cisco customer collaboration architectural vision › assets › base › media › ... · context...

93

Upload: others

Post on 28-Jun-2020

1 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome
Page 2: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Cisco Customer Collaboration

Architectural VisionMichael Lepore, Tod Famous

BRKCCT-1009

Page 3: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Disclaimer

The Cisco products, service or features identified in this document may not yet be available or may not be available in all areas and may be subject to change without notice. Consult your local Cisco business contact for information on the products or services available in your area. You can find additional information via Cisco’s World Wide Web server at http://www.cisco.com. Actual performance and environmental costs of Cisco products will vary depending on individual customer configurations and conditions. This is a confidential Cisco Internal launch document and not for external distribution.

Page 4: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

• Disruptive Solutions• OmniChannel

• Mobile, Video

• Context

• Cloud Evolution

• HCS, Cloud Extensions

• DevOps

• Architectural Evolution• UI Architecture

• Cloud Evolution• Cloud Basics

• Context Architecture

• Technological Building Blocks

• Q&A

Agenda

Page 5: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Disruptive Solutions

Page 6: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

John Bowden, Senior Vice President of Customer Care, Time Warner Cable

Page 7: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Single Channel

Multichannel Omnichannel

Context

Omnichannel = Multichannel + Context

Page 8: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

?How do

I get

what I

want?

Page 9: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

?How do

I get

what I

want?

Page 10: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Process

Process

Process

eMail, SMS, chat

Sales

Service

Marketing

?How do

I get

what I

want?

IVR/Voice CC

Mobile/Web

Automation

Self-Service

Page 11: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

eMail, SMS, chat

Sales

Service

Marketing

?Simple

IVR/Voice CC

Mobile/Web

Automation

Self-Service

Conte

xt

Cu

sto

me

r C

on

tact P

latf

orm

Page 12: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Context ServiceUnify customer journeys, across time, medium, people, process and outcome

Mobile

IoE

Phone

IVR

Customer

Journey

Cisco Customer

Collaboration SolutionsCustom Applications

Retail

Email

SMS

Social Media

Chat

Web

Page 13: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Paul MaritzCEO, VMware

how not where

Page 14: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

UC Infra

CC Platform

CC App

On-Premise CC

Contact Center Cloud Strategy

HCS Partner Platform

UC Infra

CC Platform

CC App

Page 15: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

CTG IAAS PAAS

Common Services (Atlas, CIS, etc.)

Conversation Media

CCtr Services (Dictionary,

etc.)

Cisco Cloud Platform

Contact Center Cloud Strategy

Context Service

UC Infra

CC Platform

CC App

On-Premise CC

HCS Partner Platform

UC Infra

CC Platform

CC App

Page 16: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

CTG IAAS PAAS

Common Services (Atlas, CIS, etc.)

Conversation Media

CCtr Services (Dictionary,

etc.)

Cisco Cloud Platform

Contact Center Cloud Strategy

Context Service

Value Extended

UC Infra

CC Platform

CC App

On-Premise CC

HCS Partner Platform

UC Infra

CC Platform

CC App

Page 17: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

CTG IAAS PAAS

Common Services (Atlas, CIS, etc.)

Conversation Media

CCtr Services (Dictionary,

etc.)

Cisco Cloud Platform

Contact Center Cloud Strategy

Context Service Future Services

Va

lue

Cre

ate

d

Future Cloud

OfferingsValue Extended

UC Infra

CC Platform

CC App

On-Premise CC

HCS Partner Platform

UC Infra

CC Platform

CC App

Page 18: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Cisco’s Hybrid Architecture

Cisco Collaboration Cloud

On Premises

Clo

ud E

xte

nsio

ns

Partner Cloud Customer Cloud

Collaboration on Intercloud

Page 19: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

CiscoCollaborationCloud Software

Openstack IaaS Providers

Cisco Cloud Architecture

DEPLOY

Partner Cloud

PrivateCustomer Cloud

Cisco Collaboration Cloud

A New Type of Bursting

Page 20: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

• Application of Agile concepts to Operations and Development

• “Pipelines” of software development

• Organization and Technology

DevOps

Operations

DevOps

Page 21: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Architectural Evolution

Page 22: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

User Interface Architecture

Page 23: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Principals drive Technology Choices

