Secure Gateway – Retail & Remote Office

(formerly Broadband VPN Interworking)

 

I.          DESCRIPTION OF SERVICE:  Secure Gateway – Retail & Remote Office enables Customer to connect to its Private IP Service or Frame Relay Services network via a virtual private network over its Internet access connection.  Secure Gateway – Retail & Remote Office is comprised of Company-supplied and configured customer premise equipment (Secure Gateway – Retail & Remote Office CPE), and a Company network-based secure gateway (Secure Gateway) port.  To use the Secure Gateway – Retail & Remote Office, Customer must separately establish at least one network node on a Private IP Service or Frame Relay Services network and one of the following forms of Internet access:  (a) Internet DSL and Internet Cable or Customer-provided broadband Internet access (e.g., Direct Subscriber Line (DSL) or cable modem access), or (b) Internet Dedicated Services.

 

1.         Availability:  The following SIG Port Speeds are available:  64 kbps, 128 kbps, 256 kbps, 384 kbps, 512 kbps, 768 kbps, 1.024 Mbps, 1.536 Mbps, 3.072 Mbps, 4.608 Mbps, 6.144 Mbps, 7.680 Mbps, 9.216 Mbps, 10.752 Mbps, 12.288 Mbps and15.360 Mbps.  Secure Gateway port speeds above 15.360 Mbps may be ordered and installed on an Individual Case Basis (ICB) only.  All ICB orders must be pre-approved by Secure Gateway capacity planning prior to placing a service order.

 

2.         Customer Premises Equipment:  Company provides and configures the following VPN routers: Cisco 831, Cisco 1711 and Cisco 1721.  A VPN router is required for each DSL or cable modem access site from which the Secure Gateway – Retail & Remote Office is provided.  Customer is responsible for installation of the CPE.  Customer’s use of Secure Gateway – Retail & Remote Office CPE is subject to its manufacturer’s end user agreement and software license, if any.  Customer must provide an analog telephone connection with throughput as specified by Company.  Customer is responsible for any charges incurred to extend the analog telephone connection wiring from the telephone company demarcation point to the CPE.  Customer is responsible for on-site installation of the Secure Gateway – Retail & Remote Office CPE, unless it requests the optional On-Site Installation service.

 

3.         Authorized Users:  Customer: (a) is responsible for its Authorized Users’ (as defined in the General Terms and Conditions for Internet, Enhanced and Other Non-Telecommunications Products and Services); (b) must designate and maintain an authorized system administrator responsible for administering Authorized User accounts; (c) is solely responsible for all Authorized User accounts, support, billing, and collections; and (d) is solely responsible for the set-up, administration, and maintenance via secure connection of all Authorized User accounts, including without limitation dial-up access authorizations and Authorized User identifications and  passwords.  Company has no responsibilities in relation to Authorized Users whatsoever.

 

4.         Third Party Connectivity:  Customer may use Secure Gateway – Retail & Remote Office with Customer-provided DSL or cable modem access.  Customer must rent from Company pre-configured equipment designated by Company as necessary for the Customer to create a functional Company-compatible virtual private network site connected to the Internet via a non-Company network (a “Third Party Connectivity Site”).  Customer may establish such Third Party Connectivity Sites only in the United States.  Customer must provide and pay for that dedicated Internet connection through a local, third-party Internet Service Provider (“3rd party ISP”) in order to connect the CPE at the Third Party Connectivity Site to Customer’s VPN.  Customer is responsible for the installation and maintenance of all dedicated access connections (including but not limited to the telephone line access circuit).  Customer must ensure that the connection speed to the 3rd party ISP from the Third Party Connectivity Site is at least 56Kbps and that the 3rd party ISP allows Company remote access to the CPE for management and monitoring purposes.  In addition, Customer must order, provide and pay for a dedicated analog telephone connection for use exclusively by each out of band modem at the Third Party Connectivity Site.  All telephone line access circuit charges (including, without limitation, the back-up telephone line access circuit charge) are Customer’s responsibility. Any facilities and extra cabling necessary within Customer’s building, in particular in relation to the connection between the telco entrance point and Customer’s IP connection point, are not included and are Customer’s responsibility. 

