SlideShare ist ein Scribd-Unternehmen logo
1 von 46
Downloaden Sie, um offline zu lesen
1 © 2018 Citrix | Confidential
Delivering Secure
SaaS/Web and
Client-Server Apps
from AWS in a Hybrid
Infrastructure
Steve Wilson
VP Products, Cloud
@virtualsteve
Marissa Schmidt
Senior Director, Product Management
@MissAppFW
© 2016 Citrix | Confidential
2 © 2018 Citrix | Confidential
Citrix and AWS Together
Accelerate high performance,
compliant applications,
desktops and data to your
diverse user base in minutes
instead of months
Each workload and its data can
be automatically paired with
modern and cost-effective
capacity that meets your
requirements
Mature solutions are designed
to provide platform stability,
network and data security, and
compliance with corporate and
sovereign policy requirements
Your workloads and
infrastructure, paired with the
AWS global footprint and Citrix
solutions, deliver first-rate user
workspaces
Faster Smarter Trusted Global
3 © 2018 Citrix | Confidential
Citrix
Workspace
Endpoint Management
service
Citrix Files Smart Tools
Region & number of Availability Zones
New Region (coming soon)
#
Citrix Analytics Citrix Gateway
Citrix Gateway SD-WAN
Citrix Gateway
4 © 2018 Citrix | Confidential
About the Customer
• Large financial institution
• HQ in North East USA with users around the
globe
• Roughly 75% of users run their main desktops
via Citrix Workspace
Challenge
• Mission-critical workload that requires fault
tolerance
• Excessive cost and overhead of running a
physical DR site
– Upfront costs
– Ongoing maintenance
– Hardware refresh
Customer Success Story
Solution
• Establishing a DR site on AWS enables this
organization to reduce costs, maintain high
performance, provision additional capacity when
needed, eliminate the management of physical
site
• Citrix NetScaler extends corporate network to
AWS and provides consistent control over traffic,
as well as an additional layer of security
users on AWS
6,000
Able to support
full-time, production users
200
Have run
5 © 2018 Citrix | Confidential
About the Customer
Appliance Manufacturer with a presence around
the globe
Drivers
• Existing Citrix user looking to phase out their
physical data center
• Looking to empower mobile users leveraging
various types of devices
Customer Success
Results
• Chose to migrate to AWS based on workload
performance demands
• MTM designed a custom environment to
support their application portfolio and helped
execute migration
• Through AnywhereApp, a people-centric
architecture was created – leveraging AWS – to
facilitate a powerful, and secure, experience
6 © 2018 Citrix | Confidential
About the Customer
Health Insurance Company with roughly 2,000
users in the NY area
Drivers
• Desire to establish a hybrid cloud environment
in an effort to begin phasing out physical data
centers
• Enable secure and compliant mobility for
healthcare workers and associates
Customer Success
Results
• AWS met workload performance demands
• MTM implemented a custom-designed
infrastructure to better support hybrid workloads
• Customer now moving XenApp workstations to
AWS
• A new model which allows the customer to
consume cloud and workloads as they grow
7 © 2018 Citrix | Confidential
About the Customer
Financial Institution with a national presence
Drivers
• Needed to establish a disaster recovery site,
without incurring expense of physical
infrastructure
• Citrix Cloud powers a mission-critical
application that runs in private data center
Customer Success
Results
• The AWS global presence makes it easy to
establish disaster recovery (DR) sites without the
overhead of physical infrastructure
• Able to run half of desktops on AWS in case of a
disaster
• Success of the AnywhereApp has led to more
workloads being migrated to AWS
• User experience was powerful and transparent,
even if a failover needs to happen
8 © 2018 Citrix | Confidential
Enterprise 1.0
Legacy/
Custom
Apps
VPN
ERP
Database
Users
9 © 2018 Citrix | Confidential
Legacy/
Custom
Apps
ERP
Database
Cloud Transformation 1.0
Lift & Shift
Users
10 © 2018 Citrix | Confidential
Cloud Transformation 1.0’s Failure
Why Didn’t It Happen This Way?
Governance
& Security
Data
Gravity
Cloud Vendor
Lock In
Inertia
11 © 2018 Citrix | Confidential
VPN
The Messy World of Real Transformation
FILE SHARING
CLOUD
OFFICE
PRODUCTIVITY
EMAIL
CRMHR
TOOLS ERP
Users
Legacy/
Custom
Apps
ERP
Database
12 © 2018 Citrix | Confidential
Security & Performance Analytics
Unified
Experience
Instant
Access
Advanced
Auth
Contextual
Access
Contextual
Performance
Unified
Endpoint Mgmt.
Cross Cloud
Management
Content Control
Secure ITUsers
Secure Digital Perimeter
Your Secure Digital Workspace
Legacy/
Custom
Apps
ERP
Database
FILE
SHARING
CLOUD
OFFICE
PRODUCTIVITY
EMAIL
CRMHR
TOOLS ERP
DAVID
CITRIX WORKSPACE APP
Everything you need to be
productive in one experience
SECURE DIGITAL PERIMETER
User / App / Content / Network
CITRIX WORKSPACE
CONTENTAPPS DEVICES
ANALYTICS
On-prem / CloudSaaS / Mobile /
Windows / Virtual
PC / Smartphone /
Tablet / IoT
The development, release and timing of any features or functionality described for our products remains at our sole discretion and are subject to change without notice or consultation.
The information provided is for informational purposes only and is not a commitment, promise or legal obligation to deliver any material, code or functionality and should not be relied
upon in making purchasing decisions or incorporated into any contract.
14 © 2018 Citrix | Confidential
• Instant access to on-prem and AWS-hosted Windows applications
• Instant Access to any SaaS from Workspace (with any browser)
• Instant Access with Enhanced Security for SaaS (Workspace App with Embedded Browser)
• Instant Access to Cloud-hosted and on-prem document stores
• DLP Policies Watermark
– Restrict copy/paste/print/navigate
– Restrict downloads
– Restrict mobile access
• Information Source/Content Analytics
– Reduce malware/phishing
– Reduce inappropriate content
• User Behavior Analytics
Key Technology Components
Citrix Workspace
15 © 2018 Citrix | Confidential
VPN
Virtual Apps & Desktop Service
On-Prem Datacenter
Hypervisor
AD
Server VDAs
Hybrid-Cloud VDI Management
Incorporating public cloud into your architecture
Four key questions:
• Which applications are ready to move to
the cloud?
• How to connect AD to the cloud?
• What are the external access
requirements?
• What other authentication requirements
exist?
VDAs
AWS Region
AD
Server VDAsVDAs
Cloud Connectors Cloud Connectors
16 © 2018 Citrix | Confidential
The Most Popular SaaS Apps Integrated Out Of The Box
Apps File Sharing Cloud ERP Tools HR
Analytics Expense
Tracking
Collaboration Intranet E-signature
Design Customer
Support
Marketing
Automation
Project
Management
Ops
Management
E-procurement
Communications
File Sharing 3D Design Meetings Spreadsheet Email Tools CRM
File Sharing 3D Design Meetings Spreadsheet Email Tools CRM
On-prem Client Server Apps
(existing XenApp farm)
File Sharing 3D Design Meetings Spreadsheet Email Tools CRM
AWS-hosted Client Server Apps
File Sharing 3D Design Meetings Spreadsheet Email Tools CRM
Secured SaaS Apps
File Sharing 3D Design Meetings Spreadsheet Email Tools CRM
On-prem Desktop
File Sharing 3D Design Meetings Spreadsheet Email Tools CRM
AWS-hosted Desktop
File Sharing 3D Design Meetings Spreadsheet Email Tools CRM
On-Prem Docs
File Sharing 3D Design Meetings Spreadsheet Email Tools CRM