Standards Based

Thin client

• HTML5, JavaScript, CSS

Extensible

• REST APIs

• OpenSocial Gadgets

Coherent role-driven applications

• Admin, Agent/Supervisor and Reporting User applications

• Bootstrap, Common JavaScript (JQuery Based)

Decoupled but Integrated

• OpenSocial Gadgets

• Common infrastructure to share across implementations

Page 24: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Cisco Finesse = Agent/Desktop Evolution

Finesse

CUIC

8.5(3)

Social

Miner

Finesse

CUIC

9.x

Social

Miner

Media

Sense

FinesseCUIC

10.0

Social

Miner

Media

Sense

FinesseCUIC

10.5

Social

Miner

Chat

Media

Sense

CCX

Chat

FinesseCUIC

10.6

Social

Miner Chat,EMail

Media

Sense

CCXChat,Email

Page 25: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Finesse 11.0 – Extending Finesse to the Cloud

FinesseCUIC

11.0

Social

Miner Chat,EMail

Media

Sense

CCXChat,Email

Context

Context

Service

Page 26: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Cisco Finesse ArchitectureD

eskt

op

Fin

esse

Ser

ver

Bro

wse

rV

OS

Common

VO

S

REST API3rd Party Gadgets

1st Party Gadgets

ShindigCommon Container (Shindig)

CU

IC

VO

S

GadgetsREST API

Med

iaSe

nse

VO

S GadgetsREST API

Soci

alM

iner

VO

S Gadgets

REST API

Cisco Finesse(Agent & Supervisor

Desktop)

Context

Page 27: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Responsive Design – Media Queries

Page 28: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

CSS: Media Queries

<!-- CSS media query on a link element --><link rel="stylesheet" media="(max-width: 800px)" href="example.css" />

<!-- CSS media query within a stylesheet --><style>@media (max-width: 600px) {.facet_sidebar {display: none;

}}</style>

https://developer.mozilla.org/en-US/docs/Web/Guide/CSS/Media_queries

Page 29: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

WebRTC – Browsers as Endpoints

Page 30: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Customer Expert

Voice & Video

Co-browseApp Share

RE Mobile Client SDK

RE Mobile Client SDK

Cisco Remote Expert Mobile High Level Architecture

Finesse Agent Desktop

Media Endpoint

CUBE & CUCM

REM App Server

REM Media Broker

REM Admin Console

Web Gateway

Expert Assist

Page 31: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Cloud Evolution

Page 32: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Cloud Characteristics

Cloud-Scale

• Application independent scale

• More servers, not bigger servers

• Elasticity

Security

• Data Security

• Encryption

Availability

• Metrics and Logging

• Reliability

• Always Available

Page 33: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

3 Cloud Service Delivery Models

Software as a Service - SaaS

• Context Service, CRM, Virtual Desktops, File Sharing, etc

Platform as a Service – PaaS

• Application Execution Environments, Databases, Message Busses, etc

Infrastructure as a Service - IaaS

• VMs, Networks, Storage

Page 34: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

What is OpenStack

- A Free Open Source IaaS Platform

- Multiple Related Projects

- Horizon (UI), Neutron (Networking), Nova (Compute), Swift (Object Storage), Cinder (Block Storage), etc.

- What it provides

- A coherent interface that allows for provisioning resources

- Tenant Isolation- Isolate resources (not HW) to a user (or set of users)

Page 35: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

• Floating IP’s, Software Networks, and Security Rules

• Software Defined Subnets

• Virtual Public IP’s that can be associated with a Virtual Machine via NAT• Limit Access: Ingress and Egress Rules

Router – Bridges the sub nets with the

public Floating IP Network

Floating IP 2

Floating IP 1

Page 36: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Application Design

Page 37: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Cloud Applications 101: Platform as a Service

Remove the complexity of cloud development

• Scale

• Reliability

• Serviceability

• Isolation

• Deployment, Lifecycle Management

Framework for “cloudy” software

• IaaS, Operating Systems, Networks

Provide Code Isolation

Page 38: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

12factor.net

PaaS Layer

Logging

Metrics

Externalized

State

App Container

App Config

Deps RT

Page 39: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

12factor.net

PaaS Layer

Logging

Metrics

App Container

App Config

Deps RT

Externalized

State

App Container

App Config

Deps RT

App Container

App Config

Deps RT

App Container

App Config

Deps RT

Page 40: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

App Engines App EnginesApp Engines App Engines

Cloud Foundry Architecture

DEA (Execution Engine) DEA (Execution Engine)

