Video: Rocket Customer Webinar: BlueZone Lifecycle | Duration: 3612s | Summary: Rocket Customer Webinar: BlueZone Lifecycle | Chapters: Welcome and Introduction (4.64s), Agenda Overview (74.525s), Terminal Emulation History (153.975s), Product Manager's Perspective (248.30501s), Security-First Terminal Emulation (405.695s), Secure Host Access (791.355s), Secure Authentication Advancements (1108.925s), Secure Host Access Benefits (1782.7799s), Product Lifecycle Policies (2204.735s), Feedback and Customizations (3108.925s), Secure Host Access Benefits (3275.035s), Conclusion and Pricing (3490.16s)
Transcript for "Rocket Customer Webinar: BlueZone Lifecycle": Hello, everyone, and thank you all for being here today. I am Evan Tackett. I'm the solution marketer looking after Secure Host Access and, BlueZone, all of the heritage emulators here at Rocket Software Software. I'm excited to be here today, and I'm, I'm joined by, both of our principal product managers, Barbara Ballard and Chris Law. We've got a great session here. There's a lot happening happening in, terminal emulation here at Rocket Software, and we're excited to show, all that you've got to look forward to. But I think just a a quick, announcement. I think, we want this to be an engaging and an informative session. So if you have questions, please pass them along in the q and a, the chat panels. I will keep an eye on that and make sure to raise them to Chris and Barbara Barbara during the session, and and we can get answers for you. We we want everyone to be involved. So, if you do have questions, pass them along. But, otherwise, I think I'll go ahead and hand it off to Chris to get us started. So, Chris, take it away. Awesome, Evan. Thank you very much. So let's look at the agenda real quick. First, I'm gonna cover, kind of what the history of the terminal emulation, market has been and kinda how we got to where we are today. And then we're gonna look at what the path forward looks like, which, for those of you that have received the communications we sent out, involves the Secure Host Access product, which we're gonna talk about a lot today. And then we're gonna look at the life cycle for some of our legacy emulators as well as kind of what the go forward policies are for, Rocket Software and the Secure Host Access product. And then we'll, also discuss what our commitment to you is, how we're gonna support you going forward, what you're gonna be getting in the different products, that we're, supporting from maturity and as well as a go forward perspective with Secure Host Access. And then as Evan said, we'll, be happy to answer questions throughout the presentation and or at the end. Alright. So quick disclaimer. Some of the stuff we're gonna talk about today is forward looking and, therefore, you know, something could change in the future that, changes what we talk about here. We just wanna make sure you're aware of that, and feel free to, you know, read this at your leisure or right now, see as much as you can get in there. And then, if you have any questions, you know, please let us know. Alright. So let's look at some of the historical background here, kinda how we got, to where we are, our little, hamster tunnels. So, basically, if you've if you're using Rocket Software Blue Zone today, then you're really that kind of that upper timeline there and you're familiar with kind of how you got to where you are. I know Rocket Software, acquired Seagull, BlueZone, many years ago now. If you look at the overall terminal emulation industry and and some of the players in it, right, there was Hummingbird, OpenText, Walledata, AttachMate, WRQ. You know all the brands. You remember the brands, Rumba, Reflection, Extra, and, and Blue Zone, as you're well aware of. And so, there's been a lot of consolidation in the industry and now we're all part of the Rocket Software team, all these brands and so forth, including, Siegel Blue Zone, Blue Zone product. And, and going forward, you know, we're gonna be supporting a single solution, for all terminal emulation products to move to, which is the secure host access solution. I'm sure if you, you know, if you work for a large organization, you probably got a similar map that you could draw regarding your corporate journey and all the merger acquisitions that, you know, your your company has been through as well. But this is just kind of a good reference, I think, for folks to understand what has happened in our industry and how we're moving forward, from here on out. Alright. So I'm gonna turn it over to Barbara now to talk about Rocket's values. Hello, and thanks for joining us. So you've been a Rocket customer for a long time, but I have not been a Rocket employee for a long time. So, I just wanted to share a little bit with you about my perspective as a product manager. And by the way, I'm your product manager, and as an employee with Rocket. So I came over with the acquisition, one of those dots a long time ago that Chris pointed out. I was originally with AttachMate. I've been in the industry for, just short of thirty years. I joined the company when I was 10, so let's not worry about my age. But I've been through a lot of mergers and acquisitions as Chris showed you, on that, previous slide. And some have been good, and some have been not so good. And what I wanted to share with you is that you are in a really good place, and so am I as a Rocket employee. And I think that's really important. So I've been a product manager for quite a while, about, I think, twenty years. And as a product manager, what's really important to me is you as my customer have a vision for the future. You feel that we have a relationship as far as the road map goes and that your product's well supported and that you see some good things coming down your path. That's that's what I focus on as a product manager. And I think Rocket Software feels the same way. So it's, I feel really good at being here as an employee. We've been here for about eighteen months now. I think you will see today that Rocket Software really investing like no other vendor into terminal emulation. We've seen some serious things happening in the market, mostly around security. We're gonna talk a little bit about that as well. But as you might also understand being with Rocket Software for a while, you know, they've had, they've had the opportunity to collect many terminal emulators. And so this is kind of our ability to share with you our vision on what's going forward to help you understand where your product sits today in that future, and then our commitment to you. So, so anyway, we just wanted you to know that we're pretty happy to be with Rocket Software. The other thing I will say is, again, thirty years of, you know, mergers and acquisitions and new company names and new, email addresses. I've never been with a company that actually really walks the walk in addition to talking the talk, and that's incredibly important to me, and that's what Rocket Software does. So, so, anyway, let's go talk a little bit about, I think, our path forward. So before I delve into what's coming, one thing I wanna make clear because I'm sure we're already making you nervous just about the whole email that