AWS S3 Docs
25 © 2018 Citrix | Confidential
Web/SaaS Apps Coexist with Desktop Apps & Docs (User)
A Truly Unified Workspace for Enterprise Customers
Doc Reader Word Processor ERPSpreadsheet CRMFinancial
26 © 2018 Citrix | Confidential
SaaS Template Library (Admin View)
At least 25 top SaaS Apps for Synergy
27 © 2018 Citrix | Confidential
Policy Controls for SaaS DLP (Admin View)
Usable on any SaaS Application – Foundation of a SaaS Governance Framework
28 © 2018 Citrix | Confidential
Enhanced Security via Embedded Browser (User View)
Example: Watermarking
Keep
HR App
29 © 2018 Citrix | Confidential
Information Source/Content Analytics (End User View)
Increase the Safety of your Environment
30 © 2018 Citrix | Confidential
Information Source/Content Analytics (Admin View)
Control Content to Different Sites and Content Categories
31 © 2018 Citrix | Confidential
1. User Instance of WorkSpace App registers/authenticates with Citrix Cloud
2. List of enumerated apps is returned to the WorkSpace App instance
3. User initiates connection to Sanctioned SaaS App
4. SaaS Provider authenticates user via SAML (SSO) against IDP
5. User now logged directly into Sanctioned SaaS App
SaaS Apps
USecure Digital
Workspace
Embedded Browser
HDX Engine
( for Windows / Linux apps )
Citrix
WorkSpace App
Citrix Cloud
IDP
1
2
A
U
E
A
API Events
User Plane
Authentication
3
3
5
Networking Client
Management Agent /API
Secure Cache Container
6. WS App Management Agent feeds all SaaS interaction events back to Citrix Analytics
(which avoids requiring inline device/proxy logging)
7. Closed loop action based on CAS trigger ( control / block access )
6
Analytics
Gateway
E
7
Integrated SSO and Sanctioned App Visibility & Management
Citrix WorkSpace App
32 © 2018 Citrix | Confidential
Secure Web Gateway for URL Filter & Redirection
Visibility and management of user activities into Non- Sanctioned URLs
1. User in Workspace App clicks on URL in a SaaS app, local standard browser is open
2. SWG in data path detects a non-sanctioned URL
3. SWG blocks access and sends a URL redirect to browser (to Secure Browser service)
4. New browser tab opens on Standard Browser (displaying Secure Browser session to Non-Sanctioned SaaS App)
SaaS Apps
Unknown
URL
Citrix Cloud
CISCAS
4
5. Secure Browsing Service feeds all User SaaS interaction events back to Citrix Analytics
Standard
Browser
XA Secure CWA Browser
4
SWG
U
1 2
3
33 © 2018 Citrix | Confidential
Secure Browser Service – Access w/o Workspace App
Visibility and management of user activities into Sanctioned Apps
1. User logs into his corporate SaaS App from an HTML5 Standard Browser
2. SaaS provider authenticates User via CIS
3. User URL session is redirected to the Citrix Secure Browsing Service
4. New browser tab opens on Standard Browser (displaying Secure Browser session to SaaS App)
SaaS Apps
Citrix Cloud
IDP
CAS
1
2
5
5. Secure Browsing Service feeds all User SaaS interaction events back to Citrix Analytics
Standard
Browser
XA Secure WSA Browser
3
4
U
A
34 © 2018 Citrix | Confidential
Gateway Provides Single Sign-On Across all Applications
Users
with Single Sign-on
Mobile
VDI
SaaS
Web Apps
Client /
Server
SAML 2.0, OAuth
• Single point of access to all
applications
• Secure access
management, granular and
consistent access control across
all apps
• Better user experience
improves productivity
• Tighter Security with Multi-
Factor authentication
35 © 2018 Citrix | Confidential
Workspace App (Receiver)
–App launch
–URL navigate
–App close
–File download
–File print
–Clipboard operation (Cut, Copy, Paste)
Access Security service (SWG)
–URL Transaction (URL, Download data size, Upload data size …)
SaaS & Web Access Security Events
36 © 2018 Citrix | Confidential
User Behavior Security Analytics: Risk Indicators
Citrix Workspace
(85% customers)
Mobile Apps
(XenMobile)
Files
(ShareFile)
SaaS Apps Virtual Apps
(XenApp / XenDesktop)
Citrix Workspace w/
Apps & Desktops
(15% customers)
Access
(GW, SWG / SDP)
 Unusual device / location
 Unusual app usage
 Unusual downloads to
external drive
 Jailbroken / rooted device
 Unsupported OS
 Unusual Login
 EPA scan failures
 Authentication failures –
Single Factor
 Authentication failures –
Second Factor
 Authorization failures
 Unusual download
Excessive file sharing
 Excessive access to
sensitive files
 Excessive file downloads
 Excessive file uploads
 Excessive file/folders
deletion
 Ransomware by Deletes
 Ransomware by
Renames
 Unmanaged device
 Jailbroken / rooted
device
 Unusual location
 Black Listed Apps
 Unusual SaaS App usage
 Potential Data
Exfiltration
 Excessive data upload to
a site
 Excessive data
download to a site
 Risky Website access
 Access black-listed site
 Access from a new
device
NEW
37 © 2018 Citrix | Confidential
SaaS Access Security
Risk Indicators
38 © 2018 Citrix | Confidential
Cloud Based
Apps
Files
Traditional
apps
Mobile
Networks
Access
Data
Apps
Network
Frequency
Location
Time
Devices
Access Network
Restricted Access
Uploads
Downloads
DLP Events
Malware & Spam
P to P Torrents
Restricted IPs
…
…
User Behavior Security Analytics
Ecosystem User Behaviors & Categories
ML Modeling,
Profiles & Risk Scores
Notifications &
Policy Control
Proactive, Granular, Policy Control
User 1 User 2
User 3 User 4
Policy
39 © 2018 Citrix | Confidential
• Users accessing malicious
& risky URLs
• Uploads and downloads
to malicious & risky URLs
• Popular SaaS apps and
usage
• Historical traffic trends
and prediction of future
usage trends
Access Security
Analytics:
Key Use-cases
40 © 2018 Citrix | Confidential
Cloud providers
On-premises
apps & data
SaaS & mobile apps
© 2018 Citrix | Confidential
Delivering Secure
SaaS/Web and
Client-Server Apps
from AWS in a
Hybrid Infrastructure
42 © 2018 Citrix | Confidential
Problem
• Less visibility on app health, data center health, internet/ISP health in hybrid environments
• How to leverage existing on-prem infrastructure while making use of cloud
Solution
• Provide last mile visibility to improve user experience
• Automation across hybrid environment
AWS + Citrix ADC + Citrix ITM solution = Agility,
Availability with Intelligent Routing
43 © 2018 Citrix | Confidential
World's Largest Internet User Experience Community
ISP: Internet Service Provider; CDN: Content Delivery Network; DC: Datacenter
Analyze internet
sourced
experience
information
Intelligently steer
traffic across
public clouds,
ISPs, CDNs and
DCs
Business
continuity -
Avoid outages of
servers,
networks and
CDNs
Lower TCO -
Eliminate un-
necessary
bursting costs
over CDNs
Recommend
cloud-workload
placements
15B data points/day | 900M user sessions | 40K networks
44 © 2018 Citrix | Confidential
Citrix ITM
End-to-End Visibility using Citrix ADC & Citrix ITM
End Users
Last-mile connectivity
with DC goes bad
Real-User Network
Experience Metrics
Tier 2
ISP
Local
ISP
Tier 1
ISP
Tier 2
ISP
CDN
CDN Tier 2
ISP
Tier 3
ISP
Corporate Data Center
Citrix ADC GSLB
Supports ELB Auto-scaling
Citrix ADC GSLB
MPX | SDX | VPX
Citrix ADC
MPX | FIPS | VPX
AWS Cloud
ELB | NLB
Application traffic
Citrix ADC LB
• Citrix ITM finds last mile performance with help of community data
• Citrix ITM talks to Citrix ADC to gain visibility of Citrix ADC internal
metrics as well Feeds from Citrix ADC to Citrix ITM
ITM Radar User Telemetry
• Citrix GSLB helps in DR and also supports ELB auto-scaling
45 © 2018 Citrix | Confidential
46 © 2018 Citrix | Confidential

