Video: Rocket Customer Webinar: Reflection Enterprise Suite Lifecycle | Duration: 3060s | Summary: Rocket Customer Webinar: Reflection Enterprise Suite Lifecycle | Chapters: Welcome and Introduction (3.52s), Historical Background Overview (99.585s), Secure Host Access (278.16s), Security Journey Ahead (423.35s), Secure Host Access Features (1059.1749s), Desktop Client Upgrade (1420.5651s), Client Migration Differences (1551.595s), Product Lifecycle Management (1898.1449s), Product Lifecycle Policies (2273.49s), Customer Support Commitment (2450.085s), Feedback and Support (2545.99s), Web-Based Terminal Emulation (2691.71s), Managing Thick Clients (2794.61s), Q&A on Authentication (2836.7249s), Conclusion and Contact (2941.5698s)
Transcript for "Rocket Customer Webinar: Reflection Enterprise Suite Lifecycle": Hello, and welcome, everyone. I thank you all for being here. I am Evan Hackett. I am the solution marketer, looking after Secure Host Access and all the other terminal emulators here at Rocket. I am really excited to be here today, because there's a lot of exciting stuff happening around Secure Host Access, and, I know we've got a a really interesting session for all of you, Reflection Enterprise Suite customers. I think there's a lot of cool stuff in store for you, and, I'm excited for for Barbara and Chris to kind of run through everything that we we have in mind for you. So if it wasn't obvious, I am joined here with, the the principal product managers, Barbara Ballard and Chris Lal. You'll be hearing from them shortly. For a little, a little housekeeping, I want to say that we really would like for this to be, an engaging and informative session. So if you have questions, feel free to pop them in the chat and the q and a panel, and I will raise them to Barbara and Chris during the session. We will also have a q and a section at the end of the presentation. So if you have, questions that you that you'd like to raise, then you're welcome to. But, I think with that, I'll I'll go ahead and hand it off to Chris to get us started. Sounds great, Evan. Thank you, and thanks everyone for joining today. Here's what the agenda looks like. We're gonna go through a little bit of, history and background on how we got to where we are, all the different, companies, mergers, acquisitions, and brand product brand names that, you know, are fall under the rocket umbrella today and where they came from, what the path forward looks like, which is basically, secure host access, and hopefully, you've received some communications about that over the past couple of months. We'll talk about the product life cycle, bringing together life cycle policies from a bunch of different, heritage companies and products. And now we've, got that information, you know, published on a website and wanna share that with you. And then we'll talk about, you know, how what does support like for all these, legacy terminal emulators, including Reflection Enterprise Suite and, and and the products included in the suite. You know, what does that look like going forward, our commitment, our support, and so forth. And, of course, we'll do, much of q and a at the end or in the middle. Depends on when when you ask questions and and so forth. So let's look at, a little bit of the, historical background. First, we gotta do a disclaimer. Right? So some of the information we're gonna talk about today is forward looking. It could change, you know, just be aware that, we're being as as straightforward and upfront as we can based on what we know today, and things probably can and will change in the future that could change things that we tell you. So just be aware of that, please. Thank you. And then with regards to the historical background, we'd like to show this little, diagram or or ant farm, if you will, of, you know, if you look at the horizontal lines of all the companies and all the terminal emulation products, kind of where they came from, when they started, and, you know, the corporate journey kinda that we've been on for many years. Barbara and I have, you know, started to detach me a couple of years ago, Barbara. And and, and now we've ended up with Rocket through a bunch of merger merger acquisitions. To give you a little bit of background on reflection in in particular, so the way this kind of, you know, evolved is, there was the extra mainframe server edition product back in the day at Heritage Attachment, then that included that was a bundle that included extra thick client and a thin client. When we say thick, we mean like a desktop native Windows emulator. When we say thin client, we're really talking about a web based browser based terminal emulator. So those are the core components of that bundle. And then, when Attachment WBRQ came together in 02/2005, we built this other product based on reflection what ultimately became Reflection Desktop product and Reflection for the web. So Reflection Enterprise Suite, again, was a a bundle of thick and thin. And then, you know, there was the acquisition by Micro Focus and then OpenText, and now we're under the Rocket portfolio. And, we're moving everybody, to a new solution called Secure Host Access. So we're very excited to talk about Secure Host Access today. Hopefully, that gives you an overview. I'm sure you recognize some of these heritage companies and brands and so forth. I'm sure you're a company, anybody who's joined today that works for a large enterprise, you've been through many merger acquisitions and kind of could create the same kind of diagram, interesting guy diagram of the of your own co corporate journey. But this is how we got here. We're very happy to be with Rocket now. And, with that, I'm gonna turn it over to Barbara to talk a bit more about why we are happy to be here. Thank you, Chris. And thanks for everybody joining today and taking your time to spend a little time with us. So yeah. So Chris and I joined the company, quite a while ago. I was young then, 10, and been here with just almost thirty years. But, so these are the the rocket values, if you will. And, while, you know, most companies have values, I what's important to me about this slide and my conversation with you as my customer is I I just wanna communicate to you because you've been on this road with us and you've been through a lot of the mergers and acquisitions that