Professional Documents
Culture Documents
Collaboration Platform
BRKUCC-2675
Vanessa Sulikowski
Distinguished Systems Engineer
Understanding the Cisco Cloud
Collaboration Platform
BRKUCC-2675
Vanessa Sulikowski
Distinguished Systems Engineer
Disclaimer
© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 4
MOBILE
+
CLOUD
the most disruptive force in IT…
the end user
The Agile Worker is Transforming the Enterprise
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cloud Collaboration Best Way to Achieve Agility….
CONTROL
Velocity Visibility
Versatility Virtualisation
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public 8
Collaboration Strategy
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Fusion – Bringing Cloud and On-Prem Together
Cisco
WebEx Cloud Collaboration Cloud Messenger Cloud
Unified Communications
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Collaboration Preferred Architecture
Preferred Architecture Deployment
Headquarters
http://www.cisco.com/c/en/us/solutions/enterprise/design-
Unity
Connection
TelePresence
Management Suite
Prime
Collaboration zone-collaboration/index.html
Applications
DMZ
Internet
Expressway-C
3rd Party Solution
Call Control
Integrated
TelePresence Server Conductor Services Router
Integrated Services
Router
MPLS WAN
PSTN /
Endpoints ISDN
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Fusion - Existing Infrastructure Integral….
Headquarters
Remote Site
Conferencing Collab Edge
Jabber / CM IM&P
Remains our premise soft client
PSTN /
Endpoints ISDN
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cloud Collaboration Platform
Cisco Collaboration Cloud
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco WebEx Cloud (the cisco cloud you already know)
Corporate WiFi
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public 16
Cisco Collaboration Cloud
PaaS/IaaS – OpenStack, Cloud
native delivery
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
The Cisco Collaboration Cloud
Collaboration Cloud Services
Call Control Identity/SSO Rooms
Notification/Alerts Media/Transcoding
Messaging Interop Content Sharing
Management Calendar Future
Cloud Collaboration Infrastructure
Metrics &
Reporting
File Metadata
Billing &
Remote Users
Storage Storage
Provisioning
Custom
REST Applications
based
APIs Widgets
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco Collaboration Cloud
Collaboration Cloud Services APNS
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco Collaboration Cloud Architecture
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Generally Available in North America and select markets
NL
IAD TBD
11/14 LON3
TBD TeutoStack
SJC 02/15
12/14
RTP
TEX
11/14
3/15
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco Collaboration Cloud Solution – Common Identity
(WebEx will migrate to Common Identity in T30/T31 release)
DMZ Internet
Corporate
Network
Customer
Directory
Directory Sync
IdP
Cisco Common
IdP Proxy
Collaboration Identity
Applications Cisco Cloud
Products
Collaboration
Sync
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco Collaboration Cloud Security - Overall Approach
• Obfuscation of user identity as widely as possible
• End-to-end encryption of messages and content
• Granular access control
• Flexibility of data storage locations
Command + User
Control DB Map
Common Rooms +
Content
Identity Messages
Server Logs
Client Logs Analytics
+ Metrics
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco Collaboration Cloud Security
Enterprise Grade Security
Access Controls
is IMPORTANT!
User Controls (Add/Remove participants in room)
- Privacy & security of
Organisation-Defined & owned
Enterprise Security Encryption Keys & Policy Management communication with E2E
encryption
Secure Transport TLS/AES E2E Encryption - Protecting intellectual
& Storage User Authentication
property
Secure App Development - Preventing unauthorised
Application Security Multi-tenancy features
communication
Hardened Hosts
- Supervising and
Platform Security Protected Networks monitoring content,
ethical walls*
Data Centre
Physical Security Secure Facility - Compliance
Target in 2012
with legal
discovery*
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Enterprise Grade Security – High Level
Data in motion encryption:
Encrypted signalling audio/video
HTTPS
Encrypted Media (sRTP/SRTP-EKT) Key Management Server Content Server
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Enterprise Grade Security – Key Rotation
• Key Management Server (KMS) manages
keys.
• Signed ephemeral Elliptic curve Diffie–
Hellman key exchange between client and Key Management Server Content Server
KMS.
• KMS generates conversation keys and
distributes them to conversation parties.
