MOVEIT CENTRAL: MANAGED FILE TRANSFER WORKFLOW ENGINE ABSTRACT Data workflows are truly the lifeblood of organizations today, yet the infrastructure supporting these workflows are typically less than ideal. Recurring tasks are rarely automated leading to repetitive manual tasks. The overall quantity of processes makes scripting difficult to maintain and manage. And too often, employees use too many different methods for sharing information. As a result, far too much time and effort are being wasted moving enterprise data. MOVEit Central solutions are specifically designed to enable IT professionals to quickly and easily secure, automate, and streamline complex data transfers and workflows. MOVEit Central solutions deliver true anywhere-to-anywhere transfer capabilities to automate millions of mission-critical data transfers with minimal operational or system resources. This document provides an overview of the MOVEit Central solutions basic and optional capabilities and licensing. 1
MOVEIT CENTRAL CAPABILITIES Transfer Automation. MOVEit Central solutions use easily clicked-together tasks to manage the automated transfer and processing of files without scripting or programming. Tasks define the files to be moved, where they are, where they are to be sent to; the authentication and transfer methods to be used; and what processing (if any) is to be done. Each task can move one or more files (regardless of size or format) between multiple systems using combinations of different methods and processes. Tasks can also synchronize/replicate files and/or folders between separate systems automatically. Scheduling and Administration. Tasks are run on a scheduled, event-driven, or on-demand basis, and multiple tasks can be run simultaneously. IT staff use the bundled Central Admin console to remotely configure, monitor, and control tasks. Tasks can also be controlled by thirdparty schedulers and other programs via MOVEit Central s optional API. Smart Business Workflows. MOVEit Central Enterprise can be used to schedule logical tasks to be executed based on meeting administratorset conditions and criteria. This advanced capability enables an efficient and easy way to create integrated multi-step tasks by building customized logic into business processes and workflow automation. Logic conditions (If, Then, Else, And, Or) and variables (File names, File size, File timestamps, File/Task return codes. Action/Process/Macro Result) are used to create conditional tasks Multi-Protocol Support. MOVEit Central solutions can move files using many popular, non-proprietary transfer standards. These enable MOVEit Central to transfer files between file, email, and Web servers; mid-range and mainframe hosts; and FTP, SSL (FTPS / HTTPS) SSH (SFTP), and MOVEit DMZ and WS_FTP servers. An additional option enables transfers using EDIINT AS1, AS2, and AS3. Basic License Terms Unlimited tasks, unlimited transfers, and unlimited processes permitted Can be run on one production system and on one non-production system (physical or virtual, and without limit on the number or type of CPUs) Central Admin can be run on an unlimited number of systems Basic License Capabilities HTTPS and FTPS (SSL) transfers (FTPS IMPLICIT, TLS-P, TLS-C, Passive) SFTP and SCP2 (SSH2) transfers HTTP and FTP (non-secure) transfers Copy to local and network file systems SMTP/POP3 support for sending and receiving email and file attachments File/folder synchronization/replication FIPS 140-2 validated cryptography AES and S/MIME file encryption MD5 and SHA1 file integrity checking SSL server certificate validation HTTPS client certificates support STPS client key authentication FTPS client certificates support FTPS client-side NAT support Automatic transfer resume and retry Microsoft SQL Server support Real-time transfer statistics Built-in reporting capabilities Tamper-evident audit logs Remote administrative control with Free MOVEit Central Admin console Anti-Virus real-time integration with McAfee, Symantec and Trend Micro RFC 959, 1122, 1123, 1579, 2228, 4217 as well as IETF Work Group SSH File Transfer Protocol and SSH Public Key File compliant NIST SP 800-88 data erasure compliant Host Specifications MOVEit Central runs on Microsoft Windows XP, Windows Vista, Windows Server 2003, and Windows Server 2008 Support for virtual servers running on VMware ESX, Microsoft Hyper-V, and Microsoft Virtual Server platforms Processing. Tasks can process files using built-in MOVEit Central functions (Zip/Unzip, rename, string search/replace, running third-party command-line utilities, and more). MOVEit Central can also start VBS scripts to run programs with COM interfaces and script interpreters such as Perl. An OpenPGP option provides file encryption/decryption and key 2