Weitere ähnliche Inhalte

Was ist angesagt?

Managed Relational Databases - Amazon RDS
Managed Relational Databases - Amazon RDSManaged Relational Databases - Amazon RDS
Managed Relational Databases - Amazon RDSAmazon Web Services
 
Solving for Identity and Authentication with .NET Apps on AWS (GPSWS408) - AW...
Solving for Identity and Authentication with .NET Apps on AWS (GPSWS408) - AW...Solving for Identity and Authentication with .NET Apps on AWS (GPSWS408) - AW...
Solving for Identity and Authentication with .NET Apps on AWS (GPSWS408) - AW...Amazon Web Services
 
ENT307 Move your Desktops and Apps to AWS with Amazon WorkSpaces and AppStre...
 ENT307 Move your Desktops and Apps to AWS with Amazon WorkSpaces and AppStre... ENT307 Move your Desktops and Apps to AWS with Amazon WorkSpaces and AppStre...
ENT307 Move your Desktops and Apps to AWS with Amazon WorkSpaces and AppStre...Amazon Web Services
 
Proven Methodologies for Accelerating Your Cloud Journey (ENT308-S) - AWS re:...
Proven Methodologies for Accelerating Your Cloud Journey (ENT308-S) - AWS re:...Proven Methodologies for Accelerating Your Cloud Journey (ENT308-S) - AWS re:...
Proven Methodologies for Accelerating Your Cloud Journey (ENT308-S) - AWS re:...Amazon Web Services
 
Build Cloud-Native Applications in an Enterprise Environment (BAP205-S) - AWS...
Build Cloud-Native Applications in an Enterprise Environment (BAP205-S) - AWS...Build Cloud-Native Applications in an Enterprise Environment (BAP205-S) - AWS...
Build Cloud-Native Applications in an Enterprise Environment (BAP205-S) - AWS...Amazon Web Services
 
Transform Your Business with VMware Cloud on AWS: Technical Overview
Transform Your Business with VMware Cloud on AWS: Technical Overview Transform Your Business with VMware Cloud on AWS: Technical Overview
Transform Your Business with VMware Cloud on AWS: Technical Overview Amazon Web Services
 
How Modern Dev Teams Build on Salesforce Heroku and AWS (DEV211-S) - AWS re:I...
How Modern Dev Teams Build on Salesforce Heroku and AWS (DEV211-S) - AWS re:I...How Modern Dev Teams Build on Salesforce Heroku and AWS (DEV211-S) - AWS re:I...
How Modern Dev Teams Build on Salesforce Heroku and AWS (DEV211-S) - AWS re:I...Amazon Web Services
 
Leadership Session: Using AWS End User Computing Services for Your Modern Wor...
Leadership Session: Using AWS End User Computing Services for Your Modern Wor...Leadership Session: Using AWS End User Computing Services for Your Modern Wor...
Leadership Session: Using AWS End User Computing Services for Your Modern Wor...Amazon Web Services
 
Closing Loops and Opening Minds: How to Take Control of Systems, Big and Smal...
Closing Loops and Opening Minds: How to Take Control of Systems, Big and Smal...Closing Loops and Opening Minds: How to Take Control of Systems, Big and Smal...
Closing Loops and Opening Minds: How to Take Control of Systems, Big and Smal...Amazon Web Services
 
Securely Deliver Desktop Applications with Amazon AppStream 2.0 (BAP201) - AW...
Securely Deliver Desktop Applications with Amazon AppStream 2.0 (BAP201) - AW...Securely Deliver Desktop Applications with Amazon AppStream 2.0 (BAP201) - AW...
Securely Deliver Desktop Applications with Amazon AppStream 2.0 (BAP201) - AW...Amazon Web Services
 
How Rovio Uses Amazon CloudFront for Secure API Acceleration (CTD315) - AWS r...
How Rovio Uses Amazon CloudFront for Secure API Acceleration (CTD315) - AWS r...How Rovio Uses Amazon CloudFront for Secure API Acceleration (CTD315) - AWS r...
How Rovio Uses Amazon CloudFront for Secure API Acceleration (CTD315) - AWS r...Amazon Web Services
 
Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...
Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...
Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...Amazon Web Services
 
Best Practices for Safe Deployments on AWS Lambda and Amazon API Gateway (SRV...
Best Practices for Safe Deployments on AWS Lambda and Amazon API Gateway (SRV...Best Practices for Safe Deployments on AWS Lambda and Amazon API Gateway (SRV...
Best Practices for Safe Deployments on AWS Lambda and Amazon API Gateway (SRV...Amazon Web Services
 