Java App Java App

Cloud

Controller

Health

Manager

Request Router Request Router Request Router

.JS App

Request Router

CLI / CI System

M

S

G

B

U

S

Browser

Load Balancer

API

Cloud

Foundry

Deploy / Config

.JS App

Page 41: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Cloud Management

Page 42: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Cloud Collaboration Administration

A Common Admin platform that allows customers and partners to manage Cisco Collaboration services in a simple tool with an intuitive interface

Manage Security &

Policy settingsAutomated

provisioning & Simple

User management

License & Account

Management / Upsell

Reports, Analytics &

System Health/

Support & Debugging

Page 43: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Partner as a first class citizen

Automated provisioning which gives an admin access to Admin Console as soon as the order is placed

First Time Wizard that guides the admin through Dir Sync and SSO setup

Service and User Management – One console to manage multiple services and users /entitlements

Single notification to end users for all service entitlements

Support and Debugging tool accessible to the relevant roles

Design Considerations

Page 44: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Core( Common Features)

Architecture – Core with Micro Services

Context

WebEx

Cloud Endpoints

Cloud Extensions

Admin Micro Services

User Management,

Dir Sync/ SSO

License

Management

Analytics/ Reports

Devices / Endpoints

SparkSettin

gsAnalyti

cs

Notif

s

Logs/

Metric

s

Clien

ts

Page 45: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

• Oauth / SAML with a Common Identity Server

• Industry standard approach to authentication and authorization

• Ability to authenticate user using their own Organization (SAML)

• Ability to provision credentials for Oauth clients (generated client id / secret for machine accounts)

Page 46: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Clu

ste

r

Customer Prem

OAMP/Finesse

Admin

Clu

ste

r

Finesse

CVP VXML

Server

Partner

Servers

FMS

CIS

Fuse, Status Update

Machine Account

Provisioning,

Customer

Entitlement

User Discovery and

Subscription

POD API

Authentication

Page 47: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Admin Config* CIS FMS

Clicks “Register"

Admin logs into local ui, Click Fuse

Redirect to CCFS

CCFS

ccfs/fuse?returnURI=http://configserver/fuseReturnUri&serverID=configServerID&applicationType=XXXX

Register Management Connector, RT Node Connectors

RT Node

Report Status (periodically)

Report Status (periodically)

Provision RT Node – machineCredentials=YYYY

CCFS=Contact Center Fusion Services

/idb/oauth2/authorize (Implicit Code Grant)

302 redirect to CIS to authenticate and go to FMS

302: location mgmtSvc/cloud-fuse-landing

/cloud-fuse-landing ; state=ccfs_fuse_landing_uri

302: Redirect to CCFS

See Fusion Services Screen

Create machine account (accessToken)

302: htttp://configserver/fuseReturnUri; machineCredentials=YYYYY

/fuseReturnUri ; machineCredentials=YYYYY

Redirect_uri=/FMS/fuse-landing

State=CCFS_landing_urlAuthenticate User

Validate User / Confirm Prompt

/ccfs-fuse-success

cisRole, token timestamp, token, etc

Auth Machine Account, Get Token

Page 48: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

• During initial connection

• Determine data center pairs based on organization

• Each org is bound to primary/secondary DC

• Can be changed later via disconnect and reconnect

Page 49: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Data Model

Page 50: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

POD

Request CustomerWorkgroup

KMS

Resource

0..1

0..1

0..1

1

Org

User

1..n 1..n 1..n

1..n

1

1

1

1..n

1..n

1

1

Context Service Data Model

CIS Identity*

1

1

Page 51: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

POD

Request

Field

Customer

Field Set

1..n

1..n

1..n

Contain data that map

to 1 or more Classes

Each element adheres

to the Field Definition1..n

Context Service Fields and Fieldsets

Name

Privacy

Description

Translations

Lookup?

