SlideShare a Scribd company logo
© 2014 IBM Corporation
Product Implementation Training (PIT)
IBM Watson Curator and IBM Navigator Version 1.0.12
Architecture and System Topology
Alexander Moosbrugger
Software Engineer
December 12, 2014
Course materials may not be reproduced in whole or in part without prior written permission of IBM
© 2014 IBM Corporation2
Introduction
 Course Overview
 This course will provide an overview of IBM Watson Curator and IBM
Navigator architecture and system topology
 Target Audience
 Anyone interested in learning about IBM Watson Curator and IBM
Navigator
 Suggested Prerequisites
 General knowledge of IBM ECM (FileNet P8, IBM Content Navigator)
 SaaS “Go Live” Date: December 2014
© 2014 IBM Corporation3
Course Objectives
After this course you will be able to:
 Describe IBM Watson Curator and IBM Navigator architecture
 Explain the system topology of IBM Watson Curator and IBM Navigator
© 2014 IBM Corporation4
Course Roadmap
 Architecture
• System Topology
• Course Summary
• Contacts
© 2014 IBM Corporation5
ECM Cloud – Service offerings (December 2014)
ECM Cloud IBM Navigator
Collaboration for business
IBM Watson Curator
Optimize information for
Watson expertise
© 2014 IBM Corporation
IBM Watson
Curator
Delivering relevant,
qualified and governed
content collections for
Watson
Increases user
confidence by improving
information relevance
and quality with Watson
Actively manages and
guides subject matter
and data experts
through the entire
process
IBM Navigator
Share and collaborate
on business content
Work with team
members on documents
Trusted and secure
Keep your files safe
Easy to use on
any device
Work with files when
mobile
Extending content to
other applications
Bring content to all your
applications
Collaboration for business
Unite your enterprise
© 2014 IBM Corporation8
ECM Cloud
ECM
Cloud
Enterprise
Content
Management
Trusted Content
Collaboration
and Sharing
(IBM Navigator
only)
Application
customization
via open
standards -
CMIS
Enterprise
grade
auditing,
reliability &
security
IBM Managed
Systems and
Support
SoftLayer
Cloud
Content
Curation
(IBM Watson
Curator
only)
Mobile devices
iOS & Android
(IBM Navigator
only)
© 2014 IBM Corporation9
High Level Architecture – IBM Watson Curator
No ACCE admin
No Navigator admin
No Server side custom code
No Navigator plug-in
No P8 Java API
No P8 WS API
IBM SoftLayer
Data Centers
Service Infrastructure
Storage, Servers and Networking components
ECM Cloud Foundation
Administration, Reporting, Authentication, LDAP synchronization, Auditing, Security
Roles, Notification
Content Navigator
CMIS
Navigator
Console
IBM Content Foundation
(Content Platform Engine and Content Search Services)
Security
Directory Server
LDAP Integration
(Optional)
Custom Application
(Optional)
Operations
Monitoring,
Security,
Support,
Patches and
updates
StoredIQ
(CMIS, Optional)
Watson (CMIS)
Case Manager
Curation Solution
© 2014 IBM Corporation10
High Level Architecture – IBM Navigator
No ACCE admin
No Navigator admin
No Server side custom code
No Navigator plug-in
No P8 Java API
No P8 WS API
IBM SoftLayer
Data Centers
Service Infrastructure
Storage, Servers and Networking components
ECM Cloud Foundation
Administration, Reporting, Authentication, LDAP synchronization, Auditing, Security
Roles, Notification
Content
Navigator
w/Sync
CMIS
Navigator
Console
IBM Content Foundation
(Content Platform Engine and Content Search Services)
Security
Directory Server
LDAP Integration
(Optional)
Custom Application
(Optional)
Operations
Monitoring,
Security,
Support,
Patches and
updates
© 2014 IBM Corporation11
IBM Watson Curator - Details
Service offering with preconfigured fixed feature set
• 1 end user desktop for Curation
• 1 tenant administrator desktops (reports)
• Fixed Watson Curator data model
No full featured IBM Case Manager (ICM) feature set
No tenant administrator/user access to IBM Content Navigator (ICN) admin desktop
No custom ICN plugins
Content Management Interoperability Services (CMIS)
• Allow custom applications via standardized API
• StoredIQ and Watson use CMIS API to interact with Watson Curator solution
IBM Content Foundation
(Content Platform Engine and Content Search Services)
Navigator
Console
Security
Directory Server
CMIS
Content Navigator
Case Manager
Curation Solution
© 2014 IBM Corporation12
IBM Navigator - Details
Service offering with preconfigured fixed feature set
• 1 end user desktop
• 1 tenant administrator desktop (reports)
• Sync enabled
• Approval workflow enabled
• Teamspace enabled
1 sample teamspace
No tenant administrator/user access to IBM Content Navigator (ICN) admin desktop
No custom ICN plugins
Content Management Interoperability Services (CMIS)
• Allow custom applications via standardized API
IBM Content Foundation
(Content Platform Engine and Content Search Services)
Content
Navigator
w/Sync
CMIS
Navigator
Console
Security
Directory Server
© 2014 IBM Corporation13
Tenant Administration & LDAP Integration
New service specific Navigator Console for tenant administration
• Manage Users, Groups, and service specific Roles
• Define content encryption key for Content Engine Storage Area
• Manage Document classes and properties (IBM Navigator only)
• Schedule and view reports
Two ways to add users and groups
• Create locally in cloud
• Synchronize users/groups with customer LDAP
Requires Passthrough authentication
• User uses his known customer enterprise password
• No passwords stored in cloud
• Work concurrently
IBM Content Foundation
(Content Platform Engine and Content Search Services)
IBM Watson
Curator
IBM
Navigator
Navigator
Console
Security
Directory Serveror
© 2014 IBM Corporation14
Content Platform Engine & Content Search Services
ECM Cloud Content Platform Engine (CPE) setup
• Encryption at Rest using storage area encryption
• Enabled 5.2.1 dual-write feature for high availability on storage failure
• Fixed set of object stores
Customer accessible object store
Administrative object store (No tenant user access)
• No CE admin clients available (ACCE, FEM)
• No CE APIS (Java, C)
• No Server side custom code
Content Search Services (CSS) setup
• Base Document classes CBR enabled
Document content is full-text searchable
IBM Content Foundation
(Content Platform Engine and Content Search Services)
Navigator
Console
Security
Directory Server
IBM Watson
Curator
IBM
Navigatoror
© 2014 IBM Corporation15
Differences IBM Watson Curator and IBM Navigator
IBM Navigator IBM Watson Curator
Service Specific Roles Teamspace Creator
Teamspace Template Creator
Content Curator
Data Expert
Domain Expert
Team Lead
Initial User setup sysadmin (tenant administrator) + technical users
curationprovider (StoredIQ) &
curationconsumer (Watson)