you've got about maturity and then your invitation to a webinar. And, and and I apologize if we made you nervous. I totally get it, but it's better to have these conversations face to face. And it's, and it's better that you hear directly, from my opinion, from the horse's mouth, which is Chris and I, because we're the product managers of all of the terminal emulators that Rocket owns today and the future terminal emulators. So, but what I wanna do is maybe ease your pain just a little bit. So this webinar is really geared to customers that are still using the BlueZone emulator, not the rebranded Rocket terminal emulator, the BlueZone emulator. So my understanding is that is versions before eight dot one dot one. And that's important for you to understand because it has a different path than the Rocket terminal emulator desktop version. So that's why I wanted you to know that. So if you're still using the blue zone, 8.1.1 or below, the one that's still branded blue zone, then this is the webinar for you. And if you're using the Rocket TE desktop, then hang in there. I don't mind you joining the webinar. We're gonna tell you the same story when we do the Rocket TE desktop, conversation. It's gonna be different dates for you, and I can probably go over that when I get to my date calendar, because we're doing this for every customer that uses every one of our terminal emulators. But the but the path the path forward is not different, but the dates are kinda different for you. So that's all I wanted to mention. So sorry to go on for that, but I just wanna take a little bit stress off. If you're really using Rocket Software, it's not gonna feel so scary to you. So okay. So the slide that is up there now is really kind of the state of the market and why we're changing. So, again, I've been in this game for a long, long time. But about ten years ago, I moved to a different place in the terminal emulation ecosystem, if you will. I no longer concentrated on what the terminal emulator does. I concentrated on how to bring it in to the enterprise security realm. Why did I do that? Because about, I guess it's actually been twelve years now. The calendar moves quickly for me. But in about 2013, that was one of the first widely known breaches where we did a lot of analysis on it. I say we, somebody else, did a lot of analysis on it to find out, gosh, how did these ne'er do wells get in, what did they get, and how do we stop that from happening the next time? That breach was the OPM breach. Federal government, office of personal management. I happen to be personally affected by that because I'm a vet. So so, because this was back when we were attached mate, because we did business in the federal government space, we we had a lot of customers that came to us and said, wow. We we now we can't use usernames and passwords anymore. Out of that breach came a new mandate, which we're gonna talk a lot about today, saying no more usernames and passwords. Didn't do much more than that. Right? Just said no more usernames and passwords. But these federal government customers, and probably you as well, used a username and a password on the mainframe. So that's how this whole process started. And in my opinion, the products, that we delivered back then to help those customers, we created them, we developed them, when we brought them to market, are a lot of the reason why Rocket Software bought the host connectivity, employees and products from OpenText. That was the merger that I was brought over in eighteen months ago. And and it was because Rocket knows what they're doing. Right? Rocket saw this coming. They knew that the security landscape was changing. They knew we had products that would help you meet your goals. And so that's in my opinion, that's why they they they purchased our products and why we're having a conversation today. So, so now let's speed a little bit into today's world. Right? So these are today's statistics. When I say today, they're really we we always look at the previous year for year over year comparisons. But, but these are all facts that are driving the state of security and compliance. And for me, what really resonates here, what I really wanna dive into is that middle top statistic. This is a year over year uplift of cyber incidents that involve the use of stolen or compromised credentials. That is just amazing. This has been going on since minimum of 2013, and we're still seeing a 71% uplift in those incidents that are using the username and a password. Now, you know, you people out there are not, ignorant of security. Right? And neither am I. But it is hard, and it is hard to change a user workflow. So that's kinda why we're here, right, is we have to stop using usernames and passwords. We've gotta get beyond that even on the mainframe. And I say that for a lot of reasons. One, because it's the right thing to do, and I know that you think your mainframe is secure. And I totally get you, and I actually agree with you that there are a lot of reasons why the mainframe is secure. But now we're kind of at the level we're no longer in the black and white. It's secure. It's not secure. We're kind of in the level of how secure is it. And if you are still using a username and password, there's lots of reasons why you need to look at change, and that's kinda what we're gonna talk about today. So alright. Let's see. Oh, I'm gonna I'm gonna pass the baton here to mister Lal. He's gonna talk to you a little bit. This is our security first terminal emulator. Right? It is but it is more than a terminal emulator. So Chris is gonna kinda talk about, what it is and how it's packaged, and then I'm gonna come back to you and talk to you about what does it look like in your environment, what benefits does it give you that you don't have today as either a blue zone eight dot one dot one and before customer or as a Rocket TE desktop customer. So Great. Take it away, Chris. Thank you, Barbara. Yeah. Great info. And, yes, everything is security these days, isn't it? Security focused. And that's kinda where we're headed with Secure Host Access. So let's talk about the entire Secure Host Access solution, which is made up of three tiers. And the first tier being the pro tier, that's really the, base desktop terminal emulator, the native Windows desktop, host access tool. It's got basic security features. When we say basic security features, the things you'd expect security features you'd expect in a terminal emulator like TLS, support, TLS 1.3, SSH, data redaction, you know, on host screens. We got that feature in the pro version, pro edition. And then when you move up the the chain here, the the next tier is enterprise, And enterprise adds central management to all that. So once you have central management in place, it enables a whole bunch of other functionality and capabilities, including things like integrating with your identity and access management solution, your existing one that's already in your infrastructure, that's in your environment, corporate environment, which then enables, the ability to do multi factor authentication and single sign on to your host systems. And then also, central dashboard con administrator can use to, centrally manage your host