Cloud sm Software Installation, Configuration, and Performance Guide for Windows

Cisco Application Networking for IBM WebSphere

Enterprise Manager. Version 6.2. Administrator s Guide

1.0 Hardware Requirements:

Microsoft Windows Apple Mac OS X

Enterprise Manager. Version 6.2. Installation Guide

Secure Data Hosting. Your data is our top priority.

Implementing the Application Control Engine Service Module

Copyright Telerad Tech RADSpa. HIPAA Compliance

We look beyond IT. Cloud Offerings

CBE system requirements

SecureLinx Spider Duo Quick Start Guide

Technical Overview N2EX

EMC Business Continuity for Microsoft SQL Server Enabled by SQL DB Mirroring Celerra Unified Storage Platforms Using iscsi

The Leading KVM Switch Solutions Provider, ATEN. 40-Port KVM Over the NET - 1 local / 4 remote user access

SCENARIO EXAMPLE. Case study of an implementation of Swiss SafeLab M.ID with Citrix. Redundancy and Scalability

Host - to - Host Automated Solution

Citrix MetaFrame XP Security Standards and Deployment Scenarios

A. The Treeno Data Center maintains audited advanced security systems equal to the most sophisticated systems of large corporations.

Scan to FTP Guide. Version 0 ENG

IBM Tivoli Storage Manager FastBack

MetaFrame Presentation Server Security Standards and Deployment Scenarios Including Common Criteria Information

VMware Virtual Desktop Infrastructure (VDI) - The Best Strategy for Managing Desktop Environments Mike Coleman, VMware (mcoleman@vmware.

IBM i25 Trends & Directions

REMOTE BACKUP-WHY SO VITAL?

Table 1. Requirements for Domain Controller. You will need a Microsoft Active Directory domain. Microsoft SQL Server. SQL Server Reporting Services

Centricity 360 Case Exchange

Best Practices in Legal IT. How to share data and protect critical assets across the WAN

PaperSave IT Prerequisites for Blackbaud s The Financial Edge

Customer Tips. Xerox Network Scanning TWAIN Configuration for the WorkCentre 7328/7335/7345. for the user. Purpose. Background

Re-Tender RFP for Providing Dedicated Web Hosting Services for IBA Pre-Bid Queries

Personal Computer Standard. National Infrastructure Group. National Infrastructure Group, ehealth Leads, ehealth Architecture and Design.

Minimum System Requirements

Symantec Endpoint Protection 11.0 Architecture, Sizing, and Performance Recommendations

RightNow November 09 Workstation Specifications

How To Write An Ets Request For Proposal (Rfp)

Barracuda Backup for Managed Services Providers Barracuda makes it easy and profitable. White Paper

Neverfail for Windows Applications June 2010

Server Software Installation Guide

Ensure that the server where you install the Primary Server software meets the following requirements: Item Requirements Additional Details

Live Guide System Architecture and Security TECHNICAL ARTICLE

Complying with PCI Data Security

SNOW LICENSE MANAGER (7.X)... 3

<Insert Picture Here> Refreshing Your Data Protection Environment with Next-Generation Architectures

INUVIKA OPEN VIRTUAL DESKTOP FOUNDATION SERVER

Sage MAS 200 ERP Level 3.71 Version 4.30 Supported Platform Matrix

AppSense Environment Manager. Enterprise Design Guide

CribMaster Database and Client Requirements

Millbeck Communications. Secure Remote Access Service. Internet VPN Access to N3. VPN Client Set Up Guide Version 6.0

Servers, Clients. Displaying max. 60 cameras at the same time Recording max. 80 cameras Server-side VCA Desktop or rackmount form factor


Cisco Application Networking Manager Version 2.0

OpManager MSP Edition

Tel: Toll-Free: Fax: Oct Website: CAIL Security Facility

How to Set Up Disaster Recovery for HP OO

Scan to Network Guide (Windows )

SNOW LICENSE MANAGER (7.X)... 3

Perceptive Software Platform Services

DNA. White Paper. DNA White paper Version: 1.08 Release Date: 1 st July, 2015 Expiry Date: 31 st December, Ian Silvester DNA Manager.

LTO4 Hardware Encryption Best Practices. By Vic Ludlam Distributed by Dynamic Solutions International

IT Architecture Review. ISACA Conference Fall 2003

Ignify ecommerce. Item Requirements Notes

Compulink Advantage Online TM

HP Intelligent Management Center Standard Software Platform

SERENA SOFTWARE Authors: Bill Weingarz, Pete Dohner, Kartik Raghavan, Amitav Chakravartty

Proof of Concept Guide

Gorilla CRM System Requirements

Claim your FREE Scanning trial today. Your guide to Document Scanning, Data Capture & Entry

Priority Pro v17: Hardware and Supporting Systems

HP Intelligent Management Center Enterprise Software Platform

NEC Corporation of America Intro to High Availability / Fault Tolerant Solutions

Alliance Key Manager A Solution Brief for Technical Implementers

Addendum 5 STATE OF LOUISIANA. Division of Administration Office of Technology Services RFP #:

