SlideShare a Scribd company logo
API Trends & Cases Studies
Know-how Sharing Session
#ESSR
Salons eCom | Swiss IT Business | SMARC | Retail-Expo
24 & 25 Avril 2018 - Palexpo Genève
|
Your speakers
Wout Geldhof
Digital Account Executive
wgeldhof@axway.com
Emmanuel Dupouy
Sales Director
edupouy@smartwavesa.com
April 2018API Trends & Cases Studies 2
|
API
April 2018API Trends & Cases Studies 3
|
Application Program Interface
April 2018API Trends & Cases Studies 4
|
Accelerated Product Innovation
April 2018API Trends & Cases Studies 5
| 6© 2016 Axway | CONFIDENTIAL
|
| 8
API Economy – API-Consumer view
Composition for a single Service / Experience
CRM
M2M Backend
Internal
Location
Customers
Opportunities
Contracts
StatusMaintenance
Partner
Google Maps
Twillo
POI
…
Call
…
|
The digital challenge
API Trends & Cases Studies
To be innovative
here
Innovate here!!
April 2018 9
|
From browser to ubiquity
April 2018API Trends & Cases Studies 10
Smartphone
Tablet
Web Application
Internet TV
Social Media
Strategic
Partner
Integration
Connected
car
Innovation
Connected
house
API
API
API
API
|
Main project drivers
April 2018API Trends & Cases Studies
Cloud Integration
B2B Integration Modernization internal services
Omni channel Integration
11
|
• A software intermediary that allows two
applications to talk to each other
• Treated more like products than code:
designed for consumption for specific
audiences, documented, versioned
• Adhere to standards (typically HTTP and REST),
that are developer-friendly, easily accessible
and understood broadly
• Stronger discipline for security and
governance, as well as monitored and
managed for performance and scale
What is an API / waiter?
April 2018API Trends & Cases Studies 12
|
Systems of Record
Systems of
Engagement
CRM
ERP
Data
Warehouse
Channels, Apps,
and Devices
What’s needed?
Multispeed IT for efficiency, innovation, and agility
Full Lifecyle API
Management
April 2018API Trends & Cases Studies 13
|
Case studies
From theory to practice
April 2018API Trends & Cases Studies 15
|
API exposition
Outside in / Inside out
April 2018API Trends & Cases Studies 16
|
Gateway
April 2018API Trends & Cases Studies
• Link external apps to internal apps, with security, using SOA and APIs
Solution
Challenges
Identity Management
Authentication
Authorization
Audit
API Gateway
Services
Applications
Data
Backend Services
Messaging
Partners
17
|
Service Broker
April 2018API Trends & Cases Studies
• An “outbound Gateway”
• Connects to services, partners, and the Cloud
Solution
Challenges
Applies
Security
Services
Applications
Data
Backend Services
Messaging
API Gateway
Cloud and on
premise
Partners
Com Agency
18
|
• Convention center managing
100+ shows per year
• Information system composed
of on premises and cloud
applications
• Limited IT budget and team (7)
• Share volatile information with
partners: price list, exhibitor
list
Context
• Automate information sharing:
remove manual actions
• Complex information access:
located in an ERP not designed
to expose data
• Many integration cases: cash
register, web site, mobile
• Sensitive information: Need to
limit access
Challenges
Case study 1: digitalize partners’ relationship
April 2018API Trends & Cases Studies 19
|
On premise
Apps
Web Site
App A
Case study 1: solution architecture
April 2018API Trends & Cases Studies 20
API Gateway
ERP
Database
Enterprise
Service Bus
Cloud
Apps
Cash Register
DMZ INTERNAL
On premise
Apps
Internet
Data access
services
API Manager IDP
Firewall
INTERNET
ERP
Mobile
|
• Simplified and accelerated partner data exchange: 7 API to
automate information sharing
• Improved data quality: no risk of human error by full
automation
• Low investment: less than 20 days
• Easy integration: no change in the existing applications
• Foundation for the future: Easy to add new services in the
platform and support current and future integrations
• Fresh data and internal systems protected: cache and
throttling functions to secure application exposition
Results
Case study 1: API Management for everyone
April 2018API Trends & Cases Studies 21
|
Governance
Typical use cases
April 2018API Trends & Cases Studies 22
|
Solution
Challenge
API Governance
April 2018API Trends & Cases Studies
• Expose existing applications as APIs, securely.
• Onboard developers who want to use your APIs
API Gateway
Retailers
Communication employeesProducts designers
23
|
• MSC Mediterranean Shipping
Company
• Large, complex and distributed
information system
• Database architecture oriented
• Heterogeneous IT landscape
(due to acquisitions)
• Inter-office messaging via EDI
(300-700 messages/sec)
Context
• Distributed development
team: difficult to manage (120
people, 3 countries)
• Phased migration: to ensure
the continuous running of
legacy processes during
transition
• No global vision of services
• Multiple user authentication /
authorisation solutions
Challenges
Case study 2: Custom ERP overhaul
April 2018API Trends & Cases Studies 24
|
External Apps
Case study 2: solution architecture
April 2018API Trends & Cases Studies 25
API Gateway