access to state all of your users' sessions and so forth. So very powerful, capabilities as you continue moving, you know, to the right in in the, secure host access solution. So then the third tier is anywhere and that includes everything I just talked about, plus it adds the web based terminal emulator, what we call or often referred to as the thin client. And that has the ability then to add everything I mentioned before. So multi factor authentication, single sign on, a bunch of other functionality, to both your thick and thin clients. Right? So everybody out there that whether they use the web based version on the client side or the desktop based version on the client side, they're getting all those benefits of central all those security capabilities, multi factor authentication, single sign on. And furthermore, you have an administrator now who has a central console still that can, centrally manage both the web based and the non web based, the thick clients from a central location. So very powerful, enables a whole bunch of, additional functionality when once you, you know, move to the anywhere tier and also helps you, you know, secure your environment and adhere to regulatory mandates. And I think, I'm gonna turn it over to Barbara to talk about, some of that in more detail. Great. Thanks, Chris. So, as Chris and I both said, right, it's really all about security. But you can think about this in two different ways. They're very connected, but they really are two separate things. So, and and that's how we brought this product to market. So the first side, the left side, is really about giving you as a customer this ability to add another layer of defense in-depth between that end user and their host connection. And we do that through integration of your corporate IAM. Right? And that's kind of important because if you think about IAM at all, so identity access management, the the ability to validate who you are and what you should have access to. For mainframe organizations, we do that in two places. For a mainframe organization, you have the enterprise set up through your corporate IAM. Think SAML, LDAP, Kerberos. You could think multifactor through ping ident identity or, Okta or I mean, I could just go on all day long. Right? I'm just throwing names out there. But when you think about the mainframe, we are talking about RACF or ACF two or Top Secret. You may have an AS 400, and it has its own identity access management as well. So what we're doing here in Secure Host Access is helping you leverage the corporate IAM to restrict access to the host. So, again, we're not replacing rack f ACF two top secret. We are adding another layer of defense between that end user, which, honestly, if it's an end user, life is good. Right? But if if it is not who they think we who we think they are, then that's where things got start going south and where you're in in a place where you could be breached. So we wanna make sure that that is exactly who they say they are, that they are a well known identity, and that they should have access to the mainframe. So then on the right hand side, that is where control set. So we have noticed, maybe notice is a a a too soft of a word. I don't know what a a stronger word is, but the plethora of mandates that are coming in that are requiring multifactor authentication. I've been doing this for a long time, and I have never ever seen the amount of mandates that are coming in. I, you know, I do presentations all the time, and I usually try to update them. And every I do a presentation probably once a month, and every time I'm adding more, more mandates on there. And and for and I do them across the globe, and so I try to be specific. And across the globe, they are all increasing. But some ones let's just, you know, let's just, talk about here. So DORA. DORA's out of the EU. It's requiring multifactor authentication. In The US, stateside, 23 n y c r r 500. That is a new mandate that's come out in the last, say, twenty four months. It started mandating in November 2024, and the and everybody will be for sure mandated by November 2025. Sorry. I got those wrong. It started in '20. No. I'm right. That just shows how many mandates are. In November 2025, anybody doing business with the state of New York's financial services will have to have multifactor authentication in order to get in to do that business. So that's a fairly new one. And I will tell you there's at least five states that also have them besides the state of New York, California, Texas. I it's just it's just amazing. US federal. When I started talking to you today, I talked a little bit about the OPM breach. So that is gone, just it is just escalated, if you will. They started with, gosh, no more usernames and passwords. Then they said, well, let's use CAC cards, and now they are doing multifactor authentication. And, actually, just over the last few months, they while it's still a multifactor authentication, it is a new thing called, ICAM. So so they are consistently looking at their authentication types and making them stronger. And, of course, when you think about privileges, right, the more privileges you have, that stronger that authentication should be because the more you can do in the environment. So they are hooked together. It is not just proof who you are, but it is making sure that you have only the access to information that you have a need to access based on your role in the organization. So that's pretty important. So before we leave this slide, I actually wanna take a moment to talk about that line right underneath the purple line, right underneath, RocketSecure host access. So, I have the privilege to talk to customers and prospects all the time, and it really is a privilege. I learned so much out of every call, and this is a great example. So, several months ago, maybe even a year ago, I was engaged with a customer, and that customer, was had a requirement to comply with the New York state regulation to do multifactor. And they had to have it on and they had to protect their mainframe with that multifactor to do business with them. And so they went to IBM, and and they had a conversation. IBM has a great product called CMFA. They wanted a little bit more integration with their terminal, and so IBM brought Rocket Software in, and that's where I was introduced to the customer, and that's how we started the conversation. So I pitched the solution that I'm about to show you. This was almost a year ago. And it was just it it it was it was just such a wonderful conversation. I mean that because I learned a lot out of it, and and I think the customer saw our vision where we were going. But what I wanna call out here is after we did all the technical and after he grilled me and he made absolutely sure he fully understood what was happening below the covers. Right? So he knew what we were doing. He paused for a minute, and then it made me a little nervous. Right? Because I I was like, wow. Maybe he doesn't like it. But he he came up and stood up in his chair. This was I was on virtually, but IBM was in the room with him. And he said, wow. This is phishing resistant, passwordless, secure access to my host applications. Why haven't I heard about