SlideShare a Scribd company logo
1 of 50
Download to read offline
Cisco Connect Toronto
Canada • 18 October 2018
Cloud and On Premises Collaboration Security
Joseph Bassaly
Architect
© 2016 Cisco and/or its affiliates. All rights reserved. 2
What will we cover today ?
• Cisco Collaboration Elements
• Managing Identity
• Cisco WebExTeams Security concepts
• Cisco WebExTeam compliance and Archival
• Cisco Enterprise Content Management (Coming Soon)
• Cisco Control Hub Security Capabilities
• Cisco WebExTeam Network Security
• Cisco WebExTeams Security Roadmap
© 2016 Cisco and/or its affiliates. All rights reserved. 3
Messaging Call ControlMeetings
Seamless Collaboration Experience
Link on-premises assets to the cloud
© 2016 Cisco and/or its affiliates. All rights reserved. 4
WebEx Teams Client
Collaboration Elements
WebEx Board Video End Points
MEDIA
NODES
Expressway
Existing Services
Teams Meeting
Jabber
IM & Presence
Communication
Manager
Unity
Connection
5© 2016 Cisco and/or its affiliates. All rights reserved.
Managing Identity
© 2016 Cisco and/or its affiliates. All rights reserved. 6
IdP – Identity Provider: RP – Relying Party
Users
Explicit Initial Trust
Agreement
Identity Framework
6
© 2016 Cisco and/or its affiliates. All rights reserved. 7
Alex
Authentication and Authorization
(AuthN and AuthZ)
Authentication
Authorization
7
Authentication verifies that
“you are who you say you are”
Authorization verifies that
“you are permitted to do what you are trying to do”
© 2016 Cisco and/or its affiliates. All rights reserved. 8
Authentication and Authorization
(SAML and OAuth)
Authorization
Client Services
IdP
Authentication
© 2016 Cisco and/or its affiliates. All rights reserved. 9
User & Device
Management
Roles based
Access
Security &
Compliance
Analytics
& Reports
SSO &
Directory Sync
Manage Services
& Integrations
9
Cisco Control Hub
© 2016 Cisco and/or its affiliates. All rights reserved. 10
10BRKCOL-2080
User Provisioning
• Directory Connector (recommended)
• Manual creation
Add or modify users
Bulk CSV import
• Convert existing users who already have a Spark account
Directory
Connector
Active
Directory
Cisco
Collaboration Cloud
Identity/SSO
HTTPS
11© 2016 Cisco and/or its affiliates. All rights reserved.
Cisco WebEx Team Security
© 2016 Cisco and/or its affiliates. All rights reserved. 12
Webex Cloud Security - Realms of Separation
Identity Service Content Server
Key Mgmt Service Indexing Service E-Discovery Service
Webex logically and physically separates functional components within the cloud
Identity Services holding real user Identity (e.g. email addresses)
are separated from :
Encryption, Indexing and E-Discovery Services,
which are in turn separated from :
Data Storage Services
Data Center A Data Center B Data Center C
12© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
Webex Cloud
© 2016 Cisco and/or its affiliates. All rights reserved. 13
Realms of Separation – Identity Obfuscation
Identity Service Content Server
Key Mgmt Service Indexing Service E-Discovery Service
Outside of the Identity Service - Real Identity information is obfuscated :
For each User ID, Webex Teams generates a random 128-bit Universally Unique
Identifier (UUID) = The User’s obfuscated identity
No real identity information transits the cloud
Data Center A Data Center B Data Center C
jsmith@abc.comhtzb2n78jdbc9e
13© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
Webex Cloud
© 2016 Cisco and/or its affiliates. All rights reserved. 14
Directory Sync
Identity Service
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
Webex Cloud
Webex Teams – User Identity Sync
© 2016 Cisco and/or its affiliates. All rights reserved. 15
Directory Sync
SAML SSO
Identity Service
IdP
Webex Cloud
Webex Teams SAML Authentication
© 2016 Cisco and/or its affiliates. All rights reserved. 16
Webex Teams App – Cloud connection
IdP
Identity Service Webex Teams
Service
Webex Cloud
© 2016 Cisco and/or its affiliates. All rights reserved. 17
Webex Teams Device – cloud connection
Identity Service
1234567890123456
17
Webex Teams
Service
Webex Cloud
18© 2016 Cisco and/or its affiliates. All rights reserved.
WebEx Teams
Secure Messages and Content
© 2016 Cisco and/or its affiliates. All rights reserved. 19
Content Server Key Mgmt Service
####### #######message
####filemessage
Webex Teams- Encrypting Messages and Content
Key Management Service
AES256-GCM cipher used for Encryption 19
Webex Cloud
© 2016 Cisco and/or its affiliates. All rights reserved. 20
Key Mgmt Service
message#######message
Content Server
####### #######message
Webex Teams - Decrypting Messages and Content
Key Management Service
20
Webex Cloud
21© 2016 Cisco and/or its affiliates. All rights reserved.
WebEx Teams
Secure Search and Indexing
© 2016 Cisco and/or its affiliates. All rights reserved. 22
Indexing Service
Webex IS the messageWebex IS the message
Content Server
Webex IS the message
Key Mgmt Service
###################
Searching Webex Teams Spaces: Building a Search Index
###################
B957FE48
B9 57 FE 48
Hash
Algorithm
#################
Indexing Service
#################
* A new (SHA-256 HMAC) hashing key (Search Key) is used for each space
Search Service
Webex Cloud
© 2016 Cisco and/or its affiliates. All rights reserved. 23
Indexing Service
“Webex”Webex
Content Server Key Mgmt Service
###################
Webex Teams spaces : Querying a Search Index
Search for the word “Webex”
###################
B957FE48
B9 57 FE 48
Hash
Algorithm
Indexing Service
“Webex”
Search for the word “Webex”
“B9”######################################
Webex IS the Message
B9
*A link to Conversation Encryption Key is sent with encrypted message
Search Service
Webex Cloud
B9 57 FE 48
© 2016 Cisco and/or its affiliates. All rights reserved. 24
Cisco Webex Control Hub
Indexing Service
Jo Smith’s ContentJo Smith’s Content
Content Server Key Mgmt Service
###################
Webex Teams E-Discovery Service
###################
X1GFT5YY
Hash
Algorithm
Indexing Service
Jo Smith’s Content
“X1GFT5YY”
Jo Smith’s Content
###################
X1GFT5YY
E-Discovery Service
###################
Jo Smith’s Content
###################
Jo Smith’s Content
#################
Search Service
Webex Cloud
© 2016 Cisco and/or its affiliates. All rights reserved. 25
E-Discov. Storage
E-Discovery ServiceContent Server Key Mgmt Service
Webex Teams E-Discovery Service
E-Discovery Service
Cisco Webex Control Hub
Jo Smith’s Content###################
Jo Smith’s Content###################
Jo Smith’s Content###################
Jo Smith’s Messages
and Files
#######################################
##################
#######################################
##################
Jo Smith’s Messages
and Files
Search Service
Webex Cloud
E-Discovery Content
Ready
© 2016 Cisco and/or its affiliates. All rights reserved. 26
Secure Data Center
Content Server
Key Mgmt Service
Webex Teams – Hybrid Data Security (HDS)
E-Discovery ServiceIndexing Service
Hybrid Data Security
Hybrid Data Services
=
On Premise :
Key Management Server
Indexing Server
E-Discovery Service
26© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
Webex Cloud
© 2016 Cisco and/or its affiliates. All rights reserved. 27
Hybrid Key Management
Servers in different
Organizations establish
an encrypted
connection via the
Webex Cloud
Key Mgmt ServiceKey Mgmt Service
Content Server Key Mgmt Service
HDS: Key Management Server Federation
Hybrid Key Management
Servers make outbound
connections only :
HTTPS, Web Socket Secure
(WSS)
Organization A Organization B
messagemessage
Webex Cloud
28© 2016 Cisco and/or its affiliates. All rights reserved.
Compliance and Archival
© 2016 Cisco and/or its affiliates. All rights reserved. 29
Security &
Compliance
Program
Compliance
Content Ownership,
Retention, Archival, E-
Discovery, Legal
Hold, Events APIs
Device and User
Management
Mobile App Management,
Identity, Integration & Ent
Admin Management
Data Security
End to End Encryption,
On-Premises Key
Management System (KMS),
Cloud KMS
Network Connectivity
Proxy & Firewall rules for
Webex Apps and Endpoints.
TLS 1.2, 802.1X
Certifications &
Regulations
Certifications (ISO27K, SOC-2/3,
HIPAA, PCI), Regulatory