Object Stores Customer Data &
Configuration/Reporting
+ Staging
Security Concept Customizable All curation users and roles
have access to all curation
data
Data Model Customizable Fixed
ICN End User Desktops Collaboration Desktop Curation Desktop
© 2014 IBM Corporation16
Course Roadmap
• Architecture
 System Topology
• Course Summary
• Contacts
© 2014 IBM Corporation17
Worldwide Availability
© 2014 IBM Corporation18
Key Considerations
• Single tenant model.
Each customer has a
separate instance of P8.
• Single DevOps team
managing all instances
• On-Prem systems may
interact with the Cloud.
SoftLayer
ECM Cloud
Customer 1 Customer 2 Customer 3
SoftLayer US “POD”
SoftLayer
ECM Cloud Service Infrastructure
ECM Cloud Service Infrastructure
Customer 4 Customer 5 Customer 6
On-premOn-prem On-prem
SoftLayer EU “POD”
ECM Cloud ECM Cloud
ECM Cloud ECM Cloud ECM Cloud
On-premOn-prem On-prem
SaaS Deployment Model
© 2014 IBM Corporation19
Security and Standards Support
Security Features
• Unique security certificates for each customer ensures data-security
• Customer data protected using FIPS compliant AES-CTR with 128 bit encryption
Encryption keys are unique to each customer
• Protection using firewalls on the public facing networks against intrusions
Certifications
• ITCS104 compliance – IBM internal security standard for compliance
Service Level Objectives
• Recovery Point Objective (RPO): 24 hours (worst case scenario)
• Recovery Time Objective (RTO): 48 hours
© 2014 IBM Corporation20
Network Security
© 2014 IBM Corporation21
Two Access Methods – Public Internet & VPN
F5
Restricted Yellow
Customer 1 VLAN
Customer 2 VLAN
Customer 3 VLAN
VIP
VIP
VIP
Vyatta
FW
Control Point
Basic Yellow
Restr. Yellow 
Red
Basic Yellow
Restricted Yellow
• IBM Navigator
• Customer access via 1 or 2 but NOT both.
• IBM Watson Curator
• Customer access via 2 only.
• Traffic isolation is obtained using Vyatta & F5 ACL/Rules
• Storage is on a separated VLAN (traffic goes through the Vyatta)
https:// ecm.ibmnavigator.com
or custom url
Enterprise VPN 10.x.x.x
1
2
us03.navigator.ibmcloud.com
us02.navigator.ibmcloud.com
Management
Restricted Yellow
Storage
Restricted Yellow
VIP
VIP
VIP
F5
Contr
Point
Internet
© 2014 IBM Corporation22
Service Infrastructure
Vyatta VPN
Termination
F5 LB
(HyperV)
Customer 2
VM 1 VM 2 VM 3 VM 4
Active Dir
Hosts for
DNS
(Windows)
SMTP
Servers
VLAN-M
VLAN.c1
Customers
VLAN.c2
VLAN.c3
Jump Server
Automation
ITCS104
Jump Server /
Deployment /
Monitoring /
Billing /
Qradar
Customer 3
QuantaStor
Vyatta
Firewall
VLAN-S
= Shared Components
© 2014 IBM Corporation23
Software Components Details
QuantaStor
VM 1
HTTP Server
WAS ND
VM 2
HTTP Server
WAS ND
Navigator Console
Content Navigator / CMIS
(+ Case Manager for Watson Curator)
Content Platform Engine
Cognos
File System Client File System Client
VM 3 VM 4
CSS Search & Index
File System Client File System Client
HA/DR
Sync
TSA
Replication
Sync
TSA
SDS
Master
SDS
Master
DB2
Primary
DB2
Standby
WebSphere
Deployment Manager
CSS Search & Index
© 2014 IBM Corporation24
Application Layer HA enablement
Two Http servers configured for HA
Use WebSphere Application Server Network
Deployment to provide HA environment
• Applications (Navigator Console, ICN, ICM,
CMIS, CPE) configured for high availability
• Cognos (administrative reports) not HA enabled
in Q4 release
VM 1
HTTP Server
WAS ND
VM 2
HTTP Server
WAS ND
Navigator Console
Content Navigator / CMIS
(+ Case Manager for Watson Curator)
Content Platform Engine
Cognos
File System Client File System Client
© 2014 IBM Corporation25
Database, LDAP, CSS HA enablement
DB2 database setup in HA/DR mode
• One active DB2 instance
• One standby instance
• Instant switch to standby DB2 in case of active
DB2 failure
Security Directory Server
• Active-Active HA configuration
Content Search Services
• Setup for HA
VM 3 VM 4
CSS Search & Index
File System Client File System Client
HA/DR
Sync
TSA
Replication
Sync
TSA
SDS
Master
SDS
Master
DB2
Primary
DB2
Standby
WebSphere
Deployment Manager
CSS Search & Index
© 2014 IBM Corporation26
Storage Layer HA enablement
High Availability: CPE 5.2.1 Dual Write
• Asynchronous replication
• Two replicas (1 required)
Customer 1
QuantaStor Device 1 with NFS
P8 Primary Replica1
OS 1 OS 2 OS 3
QuantaStor Device 2 with NFS
P8 Primary Replica2
OS 1 OS 2 OS 3
Customer 2 Customer 3
QuantaStor
© 2014 IBM Corporation27
Storage Layer HA enablement (Device Failure)
P8 system can cope with single storage failure
• QuantaStor device #2 fails
All writes to P8 Replica2 fail
P8 Replica1 online
No service disruption
P8 queuing content writes for Replica2
Service operating with storage single point of failure
Customer 1
QuantaStor Device 1 with NFS
P8 Primary Replica1
OS 1 OS 2 OS 3
QuantaStor Device 2 with NFS
P8 Primary Replica2
OS 1 OS 2 OS 3
Customer 2 Customer 3
© 2014 IBM Corporation28
Storage Layer HA enablement (Recovery)
Two recovery methods based on device recovery characteristic
Repair device recovery
• Repair device
• P8 writes queued content since failure
• Recovery time measured in hours
Replace device recovery
• Bring new device online
• Rebuild P8 Replica2 manually from Replica1
• Expected recovery time measured in days
Customer 1
QuantaStor Device 1 with NFS
P8 Primary Replica1
OS 1 OS 2 OS 3
QuantaStor Device 2 with NFS
P8 Primary Replica2
OS 1 OS 2 OS 3
Customer 2 Customer 3
© 2014 IBM Corporation29
Backup & Disaster Recovery
Daily online-backup
• No downtime during backup
• Backup scripts are running on all customer systems
• Triggers backups for DB2, TDS, WAS. Backups are
stored on QuantaStor
• In addition also creates snapshots for content and
index
Disaster Recovery
• QuantaStor replicates content
• Recovery Point Objective (RPO): 24 hours
• Recovery Time Objective (RTO): 48 hours
Disaster Recovery steps
• Deploy new system with deployment scripts
(like for a new customer)
• Restore data from the DR data
• Restart the service
SoftLayer
Data Center 2
SoftLayer
Data Center 1
QuantaStor
replication for DR
QuantaStor 1
cron triggered script
Create Snapshots
Triggers backups
QuantaStor 2
© 2014 IBM Corporation30
Course Roadmap
• Product Fundamentals
Product Use/Demonstration
Installation Overview
Configuration Guidelines
Administration Best Practices
• Customization/API Overview
• Best Practices
 Course Summary
© 2014 IBM Corporation31
Course Summary
You have completed this course and can:
 Describe IBM Watson Curator and IBM Navigator architecture
 Explain the system topology of IBM Watson Curator and IBM Navigator
© 2014 IBM Corporation32
Contacts
 Delivery Manager: Stephen Mason
 Development Manager: Dieter Schieber
 Support: Floyd Rose and Daryl Rivera
 Information Development: Iris Gloeck
© 2014 IBM Corporation33
Thank You!