this before? And the reason why you haven't heard about this before is because, you know, it is just now that everybody really has a need to find a solution like this. When we say phishing resistant, that really means we're not relying on usernames and passwords because that's what phishing is all about. Right? They send you an email and they try to get you to log in to some system thinking that you're logging into something credible. And by doing that, you give them a username and a password. Or a minimum, you you log in there and then they download malware, whatever it is. But it's got phishing resistant really depends on usernames and passwords. And then his his statement about being password less, that's really important as well. Right? Because because anytime you introduce a human or a password, you are introducing risk. And so with showing you what I'm about to show you, we were able to he could pick the factors that he wanted to use based on his IAM that he already had in his network. And so it could be passwordless. We were not gonna rely on a password. And more than that, he, at the moment, was relying on passwords logging in to the mainframe, and we showed him, and I'll show you, that we don't have to rely on those passwords anymore. But we also, can make it much more secure. So, so anyway, that's I just wanted to share that with you because that's really kind of how I learned, and that's what we're using is the, is our tag phrase for this solution that I'm about to talk about. Okay. So here is the solution. So today, you as a BlueZone customer use a thick emulator, and that's what we're showing here on the left hand side. In this solution, as Chris talked about, we have both thick and thin, whatever tier that you come in at. But from a thick client perspective, really, the way things work today is you launch BlueZone and you land at a rack app screen, for example. It could be an a s 400 screen. It's just easier for me to just deal with the mainframe, the IBM mainframe. But this applies to all the other back end systems that you might connect to, whether that's through an a 400 or VT. We even do Unisys and airlines, and we even do tandem. So just so that's why we just say mainframe or host. It's just easier. So you'll launch your thick client session, and there you are landing at a rack f login screen. Typically, you're logging in with username and password. That's what we're saying is not safe anymore. That's what I introduced to this customer, and he said, holy cow. So what we do is we introduce a server, and that server's real responsibility, the value add to you. There's a lot of value here, but I'm I Evan makes me keep these things short because I could talk all day. The value we're talking about today is that integration with your IAM. So now what happens is I launch that thick client emulator, and that thick client is configured to check-in with that server. And that server is configured to go talk to the IAM. And the IAM is gonna come back and say, yep. That guy's already logged in, so he has a single sign on token, or he's gonna say, I don't know who that guy is. He needs to authenticate. That could be a multifactor IAM. It likely is because you are likely already using multifactor in your environment or at least looking at that kind of solution. So that's really important. So we've already stepped that up. Right? We're gonna make sure that they've cleared your, your enterprise IAM. We're then gonna go look at your user directory, and we're gonna make sure that they actually are authorized via your existing user directory to connect to that mainframe. So now we have added two layers of defense in front of that mainframe. So if all that happens, I landed a rack f screen, and I'm gonna log in. And that login may be a username and a password, And nobody wants to admit to using usernames and passwords. I totally get it. Right? But when I travel and I go actually face to face with customers, really, it's still pretty prevalent out there in the organization sorry, in the mainframe organization. So they are really still using usernames and passwords. So if that's you, you're in good company, but you also need to change. So when you're connecting to the mainframe, you landed that login screen. We can make that more secure as well. So we can connect our server there in the middle, can connect to a component on the mainframe. Widely known components that we can do this with are z m f a, which is sold by IBM, and also IBM's d caz. That's a certificate authority that does pass tickets instead of instead of, instead of a username and a login. Sorry. Username and a password login. I get distracted because things come in on my screen. Sorry. So in both of those situations, we can have a trusted relationship between our server and the mainframe component. And, again, we do this for all mainframes, but I'm talking about z right now. And instead of relying on that password, password doesn't change, but we instead exchange a one time time limited token on behalf of that user. So now think about that. And I don't I no longer land at the rack f screen. I get automatically logged in, and it's not reliant on my password, which can be eight characters and is case insensitive. Instead, it's a one time time limited login that is configurable, friends, by you. So you can make that login as short, a time frame as you want. And, of course, in my opinion, the more rights you have, the shorter that time frame could be. So now let's paint the whole picture. Today, with BlueZone, you launch your session, you landed a rack app screen, you log in probably with a username and a password. Upgrading to Securals access, it's a game changer. You launch that thick client session. Behind the scenes, the server checks to see if you've been authenticated. If you have, then it already allows you to sign in to the MSS server. Sorry. The Securys access server via your corporate credentials, so it's validated you. And then in a separate connection between the server and the mainframe, we take your mainframe user ID and give it to rack f and ask if you're, allowed to connect via one time password. It comes back and says yes, and now you log in to the mainframe. You have never supplied authentication credentials, but you have been authenticated all the way to the mainframe via two different onetime time limited tokens. Huge game changer. That's why we're talking about it today. Lots more going on here, but that makes me keep it quick. So that's the real value that you would be getting should you, go on this journey with us and upgrade from, BlueZone to Secure Host Access. Very cool. Back to you, Chris. Thanks, Barbara. So I'll talk now a bit about, the desktop client and the associated benefits with Secure Host Access. So if you're you're a BlueZone user, you know what features, you know, you you have access to and what the product, does. With Secure Host Access, you're gonna get, you know, a lot of additional capabilities that are very you're gonna find very valuable, I think. So security is one thing. Right? So we talk about, TLS 1.2, 1.3, and later, and SSH, and, you know, all the latest updates. That's what we do with Secure Host Access. We have a single module that