The Road to Cloud Standards via a Reference Architecture



Similar documents
NIST Cloud Computing Reference Architecture & Taxonomy Working Group

The NIST Cloud Computing Program

Cloud Computing A NIST Perspective & Beyond. Robert Bohn, PhD Advanced Network Technologies Division

NIST Cloud Computing Reference Architecture

The Magical Cloud. Lennart Franked. Department for Information and Communicationsystems (ICS), Mid Sweden University, Sundsvall.

Standardizing Cloud Services for Financial Institutions through the provisioning of Service Level Agreements (SLAs)

Cloud Computing A NIST Perspective and Beyond. Robert Bohn, PhD Advanced Network Technologies Division

US Government Cloud Computing Technology Roadmap Volume II Release 1.0 (Draft)

Document: NIST CCSRWG 092. First Edition

CLOUD SERVICE LEVEL AGREEMENTS Meeting Customer and Provider needs

NIST Cloud Computing Security Reference Architecture (SP draft)

Cloud Computing Technology

NIST Cloud Computing Program

National Institute of Standards and Technology

A Strawman Model. NIST Cloud Computing Reference Architecture and Taxonomy Working Group. January 3, 2011

Security Issues in Cloud Computing

Highlights & Next Steps

Standards Acceleration to Jumpstart Adoption of Cloud Computing (SAJACC)

Cloudy with Showers of Business Opportunities and a Good Chance of. Security. Transforming the government IT landscape through cloud technology

Cloud Computing Reference Architecture from Different Vendor s Perspective

ITL BULLETIN FOR JUNE 2012 CLOUD COMPUTING: A REVIEW OF FEATURES, BENEFITS, AND RISKS, AND RECOMMENDATIONS FOR SECURE, EFFICIENT IMPLEMENTATIONS

6 Cloud computing overview

NIST Cloud Computing Standards Roadmap

Perspectives on Cloud Computing and Standards. Peter Mell, Tim Grance NIST, Information Technology Laboratory

Expert Reference Series of White Papers. Understanding NIST s Cloud Computing Reference Architecture: Part II

The NIST Definition of Cloud Computing (Draft)

Perspectives on Moving to the Cloud Paradigm and the Need for Standards. Peter Mell, Tim Grance NIST, Information Technology Laboratory

Table of Contents. Abstract... Error! Bookmark not defined. Chapter 1... Error! Bookmark not defined. 1. Introduction... Error! Bookmark not defined.

CLOUD ARCHITECTURE DIAGRAMS AND DEFINITIONS

The NIST Definition of Cloud Computing

Cloud Computing Actionable Standards An Overview of Cloud Specifications

Cloud definitions you've been pretending to understand. Jack Daniel, Reluctant CISSP, MVP Community Development Manager, Astaro

CHAPTER 8 CLOUD COMPUTING

Fundamental Concepts and Models

Emerging Approaches in a Cloud-Connected Enterprise: Containers and Microservices

Applying Business Architecture to the Cloud

NATO s Journey to the Cloud Vision and Progress

Shared Services Canada and Cloud Computing Architecture Framework Advisory Committee

US Government Cloud Computing Technology Roadmap Volume I

Shared Services Canada. Cloud Computing

Public Cloud Workshop Offerings

CLOUD COMPUTING OVERVIEW

Cloud Computing Architecture: A Survey

CLOUD COMPUTING. A Primer

Topics. Images courtesy of Majd F. Sakr or from Wikipedia unless otherwise noted.

Why Private Cloud? Nenad BUNCIC VPSI 29-JUNE-2015 EPFL, SI-EXHEB

Lifting the Fog Around Cloud Computing. Eric A. Hibbard, CISSP-ISSAP, ISSEP, ISSMP, CISA CTO Security & Privacy Hitachi Data systems

A New Approach Towards Integrated Cloud Computing Architecture

Survey on important Cloud Service Provider attributes using the SMI Framework

Logical Data Models for Cloud Computing Architectures

A Study on Analysis and Implementation of a Cloud Computing Framework for Multimedia Convergence Services

NIST Cloud Computing Program Activities

Research Article International Journal of Emerging Research in Management &Technology ISSN: (Volume-4, Issue-5) Abstract

Cloud Computing An Elephant In The Dark

TECHNOLOGY GUIDE THREE. Emerging Types of Enterprise Computing

Seeing Though the Clouds

On Premise Vs Cloud: Selection Approach & Implementation Strategies

A New Cloud Computing Architecture by Integrating Recent Best Reference Frameworks

Cloud Computing. Chapter 1 Introducing Cloud Computing

Private Cloud 201 How to Build a Private Cloud

Cloud Computing; What is it, How long has it been here, and Where is it going?

Office of the Government Chief Information Officer The Government of the Hong Kong Special Administrative Region

Essential Characteristics of Cloud Computing: On-Demand Self-Service Rapid Elasticity Location Independence Resource Pooling Measured Service

Cloud Computing Guide & Handbook. SAI USA Madhav Panwar

Cloud Computing in the Federal Sector: What is it, what to worry about, and what to negotiate.