SID303 Navigating GDPR Compliance on AWS
 SID303 Navigating GDPR Compliance on AWS SID303 Navigating GDPR Compliance on AWS
SID303 Navigating GDPR Compliance on AWSAmazon Web Services
 
Shift-Left SRE: Self-Healing with AWS Lambda Functions (DEV313-S) - AWS re:In...
Shift-Left SRE: Self-Healing with AWS Lambda Functions (DEV313-S) - AWS re:In...Shift-Left SRE: Self-Healing with AWS Lambda Functions (DEV313-S) - AWS re:In...
Shift-Left SRE: Self-Healing with AWS Lambda Functions (DEV313-S) - AWS re:In...Amazon Web Services
 
SPEKE-ing of Content Protection & DRM (MAE302) - AWS re:Invent 2018
SPEKE-ing of Content Protection & DRM (MAE302) - AWS re:Invent 2018SPEKE-ing of Content Protection & DRM (MAE302) - AWS re:Invent 2018
SPEKE-ing of Content Protection & DRM (MAE302) - AWS re:Invent 2018Amazon Web Services
 
Enable Your Smart Factory with the AWS Industrial IoT Reference Solution (MFG...
Enable Your Smart Factory with the AWS Industrial IoT Reference Solution (MFG...Enable Your Smart Factory with the AWS Industrial IoT Reference Solution (MFG...
Enable Your Smart Factory with the AWS Industrial IoT Reference Solution (MFG...Amazon Web Services
 
Modernizing .NET Applications on AWS (GPSCT204) - AWS re:Invent 2018
Modernizing .NET Applications on AWS (GPSCT204) - AWS re:Invent 2018Modernizing .NET Applications on AWS (GPSCT204) - AWS re:Invent 2018
Modernizing .NET Applications on AWS (GPSCT204) - AWS re:Invent 2018Amazon Web Services
 

Was ist angesagt? (20)

Managed Relational Databases - Amazon RDS
Managed Relational Databases - Amazon RDSManaged Relational Databases - Amazon RDS
Managed Relational Databases - Amazon RDS
 
Solving for Identity and Authentication with .NET Apps on AWS (GPSWS408) - AW...
Solving for Identity and Authentication with .NET Apps on AWS (GPSWS408) - AW...Solving for Identity and Authentication with .NET Apps on AWS (GPSWS408) - AW...
Solving for Identity and Authentication with .NET Apps on AWS (GPSWS408) - AW...
 
ENT307 Move your Desktops and Apps to AWS with Amazon WorkSpaces and AppStre...
 ENT307 Move your Desktops and Apps to AWS with Amazon WorkSpaces and AppStre... ENT307 Move your Desktops and Apps to AWS with Amazon WorkSpaces and AppStre...
ENT307 Move your Desktops and Apps to AWS with Amazon WorkSpaces and AppStre...
 
Proven Methodologies for Accelerating Your Cloud Journey (ENT308-S) - AWS re:...
Proven Methodologies for Accelerating Your Cloud Journey (ENT308-S) - AWS re:...Proven Methodologies for Accelerating Your Cloud Journey (ENT308-S) - AWS re:...
Proven Methodologies for Accelerating Your Cloud Journey (ENT308-S) - AWS re:...
 
Build Cloud-Native Applications in an Enterprise Environment (BAP205-S) - AWS...
Build Cloud-Native Applications in an Enterprise Environment (BAP205-S) - AWS...Build Cloud-Native Applications in an Enterprise Environment (BAP205-S) - AWS...
Build Cloud-Native Applications in an Enterprise Environment (BAP205-S) - AWS...
 
Transform Your Business with VMware Cloud on AWS: Technical Overview
Transform Your Business with VMware Cloud on AWS: Technical Overview Transform Your Business with VMware Cloud on AWS: Technical Overview
Transform Your Business with VMware Cloud on AWS: Technical Overview
 
How Modern Dev Teams Build on Salesforce Heroku and AWS (DEV211-S) - AWS re:I...
How Modern Dev Teams Build on Salesforce Heroku and AWS (DEV211-S) - AWS re:I...How Modern Dev Teams Build on Salesforce Heroku and AWS (DEV211-S) - AWS re:I...
How Modern Dev Teams Build on Salesforce Heroku and AWS (DEV211-S) - AWS re:I...
 
Amazon Container Services
Amazon Container ServicesAmazon Container Services
Amazon Container Services
 
Leadership Session: Using AWS End User Computing Services for Your Modern Wor...
Leadership Session: Using AWS End User Computing Services for Your Modern Wor...Leadership Session: Using AWS End User Computing Services for Your Modern Wor...
Leadership Session: Using AWS End User Computing Services for Your Modern Wor...
 
Closing Loops and Opening Minds: How to Take Control of Systems, Big and Smal...
Closing Loops and Opening Minds: How to Take Control of Systems, Big and Smal...Closing Loops and Opening Minds: How to Take Control of Systems, Big and Smal...
Closing Loops and Opening Minds: How to Take Control of Systems, Big and Smal...
 
Securely Deliver Desktop Applications with Amazon AppStream 2.0 (BAP201) - AW...
Securely Deliver Desktop Applications with Amazon AppStream 2.0 (BAP201) - AW...Securely Deliver Desktop Applications with Amazon AppStream 2.0 (BAP201) - AW...
Securely Deliver Desktop Applications with Amazon AppStream 2.0 (BAP201) - AW...
 
The Future of Enterprise IT
The Future of Enterprise IT The Future of Enterprise IT
The Future of Enterprise IT
 
How Rovio Uses Amazon CloudFront for Secure API Acceleration (CTD315) - AWS r...
How Rovio Uses Amazon CloudFront for Secure API Acceleration (CTD315) - AWS r...How Rovio Uses Amazon CloudFront for Secure API Acceleration (CTD315) - AWS r...
How Rovio Uses Amazon CloudFront for Secure API Acceleration (CTD315) - AWS r...
 
Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...
Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...
Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...
 
Best Practices for Safe Deployments on AWS Lambda and Amazon API Gateway (SRV...
Best Practices for Safe Deployments on AWS Lambda and Amazon API Gateway (SRV...Best Practices for Safe Deployments on AWS Lambda and Amazon API Gateway (SRV...
Best Practices for Safe Deployments on AWS Lambda and Amazon API Gateway (SRV...
 
SID303 Navigating GDPR Compliance on AWS
 SID303 Navigating GDPR Compliance on AWS SID303 Navigating GDPR Compliance on AWS
SID303 Navigating GDPR Compliance on AWS
 
Shift-Left SRE: Self-Healing with AWS Lambda Functions (DEV313-S) - AWS re:In...
Shift-Left SRE: Self-Healing with AWS Lambda Functions (DEV313-S) - AWS re:In...Shift-Left SRE: Self-Healing with AWS Lambda Functions (DEV313-S) - AWS re:In...
Shift-Left SRE: Self-Healing with AWS Lambda Functions (DEV313-S) - AWS re:In...
 
