SlideShare a Scribd company logo
API Trends & Cases Studies
Know-how Sharing Session
#ESSR
Salons eCom | Swiss IT Business | SMARC | Retail-Expo
24 & 25 Avril 2018 - Palexpo Genève
|
Your speakers
Wout Geldhof
Digital Account Executive
wgeldhof@axway.com
Emmanuel Dupouy
Sales Director
edupouy@smartwavesa.com
April 2018API Trends & Cases Studies 2
|
API
April 2018API Trends & Cases Studies 3
|
Application Program Interface
April 2018API Trends & Cases Studies 4
|
Accelerated Product Innovation
April 2018API Trends & Cases Studies 5
| 6© 2016 Axway | CONFIDENTIAL
|
| 8
API Economy – API-Consumer view
Composition for a single Service / Experience
CRM
M2M Backend
Internal
Location
Customers
Opportunities
Contracts
StatusMaintenance
Partner
Google Maps
Twillo
POI
…
Call
…
|
The digital challenge
API Trends & Cases Studies
To be innovative
here
Innovate here!!
April 2018 9
|
From browser to ubiquity
April 2018API Trends & Cases Studies 10
Smartphone
Tablet
Web Application
Internet TV
Social Media
Strategic
Partner
Integration
Connected
car
Innovation
Connected
house
API
API
API
API
|
Main project drivers
April 2018API Trends & Cases Studies
Cloud Integration
B2B Integration Modernization internal services
Omni channel Integration
11
|
• A software intermediary that allows two
applications to talk to each other
• Treated more like products than code:
designed for consumption for specific
audiences, documented, versioned
• Adhere to standards (typically HTTP and REST),
that are developer-friendly, easily accessible
and understood broadly
• Stronger discipline for security and
governance, as well as monitored and
managed for performance and scale
What is an API / waiter?
April 2018API Trends & Cases Studies 12
|
Systems of Record
Systems of
Engagement
CRM
ERP
Data
Warehouse
Channels, Apps,
and Devices
What’s needed?
Multispeed IT for efficiency, innovation, and agility
Full Lifecyle API
Management
April 2018API Trends & Cases Studies 13
|
Case studies
From theory to practice
April 2018API Trends & Cases Studies 15
|
API exposition
Outside in / Inside out
April 2018API Trends & Cases Studies 16
|
Gateway
April 2018API Trends & Cases Studies
• Link external apps to internal apps, with security, using SOA and APIs
Solution
Challenges
Identity Management
Authentication
Authorization
Audit
API Gateway
Services
Applications
Data
Backend Services
Messaging
Partners
17
|
Service Broker
April 2018API Trends & Cases Studies
• An “outbound Gateway”
• Connects to services, partners, and the Cloud
Solution
Challenges
Applies
Security
Services
Applications
Data
Backend Services
Messaging
API Gateway
Cloud and on
premise
Partners
Com Agency
18
|
• Convention center managing
100+ shows per year
• Information system composed
of on premises and cloud
applications
• Limited IT budget and team (7)
• Share volatile information with
partners: price list, exhibitor
list
Context
• Automate information sharing:
remove manual actions
• Complex information access:
located in an ERP not designed
to expose data
• Many integration cases: cash
register, web site, mobile
• Sensitive information: Need to
limit access
Challenges
Case study 1: digitalize partners’ relationship
April 2018API Trends & Cases Studies 19
|
On premise
Apps
Web Site
App A
Case study 1: solution architecture
April 2018API Trends & Cases Studies 20
API Gateway
ERP
Database
Enterprise
Service Bus
Cloud
Apps
Cash Register
DMZ INTERNAL
On premise
Apps
Internet
Data access
services
API Manager IDP
Firewall
INTERNET
ERP
Mobile
|
• Simplified and accelerated partner data exchange: 7 API to
automate information sharing
• Improved data quality: no risk of human error by full
automation
• Low investment: less than 20 days
• Easy integration: no change in the existing applications
• Foundation for the future: Easy to add new services in the
platform and support current and future integrations
• Fresh data and internal systems protected: cache and
throttling functions to secure application exposition
Results
Case study 1: API Management for everyone
April 2018API Trends & Cases Studies 21
|
Governance
Typical use cases
April 2018API Trends & Cases Studies 22
|
Solution
Challenge
API Governance
April 2018API Trends & Cases Studies
• Expose existing applications as APIs, securely.
