The 6 layers of the Cloud Computing Stack

The Endpoint Imperative: Global Security Compliance. Are you ready?

By G C Network | November 12, 2017

    China has its Cybersecurity Law. Next May, the General Data Protection Regulation – or GDPR –goes into effect for the European Union. Research shows most organizations just aren’t…

The Endpoint Imperative: IT Spending: Setting Priorities in a Volatile World

By G C Network | November 5, 2017

  Fast-evolving trends are changing the way IT thinks about security. To stay secure and productive, IT operations must excel at the fundamentals: PC refreshes for security, and optimizing end-user…

Top 1000 Tech Bloggers

By G C Network | October 24, 2017

The Rise “Top 1000 Tech Bloggers” leaderboard recognizes the most inspiring Tech journalists and bloggers active on social media. They use Klout scores (50%) and the blogger’s twitter conversations on…

IBM – The Power of Cloud Brokerage

By G C Network | October 14, 2017

Hybrid cloud adoption is now mainstream and you are making decisions every day about how to transform application and infrastructure architectures, service delivery, DevOps, production operations and governance. With Cloud…

More SMB Love Needed

By G C Network | September 29, 2017

    In a recent post, titled “10 Surprising Facts About Cloud Computing and What It Really Is”, Zac Johnson highlighted some interesting facts about cloud computing in the SMB…

ATMs Are IT Too!

By G C Network | September 5, 2017

That world of homogenous IT technology managed entirely by the internal IT organization has long disappeared.  Operations today require efficient and global management of technologically heterogeneous environments. The challenges and…

Digital Transformation Asset Management

By G C Network | August 30, 2017

Today’s businesses run in the virtual world. From virtual machines to chatbots to Bitcoin, physical has become last century’s modus operandi.  Dealing with this type of change in business even…

The Game of Clouds 2017

By G C Network | July 30, 2017

The AWS Marketplace is growing at breakneck speed, with 40% more listings than last year! This and more insights were revealed when CloudEndure used their custom tool to quickly scan the…

Managing Your Hybrid Cloud

By G C Network | July 14, 2017

Photo credit: Shutterstock   Runaway cloud computing cost may be causing an information technology industry crisis.  Expanding requirements, extended transition schedules and misleading marketplace hype have made “Transformation” a dirty word. …

American Airlines Adopts Public Cloud Computing

By G C Network | June 30, 2017

Did you know that the reservations systems of the biggest carriers mostly run on a specialized IBM operating system known as Transaction Processing Facility (TPF). Designed by IBM in the…

From Sam Johnston’s Taxonomy post

Follow me at https://Twitter.com/Kevin_Jackson

G C Network

2 Comments

  1. Randall on October 7, 2008 at 10:35 am

    You don’t mention where security fits in this stack. I know security is important at every level and it is there at every level now, but really there should be a single source of secure control of access to resources.

    That’s something big we need to work out. How can I have one account, the account I use to log into my cloud application and I can use that application with any other layer of stack or in combination with them without having to know that amazon requires these credentials and nirvanix requires another set.

    The end user shouldn’t care about these things, it should be handled at the platform level, but from my perspective there is no robust security model for the cloud, not yet.

    Any ideas what we might see fill this gap?



  2. Sam Johnston on March 4, 2009 at 10:52 pm

    Actually security is something that I do think about as a CISSP, but having looked at the various solutions it was clear that they permiated every layer of the stack. The resources themselves are secured by various mechanisms (AWS request signing for example) and from the user point of view you have OpenID and OAuth at the services layer. Even on the clients we don’t want cloud apps interfering with each other and you can see that browsers like chrome go to great lengths to prevent this.

    So yes it’s a valid point, but not one that wasn’t well considered.

    Cheers,

    Sam