Technical proposal: new CCRH website

Redesign, re-development, migration, certification, hosting and 5-year maintenance of ccrhindia.ayush.gov.in

Open the working prototype Download as PDF

1. Overview

We will rebuild ccrhindia.ayush.gov.in as a bilingual (English and Hindi) website on an open-source CMS, compliant with GIGW 3.0, DBIM and WCAG 2.1 AA. The site goes live within 20 weeks of the work order with CERT-In Safe-to-Host and STQC Certified Quality Website (CQW) certificates, and we then host and run it on a MeitY-empanelled cloud in India for 5 years.

Working prototype of the new website: https://vedanshugoyal.github.io/ccrh-prototype/ (28 pages in English and Hindi, built with CCRH's own public content). More design concepts and colour options can be provided on request.

2. What we found on the current website

We studied the public pages of ccrhindia.ayush.gov.in on 8 October 2026 (181 menu pages in both languages; no logins, no scans).

AreaFindingWhat the new website does
PlatformDrupal 10, whose security support ends on 9 December 2026Moves to a supported Drupal version, with database-level migration
SpeedPages take about 6.7 seconds to build; the home page is about 9.4 MBHome page about 140 KB in the prototype; optimised images; caching
Hindi and EnglishTwo separate page trees; menus differ (94 vs 87 links); 169 documents in one language onlyOne item holds both languages; the language switch keeps you on the same page
AccessibilitySame title on all 181 pages; no high-contrast option; scrolling text cannot be paused; missing alt textUnique titles; contrast and text-size options; pausable ticker; alt text required
SecurityPlain HTTP not redirected to HTTPS; no Content-Security-Policy; server versions disclosedHTTPS only, security headers, WAF, hardened servers
Data sovereigntyGoogle Maps embedded on about 34 pagesNo third-party calls; India-hosted maps
Documents424+ PDFs, most without file size; some over 100 MBType and size on every download; large files flagged and compressed

3. Approach and technology

LayerChoice
CMSDrupal (open source), the same CMS as today, upgraded through supported versions at our cost
ServersWeb server and database server as specified in §4.3 (4 vCPU, 32 GB RAM, 300 GB SSD each), Linux with enterprise support
NetworkTwo-tier: only the web server is public (ports 80/443 behind the WAF); the database has no public route
SecurityWeb Application Firewall with rate limiting and virtual patching, no CAPTCHAs; admin access only from whitelisted IPs
Data in IndiaHosting, backups, logs and firewall all in Indian regions of a MeitY-empanelled cloud; logs kept 180 days (CERT-In directions)
OwnershipCode in a repository owned by CCRH; infrastructure scripted so it can be rebuilt and handed over

4. New website structure

Eight sections replace ten, each built around one group of visitors:

SectionMain pages
About CCRHThe Council, objectives, governance, citizen charter, annual reports
Research8 research areas, public health programmes, Extra Mural Research, collaborations
Our NetworkCentre finder for all 33 institutes and units with address and phone, by state and type
PublicationsStandard Treatment Guidelines, IJRH, annual reports, newsletter, books, IEC material
OpportunitiesVacancies, results, recruitment rules, scholarships
TendersOpen, recently closed and archived tenders, with corrigenda under each tender
MediaNews and updates, photo and video galleries
Help and ContactContact details, RTI, grievances (CPGRAMS), FAQ, feedback

5. Data migration

  1. Take a database and file export of the current site (week 1) and list every page, file and URL.
  2. Pair every English page with its Hindi page; flag documents that exist in one language only.
  3. Agree a mapping of old content to new content types with CCRH (week 3).
  4. Run two trial migrations on staging (weeks 13–14) with a reconciliation report: item counts, file checksums, links, translations.
  5. Final migration at go-live after a 48-hour content freeze; every old URL redirects to its new page.
  6. Keep the old site read-only for 30 days as a fallback.

6. Certification plan

CertificateIssued byWhen
WCAG 2.1 AA (internal check)Our testing on every buildWeeks 7–14
CERT-In Safe-to-HostCERT-In empanelled auditor (booked in week 8)Certificate by week 18; renewed every year
STQC Certified Quality WebsiteSTQC Directorate, MeitY (applied in week 14)Certificate by week 18; renewed in year 3

Production servers are built early (weeks 11–12, at our cost, as allowed by Corrigendum 1), so the audits test the environment that actually goes live.

7. Timeline (20 weeks)

PhaseWeeksDeliverablesCCRH sign-off
1. Discovery1–3Requirements, current-site assessment, information architecture, project plan, migration strategyProject plan
2. Design4–6Wireframes, 3 DBIM design concepts, interactive prototypeM1: final design
3. Build7–12Website, CMS, responsive layouts, GIGW and DBIM compliance; production servers builtDemo every 2 weeks
4. Test13–14Two trial migrations; functional, accessibility, performance and browser testingM2: staging ready
5. Certify15–18CERT-In audit and fixes; STQC testing; both certificatesM3: certificates
6. Harden19WAF rules, EV SSL, network rules, control panel, backup restore testM4: production ready
7. Launch20Final migration, UAT, go-live, credentials, first backup, trainingM5: go-live; 5-year AMC starts

8. Operations and support for 5 years

9. Points we will confirm with CCRH at kick-off

Team

Two Computer Science graduates of IIT Jodhpur with private-sector experience building and running websites and large software systems.

Vedanshu Goyal, Proprietor and Project Lead (hosting, performance, security)

Sarthak Kumar Singh, Web Development Lead

MOJUD  |  397, Green Park Colony, Bistan Road, Khargone, Madhya Pradesh 451001  |  +91-9425326724  |  team@mojud.life