API Manager
Subsidiary
Web
Application
DMZ HEADQUARTERInternet
Firewall
INTERNET
IDP
On premise
Apps
Back-end
Services
SUBSIDIARY
Cloud
Application
API Gateway
API Manager
API Portal
|
• Reduce application development time: Standardisation
promotes faster, more effective team communication
• Improved security: Alignment to standards and best
practices
• Simplified data access: Homogeneous APIs present data to
applications in a unified way
• API consumer comfort: API hides implementation specifics
to application developers
• Smooth application migration path: API consumers adopt
new API versions at their own pace
• Improved application quality: Audit functionality indicates
which legacy API versions are still in use
Results
Case study 2: One governance to rule them all !
April 2018API Trends & Cases Studies 26
|
Token Mediation
Simplify complexity
April 2018API Trends & Cases Studies 27
|
Token Mediation
April 2018API Trends & Cases Studies 28
Identities TokensRepositories Authorization
Security Infrastructure
Extensive set of connectors to Security Infrastructure
Service Request
Service/User Credential
Validated Access
Throttled Request
External App
Identity Management
Authentication
Authorization
Audit
Transformed Response Standard Response
API Gateway
• Manage heterogeneous security infrastructure
Solution
Challenges
|
• Luxury industry
• 200+ retailers to manage
• Large and complex information
system
• Share sensitive information
with retailers : stocks, prices,
product information
Context
• Identify each retailer: share
only the relevant information
based on its profile
• Existing security solution: need
to keep the existing products
based on SAML
• Give access to internal micro
services : need to support
OAUTH
Challenges
Case study 3: Secure sensible information access
April 2018API Trends & Cases Studies 29
|
Case study 3: Solution architecture
April 2018API Trends & Cases Studies 30
Active
Directory
Retailer
Application
USER BROWSER
Retailer Application
Backend
IDP
Micro Services
Reverse proxy
F5
Internet
API gateway
INTERNALDMZ
SAML
OAUTH
Token Mediation
Service provider
|
• No change in the existing solutions: reuse of existing IDP
already in place
• Information segregation: end to end authentication
guarantees that each retailer access its own information
• No information leak: best practices and standards
enforcement guarantee highest security level even if
connected application are not designed for it
• Futureproof: support for the future identity standards
• Single point of information for retailers: fresh information
because of direct access to the IS
Results
Case study 3: Agile security!
April 2018API Trends & Cases Studies 31
|
API Modernization / Integration
Typical use cases
April 2018API Trends & Cases Studies 32
|
API Modernization / Integration
April 2018API Trends & Cases Studies 33
Solution
Challenges
• Integrate with heterogeneous back end platforms
• Protocol and message mediation
• Service Modernization
Services
Applications
Data
Backend Services
Messaging
Services
Applications
Data
Backend Services
Messaging
HTTP
REST/SOAP
JSON/XML
FTP
JMS JMS
HTTP
REST/SOAP
JSON/XML
FTP
API Gateway
For Backend Service
|
• Luxury industry
• 20+ subsidiaries
• Large and complex information
system
• Heterogeneous systems: SAP,
Dynamic, Custom
• Share sensitive information
with subsidiaries : stocks, price
list, product information
Context
• Distributed information
system: integrate remote ERPs
• Secure information transfer:
guarantee information will not
be corrupted and not
intercepted
• Manage remote sites:
distribute integration code
Challenges
Case study 4: Integrate subsidiaries information system
April 2018API Trends & Cases Studies 34
|
Headquarter
Application
Headquarter
Application
Case study 4: Solution architecture
April 2018API Trends & Cases Studies 35
Headquarter
ERP
Headquarter
Subsidiary A
ERP
Internet
Subsidiary A
Subsidiary A
Application
Headquarter
Application
API gateway
Firewall Firewall
API gateway
Subsidiary N…
ESB
|
• No change in the existing solutions : Integration capabilities
of API gateway are enough for light integration cases in the
subsidiaries
• Worldwide solution managed in one place: DevOps
practices to automate integration code distribution
• Simple secured solution: All security matter (encryption,
transport…) located in one place, the API Gateway
• Reduced maintenance and support workload: End-to-end
traceability facilitates problem investigation and resolution
Results
Case study 4: Simple integration, secured transactions
April 2018API Trends & Cases Studies 36
|
Conclusion
April 2018API Trends & Cases Studies 37
|
Better ROI on
existing IS resources
Open enterprise to
the world in a
secure way
Reduce cost to
onboard new
partners and
customers
Innovation on the
user experience by
combining own and
3th party assets
Enabling /
improving work
between different
technical teams
Improved control /
visibility on the
information system
No lock on
deployment model
(Cloud / On
Premises)
API Management benefits
April 2018API Trends & Cases Studies 38