Chris just mentioned. But what is what is important here is that you have really landed in a good spot. The acquisition by rocket happened about eighteen months ago. I was a little leery at first. I think, I think you probably were too, but I will just tell you, my experiences, you are in a very good spot. Rocket cares about their customers. Customers are really at the focus of everything they do, from feedback to to, creating products, and it's just a wonderful company. It's a wonderful company for you as my customer, but it's also a wonderful company for me as an employee. So, most companies, as I've said, have values, but I think what's different about Rocket is they actually walk the walk and talk the talk, not just talk the talk. So, so I hope you're as happy to be here as we are, and this leads into really what we have been doing and why we're going to be on this journey with us. I think you're gonna see some great value today. But, again, because we care about you, if you don't see value, we are not gonna make you change your emulator. So, so that's an important note to keep in the back of your mind as we walk through this entire presentation. So let's talk a little bit about the path ahead. So while I've been in terminalation boy, there you go. Terminal emulation for thirty years. My last ten years has really been spent in enterprise security and trying to help organizations, much like you, fit that terminal emulator into the enterprise security. And why? Well, because of the landscape that you see on your screen right now. Right? These are statistics that mostly most of them came from, like IBM or Gartner. These are just, and I'm not gonna go over them ad nauseam. But, really, what is happening here is, you know, we started about ten years ago, ten to twelve years ago with one of the first major breaches that comp they were using compromised user names and passwords. That's what we developed, the HSPD 12. That was The US federal mandate. No more usernames and passwords. And if you speed through the next twelve years, we are now at a place where almost everybody is telling you, you have to use multi factor authentication. And this is the journey that we're on. This is a security journey. It is a modernization journey. It is a journey for you as a customer with a mainframe in their organization, figuring out how to do things to make the crown jewel of your company, which, yes, is your mainframe, more secure like it's never been before for all the right reasons. And we're gonna go over a couple of those reasons, pretty soon. But before we do that, I'm gonna turn it back over to my friend, Chris Law, and he's gonna kinda talk to you about how the product is packaged, and then we'll get into, how it is architected. Oh, sorry. Can you go back a slide, Evan? You can tell. I this is not scripted. So, I we did wanna highlight one specific statistics on the screen because that's really '71 this is a year over year. So from 2023 to 2024. Now remember, I told you back in 2013 is when we really first started ramping up on no more usernames and passwords. But here we are. There has been another 71 increase year over year where the cyber incident was connected to stolen or compromised credentials. That's really at the heart of what we're talking about. That's what I meant by, you know, we've gone from don't use user IDs and password to, oh my gosh, multifactor is the only way. So that is and that you can look at statistics year over year over year. It's always been an increase, but this is very recent, '23 to '24, and another 71% increase. So they are out there. They are getting IDs. There's lots of way to get those, and they are using them against you. So sorry. Now, Chris, you could take over and tell us how this new product is packaged. Thank you, Barbara. So pretty straightforward. Excuse me. There's, three tiers to the Secure Host Access solution, which is a security first terminal emulator. The first tier is the pro tier and that includes the secure host access desktop client. Right? So that's desktop terminal emulation. That's what you're familiar with with regards to, Reflection Desktop, you know, being part of Reflection Enterprise Suite. It has basic what we call basic security features, so TLS, SSH, data redaction on host screens, and so forth to help organizations adhere to, security standards like payment card industry data security standard. That's the first tier of the Secure Host Access solution. The second tier is enterprise. So Secure Host Access Enterprise includes the desktop terminal emulation component plus the central management, piece, which is just basically a server that enables a whole bunch of other functionality, including integration with your, identity and access management systems, which then enables functionality like, multi factor authentication, single sign on, centralized management of your, you know, host access estate, so all of your terminal emulators across all your users, across all your organizations, and so forth. So that's the enterprise edition central management, very powerful capability. And then the anywhere tier, which we're hoping most customers are gonna move to, adds the web based terminal emulation. So you get the desktop terminal emulation, the web based browser based terminal emulation. You get to manage that all that. So you're gonna have sometimes you're gonna have desktop users, web users. You can manage all of those, users and sessions and everything related to the terminal emulation your terminal emulation to state from a single console. Right? So you're gonna have some casual users, some power users. Some are gonna need web based terminal emulation. Some are gonna be fine with that. Some are gonna be, you know, need the the power of the desktop based terminal emulator. And and, the Anywhere tier includes all of that in it. So very powerful at the anywhere tier. And and really allowing organizations to fully adhere to the, you know, just this onslaught of regulatory mandates that are, coming down and they're having to adhere to right now. And with that, I'm gonna turn it back over to Barbara, I think. Yep. You are. So great, great words there, Chris. So we so we're I I'm gonna go back to make sure that we're we're all thinking on the same page. Right? So today, you are a consumer of Reflection Enterprise