1 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Simplified, Anywhere, Applications Access with Oracle Secure Global Desktop Mohan Prabhala – Product Management Director 2 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. The following is intended to outline our general product direction. It is intended for information purposes only, and may not be incorporated into any contract. It is not a commitment to deliver any material, code, or functionality, and should not be relied upon in making purchasing decisions. The development, release, and timing of any features or functionality described for Oracle’s products remains at the sole discretion of Oracle. 3 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Agenda • Oracle Secure Global Desktop Overview • Benefits with Enterprise Applications • Common Use Cases and Industry Verticals • Differentiators • Product Architecture • Security and Performance • Deployment Considerations • What’s New In Oracle Secure Global Desktop 4.7 • Oracle Secure Global Desktop for Exalogic • Q&A 4 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. What is Oracle Secure Global Desktop? “Cloud Access” software for enterprise applications “Cloud-Access” software 5 Provides access to centrally-hosted Oracle, web-based, Windows, Unix, and Mainframe/Mid-frame applications Lightweight browser-based client No VPN infrastructure and associated support costs Certified Access to Oracle’s web-based applications Lightweight / non-intrusive client installation Industrial-grade network security DMZ and Firewall friendly Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Application Virtualization Oracle Enterprise Applications • Oracle leveraging desktop virtualization for its broad enterprise applications portfolio • Simplified, single-source access for multiple Oracle Applications • Certified access of Oracle’s browser-based applications with Oracle Secure Global Desktop 6 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Application Virtualization for Enterprise Applications 7 Oracle Secure Global Desktop Benefits Simplified Client Configuration Hosted browser, plug-ins environments for Oracle Applications Application Performance Optimized for network latencies via protocols Security No application-related data loss, central administration Easy Migration No down time to access upgraded applications Certified Oracle’s web applications certified for access Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Oracle’s Certification Statement • Oracle Secure Global Desktop is now certified for use with Oracle’s browser-based products • My Oracle Support Doc ID 1325300.1 • Statement of Certification • “Default certification/support for all new Oracle software releases: By default, for current and all new Oracle application software releases going forward, any internet browser and operating system combination certified by the application itself is certified for use with the desktop virtualization products unless the combination is not supported by the desktop virtualization product in question or unless otherwise referenced in this support note.” • ONLY Oracle can say this. 8 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Common Use Cases • Cloud Access to Corporate Applications such as Oracle's web applications for telecommuters, mobile users, partners, and customers • Disaster / Dislocation Recovery, from snow day to pandemic • Running X-Windows applications on Windows desktops – alternative to PC-based X11-Servers, reducing client and network load, centralizing administration, and improving security • Remote Development – allows off-shore developers to access remote development workbench, with access to heterogenous tools/IDE's and source, while protecting the source from download • Mergers and Acquisitions – enables application and data access across corporate boundaries 9 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Common Use Cases (cont’d) • Heterogeneous Application Publishing – ex: Network Operations Centers • Intellectual Property Protection – Outsourcing, proprietary software sharing – Provide access to proprietary data and applications while maintaining control • Standardize / Isolate software version dependencies • Application Service Provider – provide access to both Vertical and Horizontal market applications to customers • Server Farm “KVM” - provides world-wide access to server farm consoles to centrally-located administrators to perform remote administration / maintenance • Application metering / auditing for compliance 10 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Industry Verticals Financial Banks, Investment institutions Publish X-applications, Mainframe apps on PCs Aladdin, Training applications Research & Development ISV Engg labs, Design centers, R&D centers Publish X-Applications/Windows applications on PCs Design & Development environments, Global Workforce Education 11 K-12, Universities, Oracle University Publish Windows applications, Oracle applications (Siebel, Oracle Student Learning) Remote training, dynamic workload, Diverse set of