In November 2007, the Office of Management and Budget (OMB) announced its Trusted Internet Connections (TIC) initiative which will limit the number of internet connections (gateways) into Federal Departments and Agencies. In response, GSA developed MTIPS, a Networx service that enables Agencies to meet their TIC requirements. This is a new service that was not offered on previous GSA contracts.
MTIPS allows Agencies to transport Internet Protocol (IP) packets to/from external networks including the Public Internet, business partner's networks and Government-wide intranets and extranets. MTIPS enables Federal Agencies to achieve full compliance with the TIC mandate by facilitating the reduction of the number of Internet connections in Government networks while providing stipulated security functions and controls to all Government users.
The figure below shows a notional architecture for MTIPS. It is a realization of the TIC 1.0 Reference Architecture as required by the OMB TIC initiative.
MTIPS Notional Architecture
As shown in the figure, MTIPS is comprised of (1) the network infrastructure to transport IP traffic originating in the Agency Enterprise Wide Area Network (WAN) and (2) the TIC portal (DHS Approved Access Point). Together they create an Agency TIC Trusted Domain (DMZ) for IP traffic. (The term DMZ was originally coined as an acronym for demilitarized zone). The DMZ is created by the contractor to ensure that Agency traffic is protected and physically isolated when transported to the TIC portal and the public internet. Contractor-provided access to the MTIPS Transport POP is included in the DMZ.
The MTIPS (TIC) Portals built by Networx contractors provide access to multiple Tier 1 Internet Service Providers (ISPs). An MTIPS portal functions as an OMB approved Multi-Service Trusted Internet Connection Access Provider (TICAP) capable of hosting multiple Agencies and able to manage and correlate multiple independent traffic streams for each subscribing Agency. The MTIPS Portal provides security services to multiple clients, but allows for specific controls based on Agency requirements.
Prior to subscribing to MTIPS, Agencies must do the following:
The MTIPS ensures 100% compliance with the OMB mandate upon subscription by the Agencies. MTIPS is an enhancement to the Networx Internet Protocol Service (IPS). It provides an additional layer of security which isolates Agencies internal traffic from un-trusted zones (i.e., the Public Internet and other external networks).
MTIPS supports the following technical capabilities described in detail in Section C.2.4.1.5.1.4 of the Networx contracts:
The MTIPS Feature set is described in Section C.2.4.1.5.2.1 of the Networx contracts (MTIPS Feature Set). It consists of:
Each Networx contractor may provide variations or alternatives to the offering and pricing for MTIPS. The specific details can be found within each Contractor's Networx contract files and pricing notes for MTIPS.
For more information on the general MTIPS specifications and requirements, please refer to Section C.2.4.1.5 of the Networx contracts for technical specifications and Section B.2.4.1.5 for pricing.
MTIPS facilitates the reduction of the number of Internet connections in Government networks and provides standard security services to all Government users. MTIPS is in full compliance with the Office of Management and Budget's (OMB) Trusted Internet Connection (TIC) initiative (M-08-05).
The MTIPS port price includes:
CLINs are distinguished by access type:
MTIPS is a service that was not offered on the FTS2001 contracts.
Price components required for full end-to-end service for Domestic and Non-Domestic MTIPS:
* All MTIPS features are priced on an Individual Case Basis (ICB). CLINs with ICB prices are not available in the unit pricer.
Each Networx contractor may provide variations or alternatives to the offering and pricing for MTIPS. The specific details can be found within each Contractor's Networx contract files and pricing notes for MTIPS.
For more information on the general MTIPS specifications and requirements, please refer to Section C.2.4.1.5 of the Networx contract for technical specifications and Section B.2.4.1.5 for pricing.