Suite, which is a thick client, like Chris talked about earlier, and then a thin client. Now the thin client that you have in this suite was called reflection for the web. It's a Java based emulator. So, so that's one thing that's important because we're gonna talk about the differences here in a little bit. The other thing that is, different in Secure Host Access is your ability to manage that thick client through the same administrative console that you do, your existing thin plan even though it's not really, really thin. It's, like, thinner than thick, but it's not all the way thin because it does have a job and dependency in it. So I'm gonna go over that in a minute here so I can actually take you from what you're using today to what you could be using tomorrow. But before we go there, this were you know, I I could talk to you all day long about this product. I'm very passionate about it. It has so many features and functionality in it that could make your life easier. But I'm really gonna stick at the high value. And really what we're talking about here is, again, I started with security statistics. This is really about you getting more layers of defense that you can put between that ne'er do well out there in the Internet and your crown jewels on the mainframe. As we looked at earlier, getting a user ID and a password, you know, that gets you into the network and it just gets worse from there. So we don't want that anymore. So so what I mean by layers of defense is I mean that adding your corporate IAM, think about your corporate credentials. I'm talking about putting that between that bear bad guy out there and your mainframe connection. We're gonna look at a little bit of how that would happen, but that is another layer of defense in-depth that you can put between them. And we frankly are the only ones that integrate your thick clients with that ability. You don't have that today in reflection enterprise suite, and this is a big deal. Right? Because, the reason why you have that is because you need that thick client in your environment. This is just another step up from a security point of view. So the other side of that, which is the right hand column, is this, what Chris said is onslaught of mandates that are coming your way. And a onslaught is a great word. I call it the tsunami of mandates. I mean, it is just it is just amazing to just watch from day to day how many more are coming and what their requirements are and when their deadlines are. So we've listed a few of those on the, slide. We could probably have 10 slides on this stuff, and it, of course, depends on where you are, but some that, are readily upfront and in our faces that we talk about with customers is Dora. So that's over in the EU, but it's it's not just for the EU. Right? But it is about resilience, but it also requires multifactor authentication. The New York state requirement, this is probably the one I hear most about from you, my North America customers. And, really, what that says is if you're gonna do business with the financial services in New York state, you gotta do it via multi factor authentication. And they're gonna mandate that, November is gonna be the final cutoff depending on kind of where you live within the use case environment. Some were mandated as as early as November. So, but that that is coming to true fruition here really quickly. US federal has had MFA mandates for quite some time. Again, back in 2013, HSPD 12 said no usernames and passwords. We have progressed since then. And today, it is multifactor authentication. And and when if you just go Google or Bing, you know, mandates requiring multifactor. You would just have just this plethora of mandates coming at you. So every almost every state in The US has one. All the countries have them. So it really is out there. And and even industries, we we we have seen some, evidence to believe that HIPAA will probably make the change over to multifactor. And when you think about sorry. Back when those first couple of slides I talked about, when you think about what's happening out in security, that's why these regulations are being mandated. It is just really to protect a consumer's right to privacy about the data that you, an organization on the mainframe, control. So it's all fair game, but you have to comply with the regulation. So, so and then when you add on to that, this thought of what AI is gonna do for the hacker world, holy cow. And this new threat that we're all talking about, the threat of fake workers where you actually employ a person that you thought was somebody you wanted working for your customer, and in fact, it's actually not who you thought it was, And they are only coming into your organization with bad thoughts in mind. So, it's just we're on a new we're just in a whole new world here with security. So we have to have to have to do more. And Securestax is gonna help you do that. So take a little look at the market texture diagram because this is the easiest way I can help you. And I'm and I'm talking to you, my Reflection Enterprise Suite customers, because I I want you to understand what do you have today and what are you gonna get tomorrow should you move to this product. So over on the left hand column, it says terminal emulation. So today, you have reflection desktop. That's that thick client, and you may or or you may use or may not use the reflection for the web product, which is a Java based emulator, downloads a little Java applet. So both of those are are what you have today that could be on that left hand column. Tomorrow with secure host access, you also will have a thick client. Chris is actually gonna go into some details about how to get from Reflection Enterprise Suite thick client to Secure Us Access. Thick client is a really easy story. It's a really good story. It's not gonna be painful for you. So that's really good. It's gonna be a little different for you for the website. So, so the web emulator that we include here in Securus Access is zero footprint. Really good. No dependencies on the desktop, any modern browser. And the other kinda cool thing is that the traffic that goes from, on the host connection is held between the server and, the mainframe. So what that means is when somebody connects, they get a rendering of HTML instead of the thirty two seventy traffic itself. More