• Onboard developers who want to use your APIs
API Gateway
Retailers
Communication employeesProducts designers
23
|
• MSC Mediterranean Shipping
Company
• Large, complex and distributed
information system
• Database architecture oriented
• Heterogeneous IT landscape
(due to acquisitions)
• Inter-office messaging via EDI
(300-700 messages/sec)
Context
• Distributed development
team: difficult to manage (120
people, 3 countries)
• Phased migration: to ensure
the continuous running of
legacy processes during
transition
• No global vision of services
• Multiple user authentication /
authorisation solutions
Challenges
Case study 2: Custom ERP overhaul
April 2018API Trends & Cases Studies 24
|
External Apps
Case study 2: solution architecture
April 2018API Trends & Cases Studies 25
API Gateway
API Manager
Subsidiary
Web
Application
DMZ HEADQUARTERInternet
Firewall
INTERNET
IDP
On premise
Apps
Back-end
Services
SUBSIDIARY
Cloud
Application
API Gateway
API Manager
API Portal
|
• Reduce application development time: Standardisation
promotes faster, more effective team communication
• Improved security: Alignment to standards and best
practices
• Simplified data access: Homogeneous APIs present data to
applications in a unified way
• API consumer comfort: API hides implementation specifics
to application developers
• Smooth application migration path: API consumers adopt
new API versions at their own pace
• Improved application quality: Audit functionality indicates
which legacy API versions are still in use
Results
Case study 2: One governance to rule them all !
April 2018API Trends & Cases Studies 26
|
Token Mediation
Simplify complexity
April 2018API Trends & Cases Studies 27
|
Token Mediation
April 2018API Trends & Cases Studies 28
Identities TokensRepositories Authorization
Security Infrastructure
Extensive set of connectors to Security Infrastructure
Service Request
Service/User Credential
Validated Access
Throttled Request
External App
Identity Management
Authentication
Authorization
Audit
Transformed Response Standard Response
API Gateway
• Manage heterogeneous security infrastructure
Solution
Challenges
|
• Luxury industry
• 200+ retailers to manage
• Large and complex information
system
• Share sensitive information
with retailers : stocks, prices,
product information
Context
• Identify each retailer: share
only the relevant information
based on its profile
• Existing security solution: need
to keep the existing products
based on SAML
• Give access to internal micro
services : need to support
OAUTH
Challenges
Case study 3: Secure sensible information access
April 2018API Trends & Cases Studies 29
|
Case study 3: Solution architecture
April 2018API Trends & Cases Studies 30
Active
Directory
Retailer
Application
USER BROWSER
Retailer Application
Backend
IDP
Micro Services
Reverse proxy
F5
Internet
API gateway
INTERNALDMZ
SAML
OAUTH
Token Mediation
Service provider
|
• No change in the existing solutions: reuse of existing IDP
already in place
• Information segregation: end to end authentication
guarantees that each retailer access its own information
• No information leak: best practices and standards
enforcement guarantee highest security level even if
connected application are not designed for it
• Futureproof: support for the future identity standards
• Single point of information for retailers: fresh information
because of direct access to the IS
Results
Case study 3: Agile security!