More Related Content

PDF
apidays LIVE LONDON - Differentiating your Developer Program: Is Speed "A" Di...
apidays
 
PPTX
apidays LIVE Helsinki & North - Product data ecosystem in the digital dental ...
apidays
 
PDF
API & the 3 Pillars of Digital Transformation - apidays LIVE Paris 2020
Alianna Inzana
 
PPTX
apidays LIVE New York 2021 - API narrative: A true story of APIs and I by Div...
apidays
 
PPTX
Era of APIs: Why do we need an API strategy?
Bala Iyer
 
PDF
apidays LIVE Paris 2021 - APIs and Data products: How do they impact your bus...
apidays
 
PDF
IntegrationWorks: Grow Your Business with the API Economy
Lara Pascoe
 
PPTX
API Governance – Modern API solutions in a digitalized world
BizTalk360
 
apidays LIVE LONDON - Differentiating your Developer Program: Is Speed "A" Di...
apidays
 
apidays LIVE Helsinki & North - Product data ecosystem in the digital dental ...
apidays
 
API & the 3 Pillars of Digital Transformation - apidays LIVE Paris 2020
Alianna Inzana
 
apidays LIVE New York 2021 - API narrative: A true story of APIs and I by Div...
apidays
 
Era of APIs: Why do we need an API strategy?
Bala Iyer
 
apidays LIVE Paris 2021 - APIs and Data products: How do they impact your bus...
apidays
 
IntegrationWorks: Grow Your Business with the API Economy
Lara Pascoe
 
API Governance – Modern API solutions in a digitalized world
BizTalk360
 

What's hot (20)

PDF
Value Networks in Open Banking
Matt McLarty
 
PDF
apidays LIVE Paris 2021 - The Connective Tissue of Open Finance by Radu Popa,...
apidays
 
PDF
5 Things Every Product Leader Needs to Know About API
Amancio Bouza
 
PDF
Explaining API Integration: How Does API Integration work?
DavidAltmen
 
PPTX
What do you mean by “API as a Product”?
Nordic APIs
 
PDF
I Love APIs London 2016 Keynote
Apigee | Google Cloud
 
PPTX
apidays LIVE Hong Kong 2021 - Headless API Management by Snehal Chakraborty, ...
apidays
 
PDF
apidays LIVE Australia 2020 - API Product for Business Ecosystems by Amancio ...
apidays
 
PPTX
apidays LIVE Paris 2021 - API narrative: A true story of APIs and I by Div Ma...
apidays
 
PPTX
INTERFACE, by apidays - API First mentality by Tanya Vlahovic, eBay
apidays
 
PDF
Profiting From "Smart City" APIs
ProgrammableWeb
 
PDF
apidays LIVE Hong Kong 2021 - Getting API Management adopted: the hearts and ...
apidays
 
PDF
apidays LIVE Australia 2021 - A cloud-native approach for open banking in act...
apidays
 
PDF
apidays LIVE Paris 2021 - What does the future of communication APIs look lik...
apidays
 
PDF
API Product Management for Product Managers
Amancio Bouza
 
PDF
apidays LIVE Singapore - Why you need a Developer Relations team for your API...
apidays
 