detail here in just a minute on that. But that is a security feature, so that that's really good for you if you're extending access outside of your network to, sorry, to a partner, to a customer, what have you. Because somebody puts a sniffer on the wire. I mean, hopefully, you've got it encrypted. Right? But but if they put a sniffer on the wire, they're not gonna get that thirty two seventy traffic because it doesn't leave your shop. Okay. So here's the secret sauce. Now you probably are aware of this secret sauce if you use the web component, but many of you don't use the web component or you use it very little. So let me go over what that means. You have a server in the middle. If you are using our web, you can just think about that as the our web server. If you don't, it's new to you. Server sits in the middle and then what that server brings to you is integration with your IAM. So, so think about that. What I mean is, you know, any IAM you use, you're all different. You all use different IAMs, but think ping federated, Okta, inter ID is what I'm hearing the most about lately. Whatever you're using, can't 100% commit to supporting it, but I'm 99.9% sure we will because we are specification based. So we support SAML connections, o I d c. We we really being specification based, we really I haven't run into an IAM I don't connect to. So, so we're pretty confident that we can support what you have in the enterprise. So that's the first step in adding security. Right? Because your emulator connects to the host and and that's it. They're supplying their username and a password. If you use this product with Securus access, we will challenge you for your enterprise credentials. Now that might scare you because you're thinking, oh my gosh. Now I got one more hoop for that darn user to get to. They'll never like this. Your IAM likely supports single sign on. What what do I mean by that? I mean, I boot up in the morning and I log into my Windows and and then I could get to applications out inside of Rocket without authenticating again because I have the single sign on token with me. We honor that same thing. That's an IAM built in, thing, and so we support that. So it doesn't mean your end users are gonna be prompted. If you want them to be prompted, we could prompt them, but we don't have to prompt them. It could be single sign up. So more secret sauce. So that's a layer of defense. Right? So then you think about connecting to the mainframe, and that could be and I'm gonna talk z here just because that's kinda what's in my repertoire, but we do the same thing for I series or a UNIX box with BT or even UNIX's mainframe, airlines mainframes. But when you get to Rocket, you hit a login screen. Typically speaking, most organizations are still using a username and a password there. Not good enough, folks. So now we can make that stronger through a trusted relationship with a component that sits on that back end host, and the components are, ZMFA, which IBM can sell you, or DCAS, I think, comes with IBM. We can actually log that end user in because we've already verified them in their enterprise credentials, and we could log them into the mainframe, but much more secure than a username and password because we log them in with a one time time limited token. So now let's paint that whole picture for you, because I know it's hard to get it in your head just looking at the screen. But what we're talking about today, terminal emulation, launch your terminal emulator thick session, you landed a rack f screen, you log in username and password. Not good enough. Tomorrow, you launch that same thick client session. We, underlyingly, check with your IAM to see if you've been authenticated. If you have not, we prompt you. If you have, we allow you to sign in. Then on a separate thread, we connect to the mainframe on your behalf. They say, yep. Bob's already been authenticated on the front end. We're good with that. We're gonna go and let him come through, but we're only gonna let him come through with a one time time limited token. So I, Bob, have now logged in end to end, no passwords, and two one time time limited tokens that are separate, that have been delivered by separate entities. That is very, very, very, very strong. So that's really what this, solution is all about. You can takes you can apply some of that or all of it. It's just totally your choice and how you'd like to integrate it into your, environment. So that's really what secure host access has to offer you. There's a lot more to this story, but we only have an hour. So, so there you go. I think I'm gonna pass it back to mister Lal. I was just gonna say, Barbara, just keep going. No. Yeah. Yeah. Go on now. I could. Yeah. Thanks. All great information. Really big emphasis on security, obviously, and very important, I think, for the enterprise customer. So, yeah. Let's look at what so so Barbara's gonna cover the thin client in that kind of that upgrade scenario, and I'm gonna cover what it's like for the thick client. Right? So in Reflection Enterprise Suite, you have Reflection Desktop. That's the desktop client that's going to need to be moved, you know, to secure host access desktop client. And as we both have alluded to previously, it's it's a relatively seamless upgrade, you know. Reflection Desktop is providing the DNA, the basis, the code base for the Secure Host Access desktop client. So it's really kind of just a major version upgrade going from Reflection Desktop 18 o to Secure Host Access, desktop. I think the versioning is 25 dot whatever. It's just it's just like doing an upgrade, you know. All the stuff that you've created configurations for your users have, you know, customized in the past sessions, macros, toolbars, quick pads, hotspots, all that stuff runs as is, in Secure Host Access just like it did in the Reflection Desktop thick client. So the upgrade experience is basically, the Secure Host Access installation program recognizes that Reflection Desktop 18 o or some prior version is there, removes it, adds the new version of Secure Host Access Desktop client, and then leverages all the existing configurations that, you've created with Reflection Desktop. So really powerful, relatively seamless, you know, just like doing a major upgrade, which is not pain free, but should be fairly simple, and easy for