• Parties encrypt all payloads using AES-256.
(envelope is unencrypted)
• “Squared” servers route based on the
envelope.
• “Squared” servers archive everything (in
encrypted form)
Client 1 Client 2
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Key Management Service Architecture
https://tools.ietf.org/html/draft-abiggs-
saag-key-management-service-00
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public 27
Cisco Spark Team Collaboration
(Formerly known as Project “Squared”)
This is how we worked.
Physical Room
Screens Whiteboards
Tasks Decisions
Notes
Documents People
Calendar
Video
Phones /
Connections
People Documents
Here…
Screens
Voice/Video
Rooms
Whiteboards
Decisions
Tasks Documents
And Here…
Introducing Cisco Spark
Delivered from the Cisco Collaboration Cloud
http://download.ciscospark.com
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco Spark: Work from Anywhere
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco Spark: Use the interface you have at hand…
Virtual Rooms
for Everyone
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco Spark and WebEx integration - Meetings
Project Squared Client x-launch WebEx app
Create Room from Calendar “Slurp”
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
System Requirements
iOS: Requires iOS 7.1 or later. Compatible with iPhone, iPad, and iPod touch. This app is optimised for
iPhone 5, iPhone 6, and iPhone 6 Plus.
Android: Requires 4.0.3 and above (Tablets not optimised, but working)
Mac Client: Mac OSX 10.9 or higher
Windows Client: Windows 7 or 8 (Windows Phone N/A for March GA)
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Global* General Availability of Cisco Spark
Project Squared
Client
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public 39
Preliminary Average Bandwidth Utilisation
Audio Video Share
Codec Opus H264 H264
Mobile 50kbps 360p @30fps max resolution 1080p @5fps max
capped at 64kbps max 700kbps capped at 1.0 Mbps 150kbps-1.5Mbps max
max depending on content
Project Squared is using optimised WME, bandwidth profile is similar to WebEx client experience in CMR type meeting.
Currently only desktop sharing is supported (no annotation or application sharing), Audio codec supported with WME is Opus
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco Spark User Account Management Options
Option Description
Manual through Org Admin • Admin can use Org Admin to manually create/update user accounts
User Invite (side-board) • Cisco Spark User can invite another user to use Cisco Spark
Directory Integration • automatic method for creating, updating and deactivating user accounts
MSFT 2003/2008 R2 supported and groups.
• Customer or Partner enables AD integration via Admin Portal
Note: For March GA user administration and management must be done in two places,
WebEx user integration in Admin portal scheduled in T30 release.
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco Spark User Provisioning
Manual or Directory Integration & Sync
SAML2.0 API
Cisco
Collaboration
Manual or side-board Cloud
Manual Add
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco Spark Demo
Administration Portal
Management Portal
Single Pane of Glass for Partners and IT Administrators
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Admin Portal – Landing Page (Partner) https://admin.ciscospark.com
Partner
Access Customer Admin Console
Starting a Project Squared Trial for Customer
Reviewing/Modifying Customer’s Info
Manage Customer Trial or Provide Site Administration Service
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Admin Portal – Landing Page (Org Admin) https://admin.ciscospark.com
Customer Admin Console
Create Project Squared Account
Status Page Quick Access
SSO configuration
Reports & Analytics
Support & Logs
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Admin Portal – Reports
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Hybrid Cloud Collaboration Today
CMR Hybrid Cloud Architecture
Recommended Deployment
Endpoints
Registration
SIP Trunk
WebEx Cloud
Conferencing Strategy:
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Future…The Fusion of On-Prem and Cloud
Fusion … Integrating Premise and Cloud
Cisco
WebEx Cloud Collaboration Cloud Messenger Cloud
EDGE
?