devices Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Industry Verticals (cont’d) Aerospace Airlines Windows/X-applications on PCs Traffic control and management, Routing applications Telcos NoCs, Telecom Windows/X-applications on PCs Network monitoring purposes, Monitoring/Recording, Privileged access Federal/Government 12 Agriculture, Security agencies Remote access to desktops and proprietary applications Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Oracle IT Success Stories • Product Development IT • Serves developer environments for ~13K engineers • Oracle Fusion, Oracle E-Business Suite etc • High performance across global regions • Session mobility • Oracle University (coming soon!) • Estimated to serve ~3K students • No VPN required to access remote-training environments • High performance – Real-time training experience • Demo Solution Services • Option to deliver server hosted application demos • Single-sign-on 13 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Key Competitive Differentiators Oracle Secure Global Desktop Certified for Oracle Applications •Certified for access with any Oracle web-applications •XenApp and XenDesktop are NOT certified for Oracle Simplicity and ease of use •Simpler: installation and configuration in hours •Lengthy & complex installation and configuration •Needs only a standard browser to access applications •Separate device-specific software (Receiver) client to access applications •Supports Windows, Linux, Solaris, Mainframe, UNIX applications •Primarily supports only Windows applications •Anywhere access to application via included secure gateway •Secure gateway must be purchased separately for non- User Productivity •Simplified suspend-resume experience for application sessions on-the-go: Pick-up where you left off in complex enterprise application flows •Inconsistent and incoherent suspend-resume experience for application sessions on-the-go One-stop-shop •One vendor : the full stack, end-to-end •Requires multiple vendor contracts for purchasing and support – Citrix, Microsoft, VMWare, Oracle Mixed Farm Support •Oracle Secure Global Desktop supports mixed farm environments containing Windows Server 2003, 2008 and 2008 R2, Linux, UNIX and Mainframe servers. •Latest version XenApp 6 supports only Windows Sever 2008 R2 Broad Application OS Access 14 Citrix Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Confidential – Oracle Restricted Platinum editions Single-source, Anywhere Applications Access 15 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Oracle Secure Global Desktop Session Persistence (On-the-go) • Allows for not just applications access on-the-go, but also access application “state” • Independent of device (Sun Ray Client, PC, Mac) • Typical scenario • Sales consultant logs into an application (e.g. CRM) at work on a desktop • Arrives at a particular screen displaying customer specific CRM information • Sales consultant needs to visit a customer, “pauses” the application on Oracle Secure Global Desktop • Arrives at customer site with his laptop, logs into Oracle Secure Global Desktop • “Plays” the CRM application • The exact screen where he left off (prior to leaving work) is displayed • Improving productivity at the customer site • “Follow-me” printing (printer context from local device) 16 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Product Architecture 17 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Oracle Secure Global Desktop Adaptive Internet Protocol (AIP) US Patent No. 6,104,392 Provides optimal network performance to clients, even in varying bandwidth conditions Used to transmit data between X protocol engine and client’s display engine 18 Fast performance over LAN, WAN and Internet Dynamically adjusts as needed Use the designed intelligence or place a bandwidth limit Request pruning, & merging Caching Compression Why spend extra $$ for performance over WAN? Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Oracle Secure Global Desktop Security & Data Protection • Use the highest industry standard encryption and cipher levels • Leverage a true client-to-server SSL tunnel • Both user and internal array server traffic can be encrypted • PKI certificates verify server identity • Use included data store or integrate with your existing login authorities • • • • • • • 19 LDAP/LDAPS Microsoft Active Directory Novell eDirectory RSA SecurID Web Authentication Unix Authentication (local and NIS/NIS+) and more... • Windows application server smart card support • Security restrictions for the end-user • Controlled copy and paste • Controlled client-drive mapping • Controlled printing • Controlled USB connectivity Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Oracle Secure Global Desktop Secure Gateway at No Additional Cost! Hides topology and addresses of internal network Provides single network entry point Reduced Internet-facing attack surface Apache Reverse Proxy • Authenticate in the DMZ • Before granting access to data center Decrypt and re-encrypts data 20 One address and port – replaces Oracle Secure Global Desktop firewall