PPTX
APIdays Helsinki 2019 - API Economy Journey Map: Maturity Model with Alan Gli...
apidays
 
PPTX
Node: The Integration Fabric of the Future
Albert Tsang
 
PDF
APIdays London 2019 - Open Banking:The day after PSD2 by Emmanuel Methivier, ...
apidays
 
PPTX
API Governance in the Enterprise
Apigee | Google Cloud
 
Value Networks in Open Banking
Matt McLarty
 
apidays LIVE Paris 2021 - The Connective Tissue of Open Finance by Radu Popa,...
apidays
 
5 Things Every Product Leader Needs to Know About API
Amancio Bouza
 
Explaining API Integration: How Does API Integration work?
DavidAltmen
 
What do you mean by “API as a Product”?
Nordic APIs
 
I Love APIs London 2016 Keynote
Apigee | Google Cloud
 
apidays LIVE Hong Kong 2021 - Headless API Management by Snehal Chakraborty, ...
apidays
 
apidays LIVE Australia 2020 - API Product for Business Ecosystems by Amancio ...
apidays
 
apidays LIVE Paris 2021 - API narrative: A true story of APIs and I by Div Ma...
apidays
 
INTERFACE, by apidays - API First mentality by Tanya Vlahovic, eBay
apidays
 
Profiting From "Smart City" APIs
ProgrammableWeb
 
apidays LIVE Hong Kong 2021 - Getting API Management adopted: the hearts and ...
apidays
 
apidays LIVE Australia 2021 - A cloud-native approach for open banking in act...
apidays
 
apidays LIVE Paris 2021 - What does the future of communication APIs look lik...
apidays
 
API Product Management for Product Managers
Amancio Bouza
 
apidays LIVE Singapore - Why you need a Developer Relations team for your API...
apidays
 
APIdays Helsinki 2019 - API Economy Journey Map: Maturity Model with Alan Gli...
apidays
 
Node: The Integration Fabric of the Future
Albert Tsang
 
APIdays London 2019 - Open Banking:The day after PSD2 by Emmanuel Methivier, ...
apidays
 
API Governance in the Enterprise
Apigee | Google Cloud
 
Ad

Similar to API Trends (20)

PDF
API Trends & Use Cases
SmartWave
 
PDF
apidays LIVE Helsinki & North 2022_APIs in the European Data Strategy
apidays
 
PDF
How to build an API strategy - Dorian Rougierx.
SmartWave
 
PDF
Transform the internal it landscape with APIs and integration
Judy Breedlove
 
PPTX
CWIN17 Toulouse / Mulesoft and airbus accelerating digital transformation thr...
Capgemini
 
PPTX
Data Virtualisation and API Management United
SmartWave
 
PDF
Success with APIs: A Checklist
CA Technologies
 
PDF
Hewlett Packard Enterprise View on Going Big with API Management - Applicatio...
CA Technologies
 
PPTX
IICS_Capabilities.pptx
Nandan Kumar
 
PDF
20181212 AWS NL - Informatica Cloud Overview
Greg Rakers
 
PDF
Disrupt or be disrupted – Using secure APIs to drive digital transformation
Rogue Wave Software
 
PDF
How hybrid integration changes API management
Axway
 
PDF
apidays LIVE Paris - Practical API strategy with APIOps Cycles by Marjukka Ni...
apidays
 
PPTX
Guide to an API-first Strategy
Kellton Tech Solutions Ltd
 
PDF
apidays Australia 2022 - Using APIs to accelerate transformation at a large r...
apidays
 
PDF
Χάρης Λιναρδάκης, IBM Cloud Leader Greece and Cyprus at IBM
Starttech Ventures
 
PDF
IBM-App-Connect-Overview-IBM-App-Connect-Overview.pdf
JabbarAbdallah
 
PPTX
The next generation of ap is luis weir.cwin18.telford
Capgemini
 
PDF
How does an API management strategy support your digital transformation?
SmartWave
 
PPTX
TEC-Roundtable-API
Patrick Emmons
 
API Trends & Use Cases
SmartWave
 
apidays LIVE Helsinki & North 2022_APIs in the European Data Strategy
apidays
 
How to build an API strategy - Dorian Rougierx.
SmartWave
 
Transform the internal it landscape with APIs and integration
Judy Breedlove
 
CWIN17 Toulouse / Mulesoft and airbus accelerating digital transformation thr...
Capgemini
 