SPEKE-ing of Content Protection & DRM (MAE302) - AWS re:Invent 2018
SPEKE-ing of Content Protection & DRM (MAE302) - AWS re:Invent 2018SPEKE-ing of Content Protection & DRM (MAE302) - AWS re:Invent 2018
SPEKE-ing of Content Protection & DRM (MAE302) - AWS re:Invent 2018
 
Enable Your Smart Factory with the AWS Industrial IoT Reference Solution (MFG...
Enable Your Smart Factory with the AWS Industrial IoT Reference Solution (MFG...Enable Your Smart Factory with the AWS Industrial IoT Reference Solution (MFG...
Enable Your Smart Factory with the AWS Industrial IoT Reference Solution (MFG...
 
Modernizing .NET Applications on AWS (GPSCT204) - AWS re:Invent 2018
Modernizing .NET Applications on AWS (GPSCT204) - AWS re:Invent 2018Modernizing .NET Applications on AWS (GPSCT204) - AWS re:Invent 2018
Modernizing .NET Applications on AWS (GPSCT204) - AWS re:Invent 2018
 

Ähnlich wie Deliver Apps, Desktops and Data from AWS & On-Prem

eG Express Cloud for Citrix Workspaces
eG Express Cloud for Citrix WorkspaceseG Express Cloud for Citrix Workspaces
eG Express Cloud for Citrix WorkspaceseG Innovations
 
Hybrid IAM: Fuelling Agility in the Cloud Transformation Journey | Gartner IA...
Hybrid IAM: Fuelling Agility in the Cloud Transformation Journey | Gartner IA...Hybrid IAM: Fuelling Agility in the Cloud Transformation Journey | Gartner IA...
Hybrid IAM: Fuelling Agility in the Cloud Transformation Journey | Gartner IA...Ping Identity
 
RapidScale Company Presentation
RapidScale Company PresentationRapidScale Company Presentation
RapidScale Company PresentationRapidScale
 
IBM Softlayer ile bulutta 3. Boyut Bora Taşer IBM
IBM Softlayer ile bulutta 3. Boyut  Bora Taşer IBMIBM Softlayer ile bulutta 3. Boyut  Bora Taşer IBM
IBM Softlayer ile bulutta 3. Boyut Bora Taşer IBMWebrazzi
 
Smart Integration to the Cloud - Kellton Tech Webinar
Smart Integration to the Cloud - Kellton Tech WebinarSmart Integration to the Cloud - Kellton Tech Webinar
Smart Integration to the Cloud - Kellton Tech WebinarKellton Tech Solutions Ltd
 
AWS_IPC_EUC_Webinar_Deck_Final.pdf
AWS_IPC_EUC_Webinar_Deck_Final.pdfAWS_IPC_EUC_Webinar_Deck_Final.pdf
AWS_IPC_EUC_Webinar_Deck_Final.pdfAmazon Web Services
 
IT as a Service is the IT of the Future - Presented at GigaOm Structure 2013 SF
IT as a Service is the IT of the Future - Presented at GigaOm Structure 2013 SFIT as a Service is the IT of the Future - Presented at GigaOm Structure 2013 SF
IT as a Service is the IT of the Future - Presented at GigaOm Structure 2013 SFKrishna Subramanian
 
Azure Overview Arc
Azure Overview ArcAzure Overview Arc
Azure Overview Arcrajramab
 
System Center Datacenter Cloud Management Vision & Roadmap
System Center Datacenter Cloud Management Vision & RoadmapSystem Center Datacenter Cloud Management Vision & Roadmap
System Center Datacenter Cloud Management Vision & RoadmapAmit Gatenyo
 
The Ultimate Guide to Cloud Migration - A Whitepaper by RapidValue
The Ultimate Guide to Cloud Migration - A Whitepaper by RapidValueThe Ultimate Guide to Cloud Migration - A Whitepaper by RapidValue
The Ultimate Guide to Cloud Migration - A Whitepaper by RapidValueRapidValue
 
Microsoft cloud continuum
Microsoft cloud continuumMicrosoft cloud continuum
Microsoft cloud continuumMathews Job
 
(SEC321) Implementing Policy, Governance & Security for Enterprises
(SEC321) Implementing Policy, Governance & Security for Enterprises(SEC321) Implementing Policy, Governance & Security for Enterprises
(SEC321) Implementing Policy, Governance & Security for EnterprisesAmazon Web Services
 
Accelerated Saa S Exec Briefing V2
Accelerated Saa S Exec Briefing V2Accelerated Saa S Exec Briefing V2
Accelerated Saa S Exec Briefing V2jeffirby
 
Transformation of IT Spending
Transformation of IT SpendingTransformation of IT Spending
Transformation of IT SpendingKokLeong Ong
 
Indonesia new default short msp client presentation partnership with isv
Indonesia new default short msp client presentation   partnership with isvIndonesia new default short msp client presentation   partnership with isv
Indonesia new default short msp client presentation partnership with isvPandu W Sastrowardoyo
 
Making Sense Of Cloud Computing - by Mark Rivington
Making Sense Of Cloud Computing - by Mark RivingtonMaking Sense Of Cloud Computing - by Mark Rivington
Making Sense Of Cloud Computing - by Mark RivingtonCA Nimsoft
 
Citrix The Intelligence Workspace and State-of-the-art for SAP
Citrix The Intelligence Workspace and State-of-the-art for SAPCitrix The Intelligence Workspace and State-of-the-art for SAP
Citrix The Intelligence Workspace and State-of-the-art for SAPPT Datacomm Diangraha
 
WVD Partner Event 17 feb 2020 - Citrix Slides
WVD Partner Event 17 feb 2020 - Citrix SlidesWVD Partner Event 17 feb 2020 - Citrix Slides
WVD Partner Event 17 feb 2020 - Citrix Slideskiefter
 

Ähnlich wie Deliver Apps, Desktops and Data from AWS & On-Prem (20)

eG Express Cloud for Citrix Workspaces
eG Express Cloud for Citrix WorkspaceseG Express Cloud for Citrix Workspaces
eG Express Cloud for Citrix Workspaces
 
Hybrid IAM: Fuelling Agility in the Cloud Transformation Journey | Gartner IA...
Hybrid IAM: Fuelling Agility in the Cloud Transformation Journey | Gartner IA...Hybrid IAM: Fuelling Agility in the Cloud Transformation Journey | Gartner IA...
Hybrid IAM: Fuelling Agility in the Cloud Transformation Journey | Gartner IA...
 