compliance (GDPR, MIFID,
BCR)
Webex Teams Security and Compliance Initiative
Enterprise Content
Management
Support for External 3rd
Party File Systems,
Transcoding
29
© 2016 Cisco and/or its affiliates. All rights reserved. 30
Compliance Officer : Advanced filters for search
The Compliance Data Search function is restricted to compliance officer(s) only
Search for content in messages and file names
Search by e-mail addresses, or Space IDs
Search by date range
https://admin.webex.com/ediscovery/search
© 2016 Cisco and/or its affiliates. All rights reserved. 31
Compliance Officer : Search Results Report Summary
31
© 2016 Cisco and/or its affiliates. All rights reserved. 32
Webex Teams Control Hub : Administrator defined Retention Policy
• Default Retention Period : Indefinite
• Subject to storage limits
• Configurable Retention Period : 1 to 120 months
Webex Teams Message and File Retention
https://admin.webex.com/settings
© 2016 Cisco and/or its affiliates. All rights reserved. 33
How can you archive Webex Teams data?
Use Cases
• Sophisticated eDiscovery
• Legal Hold
• Retention policies based on groups
Options
• Out-of-the-box Solution : Integrations with Archival partners e.g. Actiance
• Custom Solution : Cisco Advanced Services software & services e.g. Global Relay
• DIY : Use Systems Integrator or self integrate Events API with Archival software
Archival System
Events API
Enterprise
E-Discovery
Application
Webex Cloud
33
© 2016 Cisco and/or its affiliates. All rights reserved. 34
Archival Vendors : Feature support (June 2018)
Actiance Global Relay Verint Verba
Archive Messages Yes Yes Yes
Archive Files Yes Yes Yes
Integrate with eVaults Veritas, HP, IBM N/A Yes
On-premise vs Cloud On-Prem, Cloud, Hybrid Yes On-premise
Native-integration vs
Services engagement
Native-integration Cisco AS engagement Native-integration
© 2016 Cisco and/or its affiliates. All rights reserved. 35
Webex Teams Events API enables polling for Events and Content generated by users
Allows organizations to monitor and correct user behavior (e.g. Delete Content, Alert User, Alert
Administrator), preventing the loss of sensitive data
Webex Cloud
Events API
Content
Property
Membership Events
DLP or CASB
Policies
Corrective Actions
Delete content/ Alert user/ Alert admin
Data Loss Prevention (DLP) : Monitor and React
Webex Teams
Integrations
Cisco Cloudlock
Third Party Vendors
Skyhigh, Global Relay etc.
CASB : Cloud Access Security Broker
© 2016 Cisco and/or its affiliates. All rights reserved. 36
Webex Teams Integrations
Compliance: Data Loss Prevention & Archival
(Cisco Advanced Services offering)
36
© 2016 Cisco and/or its affiliates. All rights reserved. 37
Data Loss Prevention : Feature support (June 2018)
Cisco Cloudlock Symantec SkyHigh Netskope Bitglass Verint
Verba
Monitor Messages Yes Future Yes Yes Yes Yes
Monitor Files Yes Yes Yes Yes Yes No
Alerts on violations Yes Yes Yes Yes Yes Yes
Deletion of offending
Messages
Yes Future Yes Yes Yes Yes
Deletion of offending
Files
Yes Future Yes Yes Yes No
Malware
detection/removal
No Yes (Detection) Future Future Yes No
Configure policy per
space or group
Yes
(User, Space)
Yes
(User, Space, Team)
Yes
(AD groups)
Yes Yes Yes
38© 2016 Cisco and/or its affiliates. All rights reserved.
WebEx Teams Control Hub
Security Settings
© 2016 Cisco and/or its affiliates. All rights reserved. 39
Controlling User Generated Content
Fine grained controls : DLP/CASB policy enforcement
• Block Social Security Numbers, Credit Card Details
• Block High Risk Users
• Block Highly Confidential Content
Coarse grained controls: Organization wide settings in Webex Teams Control Hub
• Block External Communication
• Block File download
• Block File upload
Finer controls
enable IT
Departments to
enable external
communications
while still being
secure
Block All
Block Highly Confidential
Block Social Security Numbers
Allow But Warn Users
Warn me about communications with
competitors
Block High Risk User Groups
Block File Types based on AD Group
Block content from being sent
to users in China
39
© 2016 Cisco and/or its affiliates. All rights reserved. 40
File Sharing Control
• Allows Webex Teams customers to control file
downloads and uploads on specific
client types : Desktop/ Web/ Mobile/ Bots
• Administrator Controlled
• Files and Whiteboard icons greyed
• User warning if file share attempted
Addresses :
Data Loss concerns
Malware concerns
Provides :
Mobile Application Management controls
on Bring Your Own Devices
© 2016 Cisco and/or its affiliates. All rights reserved. 41
Webex Teams : Blocking External Communication
What:
Provide administrator with controls to prevent external
communication
 Users within the org cannot add users outside the
org in spaces owned by the org
 Users within the org will not be able to join external
spaces
 Meetings are still allowed
Why:
Need to control Webex Teams usage
 Mitigate data loss (accidental or intentional)
 Regulatory implications of external comms
© 2016 Cisco and/or its affiliates. All rights reserved. 42
Webex Teams : Blocking consumer account use on
Corporate networks
What:
• Allow enterprise customers to block users from accessing Cisco
Webex with non-corporate/personal accounts.
• Users can log in only to whitelisted domains.
• Why:
• Enterprise customers require control in a lockdown environment
• Reduces risk of data exfiltration from corporate network
• Compliance with company policies
© 2016 Cisco and/or its affiliates. All rights reserved. 43
• Ensures the Webex Teams application can only accessed
on Passcode protected mobile devices
• Helps protects company data when accessing Webex Teams
from a mobile device
• Mobile phone message will warn user and point to
passcode settings
Client Security: PIN Lock on mobile devices
© 2016 Cisco and/or its affiliates. All rights reserved. 44
Webex Teams Control Hub – User Devices : Token
Revocation and Remote Wipe
• Administrator can revoke
Access Tokens for a User’s
Devices
• Reset Access force the User to
login the next time they access
Webex Teams.
• Reset Access also wipes the
cached content on mobile
devices.
• Ensures Secure User access
to Webex Teams after a device
is compromised.
45© 2016 Cisco and/or its affiliates. All rights reserved.
WebEx Teams
Network Security
© 2016 Cisco and/or its affiliates. All rights reserved. 46
Connecting to Webex through Enterprise Firewalls : Webex Teams
Apps and Devices
Firewalls : Whitelisting Ports and Destinations
You will need to allow Webex Teams media and signaling traffic to pass through your
Enterprise Firewall – For white listing details refer to :
Media Port Ranges :
Source UDP Ports : Voice 52000 - 52099, Video 52100- 52299
Source TCP/ HTTP Ports : Ephemeral (=> No DSCP re-marking)
Destination UDP/ TCP/ HTTP Port : 5004
Destination IP Addresses : Global IP subnets listed in doc above
Webex Teams Network Requirements doc :
https://collaborationhelp.cisco.com/article/en-us/WBX000028782
Webex Cloud
Signalling
UDP Media
© 2016 Cisco and/or its affiliates. All rights reserved. 47
• Basic Authentication
Common Proxy Authentication Methods
• NTLMv2 Authentication
• Negotiate Authentication
• Kerberos
• Digest Authentication
47© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
Webex Cloud
Signalling
UDP Media
© 2016 Cisco and/or its affiliates. All rights reserved. 48
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
Room OS Webex Board Windows Mac iOS Android
No
Authentication
Basic
Digest TBD TBD
NTLM Planning Planning
TLS Inspection Planning Q3CY18 Q3CY18
Kerberos Investigating Investigating Q3CY18 Q3CY18 TBD TBD
Webex Teams : Proxy Authentication Support
Refer to https://collaborationhelp.cisco.com/article/en-us/WBX000028782 for up to date details of feature support
© 2016 Cisco and/or its affiliates. All rights reserved. 49
Connecting to Webex from the Enterprise – 802.1X
802.1X Operation
???
• Switch port network access restricted
• Client presents credentials to Authentication Server
• After successful Authentication – switch port configured for the
Device e.g. VLAN(s), ACLs
Authentication
Server
49© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
Webex Cloud
Thank you.