April 2018API Trends & Cases Studies 31
|
API Modernization / Integration
Typical use cases
April 2018API Trends & Cases Studies 32
|
API Modernization / Integration
April 2018API Trends & Cases Studies 33
Solution
Challenges
• Integrate with heterogeneous back end platforms
• Protocol and message mediation
• Service Modernization
Services
Applications
Data
Backend Services
Messaging
Services
Applications
Data
Backend Services
Messaging
HTTP
REST/SOAP
JSON/XML
FTP
JMS JMS
HTTP
REST/SOAP
JSON/XML
FTP
API Gateway
For Backend Service
|
• Luxury industry
• 20+ subsidiaries
• Large and complex information
system
• Heterogeneous systems: SAP,
Dynamic, Custom
• Share sensitive information
with subsidiaries : stocks, price
list, product information
Context
• Distributed information
system: integrate remote ERPs
• Secure information transfer:
guarantee information will not
be corrupted and not
intercepted
• Manage remote sites:
distribute integration code
Challenges
Case study 4: Integrate subsidiaries information system
April 2018API Trends & Cases Studies 34
|
Headquarter
Application
Headquarter
Application
Case study 4: Solution architecture
April 2018API Trends & Cases Studies 35
Headquarter
ERP
Headquarter
Subsidiary A
ERP
Internet
Subsidiary A
Subsidiary A
Application
Headquarter
Application
API gateway
Firewall Firewall
API gateway
Subsidiary N…
ESB
|
• No change in the existing solutions : Integration capabilities
of API gateway are enough for light integration cases in the
subsidiaries
• Worldwide solution managed in one place: DevOps
practices to automate integration code distribution
• Simple secured solution: All security matter (encryption,
transport…) located in one place, the API Gateway
• Reduced maintenance and support workload: End-to-end
traceability facilitates problem investigation and resolution
Results
Case study 4: Simple integration, secured transactions
April 2018API Trends & Cases Studies 36
|
Conclusion
April 2018API Trends & Cases Studies 37
|
Better ROI on
existing IS resources
Open enterprise to
the world in a
secure way
Reduce cost to
onboard new
partners and
customers
Innovation on the
user experience by
combining own and
3th party assets
Enabling /
improving work
between different
technical teams
Improved control /
visibility on the
information system
No lock on
deployment model
(Cloud / On
Premises)
API Management benefits
April 2018API Trends & Cases Studies 38

More Related Content

PDF
apidays LIVE LONDON - Differentiating your Developer Program: Is Speed "A" Di...
PPTX
apidays LIVE Helsinki & North - Product data ecosystem in the digital dental ...
PDF
API & the 3 Pillars of Digital Transformation - apidays LIVE Paris 2020
PPTX
apidays LIVE New York 2021 - API narrative: A true story of APIs and I by Div...
PPTX
Era of APIs: Why do we need an API strategy?
PDF
apidays LIVE Paris 2021 - APIs and Data products: How do they impact your bus...
PDF
IntegrationWorks: Grow Your Business with the API Economy
PPTX
API Governance – Modern API solutions in a digitalized world
apidays LIVE LONDON - Differentiating your Developer Program: Is Speed "A" Di...
apidays LIVE Helsinki & North - Product data ecosystem in the digital dental ...
API & the 3 Pillars of Digital Transformation - apidays LIVE Paris 2020
apidays LIVE New York 2021 - API narrative: A true story of APIs and I by Div...
Era of APIs: Why do we need an API strategy?
apidays LIVE Paris 2021 - APIs and Data products: How do they impact your bus...
IntegrationWorks: Grow Your Business with the API Economy
API Governance – Modern API solutions in a digitalized world

What's hot (20)

PDF
Value Networks in Open Banking
PDF
apidays LIVE Paris 2021 - The Connective Tissue of Open Finance by Radu Popa,...
PDF
5 Things Every Product Leader Needs to Know About API
PDF
Explaining API Integration: How Does API Integration work?
PPTX
What do you mean by “API as a Product”?
PDF
I Love APIs London 2016 Keynote
PPTX
apidays LIVE Hong Kong 2021 - Headless API Management by Snehal Chakraborty, ...
PDF
apidays LIVE Australia 2020 - API Product for Business Ecosystems by Amancio ...
PPTX
apidays LIVE Paris 2021 - API narrative: A true story of APIs and I by Div Ma...
PPTX
INTERFACE, by apidays - API First mentality by Tanya Vlahovic, eBay
PDF
Profiting From "Smart City" APIs
PDF
apidays LIVE Hong Kong 2021 - Getting API Management adopted: the hearts and ...
PDF
apidays LIVE Australia 2021 - A cloud-native approach for open banking in act...
PDF
apidays LIVE Paris 2021 - What does the future of communication APIs look lik...
PDF
API Product Management for Product Managers
PDF
apidays LIVE Singapore - Why you need a Developer Relations team for your API...
PPTX
APIdays Helsinki 2019 - API Economy Journey Map: Maturity Model with Alan Gli...
PPTX
Node: The Integration Fabric of the Future
PDF
APIdays London 2019 - Open Banking:The day after PSD2 by Emmanuel Methivier, ...
PPTX
API Governance in the Enterprise
Value Networks in Open Banking
apidays LIVE Paris 2021 - The Connective Tissue of Open Finance by Radu Popa,...