RapidScale Company Presentation
RapidScale Company PresentationRapidScale Company Presentation
RapidScale Company Presentation
 
NetScaler ADC - Customer Overview
NetScaler ADC - Customer OverviewNetScaler ADC - Customer Overview
NetScaler ADC - Customer Overview
 
IBM Softlayer ile bulutta 3. Boyut Bora Taşer IBM
IBM Softlayer ile bulutta 3. Boyut  Bora Taşer IBMIBM Softlayer ile bulutta 3. Boyut  Bora Taşer IBM
IBM Softlayer ile bulutta 3. Boyut Bora Taşer IBM
 
Smart Integration to the Cloud - Kellton Tech Webinar
Smart Integration to the Cloud - Kellton Tech WebinarSmart Integration to the Cloud - Kellton Tech Webinar
Smart Integration to the Cloud - Kellton Tech Webinar
 
Quick Guide To CITRIX: An Overview
Quick Guide To CITRIX: An OverviewQuick Guide To CITRIX: An Overview
Quick Guide To CITRIX: An Overview
 
AWS_IPC_EUC_Webinar_Deck_Final.pdf
AWS_IPC_EUC_Webinar_Deck_Final.pdfAWS_IPC_EUC_Webinar_Deck_Final.pdf
AWS_IPC_EUC_Webinar_Deck_Final.pdf
 
IT as a Service is the IT of the Future - Presented at GigaOm Structure 2013 SF
IT as a Service is the IT of the Future - Presented at GigaOm Structure 2013 SFIT as a Service is the IT of the Future - Presented at GigaOm Structure 2013 SF
IT as a Service is the IT of the Future - Presented at GigaOm Structure 2013 SF
 
Azure Overview Arc
Azure Overview ArcAzure Overview Arc
Azure Overview Arc
 
System Center Datacenter Cloud Management Vision & Roadmap
System Center Datacenter Cloud Management Vision & RoadmapSystem Center Datacenter Cloud Management Vision & Roadmap
System Center Datacenter Cloud Management Vision & Roadmap
 
The Ultimate Guide to Cloud Migration - A Whitepaper by RapidValue
The Ultimate Guide to Cloud Migration - A Whitepaper by RapidValueThe Ultimate Guide to Cloud Migration - A Whitepaper by RapidValue
The Ultimate Guide to Cloud Migration - A Whitepaper by RapidValue
 
Microsoft cloud continuum
Microsoft cloud continuumMicrosoft cloud continuum
Microsoft cloud continuum
 
(SEC321) Implementing Policy, Governance & Security for Enterprises
(SEC321) Implementing Policy, Governance & Security for Enterprises(SEC321) Implementing Policy, Governance & Security for Enterprises
(SEC321) Implementing Policy, Governance & Security for Enterprises
 
Accelerated Saa S Exec Briefing V2
Accelerated Saa S Exec Briefing V2Accelerated Saa S Exec Briefing V2
Accelerated Saa S Exec Briefing V2
 
Transformation of IT Spending
Transformation of IT SpendingTransformation of IT Spending
Transformation of IT Spending
 
Indonesia new default short msp client presentation partnership with isv
Indonesia new default short msp client presentation   partnership with isvIndonesia new default short msp client presentation   partnership with isv
Indonesia new default short msp client presentation partnership with isv
 
Making Sense Of Cloud Computing - by Mark Rivington
Making Sense Of Cloud Computing - by Mark RivingtonMaking Sense Of Cloud Computing - by Mark Rivington
Making Sense Of Cloud Computing - by Mark Rivington
 
Citrix The Intelligence Workspace and State-of-the-art for SAP
Citrix The Intelligence Workspace and State-of-the-art for SAPCitrix The Intelligence Workspace and State-of-the-art for SAP
Citrix The Intelligence Workspace and State-of-the-art for SAP
 
WVD Partner Event 17 feb 2020 - Citrix Slides
WVD Partner Event 17 feb 2020 - Citrix SlidesWVD Partner Event 17 feb 2020 - Citrix Slides
WVD Partner Event 17 feb 2020 - Citrix Slides
 

Mehr von Amazon Web Services

Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Amazon Web Services
 
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Amazon Web Services
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateAmazon Web Services
 
Costruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSCostruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSAmazon Web Services
 
Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Amazon Web Services
 
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Amazon Web Services
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...Amazon Web Services
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsAmazon Web Services
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareAmazon Web Services
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSAmazon Web Services
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAmazon Web Services
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareAmazon Web Services
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWSAmazon Web Services
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckAmazon Web Services
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without serversAmazon Web Services
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...Amazon Web Services
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceAmazon Web Services
 

Mehr von Amazon Web Services (20)

Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
 
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS Fargate
 
Costruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSCostruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWS
 
Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot
 
Open banking as a service
Open banking as a serviceOpen banking as a service
Open banking as a service
 
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
 
Computer Vision con AWS
Computer Vision con AWSComputer Vision con AWS
Computer Vision con AWS
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatare
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e web
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
 
Fundraising Essentials
Fundraising EssentialsFundraising Essentials
Fundraising Essentials
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container Service
 