most organizations that have done, have used Reflection Desktop and have have been through these sorts of upgrade processes. A couple of other things to note. So there's a screenshot here on the right. You can see if your, you know, if your users use Reflection Desktop. Looks just like Reflection Desktop. Runs all those, you know, legacy configurations from all the legacy terminal emulation products from Extra to Host Explorer to Reflection Desktop to Reflection 14, which is nice and and even includes the ability to run some macros from competitive terminal emulators, IBM personal communications, a few others. You'll notice there's some differences as well. You know, the comp obviously, the company name has changed. The colors have changed a bit. We're a little bit more purple. Can you tell by our backgrounds here that we're a little bit more, pinkish, purplish than we have been in the past, which some people notice, which, actually is visually, from my perspective anyways, visually pleasing to the eye. So you'll you'll notice those changes as well. But for the most part, it's gonna be a, you know, for the thick client in Reflection Enterprise Suite, it should be a relatively seamless, upgrade. And, let's talk a bit more about what it looks like for the thin client side of things, Barbara. What do you got to tell us? I did tell them. I had I gave them a heads up there that you had some good news for them on a thick client. And it's not bad news on the thin client. It's just a little bit of a different lift. Yeah. But for all good reasons. So the architecture is different. Right? Because reflection for the web was a Java based applet. And what I mean by that is the end user would connect to a server, and in that conversation, this it would they would download an applet that they ran on their desktop. And when you download an applet, it's very much like running desktop software. That is not the case for Secure Host Access. Secure Host Access is a true HTML five rendering of the green screen. So, so you are not downloading anything. There are no dependencies, on that, sorry, on that desktop. It is any modern browser. And then I mentioned this earlier, but the secret sauce here really is the fact that that traffic from client to server is all HTML. It is it's an HTTPS. So it's secure, but it's also not thirty two seventy traffic. So when you're running a web based product, the closer you put that server to your mainframe, the more secure you are. So, so that is different. So let's go ahead and move to the next slide. I'll talk a little bit about what else is different. So, so when you're moving that thin client connection, again, I showed you the architecture is different. But also because it is now really thin, it is not just pretend then or or, server based, like running an applet. It really is thin, and so we have to abide by browser security. You can still do the things that you need to do, but it is a different workflow. So so printing and file transfer are some really great examples of that. So printing, we can't print directly to a printer because of browser security. So so instead, when you print, we will print to a PDF, and then you can download the PDF and print it off. File transfer, we cannot interrogate your hard drive because the browser isn't allowed to talk to the hard drive. We all of that is for the right reasons. Right? Because that's how malware is distributed. There's all the browser has security for all the right reasons. We, as in an HTML five emulator, just have to play by those rules, and we do. So know that migration tools are available. Like Chris said, on the thick client, you just push a button, you upgrade, and all your stuff's still there. Not quite as easy on the thin client, but we do have migration tools available, and we will help you get across. The one thing that I probably wanna stress the most and, and later on, we're gonna give you an email address, and you can also ask questions here, of course. But there are some features that are not yet and maybe never will be supported in this thin client emulator. So that's really important. VT printing, that's not gonna be hard for me to do. I just don't have a lot of customers that need it. But if that's something that you had in our web and you need it today, just let me know and we'll bump that up. I do have a customer, one of my favorites in, Latin America that uses t 27 printing with our web. And I know that I have not yet gotten that into this web client, and I'm gonna do that. It's on my road map. So so if you are on the phone, please know that that's coming. One of the things that we don't have in the product today, and I'm not convinced we ever will because it is a pretty major undertaking, is airlines printing. Airlines printing is a whole different world than standard printing. Right? It's bidirectional. It's like printing money, because you are printing an airline ticket or a boarding pass. And it also takes a whole bunch of, it's just a in-depth printing. You have you have things that come down from the airline that are called a peck tab. So they're just it's just a lot bigger of a feature than standard printing is. So we do not have that in the product today. I'm not looking at road mapping it anytime soon. But after that's a problem for you, if you are an airlines customer and that is something that you need in order to move forward, I'm gonna give you an email later and shoot me a message, and and and it will at least have a conversation. I know I have one very large customer that uses this extensively in our web, and I'm just working with them because they're gonna try to migrate off the mainframe at some point in time. So they may not need it for too long anyway. And then the other thing with airlines is we don't fully support all of the airline terminal types and protocols. Now that's not as heavy of a lift for me. So if you are an airlines customer I have a couple, and I've already worked with them because they've already looked at the predecessor product. But if you are an airlines customer, you wanna go here and you need something, then just send me an email, and we'll get that looked at. Let's see. Go ahead. Next screen. I can't remember. Oh, so these are the benefits that you get by going to Securys access, and that's really important. Right? So, if you were on the