Page 52: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Workgroups

Workgroup

Org

User

Customer PODRequest

CIS Identity

KMS

Resource

KMS Keys

1

*

1 1

*

*

11

1

*

Page 53: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Workgroup Security (Partners)

Workgroup 1

Full Access

Org

Workgroup 2

Encrypted Only

Local

Agents

Local

Machine

Accounts

Cloud

Analytics

Partner

Customer

1Customer

1Customers

Customer

1Customer

1PODs

Customer

1Customer

1Requests

Enc & PII

DataEnc Data

KMS

Resource

KMS

Resource

Key 1Key 2

Page 54: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Workgroup Security (Lab/Production)

Workgroup 1

Production

Org

Workgroup 2

Lab

CVP

Deployment

Account

Customer

1Customer

1Customers

Finesse

Deployment

Account

EIM/WIM

Deployment

Account

Custom

Application

Account

Customer

1Customer

1PODs

Customer

1Customer

1Requests

Customer

1Customer

1Customers

Customer

1Customer

1PODs

Customer

1Customer

1Requests

Selected when SDK is instantiated

Page 55: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Data Security

Page 56: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

IVR

Finesse

CIS

KMS

Context

SDK

SDK

Email / Chat SDK

POD

POD

PO

DPOD

Partner

ApplicationSDK

Cloud Context Data Security

Page 57: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Encryption Model Requirements

• Applies to POD, Request, Customer

• Reinforce application security with cryptographic security

• Security granted at the workgroup level• Encrypted and PII have separate access

• Multiple users per workgroup

• Multiple workgroups per user

• Utilize standard keying protocol• https://tools.ietf.org/html/draft-abiggs-saag-key-management-service-00

• Allow anonymized access for certain workgroups• Encrypted data only

Page 58: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Record (Customer/POD/Request)

Service Data

Created Date 10-Oct-2014

Last Modified 11-Oct-2014

PiiData

Name Fred Smith

Phone Number 555-867-5309

Email [email protected]

Encrypted Data

Balance 25,756 points

Subject My account

UnEncrypted Data

Created Date 10-Oct-2014

State Open

Page 59: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Record (Customer/POD/Request)

Service Data

Created Date 10-Oct-2014

State Open

PiiData

Client Key 1

Name Fred Smith

Phone Number 555-867-5309

Email [email protected]

Encrypted Data

Client Key 2

Balance 25,756 points

Subject My account

UnEncrypted Data

Created Date 10-Oct-2014

State Open

Page 60: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Record (Customer/POD/Request)

Service Data

Created Date 10-Oct-2014

State Open

PiiData

Client Key 1

Name Fred Smith

Phone Number 555-867-5309

Email [email protected]

Encrypted Data

Client Key 2

Balance 25,756 points

Subject My account

UnEncrypted Data

Created Date 10-Oct-2014

State Open

SCRs

WG1

WG1

KMS Key 1

KMS Key 1

KMS Key 2

pod.piiData Client Key 1

pod.encData Client Key 2

pod.encData Client Key 2

Page 61: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Secure Content Resource (Example)

enc – encryption algorithm

key, iv, aad – inputs to the encryption algorithm (part of the key)

loc – location of the data (JSONPath of the field that is encrypted)

tag – data validation tag – output of algorithm

{

"enc": "A256GCM",

"key": "ZMpktzGq1g6_r4fKVdnx9OaYr4HjxPjIs7l7SwAsgsg",

"iv": "27YvzsYL6vphciqr",

"aad": "2014-08-15T12:59:59Z",

"loc”: “pod.piiData”,

"tag": "CbtrN5UY2m1LUtGtxSkTEw"

}

Page 62: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

How does it work…

Page 63: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

POD:

Create POD Flow

Client

KMS

Context

Service

1. Create client-

generated keys

2. Encrypt PII and

Encrypted data

with Client Keys

ClientKey1

PIIData

ClientKey2

EncryptedData

ClientKey1

ClientKey2

PIIData

EncryptedData

Page 64: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

POD:

Create POD Flow (2)

Client

KMS

Context

Service

3. Request Key

KMS-1

4. Bind to WG-1ClientKey1

PIIData

ClientKey2

EncryptedData

ClientKey1

ClientKey2

ClientKey1

PIIData

EncryptedData

PIIData

EncryptedData

KMS-1

KMS-1

Page 65: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Create POD Flow (3)

Client

KMS

Context

Service

5. Create SCRs,

Encrypt with

KMS-1

6. Add to POD for

WG-1

POD:

ClientKey1

PIIData

ClientKey2

EncryptedData

WG1: KMS-1

SCR-ClientKey1

SCR-ClientKey2

ClientKey1

PIIData

EncryptedData

ClientKey1

PIIData

EncryptedData

PIIData

EncryptedData

ClientKey1

ClientKey2

KMS-1

SCR-ClientKey1

SCR-ClientKey2

KMS-1

Page 66: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

POD:

