Matthew Kerner19:22
I think this topic is really interesting, and I think that we're also at the beginning of this debate and we're going to see where it takes us. I will say we do not operate with the assumption that blockchain networks that run in Azure are entirely on Azure. I think that would be silly. We would not be meeting customers where they live. The nature of blockchain, at least in the enterprise, we think it's at its best when it's used to cross organizational boundaries where there isn't universal trust. And that means that consortiums are going to form, and those consortiums will undoubtedly include participants who choose to use a variety of different cloud providers or run things on-premises. And so our sort of beginning assumption on anything that we do in blockchain is we need to make consortiums work really well with Azure, which means accommodating infrastructure that runs elsewhere. So right off the bat, I would assume it's not a world where everything is centralized on Azure. At the very least, one option of course that we make available is if people like the facilities that we provide to make it easy to run blockchain on Azure, they can run that same set of things on Azure Stack, which is our on-premises appliance that combines hardware plus software to give the same sort of Azure deployment model that we have in the cloud, but lets you do it in your own data center under your own control with your own network connection or what have you. And so we have customers who are putting these things on cruise ships, in mines, on the factory floor, in regions of the world where we don't currently have a hyperscale cloud presence. And so they're solving lots of different problems with Azure Stack, and certainly blockchain is one workload that we think is important to support in that configuration as well. Then I think the next question is what are the assumptions of the workload that's running on top of blockchain. There are public networks, and those public networks are expressly designed to be fully decentralized, not take any dependency on any sort of centralized authority. And public clouds might be useful for dev/test, they might be useful for running certain utilities that the public networks consume, and we may be able to do lots of work to make the development experience easier for public networks. But I think that those will continue to be decentralized in the way that they are today. Enterprises, however, operate in a different world. They're not typically operating in a market where they're performing anonymous transactions between arbitrary counterparties. Usually they're operating in markets where they have a name, they have an address, they have a business license, they're subject to law enforcement, they're subject to the jurisdiction of one court or another. And today, all of these non-technical controls govern the way that enterprises behave, and I believe that will be true for the foreseeable future. So the assumptions for enterprise blockchain are a little bit different. They may not be looking for the same set of decentralization guarantees that people seek on the public networks. Now, by the way, it doesn't mean that enterprises don't worry about their cloud providers. They certainly do. And one of the reasons that we have invested so heavily in Azure is compliance posture, getting dozens and dozens of certifications, is because we want any customer in any industry in any geography to be able to use our cloud. And certainly compliance is a part of that, but it's more than compliance. It's also the Terms of Service and the way that we conduct ourselves. And so certainly people have been following the Microsoft Ireland case, where we successfully fought to avoid serving a warrant for data that was held internationally based on a court order in the US. We said that we wanted that to be served, but we wanted it to be served with a warrant in the jurisdiction where the data was held, and we went all the way to the Supreme Court with that. And so we are very serious about running our cloud in a way that enables our customers to trust us, both individuals and enterprises. I guess the last thing that I would say is we think that trusted execution environments are an exciting development in the history of cloud, and we think that the point at which TEEs become widespread, it will be a watershed moment if we look back in history of cloud computing, because for the first time customers will be able to put their data in the cloud, put their compute in the cloud, but not have to assume that the cloud provider is going to behave in a certain way. They'll be able to leverage their trust in the trusted execution environment to get the results that they want. If you think about this, just imagine that you had some health data, and let's suppose that there was a cloud-based service that you wanted to run that would enable you and others to provide your personal health data, run an algorithm on that data, and then give you back a result that would tell you if you are at risk of acquiring a certain disease. Well, you could encrypt your data to a key that is available inside of a trusted execution environment on the cloud. You could upload your ciphertext, the cloud could take that and process it inside of the trusted execution environment where, let's say, the hardware boundary prevents the cloud operator from seeing that data in the clear. And then the TEE could take the result and write it back out in ciphertext, and you could take that and then you could decrypt it on your own device and see what the result is. And at no point in time was the data ever in the clear for the cloud provider to see. And so we think from a confidentiality and integrity standpoint, trusted execution environments enable us to sort of cross a boundary that we've never been able to cross before. Of course, you still do rely on the cloud for availability, for performance, for durability of the data in that scenario. But maybe those are characteristics that enterprises are willing to trust Microsoft to provide in return for the elasticity, the agility, the set of services that are made available in dozens of regions around the world at hyperscale. And so I think that trade-off is fundamentally attractive to decision-makers in enterprises. And so that's why we think that blockchain has a role in Azure.