Deliver Apps, Desktops and Data from AWS & On-Prem

  • 1. 1 © 2018 Citrix | Confidential Delivering Secure SaaS/Web and Client-Server Apps from AWS in a Hybrid Infrastructure Steve Wilson VP Products, Cloud @virtualsteve Marissa Schmidt Senior Director, Product Management @MissAppFW © 2016 Citrix | Confidential
  • 2. 2 © 2018 Citrix | Confidential Citrix and AWS Together Accelerate high performance, compliant applications, desktops and data to your diverse user base in minutes instead of months Each workload and its data can be automatically paired with modern and cost-effective capacity that meets your requirements Mature solutions are designed to provide platform stability, network and data security, and compliance with corporate and sovereign policy requirements Your workloads and infrastructure, paired with the AWS global footprint and Citrix solutions, deliver first-rate user workspaces Faster Smarter Trusted Global
  • 3. 3 © 2018 Citrix | Confidential Citrix Workspace Endpoint Management service Citrix Files Smart Tools Region & number of Availability Zones New Region (coming soon) # Citrix Analytics Citrix Gateway Citrix Gateway SD-WAN Citrix Gateway
  • 4. 4 © 2018 Citrix | Confidential About the Customer • Large financial institution • HQ in North East USA with users around the globe • Roughly 75% of users run their main desktops via Citrix Workspace Challenge • Mission-critical workload that requires fault tolerance • Excessive cost and overhead of running a physical DR site – Upfront costs – Ongoing maintenance – Hardware refresh Customer Success Story Solution • Establishing a DR site on AWS enables this organization to reduce costs, maintain high performance, provision additional capacity when needed, eliminate the management of physical site • Citrix NetScaler extends corporate network to AWS and provides consistent control over traffic, as well as an additional layer of security users on AWS 6,000 Able to support full-time, production users 200 Have run
  • 5. 5 © 2018 Citrix | Confidential About the Customer Appliance Manufacturer with a presence around the globe Drivers • Existing Citrix user looking to phase out their physical data center • Looking to empower mobile users leveraging various types of devices Customer Success Results • Chose to migrate to AWS based on workload performance demands • MTM designed a custom environment to support their application portfolio and helped execute migration • Through AnywhereApp, a people-centric architecture was created – leveraging AWS – to facilitate a powerful, and secure, experience
  • 6. 6 © 2018 Citrix | Confidential About the Customer Health Insurance Company with roughly 2,000 users in the NY area Drivers • Desire to establish a hybrid cloud environment in an effort to begin phasing out physical data centers • Enable secure and compliant mobility for healthcare workers and associates Customer Success Results • AWS met workload performance demands • MTM implemented a custom-designed infrastructure to better support hybrid workloads • Customer now moving XenApp workstations to AWS • A new model which allows the customer to consume cloud and workloads as they grow
  • 7. 7 © 2018 Citrix | Confidential About the Customer Financial Institution with a national presence Drivers • Needed to establish a disaster recovery site, without incurring expense of physical infrastructure • Citrix Cloud powers a mission-critical application that runs in private data center Customer Success Results • The AWS global presence makes it easy to establish disaster recovery (DR) sites without the overhead of physical infrastructure • Able to run half of desktops on AWS in case of a disaster • Success of the AnywhereApp has led to more workloads being migrated to AWS • User experience was powerful and transparent, even if a failover needs to happen
  • 8. 8 © 2018 Citrix | Confidential Enterprise 1.0 Legacy/ Custom Apps VPN ERP Database Users
  • 9. 9 © 2018 Citrix | Confidential Legacy/ Custom Apps ERP Database Cloud Transformation 1.0 Lift & Shift Users
  • 10. 10 © 2018 Citrix | Confidential Cloud Transformation 1.0’s Failure Why Didn’t It Happen This Way? Governance & Security Data Gravity Cloud Vendor Lock In Inertia
  • 11. 11 © 2018 Citrix | Confidential VPN The Messy World of Real Transformation FILE SHARING CLOUD OFFICE PRODUCTIVITY EMAIL CRMHR TOOLS ERP Users Legacy/ Custom Apps ERP Database
  • 12. 12 © 2018 Citrix | Confidential Security & Performance Analytics Unified Experience Instant Access Advanced Auth Contextual Access Contextual Performance Unified Endpoint Mgmt. Cross Cloud Management Content Control Secure ITUsers Secure Digital Perimeter Your Secure Digital Workspace Legacy/ Custom Apps ERP Database FILE SHARING CLOUD OFFICE PRODUCTIVITY EMAIL CRMHR TOOLS ERP
  • 13. DAVID CITRIX WORKSPACE APP Everything you need to be productive in one experience SECURE DIGITAL PERIMETER User / App / Content / Network CITRIX WORKSPACE CONTENTAPPS DEVICES ANALYTICS On-prem / CloudSaaS / Mobile / Windows / Virtual PC / Smartphone / Tablet / IoT The development, release and timing of any features or functionality described for our products remains at our sole discretion and are subject to change without notice or consultation. The information provided is for informational purposes only and is not a commitment, promise or legal obligation to deliver any material, code or functionality and should not be relied upon in making purchasing decisions or incorporated into any contract.
  • 14. 14 © 2018 Citrix | Confidential • Instant access to on-prem and AWS-hosted Windows applications • Instant Access to any SaaS from Workspace (with any browser) • Instant Access with Enhanced Security for SaaS (Workspace App with Embedded Browser) • Instant Access to Cloud-hosted and on-prem document stores • DLP Policies Watermark – Restrict copy/paste/print/navigate – Restrict downloads – Restrict mobile access • Information Source/Content Analytics – Reduce malware/phishing – Reduce inappropriate content • User Behavior Analytics Key Technology Components Citrix Workspace
  • 15. 15 © 2018 Citrix | Confidential VPN Virtual Apps & Desktop Service On-Prem Datacenter Hypervisor AD Server VDAs Hybrid-Cloud VDI Management Incorporating public cloud into your architecture Four key questions: • Which applications are ready to move to the cloud? • How to connect AD to the cloud? • What are the external access requirements? • What other authentication requirements exist? VDAs AWS Region AD Server VDAsVDAs Cloud Connectors Cloud Connectors
  • 16. 16 © 2018 Citrix | Confidential The Most Popular SaaS Apps Integrated Out Of The Box Apps File Sharing Cloud ERP Tools HR Analytics Expense Tracking Collaboration Intranet E-signature Design Customer Support Marketing Automation Project Management Ops Management E-procurement Communications
  • 17. File Sharing 3D Design Meetings Spreadsheet Email Tools CRM
  • 18. File Sharing 3D Design Meetings Spreadsheet Email Tools CRM On-prem Client Server Apps (existing XenApp farm)
  • 19. File Sharing 3D Design Meetings Spreadsheet Email Tools CRM AWS-hosted Client Server Apps
  • 20. File Sharing 3D Design Meetings Spreadsheet Email Tools CRM Secured SaaS Apps
  • 21. File Sharing 3D Design Meetings Spreadsheet Email Tools CRM On-prem Desktop
  • 22. File Sharing 3D Design Meetings Spreadsheet Email Tools CRM AWS-hosted Desktop
  • 23. File Sharing 3D Design Meetings Spreadsheet Email Tools CRM On-Prem Docs
  • 24. File Sharing 3D Design Meetings Spreadsheet Email Tools CRM AWS S3 Docs