Create POD Flow (4)

Client

KMS

Context

Service

8. Write POD to CS

ClientKey1

PIIData

ClientKey2

EncryptedData

WG1: KMS-1

SCR-ClientKey1

SCR-ClientKey2

PIIData

EncryptedData

SCR-ClientKey1

SCR-ClientKey2

PIIData

EncryptedData

PIIData

EncryptedData

PIIData

EncryptedData

SCR-ClientKey1

SCR-ClientKey2

KMS-1

Page 67: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Read POD Flow

Client

KMS

Context

Service

1. Read PODPOD:

ClientKey1

PIIData

ClientKey2

EncryptedData

WG1: KMS-1

SCR-ClientKey1

SCR-ClientKey2

2. Ask KMS for

KMS-1

Granted as WG-

1 member

KMS-1

KMS-1

Page 68: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Read POD Flow (2)

Client

KMS

Context

Service

3. Decrypt SCRs

with KMS-1

Get ClientKey1,

ClientKey2,

Locations

POD:

ClientKey1

PIIData

ClientKey2

EncryptedData

WG1: KMS-1

SCR-ClientKey1

SCR-ClientKey2

PIIData

EncryptedData

KMS-1

ClientKey1

ClientKey2

KMS-1

Page 69: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Read POD Flow (3)

Client

KMS

Context

Service

POD:

ClientKey1

PIIData

ClientKey2

EncryptedData

WG1: KMS-1

SCR-ClientKey1

SCR-ClientKey2

4. Utilize SCR’s to

decrypt PIIData

and/or

EncryptedData

KMS-1

ClientKey1

ClientKey2

KMS-1

Page 70: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Grant EncryptedData Access to WG2 Flow (1)

Client

KMS

Context

Service

POD:

ClientKey1

PIIData

ClientKey2

EncryptedData

WG1: KMS-1

SCR-ClientKey1

SCR-ClientKey2

1. Request new

KMS key KMS-2

2. Bind KMS-2 to

WG2

KMS-1

ClientKey1

ClientKey2

KMS-2

KMS-2

KMS-1

Page 71: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Grant EncryptedData Access to WG2 Flow (1)

Client

KMS

Context

Service

POD:

ClientKey1

PIIData

ClientKey2

EncryptedData

WG1: KMS-1

SCR-ClientKey1

SCR-ClientKey2

3. Re-Encrypt

SCR-ClientKey2

with KMS-2

4. Add new SCR to

POD

5. Update POD

KMS-1

ClientKey1

ClientKey2

KMS-2

WG2: KMS-2

SCR-ClientKey2

KMS-2

KMS-1

Page 72: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Finding a customer…

Page 73: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Customer

Service Data

Created Date 10-Oct-2014

Last Modified 11-Oct-2014

UnEncrypted Data

Created Date 10-Oct-2014

State Open

PiiData

Client Key 1

Name Fred Smith

Phone Number 555-867-5309

Email [email protected]

Encrypted Data

Client Key 2

Balance 25,756 points

Subject My account

SCRs

WG1

WG1

KMS Key 1

KMS Key 1

KMS Key 2

pod.piiData Client Key 1

pod.encData Client Key 2

pod.encData Client Key 2

Page 74: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Customer

Service Data

Created Date 10-Oct-2014

Last Modified 11-Oct-2014

UnEncrypted Data

Created Date 10-Oct-2014

State Open

PiiData

Client Key 1

Name Fred Smith

Phone Number 555-867-5309

Email [email protected]

Encrypted Data

Client Key 2

Balance 25,756 points

Subject My account

Page 75: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Customer

Service Data

Created Date 10-Oct-2014

Last Modified 11-Oct-2014

UnEncrypted Data

Created Date 10-Oct-2014

State Open

PiiData

Client Key 1

Name Fred Smith

Phone Number 555-867-5309

Email [email protected]

Encrypted Data

Client Key 2

Balance 25,756 points

Subject My account

piiHashes

HASH(name:Fred Smith)

HASH(phone:555-867-5309)

HASH(email:[email protected])

Page 76: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Customer

Service Data

Created Date 10-Oct-2014

Last Modified 11-Oct-2014

UnEncrypted Data

Created Date 10-Oct-2014

State Open

PiiData

Client Key 1

Name Fred Smith

Phone Number 555-867-5309

Email [email protected]

