This post might not get much of traction here but I will still say this:
As we are preparing for war with china by mobilising troops, scaling manufacturing and fast tracking military hardware procurement from other countries - We need ALL GOVT ORGS ( water boards, electricity boards, nuclear. DRDO etc etc ) computers and software workstations to connect to Centrally administered Secure SOFTWARE REPOSITORIES for software downloads.
HyperCritical Computers / software work stations should NOT have any access to internet, intranet or even VPNs.
use of hardware token generators/ Hard pluggable keys - these are devices which are not connected to internet , are internally coded to generate a security token specific to your login credential. In case of a pluggable key, you will have to physically insert it in computer while putting your credentials along with OTP. A central agency can issue these to govt employees. Logins should look like - USERNAME + PASSWORD + SECURITY CREDENTIAL FROM H/W TOKEN GENERATOR or USERNAME + PASSWORD + OTP + PHYSICAL KEY ( on USB port)
a single key costs around 500-1000 rupees.