More Related Content

What's hot

Cisco Connect Toronto 2018 DNA automation-the evolution to intent-based net...
Cisco Connect Toronto 2018   DNA automation-the evolution to intent-based net...Cisco Connect Toronto 2018   DNA automation-the evolution to intent-based net...
Cisco Connect Toronto 2018 DNA automation-the evolution to intent-based net...Cisco Canada
 
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUICisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUICisco Canada
 
Cisco Connect Vancouver 2017 - Cisco Meraki -Let Simple Work For You
Cisco Connect Vancouver 2017 - Cisco Meraki -Let Simple Work For YouCisco Connect Vancouver 2017 - Cisco Meraki -Let Simple Work For You
Cisco Connect Vancouver 2017 - Cisco Meraki -Let Simple Work For YouCisco Canada
 
Cisco Connect Toronto 2018 DevNet Overview
Cisco Connect Toronto 2018  DevNet OverviewCisco Connect Toronto 2018  DevNet Overview
Cisco Connect Toronto 2018 DevNet OverviewCisco Canada
 
Cisco Connect Halifax 2018 Application agility and programmability with cis...
Cisco Connect Halifax 2018   Application agility and programmability with cis...Cisco Connect Halifax 2018   Application agility and programmability with cis...
Cisco Connect Halifax 2018 Application agility and programmability with cis...Cisco Canada
 
Cisco Connect Toronto 2017 - Simplifying Cloud Adoption
Cisco Connect Toronto 2017 - Simplifying Cloud AdoptionCisco Connect Toronto 2017 - Simplifying Cloud Adoption
Cisco Connect Toronto 2017 - Simplifying Cloud AdoptionCisco Canada
 
Cloud and On Premises Collaboration Security Explained
Cloud and On Premises Collaboration Security ExplainedCloud and On Premises Collaboration Security Explained
Cloud and On Premises Collaboration Security ExplainedCisco Canada
 
Cisco Digital Network Architecture - Introducing the Network Intuitive
Cisco Digital Network Architecture - Introducing the Network IntuitiveCisco Digital Network Architecture - Introducing the Network Intuitive
Cisco Digital Network Architecture - Introducing the Network IntuitiveCisco Canada
 
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...Cisco Canada
 
Cisco Connect Halifax 2018 cloud and on premises collaboration security exp...
Cisco Connect Halifax 2018   cloud and on premises collaboration security exp...Cisco Connect Halifax 2018   cloud and on premises collaboration security exp...
Cisco Connect Halifax 2018 cloud and on premises collaboration security exp...Cisco Canada
 
Cisco Connect Halifax 2018 Cisco dna - network intuitive
Cisco Connect Halifax 2018   Cisco dna - network intuitiveCisco Connect Halifax 2018   Cisco dna - network intuitive
Cisco Connect Halifax 2018 Cisco dna - network intuitiveCisco Canada
 
Cisco Connect Toronto 2018 sixty to zero
Cisco Connect Toronto 2018   sixty to zeroCisco Connect Toronto 2018   sixty to zero
Cisco Connect Toronto 2018 sixty to zeroCisco Canada
 
Cisco Connect Toronto 2018 dc-aci-anywhere
Cisco Connect Toronto 2018   dc-aci-anywhereCisco Connect Toronto 2018   dc-aci-anywhere
Cisco Connect Toronto 2018 dc-aci-anywhereCisco Canada
 
Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...
Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...
Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...Cisco Canada
 
Cisco Connect Halifax 2018 Cisco Spark hybrid services architectural design
Cisco Connect Halifax 2018   Cisco Spark hybrid services architectural designCisco Connect Halifax 2018   Cisco Spark hybrid services architectural design
Cisco Connect Halifax 2018 Cisco Spark hybrid services architectural designCisco Canada
 
Cisco connect winnipeg 2018 gain insight and programmability with cisco dc ...
Cisco connect winnipeg 2018   gain insight and programmability with cisco dc ...Cisco connect winnipeg 2018   gain insight and programmability with cisco dc ...
Cisco connect winnipeg 2018 gain insight and programmability with cisco dc ...Cisco Canada
 
Cisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WAN
Cisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WANCisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WAN
Cisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WANCisco Canada
 
Cisco Connect Halifax 2018 Compute infrastructure for a hybrid cloud ucs an...
Cisco Connect Halifax 2018   Compute infrastructure for a hybrid cloud ucs an...Cisco Connect Halifax 2018   Compute infrastructure for a hybrid cloud ucs an...
Cisco Connect Halifax 2018 Compute infrastructure for a hybrid cloud ucs an...Cisco Canada
 
Integration cisco et microsoft connect montreal 2018
Integration cisco et microsoft connect montreal 2018Integration cisco et microsoft connect montreal 2018
Integration cisco et microsoft connect montreal 2018Cisco Canada
 
TechWiseTV Workshop: Cisco DNA Center Assurance
TechWiseTV Workshop: Cisco DNA Center AssuranceTechWiseTV Workshop: Cisco DNA Center Assurance
TechWiseTV Workshop: Cisco DNA Center AssuranceRobb Boyd
 

What's hot (20)

Cisco Connect Toronto 2018 DNA automation-the evolution to intent-based net...
Cisco Connect Toronto 2018   DNA automation-the evolution to intent-based net...Cisco Connect Toronto 2018   DNA automation-the evolution to intent-based net...
Cisco Connect Toronto 2018 DNA automation-the evolution to intent-based net...
 
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUICisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
 
Cisco Connect Vancouver 2017 - Cisco Meraki -Let Simple Work For You
Cisco Connect Vancouver 2017 - Cisco Meraki -Let Simple Work For YouCisco Connect Vancouver 2017 - Cisco Meraki -Let Simple Work For You
Cisco Connect Vancouver 2017 - Cisco Meraki -Let Simple Work For You
 
Cisco Connect Toronto 2018 DevNet Overview
Cisco Connect Toronto 2018  DevNet OverviewCisco Connect Toronto 2018  DevNet Overview
Cisco Connect Toronto 2018 DevNet Overview
 
Cisco Connect Halifax 2018 Application agility and programmability with cis...
Cisco Connect Halifax 2018   Application agility and programmability with cis...Cisco Connect Halifax 2018   Application agility and programmability with cis...
Cisco Connect Halifax 2018 Application agility and programmability with cis...
 