we update on a regular basis, has the latest versions of of, relevant cryptographic libraries that are, you know, FIPS validated for FedGOV accounts and so forth. We just make sure that that we have the latest cryptography with, you know, all security vulnerabilities addressed. And we have a data redaction feature, and I mentioned this before and this is really a powerful feature that we put in, to, prior product to Secure Host Access several years ago to address, the payment card industry data security standard regulation, industry standard regulation. And and the idea behind that is you need to protect credit card data information no matter where it resides, and it can reside on the mainframe as well and other types of host systems. And what we allow you to do is actually configure Secure Host Access desktop client to redact credit card data on host screens. So very powerful feature. You can make it so that you could protect part of the credit card. Last four digits can be shown. None of the digits can be shown depending on, you know, which, user you are, what role you play within an organization. Organization can configure that for different user roles and access to, different amounts of that information. The privacy filters, that's all part of the same feature with data redaction. Not only can you protect credit card data, but you can protect other types of sensitive data, telephone numbers, addresses, names, all all sorts of different, types of national IDs, all sorts of, different types of, sensitive data that a lot of it just has resided on the mainframe for years and years. And now you've got these regulatory mandates saying you have to protect it somehow. Again, I mentioned security vulnerabilities, and and, you know, we run scans for releases and so forth, and we try to fix anything that our tools, you know, the SDL, secure development life cycle tools find. We try to address those as well. We're on a regular cadence of releases for Secure Host Access. So we're actually doing quarterly releases, which sounds pretty frequent, but we don't require customers, you know, to upgrade. These are these are, you know, partial upgrade versions and so forth. So, you can pick them up if you want them. If you need a particular security patch, you know, you can update to the latest quarterly release and then, you know, you're you've got the latest version, which is great. So we're very agile development methodology that we follow and and delivery as as well. DevOps, is probably the the buzz term you've heard. Buzz the buzz terms are agile, DevOps, and and those type of things. So we're really delivering on that with, secure host access. Productivity, there's integration, you know, with Microsoft Office so you can exchange data very easily with PowerPoint, Excel, Word. We've got a capability, a feature called screen history, which allows you to, see what was entered in each host screen and what came back from the host. And a lot of organizations use that actually to, archive, sessions that users have. So, like, in the finance industry and some of the other regulations like SOX require audits and so forth, so you can actually track data that users have entered in the host screens and come back and, just just, archive that information digitally and access that when you need it. Secure Host Access desktop client has so many automation capabilities for so many different constituencies, whether you're an IT person that knows Visual Basic for applications or you're a classically trained developer that knows c sharp and use Visual Studio or you're still using Halapi, e Halapi from the old days, there's something for everybody. There's also, quite a bit of macro compatibility. So if you're using a legacy terminal emulator and you need to bring some of those, macros forward without doing making any changes to them, Secure Host Access desktop client has this ability to run a lot of legacy macros as is. There's also the express, macro language, which allows you, as a business user, to, do some programming. If you're not a, like, a classically trained developer, you can record a macro and then it's got a very simple sort of drag and drop interface, to to program, if you will, your, your automations against the the mainframe and other host systems. So very powerful capability that is, targeted more to the business users. And we're gonna talk about this a few times. Do you know you're gonna get going forward for Blue Zone customers, you know, you're maybe you didn't get a lot of updates or updates in the past or recently. We've got a very robust go forward product road map. Not only do we have all these features that we're, you know, listing here on this, slide deck or this, screenshot here, there's just a whole slew of additional, new features in the security realm that are that are, you know, just coming down the road. We've got a new release coming out, I think, at the September here that'll have a know a bunch of new capabilities as well. So a lot of value in, the Secure Host Access solution. And then once you get to, you know this is really kind of Secure Host Access Pro. The desktop client is part of that. But once you're on Secure Host Access in general, you it's very easy to move and get to the other pieces, which we've talked about enterprise, the central management piece for the thick client, and then, the, the Anywhere tier, which adds the web based. And you're gonna have users out there in your environment, right, that some are casual users. Maybe they just need quick access to mainframe on occasional basis. Maybe the web client is more appropriate for them. And then, maybe you've got more power user type users and, they need, you know, access to advanced, capabilities like Visual Basic for applications, being able to create advanced automations and and so forth. And so then the Secure Host Access desktop client is most appropriate for them in that situation. So, again, just a lot of value here, and and a lot of capabilities in the Secure Host Access solution. And with that, let's talk a bit about the upgrade, some guidance we have for you regarding upgrades, and I'll give it back to you, Barbara. Before we move on, Chris and Barbara, Vijay asked when was the first version of Secure Host Access introduced? Great question. So so the technical answer is 03/31/2025. But what I want you to understand is the product the the what we shipped in March 2025 was a rebranded combination of three separate products, three separate predecessor products. So, and the for those three predecessor products, the only thing that changed was the name of the product became Securist Access, and the colors went from blue to purple because we are now Rocket Software. So the reason why that's important to me is the technology, the underpinnings of this product were three separate products that came over with the AMC acquisition. That was the acquisition where Chris and I were brought over, and those products had been shipping for ten years. So, the the way I, embedded by customers. So I in fact, I have customers that use all three of those predecessor products and have used them for, I would say, at least seven or eight years in production because they were the ones that