DEPLOYMENT GUIDE Version 1.1. Configuring BIG-IP WOM with Oracle Database Data Guard, GoldenGate, Streams, and Recovery Manager

Transcription:

NPCI ACH Solution Bank on-boarding Technical 1

Agenda Features of the Automated Clearing House Solution Requirements & Readiness from Banks 2

Features Application Architecture Application Security Network Architecture Failover DR-BCP 3

Application Architecture 4

Security Architecture Contd Https based Secured Socket Layer (SSL) communication for data exchange Class 2 certificate with SHA 256 2048 bit encryption Sterling File Gateway (SFG) for message transformation, internally all would be ISO 20022 format User request will be processed at Web Server only 5

Application Security Dual Factor authentication 4 Eye Principle (Maker Checker Concept) for all activities SSL based communication Digital signing of files Non-Repudiation Audit log of user activity 6

Network Architecture Member Banks MPLS NPCINET ACH Application Tier PR & HA Internal Firewall ACH Application Tier DR INTERNET DSA Corporates External Firewall 7

Network Connectivity Internet can be used by DSA/Corporates with limited functions while accessing ACH Existing NPCINET for CTS will be used for ACH by banks in CUG Banks will need to upgrade/procure the necessary bandwidth based on the volume Network capacity (Mbps) = The assumptions in place for the network capacity are: that the busiest hour of the day moved 40% of the total item volume that a network can only be used up to 60% of it s theoretical maximum that 10-bits represents the data plus network overhead there are 1024 KB in a MB and 3600 seconds per hour Size per Transaction No of Transaction Module Banwidth Requirement (in Mbps) 250 Bytes 200,000 ECS 0.09 100 KB 2,000 MMS 0.36 5 KB 200,000 ACH 1.81 8

Failover DR-BCP DC in Chennai DR in Mumbai Primary A/P Cluster HA A/P Cluster DR A/P Cluster ACH DB ACH DB ACH DB ACH DB ACH DB ACH DB SFG DB SFG DB SFG DB SFG DB SFG DB SFG DB HADR synchronous over LAN DB2 Q- Replication asynchronous over WAN 9

Failover Mechanism High Availability (HA) present on the same primary site for recovery PR & HA database synchronous Q replication over LAN RPO Zero and RTO 10 minutes Disaster Recovery (DR) present on the off-site for recovery PR/HA & DR database asynchronous Q replication over WAN RPO Near Zero and RTO 30 minutes 10

Requirements & Readiness Hardware & Software Digital Certificate Network Connectivity File Formats Scanning of Mandate 11

Hardware & Software PC s with minimum one dual-core processor Minimum 2GRAM USB port Present & Enabled Operating system Windows XP/7 Browser Internet Explorer 8+, Firefox latest version Drivers for accessing e-token based digital certificates JRE Java 6 runtime environment 12

Digital Certificate Class II certificates will be used for user authentication and file signing Certificates can be procured from NPCI authorized CA Certificate will be required for every participant user of ACH incl. DSA/Corporates Standard crypto tokens should be used for storing certificates Certificates management can use the same RA service of bank No bank level certificate will be required to start with NETWORK Connectivity In Pilot phase banks we plan to use internet and access the performance 13

File Formats File Presentation Input file by sponsor Bank ECS & ACH File Format Format ECS Format - Flat file / ACH Format - ISO 20022 - pacs008(cr)/pacs003 format(dr) - Xml file Acknowledgement File to Sponsor Bank ISO 20022 - pacs002 format - Xml file ECS Format - Flat file / Inward File to Destination Bank ACH Format - ISO 20022 - pacs008(cr)/pacs003 format(dr) - Xml file ECS Format - Flat file / Return File from Destination Bank ACH Format - ISO 20022 - pacs008(cr)/pacs003 format(dr) - Xml file Acknowledgement File to Destination Bank ISO 20022 - pacs002 format - Xml file ECS Format - Flat file / Output File to Sponsor Bank ACH Format - ISO 20022 - pacs008(cr)/pacs003 format(dr) - Xml file Recall transactions ISO 20022 - camt056 Format - Xml file ECS Format - Flat file / UID Mapper File ACH Format - ISO 20022 - pacs008 format - Xml file File Mandate Initiation Request Mandate Amendment Request Mandate Cancellation Request Mandate Acceptance Report Mandate XML Format Format ISO 20022 - pain009 format - Xml file ISO 20022 - pain009 format - Xml file ISO 20022 - pain009 format - Xml file ISO 20022 - pain009 format - Xml file 14

Scanning of Mandate Existing CTS Cheque scanners can be used to scan mandates since format is same 3 Images need to be scanned for mandate processing same as Cheques 2 Images in Black & White of Front and Back side in TIFF format @ 200 DPI 1 Image in Grey scale of Front side in JPEG format @ 100 DPI Combined image size of all the 3 images should not exceed 80 KB 15

Bank Specification Document Hardware & System Software ACH process along with the file naming and format specification MMS processing along with Image specification MMS processing with GUI File & Message formats 16