More Related Content

What's hot

Using IBM DataPower for rapid security and application integration with an op...
Using IBM DataPower for rapid security and application integration with an op...Using IBM DataPower for rapid security and application integration with an op...
Using IBM DataPower for rapid security and application integration with an op...
Gennadiy Civil
 
A Deep Dive into the Liberty Buildpack on IBM BlueMix
A Deep Dive into the Liberty Buildpack on IBM BlueMix A Deep Dive into the Liberty Buildpack on IBM BlueMix
A Deep Dive into the Liberty Buildpack on IBM BlueMix
Rohit Kelapure
 
Web Api services using IBM Datapower
Web Api services using IBM DatapowerWeb Api services using IBM Datapower
Web Api services using IBM Datapower
Sigortam.net
 
SHARE2016: DevOps - IIB Administration for Continuous Delivery and DevOps
SHARE2016:  DevOps - IIB Administration for Continuous Delivery and DevOpsSHARE2016:  DevOps - IIB Administration for Continuous Delivery and DevOps
SHARE2016: DevOps - IIB Administration for Continuous Delivery and DevOps
Rob Convery
 
Mq light, mq, and bluemix web sphere user group july 2015
Mq light, mq, and bluemix   web sphere user group july 2015Mq light, mq, and bluemix   web sphere user group july 2015
Mq light, mq, and bluemix web sphere user group july 2015
matthew1001
 
IBM Cloud SoftLayer Introduction & Hands-on 2016
IBM Cloud SoftLayer Introduction & Hands-on 2016IBM Cloud SoftLayer Introduction & Hands-on 2016
IBM Cloud SoftLayer Introduction & Hands-on 2016
Atsumori Sasaki
 
Java Development on Bluemix
Java Development on BluemixJava Development on Bluemix
Java Development on Bluemix
Ram Vennam
 
Whats New in Integration What's New in IBM Integration Bus and IIB on Cloud
Whats New in Integration What's New in IBM Integration Bus and IIB on Cloud Whats New in Integration What's New in IBM Integration Bus and IIB on Cloud
Whats New in Integration What's New in IBM Integration Bus and IIB on Cloud
Rob Convery
 
Edge 2016 SCL-2484: a software defined scalable and flexible container manage...
Edge 2016 SCL-2484: a software defined scalable and flexible container manage...Edge 2016 SCL-2484: a software defined scalable and flexible container manage...
Edge 2016 SCL-2484: a software defined scalable and flexible container manage...
Yong Feng
 
Bluemix Local – Relay Options and Challenges
Bluemix Local – Relay Options and Challenges Bluemix Local – Relay Options and Challenges
Bluemix Local – Relay Options and Challenges
Eduardo Patrocinio
 
Ame 4166 ibm mq appliance
Ame 4166 ibm mq applianceAme 4166 ibm mq appliance
Ame 4166 ibm mq appliance
Andrew Schofield
 
Effective admin and development in iib
Effective admin and development in iibEffective admin and development in iib
Effective admin and development in iib
m16k
 
M08 protecting your message data in IBM MQ with encryption
M08 protecting your message data in IBM MQ with encryptionM08 protecting your message data in IBM MQ with encryption
M08 protecting your message data in IBM MQ with encryption
Robert Parker
 
Migrating Java EE applications to IBM Bluemix Platform-as-a-Service
Migrating Java EE applications to IBM Bluemix Platform-as-a-ServiceMigrating Java EE applications to IBM Bluemix Platform-as-a-Service
Migrating Java EE applications to IBM Bluemix Platform-as-a-Service
David Currie
 
UK Integration WebSphere User Group - MultiSpeed IT
UK Integration WebSphere User Group - MultiSpeed ITUK Integration WebSphere User Group - MultiSpeed IT
UK Integration WebSphere User Group - MultiSpeed IT
AndyHumphreys
 

What's hot (18)

VAS - VMware CMP
VAS - VMware CMPVAS - VMware CMP
VAS - VMware CMP
 
Using IBM DataPower for rapid security and application integration with an op...
Using IBM DataPower for rapid security and application integration with an op...Using IBM DataPower for rapid security and application integration with an op...
Using IBM DataPower for rapid security and application integration with an op...
 
A Deep Dive into the Liberty Buildpack on IBM BlueMix
A Deep Dive into the Liberty Buildpack on IBM BlueMix A Deep Dive into the Liberty Buildpack on IBM BlueMix
A Deep Dive into the Liberty Buildpack on IBM BlueMix
 
Web Api services using IBM Datapower
Web Api services using IBM DatapowerWeb Api services using IBM Datapower
Web Api services using IBM Datapower
 
SHARE2016: DevOps - IIB Administration for Continuous Delivery and DevOps
SHARE2016:  DevOps - IIB Administration for Continuous Delivery and DevOpsSHARE2016:  DevOps - IIB Administration for Continuous Delivery and DevOps
SHARE2016: DevOps - IIB Administration for Continuous Delivery and DevOps
 
Mq light, mq, and bluemix web sphere user group july 2015
Mq light, mq, and bluemix   web sphere user group july 2015Mq light, mq, and bluemix   web sphere user group july 2015
Mq light, mq, and bluemix web sphere user group july 2015
 
IBM Cloud SoftLayer Introduction & Hands-on 2016
IBM Cloud SoftLayer Introduction & Hands-on 2016IBM Cloud SoftLayer Introduction & Hands-on 2016
IBM Cloud SoftLayer Introduction & Hands-on 2016
 
Java Development on Bluemix
Java Development on BluemixJava Development on Bluemix
Java Development on Bluemix
 
Whats New in Integration What's New in IBM Integration Bus and IIB on Cloud
Whats New in Integration What's New in IBM Integration Bus and IIB on Cloud Whats New in Integration What's New in IBM Integration Bus and IIB on Cloud
Whats New in Integration What's New in IBM Integration Bus and IIB on Cloud
 
Ibm mq appliance slideshare
Ibm mq appliance slideshareIbm mq appliance slideshare
Ibm mq appliance slideshare
 
Edge 2016 SCL-2484: a software defined scalable and flexible container manage...
Edge 2016 SCL-2484: a software defined scalable and flexible container manage...Edge 2016 SCL-2484: a software defined scalable and flexible container manage...
Edge 2016 SCL-2484: a software defined scalable and flexible container manage...
 