latest release, then you will already be familiar with our new deployment models. That's the virtual software appliance, and we will also take that product and install it on a Linux OS. New, not in our web, but new with Securus access is the Helm chart install. What in heck do I mean by Helm chart install? If you're really technical, you already know. But if you're not technical, what that means is I can install in an or in a environment that allows you, my customer, to use their own orchestration tool. So think Kubernetes or, you know, BlueShift or those things where you want an environment where you're running containers and you wanna manage it with your own tool. So we support that just starting in the June release of Secure Host Access. The other benefits to you as an our web customer, which is part of production enterprise suite, no more dependencies on the job on the client side. That's really, really important. Let you get off of that. You can use any modern browser now. You don't have to have that compatibility mode. You don't have to have that Java dependency in your browser. So no dependencies at all on the client side. And I told you I mentioned this before that host traffic stays between the secure host access server and the host. And the closer you get that server to your house, the more secure you're gonna be. The other thing I think you will find delightful is that the secure host access product is gonna have quarterly releases. That does not mean you have to consume that release, but there may be goodness in that for you. It will also have all of the updated third party, components for security reasons. And then going forward, and I think from a thin client perspective, you had haven't had a lot of innovation on our web, and we're gonna have a really innovative road map going forward, which is why we're doing quarterly releases because lots of things are happening in the security environment, and we wanna be able to adapt to it before you have to. So great road map going forward. I think that maybe it for me. Nope. This will be mean too. So our upgrade to you has a at least you guys know it's not recorded. Right? Well, I guess it is being recorded for those of you who aren't on the live, but I'm not recorded right now. So our upgrade guidance to you as a Reflection Enterprise Suite customer is take a look at this. Right? It's important. It doesn't mean just taking a look at it doesn't mean you're signing any contract. You should go look out there and see what it has to offer you. This is really a very innovative product. We are unique in the market for being able to manage the thick client. We are unique in the market for being able to route that thick client connection to the host, which we know all of you have to have because you got business logic wrapped around it. We're the only ones that can wrap that through or, sorry, route that through to your IAM and make sure it is who you think it is that's coming in and accessing your mainframe. If you'd like to look at the product, there's an evaluation out there today. In order to get that started, contact your AE. If you don't know who your AE is, that's okay. There's an email address on the slide, and it's gonna be on the last slide as well. Just reach out to us. That is actually Chris and Barbara behind that email address. So you're talking directly to the PMs that we will get you any answer that you need. The only thing we don't do is pricing and we'd have to get you to the AE for that, but we can help you get to your AE. So, and then, again, our advice to you is start planning this sooner than later. Don't get in a place where this is a have to. And what I mean by that is we're not gonna we're not gonna make you, but the mandates will. And so that's why I'm suggesting that you look at this sooner than later, and then you plan your upgrade sooner than later. And then, of course, let us know how we can assist you because it is in our best interest to get you to move to Securals access, and we believe it is in yours as well. Now I'm gonna go back to Chris, I think, maybe. Actually, you can come back to me, and then I'm just gonna throw it back to you. Oh, okay. No. Cycle evolution, Barbara. Well, let let's just do that, shall we, Chris? Okay. So the product life cycle. Again, you've been our customer for a long, long time. Right? You're just new to Rocket. You are not new to our products, and you're probably not even new to Chris and I. You had a product life cycle on the previous products, Reflection Enterprise Suite. That was actually posted on the last company's website that was open text. Hasn't been updated for a long time. But today, we now have a product life cycle available here. Why am I talking about the product life cycle? I'm talking about that because the reason you're here at this meeting today is because you got an email on or around July 2 that said reflection enterprise suite is going into a mature status in July 2026. And we tried to explain to you what that meant then. It's probably a little scary anytime anybody sees mature. You know, it's kinda like getting old. Right? It's never a good thing. You don't ever wanna think about that. But this is not bad. This does not mean we're walking away from the product. It does not mean end of life. It means nothing like that. What it means to you as my customer is that we will we're not going to necessarily, we're not gonna have an innovative product road map for the components of Reflection Enterprise Suite. What we're gonna do is we're gonna look at the bugs that you report if you report them, and we'll always be looking for vulnerabilities, and we will base the we and we will fix those if they need to be fixed. Right? We got your back. We're this is a journey. This is something we think you'll find value in, and we are not walking away from these old products. So that is really what you what we want you to hear. And just in case you didn't know, we're doing this for all the emulators that were brought over from from, the AMC. That's what we call them. But all of them, extra reflection, I mean, I could name 10 of them. But we're also doing it for the rocket terminal emulators as well. Right? And this is because we what we wanna do is channel our development resources in one place so that we can do more for you tomorrow than we could do for