+1 202.285.9455 www.echoditto.com
EchoDitto Managed Hosting EchoDitto hosted properties are located in Lansing, MI, in one of three data centers that are wholly owned by our co-location provider. Each data center is a secure facility with 5 premium tier-1 bandwidth providers, including AT&T, Verizon, Sprint, Savvis and Level3. The network itself is fully redundant with N+1 internal devices allowing routing devices to fail without interrupting client data connectivity. Each data center features a utility power feed, intelligent, high-efficiency UPS and redundant diesel generators. EchoDitto provides the following services in conjunction with all its managed hosting plans: • • • • • •
24/7 Emergency Response 5-minute server uptime monitoring (optional 5-minute site-level uptime monitoring available) Redundant, managed DNS Managed backups “Block-level” backups of storage media o Taken every 15 minutes o 1 month data retention Disaster-recovery (“DR”) site o Located in Dallas/Ft. Worth, TX. o Real-time database replication o Webroots replicated 6 times daily 99.99% uptime service level agreement (SLA) 4 TB monthly outbound bandwidth
SECURITY The 24x7x365 manned facility has multiple closed circuit tv security cameras, covering all entrances and datacenter space. The site entrance is controlled by a electronic perimeter access card system (RFID) and monitored remotely by a 3rd party security company. All visitors are registered and escorted closely. On a network level, our production servers use redundant Cisco ASA 5500 series adaptive firewalls to prevent outside access except to TCP ports 80 and 443 needed for Web access. Secure access to our servers is permitted only via Secure Shell (SSH) to whitelisted IPs and all servers have local software firewalls that provide an additional layer of protection. SSH access requires public key authentication and no passwords are kept, preventing brute-force attacks. Additionally, a real-time firewall log analyzer detects any potential attack signatures and automatically blocks the originating IP address. Any attempts to exercise root authority are logged and the server administrator is automatically notified with the username and originating IP address. When servers communicate, a special utility user is used and must use a single-use
SSH key to execute the command; the server receiving the request will only accept the key from the original server and no others and execute no other activity than that specific request. All users excepting administrators are assigned to a security group cannot execute any command not explicity allowed, nor can they change to any directory outside their own. Optional SSL encryption is available and can be enforced on a per-host basis. Our database servers are protected by strong password authentication and IP restrictions on a per-site basis, isolating your data from all other client data. OPTION ONE: SHARED HOSTING EchoDitto's shared hosting cluster consists of five Quad-core Xeon servers in a load-balanced and highly redundant environment. Deployments to our production servers are controlled using the Subversion (SVN) source control system. Database access is permitted on request using phpMyAdmin 3. The redundancy of our shared platform gives an extra level of reliability over a single-server dedicated option. Shared Hosting Hardware Details: (2) Quad-core Xeon E5405 Web servers, 6GB RAM, Dual 160 GB RAID 1 hard disks (2) Redundant database-class servers with fast and reliable RAID 10 storage in a real-time replication/failover configuration (2) Redundant Cisco 11501 managed load balancers (2) Redundant managed Cisco ASA 5510 Firewalls 500GB iSCSI Shared Storage Server with OCFS2 File System Cost: $495/monthly OPTION TWO: DEDICATED HOSTING If root or remote access is required, or you plan to host multiple domains, consider EchoDitto's dedicated hosting option. Dedicated hosting customers have one or more dedicated E5405 Quadcore Xeon webservers and enjoy the use of our shared database servers, load balancers, firewalls and shared storage. Root level access and command-line database access are both offered as part of our dedicated package. Each webserver has 100 mbit uplink to multiple Tier-1 providers (Level 3, Savvis, AT&T, Sprint, and Verizon) just a single uplink away from over 8,500 networks, and a total outbound bandwidth allowance of 4 TB (4000 GB) per month, totaling 12 TB. We can also provide the option for unmetered 100 mbit uplinks, or a 1 gbit uplink for a small additional fee. Plans begin at $995/month. For extremely heavy applications, EchoDitto also offers dedicated database hosting. For more information on our dedicated database hosting options, please contact us at firstname.lastname@example.org. ECHODITTO SERVICE LEVEL AGREEMENT
Network Infrastructure SLA EchoDitto guarantees Network Infrastructure will be available 99.99% of the time in a given month, excluding scheduled maintenance. Network Infrastructure downtime exists when a Client is unable to transmit and receive data and is measured from the time the issue is reporting and/or internal monitoring notifies EchoDitto to the time the issue is resolved and the data can be transmitted and received. In the event of Network Infrastructure downtime EchoDitto will credit the Client 5% of the monthly fee for each 30 minutes of downtime (up to 100% of Client's monthly fee). Hosting Infrastructure SLA EchoDitto guarantees that the Hosting Infrastructure will be available 99.99% of the time in a given month, excluding scheduled maintenance. Critical infrastructure includes functioning of all power and HVAC, but does not include the power supplies on Clients’ servers. Hosting Infrastructure downtime exists when a particular server is shut down due to power or heat problems and is measured from the time the trouble ticket is opened with the NOC to the time the problem is resolved and the server is powered back on. Upon experiencing downtime, EchoDitto will credit the Client 5% of the monthly fee for each 30 minutes of downtime. Data Protection Services SLA EchoDitto provides the following Data Protection Services: 1. Backup and Restore services for all database servers managed by EchoDitto within their hosting facility. a. EchoDitto’s remote backup services shall transfer copies of Client’s data from primary disk storage to remote servers. b. EchoDitto maintains two weeks of the Client’s backup data. EchoDitto will make this data available in the event the Client wishes to restore corrupted or lost data. c. Off-site backup storage services. d. EchoDitto will maintain contracted services for the storage, security, and delivery of the Client’s full backups to be stored off-site for a retention period of two (2) weeks. 2. On-line backup services a. EchoDitto shall transfer copies of Client’s database nightly to Amazon S3 persistent storage nightly between 11PM-3AM PDT. b. EchoDitto shall take nightly and weekly backups of the DR site data to the Rackspace Cloud.