Bluemix Local – Relay Options and Challenges
Bluemix Local – Relay Options and Challenges Bluemix Local – Relay Options and Challenges
Bluemix Local – Relay Options and Challenges
 
Ame 4166 ibm mq appliance
Ame 4166 ibm mq applianceAme 4166 ibm mq appliance
Ame 4166 ibm mq appliance
 
Pmc juniper
Pmc juniperPmc juniper
Pmc juniper
 
Effective admin and development in iib
Effective admin and development in iibEffective admin and development in iib
Effective admin and development in iib
 
M08 protecting your message data in IBM MQ with encryption
M08 protecting your message data in IBM MQ with encryptionM08 protecting your message data in IBM MQ with encryption
M08 protecting your message data in IBM MQ with encryption
 
Migrating Java EE applications to IBM Bluemix Platform-as-a-Service
Migrating Java EE applications to IBM Bluemix Platform-as-a-ServiceMigrating Java EE applications to IBM Bluemix Platform-as-a-Service
Migrating Java EE applications to IBM Bluemix Platform-as-a-Service
 
UK Integration WebSphere User Group - MultiSpeed IT
UK Integration WebSphere User Group - MultiSpeed ITUK Integration WebSphere User Group - MultiSpeed IT
UK Integration WebSphere User Group - MultiSpeed IT
 

Similar to 02 ibm navigator 4 q14 arch and sys topology pit

Edge 2016 Session 1886 Building your own docker container cloud on ibm power...
Edge 2016 Session 1886  Building your own docker container cloud on ibm power...Edge 2016 Session 1886  Building your own docker container cloud on ibm power...
Edge 2016 Session 1886 Building your own docker container cloud on ibm power...
Yong Feng
 
S cv3179 spectrum-integration-openstack-edge2015-v5
S cv3179 spectrum-integration-openstack-edge2015-v5S cv3179 spectrum-integration-openstack-edge2015-v5
S cv3179 spectrum-integration-openstack-edge2015-v5
Tony Pearson
 
S cv0879 cloud-storage-options-edge2015-v4
S cv0879 cloud-storage-options-edge2015-v4S cv0879 cloud-storage-options-edge2015-v4
S cv0879 cloud-storage-options-edge2015-v4
Tony Pearson
 
2014-09-15 cloud platform master class
2014-09-15 cloud platform master class2014-09-15 cloud platform master class
2014-09-15 cloud platform master class
Citrix
 
S ss0884 sds-what-why-how-edge2015-v7
S ss0884 sds-what-why-how-edge2015-v7S ss0884 sds-what-why-how-edge2015-v7
S ss0884 sds-what-why-how-edge2015-v7
Tony Pearson
 
Helm summit 2019_handling large number of charts_sept 10
Helm summit 2019_handling large number of charts_sept 10Helm summit 2019_handling large number of charts_sept 10
Helm summit 2019_handling large number of charts_sept 10
Shikha Srivastava
 
What's new in Portal and WCM 8.5
What's new in Portal and WCM 8.5What's new in Portal and WCM 8.5
What's new in Portal and WCM 8.5
Vinayak Tavargeri
 
Skip the anxiety attack when building secure containerized apps
Skip the anxiety attack when building secure containerized appsSkip the anxiety attack when building secure containerized apps
Skip the anxiety attack when building secure containerized apps
Haidee McMahon
 
NIC - Windows Azure Pack - Level 300
NIC - Windows Azure Pack - Level 300NIC - Windows Azure Pack - Level 300
NIC - Windows Azure Pack - Level 300
Kristian Nese
 
Migrating Java EE applications to IBM Bluemix platform as-a-service (CloudFou...
Migrating Java EE applications to IBM Bluemix platform as-a-service (CloudFou...Migrating Java EE applications to IBM Bluemix platform as-a-service (CloudFou...
Migrating Java EE applications to IBM Bluemix platform as-a-service (CloudFou...
Jack-Junjie Cai
 
IBM Private Modular Cloud
IBM Private Modular CloudIBM Private Modular Cloud
IBM Private Modular Cloud
Herb Hernandez
 
Infrastructure Security: Your Minimum Security Baseline
Infrastructure Security: Your Minimum Security BaselineInfrastructure Security: Your Minimum Security Baseline
Infrastructure Security: Your Minimum Security Baseline
Amazon Web Services
 
59264945-Websphere-Security.pdf
59264945-Websphere-Security.pdf59264945-Websphere-Security.pdf
59264945-Websphere-Security.pdf
DeepakAC3
 
Getting Started With AWS Security
Getting Started With AWS SecurityGetting Started With AWS Security
Getting Started With AWS Security
Amazon Web Services
 
Cloud Orchestrator - IBM Software Defined Environment Event
Cloud Orchestrator - IBM Software Defined Environment EventCloud Orchestrator - IBM Software Defined Environment Event
Cloud Orchestrator - IBM Software Defined Environment Event
Denny Muktar
 
IBM i at the eart of cognitive solutions
IBM i at the eart of cognitive solutionsIBM i at the eart of cognitive solutions
IBM i at the eart of cognitive solutions
David Spurway
 
Server virtualization 1
Server virtualization   1Server virtualization   1
Server virtualization 1
Eqhball Ghazizadeh
 
AAI-2016 WebSphere Application Server Installation and Maintenance in the Ent...
AAI-2016 WebSphere Application Server Installation and Maintenance in the Ent...AAI-2016 WebSphere Application Server Installation and Maintenance in the Ent...
AAI-2016 WebSphere Application Server Installation and Maintenance in the Ent...
WASdev Community
 
Platform as a Service - Cloud Foundry and IBM Bluemix
Platform as a Service - Cloud Foundry and IBM BluemixPlatform as a Service - Cloud Foundry and IBM Bluemix
Platform as a Service - Cloud Foundry and IBM Bluemix
David Currie
 
Implementing zero trust in IBM Cloud Pak for Integration
Implementing zero trust in IBM Cloud Pak for IntegrationImplementing zero trust in IBM Cloud Pak for Integration
Implementing zero trust in IBM Cloud Pak for Integration
Kim Clark
 

Similar to 02 ibm navigator 4 q14 arch and sys topology pit (20)

Edge 2016 Session 1886 Building your own docker container cloud on ibm power...
Edge 2016 Session 1886  Building your own docker container cloud on ibm power...Edge 2016 Session 1886  Building your own docker container cloud on ibm power...
Edge 2016 Session 1886 Building your own docker container cloud on ibm power...
 
S cv3179 spectrum-integration-openstack-edge2015-v5
S cv3179 spectrum-integration-openstack-edge2015-v5S cv3179 spectrum-integration-openstack-edge2015-v5
S cv3179 spectrum-integration-openstack-edge2015-v5
 
S cv0879 cloud-storage-options-edge2015-v4
S cv0879 cloud-storage-options-edge2015-v4S cv0879 cloud-storage-options-edge2015-v4
S cv0879 cloud-storage-options-edge2015-v4
 
2014-09-15 cloud platform master class
2014-09-15 cloud platform master class2014-09-15 cloud platform master class
2014-09-15 cloud platform master class
 
S ss0884 sds-what-why-how-edge2015-v7
S ss0884 sds-what-why-how-edge2015-v7S ss0884 sds-what-why-how-edge2015-v7
S ss0884 sds-what-why-how-edge2015-v7
 
Helm summit 2019_handling large number of charts_sept 10
Helm summit 2019_handling large number of charts_sept 10Helm summit 2019_handling large number of charts_sept 10
Helm summit 2019_handling large number of charts_sept 10
 
What's new in Portal and WCM 8.5
What's new in Portal and WCM 8.5What's new in Portal and WCM 8.5
What's new in Portal and WCM 8.5
 
Skip the anxiety attack when building secure containerized apps
Skip the anxiety attack when building secure containerized appsSkip the anxiety attack when building secure containerized apps
Skip the anxiety attack when building secure containerized apps
 
NIC - Windows Azure Pack - Level 300
NIC - Windows Azure Pack - Level 300NIC - Windows Azure Pack - Level 300
NIC - Windows Azure Pack - Level 300
 
Migrating Java EE applications to IBM Bluemix platform as-a-service (CloudFou...
Migrating Java EE applications to IBM Bluemix platform as-a-service (CloudFou...Migrating Java EE applications to IBM Bluemix platform as-a-service (CloudFou...
Migrating Java EE applications to IBM Bluemix platform as-a-service (CloudFou...
 