you in the past. That's why we're talking about the product life cycle. Yep. Right. Chris, I think I'm finally turning it back to you. You are correct this time. So, yeah, let's talk a little bit about product life cycle. So the first bullet is published with an exclamation point. The reason why we do with exclamation point is because we get a lot of we field a lot of inquiries on product life cycle, and we've been spend you know, we've spent the last year, if you will, since, you know, moving to Rocket Software, coming up with new product life cycle policies that fit for all of the Heritage customer bases. Right? And we're trying to take the best of all of the policies that came from Heritage Micro Focus, OpenText, Rocket Software, and put them in a set of policies, you know, that works for everybody and, and and is better than anything we've done before. So the new product support life cycle policies are published. It's a public website. You can go there now. It's available. They're new and improved. It's available from different ways on our website including the, docs portal, which is docs.rocketsoftware.com. From the forum, we've sent out some emails with links and so forth. So, hopefully, you know, you're getting you're receiving some of those communications and, and getting the links, to, you know, different, resources that are helpful in answering your product life cycle questions. You can easily access life cycle policies now because they're published. Previously, I mean, just kind of another bullet here, they were not at not consistent across all terminal emulators. So now we've got, you know, a set of policies that you can look at. And, a lot of times, you won't work with the enterprise customers or using Rumba and Extra and Reflection and so forth. And, it's nice to have a consistent set of policies. In general, going forward for Secure Host Access, the product life cycle policy is, are are pretty straightforward and illustrated by this diagram at the bottom of of the, slide deck here or the slide here. General availability, you know, you get full support in that first year to three year phase of the product life cycle for a specific version of Secure Host Access. And then in years four and five, it goes into limited support and then later, six year plus years and more, it's restricted support. Great support all through, you know, that life cycle for a specific, Secure Host Access product version. And, if you go look at the product life cycle policies now, the ones we just published, I think you'll find them very very favorable to you. You'll find information on all the legacy emulators, the ones that you're using today, Reflection Desktop, Reflection for the web, and so forth, and then also, kind of the policies going forward with Secure Host Access. So be sure and check those out when you get a chance. And if you have any questions, send them to the, alias that, we mentioned previously and it's gonna we're gonna mention it again. So you didn't need to write it down that first time or or take, note of it that first time. Alright. So let's move on to talking about our commitment to you and we've, we've been talking about this, a bit throughout this presentation. Go ahead and go to the next slide. Thank you. So, you know, basically, we're very customer focused. Barbara and I have both been working with a lot of you for many, many years. I'm sure at some point, our paths have crossed, and and, you know, we're we're always here to help. So, you know, we're gonna help you in any way that we can. Reflection Enterprise Suite, Reflection Desktop, Reflection for the web are gonna be, you know, continue to be supported. Phone support, you know, dev support, and then ultimately, you know, support through Securo's access. You can move at your own pace. Right? So we'll continue to to deliver, you know, minor updates and so forth to the legacy products as Barbara alluded to earlier. The major innovation, you know, going to secure host access. But you you can move at your own pace, which is which is nice. Like Barbara said, get started now. If if you can, you know, do a POC proof of concept, make sure the product, does what you needed to do before, you you know, you you have to make it work for you for some multi factor authentication mandate that gets handed down to you and then you have to move really quick. We'll support you through, you know, our and your modernization journey. Again, we're here for you, so it's kind of it's our really our journey together as we go through this to get you to, the Securost Access product. Yeah. And the Securost Access product is gonna provide you with a really innovative road map, which is just something that I think all of you need and, and will partake in as time goes forward with the new security, landscape that we're all living in. Chris spoke a lot about our product life cycle policies, and we really do believe that they offer you more value than they ever have before. But there's always work to do. Right? We can always make things better, or maybe we didn't catch something on the first time or what have you. So we just don't want you again, Chris kinda mentions above about the modernization journey, and I think I mentioned to you about the security journey. Well, there's a journey with our vendor relationship as well. Right? So if there's something we can do for you to make it better, then we wanna hear about it. We wanna hear what you like, and we even wanna hear what you don't like. So, so again, that email address is, down there, at towards the bottom of your screen, and it goes directly to Chris and I. There's other people that watch that email inbox just in case Chris and I ever get a day off. But, but it really does come back to Chris and I to answer, so we'll be there for you. The one thing I wanted to mention, we've done quite a few of these, and I actually forgot to mention it the last time. So I'm gonna mention it here, is when so this is a transaction. Right? You're gonna have to work with your salesperson to get a transaction. It kinda depends on what functionality you want. But at minimum, you know, you gotta get over to the equivalent of what you have today in order, you know, to, to do the things you wanna do. But with that, we actually give you back grade rights to the product you're using today. So I think