5 Things Every Product Leader Needs to Know About API
Explaining API Integration: How Does API Integration work?
What do you mean by “API as a Product”?
I Love APIs London 2016 Keynote
apidays LIVE Hong Kong 2021 - Headless API Management by Snehal Chakraborty, ...
apidays LIVE Australia 2020 - API Product for Business Ecosystems by Amancio ...
apidays LIVE Paris 2021 - API narrative: A true story of APIs and I by Div Ma...
INTERFACE, by apidays - API First mentality by Tanya Vlahovic, eBay
Profiting From "Smart City" APIs
apidays LIVE Hong Kong 2021 - Getting API Management adopted: the hearts and ...
apidays LIVE Australia 2021 - A cloud-native approach for open banking in act...
apidays LIVE Paris 2021 - What does the future of communication APIs look lik...
API Product Management for Product Managers
apidays LIVE Singapore - Why you need a Developer Relations team for your API...
APIdays Helsinki 2019 - API Economy Journey Map: Maturity Model with Alan Gli...
Node: The Integration Fabric of the Future
APIdays London 2019 - Open Banking:The day after PSD2 by Emmanuel Methivier, ...
API Governance in the Enterprise
Ad

Similar to API Trends (20)

PDF
API Trends & Use Cases
PDF
Openbar Leuven \\ Using API Management to improve developers productivity \\ ...
PPTX
apidays LIVE India 2022_Breaking boundaries of the Old Giant.pptx
PPT
Six Steps To Build A Successful API
PPT
Six Steps to Build Successful APIs
PDF
5 pillars of API Management
PPT
Enterprise API deployment best practice
PPTX
apidays LIVE Paris 2021 - APIs - How did we get here and where are we going n...
PDF
Hewlett Packard Enterprise View on Going Big with API Management - Applicatio...
PPTX
API Development: Bridging Systems for Seamless Integration
PPTX
API Best Practices
PPTX
API Days Paris 2023 - How API Fit a Modern Entreprise Integration Platform - ...
PDF
Apidays Paris 2023 - How API Fit to a Modern Enterprise Integration Platform,...
PPT
Api management introduction and product overview v1.0 2014.08.28
PDF
Day 1 axway apim-training
PPTX
Digital transformation
PDF
[WSO2 Summit Sydney 2019] Building a Successful API Strategy from Scratch and...
PDF
APIdays Paris 2018 - Creating an API economy business strategy Alan Glickenho...
PDF
Meetup 2022 - API Gateway landscape.pdf
PPTX
TEC-Roundtable-API
API Trends & Use Cases
Openbar Leuven \\ Using API Management to improve developers productivity \\ ...
apidays LIVE India 2022_Breaking boundaries of the Old Giant.pptx
Six Steps To Build A Successful API
Six Steps to Build Successful APIs
5 pillars of API Management
Enterprise API deployment best practice
apidays LIVE Paris 2021 - APIs - How did we get here and where are we going n...
Hewlett Packard Enterprise View on Going Big with API Management - Applicatio...
API Development: Bridging Systems for Seamless Integration
API Best Practices
API Days Paris 2023 - How API Fit a Modern Entreprise Integration Platform - ...
Apidays Paris 2023 - How API Fit to a Modern Enterprise Integration Platform,...
Api management introduction and product overview v1.0 2014.08.28
Day 1 axway apim-training
Digital transformation
[WSO2 Summit Sydney 2019] Building a Successful API Strategy from Scratch and...
APIdays Paris 2018 - Creating an API economy business strategy Alan Glickenho...
Meetup 2022 - API Gateway landscape.pdf
TEC-Roundtable-API
Ad

More from SmartWave (20)

PDF
How to build an API strategy - Dorian Rougierx.
PDF
Répondre aux défis de la gestion des factures fournisseurs
PDF
SmartTechTalk : Asynchronous messaging
PPTX
Data Virtualisation and API Management United
PPTX
Data Agility and Security with Data Virtualisation
PPTX
API Program Lessons learned
PDF
Customer testimonal API Program Lessons learned
PDF
API Management Microservices beyond HIP
PDF
How does an API management strategy support your digital transformation?
PDF
Monitoring docker, k8s and your applications with the elastic stack
PDF
The elastic stack on docker
PDF
Gestion des logs de vos containers avec elastic !