IBM Private Modular Cloud
IBM Private Modular CloudIBM Private Modular Cloud
IBM Private Modular Cloud
 
Infrastructure Security: Your Minimum Security Baseline
Infrastructure Security: Your Minimum Security BaselineInfrastructure Security: Your Minimum Security Baseline
Infrastructure Security: Your Minimum Security Baseline
 
59264945-Websphere-Security.pdf
59264945-Websphere-Security.pdf59264945-Websphere-Security.pdf
59264945-Websphere-Security.pdf
 
Getting Started With AWS Security
Getting Started With AWS SecurityGetting Started With AWS Security
Getting Started With AWS Security
 
Cloud Orchestrator - IBM Software Defined Environment Event
Cloud Orchestrator - IBM Software Defined Environment EventCloud Orchestrator - IBM Software Defined Environment Event
Cloud Orchestrator - IBM Software Defined Environment Event
 
IBM i at the eart of cognitive solutions
IBM i at the eart of cognitive solutionsIBM i at the eart of cognitive solutions
IBM i at the eart of cognitive solutions
 
Server virtualization 1
Server virtualization   1Server virtualization   1
Server virtualization 1
 
AAI-2016 WebSphere Application Server Installation and Maintenance in the Ent...
AAI-2016 WebSphere Application Server Installation and Maintenance in the Ent...AAI-2016 WebSphere Application Server Installation and Maintenance in the Ent...
AAI-2016 WebSphere Application Server Installation and Maintenance in the Ent...
 
Platform as a Service - Cloud Foundry and IBM Bluemix
Platform as a Service - Cloud Foundry and IBM BluemixPlatform as a Service - Cloud Foundry and IBM Bluemix
Platform as a Service - Cloud Foundry and IBM Bluemix
 
Implementing zero trust in IBM Cloud Pak for Integration
Implementing zero trust in IBM Cloud Pak for IntegrationImplementing zero trust in IBM Cloud Pak for Integration
Implementing zero trust in IBM Cloud Pak for Integration
 

More from Eswar Eluri

Cs 7.2 relnotes
Cs 7.2 relnotesCs 7.2 relnotes
Cs 7.2 relnotes
Eswar Eluri
 
Cs 7.2 fundamentals
Cs 7.2 fundamentalsCs 7.2 fundamentals
Cs 7.2 fundamentals
Eswar Eluri
 
Cs 7.2 dql
Cs 7.2 dqlCs 7.2 dql
Cs 7.2 dql
Eswar Eluri
 
Cs 7.2 admin
Cs 7.2 adminCs 7.2 admin
Cs 7.2 admin
Eswar Eluri
 
Cs 7.2 distributed
Cs 7.2 distributedCs 7.2 distributed
Cs 7.2 distributed
Eswar Eluri
 
Cmis 7.2 deploy
Cmis 7.2 deployCmis 7.2 deploy
Cmis 7.2 deploy
Eswar Eluri
 

More from Eswar Eluri (6)

Cs 7.2 relnotes
Cs 7.2 relnotesCs 7.2 relnotes
Cs 7.2 relnotes
 
Cs 7.2 fundamentals
Cs 7.2 fundamentalsCs 7.2 fundamentals
Cs 7.2 fundamentals
 
Cs 7.2 dql
Cs 7.2 dqlCs 7.2 dql
Cs 7.2 dql
 
Cs 7.2 admin
Cs 7.2 adminCs 7.2 admin
Cs 7.2 admin
 
Cs 7.2 distributed
Cs 7.2 distributedCs 7.2 distributed
Cs 7.2 distributed
 
Cmis 7.2 deploy
Cmis 7.2 deployCmis 7.2 deploy
Cmis 7.2 deploy
 

Recently uploaded

TROUBLESHOOTING 9 TYPES OF OUTOFMEMORYERROR
TROUBLESHOOTING 9 TYPES OF OUTOFMEMORYERRORTROUBLESHOOTING 9 TYPES OF OUTOFMEMORYERROR
TROUBLESHOOTING 9 TYPES OF OUTOFMEMORYERROR
Tier1 app
 
Exploring Innovations in Data Repository Solutions - Insights from the U.S. G...
Exploring Innovations in Data Repository Solutions - Insights from the U.S. G...Exploring Innovations in Data Repository Solutions - Insights from the U.S. G...
Exploring Innovations in Data Repository Solutions - Insights from the U.S. G...
Globus
 
De mooiste recreatieve routes ontdekken met RouteYou en FME
De mooiste recreatieve routes ontdekken met RouteYou en FMEDe mooiste recreatieve routes ontdekken met RouteYou en FME
De mooiste recreatieve routes ontdekken met RouteYou en FME
Jelle | Nordend
 
How Recreation Management Software Can Streamline Your Operations.pptx
How Recreation Management Software Can Streamline Your Operations.pptxHow Recreation Management Software Can Streamline Your Operations.pptx
How Recreation Management Software Can Streamline Your Operations.pptx
wottaspaceseo
 
Paketo Buildpacks : la meilleure façon de construire des images OCI? DevopsDa...
Paketo Buildpacks : la meilleure façon de construire des images OCI? DevopsDa...Paketo Buildpacks : la meilleure façon de construire des images OCI? DevopsDa...
Paketo Buildpacks : la meilleure façon de construire des images OCI? DevopsDa...
Anthony Dahanne
 
Corporate Management | Session 3 of 3 | Tendenci AMS
Corporate Management | Session 3 of 3 | Tendenci AMSCorporate Management | Session 3 of 3 | Tendenci AMS
Corporate Management | Session 3 of 3 | Tendenci AMS
Tendenci - The Open Source AMS (Association Management Software)
 
Large Language Models and the End of Programming
Large Language Models and the End of ProgrammingLarge Language Models and the End of Programming
Large Language Models and the End of Programming
Matt Welsh
 
Advanced Flow Concepts Every Developer Should Know
Advanced Flow Concepts Every Developer Should KnowAdvanced Flow Concepts Every Developer Should Know
Advanced Flow Concepts Every Developer Should Know
Peter Caitens
 
Vitthal Shirke Microservices Resume Montevideo
Vitthal Shirke Microservices Resume MontevideoVitthal Shirke Microservices Resume Montevideo
Vitthal Shirke Microservices Resume Montevideo
Vitthal Shirke
 
OpenFOAM solver for Helmholtz equation, helmholtzFoam / helmholtzBubbleFoam
OpenFOAM solver for Helmholtz equation, helmholtzFoam / helmholtzBubbleFoamOpenFOAM solver for Helmholtz equation, helmholtzFoam / helmholtzBubbleFoam
OpenFOAM solver for Helmholtz equation, helmholtzFoam / helmholtzBubbleFoam
takuyayamamoto1800
 