Data Virtualisation and API Management United
SmartWave
 
Success with APIs: A Checklist
CA Technologies
 
Hewlett Packard Enterprise View on Going Big with API Management - Applicatio...
CA Technologies
 
IICS_Capabilities.pptx
Nandan Kumar
 
20181212 AWS NL - Informatica Cloud Overview
Greg Rakers
 
Disrupt or be disrupted – Using secure APIs to drive digital transformation
Rogue Wave Software
 
How hybrid integration changes API management
Axway
 
apidays LIVE Paris - Practical API strategy with APIOps Cycles by Marjukka Ni...
apidays
 
Guide to an API-first Strategy
Kellton Tech Solutions Ltd
 
apidays Australia 2022 - Using APIs to accelerate transformation at a large r...
apidays
 
Χάρης Λιναρδάκης, IBM Cloud Leader Greece and Cyprus at IBM
Starttech Ventures
 
IBM-App-Connect-Overview-IBM-App-Connect-Overview.pdf
JabbarAbdallah
 
The next generation of ap is luis weir.cwin18.telford
Capgemini
 
How does an API management strategy support your digital transformation?
SmartWave
 
TEC-Roundtable-API
Patrick Emmons
 
Ad

More from SmartWave (20)

PDF
Répondre aux défis de la gestion des factures fournisseurs
SmartWave
 
PDF
SmartTechTalk : Asynchronous messaging
SmartWave
 
PPTX
Data Agility and Security with Data Virtualisation
SmartWave
 
PPTX
API Program Lessons learned
SmartWave
 
PDF
Customer testimonal API Program Lessons learned
SmartWave
 
PDF
API Management Microservices beyond HIP
SmartWave
 
PDF
Monitoring docker, k8s and your applications with the elastic stack
SmartWave
 
PDF
The elastic stack on docker
SmartWave
 
PDF
Gestion des logs de vos containers avec elastic !
SmartWave
 
PDF
How api management supports the digital transformation process
SmartWave
 
PDF
Docker Geneva Meetup - Jelastic
SmartWave
 
PPTX
Docker Geneva Meetup - Swarm
SmartWave
 
PDF
Docker Geneva Meetup - Kubernetes
SmartWave
 
PPTX
Dématérialisation du traitement des factures
SmartWave
 
PDF
Axway amplify api management platform
SmartWave
 
PDF
Api gateway @ vaudoise assurances
SmartWave
 
PDF
MSC Digital transformation with Axway API Management products and SmartWave S...
SmartWave
 
PDF
Docker Geneva Meetup - Introduction to Docker
SmartWave
 
PDF
Docker Geneva Meetup - Use Case
SmartWave
 
PDF
2016 06 - design your api management strategy - smart wave - api use case in ...
SmartWave
 
Répondre aux défis de la gestion des factures fournisseurs
SmartWave
 
SmartTechTalk : Asynchronous messaging
SmartWave
 
Data Agility and Security with Data Virtualisation
SmartWave
 
API Program Lessons learned
SmartWave
 
Customer testimonal API Program Lessons learned
SmartWave
 
API Management Microservices beyond HIP
SmartWave
 
Monitoring docker, k8s and your applications with the elastic stack
SmartWave
 
The elastic stack on docker
SmartWave
 
Gestion des logs de vos containers avec elastic !
SmartWave
 
How api management supports the digital transformation process
SmartWave
 
Docker Geneva Meetup - Jelastic
SmartWave
 
Docker Geneva Meetup - Swarm
SmartWave
 
Docker Geneva Meetup - Kubernetes
SmartWave
 
Dématérialisation du traitement des factures
SmartWave
 
Axway amplify api management platform
SmartWave
 
Api gateway @ vaudoise assurances
SmartWave
 
MSC Digital transformation with Axway API Management products and SmartWave S...
SmartWave
 
Docker Geneva Meetup - Introduction to Docker
SmartWave
 
Docker Geneva Meetup - Use Case
SmartWave
 
2016 06 - design your api management strategy - smart wave - api use case in ...
SmartWave
 

Recently uploaded (20)

PPTX
AI and Robotics for Human Well-being.pptx
JAYMIN SUTHAR
 
PDF
CIFDAQ's Market Wrap : Bears Back in Control?
CIFDAQ
 
PDF
The Future of Artificial Intelligence (AI)
Mukul
 
PPTX
Agile Chennai 18-19 July 2025 Ideathon | AI Powered Microfinance Literacy Gui...
AgileNetwork
 