Cisco Connect Toronto 2017 - Simplifying Cloud Adoption
Cisco Connect Toronto 2017 - Simplifying Cloud AdoptionCisco Connect Toronto 2017 - Simplifying Cloud Adoption
Cisco Connect Toronto 2017 - Simplifying Cloud Adoption
 
Cloud and On Premises Collaboration Security Explained
Cloud and On Premises Collaboration Security ExplainedCloud and On Premises Collaboration Security Explained
Cloud and On Premises Collaboration Security Explained
 
Cisco Digital Network Architecture - Introducing the Network Intuitive
Cisco Digital Network Architecture - Introducing the Network IntuitiveCisco Digital Network Architecture - Introducing the Network Intuitive
Cisco Digital Network Architecture - Introducing the Network Intuitive
 
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
 
Cisco Connect Halifax 2018 cloud and on premises collaboration security exp...
Cisco Connect Halifax 2018   cloud and on premises collaboration security exp...Cisco Connect Halifax 2018   cloud and on premises collaboration security exp...
Cisco Connect Halifax 2018 cloud and on premises collaboration security exp...
 
Cisco Connect Halifax 2018 Cisco dna - network intuitive
Cisco Connect Halifax 2018   Cisco dna - network intuitiveCisco Connect Halifax 2018   Cisco dna - network intuitive
Cisco Connect Halifax 2018 Cisco dna - network intuitive
 
Cisco Connect Toronto 2018 sixty to zero
Cisco Connect Toronto 2018   sixty to zeroCisco Connect Toronto 2018   sixty to zero
Cisco Connect Toronto 2018 sixty to zero
 
Cisco Connect Toronto 2018 dc-aci-anywhere
Cisco Connect Toronto 2018   dc-aci-anywhereCisco Connect Toronto 2018   dc-aci-anywhere
Cisco Connect Toronto 2018 dc-aci-anywhere
 
Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...
Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...
Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...
 
Cisco Connect Halifax 2018 Cisco Spark hybrid services architectural design
Cisco Connect Halifax 2018   Cisco Spark hybrid services architectural designCisco Connect Halifax 2018   Cisco Spark hybrid services architectural design
Cisco Connect Halifax 2018 Cisco Spark hybrid services architectural design
 
Cisco connect winnipeg 2018 gain insight and programmability with cisco dc ...
Cisco connect winnipeg 2018   gain insight and programmability with cisco dc ...Cisco connect winnipeg 2018   gain insight and programmability with cisco dc ...
Cisco connect winnipeg 2018 gain insight and programmability with cisco dc ...
 
Cisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WAN
Cisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WANCisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WAN
Cisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WAN
 
Cisco Connect Halifax 2018 Compute infrastructure for a hybrid cloud ucs an...
Cisco Connect Halifax 2018   Compute infrastructure for a hybrid cloud ucs an...Cisco Connect Halifax 2018   Compute infrastructure for a hybrid cloud ucs an...
Cisco Connect Halifax 2018 Compute infrastructure for a hybrid cloud ucs an...
 
Integration cisco et microsoft connect montreal 2018
Integration cisco et microsoft connect montreal 2018Integration cisco et microsoft connect montreal 2018
Integration cisco et microsoft connect montreal 2018
 
TechWiseTV Workshop: Cisco DNA Center Assurance
TechWiseTV Workshop: Cisco DNA Center AssuranceTechWiseTV Workshop: Cisco DNA Center Assurance
TechWiseTV Workshop: Cisco DNA Center Assurance
 

Similar to Cisco Connect Toronto 2018 cloud and on premises collaboration security explained

Cisco Connect Ottawa 2018 cloud and on premises collaboration security explained
Cisco Connect Ottawa 2018 cloud and on premises collaboration security explainedCisco Connect Ottawa 2018 cloud and on premises collaboration security explained
Cisco Connect Ottawa 2018 cloud and on premises collaboration security explainedCisco Canada
 
#CiscoLiveLA 2017 Presentacion de Miro Polakovic
#CiscoLiveLA 2017 Presentacion de Miro Polakovic #CiscoLiveLA 2017 Presentacion de Miro Polakovic
#CiscoLiveLA 2017 Presentacion de Miro Polakovic ITSitio.com
 
Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...
Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...
Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...Cisco Canada
 
Cisco connect winnipeg 2018 hybrid collaboration
Cisco connect winnipeg 2018   hybrid collaborationCisco connect winnipeg 2018   hybrid collaboration
Cisco connect winnipeg 2018 hybrid collaborationCisco Canada
 
Webex APIs for Admins - Cisco Live Orlando 2018 - DEVNET-3610
Webex APIs for Admins - Cisco Live Orlando 2018 - DEVNET-3610Webex APIs for Admins - Cisco Live Orlando 2018 - DEVNET-3610
Webex APIs for Admins - Cisco Live Orlando 2018 - DEVNET-3610Cisco DevNet
 
Cisco Connect Vancouver 2017 - Cloud and on premises collaboration security e...
Cisco Connect Vancouver 2017 - Cloud and on premises collaboration security e...Cisco Connect Vancouver 2017 - Cloud and on premises collaboration security e...
Cisco Connect Vancouver 2017 - Cloud and on premises collaboration security e...Cisco Canada
 
SRV336_Build a Serverless, Face-Recognizing IoT Security System with Amazon R...
SRV336_Build a Serverless, Face-Recognizing IoT Security System with Amazon R...SRV336_Build a Serverless, Face-Recognizing IoT Security System with Amazon R...
SRV336_Build a Serverless, Face-Recognizing IoT Security System with Amazon R...Amazon Web Services
 
Cisco connect winnipeg 2018 cloud and on premises collaboration security ex...
Cisco connect winnipeg 2018   cloud and on premises collaboration security ex...Cisco connect winnipeg 2018   cloud and on premises collaboration security ex...
Cisco connect winnipeg 2018 cloud and on premises collaboration security ex...Cisco Canada
 
Straight Talk on End to End Encryption and Confidentiality
Straight Talk on End to End Encryption and ConfidentialityStraight Talk on End to End Encryption and Confidentiality
Straight Talk on End to End Encryption and ConfidentialityCisco Webex
 
Cloud and On Premises Collaboration Security Explained
Cloud and On Premises Collaboration Security ExplainedCloud and On Premises Collaboration Security Explained
Cloud and On Premises Collaboration Security ExplainedCisco Canada
 
Cisco Connect 2018 Indonesia - software-defined access-a transformational ap...
Cisco Connect 2018 Indonesia -  software-defined access-a transformational ap...Cisco Connect 2018 Indonesia -  software-defined access-a transformational ap...
Cisco Connect 2018 Indonesia - software-defined access-a transformational ap...NetworkCollaborators
 
Cisco Connect 2018 Philippines - software-defined access-a transformational ...
 Cisco Connect 2018 Philippines - software-defined access-a transformational ... Cisco Connect 2018 Philippines - software-defined access-a transformational ...
Cisco Connect 2018 Philippines - software-defined access-a transformational ...NetworkCollaborators
 
Securing the Ecosystem - Collaborating Inside & Out
Securing the Ecosystem - Collaborating Inside & OutSecuring the Ecosystem - Collaborating Inside & Out
Securing the Ecosystem - Collaborating Inside & OutTrent Adams
 
Building PaaS with Amazon EKS for the Large-Scale, Highly Regulated Enterpris...
Building PaaS with Amazon EKS for the Large-Scale, Highly Regulated Enterpris...Building PaaS with Amazon EKS for the Large-Scale, Highly Regulated Enterpris...
Building PaaS with Amazon EKS for the Large-Scale, Highly Regulated Enterpris...Amazon Web Services
 
emea_cisco_live_webinar_150623.pptx
emea_cisco_live_webinar_150623.pptxemea_cisco_live_webinar_150623.pptx
emea_cisco_live_webinar_150623.pptxThousandEyes
 
Cisco Connect Ottawa 2018 data centre security
Cisco Connect Ottawa 2018 data centre securityCisco Connect Ottawa 2018 data centre security
Cisco Connect Ottawa 2018 data centre securityCisco Canada
 
Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...
Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...
Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...NetworkCollaborators
 
Elastic Cloud Enterprise @ Cisco
Elastic Cloud Enterprise @ CiscoElastic Cloud Enterprise @ Cisco
Elastic Cloud Enterprise @ CiscoElasticsearch
 
Incredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIs
Incredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIsIncredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIs
Incredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIsRobb Boyd
 
CISCO’s Cloud Journey (Keynote at Cloud Symposium)
CISCO’s Cloud Journey (Keynote at Cloud Symposium) CISCO’s Cloud Journey (Keynote at Cloud Symposium)
CISCO’s Cloud Journey (Keynote at Cloud Symposium) Marcus McEwen
 

Similar to Cisco Connect Toronto 2018 cloud and on premises collaboration security explained (20)

Cisco Connect Ottawa 2018 cloud and on premises collaboration security explained
Cisco Connect Ottawa 2018 cloud and on premises collaboration security explainedCisco Connect Ottawa 2018 cloud and on premises collaboration security explained
Cisco Connect Ottawa 2018 cloud and on premises collaboration security explained
 
#CiscoLiveLA 2017 Presentacion de Miro Polakovic
#CiscoLiveLA 2017 Presentacion de Miro Polakovic #CiscoLiveLA 2017 Presentacion de Miro Polakovic
#CiscoLiveLA 2017 Presentacion de Miro Polakovic
 
Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...
Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...
Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...
 