Visitor Management System in India- Vizman.app
Visitor Management System in India- Vizman.appVisitor Management System in India- Vizman.app
Visitor Management System in India- Vizman.app
NaapbooksPrivateLimi
 
Enhancing Research Orchestration Capabilities at ORNL.pdf
Enhancing Research Orchestration Capabilities at ORNL.pdfEnhancing Research Orchestration Capabilities at ORNL.pdf
Enhancing Research Orchestration Capabilities at ORNL.pdf
Globus
 
BoxLang: Review our Visionary Licenses of 2024
BoxLang: Review our Visionary Licenses of 2024BoxLang: Review our Visionary Licenses of 2024
BoxLang: Review our Visionary Licenses of 2024
Ortus Solutions, Corp
 
Globus Compute Introduction - GlobusWorld 2024
Globus Compute Introduction - GlobusWorld 2024Globus Compute Introduction - GlobusWorld 2024
Globus Compute Introduction - GlobusWorld 2024
Globus
 
GlobusWorld 2024 Opening Keynote session
GlobusWorld 2024 Opening Keynote sessionGlobusWorld 2024 Opening Keynote session
GlobusWorld 2024 Opening Keynote session
Globus
 
Accelerate Enterprise Software Engineering with Platformless
Accelerate Enterprise Software Engineering with PlatformlessAccelerate Enterprise Software Engineering with Platformless
Accelerate Enterprise Software Engineering with Platformless
WSO2
 
Strategies for Successful Data Migration Tools.pptx
Strategies for Successful Data Migration Tools.pptxStrategies for Successful Data Migration Tools.pptx
Strategies for Successful Data Migration Tools.pptx
varshanayak241
 
SOCRadar Research Team: Latest Activities of IntelBroker
SOCRadar Research Team: Latest Activities of IntelBrokerSOCRadar Research Team: Latest Activities of IntelBroker
SOCRadar Research Team: Latest Activities of IntelBroker
SOCRadar
 
Why React Native as a Strategic Advantage for Startup Innovation.pdf
Why React Native as a Strategic Advantage for Startup Innovation.pdfWhy React Native as a Strategic Advantage for Startup Innovation.pdf
Why React Native as a Strategic Advantage for Startup Innovation.pdf
ayushiqss
 
Quarkus Hidden and Forbidden Extensions
Quarkus Hidden and Forbidden ExtensionsQuarkus Hidden and Forbidden Extensions
Quarkus Hidden and Forbidden Extensions
Max Andersen
 

Recently uploaded (20)

TROUBLESHOOTING 9 TYPES OF OUTOFMEMORYERROR
TROUBLESHOOTING 9 TYPES OF OUTOFMEMORYERRORTROUBLESHOOTING 9 TYPES OF OUTOFMEMORYERROR
TROUBLESHOOTING 9 TYPES OF OUTOFMEMORYERROR
 
Exploring Innovations in Data Repository Solutions - Insights from the U.S. G...
Exploring Innovations in Data Repository Solutions - Insights from the U.S. G...Exploring Innovations in Data Repository Solutions - Insights from the U.S. G...
Exploring Innovations in Data Repository Solutions - Insights from the U.S. G...
 
De mooiste recreatieve routes ontdekken met RouteYou en FME
De mooiste recreatieve routes ontdekken met RouteYou en FMEDe mooiste recreatieve routes ontdekken met RouteYou en FME
De mooiste recreatieve routes ontdekken met RouteYou en FME
 
How Recreation Management Software Can Streamline Your Operations.pptx
How Recreation Management Software Can Streamline Your Operations.pptxHow Recreation Management Software Can Streamline Your Operations.pptx
How Recreation Management Software Can Streamline Your Operations.pptx
 
Paketo Buildpacks : la meilleure façon de construire des images OCI? DevopsDa...
Paketo Buildpacks : la meilleure façon de construire des images OCI? DevopsDa...Paketo Buildpacks : la meilleure façon de construire des images OCI? DevopsDa...
Paketo Buildpacks : la meilleure façon de construire des images OCI? DevopsDa...
 
Corporate Management | Session 3 of 3 | Tendenci AMS
Corporate Management | Session 3 of 3 | Tendenci AMSCorporate Management | Session 3 of 3 | Tendenci AMS
Corporate Management | Session 3 of 3 | Tendenci AMS
 
Large Language Models and the End of Programming
Large Language Models and the End of ProgrammingLarge Language Models and the End of Programming
Large Language Models and the End of Programming
 
Advanced Flow Concepts Every Developer Should Know
Advanced Flow Concepts Every Developer Should KnowAdvanced Flow Concepts Every Developer Should Know
Advanced Flow Concepts Every Developer Should Know
 
Vitthal Shirke Microservices Resume Montevideo
Vitthal Shirke Microservices Resume MontevideoVitthal Shirke Microservices Resume Montevideo
Vitthal Shirke Microservices Resume Montevideo
 
OpenFOAM solver for Helmholtz equation, helmholtzFoam / helmholtzBubbleFoam
OpenFOAM solver for Helmholtz equation, helmholtzFoam / helmholtzBubbleFoamOpenFOAM solver for Helmholtz equation, helmholtzFoam / helmholtzBubbleFoam
OpenFOAM solver for Helmholtz equation, helmholtzFoam / helmholtzBubbleFoam
 
Visitor Management System in India- Vizman.app
Visitor Management System in India- Vizman.appVisitor Management System in India- Vizman.app
Visitor Management System in India- Vizman.app
 
Enhancing Research Orchestration Capabilities at ORNL.pdf
Enhancing Research Orchestration Capabilities at ORNL.pdfEnhancing Research Orchestration Capabilities at ORNL.pdf
Enhancing Research Orchestration Capabilities at ORNL.pdf
 
BoxLang: Review our Visionary Licenses of 2024
BoxLang: Review our Visionary Licenses of 2024BoxLang: Review our Visionary Licenses of 2024
BoxLang: Review our Visionary Licenses of 2024
 
Globus Compute Introduction - GlobusWorld 2024
Globus Compute Introduction - GlobusWorld 2024Globus Compute Introduction - GlobusWorld 2024
Globus Compute Introduction - GlobusWorld 2024
 
GlobusWorld 2024 Opening Keynote session
GlobusWorld 2024 Opening Keynote sessionGlobusWorld 2024 Opening Keynote session
GlobusWorld 2024 Opening Keynote session
 
Accelerate Enterprise Software Engineering with Platformless
Accelerate Enterprise Software Engineering with PlatformlessAccelerate Enterprise Software Engineering with Platformless
Accelerate Enterprise Software Engineering with Platformless
 
Strategies for Successful Data Migration Tools.pptx
Strategies for Successful Data Migration Tools.pptxStrategies for Successful Data Migration Tools.pptx
Strategies for Successful Data Migration Tools.pptx
 
SOCRadar Research Team: Latest Activities of IntelBroker
SOCRadar Research Team: Latest Activities of IntelBrokerSOCRadar Research Team: Latest Activities of IntelBroker
SOCRadar Research Team: Latest Activities of IntelBroker
 