actually came to us and said, holy cow. How do we get off usernames and passwords? And they have moved to secure host access and rolled it into production. So, so it'll it looks like it's new, and I totally get that. But it is it is not new from a technology perspective. It is only new from a name and branding perspective. And so I I see another question, and then we might as well just answer it because we're gonna talk a little bit later. And Chris might be better at this. Sorry to pin it on you, Chris. But the question is, how does this affect FTPS and FTP scripting? And I think that matters with what product that scripting has been developed in. We're gonna talk a little bit about the migration path from BlueZone, if that's what you're using. And I could talk a little bit more about from RTE desktop as well just because you might be on there. But I think that's what it matters is is what are you using and then how do we bring you over to SecureOS access. Do you have anything to add to that, Chris? Or sorry to pin you on the yeah. And you're muted. I know. Yeah. It's happening. I am I'm here talking to myself. Yeah. Thank you. Yeah. As far as FTP so, Larry, maybe you can tell us if you're using the, BlueZone FTP client or an FTP client that that came with, that product or or via some of the method. I will add that the Secure Host Access, product comes with an FTP client, the reflection f you know, so Heritage Reflection FTP client, and it supports scripting and all sorts of things. It's probably different than the one that you, you know, what you have with, the FTP client that you're using, but it's it does have very powerful capabilities. It's got all security features and so forth built in, to the one that's in the secure host access, FTP client. So we can also take this offline and, get into more detail. I would say the answer does really reside in what you're using today and how easy is that to migrate over to the secure host access. And and Yeah. And that's what we're in this game for. Right? We we get that we're not we're not talking to you. Like, this is, you know, poof. You can just cut over to this product and life will be good. There will be migration challenges. And the farther back you are, the harder it's gonna be to migrate. But, if you can go ahead and move to the next slide, that leads me right in to the next slide. Our guidance to you is to start looking at this today. You can get an evaluation trial, whatever you wanna call that thing, of this product today without any, you know, transaction or concern or or any of that. You will need to reach out to your account executive. If you don't know who that is, then then Chris and I can find it for you. But, you know, especially if you are on BlueZone, I really I my guidance is very strong. You really need to start looking at this today because you do not have what it takes. You do not have not BlueZone does not have what it takes for you to meet these mandates going forward. And at minimum, you at least need to look at upgrading your thick client. And I what I don't want you to do is upgrade to RTE desktop and then have to upgrade to Secure Us access. So, but, again, we're we're here. We wanna help you. We get migration or upgrade isn't easy. We are doing our level best to make this easier, than you might think, especially if you're on RTE desktop. But I would start planning. I would get the product, and I would start looking at it. And then kinda the cool thing is there's this email address on the on the slide, and it's gonna be on one of our later slides too, is you can have a conversation with Chris and I over that email address. And if you need to have a one on one conversation where we need to get on a the phone with you or we need to get on a on a online meeting and show you things or help you we can do that too. So Chris and I are in this for customers. That is really our sole purpose, and that email address gets to us personally. So Chris and I are the ones that monitor that email address, and we will respond. And if we don't respond quick enough for you, just send another email and say, hey. Because it's it's only because we get busy. But but we do plan on working with each and every one on you on an upgrade plan. I think you can go to the next slide because I think that's me, and then I'll tell you what if you don't wanna upgrade. So, so you received an email back in July because we thought, at least, that you were a blue zone eight dot one one or before customer. You were not on the Rocket TE desktop rebrand of blue zone. We think you are on the original blue zone. That's why you got the email. And that email lets you know that this product is going into maturity on July 2026. And what do we mean by maturity? Because that's a really concerning statement. So first of all, we have your back. That's one of the good things about Rocket is they always have your back. We're not forcing you to upgrade. I think there's huge value in upgrading here. Even if you don't want all of those features, just getting yourself onto a terminal emulator that is robust and that has all of this future in front of it. Even if you don't partake in the IAM or the thin client, just getting you on something that has a go forward road map is really important and that we are paying attention to from a security perspective. Right? Because the other thing that comes in and plan mandates is you gotta be on a supported product. A lot of these mandates say that very clearly. You have to be on a supported product, and you have to be on a product that's delivering security fixes. So so what does maturity mean? It does not mean end of life. We are not forcing you. We are not stepping away from the product. However, BlueZone, the original BlueZone, is fairly old, and we have not done updates on it for a long time. We actually had suggested to you years ago that you upgrade to the RTE desktop. If you haven't done that, then you probably haven't gotten any updates anyway, but we will because we're we love our customers. We will evaluate any bugs that you bring to us or vulnerabilities, and we'll we'll, of course, look at those based on their severity, and then the available workarounds and mitigation. But if you are in a crisis mode, we will do our best to deliver either a workaround, a mitigation, or a fix to you. But the key here is that all innovation is going into secure host access, so that's pretty important. I wanna I just in case you are an RTE desktop customer, you're going to get an email. I believe you're gonna get that email in this coming January, and it will tell you that RTE desktop is going to go into the same mature status a year from then. So that will be so we'll send you the email in January 2026, and it will go into mature status in January 2027, where all of this still applies. Right? So you have a little bit of a longer lifeline. But if you are a rocket e desktop customer, I still think you should start looking at this. Make some plans. There is nothing here that the only sense of urgency that I have for you as my customer is from a security point of view. So if security doesn't matter to you or if you're not, you know, in a in a position where mandates or or what have we're not