Encrypted Data

Client Key 2

Balance 25,756 points

Subject My account

piiHashes

HASH(name:Fred Smith)

HASH(phone:555-867-5309)

HASH(email:[email protected])

Page 77: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

PII Lookup for Customer

ClientContext

Service

1. Create query

email:[email protected]

2. Hash query

HASH(email:[email protected])

3. Lookup HASH in database

4. Return results with encrypted data that

client has access to

Page 78: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Integration

Page 79: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

• Create record

• Create multiple client generated keys

• Determine which fields are PII, Encrypted, Unencrypted from API

• Encrypt PII, Encrypted Data using Client Keys

• Create SCR JSON blobs

• Encrypt SCRs

• (Customer record) Create PII Hashes

• Request keys from KMS

• Bind keys to resources

• Error management

• Status reporting

• Authentication and Authorization via CIS

• Manage workgroup access

Creating data in Context Service

Page 80: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Context Service SDK

Context

Service

KMSCS

Clients

Context Service SDK

CIS

FMS

• Create record

• Create multiple client generated keys

• Determine which fields are PII, Encrypted, Unencrypted from API

• Encrypt PII, Encrypted Data using Client Keys

• Create SCR JSON blobs

• Encrypt SCRs

• (Customer record) Create PII Hashes

• Request keys from KMS

• Bind keys to resources

• Error management

• Status reporting

• Authentication and Authorization via CIS

• Manage workgroup access

Simple

Java / JS

APIs

Page 81: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Hybrid Software Delivery

• Utilize Scripting languages to deliver features from cloud

• Allows updates via cloud

• Controlled via feature flags

• SocialMiner Groovy Script Filter

• Finesse Gadget

• Authentication via Finesse, CS/Key access via Browser

• JavaScript SDK

Finesse

SocialMiner

Groovy

Script

Filter

Context

Javascript

SDK

Browser

Client

Finesse

Gadget

Page 82: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Hybrid SDK Delivery

Loader

and

Proxy

Dynamically

Loaded Code

Inte

rface

Inte

rface

Context

Service

KMS

CIS

FMSCheck for new Version

Download

Page 83: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Metrics

Page 84: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Foundational Technologies

Page 85: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Presentation Layer Technologies

Browser

Web

Server

Application

Server

OpenSocial

Bootstrap

BOSH

UI

Componentization

APIs Events Security Javascript

Framework

CSS

Framework

Web

Sockets

Page 86: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Data Layer Technologies

Application

Elastic

Compute

Storage

Cassandra

Apache

Storm

ActiveMQ

Storage Indexing Compute

Framework

Eventing Streaming and

Input

Web

Sockets

Page 87: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Cloud Technologies

Platform as

a Service

(PaaS)

Storage &

Processing

Orchestration

and Operations

CassandraKafka

LogStashGraphite

Page 88: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Why Cisco Customer Collaboration Architecture?

Disruptive Solutions

• Internet of Everything

• Mobile / Social

• Cloud

Architectural Evolution

• Presentation Layer

• Data Services

• Asynchronous Routing

Building Blocks

• Portfolio Architecture

• Guiding Principals

• Technologies

Page 89: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Participate in the “My Favorite Speaker” Contest

• Promote your favorite speaker through Twitter and you could win $200 of Cisco Press products (@CiscoPress)

• Send a tweet and include

• Your favorite speaker’s Twitter handle <@TFamous>

• Two hashtags: #CLUS #MyFavoriteSpeaker

• You can submit an entry for more than one of your “favorite” speakers

• Don’t forget to follow @CiscoLive and @CiscoPress

• View the official rules at http://bit.ly/CLUSwin

Promote Your Favorite Speaker and You Could Be a Winner

Page 90: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Complete Your Online Session Evaluation

Don’t forget: Cisco Live sessions will be available for viewing on-demand after the event at CiscoLive.com/Online

• Give us your feedback to be entered into a Daily Survey Drawing. A daily winner will receive a $750 Amazon gift card.

• Complete your session surveys though the Cisco Live mobile app or your computer on Cisco Live Connect.

Page 91: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Continue Your Education

• Demos in the Cisco campus

• Walk-in Self-Paced Labs

• Table Topics

• Meet the Engineer 1:1 meetings

• Related sessions

Page 92: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome

Thank you

Page 93: Cisco Customer Collaboration Architectural Vision › assets › base › media › ... · Context Service Unify customer journeys, across time, medium, people, process and outcome