PDF
Trying to figure out MCP by actually building an app from scratch with open s...
Julien SIMON
 
PPTX
Applied-Statistics-Mastering-Data-Driven-Decisions.pptx
parmaryashparmaryash
 
PPTX
Simple and concise overview about Quantum computing..pptx
mughal641
 
PDF
Unlocking the Future- AI Agents Meet Oracle Database 23ai - AIOUG Yatra 2025.pdf
Sandesh Rao
 
PPTX
The Future of AI & Machine Learning.pptx
pritsen4700
 
PDF
AI Unleashed - Shaping the Future -Starting Today - AIOUG Yatra 2025 - For Co...
Sandesh Rao
 
PDF
Automating ArcGIS Content Discovery with FME: A Real World Use Case
Safe Software
 
PDF
SparkLabs Primer on Artificial Intelligence 2025
SparkLabs Group
 
PPTX
Introduction to Flutter by Ayush Desai.pptx
ayushdesai204
 
PPTX
Dev Dives: Automate, test, and deploy in one place—with Unified Developer Exp...
AndreeaTom
 
PPTX
New ThousandEyes Product Innovations: Cisco Live June 2025
ThousandEyes
 
PDF
Doc9.....................................
SofiaCollazos
 
PDF
Oracle AI Vector Search- Getting Started and what's new in 2025- AIOUG Yatra ...
Sandesh Rao
 
PDF
NewMind AI Weekly Chronicles - July'25 - Week IV
NewMind AI
 
PDF
A Strategic Analysis of the MVNO Wave in Emerging Markets.pdf
IPLOOK Networks
 
PDF
Data_Analytics_vs_Data_Science_vs_BI_by_CA_Suvidha_Chaplot.pdf
CA Suvidha Chaplot
 
AI and Robotics for Human Well-being.pptx
JAYMIN SUTHAR
 
CIFDAQ's Market Wrap : Bears Back in Control?
CIFDAQ
 
The Future of Artificial Intelligence (AI)
Mukul
 
Agile Chennai 18-19 July 2025 Ideathon | AI Powered Microfinance Literacy Gui...
AgileNetwork
 
Trying to figure out MCP by actually building an app from scratch with open s...
Julien SIMON
 
Applied-Statistics-Mastering-Data-Driven-Decisions.pptx
parmaryashparmaryash
 
Simple and concise overview about Quantum computing..pptx
mughal641
 
Unlocking the Future- AI Agents Meet Oracle Database 23ai - AIOUG Yatra 2025.pdf
Sandesh Rao
 
The Future of AI & Machine Learning.pptx
pritsen4700
 
AI Unleashed - Shaping the Future -Starting Today - AIOUG Yatra 2025 - For Co...
Sandesh Rao
 
Automating ArcGIS Content Discovery with FME: A Real World Use Case
Safe Software
 
SparkLabs Primer on Artificial Intelligence 2025
SparkLabs Group
 
Introduction to Flutter by Ayush Desai.pptx
ayushdesai204
 
Dev Dives: Automate, test, and deploy in one place—with Unified Developer Exp...
AndreeaTom
 
New ThousandEyes Product Innovations: Cisco Live June 2025
ThousandEyes
 
Doc9.....................................
SofiaCollazos
 
Oracle AI Vector Search- Getting Started and what's new in 2025- AIOUG Yatra ...
Sandesh Rao
 
NewMind AI Weekly Chronicles - July'25 - Week IV
NewMind AI
 
A Strategic Analysis of the MVNO Wave in Emerging Markets.pdf
IPLOOK Networks
 
Data_Analytics_vs_Data_Science_vs_BI_by_CA_Suvidha_Chaplot.pdf
CA Suvidha Chaplot
 