forcing you to move. But if you are under the gun, then this is the product for you, and you need to start looking at it a little bit seriously. And, you know, let's not worry about transactions until you look at this and make sure that it's the product for you. The other thing I will say is your path to secure host access is a little bit easier with Rocket Software TE Desktop because we had migration tools to get you from BlueZone to Rocket Software TE Desktop. And we have migration tools to get you from Rocket Software TE Desktop to Secure Host access. We do not have migration tools to get you from BlueZone to Secure Host access. But we can, obviously I'm sure you can hear me connect those dots in the back. We can get you there. Right? And we can get that stuff migrated even if we have to take you through our t desktop just to get you there. But, again, that's why we're suggesting that you take a look at this sooner than later, so that when you're ready, we're there for you. And that you're not under the gun and you're not putting me under the gun to get you migrated. So, mister Law, I think I'm turning it back to you. Thank you very much. So, yeah, let's talk a little bit about the, product life cycle. So, you know, we saw the history slide earlier. We're bringing together a lot of different, you know, heritage companies, terminal emulation companies, and brands. We've talked about, you know, all the different brands, BlueZone, Rocket Software, Reflection Rumba, and, different companies had different approaches to what they publish with regards to the product life cycle. So we had to spend some time over the past six to eight months here to discuss what we wanted to do with regards to the product life cycle for the, the heritage products we're talking about today, like Blue Zone, and then what to do going forward with Securals to access. So we went through that process. We published that. That is now available. That information is now available on the website. So you can go and look on, the Rocket website and look for your product within the product life cycle. Search on Blue Zone or Secure Host Access or whatever you're looking for and find out what the planned life cycle is for that product. You know, basically, the legacy products are all are in maturity phase. Everything that Barbara just said applies. And then for Secure Host Access specifically going forward, we've got this new, product life cycle that will apply to all the new versions of Secure Host Access going forward. So just some quick points here on the product life cycle. They're new and improved. You can easily access and understand the PLC policies because they're now published and and online for you to see for anybody to see. You can access them from many different areas. You know, we're sending out communications to folks on a regular basis. Let them know, you know, about all updates to our product strategy as well as, links to resources like the product life cycle. We've got the docs portal. So there's docs.rocketsoftware.com. You can go there to find the product life cycle. We've also, you know, like I said, there's a lot of different life cycle policies from the different heritage companies. We're bringing them together in a consistent manner, across all our host access emulators so they're easy to understand and easier for you to, follow. Secure Host Access, specifically, you know, going forward, if you look at the diagram at the bottom of this slide here, general avail we're gonna have three phases of the product life cycle, three core phases. General availability is years one to three where you get support, you know, all the support you want, call customer support, issues escalated development and fix, and so forth. And then in years four and five, it's limited support, and we start, you know, ratcheting back a little bit on, you know, what will support for a specific version of the product, and then restricted support in years six and beyond. Again, there's way more details on the recently published product life cycle online. Go check those out, and, we'll be happy to answer any questions. You know, we've got the alias, which we're gonna show again in here, just a minute. And, and and and then if you have any questions about product life cycle, we're happy to, answer those as as well as we may modify our policies based on your input. So looking forward to working with you on that as well. With that, let's move to the next topic, which is our really our last topic before questions, and that's, our commitment to you. And, just a few quick things to talk about here. So, you know, Barbara went over this, in one of her slides. Rocket Software Blue Zone continues to be supported. You know, we're here for you. You can move at your own pace as you get, you know, as you make the move to Secure Host access. Like Barbara said, better to look at Secure Host Access soon access sooner than later because there's going to be a regulatory mandate that says you need to protect some data on some host system. And if you get ahead of the game, it'll be much easier when you do that. We're gonna support you through this journey. So it's really it's our journey and it's also your, you know, your journey, but it's it's our journey together. We're here for you. We're gonna do everything, you know, to, we can to make it, easy to move to to secure host access. We're gonna try to give you all the functionality value, that that, you need in order to, you know, succeed and, and make sure your terminal emulation is what you need to be, going forward. And, I'll turn it over to Barbara for the rest. So I think you've seen in this presentation that, you know, we're providing an innovative road map. Right? I mean, this is just so much different than your Blue Zone emulator is today. And going forward, you will get more and more and more. You know, Chris and I worked hard on the product life cycle policies, and they are now made public, which I don't think you have had before as a rocket customer. AMC customers had a public, product life cycle. But now we have a public product life cycle for all of the terminal emulators so that you can easily see that. You know, with all things, you know, there's work to do. Right? And we don't get everything right out of the box, and I and I think that's one of kinda, like, another cool thing about working for Rocket Software is when they don't get it right, they make it right. And that's what's kind of, just kind of good for customers, obviously, and good for me as an employee as well. So if there's something that we need to change, then we absolutely will look into doing that. So we want your feedback. We solicit that. Right? So, we want you to tell us what you like and what you don't like. That goes for the product life cycle. That goes for the product in general. That goes for any of our messaging. Right? You you are the reason why we exist. Without customers, I wouldn't have a job. So we take your feedback seriously, and use that darn email address because that's how you get a hold of us. I do see a question in the queue, Evan, about the customizations from Rocket Software sessions. So it will kind of so first of all, Rocket Software, not talking blue zone