management. Synchronization. MOVEit Central solutions have the ability to perform automated file and folder replication between FTP, FTPS (SSL), SFTP (SSH2), and MOVEit DMZ file transfer servers as well as the MOVEit Central host system and accessible Windows servers/shares. Synchronization can be either one-way or two-way, and there are also options for controlling whether certain deletions and/or extra files are permitted. Audit Trail. Transfer/processing actions/errors are logged to MOVEit Central s commercial, tamperevident, ODBC-compliant database for use by MOVEit Central Admin for real-time status and history reports, and by third-party billing/reporting programs. SQL Server Database Integration. Administrators have the option to either use the embedded MOVEit database or integrate with Microsoft SQL Server or Microsoft SQL Server Express for logging. The MOVEit Central cryptographic tamper-evident database logs every action and error for auditing and reporting. Security. Administrative access requires authorization and authentication, and can be made over an SSL encrypted link. Configuration and permissions data and scripts are AES encrypted. Anti-Virus Integration. MOVEit Central solutions provide advanced, real-time integration with leading AV programs from Symantec, Trend Micro, and McAfee. If any of these applications detects a virus, then MOVEit Central will immediately and automatically stop the transfer of that file, delete the file on the system that MOVEit Central downloaded it from, and remember the characteristics of that file and never transfer it again. All activity and actions taken will be logged and the appropriate person will be notified via email. MOVEIT CENTRAL OPTIONAL MODULES MOVEit Central solutions also offer four optional modules that are available as separately priced options (so you only pay for what you actually need). AS1 AS2 AS3 Transfer Option AS1 (SMTP/POP3) transfers AS2 (HTTP/HTTPS) transfers AS3 (FTP/FTPS) transfers S/MIME data encryption Digital signature authentication Message Disposition Notification (MDN) for data integrity checking RFC 3335 and RFC 4130 compliant EDIINT Working Group Internet FTP Transport for Secure Peer-to-Peer Business Data Interchange over the Internet-draft compliant Uses integrated code commercially licensed from /n Software. Certified as ebusinessreadytm for AS2 by Drummond Group, Inc. OpenPGP Encryption Option Automatic file encrypt, encrypt and sign, and decrypt during transfers Creates and imports public/private keys Exports ASCII-armored, binary keys Unlimited file encryption decryption Unlimited encryption keys All encrypt/decrypt details logged Fully interoperable with all third-party OpenPGP products, including PGP Uses integrated, commercially licensed OpenPGP software from Veridis API Interface Option Start synchronization and transfer tasks Passes parameters (file and folder masks, and destination file names) Dynamic per task selection of sources/ destinations, paths, and files/folders Exports task status data in XML, CSV, and HTML formats Java class and its command-line client require Sun Java v.1.4.2 or higher COM component and its command-line client runs on Windows Vista Business Edition, 2003, XP, 2000 and NT 4.0 API can be run on Windows, Unix and Linux systems. It can also be run on mainframe systems that support Java Automatic Failover Option Unattended automatic failover to a second, hotstandby copy of Central Continuously updates failover Central with settings, state information and statistics from the production Central. No use of Windows Clustering Services 3
OpenPGP Encryption Option. This option allows unlimited encryption/decryption and keys. OpenPGP is the Internet-standard specification for the PGP encryption algorithms and data formats enabling full encryption/decryption and key interoperability between OpenPGP compliant programs. MOVEit Central solutions offer a commercially licensed, tightly integrated OpenPGP software module. It provides key management and enables MOVEit Central tasks to automatically encrypt/decrypt files and to log the relevant details as part of a transfer. AS1 AS2 AS3 Option. This option enables unlimited AS1, AS2, and AS3 transfers. The Applicability Statement protocols define methods to securely exchange structured data over the Internet and are used globally by retailers, distributors, manufacturers, and others. MOVEit Central solutions include the commercially licensed ability to send and receive files via email servers using