Comments
Richard Davies wrote: The UK has a good crop of technology pioneers in cloud computing - for example ElasticHosts, FlexiScale, Flexiant, OnApp - and also some strong government initiatives such as G-Cloud. We will have to see whether this kind of technical leadership converts into swift mass-market adoption or not.
Cloud Computing
Conference & Expo
November 2-4, 2009 NYC
Register Today and SAVE !..

2008 West
DIAMOND SPONSOR:
Data Direct
SOA, WOA and Cloud Computing: The New Frontier for Data Services
PLATINUM SPONSORS:
Red Hat
The Opening of Virtualization
GOLD SPONSORS:
Appsense
User Environment Management – The Third Layer of the Desktop
Cordys
Cloud Computing for Business Agility
EMC
CMIS: A Multi-Vendor Proposal for a Service-Based Content Management Interoperability Standard
Freedom OSS
Practical SOA” Max Yankelevich
Intel
Architecting an Enterprise Service Router (ESR) – A Cost-Effective Way to Scale SOA Across the Enterprise
Sensedia
Return on Assests: Bringing Visibility to your SOA Strategy
Symantec
Managing Hybrid Endpoint Environments
VMWare
Game-Changing Technology for Enterprise Clouds and Applications
Click For 2008 West
Event Webcasts

2008 West
PLATINUM SPONSORS:
Appcelerator
Get ‘Rich’ Quick: Rapid Prototyping for RIA with ZERO Server Code
Keynote Systems
Designing for and Managing Performance in the New Frontier of Rich Internet Applications
GOLD SPONSORS:
ICEsoft
How Can AJAX Improve Homeland Security?
Isomorphic
Beyond Widgets: What a RIA Platform Should Offer
Oracle
REAs: Rich Enterprise Applications
Click For 2008 Event Webcasts
In many cases, the end of the year gives you time to step back and take stock of the last 12 months. This is when many of us take a hard look at what worked and what did not, complete performance reviews, and formulate plans for the coming year. For me, it is all of those things plus a time when I u...
SYS-CON.TV
Trusting Cloud Computing
Trust is an important word in the world of security

Cloud Security Journal on Ulitzer

The company I work for, HyTrust, recently worked with Intel and VMware on a very cool project.

Essentially, it was about demonstrating the ability to establish trust in the cloud, and then enforce policy based on trust.

Trust.

Trust is an important word in the world of security, and in cloud computing it's an even bigger deal.

Cloud computing offers up the promise that an organizations will be able to run any application from anywhere at any time. But in a multi-tenant environment, a cloud application running in a virtual machine might be located on any number of hosts in a virtualized datacenter, and running next to others' virtual machines on those hosts.


4th International Cloud Computing Conference & Expo attracted more than 50 sponsors, among leading Cloud technology providers and visited by 2,250 conference delegates, November 2-4, 2009, at the Santa Clara Convention Center, CA

So, if we're talking about critical applications - for example, a credit card transaction system - how can anyone guarantee the environment is secure? It's a difficult problem and one that must be solved. It's absolutely essential for trust to be established before customers can feel confident about turning over their applications to cloud infrastructure.

And that's where we began.

The prototype we developed with Intel and VMware is a strong one. It uses hardware-level security capabilities to protect against software-based attacks and to establish a "trust status" for the system. And the beauty part is that policy can then be enforced based on that trust status (for example, allowing virtual machines to be powered on or live migrated only to trust hosts). Intel's TXT technology essentially allows trust to be measured at boot-time and for applications to run within their own execution environment. VMware's vSphere technology then provides APIs which HyTrust leverages to determine this trust status which then gets included in the policy decisions that HyTrust makes for the virtual infrastructure.

TXT will be embedded in Intel's next generation chip technology for 2010 and going forward. By providing hardware-level security through to the hypervisor with HyTrust, the virtualized host can be secured and trusted. This will not only provide differentiation for Intel, VMware and HyTrust but also drive value for end consumers similar to how digital signatures are used to validate the authenticity of electronic documents.

How does all this affect consumers of cloud computing in the long run?

Well, as industry insiders know, cloud environments today have no uniform standard for security and compliance. Similar to banking before FDIC insurance became standard, consumers of cloud services have no way to compare the security of cloud providers on an apples-to-apples basis. This issue will become more and more important as cloud computing evolves and companies host a greater number of critical systems and applications in their cloud environments. The "trust measurement" of cloud environments is still up in the air and many options are being proposed. It very well may end up becoming similar to the type of VeriSign certificates that are used to validate the authenticity of e-commerce websites. And one day we might also be looking to see a certified "stamp" of approval.

In fact, perhaps someday trust will be as easy to identify as the Intel Inside logo.

About Eric Chiu
Eric Chiu is CEO and founder of HyTrust, an early stage startup focused on secure virtualization management and compliance. He has in-depth knowledge about what’s needed to achieve the same level of operational readiness in virtual, as in physical I.T. infrastructures. Previously Eric served in executive roles at Cemaphore, MailFrontier, mySimon, and was a venture capitalist at Brentwood/Redpoint, Pinnacle, and M&A at Robertson, Stephens and Company.

In order to post a comment you need to be registered and logged in.

Register | Sign-in

Reader Feedback: Page 1 of 1

SOA World Latest Stories
Wide and cheap availability of cloud-based media services is upon us. With the transformations these services are already bringing to the consumption of music, video and interactive media, change has likewise come to professional workflows. Documents in 2012 are read, written, collabor...
Sooner than expected, Apple Thursday started previewing a developer-directed beta of Mountain Lion, its next-generation Mac OS X 10.8, due out late this summer. It’s borrowed some more features from iOS like the popular and unlimited iChat-replacing iMessages IM as well as Notes, Gam...
Cloud is a shift from the focus on underlying technology implementation to leveraging existing implementations and further building upon them. Cloud orchestration or a network of clouds is the wave of the future where these clouds can operate with elasticity, scalability, and efficienc...
In Aug 2011, around 72 million people accessed social networking sites from mobile, increase of 37% from previous year (study by ComScore) and nearly 50% (of 72 million) access networking sites almost every day. Devising a cohesive strategy for addressing both mobility and social medi...
Citrix has opened up a beta of its CloudStack 3, the first release of the open source cloud platform under the Citrix brand. Citrix acquired the Java-based cloud management last year when it bought Cloud.com. A full production version of the branded stuff is supposed to be available ...
EMC and VMware are going into the cloud business with Atos, the big, publicly owned, Paris-based global IT services firm, intending to take an equity position in Canopy, an end-to-end cloud company Atos is setting up using EMC and VMware technology. The companies said Wednesday when ...
Subscribe to the World's Most Powerful Newsletters
Subscribe to Our Rss Feeds & Get Your SYS-CON News Live!
Click to Add our RSS Feeds to the Service of Your Choice:
Google Reader or Homepage Add to My Yahoo! Subscribe with Bloglines Subscribe in NewsGator Online
myFeedster Add to My AOL Subscribe in Rojo Add 'Hugg' to Newsburst from CNET News.com Kinja Digest View Additional SYS-CON Feeds
Publish Your Article! Please send it to editorial(at)sys-con.com!

Advertise on this site! Contact advertising(at)sys-con.com! 201 802-3021


SYS-CON Featured Whitepapers
ADS BY GOOGLE