here, talking Rocket Software, we have the ability to open your sessions, and run them in place and and other things like that. So it's a pretty good story for you as a Rocket Software customer. And, actually, we're gonna be doing more and more in that vein where all of that stuff comes over. Customizations, I think, is just, you know, just the word in general kind of makes you pause because we don't one, who customized it? Did you do that or did our field do that on your behalf? And then what was customized? So I'm I am nothing. I am transparent. And I don't wanna tell you, oh, yeah. Sure. They'll just come right over and work. But what I will tell you is we'll partner with you because those need to work for you. So even if they had to be recreated, we will partner with you to ensure that that gets done. So I can't answer it specifically. Kinda depends on what the customization is and how heavy it is. If you'd like to, you could, email us at that email address, and I can help get a either an SE in the field or even a developer involved, to look at the customization and then kinda give you some guidance about how hard that'll be to bring over. We the underlying DNA products of Securus Access have always had customizations to them. So, we might have to recreate it. And and if so, we'll partner with you, or or it might just come over. It just kinda depends on what you've done. And and just to add to that, Barbara, so, we work closely with development, and we tend, you know, the weekly meetings and so forth. And and there have been recent there has been recent work and demonstrations on, Secure Host Access, the desktop client being able to run Rocket TE sessions and macros. So it's being worked on right now. So, we kinda need to understand exactly, like Barbara said, what customizations you have need for, what types of sessions do you use? Do you connect to mainframes, a s four hundreds, UNIX systems. Right? So, we just need a little more detail. We can determine probably how easy it would be for you to, move right now to Securys' access. Thanks, Chris. Barbara, I see a question came in that we've talked about a lot. We have. What a great question. I I did not email him ahead of time, Evan. It's probably one of the one of the questions I get the most when I do these webinars. So the question is, if you have the EMFA, why would you need this? Great question. So so, a couple of things. So first of all, by using this product, you are adding a layer of defense that ZMFA doesn't necessarily add for you. We can we can integrate with any IAM. They absolutely do some integration with OIDC, for example. But we integrate with any IAM, and we're putting that layer before you connect to the host. So that's the first thing. But, really, what you're asking me is, look, if I'm gonna MFA in, I only need to MFA in in one spot, right, to be able to check that, compliance box off. And you're absolutely correct. With ZMFA so there's a there's a, sorry, there's a, a journey. Right? You're there's a there's a there's a scale that you balance between security and usability, and that's where secure host access comes into play. So, yes, you can have z m f a, and you can do multi factor authentication, and then it will actually present to you a token that you can copy from a web page and put into your rack f, a c f two top secret, screen and get logged in. Many of my customers, including the one that I got the quote from, which is kind of important, don't want a human involved. They don't want them copying that token from one screen to paste into their login screen. So what Secure Host access gives you is that single sign on via that same token with no human intervention. So that's really the uplift. If you have ZMFA, but you really want a single sign on experience, and I know and you probably just wanna email me, and you and I can just go have a conversation. But that sounds awkward. Right? MFA is security, and single sign on is is, all about the user. But you get the best of both worlds because you are signed in via MFA, but using a single sign on token that is only used once and only lasts for a short period of time. And so it is that integration, and we are the only emulator that integrates with ZMFA to give you that single sign on experience. So you don't have to have it. Absolutely. You are totally correct. You have ZMFA. You can run with that today, and it will suffice to meet your, mandatory requirements. But if you have Securo's access, you will have a much better user experience. And in my opinion, you're gonna have a much better, security story because that user is not copying and pasting a token from one place to another. So and, Todd, I'm totally open. I love to talk about this stuff. So if you ever wanna just talk to me, there's that email address on the screen again, and just shoot me an email, and you and I can just talk about it all day long. But it's a great question, so thanks for that. How does the pricing so I'm not allowed to talk to pricing. I'm a product manager, and they just don't allow me to talk because I just give this stuff away. And and that's why they don't let me talk about it. So my understanding is the ZMFA is an ELA product, and so it's a kind of an opportunity cost where you pull that out of your ELA versus getting something else in your ELA. Ours is a is a pricing. You you do have to pay for this technology. But what we do know is that we have a lot of customers today that use our software, and we respect that, and we respect that we're asking you to move. So we don't just give you new license pricing out of the box. What we do is take you from what you're paying today to, hopefully, a better value and a commensurate price point for that value. But we don't start off with new license pricing. We absolutely give you credit for what you're already into Rocket for from a terminal emulation perspective. If you're coming from a third party, emulator when Rocket doesn't own, then it might be a little bit of a different story from higher price point because you're not accustomed. But I don't get to do pricing. If you want pricing on it, again, email and work with you and all and I'll get account exec onboard. I know. Barbara, you kinda cut out a little bit there, but, I think the the gist of it was, we we can't talk pricing, outright, but we we can absolutely connect you to an AE who can help. So if you just reach out to the the email here, rocketconnectivity@rocketsoftware.com, and we can we can get you that information. Oh, I see. Sorry. Okay. Breaking up. And the pricing, Todd, is based on the user. So it's either named user or concurrent so not on the server technology. It is that easy. It is based on how many users are gonna use the product. That's great. I see that we're at the bottom of the hour, and we've gone through all of the questions. So I think we'll go ahead and wrap up. But if you have additional questions, anything that didn't get answered here, please reach out to the email on the screen. That is Chris and Barbara, and they can get answers for for any questions that you've got. So thank you all for being here. Chris and Barbara, thank you so much. Thank you very much. Have a great day. Have a good one. Bye all. Bye now.