AS1, via AS2-capable servers using AS2 (requires MOVEit DMZ to receive files and MDNs), and via FTP or FTPS servers (including MOVEit DMZ servers) using AS3. API Interface Option. This option provides unlimited use of the API as well as unlimited use and the right to re-distribute the MOVEit Central API Java and Windows clients. In addition to the comprehensive taskscheduling capabilities provided under the Basic license, this option allows third-party applications (such as job and workflow schedulers) to create and control tasks via MOVEit Central s built-in API. Applications can use the API to dynamically create and start tasks; to define and select file source and destination systems; paths and files; and to receive task-status data. Automated Failover Option. Since its release in 2001, MOVEit Central has gained a well earned reputation for reliability. But as a business critical application, it also has the built-in ability to provide automatic, unattended failover to a co-located or remotely located hot standby copy of itself. When deployed for failover, the primary MOVEit Central version continuously updates the secondary so that it can automatically take over should the primary fail. Implementing this option requires two identical MOVEit Central licenses (the second copy is offered at a significant discount because it is rarely used for production). FILE TRANSFER CAPABILITIES The diagrams below show different deployments of MOVEit Central, including network locations, transfer protocols, firewall port requirements, and more. Also depicted are client/server interactions of MOVEit Central and the wide variety of local and remote servers including MOVEit DMZ servers that it can automatically pull files from, process them as necessary, and push files to on a scheduled, event-driven or ad hoc basis. MOVEit Central provides organizations with anywhere-to-anywhere managed file transfer capabilities they need to exchange large volumes of files, with minimal operational staff time and system resources, in the following common transfer situations: Internal to Internal. Between back-end hosts, including mainframe and mid-range systems as well as application, archive, email, file, and internal Web servers. Internal to DMZ. Between back-end hosts and the local MOVEit DMZ server, as well as to other DMZ-resident systems. Internal to Remote. Between back-end hosts and remote FTP, secure FTP, and MOVEit DMZ servers at field offices and customer or partner locations. 4
Whether deployed on a standalone basis or together with a MOVEit DMZ server, MOVEit Central solutions are cost-effective, quickly deployable, operationally flexible, and consistently reliable solutions for businesses and government agencies that need to exchange files with their subsidiaries, customers and partners. Single MOVEit Central Deployment MOVEit Multi-Tier Central Deployment 5
MOVEit Multi-Tier Central Deployment MOVEit Central Multi-Tier and DMZ Web Farm 6
For more information on MOVEit Central solutions including pricing or details on how to request a live Web demo or onsite evaluation, please visit www.ipswitchft.com. ABOUT IPSWITCH FILE TRANSFER Ipswitch File Transfer builds software to securely move your most valuable data. The Ipswitch MOVEit and WS_FTP brands deliver industry leading secure and managed file transfer solutions to over 40 million users worldwide. Discover why industry-leading businesses including the majority of Fortune 1000 enterprises and government agencies trust Ipswitch File Transfer solutions to secure, manage, automate and streamline their most-critical file transfers and data workflows. We invite you to learn more at www.ipswitchft.com and by contacting us at www.ipswitchft.com/contact, on LinkedIn or Twitter. ABOUT IPSWITCH, INC. More than 100 million people worldwide use Ipswitch software to transfer files over the Internet using the market-leading WS_FTP and MOVEit brands of secure and managed file transfer clients and servers, monitor their networks with Ipswitch WhatsUp, and communicate via Ipswitch IMailTM Server. Founded in 1991, the company is headquartered in Lexington, Massachusetts, has Research & Development and Sales centers in Georgia and Wisconsin and a European sales and support office in Amsterdam, The Netherlands. Ipswitch sells its products through distributors, resellers and OEMs in the Asia, Europe, North America and South America. Ipswitch values community involvement; visit http:// icare.ipswitch.com to find out how to become involved. Visit www.ipswitch.com for more information on the company. Ipswitch 10 Maguire Road Lexington, MA 02421 (781) 676 5700 7