PDF
How api management supports the digital transformation process
PDF
Docker Geneva Meetup - Jelastic
PPTX
Docker Geneva Meetup - Swarm
PDF
Docker Geneva Meetup - Kubernetes
PPTX
Dématérialisation du traitement des factures
PDF
Axway amplify api management platform
PDF
Api gateway @ vaudoise assurances
PDF
MSC Digital transformation with Axway API Management products and SmartWave S...
How to build an API strategy - Dorian Rougierx.
Répondre aux défis de la gestion des factures fournisseurs
SmartTechTalk : Asynchronous messaging
Data Virtualisation and API Management United
Data Agility and Security with Data Virtualisation
API Program Lessons learned
Customer testimonal API Program Lessons learned
API Management Microservices beyond HIP
How does an API management strategy support your digital transformation?
Monitoring docker, k8s and your applications with the elastic stack
The elastic stack on docker
Gestion des logs de vos containers avec elastic !
How api management supports the digital transformation process
Docker Geneva Meetup - Jelastic
Docker Geneva Meetup - Swarm
Docker Geneva Meetup - Kubernetes
Dématérialisation du traitement des factures
Axway amplify api management platform
Api gateway @ vaudoise assurances
MSC Digital transformation with Axway API Management products and SmartWave S...

Recently uploaded (20)

PDF
Univ-Connecticut-ChatGPT-Presentaion.pdf
PPTX
SOPHOS-XG Firewall Administrator PPT.pptx
PPTX
OMC Textile Division Presentation 2021.pptx
PDF
Assigned Numbers - 2025 - Bluetooth® Document
PDF
DP Operators-handbook-extract for the Mautical Institute
PPTX
1. Introduction to Computer Programming.pptx
PDF
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
PDF
Approach and Philosophy of On baking technology
PDF
Mushroom cultivation and it's methods.pdf
PDF
ENT215_Completing-a-large-scale-migration-and-modernization-with-AWS.pdf
PDF
Encapsulation_ Review paper, used for researhc scholars
PDF
Hybrid model detection and classification of lung cancer
PPTX
Tartificialntelligence_presentation.pptx
PDF
MIND Revenue Release Quarter 2 2025 Press Release
PDF
gpt5_lecture_notes_comprehensive_20250812015547.pdf
PDF
Transform Your ITIL® 4 & ITSM Strategy with AI in 2025.pdf
PDF
project resource management chapter-09.pdf
PDF
Unlocking AI with Model Context Protocol (MCP)
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PDF
DASA ADMISSION 2024_FirstRound_FirstRank_LastRank.pdf
Univ-Connecticut-ChatGPT-Presentaion.pdf
SOPHOS-XG Firewall Administrator PPT.pptx
OMC Textile Division Presentation 2021.pptx
Assigned Numbers - 2025 - Bluetooth® Document
DP Operators-handbook-extract for the Mautical Institute
1. Introduction to Computer Programming.pptx
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
Approach and Philosophy of On baking technology
Mushroom cultivation and it's methods.pdf
ENT215_Completing-a-large-scale-migration-and-modernization-with-AWS.pdf
Encapsulation_ Review paper, used for researhc scholars
Hybrid model detection and classification of lung cancer
Tartificialntelligence_presentation.pptx
MIND Revenue Release Quarter 2 2025 Press Release
gpt5_lecture_notes_comprehensive_20250812015547.pdf
Transform Your ITIL® 4 & ITSM Strategy with AI in 2025.pdf
project resource management chapter-09.pdf
Unlocking AI with Model Context Protocol (MCP)
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
DASA ADMISSION 2024_FirstRound_FirstRank_LastRank.pdf

API Trends

  • 1. API Trends & Cases Studies Know-how Sharing Session #ESSR Salons eCom | Swiss IT Business | SMARC | Retail-Expo 24 & 25 Avril 2018 - Palexpo Genève
  • 2. | Your speakers Wout Geldhof Digital Account Executive wgeldhof@axway.com Emmanuel Dupouy Sales Director edupouy@smartwavesa.com April 2018API Trends & Cases Studies 2
  • 3. | API April 2018API Trends & Cases Studies 3
  • 4. | Application Program Interface April 2018API Trends & Cases Studies 4
  • 5. | Accelerated Product Innovation April 2018API Trends & Cases Studies 5
  • 6. | 6© 2016 Axway | CONFIDENTIAL
  • 7. |
  • 8. | 8 API Economy – API-Consumer view Composition for a single Service / Experience CRM M2M Backend Internal Location Customers Opportunities Contracts StatusMaintenance Partner Google Maps Twillo POI … Call …
  • 9. | The digital challenge API Trends & Cases Studies To be innovative here Innovate here!! April 2018 9
  • 10. | From browser to ubiquity April 2018API Trends & Cases Studies 10 Smartphone Tablet Web Application Internet TV Social Media Strategic Partner Integration Connected car Innovation Connected house API API API API