API Trends

  • 1. API Trends & Cases Studies Know-how Sharing Session #ESSR Salons eCom | Swiss IT Business | SMARC | Retail-Expo 24 & 25 Avril 2018 - Palexpo Genève
  • 2. | Your speakers Wout Geldhof Digital Account Executive [email protected] Emmanuel Dupouy Sales Director [email protected] April 2018API Trends & Cases Studies 2
  • 3. | API April 2018API Trends & Cases Studies 3
  • 4. | Application Program Interface April 2018API Trends & Cases Studies 4
  • 5. | Accelerated Product Innovation April 2018API Trends & Cases Studies 5
  • 6. | 6© 2016 Axway | CONFIDENTIAL
  • 7. |
  • 8. | 8 API Economy – API-Consumer view Composition for a single Service / Experience CRM M2M Backend Internal Location Customers Opportunities Contracts StatusMaintenance Partner Google Maps Twillo POI … Call …
  • 9. | The digital challenge API Trends & Cases Studies To be innovative here Innovate here!! April 2018 9
  • 10. | From browser to ubiquity April 2018API Trends & Cases Studies 10 Smartphone Tablet Web Application Internet TV Social Media Strategic Partner Integration Connected car Innovation Connected house API API API API
  • 11. | Main project drivers April 2018API Trends & Cases Studies Cloud Integration B2B Integration Modernization internal services Omni channel Integration 11
  • 12. | • A software intermediary that allows two applications to talk to each other • Treated more like products than code: designed for consumption for specific audiences, documented, versioned • Adhere to standards (typically HTTP and REST), that are developer-friendly, easily accessible and understood broadly • Stronger discipline for security and governance, as well as monitored and managed for performance and scale What is an API / waiter? April 2018API Trends & Cases Studies 12
  • 13. | Systems of Record Systems of Engagement CRM ERP Data Warehouse Channels, Apps, and Devices What’s needed? Multispeed IT for efficiency, innovation, and agility Full Lifecyle API Management April 2018API Trends & Cases Studies 13
  • 14. | Case studies From theory to practice April 2018API Trends & Cases Studies 15
  • 15. | API exposition Outside in / Inside out April 2018API Trends & Cases Studies 16
  • 16. | Gateway April 2018API Trends & Cases Studies • Link external apps to internal apps, with security, using SOA and APIs Solution Challenges Identity Management Authentication Authorization Audit API Gateway Services Applications Data Backend Services Messaging Partners 17
  • 17. | Service Broker April 2018API Trends & Cases Studies • An “outbound Gateway” • Connects to services, partners, and the Cloud Solution Challenges Applies Security Services Applications Data Backend Services Messaging API Gateway Cloud and on premise Partners Com Agency 18
  • 18. | • Convention center managing 100+ shows per year • Information system composed of on premises and cloud applications • Limited IT budget and team (7) • Share volatile information with partners: price list, exhibitor list Context • Automate information sharing: remove manual actions • Complex information access: located in an ERP not designed to expose data • Many integration cases: cash register, web site, mobile • Sensitive information: Need to limit access Challenges Case study 1: digitalize partners’ relationship April 2018API Trends & Cases Studies 19
  • 19. | On premise Apps Web Site App A Case study 1: solution architecture April 2018API Trends & Cases Studies 20 API Gateway ERP Database Enterprise Service Bus Cloud Apps Cash Register DMZ INTERNAL On premise Apps Internet Data access services API Manager IDP Firewall INTERNET ERP Mobile
  • 20. | • Simplified and accelerated partner data exchange: 7 API to automate information sharing • Improved data quality: no risk of human error by full automation • Low investment: less than 20 days • Easy integration: no change in the existing applications • Foundation for the future: Easy to add new services in the platform and support current and future integrations • Fresh data and internal systems protected: cache and throttling functions to secure application exposition Results Case study 1: API Management for everyone April 2018API Trends & Cases Studies 21
  • 21. | Governance Typical use cases April 2018API Trends & Cases Studies 22
  • 22. | Solution Challenge API Governance April 2018API Trends & Cases Studies • Expose existing applications as APIs, securely. • Onboard developers who want to use your APIs API Gateway Retailers Communication employeesProducts designers 23
  • 23. | • MSC Mediterranean Shipping Company • Large, complex and distributed information system • Database architecture oriented • Heterogeneous IT landscape (due to acquisitions) • Inter-office messaging via EDI (300-700 messages/sec) Context • Distributed development team: difficult to manage (120 people, 3 countries) • Phased migration: to ensure the continuous running of legacy processes during transition • No global vision of services • Multiple user authentication / authorisation solutions Challenges Case study 2: Custom ERP overhaul April 2018API Trends & Cases Studies 24