 

4.1       Backup Service Configuration Option:    If Customer uses Secure Gateway – Retail & Remote Office with Customer-provided DSL or cable modem access, Customer must rent from Company pre-configured equipment designated by Company as necessary for the Customer to create a functional Company-compatible virtual private network site connected to the Internet via a non-Company network (Third Party Connectivity Site).  Customer may establish such Third Party Connectivity Sites only in the United States.  Customer must provide and pay for that dedicated Internet connection through a local, third-party Internet Service Provider (3rd party ISP) in order to connect the CPE at the Third Party Connectivity Site to Customer’s VPN.  Customer is responsible for the installation and maintenance of all dedicated access connections (including but not limited to the telephone line access circuit).  Customer must ensure that the connection speed to the 3rd party ISP from the Third Party Connectivity Site is at least 56Kbps and that the 3rd party ISP allows Company remote access to the CPE for management and monitoring purposes.  In addition, Customer must order, provide and pay for a dedicated analog telephone connection for use exclusively by each out of band modem at the Third Party Connectivity Site.  All telephone line access circuit charges (including, without limitation, the back-up telephone line access circuit charge) are Customer’s responsibility. Any facilities and extra cabling necessary within Customer’s building, in particular in relation to the connection between the telco entrance point and Customer’s IP connection point, are not included and are Customer’s responsibility. 

 

II.          DEFINITIONS: In addition to the definitions found in the General Terms and Conditions for Internet, Enhanced and Other Non-Telecommunications Products and Services, the following apply to Secure Gateway – Retail & Remote Office:

 

“Business Day” is Monday through Friday, excluding Company-defined holidays.

 

“DSL” Digital subscriber line service which provides Customer with a capability to originate or terminate digital data.

 

Eastern Time: Eastern United States Time.

 

Router: A Cisco® router and related software, or equivalent equipment as determined by Company from time to time, managed and provided by Company.

 

VPN: Virtual private network utilizing internet protocol.

 

III.         FEATURES AND OPTIONS

 

1.         Customer Premises Equipment Optional Services:  Customer may order the following additional services:  Installation, On-Site Installation, Dial Backup Service CPE, Backup Modem (Company ordered dial line) and Backup Modem (Customer ordered dial line).  Customer may order such additional services for each DSL or cable access site from which the Secure Gateway – Retail & Remote Office will be provided.  If Customer chooses the On-Site installation, Company will dispatch a field technician to install the CPE at the remote site, between the hours of 8AM and 7PM ET Monday through Friday, Company-designated holidays excluded.

 

2.         DSL Local Loop Connections.   DSL local loop connections are provided by Company through a local exchange carrier.  Customer authorizes Company to act as its agent with respect to the ordering, installing, monitoring, testing, repairing, and performing all related activities regarding the local exchange carrier and the DSL local loop connection.  Customer further authorizes Company and its suppliers, including the local exchange carrier, to access Customer’s premises at mutually convenient times in order to install, monitor, test, repair, or perform related activities regarding the DSL local loop connection and other Secure Gateway – Retail & Remote Office components.  In some instances, the local exchange carrier may not offer 7x24 customer support of the DSL local loop connection.  In some instances, the condition of the DSL local loop connection and related service components for Customer’s remote site may not support Customer’s selected service tier.  In such instances: (a) Company will activate the DSL local loop connection at the maximum speed available (128 Kbps minimum), (b) the order for Secure Gateway – Retail & Remote Office will automatically be altered to the lower service tier, and (c) Customer will be billed accordingly.  If Customer prefers the service order for DSL service be cancelled without penalty if Customer’s selected service tier is not available for the indicated site, they must contact their Company account representative.

 

3.         Dial Service:  Customer may use Secure Gateway – Retail & Remote Office to establish a network-based remote access VPN over Enterprise Mobility Dial Access.  The terms and conditions for Enterprise Mobility Dial Access will apply. 

 

4.         WAN Analysis: Secure Gateway WAN Analysis, is a suite of planning, analysis and support tools available with Secure Gateway—Retail & Remote Office service. These tools enable Customer to optimize its WAN use through various reporting options that depict traffic volume and other usage details of Customer’s networks connected to the Secure Gateway.  WAN Analysis requires no additional CPE at the customer premises. Instead, data is extracted directly from the router on the Customer’s premises.  Currently, two levels of reporting (Select and Standard) are available for Secure Gateway-Retail & Remote Office spoke sites

 

IV.        RATES AND CHARGES:  Rates and charges for Secure Gateway – Retail & Remote Office may be found in Customer’s Service Agreement.

 

V.         TERMS AND CONDITIONS: In addition to the General Terms and Conditions for Internet, Enhanced and Other Non-Telecommunications Products and Services, the following terms and conditions apply:

 

1.         Authorized Users

 

1.1       Company exercises no control over the content of the information passing through Company network, including without limitation Company’s host computers, network hubs, and points of presence.  COMPANY MAKES NO WARRANTIES OF ANY KIND, WHETHER EXPRESS OR IMPLIED, FOR THE INTERWORKING SERVICE AND DISCLAIMS ANY WARRANTY OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE.