Cisco connect winnipeg 2018 hybrid collaboration
Cisco connect winnipeg 2018   hybrid collaborationCisco connect winnipeg 2018   hybrid collaboration
Cisco connect winnipeg 2018 hybrid collaboration
 
Webex APIs for Admins - Cisco Live Orlando 2018 - DEVNET-3610
Webex APIs for Admins - Cisco Live Orlando 2018 - DEVNET-3610Webex APIs for Admins - Cisco Live Orlando 2018 - DEVNET-3610
Webex APIs for Admins - Cisco Live Orlando 2018 - DEVNET-3610
 
Cisco Connect Vancouver 2017 - Cloud and on premises collaboration security e...
Cisco Connect Vancouver 2017 - Cloud and on premises collaboration security e...Cisco Connect Vancouver 2017 - Cloud and on premises collaboration security e...
Cisco Connect Vancouver 2017 - Cloud and on premises collaboration security e...
 
SRV336_Build a Serverless, Face-Recognizing IoT Security System with Amazon R...
SRV336_Build a Serverless, Face-Recognizing IoT Security System with Amazon R...SRV336_Build a Serverless, Face-Recognizing IoT Security System with Amazon R...
SRV336_Build a Serverless, Face-Recognizing IoT Security System with Amazon R...
 
Cisco connect winnipeg 2018 cloud and on premises collaboration security ex...
Cisco connect winnipeg 2018   cloud and on premises collaboration security ex...Cisco connect winnipeg 2018   cloud and on premises collaboration security ex...
Cisco connect winnipeg 2018 cloud and on premises collaboration security ex...
 
Straight Talk on End to End Encryption and Confidentiality
Straight Talk on End to End Encryption and ConfidentialityStraight Talk on End to End Encryption and Confidentiality
Straight Talk on End to End Encryption and Confidentiality
 
Cloud and On Premises Collaboration Security Explained
Cloud and On Premises Collaboration Security ExplainedCloud and On Premises Collaboration Security Explained
Cloud and On Premises Collaboration Security Explained
 
Cisco Connect 2018 Indonesia - software-defined access-a transformational ap...
Cisco Connect 2018 Indonesia -  software-defined access-a transformational ap...Cisco Connect 2018 Indonesia -  software-defined access-a transformational ap...
Cisco Connect 2018 Indonesia - software-defined access-a transformational ap...
 
Cisco Connect 2018 Philippines - software-defined access-a transformational ...
 Cisco Connect 2018 Philippines - software-defined access-a transformational ... Cisco Connect 2018 Philippines - software-defined access-a transformational ...
Cisco Connect 2018 Philippines - software-defined access-a transformational ...
 
Securing the Ecosystem - Collaborating Inside & Out
Securing the Ecosystem - Collaborating Inside & OutSecuring the Ecosystem - Collaborating Inside & Out
Securing the Ecosystem - Collaborating Inside & Out
 
Building PaaS with Amazon EKS for the Large-Scale, Highly Regulated Enterpris...
Building PaaS with Amazon EKS for the Large-Scale, Highly Regulated Enterpris...Building PaaS with Amazon EKS for the Large-Scale, Highly Regulated Enterpris...
Building PaaS with Amazon EKS for the Large-Scale, Highly Regulated Enterpris...
 
emea_cisco_live_webinar_150623.pptx
emea_cisco_live_webinar_150623.pptxemea_cisco_live_webinar_150623.pptx
emea_cisco_live_webinar_150623.pptx
 
Cisco Connect Ottawa 2018 data centre security
Cisco Connect Ottawa 2018 data centre securityCisco Connect Ottawa 2018 data centre security
Cisco Connect Ottawa 2018 data centre security
 
Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...
Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...
Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...
 
Elastic Cloud Enterprise @ Cisco
Elastic Cloud Enterprise @ CiscoElastic Cloud Enterprise @ Cisco
Elastic Cloud Enterprise @ Cisco
 
Incredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIs
Incredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIsIncredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIs
Incredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIs
 
CISCO’s Cloud Journey (Keynote at Cloud Symposium)
CISCO’s Cloud Journey (Keynote at Cloud Symposium) CISCO’s Cloud Journey (Keynote at Cloud Symposium)
CISCO’s Cloud Journey (Keynote at Cloud Symposium)
 

More from Cisco Canada

Cisco connect montreal 2018 net devops
Cisco connect montreal 2018 net devopsCisco connect montreal 2018 net devops
Cisco connect montreal 2018 net devopsCisco Canada
 
Cisco connect montreal 2018 iot demo kinetic fr
Cisco connect montreal 2018   iot demo kinetic frCisco connect montreal 2018   iot demo kinetic fr
Cisco connect montreal 2018 iot demo kinetic frCisco Canada
 
Cisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
Cisco connect montreal 2018 - Network Slicing: Horizontal VirtualizationCisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
Cisco connect montreal 2018 - Network Slicing: Horizontal VirtualizationCisco Canada
 
Cisco connect montreal 2018 secure dc
Cisco connect montreal 2018    secure dcCisco connect montreal 2018    secure dc
Cisco connect montreal 2018 secure dcCisco Canada
 
Cisco connect montreal 2018 enterprise networks - say goodbye to vla ns
Cisco connect montreal 2018   enterprise networks - say goodbye to vla nsCisco connect montreal 2018   enterprise networks - say goodbye to vla ns
Cisco connect montreal 2018 enterprise networks - say goodbye to vla nsCisco Canada
 
Cisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse localeCisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse localeCisco Canada
 
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec CiscoCisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec CiscoCisco Canada
 
Cisco connect montreal 2018 collaboration les services webex hybrides
Cisco connect montreal 2018 collaboration les services webex hybridesCisco connect montreal 2018 collaboration les services webex hybrides
Cisco connect montreal 2018 collaboration les services webex hybridesCisco Canada
 
Cisco connect montreal 2018 compute v final
Cisco connect montreal 2018   compute v finalCisco connect montreal 2018   compute v final
Cisco connect montreal 2018 compute v finalCisco Canada
 
Cisco connect montreal 2018 saalvare md-program-xr-v2
Cisco connect montreal 2018 saalvare md-program-xr-v2Cisco connect montreal 2018 saalvare md-program-xr-v2
Cisco connect montreal 2018 saalvare md-program-xr-v2Cisco Canada
 
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco Canada
 
Cisco Connect Toronto 2018 IOT - unlock the power of data - securing the in...
Cisco Connect Toronto 2018   IOT - unlock the power of data - securing the in...Cisco Connect Toronto 2018   IOT - unlock the power of data - securing the in...
Cisco Connect Toronto 2018 IOT - unlock the power of data - securing the in...Cisco Canada
 
Cisco Connect Toronto 2018 DNA assurance
Cisco Connect Toronto 2018  DNA assuranceCisco Connect Toronto 2018  DNA assurance
Cisco Connect Toronto 2018 DNA assuranceCisco Canada
 