forwarding Can leave unencrypted for IDS sensor inspection Multiple gateways for redundancy and scalability Use on independent server(s); not separately licensed Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Oracle Secure Global Desktop Load-Balanced Deployment 21 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. NEW! Oracle Secure Global Desktop 4.7 Salient Features • Richer User Experience • Multi-monitor support • Bi-directional Audio • Enhanced Linux and UNIX graphics display • Improved Security • Secured by default, Out-of-box • Supports Latest Platforms • Client operating systems / Internet browsers • Server operating systems • Easy Deployment • Oracle VM 3 templates • Exalogic-Ready 22 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. NEW! Oracle Secure Global Desktop 4.7…contd Richer User Experience • Multi-monitor Support • Users can run multiple applications on different physical monitors • Supports Windows and Non-Windows applications • Improved user productivity • Bi-directional Audio • Support for audio-input devices • Windows applications (RDP 7) only • Conferencing, Dictation, Training applications • Enhanced Linux and UNIX Graphics • Improved performance for 3-D applications utilizing OpenGL 1.3 extensions 23 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. NEW! Oracle Secure Global Desktop 4.7…contd Security, Easier Deployment, Supports Latest Platforms • Improved Security • Installation in ‘secure’ mode by default • Default web protocol is https • No additional effort from administrator to secure deployment • Consistency for large enterprise deployments • Easier Deployment • Oracle VM 3 templates for Oracle Secure Global Desktop • No need to separately install, setup and configure Server OS and Oracle Secure Global Desktop • Supports Latest Platforms • Internet browsers: Internet Explorer 9, Chrome, Firefox ESR, • Server OS: Oracle Linux 6, Solaris 11 24 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Oracle Secure Global Desktop on ExaLogic Elastic Cloud Access Layer for Oracle’s Applications Access • Exalogic • • Hardware and Software engineered together Extreme performance for Oracle’s applications and other enterprise applications • Oracle Secure Global Desktop • “Cloud Access” software • Access to Oracle Applications becomes… • • • • • 25 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Device-independent Location-independent More responsive More secure Simplified Exalogic Benefits with Oracle Secure Global Desktop Bottom-line savings because users can ‘Bring Your Own Device’ • Access Save on client software management costs by leveraging a single global instance for accessing Oracle applications Save on IT management costs for client devices Leverage single infrastructure to access Oracle Applications from anywhere, independent of device and location • • No risk of data loss due to its secure architecture • • • Top-line revenue growth due to faster application response • Faster transactional performance (e.g. reporting) due to co-location of Oracle Applications and serverhosted web-browsers Faster display performance due to protocol optimization for high network latencies Leads to great end-user experiences Resources can spend time on activities that improve top-line revenue • • • 26 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Improved productivity due to its engineered design for Oracle Applications • • Oracle Applications screens persist on-the-go, improving user productivity Spend more time on business with target customers and less time on application workflows • • Loss of devices does not mean loss of data Applications are only displayed on client devices via secure protocols Data security restrictions such as copy/paste, print etc can be regulated based on user/user group/application type Uses highest industry standard encryption and cipher levels Firewall-friendly architecture “I kinda want this [Oracle Secure Global Desktop] actually at TechTarget right now.” Brian Madden brianmadden.com / TechTarget 27 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Analyst Tweet: Oracle Secure Global Desktop Analyst firm : Gartner 28 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Analyst : Chris Wolf August 17, 2012 Summary Accessing Enterprise applications through Oracle Secure Global Desktop is: • Flexible • Deliver many application environments to more devices than any other solution • High Performance • Optimized for the open internet and high latency networks • Secure • Adheres to the highest security standards and highly customizable based on user/user group/application etc • Affordable • No additional cost for gateway component and for performance • Certified for Oracle’s Web Applications • Oracle’s default position for Oracle Applications • Easy to manage and deploy enterprise applications 29 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. Q&A 30 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. 31 Copyright © 2012, Oracle and/or its affiliates. All rights reserved. 32 Copyright © 2012, Oracle and/or its affiliates. All rights reserved.