  • 11. | Main project drivers April 2018API Trends & Cases Studies Cloud Integration B2B Integration Modernization internal services Omni channel Integration 11
  • 12. | • A software intermediary that allows two applications to talk to each other • Treated more like products than code: designed for consumption for specific audiences, documented, versioned • Adhere to standards (typically HTTP and REST), that are developer-friendly, easily accessible and understood broadly • Stronger discipline for security and governance, as well as monitored and managed for performance and scale What is an API / waiter? April 2018API Trends & Cases Studies 12
  • 13. | Systems of Record Systems of Engagement CRM ERP Data Warehouse Channels, Apps, and Devices What’s needed? Multispeed IT for efficiency, innovation, and agility Full Lifecyle API Management April 2018API Trends & Cases Studies 13
  • 14. | Case studies From theory to practice April 2018API Trends & Cases Studies 15
  • 15. | API exposition Outside in / Inside out April 2018API Trends & Cases Studies 16
  • 16. | Gateway April 2018API Trends & Cases Studies • Link external apps to internal apps, with security, using SOA and APIs Solution Challenges Identity Management Authentication Authorization Audit API Gateway Services Applications Data Backend Services Messaging Partners 17
  • 17. | Service Broker April 2018API Trends & Cases Studies • An “outbound Gateway” • Connects to services, partners, and the Cloud Solution Challenges Applies Security Services Applications Data Backend Services Messaging API Gateway Cloud and on premise Partners Com Agency 18
  • 18. | • Convention center managing 100+ shows per year • Information system composed of on premises and cloud applications • Limited IT budget and team (7) • Share volatile information with partners: price list, exhibitor list Context • Automate information sharing: remove manual actions • Complex information access: located in an ERP not designed to expose data • Many integration cases: cash register, web site, mobile • Sensitive information: Need to limit access Challenges Case study 1: digitalize partners’ relationship April 2018API Trends & Cases Studies 19
  • 19. | On premise Apps Web Site App A Case study 1: solution architecture April 2018API Trends & Cases Studies 20 API Gateway ERP Database Enterprise Service Bus Cloud Apps Cash Register DMZ INTERNAL On premise Apps Internet Data access services API Manager IDP Firewall INTERNET ERP Mobile
  • 20. | • Simplified and accelerated partner data exchange: 7 API to automate information sharing • Improved data quality: no risk of human error by full automation • Low investment: less than 20 days • Easy integration: no change in the existing applications • Foundation for the future: Easy to add new services in the platform and support current and future integrations • Fresh data and internal systems protected: cache and throttling functions to secure application exposition Results Case study 1: API Management for everyone April 2018API Trends & Cases Studies 21
  • 21. | Governance Typical use cases April 2018API Trends & Cases Studies 22
  • 22. | Solution Challenge API Governance April 2018API Trends & Cases Studies • Expose existing applications as APIs, securely. • Onboard developers who want to use your APIs API Gateway Retailers Communication employeesProducts designers 23
  • 23. | • MSC Mediterranean Shipping Company • Large, complex and distributed information system • Database architecture oriented • Heterogeneous IT landscape (due to acquisitions) • Inter-office messaging via EDI (300-700 messages/sec) Context • Distributed development team: difficult to manage (120 people, 3 countries) • Phased migration: to ensure the continuous running of legacy processes during transition • No global vision of services • Multiple user authentication / authorisation solutions Challenges Case study 2: Custom ERP overhaul April 2018API Trends & Cases Studies 24
  • 24. | External Apps Case study 2: solution architecture April 2018API Trends & Cases Studies 25 API Gateway API Manager Subsidiary Web Application DMZ HEADQUARTERInternet Firewall INTERNET IDP On premise Apps Back-end Services SUBSIDIARY Cloud Application API Gateway API Manager API Portal
  • 25. | • Reduce application development time: Standardisation promotes faster, more effective team communication • Improved security: Alignment to standards and best practices • Simplified data access: Homogeneous APIs present data to applications in a unified way • API consumer comfort: API hides implementation specifics to application developers • Smooth application migration path: API consumers adopt new API versions at their own pace • Improved application quality: Audit functionality indicates which legacy API versions are still in use Results Case study 2: One governance to rule them all ! April 2018API Trends & Cases Studies 26
