Home India Ministry of Railways Publication of Gazette Notification for declaring the RCIL n...
Date: 22-Apr-2024 Category: Extra Ordinary State: Union Government Country: India

Publication of Gazette Notification for declaring the RCIL network infrastructure as CII.

Issued by Ministry of Railways · Railway Board

Research with AI Agent Chat with Document Generate Summary Translate Helpful Share Add to Project Create Task

Executive Summary & Key Takeaways

What it means

  • The notification declares specific computer resources of RailTel as 'Protected Systems' under the Information Technology Act, 2000, due to their status as Critical Information Infrastructure.
  • It also specifies who is authorized to access these protected systems.

Key Changes

  • The Central Government, using powers under Section 70(1) and (2) of the Information Technology Act, 2000, has declared certain computer resources related to RailTel as protected systems.
  • The protected computer resources include Border Gateway Router, Element Management System, Network Management System, Security Operation Centre, Billing Server and IP detail Record Server, Route Reflector, Authentication, Authorisation and Accounting, Lightweight Directory Access Protocol Directory, Domain Name System Server, Anti DDOS Solution and NAT Gateway, and associated dependencies.
  • Authorized personnel to access these systems include: RailTel's designated employees authorized in writing, team members of contractual managed service providers or third-party vendors authorized in writing by RailTel for need-based access, and consultants, regulators, Government officials, auditors, and stakeholders authorized in writing by RailTel on a case-by-case basis.
  • The notification is effective from the date of its publication in the Official Gazette, which is April 22, 2024.

Impact Analysis

RailTel

  • RailTel should implement measures to monitor and audit access to the protected systems to detect and prevent unauthorized access or misuse.

Managed Service Providers and Third-Party Vendors

  • They should maintain records of personnel authorized to access the systems and the purpose of their access.

Government and Regulators

  • This may impact auditing and regulatory oversight processes, requiring closer coordination with RailTel.

General Public

  • The enhanced security measures for RailTel's critical infrastructure ultimately aim to protect the reliability and security of railway services, indirectly benefiting the general public.

Action Items

  • All Stakeholders: Ensure compliance with RailTel's security policies and procedures when accessing protected systems.

Key Entities Referenced

RailTel: RailTel is the organization whose specified computer resources are declared as 'Protected Systems'. Information Technology Act, 2000: The legal framework under which the notification is issued, specifically Section 70, which grants powers to the Central Government to declare protected systems. Central Government: The issuing authority of the notification, acting through the Ministry of Railways (Railway Board).
Official Source Record View Original Source →
See Full Document Text
रजिस्ट्री स.ं डी.एल.- 33004/99 REGD. No. D. L.-33004/99 सी.जी.-डी.एल.-अ.-22042024-253810 CG-DxLx-xEG-I2D2H0x4x2x0 24-253810 xxxGIDExxx असाधारण EXTRAORDINARY भाग II—खण् ड 3—उप-खण्ड (ii) PART II—Section 3—Sub-section (ii) प्राजधकार स ेप्रकाजित PUBLISHED BY AUTHORITY स.ं 1678] नई दिल्ली, सोमवार, अप्रलै 22, 2024/विै ाख 02, 1946 No. 1678] NEW DELHI, MONDAY, APRIL 22, 2024/VAISHAKH 02, 1946 रेल मत्रं ालय (रेलव ेबोडड) अधिसचू ना नई दिल् ली, 22 अप्रलै , 2024 का.आ. 1765(अ).— सूचना प्रोद्यौजगकी अजधजनयम, 2000 (2000 का 21)के खंड 70 के उप खंड (1) तथा (2) द्वारा प्रित्त िजियों का प्रयोग करत े हुए, केंद्र सरकार एतद्द्वारा रेलटेल की महत्वपूण ड सूचना अवसंरचना होन े के कारण बॉडडर गेटव े राऊटर, एलीमेंट प्रबंधन प्रणाली, नेटवकड प्रबंधन प्रणाली, सुरक्षा पररचालन केंद्र, जबललगं सवडर तथा आईपी जववरण ररकॉड ड सवडर, रूट ररफ्लेक्टर, प्रमाणीकरण, प्राजधकरण तथा लेखांकन, लाइटवेट डायरेक्टरी एक्सेस प्रोटोकॉल डायरेक्टरी, डोमने नेम जसस्ट्टम सवडर, एंटी डीडीओएस सॉल्यूिन और एनएटी गेटव े से संबंजधत कंप्यूटर संसाधनों और इससे संबद्ध जनभडरताओं वाल े कंप्यूटर संसाधनों को उि जनयम के प्रयोिनाथड संरजक्षत प्रणाजलयां घोजित करती ह ै तथा सरं जक्षत प्रणाजलयों तक पहुचं प्रिान करने हते ु जनम्नजलजखत कमडचाररयों को प्राजधकृत करती है, यथा:- क. संरजक्षत प्रणाली तक पहुचं प्रिान करने हते ु रेलटेल द्वारा जलजखत में प्राजधकृत दकया गया रेलटेल का कोई भी नाजमत कमडचारी। ख. अनुबंजधत प्रबंजधत सेवा प्रिाता या तृतीय-पक्ष जवक्रेता का कोई भी टीम सिस्ट्य जिसे रेलटेल द्वारा आवश्यकता- आधाररत पहुचं के जलए जलजखत रूप में प्राजधकृत दकया गया हो: और 2655 GI/2024 (1)2 THE GAZETTE OF INDIA : EXTRAORDINARY [PART II—SEC. 3(ii)] ग. रेलटेल द्वारा मामला िर मामले के आधार पर जलजखत में प्राजधकृत कोई भी परामिडिाता, जनयंत्रक, सरकारी अजधकारी, लेखापरीक्षक तथा साझेिार। 2. यह अजधसूचना सरकारी रािपत्र में प्रकािन की तारीख से प्रभावी होगी। [फा. स.ं ए-20008/1/2023-एसआर.जसस.एनाजलस्ट्ट2] रणिीत कुमार, कायडपालक जनिेिक / िरू संचार जवकास MINISTRY OF RAILWAYS (RAILWAY BOARD) NOTIFICATION New Delhi, the 22nd April, 2024 S.O. 1765(E).— In exercise of the powers conferred by sub-section (1) and (2) of section 70 of the Information Technology Act, 2000 (21 of 2000), the Central Government hereby declares the computer resources relating to Border Gateway Router, Element Management System, Network Management System, Security Operation Centre, Network Operation Centre, Billing Server and IP detail Record Server, Route Reflector, Authentication, Authorisation and Accounting, Lightweight Directory Access Protocol Directory, Domain Name System Server, Anti DDOS Solution and NAT Gateway, being Critical Information Infrastructure of the RailTel, and the computer resources of its associated dependencies to be Protected Systems for the purposes of the said Act and authorizes the following personnel to access the protected systems, namely:- a. any designated employee of the RailTel authorized in writing by the RailTel to access the protected system. b. any team member of contractual managed service provider or third-party vendor who have been authorised in writing by the RailTel for need-based access: and c. any consultant, regulator, Government official, auditor and stakeholder authorised in writing by RailTel on case to case basis. 2. This notification shall come into force on the date of its publication in the Official Gazette. [F. No. A-20008/1/2023-SR.SYS.ANALYST2 ] RANJIT KUMAR, Executive Director/TD Uploaded by Dte. of Printing at Government of India Press, Ring Road, Mayapuri, New Delhi-110064 and Published by the Controller of Publications, Delhi-110054.

Continue your research