Cisco Connect Toronto 2018 network-slicing
Cisco Connect Toronto 2018   network-slicingCisco Connect Toronto 2018   network-slicing
Cisco Connect Toronto 2018 network-slicingCisco Canada
 
Cisco Connect Toronto 2018 the intelligent network with cisco meraki
Cisco Connect Toronto 2018   the intelligent network with cisco merakiCisco Connect Toronto 2018   the intelligent network with cisco meraki
Cisco Connect Toronto 2018 the intelligent network with cisco merakiCisco Canada
 
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...Cisco Canada
 
Cisco Connect Ottawa 2018 dna automation the evolution to intent-based netw...
Cisco Connect Ottawa 2018 dna automation   the evolution to intent-based netw...Cisco Connect Ottawa 2018 dna automation   the evolution to intent-based netw...
Cisco Connect Ottawa 2018 dna automation the evolution to intent-based netw...Cisco Canada
 
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocence
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocenceCisco Connect Ottawa 2018 dna assurance shortest path to network innocence
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocenceCisco Canada
 
Cisco Connect Ottawa 2018 data center - protecting your data with Cisco hyp...
Cisco Connect Ottawa 2018   data center - protecting your data with Cisco hyp...Cisco Connect Ottawa 2018   data center - protecting your data with Cisco hyp...
Cisco Connect Ottawa 2018 data center - protecting your data with Cisco hyp...Cisco Canada
 
Cisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
Cisco Connect Ottawa 2018 the intelligent network with Cisco MerakiCisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
Cisco Connect Ottawa 2018 the intelligent network with Cisco MerakiCisco Canada
 

More from Cisco Canada (20)

Cisco connect montreal 2018 net devops
Cisco connect montreal 2018 net devopsCisco connect montreal 2018 net devops
Cisco connect montreal 2018 net devops
 
Cisco connect montreal 2018 iot demo kinetic fr
Cisco connect montreal 2018   iot demo kinetic frCisco connect montreal 2018   iot demo kinetic fr
Cisco connect montreal 2018 iot demo kinetic fr
 
Cisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
Cisco connect montreal 2018 - Network Slicing: Horizontal VirtualizationCisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
Cisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
 
Cisco connect montreal 2018 secure dc
Cisco connect montreal 2018    secure dcCisco connect montreal 2018    secure dc
Cisco connect montreal 2018 secure dc
 
Cisco connect montreal 2018 enterprise networks - say goodbye to vla ns
Cisco connect montreal 2018   enterprise networks - say goodbye to vla nsCisco connect montreal 2018   enterprise networks - say goodbye to vla ns
Cisco connect montreal 2018 enterprise networks - say goodbye to vla ns
 
Cisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse localeCisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse locale
 
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec CiscoCisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
 
Cisco connect montreal 2018 collaboration les services webex hybrides
Cisco connect montreal 2018 collaboration les services webex hybridesCisco connect montreal 2018 collaboration les services webex hybrides
Cisco connect montreal 2018 collaboration les services webex hybrides
 
Cisco connect montreal 2018 compute v final
Cisco connect montreal 2018   compute v finalCisco connect montreal 2018   compute v final
Cisco connect montreal 2018 compute v final
 
Cisco connect montreal 2018 saalvare md-program-xr-v2
Cisco connect montreal 2018 saalvare md-program-xr-v2Cisco connect montreal 2018 saalvare md-program-xr-v2
Cisco connect montreal 2018 saalvare md-program-xr-v2
 
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
 
Cisco Connect Toronto 2018 IOT - unlock the power of data - securing the in...
Cisco Connect Toronto 2018   IOT - unlock the power of data - securing the in...Cisco Connect Toronto 2018   IOT - unlock the power of data - securing the in...
Cisco Connect Toronto 2018 IOT - unlock the power of data - securing the in...
 
Cisco Connect Toronto 2018 DNA assurance
Cisco Connect Toronto 2018  DNA assuranceCisco Connect Toronto 2018  DNA assurance
Cisco Connect Toronto 2018 DNA assurance
 
Cisco Connect Toronto 2018 network-slicing
Cisco Connect Toronto 2018   network-slicingCisco Connect Toronto 2018   network-slicing
Cisco Connect Toronto 2018 network-slicing
 
Cisco Connect Toronto 2018 the intelligent network with cisco meraki
Cisco Connect Toronto 2018   the intelligent network with cisco merakiCisco Connect Toronto 2018   the intelligent network with cisco meraki
Cisco Connect Toronto 2018 the intelligent network with cisco meraki
 
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
 
Cisco Connect Ottawa 2018 dna automation the evolution to intent-based netw...
Cisco Connect Ottawa 2018 dna automation   the evolution to intent-based netw...Cisco Connect Ottawa 2018 dna automation   the evolution to intent-based netw...
Cisco Connect Ottawa 2018 dna automation the evolution to intent-based netw...
 
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocence
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocenceCisco Connect Ottawa 2018 dna assurance shortest path to network innocence
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocence
 
Cisco Connect Ottawa 2018 data center - protecting your data with Cisco hyp...
Cisco Connect Ottawa 2018   data center - protecting your data with Cisco hyp...Cisco Connect Ottawa 2018   data center - protecting your data with Cisco hyp...
Cisco Connect Ottawa 2018 data center - protecting your data with Cisco hyp...
 
Cisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
Cisco Connect Ottawa 2018 the intelligent network with Cisco MerakiCisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
Cisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
 

Recently uploaded

Azure Monitor & Application Insight to monitor Infrastructure & Application
Azure Monitor & Application Insight to monitor Infrastructure & ApplicationAzure Monitor & Application Insight to monitor Infrastructure & Application
Azure Monitor & Application Insight to monitor Infrastructure & ApplicationAndikSusilo4
 
Pigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions
 
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptxMaking_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptxnull - The Open Security Community
 
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Scott Keck-Warren
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationMichael W. Hawkins
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesSinan KOZAK
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machinePadma Pradeep
 
Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...Alan Dix
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationRidwan Fadjar
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking MenDelhi Call girls
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024Scott Keck-Warren
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slidespraypatel2
 
Snow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter RoadsSnow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter RoadsHyundai Motor Group
 
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxThe Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxMalak Abu Hammad
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonetsnaman860154
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...shyamraj55
 
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your BudgetHyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your BudgetEnjoy Anytime
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking MenDelhi Call girls
 

Recently uploaded (20)

Azure Monitor & Application Insight to monitor Infrastructure & Application
Azure Monitor & Application Insight to monitor Infrastructure & ApplicationAzure Monitor & Application Insight to monitor Infrastructure & Application
Azure Monitor & Application Insight to monitor Infrastructure & Application
 
Pigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping Elbows
 
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptxMaking_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
 
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
Vulnerability_Management_GRC_by Sohang Sengupta.pptx
Vulnerability_Management_GRC_by Sohang Sengupta.pptxVulnerability_Management_GRC_by Sohang Sengupta.pptx
Vulnerability_Management_GRC_by Sohang Sengupta.pptx
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen Frames
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machine
 
Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 Presentation
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slides
 
Snow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter RoadsSnow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter Roads
 
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxThe Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptx
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
 
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your BudgetHyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
 

Cisco Connect Toronto 2018 cloud and on premises collaboration security explained