  • 26. | Token Mediation Simplify complexity April 2018API Trends & Cases Studies 27
  • 27. | Token Mediation April 2018API Trends & Cases Studies 28 Identities TokensRepositories Authorization Security Infrastructure Extensive set of connectors to Security Infrastructure Service Request Service/User Credential Validated Access Throttled Request External App Identity Management Authentication Authorization Audit Transformed Response Standard Response API Gateway • Manage heterogeneous security infrastructure Solution Challenges
  • 28. | • Luxury industry • 200+ retailers to manage • Large and complex information system • Share sensitive information with retailers : stocks, prices, product information Context • Identify each retailer: share only the relevant information based on its profile • Existing security solution: need to keep the existing products based on SAML • Give access to internal micro services : need to support OAUTH Challenges Case study 3: Secure sensible information access April 2018API Trends & Cases Studies 29
  • 29. | Case study 3: Solution architecture April 2018API Trends & Cases Studies 30 Active Directory Retailer Application USER BROWSER Retailer Application Backend IDP Micro Services Reverse proxy F5 Internet API gateway INTERNALDMZ SAML OAUTH Token Mediation Service provider
  • 30. | • No change in the existing solutions: reuse of existing IDP already in place • Information segregation: end to end authentication guarantees that each retailer access its own information • No information leak: best practices and standards enforcement guarantee highest security level even if connected application are not designed for it • Futureproof: support for the future identity standards • Single point of information for retailers: fresh information because of direct access to the IS Results Case study 3: Agile security! April 2018API Trends & Cases Studies 31
  • 31. | API Modernization / Integration Typical use cases April 2018API Trends & Cases Studies 32
  • 32. | API Modernization / Integration April 2018API Trends & Cases Studies 33 Solution Challenges • Integrate with heterogeneous back end platforms • Protocol and message mediation • Service Modernization Services Applications Data Backend Services Messaging Services Applications Data Backend Services Messaging HTTP REST/SOAP JSON/XML FTP JMS JMS HTTP REST/SOAP JSON/XML FTP API Gateway For Backend Service
  • 33. | • Luxury industry • 20+ subsidiaries • Large and complex information system • Heterogeneous systems: SAP, Dynamic, Custom • Share sensitive information with subsidiaries : stocks, price list, product information Context • Distributed information system: integrate remote ERPs • Secure information transfer: guarantee information will not be corrupted and not intercepted • Manage remote sites: distribute integration code Challenges Case study 4: Integrate subsidiaries information system April 2018API Trends & Cases Studies 34
  • 34. | Headquarter Application Headquarter Application Case study 4: Solution architecture April 2018API Trends & Cases Studies 35 Headquarter ERP Headquarter Subsidiary A ERP Internet Subsidiary A Subsidiary A Application Headquarter Application API gateway Firewall Firewall API gateway Subsidiary N… ESB
  • 35. | • No change in the existing solutions : Integration capabilities of API gateway are enough for light integration cases in the subsidiaries • Worldwide solution managed in one place: DevOps practices to automate integration code distribution • Simple secured solution: All security matter (encryption, transport…) located in one place, the API Gateway • Reduced maintenance and support workload: End-to-end traceability facilitates problem investigation and resolution Results Case study 4: Simple integration, secured transactions April 2018API Trends & Cases Studies 36
  • 36. | Conclusion April 2018API Trends & Cases Studies 37
  • 37. | Better ROI on existing IS resources Open enterprise to the world in a secure way Reduce cost to onboard new partners and customers Innovation on the user experience by combining own and 3th party assets Enabling / improving work between different technical teams Improved control / visibility on the information system No lock on deployment model (Cloud / On Premises) API Management benefits April 2018API Trends & Cases Studies 38