Available online at ScienceDirect. Procedia Computer Science 52 (2015 )

Cloud Computing and Standards

The Cloud Computing Revolution: Beyond the Hype

Improving IT Service Management Architecture in Cloud Environment on Top of Current Frameworks


Deploying a Geospatial Cloud

Cloud Services Overview

Fundamental Concepts and Models

Private Cloud Database Consolidation with Exadata. Nitin Vengurlekar Technical Director/Cloud Evangelist

Modeling Local Broker Policy Based on Workload Profile in Network Cloud

How To Create Private Cloud Pdf On Your Computer Or Your Phone Or Tablet Or Ipad Or Ipa Or Ipo Or Ipod Or Iporode Or Iproode Or Your Computer (Or Your Phone) Or Your Iporod Or Your

White Paper. Cloud Vademecum

Strategic Compliance & Securing the Cloud. Annalea Sharack-Ilg, CISSP, AMBCI Technical Director of Information Security

Cloud Computing. Chapter 1 Introducing Cloud Computing

Cloud Computing. Bringing the Cloud into Focus

Amit Sheth & Ajith Ranabahu, Presented by Mohammad Hossein Danesh

NSW Government. Data Centre & Cloud Readiness Assessment Services Standard. v1.0. June 2015

Purpose. Service Model SaaS (Applications) PaaS (APIs) IaaS (Virtualization) Use Case 1: Public Use Case 2: Use Case 3: Public.

Introductions. KPMG Presenters: Jay Schulman - Managing Director, Advisory - KPMG National Leader Identity and Access Management

International Journal of Engineering Research & Management Technology

<Insert Picture Here> Cloud Archive Trends and Challenges PASIG Winter 2012

Cloud Computing Security Issues

Cloud Computing demystified! ISACA-IIA Joint Meeting Dec 9, 2014 By: Juman Doleh-Alomary Office of Internal Audit

Transcription:

The Road to Cloud Standards via a Reference Architecture Robert Bohn NIST Information Technology Laboratory MAGIC Meeting NCO/NITRD June 1, 2011

2 Background Technological Maturity Economic Standards Driven Data Portability Service Interoperability Security Cloud to Cloud interaction USG needs a starting point A Reference

3 Objective Develop a vendor neutral reference architecture consistent with the NIST Cloud Computing definition 3 Service Models - SaaS, PaaS, IaaS 4 Deployment models - Public, Private, Community, Hybrid 5 Essential Characteristics On demand self-service Broad network access Resource Pooling Rapid Elasticity Measured Service Determine the What of Cloud Computing, not the How A Cloud

NIST Cloud Computing Reference Architecture Actors and their Roles Cloud Consumer Person or organization that maintains a business relationship with, and uses service from Cloud Providers. Cloud Auditor A party that can conduct independent assessment of cloud services, information system operations, performance and security of the cloud implementation. Cloud Provider Person, organization or entity responsible for making a service available to Cloud Consumers. 4 Cloud Broker An entity that manages the use, performance and delivery of cloud services, and negotiates relationships between Cloud Providers and Cloud Consumers. Cloud Carrier The intermediary that provides connectivity and transport of cloud services from Cloud Providers to Cloud Consumers.

Security Privacy The NIST Cloud Computing Reference Architecture 5 Cloud Consumer Cloud Auditor Security Audit Privacy Impact Audit Service Layer IaaS PaaS SaaS Resource Abstraction and Control Layer Physical Resource Layer Hardware Cloud Provider Cloud Service Management Business Support Provisioning/ Configuration Portability/ Interoperability Cloud Broker Service Intermediation Service Aggregation Service Arbitrage Performance Audit Facility Cloud Carrier

6 Taxonomies Taxonomy: The science of categorization, or classification, of things based on a predetermined system. (Webopedia) Main Attributes: Typically a controlled vocabulary with a hierarchical tree-like structure Terms in a taxonomy have relationships with other terms Usually in the form of a parent (broader) / child (narrower) Benefits: Encompasses and labels all significant concepts within a given domain Allows users to understand the context of each label

7 RA Taxonomy

Examples Terms and Definitions 8 Level 1: Cloud Service Provider Person, organization or higher-level system responsible for making a service available to service consumers. Level 2: Cloud Service Management Cloud Service Management includes all the service-related functions that are necessary for the management and operations of those services required by or proposed to customers. Level 3: Public Cloud - The cloud infrastructure is made available to the general public or a large industry group and is owned by an organization selling cloud services. [NIST Definition of Cloud Computing] Level 4: Data Portability The ability to transfer data from one system to another without being required to recreate or reenter data descriptions or to modify significantly the application being transported. [Federal Standard 1037C]

9 Next Steps Version 2.0 of NIST Cloud Computing Reference Architecture Includes a more detailed description of security and privacy. Maps USG Target BUC to RA Deep Dive into NIST Service Models Cloud Data Issues Version 2.0 of NIST Cloud Computing Taxonomy which includes Security & Privacy Updated SaaS taxonomy to reflect USG Business Use Cases. Newly identified additional taxonomies to support USG Business Use Case

10 Acknowledgements Dr. Fang Liu, Jin Tong, Dr. Jian Mao: Knowcean Consulting Inc. Dr. Robert Bohn, John Messina: NIST ITL Dawn Leaf, NIST Senior Executive for Cloud Computing With broad contributions from members of the NIST Reference Architecture and Taxonomy Working Group and the Reference Architecture Analysis Team: Randy Baklini, Gregg Brown, Frederic De Vaulx, Michele Drgon, Anne Frantzen, Babak Jahromi, Dean Kemp, Cary Landis, Eugene Luster, Bob Marcus, Gary Mazzaferro, Hung Nguyen, Marlin Pohlman, Alan Sill, Ken Stavinoha, Pat Stingley, Tom Young and Jay Levine

11 Questions? NIST Cloud Computing Collaboration Site http://collaborate.nist.gov/twiki-cloud-computing/ NIST Cloud Computing Home Page http://www.nist.gov/itl/cloud Contact: Dawn Leaf dawn.leaf@nist.gov Lee Badger lee.badger@nist.gov Robert Bohn robert.bohn@nist.gov