  • 24. | External Apps Case study 2: solution architecture April 2018API Trends & Cases Studies 25 API Gateway API Manager Subsidiary Web Application DMZ HEADQUARTERInternet Firewall INTERNET IDP On premise Apps Back-end Services SUBSIDIARY Cloud Application API Gateway API Manager API Portal
  • 25. | • Reduce application development time: Standardisation promotes faster, more effective team communication • Improved security: Alignment to standards and best practices • Simplified data access: Homogeneous APIs present data to applications in a unified way • API consumer comfort: API hides implementation specifics to application developers • Smooth application migration path: API consumers adopt new API versions at their own pace • Improved application quality: Audit functionality indicates which legacy API versions are still in use Results Case study 2: One governance to rule them all ! April 2018API Trends & Cases Studies 26
  • 26. | Token Mediation Simplify complexity April 2018API Trends & Cases Studies 27
  • 27. | Token Mediation April 2018API Trends & Cases Studies 28 Identities TokensRepositories Authorization Security Infrastructure Extensive set of connectors to Security Infrastructure Service Request Service/User Credential Validated Access Throttled Request External App Identity Management Authentication Authorization Audit Transformed Response Standard Response API Gateway • Manage heterogeneous security infrastructure Solution Challenges
  • 28. | • Luxury industry • 200+ retailers to manage • Large and complex information system • Share sensitive information with retailers : stocks, prices, product information Context • Identify each retailer: share only the relevant information based on its profile • Existing security solution: need to keep the existing products based on SAML • Give access to internal micro services : need to support OAUTH Challenges Case study 3: Secure sensible information access April 2018API Trends & Cases Studies 29
  • 29. | Case study 3: Solution architecture April 2018API Trends & Cases Studies 30 Active Directory Retailer Application USER BROWSER Retailer Application Backend IDP Micro Services Reverse proxy F5 Internet API gateway INTERNALDMZ SAML OAUTH Token Mediation Service provider
  • 30. | • No change in the existing solutions: reuse of existing IDP already in place • Information segregation: end to end authentication guarantees that each retailer access its own information • No information leak: best practices and standards enforcement guarantee highest security level even if connected application are not designed for it • Futureproof: support for the future identity standards • Single point of information for retailers: fresh information because of direct access to the IS Results Case study 3: Agile security! April 2018API Trends & Cases Studies 31
  • 31. | API Modernization / Integration Typical use cases April 2018API Trends & Cases Studies 32
  • 32. | API Modernization / Integration April 2018API Trends & Cases Studies 33 Solution Challenges • Integrate with heterogeneous back end platforms • Protocol and message mediation • Service Modernization Services Applications Data Backend Services Messaging Services Applications Data Backend Services Messaging HTTP REST/SOAP JSON/XML FTP JMS JMS HTTP REST/SOAP JSON/XML FTP API Gateway For Backend Service
  • 33. | • Luxury industry • 20+ subsidiaries • Large and complex information system • Heterogeneous systems: SAP, Dynamic, Custom • Share sensitive information with subsidiaries : stocks, price list, product information Context • Distributed information system: integrate remote ERPs • Secure information transfer: guarantee information will not be corrupted and not intercepted • Manage remote sites: distribute integration code Challenges Case study 4: Integrate subsidiaries information system April 2018API Trends & Cases Studies 34
  • 34. | Headquarter Application Headquarter Application Case study 4: Solution architecture April 2018API Trends & Cases Studies 35 Headquarter ERP Headquarter Subsidiary A ERP Internet Subsidiary A Subsidiary A Application Headquarter Application API gateway Firewall Firewall API gateway Subsidiary N… ESB
  • 35. | • No change in the existing solutions : Integration capabilities of API gateway are enough for light integration cases in the subsidiaries • Worldwide solution managed in one place: DevOps practices to automate integration code distribution • Simple secured solution: All security matter (encryption, transport…) located in one place, the API Gateway • Reduced maintenance and support workload: End-to-end traceability facilitates problem investigation and resolution Results Case study 4: Simple integration, secured transactions April 2018API Trends & Cases Studies 36
  • 36. | Conclusion April 2018API Trends & Cases Studies 37
  • 37. | Better ROI on existing IS resources Open enterprise to the world in a secure way Reduce cost to onboard new partners and customers Innovation on the user experience by combining own and 3th party assets Enabling / improving work between different technical teams Improved control / visibility on the information system No lock on deployment model (Cloud / On Premises) API Management benefits April 2018API Trends & Cases Studies 38