  • 1. Cisco Connect Toronto Canada • 18 October 2018 Cloud and On Premises Collaboration Security Joseph Bassaly Architect
  • 2. © 2016 Cisco and/or its affiliates. All rights reserved. 2 What will we cover today ? • Cisco Collaboration Elements • Managing Identity • Cisco WebExTeams Security concepts • Cisco WebExTeam compliance and Archival • Cisco Enterprise Content Management (Coming Soon) • Cisco Control Hub Security Capabilities • Cisco WebExTeam Network Security • Cisco WebExTeams Security Roadmap
  • 3. © 2016 Cisco and/or its affiliates. All rights reserved. 3 Messaging Call ControlMeetings Seamless Collaboration Experience Link on-premises assets to the cloud
  • 4. © 2016 Cisco and/or its affiliates. All rights reserved. 4 WebEx Teams Client Collaboration Elements WebEx Board Video End Points MEDIA NODES Expressway Existing Services Teams Meeting Jabber IM & Presence Communication Manager Unity Connection
  • 5. 5© 2016 Cisco and/or its affiliates. All rights reserved. Managing Identity
  • 6. © 2016 Cisco and/or its affiliates. All rights reserved. 6 IdP – Identity Provider: RP – Relying Party Users Explicit Initial Trust Agreement Identity Framework 6
  • 7. © 2016 Cisco and/or its affiliates. All rights reserved. 7 Alex Authentication and Authorization (AuthN and AuthZ) Authentication Authorization 7 Authentication verifies that “you are who you say you are” Authorization verifies that “you are permitted to do what you are trying to do”
  • 8. © 2016 Cisco and/or its affiliates. All rights reserved. 8 Authentication and Authorization (SAML and OAuth) Authorization Client Services IdP Authentication
  • 9. © 2016 Cisco and/or its affiliates. All rights reserved. 9 User & Device Management Roles based Access Security & Compliance Analytics & Reports SSO & Directory Sync Manage Services & Integrations 9 Cisco Control Hub
  • 10. © 2016 Cisco and/or its affiliates. All rights reserved. 10 10BRKCOL-2080 User Provisioning • Directory Connector (recommended) • Manual creation Add or modify users Bulk CSV import • Convert existing users who already have a Spark account Directory Connector Active Directory Cisco Collaboration Cloud Identity/SSO HTTPS
  • 11. 11© 2016 Cisco and/or its affiliates. All rights reserved. Cisco WebEx Team Security
  • 12. © 2016 Cisco and/or its affiliates. All rights reserved. 12 Webex Cloud Security - Realms of Separation Identity Service Content Server Key Mgmt Service Indexing Service E-Discovery Service Webex logically and physically separates functional components within the cloud Identity Services holding real user Identity (e.g. email addresses) are separated from : Encryption, Indexing and E-Discovery Services, which are in turn separated from : Data Storage Services Data Center A Data Center B Data Center C 12© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public Webex Cloud
  • 13. © 2016 Cisco and/or its affiliates. All rights reserved. 13 Realms of Separation – Identity Obfuscation Identity Service Content Server Key Mgmt Service Indexing Service E-Discovery Service Outside of the Identity Service - Real Identity information is obfuscated : For each User ID, Webex Teams generates a random 128-bit Universally Unique Identifier (UUID) = The User’s obfuscated identity No real identity information transits the cloud Data Center A Data Center B Data Center C jsmith@abc.comhtzb2n78jdbc9e 13© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public Webex Cloud
  • 14. © 2016 Cisco and/or its affiliates. All rights reserved. 14 Directory Sync Identity Service © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public Webex Cloud Webex Teams – User Identity Sync
  • 15. © 2016 Cisco and/or its affiliates. All rights reserved. 15 Directory Sync SAML SSO Identity Service IdP Webex Cloud Webex Teams SAML Authentication
  • 16. © 2016 Cisco and/or its affiliates. All rights reserved. 16 Webex Teams App – Cloud connection IdP Identity Service Webex Teams Service Webex Cloud
  • 17. © 2016 Cisco and/or its affiliates. All rights reserved. 17 Webex Teams Device – cloud connection Identity Service 1234567890123456 17 Webex Teams Service Webex Cloud
  • 18. 18© 2016 Cisco and/or its affiliates. All rights reserved. WebEx Teams Secure Messages and Content
  • 19. © 2016 Cisco and/or its affiliates. All rights reserved. 19 Content Server Key Mgmt Service ####### #######message ####filemessage Webex Teams- Encrypting Messages and Content Key Management Service AES256-GCM cipher used for Encryption 19 Webex Cloud
  • 20. © 2016 Cisco and/or its affiliates. All rights reserved. 20 Key Mgmt Service message#######message Content Server ####### #######message Webex Teams - Decrypting Messages and Content Key Management Service 20 Webex Cloud
  • 21. 21© 2016 Cisco and/or its affiliates. All rights reserved. WebEx Teams Secure Search and Indexing
  • 22. © 2016 Cisco and/or its affiliates. All rights reserved. 22 Indexing Service Webex IS the messageWebex IS the message Content Server Webex IS the message Key Mgmt Service ################### Searching Webex Teams Spaces: Building a Search Index ################### B957FE48 B9 57 FE 48 Hash Algorithm ################# Indexing Service ################# * A new (SHA-256 HMAC) hashing key (Search Key) is used for each space Search Service Webex Cloud
  • 23. © 2016 Cisco and/or its affiliates. All rights reserved. 23 Indexing Service “Webex”Webex Content Server Key Mgmt Service ################### Webex Teams spaces : Querying a Search Index Search for the word “Webex” ################### B957FE48 B9 57 FE 48 Hash Algorithm Indexing Service “Webex” Search for the word “Webex” “B9”###################################### Webex IS the Message B9 *A link to Conversation Encryption Key is sent with encrypted message Search Service Webex Cloud B9 57 FE 48
  • 24. © 2016 Cisco and/or its affiliates. All rights reserved. 24 Cisco Webex Control Hub Indexing Service Jo Smith’s ContentJo Smith’s Content Content Server Key Mgmt Service ################### Webex Teams E-Discovery Service ################### X1GFT5YY Hash Algorithm Indexing Service Jo Smith’s Content “X1GFT5YY” Jo Smith’s Content ################### X1GFT5YY E-Discovery Service ################### Jo Smith’s Content ################### Jo Smith’s Content ################# Search Service Webex Cloud
  • 25. © 2016 Cisco and/or its affiliates. All rights reserved. 25 E-Discov. Storage E-Discovery ServiceContent Server Key Mgmt Service Webex Teams E-Discovery Service E-Discovery Service Cisco Webex Control Hub Jo Smith’s Content################### Jo Smith’s Content################### Jo Smith’s Content################### Jo Smith’s Messages and Files ####################################### ################## ####################################### ################## Jo Smith’s Messages and Files Search Service Webex Cloud E-Discovery Content Ready
  • 26. © 2016 Cisco and/or its affiliates. All rights reserved. 26 Secure Data Center Content Server Key Mgmt Service Webex Teams – Hybrid Data Security (HDS) E-Discovery ServiceIndexing Service Hybrid Data Security Hybrid Data Services = On Premise : Key Management Server Indexing Server E-Discovery Service 26© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public Webex Cloud
  • 27. © 2016 Cisco and/or its affiliates. All rights reserved. 27 Hybrid Key Management Servers in different Organizations establish an encrypted connection via the Webex Cloud Key Mgmt ServiceKey Mgmt Service Content Server Key Mgmt Service HDS: Key Management Server Federation Hybrid Key Management Servers make outbound connections only : HTTPS, Web Socket Secure (WSS) Organization A Organization B messagemessage Webex Cloud
  • 28. 28© 2016 Cisco and/or its affiliates. All rights reserved. Compliance and Archival
  • 29. © 2016 Cisco and/or its affiliates. All rights reserved. 29 Security & Compliance Program Compliance Content Ownership, Retention, Archival, E- Discovery, Legal Hold, Events APIs Device and User Management Mobile App Management, Identity, Integration & Ent Admin Management Data Security End to End Encryption, On-Premises Key Management System (KMS), Cloud KMS Network Connectivity Proxy & Firewall rules for Webex Apps and Endpoints. TLS 1.2, 802.1X Certifications & Regulations Certifications (ISO27K, SOC-2/3, HIPAA, PCI), Regulatory compliance (GDPR, MIFID, BCR) Webex Teams Security and Compliance Initiative Enterprise Content Management Support for External 3rd Party File Systems, Transcoding 29