Why React Native as a Strategic Advantage for Startup Innovation.pdf
Why React Native as a Strategic Advantage for Startup Innovation.pdfWhy React Native as a Strategic Advantage for Startup Innovation.pdf
Why React Native as a Strategic Advantage for Startup Innovation.pdf
 
Quarkus Hidden and Forbidden Extensions
Quarkus Hidden and Forbidden ExtensionsQuarkus Hidden and Forbidden Extensions
Quarkus Hidden and Forbidden Extensions
 

02 ibm navigator 4 q14 arch and sys topology pit

  • 1. © 2014 IBM Corporation Product Implementation Training (PIT) IBM Watson Curator and IBM Navigator Version 1.0.12 Architecture and System Topology Alexander Moosbrugger Software Engineer December 12, 2014 Course materials may not be reproduced in whole or in part without prior written permission of IBM
  • 2. © 2014 IBM Corporation2 Introduction  Course Overview  This course will provide an overview of IBM Watson Curator and IBM Navigator architecture and system topology  Target Audience  Anyone interested in learning about IBM Watson Curator and IBM Navigator  Suggested Prerequisites  General knowledge of IBM ECM (FileNet P8, IBM Content Navigator)  SaaS “Go Live” Date: December 2014
  • 3. © 2014 IBM Corporation3 Course Objectives After this course you will be able to:  Describe IBM Watson Curator and IBM Navigator architecture  Explain the system topology of IBM Watson Curator and IBM Navigator
  • 4. © 2014 IBM Corporation4 Course Roadmap  Architecture • System Topology • Course Summary • Contacts
  • 5. © 2014 IBM Corporation5 ECM Cloud – Service offerings (December 2014) ECM Cloud IBM Navigator Collaboration for business IBM Watson Curator Optimize information for Watson expertise
  • 6. © 2014 IBM Corporation IBM Watson Curator Delivering relevant, qualified and governed content collections for Watson Increases user confidence by improving information relevance and quality with Watson Actively manages and guides subject matter and data experts through the entire process
  • 7. IBM Navigator Share and collaborate on business content Work with team members on documents Trusted and secure Keep your files safe Easy to use on any device Work with files when mobile Extending content to other applications Bring content to all your applications Collaboration for business Unite your enterprise
  • 8. © 2014 IBM Corporation8 ECM Cloud ECM Cloud Enterprise Content Management Trusted Content Collaboration and Sharing (IBM Navigator only) Application customization via open standards - CMIS Enterprise grade auditing, reliability & security IBM Managed Systems and Support SoftLayer Cloud Content Curation (IBM Watson Curator only) Mobile devices iOS & Android (IBM Navigator only)
  • 9. © 2014 IBM Corporation9 High Level Architecture – IBM Watson Curator No ACCE admin No Navigator admin No Server side custom code No Navigator plug-in No P8 Java API No P8 WS API IBM SoftLayer Data Centers Service Infrastructure Storage, Servers and Networking components ECM Cloud Foundation Administration, Reporting, Authentication, LDAP synchronization, Auditing, Security Roles, Notification Content Navigator CMIS Navigator Console IBM Content Foundation (Content Platform Engine and Content Search Services) Security Directory Server LDAP Integration (Optional) Custom Application (Optional) Operations Monitoring, Security, Support, Patches and updates StoredIQ (CMIS, Optional) Watson (CMIS) Case Manager Curation Solution
  • 10. © 2014 IBM Corporation10 High Level Architecture – IBM Navigator No ACCE admin No Navigator admin No Server side custom code No Navigator plug-in No P8 Java API No P8 WS API IBM SoftLayer Data Centers Service Infrastructure Storage, Servers and Networking components ECM Cloud Foundation Administration, Reporting, Authentication, LDAP synchronization, Auditing, Security Roles, Notification Content Navigator w/Sync CMIS Navigator Console IBM Content Foundation (Content Platform Engine and Content Search Services) Security Directory Server LDAP Integration (Optional) Custom Application (Optional) Operations Monitoring, Security, Support, Patches and updates
  • 11. © 2014 IBM Corporation11 IBM Watson Curator - Details Service offering with preconfigured fixed feature set • 1 end user desktop for Curation • 1 tenant administrator desktops (reports) • Fixed Watson Curator data model No full featured IBM Case Manager (ICM) feature set No tenant administrator/user access to IBM Content Navigator (ICN) admin desktop No custom ICN plugins Content Management Interoperability Services (CMIS) • Allow custom applications via standardized API • StoredIQ and Watson use CMIS API to interact with Watson Curator solution IBM Content Foundation (Content Platform Engine and Content Search Services) Navigator Console Security Directory Server CMIS Content Navigator Case Manager Curation Solution
  • 12. © 2014 IBM Corporation12 IBM Navigator - Details Service offering with preconfigured fixed feature set • 1 end user desktop • 1 tenant administrator desktop (reports) • Sync enabled • Approval workflow enabled • Teamspace enabled 1 sample teamspace No tenant administrator/user access to IBM Content Navigator (ICN) admin desktop No custom ICN plugins Content Management Interoperability Services (CMIS) • Allow custom applications via standardized API IBM Content Foundation (Content Platform Engine and Content Search Services) Content Navigator w/Sync CMIS Navigator Console Security Directory Server
  • 13. © 2014 IBM Corporation13 Tenant Administration & LDAP Integration New service specific Navigator Console for tenant administration • Manage Users, Groups, and service specific Roles • Define content encryption key for Content Engine Storage Area • Manage Document classes and properties (IBM Navigator only) • Schedule and view reports Two ways to add users and groups • Create locally in cloud • Synchronize users/groups with customer LDAP Requires Passthrough authentication • User uses his known customer enterprise password • No passwords stored in cloud • Work concurrently IBM Content Foundation (Content Platform Engine and Content Search Services) IBM Watson Curator IBM Navigator Navigator Console Security Directory Serveror
  • 14. © 2014 IBM Corporation14 Content Platform Engine & Content Search Services ECM Cloud Content Platform Engine (CPE) setup • Encryption at Rest using storage area encryption • Enabled 5.2.1 dual-write feature for high availability on storage failure • Fixed set of object stores Customer accessible object store Administrative object store (No tenant user access) • No CE admin clients available (ACCE, FEM) • No CE APIS (Java, C) • No Server side custom code Content Search Services (CSS) setup • Base Document classes CBR enabled Document content is full-text searchable IBM Content Foundation (Content Platform Engine and Content Search Services) Navigator Console Security Directory Server IBM Watson Curator IBM Navigatoror