  • 25. 25 © 2018 Citrix | Confidential Web/SaaS Apps Coexist with Desktop Apps & Docs (User) A Truly Unified Workspace for Enterprise Customers Doc Reader Word Processor ERPSpreadsheet CRMFinancial
  • 26. 26 © 2018 Citrix | Confidential SaaS Template Library (Admin View) At least 25 top SaaS Apps for Synergy
  • 27. 27 © 2018 Citrix | Confidential Policy Controls for SaaS DLP (Admin View) Usable on any SaaS Application – Foundation of a SaaS Governance Framework
  • 28. 28 © 2018 Citrix | Confidential Enhanced Security via Embedded Browser (User View) Example: Watermarking Keep HR App
  • 29. 29 © 2018 Citrix | Confidential Information Source/Content Analytics (End User View) Increase the Safety of your Environment
  • 30. 30 © 2018 Citrix | Confidential Information Source/Content Analytics (Admin View) Control Content to Different Sites and Content Categories
  • 31. 31 © 2018 Citrix | Confidential 1. User Instance of WorkSpace App registers/authenticates with Citrix Cloud 2. List of enumerated apps is returned to the WorkSpace App instance 3. User initiates connection to Sanctioned SaaS App 4. SaaS Provider authenticates user via SAML (SSO) against IDP 5. User now logged directly into Sanctioned SaaS App SaaS Apps USecure Digital Workspace Embedded Browser HDX Engine ( for Windows / Linux apps ) Citrix WorkSpace App Citrix Cloud IDP 1 2 A U E A API Events User Plane Authentication 3 3 5 Networking Client Management Agent /API Secure Cache Container 6. WS App Management Agent feeds all SaaS interaction events back to Citrix Analytics (which avoids requiring inline device/proxy logging) 7. Closed loop action based on CAS trigger ( control / block access ) 6 Analytics Gateway E 7 Integrated SSO and Sanctioned App Visibility & Management Citrix WorkSpace App
  • 32. 32 © 2018 Citrix | Confidential Secure Web Gateway for URL Filter & Redirection Visibility and management of user activities into Non- Sanctioned URLs 1. User in Workspace App clicks on URL in a SaaS app, local standard browser is open 2. SWG in data path detects a non-sanctioned URL 3. SWG blocks access and sends a URL redirect to browser (to Secure Browser service) 4. New browser tab opens on Standard Browser (displaying Secure Browser session to Non-Sanctioned SaaS App) SaaS Apps Unknown URL Citrix Cloud CISCAS 4 5. Secure Browsing Service feeds all User SaaS interaction events back to Citrix Analytics Standard Browser XA Secure CWA Browser 4 SWG U 1 2 3
  • 33. 33 © 2018 Citrix | Confidential Secure Browser Service – Access w/o Workspace App Visibility and management of user activities into Sanctioned Apps 1. User logs into his corporate SaaS App from an HTML5 Standard Browser 2. SaaS provider authenticates User via CIS 3. User URL session is redirected to the Citrix Secure Browsing Service 4. New browser tab opens on Standard Browser (displaying Secure Browser session to SaaS App) SaaS Apps Citrix Cloud IDP CAS 1 2 5 5. Secure Browsing Service feeds all User SaaS interaction events back to Citrix Analytics Standard Browser XA Secure WSA Browser 3 4 U A
  • 34. 34 © 2018 Citrix | Confidential Gateway Provides Single Sign-On Across all Applications Users with Single Sign-on Mobile VDI SaaS Web Apps Client / Server SAML 2.0, OAuth • Single point of access to all applications • Secure access management, granular and consistent access control across all apps • Better user experience improves productivity • Tighter Security with Multi- Factor authentication
  • 35. 35 © 2018 Citrix | Confidential Workspace App (Receiver) –App launch –URL navigate –App close –File download –File print –Clipboard operation (Cut, Copy, Paste) Access Security service (SWG) –URL Transaction (URL, Download data size, Upload data size …) SaaS & Web Access Security Events
  • 36. 36 © 2018 Citrix | Confidential User Behavior Security Analytics: Risk Indicators Citrix Workspace (85% customers) Mobile Apps (XenMobile) Files (ShareFile) SaaS Apps Virtual Apps (XenApp / XenDesktop) Citrix Workspace w/ Apps & Desktops (15% customers) Access (GW, SWG / SDP)  Unusual device / location  Unusual app usage  Unusual downloads to external drive  Jailbroken / rooted device  Unsupported OS  Unusual Login  EPA scan failures  Authentication failures – Single Factor  Authentication failures – Second Factor  Authorization failures  Unusual download Excessive file sharing  Excessive access to sensitive files  Excessive file downloads  Excessive file uploads  Excessive file/folders deletion  Ransomware by Deletes  Ransomware by Renames  Unmanaged device  Jailbroken / rooted device  Unusual location  Black Listed Apps  Unusual SaaS App usage  Potential Data Exfiltration  Excessive data upload to a site  Excessive data download to a site  Risky Website access  Access black-listed site  Access from a new device NEW
  • 37. 37 © 2018 Citrix | Confidential SaaS Access Security Risk Indicators
  • 38. 38 © 2018 Citrix | Confidential Cloud Based Apps Files Traditional apps Mobile Networks Access Data Apps Network Frequency Location Time Devices Access Network Restricted Access Uploads Downloads DLP Events Malware & Spam P to P Torrents Restricted IPs … … User Behavior Security Analytics Ecosystem User Behaviors & Categories ML Modeling, Profiles & Risk Scores Notifications & Policy Control Proactive, Granular, Policy Control User 1 User 2 User 3 User 4 Policy
  • 39. 39 © 2018 Citrix | Confidential • Users accessing malicious & risky URLs • Uploads and downloads to malicious & risky URLs • Popular SaaS apps and usage • Historical traffic trends and prediction of future usage trends Access Security Analytics: Key Use-cases
  • 40. 40 © 2018 Citrix | Confidential Cloud providers On-premises apps & data SaaS & mobile apps
  • 41. © 2018 Citrix | Confidential Delivering Secure SaaS/Web and Client-Server Apps from AWS in a Hybrid Infrastructure
  • 42. 42 © 2018 Citrix | Confidential Problem • Less visibility on app health, data center health, internet/ISP health in hybrid environments • How to leverage existing on-prem infrastructure while making use of cloud Solution • Provide last mile visibility to improve user experience • Automation across hybrid environment AWS + Citrix ADC + Citrix ITM solution = Agility, Availability with Intelligent Routing
  • 43. 43 © 2018 Citrix | Confidential World's Largest Internet User Experience Community ISP: Internet Service Provider; CDN: Content Delivery Network; DC: Datacenter Analyze internet sourced experience information Intelligently steer traffic across public clouds, ISPs, CDNs and DCs Business continuity - Avoid outages of servers, networks and CDNs Lower TCO - Eliminate un- necessary bursting costs over CDNs Recommend cloud-workload placements 15B data points/day | 900M user sessions | 40K networks
  • 44. 44 © 2018 Citrix | Confidential Citrix ITM End-to-End Visibility using Citrix ADC & Citrix ITM End Users Last-mile connectivity with DC goes bad Real-User Network Experience Metrics Tier 2 ISP Local ISP Tier 1 ISP Tier 2 ISP CDN CDN Tier 2 ISP Tier 3 ISP Corporate Data Center Citrix ADC GSLB Supports ELB Auto-scaling Citrix ADC GSLB MPX | SDX | VPX Citrix ADC MPX | FIPS | VPX AWS Cloud ELB | NLB Application traffic Citrix ADC LB • Citrix ITM finds last mile performance with help of community data • Citrix ITM talks to Citrix ADC to gain visibility of Citrix ADC internal metrics as well Feeds from Citrix ADC to Citrix ITM ITM Radar User Telemetry • Citrix GSLB helps in DR and also supports ELB auto-scaling
  • 45. 45 © 2018 Citrix | Confidential
  • 46. 46 © 2018 Citrix | Confidential