  • 30. © 2016 Cisco and/or its affiliates. All rights reserved. 30 Compliance Officer : Advanced filters for search The Compliance Data Search function is restricted to compliance officer(s) only Search for content in messages and file names Search by e-mail addresses, or Space IDs Search by date range https://admin.webex.com/ediscovery/search
  • 31. © 2016 Cisco and/or its affiliates. All rights reserved. 31 Compliance Officer : Search Results Report Summary 31
  • 32. © 2016 Cisco and/or its affiliates. All rights reserved. 32 Webex Teams Control Hub : Administrator defined Retention Policy • Default Retention Period : Indefinite • Subject to storage limits • Configurable Retention Period : 1 to 120 months Webex Teams Message and File Retention https://admin.webex.com/settings
  • 33. © 2016 Cisco and/or its affiliates. All rights reserved. 33 How can you archive Webex Teams data? Use Cases • Sophisticated eDiscovery • Legal Hold • Retention policies based on groups Options • Out-of-the-box Solution : Integrations with Archival partners e.g. Actiance • Custom Solution : Cisco Advanced Services software & services e.g. Global Relay • DIY : Use Systems Integrator or self integrate Events API with Archival software Archival System Events API Enterprise E-Discovery Application Webex Cloud 33
  • 34. © 2016 Cisco and/or its affiliates. All rights reserved. 34 Archival Vendors : Feature support (June 2018) Actiance Global Relay Verint Verba Archive Messages Yes Yes Yes Archive Files Yes Yes Yes Integrate with eVaults Veritas, HP, IBM N/A Yes On-premise vs Cloud On-Prem, Cloud, Hybrid Yes On-premise Native-integration vs Services engagement Native-integration Cisco AS engagement Native-integration
  • 35. © 2016 Cisco and/or its affiliates. All rights reserved. 35 Webex Teams Events API enables polling for Events and Content generated by users Allows organizations to monitor and correct user behavior (e.g. Delete Content, Alert User, Alert Administrator), preventing the loss of sensitive data Webex Cloud Events API Content Property Membership Events DLP or CASB Policies Corrective Actions Delete content/ Alert user/ Alert admin Data Loss Prevention (DLP) : Monitor and React Webex Teams Integrations Cisco Cloudlock Third Party Vendors Skyhigh, Global Relay etc. CASB : Cloud Access Security Broker
  • 36. © 2016 Cisco and/or its affiliates. All rights reserved. 36 Webex Teams Integrations Compliance: Data Loss Prevention & Archival (Cisco Advanced Services offering) 36
  • 37. © 2016 Cisco and/or its affiliates. All rights reserved. 37 Data Loss Prevention : Feature support (June 2018) Cisco Cloudlock Symantec SkyHigh Netskope Bitglass Verint Verba Monitor Messages Yes Future Yes Yes Yes Yes Monitor Files Yes Yes Yes Yes Yes No Alerts on violations Yes Yes Yes Yes Yes Yes Deletion of offending Messages Yes Future Yes Yes Yes Yes Deletion of offending Files Yes Future Yes Yes Yes No Malware detection/removal No Yes (Detection) Future Future Yes No Configure policy per space or group Yes (User, Space) Yes (User, Space, Team) Yes (AD groups) Yes Yes Yes
  • 38. 38© 2016 Cisco and/or its affiliates. All rights reserved. WebEx Teams Control Hub Security Settings
  • 39. © 2016 Cisco and/or its affiliates. All rights reserved. 39 Controlling User Generated Content Fine grained controls : DLP/CASB policy enforcement • Block Social Security Numbers, Credit Card Details • Block High Risk Users • Block Highly Confidential Content Coarse grained controls: Organization wide settings in Webex Teams Control Hub • Block External Communication • Block File download • Block File upload Finer controls enable IT Departments to enable external communications while still being secure Block All Block Highly Confidential Block Social Security Numbers Allow But Warn Users Warn me about communications with competitors Block High Risk User Groups Block File Types based on AD Group Block content from being sent to users in China 39
  • 40. © 2016 Cisco and/or its affiliates. All rights reserved. 40 File Sharing Control • Allows Webex Teams customers to control file downloads and uploads on specific client types : Desktop/ Web/ Mobile/ Bots • Administrator Controlled • Files and Whiteboard icons greyed • User warning if file share attempted Addresses : Data Loss concerns Malware concerns Provides : Mobile Application Management controls on Bring Your Own Devices
  • 41. © 2016 Cisco and/or its affiliates. All rights reserved. 41 Webex Teams : Blocking External Communication What: Provide administrator with controls to prevent external communication  Users within the org cannot add users outside the org in spaces owned by the org  Users within the org will not be able to join external spaces  Meetings are still allowed Why: Need to control Webex Teams usage  Mitigate data loss (accidental or intentional)  Regulatory implications of external comms
  • 42. © 2016 Cisco and/or its affiliates. All rights reserved. 42 Webex Teams : Blocking consumer account use on Corporate networks What: • Allow enterprise customers to block users from accessing Cisco Webex with non-corporate/personal accounts. • Users can log in only to whitelisted domains. • Why: • Enterprise customers require control in a lockdown environment • Reduces risk of data exfiltration from corporate network • Compliance with company policies
  • 43. © 2016 Cisco and/or its affiliates. All rights reserved. 43 • Ensures the Webex Teams application can only accessed on Passcode protected mobile devices • Helps protects company data when accessing Webex Teams from a mobile device • Mobile phone message will warn user and point to passcode settings Client Security: PIN Lock on mobile devices
  • 44. © 2016 Cisco and/or its affiliates. All rights reserved. 44 Webex Teams Control Hub – User Devices : Token Revocation and Remote Wipe • Administrator can revoke Access Tokens for a User’s Devices • Reset Access force the User to login the next time they access Webex Teams. • Reset Access also wipes the cached content on mobile devices. • Ensures Secure User access to Webex Teams after a device is compromised.
  • 45. 45© 2016 Cisco and/or its affiliates. All rights reserved. WebEx Teams Network Security
  • 46. © 2016 Cisco and/or its affiliates. All rights reserved. 46 Connecting to Webex through Enterprise Firewalls : Webex Teams Apps and Devices Firewalls : Whitelisting Ports and Destinations You will need to allow Webex Teams media and signaling traffic to pass through your Enterprise Firewall – For white listing details refer to : Media Port Ranges : Source UDP Ports : Voice 52000 - 52099, Video 52100- 52299 Source TCP/ HTTP Ports : Ephemeral (=> No DSCP re-marking) Destination UDP/ TCP/ HTTP Port : 5004 Destination IP Addresses : Global IP subnets listed in doc above Webex Teams Network Requirements doc : https://collaborationhelp.cisco.com/article/en-us/WBX000028782 Webex Cloud Signalling UDP Media
  • 47. © 2016 Cisco and/or its affiliates. All rights reserved. 47 • Basic Authentication Common Proxy Authentication Methods • NTLMv2 Authentication • Negotiate Authentication • Kerberos • Digest Authentication 47© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public Webex Cloud Signalling UDP Media
  • 48. © 2016 Cisco and/or its affiliates. All rights reserved. 48 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public Room OS Webex Board Windows Mac iOS Android No Authentication Basic Digest TBD TBD NTLM Planning Planning TLS Inspection Planning Q3CY18 Q3CY18 Kerberos Investigating Investigating Q3CY18 Q3CY18 TBD TBD Webex Teams : Proxy Authentication Support Refer to https://collaborationhelp.cisco.com/article/en-us/WBX000028782 for up to date details of feature support
  • 49. © 2016 Cisco and/or its affiliates. All rights reserved. 49 Connecting to Webex from the Enterprise – 802.1X 802.1X Operation ??? • Switch port network access restricted • Client presents credentials to Authentication Server • After successful Authentication – switch port configured for the Device e.g. VLAN(s), ACLs Authentication Server 49© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public Webex Cloud