 

1.2       Secure Gateway – Retail & Remote Office is provided to Authorized Users only.  Resale to or use by other persons or entities is strictly prohibited.  Company will not be responsible for any damage an Authorized User suffers.  This includes damages resulting from loss of data due to delays, nondeliveries, misdeliveries, or service interruptions.  Use of any information obtained via the Interworking Service is at the Authorized User’s own risk. 

 

1.3       Use of Secure Gateway – Retail & Remote Office is subject to Company’s Acceptable Use Policy (Policy) for the country in which an Authorized User connects to the Company network, as set forth at www.verizonbusiness.com/terms, and if no Policy exists for that country, the U.S. Policy applies.  Company reserves the right to suspend or terminate access by an Authorized User if it has reasonable grounds to consider that an actual or threatened violation of the Policy is occurring.

 

1.4       Use of Secure Gateway – Retail & Remote Office carries a risk of various forms of fraud, including but not limited to, unauthorized or fraudulent use of Secure Gateway – Retail & Remote Office (Unauthorized Use) by persons who obtain Customer’s host names, UIC codes, passwords or other authentication-related information.  Customer is responsible for (i) exercising due diligence in protecting Customer systems and information that might be used to access, exploit, or otherwise use Secure Gateway – Retail & Remote Office, (ii) modifying, updating, deleting and otherwise administering such access information and passwords with respect to Customer’s Authorized Users, and (iii) promptly notifying Company in writing of any security compromise with respect to such information or Authorized Users.  Customer is liable for and required to pay rates, fees and charges incurred for all usage of Secure Gateway – Retail & Remote Office, including without limitation, Unauthorized Use of Secure Gateway – Retail & Remote Office.  This obligation to pay for Unauthorized Use does not apply with respect to Unauthorized Use that is caused by Company’s negligent or willful misconduct.

 

2.         Unauthorized Use.  Secure Gateway – Retail & Remote Office carries a risk of various forms of fraud, including but not limited to, unauthorized or fraudulent use of the Secure Gateway – Retail & Remote Office (Unauthorized Use) by persons who obtain Customer’s host names, UIC codes, passwords or other authentication-related information.  Customer is responsible for (i) exercising due diligence in protecting Customer systems and information that might be used to access, exploit, or otherwise use the Secure Gateway – Retail & Remote Office, (ii) modifying, updating, deleting and otherwise administering such access information and passwords with respect to Authorized User accounts, and (iii) promptly notifying Company of any security compromise with respect to such information or Authorized User accounts.  Customer is responsible for payment of rates, fees, charges and surcharges for all usage of the Secure Gateway – Retail & Remote Office, including without limitation, Unauthorized Use of the Secure Gateway – Retail & Remote Office.  This obligation does not apply with respect to Unauthorized Use that is due to Company’s negligent or willful misconduct.

 

3.         Geographical Scope:  Secure Gateway – Retail & Remote Office provisions apply only to Customers incorporated in the U.S. Mainland under a Service Agreement governed by the law of one of the U.S. Mainland states.

 

4.         Export Compliance:  Customer acknowledges that the export, import, and use of certain hardware, software, and technical data provided hereunder is regulated by the United States and other governments and agrees to comply with all applicable laws and regulations, including the U.S. Export Administration Act, the regulations implemented thereunder by the Department of Commerce, and any other applicable laws or regulations.  Customer represents and warrants that it is a U.S. citizen or permanent resident, or a corporation organized under the laws of one or more of the United States of America, that Customer is not procuring the Secure Gateway – Retail & Remote Office on behalf of a foreign national, and that Customer is not subject to a U.S. government order suspending, revoking or denying export privileges.

 

5.         Limitation of Liability.  In no event is Company liable for any security breach experienced by Customer, whether or not related to the Secure Gateway – Retail & Remote Office provided under this service attachment or any products, designs, or architectures recommended by Company.  Customer acknowledges and agrees that (a) the Secure Gateway – Retail & Remote Office constitutes only one component of Customer’s overall security program and is not a comprehensive security solution; (b) here is no guarantee that the Secure Gateway – Retail & Remote Office will be uninterrupted or error-free, that networks or systems connected to the Secure Gateway – Retail & Remote Office or supported by the Secure Gateway – Retail & Remote Office will be secure, or that the Secure Gateway – Retail & Remote Office will meet Customer’s requirements; and (c) there is no guarantee that any communications sent by means of the Secure Gateway – Retail & Remote Office will be private.

 

VI.        SERVICE LEVEL AGREEMENT:  Any service level agreement for Secure Gateway – Retail & Remote Office is in Customer’s Service Agreement.