Views of Cloud Computing · World-Leading Research with Real-World Impact! 7. NIST Cloud Computing...

Post on 25-Aug-2020

1 views 0 download

Transcript of Views of Cloud Computing · World-Leading Research with Real-World Impact! 7. NIST Cloud Computing...

1

Views of Cloud Computing

Prof. Ravi SandhuExecutive Director and Endowed Chair

March 25, 2016

ravi.sandhu@utsa.eduwww.profsandhu.com

© Ravi Sandhu World-Leading Research with Real-World Impact!

CS 6393 Lecture 7 Part 1

© Ravi Sandhu 2World-Leading Research with Real-World Impact!

The Cloud

The Network is the Computer- Sun Microsystems, early 1990s

The Cloud is the Computer- IEEE Spectrum, 2008

Datacenter as a Computer- Barroso and Hölzle, 2009

© Ravi Sandhu 3World-Leading Research with Real-World Impact!

Cloudwashing

© Ravi Sandhu 4World-Leading Research with Real-World Impact!

The Cloud: Perspectives and Forces

Science

EngineeringBusiness

© Ravi Sandhu 5World-Leading Research with Real-World Impact!

NIST Cloud Computing 3-4-5 Definition

2009-201116

versions

5 Essential Characteristics

3 Service Models 4 Deployment Models

© Ravi Sandhu 6World-Leading Research with Real-World Impact!

NIST Cloud Computing 3-4-5 Definition

2009-201116

versions

5 Essential Characteristics

3 Service Models 4 Deployment Models

PublicPrivateCommunityHybrid

Software as a Service (SaaS)Platform as a Service (PaaS)Infrastructure as a Service (IaaS)

© Ravi Sandhu 7World-Leading Research with Real-World Impact!

NIST Cloud Computing 3-4-5 Definition

2009-201116

versions

5 Essential Characteristics

3 Service Models 4 Deployment Models

PublicPrivateCommunityHybrid

Software as a Service (SaaS)Platform as a Service (PaaS)Infrastructure as a Service (IaaS)

On-demand self serviceBroad network accessResource pooling (multi-tenant)Rapid elasticityMeasured service

© Ravi Sandhu 8World-Leading Research with Real-World Impact!

NIST Cloud Computing 3-4-5 Definition

2009-201116

versions

5 Essential Characteristics

3 Service Models 4 Deployment Models

PublicPrivateCommunityHybrid

Software as a Service (SaaS)Platform as a Service (PaaS)Infrastructure as a Service (IaaS)

On-demand self serviceBroad network accessResource pooling (multi-tenant)Rapid elasticityMeasured service

Geographic distributionHomogeneityResilienceMassive scaleVirtualizationSecurity

Other Common Characteristics

“We argue that Cloud Computing not only overlaps with Grid Computing, it is indeed evolved out of Grid Computing and relies on Grid Computing as its backbone and infrastructure support.”

I don’t think so

© Ravi Sandhu 9World-Leading Research with Real-World Impact!

Cloud and Grid: Foster et al 2008

© Ravi Sandhu 10World-Leading Research with Real-World Impact!

Cloud and Grid: Foster et al 2008

1. Coordinates resources that are not subject to centralized control Virtual Organization (VO)

2. Uses standard, open, general-purpose protocols and interfaces Globus toolkit

3. Delivers non-trivial qualities of service

© Ravi Sandhu 11World-Leading Research with Real-World Impact!

Grid 3 Point Checklist: Foster 2002

1. Coordinates resources that are not subject to centralized control Virtual Organization (VO)

2. Uses standard, open, general-purpose protocols and interfaces Globus toolkit

3. Delivers non-trivial qualities of service

© Ravi Sandhu 12World-Leading Research with Real-World Impact!

Grid versus Cloud

On-demand self serviceBroad network accessResource pooling (multi-tenant)Rapid elasticityMeasured service

Geographic distributionHomogeneityResilienceMassive scaleVirtualizationSecurity

No but VOs may be enabled on demand

No but standard opensourcesoftware and APIs may emerge(OpenStack is the current contender)

Yes

Grid

Cloud

© Ravi Sandhu 13World-Leading Research with Real-World Impact!

Grid versus Cloud Drivers

Cloud Commercially developed Little or no academic input Pay-per-use Payment driven Centrally owned hardware Centrally scheduled Single point of trust Simple security Interactive Commodity computing Small and medium businesses Virtualization essential Not so predictable performance

Grid DoD funded, no commercial traction Mainly academic driven Pay-per-seat (one-time payment) Project oriented, proposal driven Multiply owned hardware Distributed scheduling Multiple trust points Complex PKI based security Batch High performance computing High end organizations Virtualization often not used Predictable performance

© Ravi Sandhu 14World-Leading Research with Real-World Impact!

Cloud and Grid: Foster et al 2008

The triangle model of next-generation Internet Computing

© Ravi Sandhu 15World-Leading Research with Real-World Impact!

Berkeley View of Cloud: 2010

Not IaaS or PaaS but classes of utility computing

© Ravi Sandhu 16World-Leading Research with Real-World Impact!

Berkeley View of Cloud: 2010

AbstractionLevel

ApplicationSpecificity

AmazonEC2

MicrosoftAzure

GoogleAppEngine

SalesForceforce.com

© Ravi Sandhu 17World-Leading Research with Real-World Impact!

Berkeley View of Cloud: 2010

© Ravi Sandhu 18World-Leading Research with Real-World Impact!

Berkeley View of Cloud: 2010

© Ravi Sandhu 19World-Leading Research with Real-World Impact!

Cyber Security:What is Different in the Cloud?

Risk = f (Threats,

Vulnerabilities, Impact)

Threats

Vulnerabilities Impact

© Ravi Sandhu 20World-Leading Research with Real-World Impact!

Cyber Security:What is Different in the Cloud?

Securityand

Privacy

Multi-Tenancy

Compliance and Forensics Cloud Service Provider