  • 15. © 2014 IBM Corporation15 Differences IBM Watson Curator and IBM Navigator IBM Navigator IBM Watson Curator Service Specific Roles Teamspace Creator Teamspace Template Creator Content Curator Data Expert Domain Expert Team Lead Initial User setup sysadmin (tenant administrator) + technical users curationprovider (StoredIQ) & curationconsumer (Watson) Object Stores Customer Data & Configuration/Reporting + Staging Security Concept Customizable All curation users and roles have access to all curation data Data Model Customizable Fixed ICN End User Desktops Collaboration Desktop Curation Desktop
  • 16. © 2014 IBM Corporation16 Course Roadmap • Architecture  System Topology • Course Summary • Contacts
  • 17. © 2014 IBM Corporation17 Worldwide Availability
  • 18. © 2014 IBM Corporation18 Key Considerations • Single tenant model. Each customer has a separate instance of P8. • Single DevOps team managing all instances • On-Prem systems may interact with the Cloud. SoftLayer ECM Cloud Customer 1 Customer 2 Customer 3 SoftLayer US “POD” SoftLayer ECM Cloud Service Infrastructure ECM Cloud Service Infrastructure Customer 4 Customer 5 Customer 6 On-premOn-prem On-prem SoftLayer EU “POD” ECM Cloud ECM Cloud ECM Cloud ECM Cloud ECM Cloud On-premOn-prem On-prem SaaS Deployment Model
  • 19. © 2014 IBM Corporation19 Security and Standards Support Security Features • Unique security certificates for each customer ensures data-security • Customer data protected using FIPS compliant AES-CTR with 128 bit encryption Encryption keys are unique to each customer • Protection using firewalls on the public facing networks against intrusions Certifications • ITCS104 compliance – IBM internal security standard for compliance Service Level Objectives • Recovery Point Objective (RPO): 24 hours (worst case scenario) • Recovery Time Objective (RTO): 48 hours
  • 20. © 2014 IBM Corporation20 Network Security
  • 21. © 2014 IBM Corporation21 Two Access Methods – Public Internet & VPN F5 Restricted Yellow Customer 1 VLAN Customer 2 VLAN Customer 3 VLAN VIP VIP VIP Vyatta FW Control Point Basic Yellow Restr. Yellow  Red Basic Yellow Restricted Yellow • IBM Navigator • Customer access via 1 or 2 but NOT both. • IBM Watson Curator • Customer access via 2 only. • Traffic isolation is obtained using Vyatta & F5 ACL/Rules • Storage is on a separated VLAN (traffic goes through the Vyatta) https:// ecm.ibmnavigator.com or custom url Enterprise VPN 10.x.x.x 1 2 us03.navigator.ibmcloud.com us02.navigator.ibmcloud.com Management Restricted Yellow Storage Restricted Yellow VIP VIP VIP F5 Contr Point Internet
  • 22. © 2014 IBM Corporation22 Service Infrastructure Vyatta VPN Termination F5 LB (HyperV) Customer 2 VM 1 VM 2 VM 3 VM 4 Active Dir Hosts for DNS (Windows) SMTP Servers VLAN-M VLAN.c1 Customers VLAN.c2 VLAN.c3 Jump Server Automation ITCS104 Jump Server / Deployment / Monitoring / Billing / Qradar Customer 3 QuantaStor Vyatta Firewall VLAN-S = Shared Components
  • 23. © 2014 IBM Corporation23 Software Components Details QuantaStor VM 1 HTTP Server WAS ND VM 2 HTTP Server WAS ND Navigator Console Content Navigator / CMIS (+ Case Manager for Watson Curator) Content Platform Engine Cognos File System Client File System Client VM 3 VM 4 CSS Search & Index File System Client File System Client HA/DR Sync TSA Replication Sync TSA SDS Master SDS Master DB2 Primary DB2 Standby WebSphere Deployment Manager CSS Search & Index
  • 24. © 2014 IBM Corporation24 Application Layer HA enablement Two Http servers configured for HA Use WebSphere Application Server Network Deployment to provide HA environment • Applications (Navigator Console, ICN, ICM, CMIS, CPE) configured for high availability • Cognos (administrative reports) not HA enabled in Q4 release VM 1 HTTP Server WAS ND VM 2 HTTP Server WAS ND Navigator Console Content Navigator / CMIS (+ Case Manager for Watson Curator) Content Platform Engine Cognos File System Client File System Client
  • 25. © 2014 IBM Corporation25 Database, LDAP, CSS HA enablement DB2 database setup in HA/DR mode • One active DB2 instance • One standby instance • Instant switch to standby DB2 in case of active DB2 failure Security Directory Server • Active-Active HA configuration Content Search Services • Setup for HA VM 3 VM 4 CSS Search & Index File System Client File System Client HA/DR Sync TSA Replication Sync TSA SDS Master SDS Master DB2 Primary DB2 Standby WebSphere Deployment Manager CSS Search & Index
  • 26. © 2014 IBM Corporation26 Storage Layer HA enablement High Availability: CPE 5.2.1 Dual Write • Asynchronous replication • Two replicas (1 required) Customer 1 QuantaStor Device 1 with NFS P8 Primary Replica1 OS 1 OS 2 OS 3 QuantaStor Device 2 with NFS P8 Primary Replica2 OS 1 OS 2 OS 3 Customer 2 Customer 3 QuantaStor
  • 27. © 2014 IBM Corporation27 Storage Layer HA enablement (Device Failure) P8 system can cope with single storage failure • QuantaStor device #2 fails All writes to P8 Replica2 fail P8 Replica1 online No service disruption P8 queuing content writes for Replica2 Service operating with storage single point of failure Customer 1 QuantaStor Device 1 with NFS P8 Primary Replica1 OS 1 OS 2 OS 3 QuantaStor Device 2 with NFS P8 Primary Replica2 OS 1 OS 2 OS 3 Customer 2 Customer 3
  • 28. © 2014 IBM Corporation28 Storage Layer HA enablement (Recovery) Two recovery methods based on device recovery characteristic Repair device recovery • Repair device • P8 writes queued content since failure • Recovery time measured in hours Replace device recovery • Bring new device online • Rebuild P8 Replica2 manually from Replica1 • Expected recovery time measured in days Customer 1 QuantaStor Device 1 with NFS P8 Primary Replica1 OS 1 OS 2 OS 3 QuantaStor Device 2 with NFS P8 Primary Replica2 OS 1 OS 2 OS 3 Customer 2 Customer 3
  • 29. © 2014 IBM Corporation29 Backup & Disaster Recovery Daily online-backup • No downtime during backup • Backup scripts are running on all customer systems • Triggers backups for DB2, TDS, WAS. Backups are stored on QuantaStor • In addition also creates snapshots for content and index Disaster Recovery • QuantaStor replicates content • Recovery Point Objective (RPO): 24 hours • Recovery Time Objective (RTO): 48 hours Disaster Recovery steps • Deploy new system with deployment scripts (like for a new customer) • Restore data from the DR data • Restart the service SoftLayer Data Center 2 SoftLayer Data Center 1 QuantaStor replication for DR QuantaStor 1 cron triggered script Create Snapshots Triggers backups QuantaStor 2
  • 30. © 2014 IBM Corporation30 Course Roadmap • Product Fundamentals Product Use/Demonstration Installation Overview Configuration Guidelines Administration Best Practices • Customization/API Overview • Best Practices  Course Summary
  • 31. © 2014 IBM Corporation31 Course Summary You have completed this course and can:  Describe IBM Watson Curator and IBM Navigator architecture  Explain the system topology of IBM Watson Curator and IBM Navigator
  • 32. © 2014 IBM Corporation32 Contacts  Delivery Manager: Stephen Mason  Development Manager: Dieter Schieber  Support: Floyd Rose and Daryl Rivera  Information Development: Iris Gloeck
  • 33. © 2014 IBM Corporation33 Thank You!