that's important. That's how much we feel like we know change is not easy. We know it is a it is a path that we want you to choose the time frame for. We want it to be convenient for you to move, not just because somebody is mandating you to move. So, so I just wanted to mention that while I was thinking about it. So, again so I think we're gonna move to questions and answers, but that email address is a way to get a hold of us. We can we may not know the answer. It could be map pricing question or something that Chris and I are not, in full control of, but we'll bring the right people in to get you the answers. So it's a great place to start. Jot it down, stick it on your monitor, you know, and continue to to work with us on moving to secure host access. That, I think, we're gonna open it up for questions. That's right. Yeah. And I think I'm gonna stay on this slide so that everyone can still see the the email address in case they need it. Right. Sure. Yeah. I think the the one question that comes up most often or one of the most common questions, Barbara, is about, you know, when when somebody moves to Secure Host Access and you're talking about web based terminal emulation, is, you know, is Java required anymore like it was required for the desktop clients, browser based clients with reflection for the web? Yep. Nope. Nope. Nope. Nope. No more, and and it's interesting, Chris. It's not just is Java required. There are no dependencies on the desktop at all for that HTML screen. Now with that said, we do have a desktop component, so you may have reasons that you need integration. And, again, that integration isn't allowed from the browser. So that's why we do have a desktop component that will work with the web client should you need that integration. But by default, no reason to have that, and you should be able to run all your emulation without any desktop dependencies at all. So great question. And it does come up a lot. Right? I think we're all still change is hard anyway, and our web and other Java and based emulators have always worked. But now is the time to change. Now is the time to take. That is a modernization journey in itself, if you will. Right? Moving to a new browser that doesn't have desktop dependencies. So another question that has come up in the past is, managing, your thick and thin. Yep. Yeah. Clients, can you do that from the same console, and is it similar to tenants or features. Right? That is the one of the sweet spots that you get by going to Securist access. You did not have the ability to manage that thick, and that is one of the things that we bring to market that no other terminal emulation company is doing today, and that's managing the thick. Now, obviously, today, we talked about piping that connection, checking credentials through your IAM. Powerful. Right? That's why we talk about value. But we do a lot more there as well. So, so we can do, we can manage the thick record. We'll push sessions and macros down to it. We could have those updated. So there's a lot of real goodness in here when we talk about managing that thick client that has not been available until now. Right. So We've got a question. Oh, excuse me. We've got a question here from Ted. For the MFA, does the SSO token need to go to a smartphone or or can it be configured to another I'm device? So this is great, and and I actually can answer this because I don't do anything in my product to do that. That is all handled by your I'm So think about how you would authenticate anywhere else in your enterprise. If those factors can be gotten off of a smartphone, then we're gonna rely on that as well. We totally defer to your IAM to authenticate you. We do not do any of it ourselves. So so the if you can do that in your enterprise today, Ted, you'll be able to do it with Secure Host Access. And Ted also asked, can the Secure Host Access server be set up on our side of the firewall? Absolutely. And I would suggest it because that is a security risk if you have it outside of your firewall. But yes. Absolutely. And and I didn't talk a lot about deployment, methods, but the, the server can be, you can run that on prem, and you can actually run it in a cloud provider if you'd like. And the same with IAM. When you think about IAM, you may be using, like, Azure AD, and we integrate with all of those things. So we really we have deployment methods for everything, and we can integrate with your IAM wherever it is. So, but, yes, the answer is it it can and, in my opinion, should be set up on your side of the firewall. Great questions, by the way. That's great. It seems like questions are are slowing down. So if go ahead and think of everything. Right? So that's what the email address is on there for. You know? And and things are gonna pop up later for you where you think, oh, wow. Should ask that. That that's what this email address is for. We really don't mind. We we love communication with our customers. And sometimes you don't necessarily wanna talk in front of other people either. So, and and the other thing I will say as well is if is if you'd like to just see a little demo instead of taking it for yourself, you know, we do one on one conversations all the time. I have a little demo. I can kinda walk you through how the product works, and I can kinda talk more specifically about maybe what you have in your in your enterprise, so that you kinda understand how that workflow would work. But, yep, email is how you get a hold of us. That's great. Well, thank you both so much. Everyone who, was able to attend, thank you for being here. As Barbara and Chris both mentioned, if you do have questions after the fact or anything else that you you need, please reach out on this email address. Oh, oh, Ted just said thank you. It's easier more than one. I saw something pop in, and I wanna make sure we got it. But, if if anything comes up, please reach out on this rocketconnectivity@Rocket Software.com email address. And and Barbara and Chris, all of us here, will are happy to help. We really wanna make this useful for you and and give you, as much as possible. So please reach out if we can help. Otherwise, thank you so much for being here. Barbara, Chris, thank you both so much. And I think that's it for today. So Thank you very much. Thanks for your time. Have a great day. You too. Bye. Bye now.