Nyingchi City's Pro-Business Policies: A Guide for Enterprises

Deep News07-16

This set of policies is designed to support businesses operating in Nyingchi, Tibet Autonomous Region.

Chapter 1: General Provisions

The first article establishes the purpose of these measures: to strengthen the construction, management, and security of the region's non-classified e-government network, ensuring its reliable and efficient operation. These measures are formulated based on national laws and standards, taking into account the specific circumstances of the region.

The second article states that these measures apply to all activities related to the construction, connection, use, operation, maintenance, and security management of the e-government network across the region.

The third article defines the e-government network as a non-classified component of the national e-government network, logically isolated from the internet. It serves party and government organs, public institutions, people's organizations, central units stationed in Tibet, and other authorized entities. Its primary function is to support non-classified digital operations, cross-department data sharing, and business collaboration for public services and social governance. All connected units must comply with these management measures.

The fourth article outlines the governing principles: unified planning, unified standards, unified management, coordinated construction, tiered responsibility, and security assurance.

The fifth article mandates that, except where national regulations state otherwise, new non-classified private networks should not be built. Existing networks must be integrated into the e-government network, with line leasing fees to be applied for from the finance department. Once integrated, the finance department will no longer allocate funds for separate line leases to avoid redundant investment.

The sixth article requires that the e-government network's hardware and software infrastructure be built based on the IPv6 next-generation internet system, ensuring full IPv6 support. IPv6 addresses should be used by default, with IPv4 used only when necessary.

The seventh article specifies that funding applications by e-government network authorities at all levels should be made in accordance with relevant regional financial and informatization regulations.

The eighth article emphasizes that the e-government network is non-classified. Connected units and individuals must comply with national laws, must not endanger national security, store or transmit state secrets, or engage in illegal activities. Classified equipment or networks must not be connected to it.

Chapter 2: Division of Responsibilities

The ninth article designates the Regional Department of Economy and Information Technology as the regional-level authority responsible for overall planning, standard-setting, construction, operation, maintenance, security management, and IP address allocation for the e-government network. It also guides work at lower levels and reports to national authorities.

The tenth article states that economic and information technology departments at the prefectural (city) level and below are the responsible authorities for their respective jurisdictions. They are tasked with construction, management, security, promoting network integration, and reporting to higher-level authorities.

The eleventh article assigns responsibility to connected units for managing their own connections and the security of their local area networks and information systems. They must cooperate with inspections and establish clear management systems with designated leaders and responsible persons.

The twelfth article tasks operation and maintenance service providers with technical support, problem analysis, fault handling, and security for the network in their area. They must establish duty, data center management, and emergency response systems, and provide technical support.

The thirteenth article requires link providers to offer technical services, maintain 24/7 hotlines and support platforms, ensure link connectivity, provide network security services, cooperate with monitoring, and assist with network migration. Specific fault response and repair timeframes are mandated: 1-hour response, with core network repairs within 2 hours, urban network repairs within 48 hours, and remote township repairs within 72 hours.

Chapter 3: Connection Management

The fourteenth article stipulates that connection point data centers must comply with national technical standards.

The fifteenth article outlines the application process based on the principle of territorial management. Applications are made to the relevant e-government network authority at the corresponding administrative level.

The sixteenth article details the application or modification process. Applications must include details like the basis, scope, location, bandwidth, and security measures. The responsible authority has 10 working days to review. If approved, an implementation plan is developed and connection should be completed within 30 working days. If rejected, reasons must be provided in writing within 10 working days.

The seventeenth article states that if a connected unit no longer needs the network due to organizational changes, it must apply to deactivate its node. The authority will then reclaim IP addresses and equipment.

The eighteenth article requires connected units to ensure the safety and power supply of their connection point data centers. Deployed equipment must be strictly managed and not moved or altered without authorization.

Chapter 4: Usage Management

The nineteenth article requires authorities to build operational support and security monitoring systems, improve management mechanisms, and enhance capabilities in network analysis, monitoring, threat warning, and fault resolution.

The twentieth article calls for strengthening control over network infrastructure assets and improving mechanisms for dynamic adjustment and optimization of network resources.

The twenty-first article mandates that prefectural (city) and lower-level authorities must notify affected connected units at least 2 working days in advance of network upgrades or test cutovers, and report to the regional authority for record. Major construction or adjustment projects involving multiple levels must be approved by higher authorities.

The twenty-second article states that changes to network resource needs require an application to the relevant authority for dynamic adjustment. Any installation, debugging, or upgrades that might impact the network require prior written approval.

The twenty-third article requires that information systems running on the network must be registered with the authority before going live or being modified. IP addresses must be applied for when deploying systems.

The twenty-fourth article states that connected units must report network faults to their responsible authority. Interrupting the network or critical business systems for maintenance requires approval from that authority and reporting to the regional authority.

Chapter 5: Security Management

The twenty-fifth article lists responsibilities for e-government network authorities at all levels: implementing national cybersecurity and cryptography requirements; establishing security organizations and management systems with clear responsibilities; developing emergency plans and conducting drills; and having the authority to disconnect units that cause security problems affecting the network.

The twenty-sixth article details responsibilities for connected units: conducting confidentiality reviews of transmitted information and reporting risks; managing network boundaries and internal security, isolating from other networks; dedicating terminals for exclusive use on this network, not connecting to the internet, and installing management software; and ensuring information systems and cloud platforms comply with national cybersecurity and cryptography protection requirements before going live. Interaction with the internet must go through a unified secure exchange zone.

Chapter 6: Evaluation and Supervision

The twenty-seventh article states that authorities at all levels must conduct annual comprehensive assessments of network operation quality, evaluating link providers on connectivity, bandwidth, security, and service responsiveness, and evaluating operation and maintenance units on daily maintenance, security, and service quality.

The twenty-eighth article requires authorities to regularly inspect network operation, usage, and security management, report on security incidents, and order problematic units to rectify issues within a deadline.

The twenty-ninth article specifies that connected units failing to fulfill cybersecurity protection obligations or obstructing lawful inspections will be notified by the authority. Serious consequences will lead to accountability in accordance with laws and regulations.

Chapter 7: Supplementary Provisions

The thirtieth article allows prefectural (city) and county-level authorities to formulate detailed implementation rules based on actual conditions.

The thirty-first article designates the Regional Department of Economy and Information Technology as responsible for interpreting these measures.

The thirty-second article declares that these measures take effect upon issuance, simultaneously repealing the Interim Measures for the Management of the Tibet Autonomous Region E-Government Network.

These policies are accessible through the Nyingchi City Pro-Business Service Platform mini-program.

Disclaimer: Investing carries risk. This is not financial advice. The above content should not be regarded as an offer, recommendation, or solicitation on acquiring or disposing of any financial products, any associated discussions, comments, or posts by author or other users should not be considered as such either. It is solely for general information purpose only, which does not consider your own investment objectives, financial situations or needs. TTM assumes no responsibility or warranty for the accuracy and completeness of the information, investors should do their own research and may seek professional advice before investing.

Comments

We need your insight to fill this gap
Leave a comment