Today
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Fusing Directory
Cisco
WebEx Cloud Collaboration Cloud Messenger Cloud
EDGE
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Mapping Users in AD via Directory Connector
Collaboration Cloud Services
Expressway
Media Relay
HTTP Proxy
Call Control Identity/SSO Rooms
SIP Trunk
Traversal
DMZ
XMPP
Expressway
E
Notification/Alerts Media/Transcoding
Messaging Interop Content Sharing
Management Calendar Future
Cloud Collaboration Infrastructure
Metrics &
Future Service
Future Service
Future Service
Reporting
Management
Calendaring
Call Control
Connector
Connector
Connector
Connector
Connector
Connector
File Metadata
Storage Billing &
SIP Trunk
Storage
Provisioning Expressway
XMPP
Common Connector Framework
DC
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Provisioning via Directory Connector
LDAP
HTTPS
Identity/SSO
Cisco
Active Collaboration Cloud
Directory
• Infrastructure for premise directory synchronisation to Common Identity cloud services (CIS)
• Customer installs Directory Connector in its network on a Windows Domain server
• Customer configures Directory Connector to specify its AD synchronisation information
• Directory connector integrates with AD to retrieve user information and syncs with CIS
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Subject to
Cisco Cloud (DirSync) Connector Change
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Subject to
Admin Portal DirSync User Configuration Change
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Admin Portal DirSync AD Domain Subject to
Change
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Admin Portal Connector Installation Subject to
Change
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Hybrid Cloud
Collaboration Cloud Services Enterprise
Conductor
Call Control Identity/SSO Rooms
TS
Notification/Alerts Media/Transcoding Video Endpoints
Custom
REST Applications
based
APIs Widgets
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
The Edge – Expressway
Collaboration Cloud Services
Expressway
Media Relay
HTTP Proxy
Call Control Identity/SSO Rooms
SIP Trunk
Traversal
DMZ
XMPP
Expressway
E
Notification/Alerts Media/Transcoding
Messaging Interop Content Sharing
Management Calendar Future
Cloud Collaboration Infrastructure
Metrics &
Future Service
Future Service
Future Service
Reporting
Management
Calendaring
Call Control
Connector
Connector
Connector
Connector
Connector
Connector
File Metadata
Storage Billing &
SIP Trunk
Storage
Provisioning Expressway
XMPP
C
DC
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Fusing Unified Communications
Cisco
WebEx Cloud Collaboration Cloud Messenger Cloud
EDGE
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Fusing Cloud and Premise Calling
Collaboration Cloud Services
Expressway
Media Relay
HTTP Proxy
Call Control Identity/SSO Rooms
SIP Trunk
Traversal
DMZ
XMPP
Expressway
E
Notification/Alerts Media/Transcoding
Messaging Interop Content Sharing
Management Calendar Future
Cloud Collaboration Infrastructure
Metrics &
Future Service
Future Service
Future Service
Reporting
Management
Calendaring
Call Control
Connector
Connector
Connector
Connector
Connector
Connector
File Metadata
Storage Billing &
SIP Trunk
Storage
Provisioning Expressway
XMPP
C
DC
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Fusing Exchange Calendar
Cisco
WebEx Cloud Collaboration Cloud Messenger Cloud
EDGE
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Integrating Exchange Calendar
Collaboration Cloud Services
Expressway
Media Relay
HTTP Proxy
Call Control Identity/SSO Rooms
SIP Trunk
Traversal
DMZ
XMPP
Expressway
E
Notification/Alerts Media/Transcoding
Messaging Interop Content Sharing
Management Calendar Future
Cloud Collaboration Infrastructure
Metrics &
Future Service
Future Service
Future Service
Reporting
Management
Calendaring
Call Control
Connector
Connector
Connector
Connector
Connector
Connector
File Metadata
Storage Billing &
SIP Trunk
Storage
Provisioning Expressway
XMPP
C
DC
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Future Fusing of Premise and Cloud
Cisco
WebEx Cloud Collaboration Cloud Messenger Cloud
EDGE
?
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Future of Cisco Collaboration Cloud Platform *Future
Cisco
Collaboration Services
Cisco Collaboration
Cloud Software Partner Cloud
Enterprise
Private Cloud
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco Collaboration Architecture … Fused
Best of Cloud and On-Prem
Cisco
WebEx Cloud Collaboration Cloud Messenger Cloud
Unified Communications
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public
Q&A
Complete Your Online Session Evaluation
Give us your feedback and receive a
Cisco Live 2015 T-Shirt!
Complete your Overall Event Survey and 5 Session
Evaluations.
BRKUCC-2675 © 2015 Cisco and/or its affiliates. All rights reserved. Cisco Public