0% found this document useful (0 votes)
75 views280 pages

Cloud Computing Ebook

Uploaded by

Shailendra Singh
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF or read online on Scribd
0% found this document useful (0 votes)
75 views280 pages

Cloud Computing Ebook

Uploaded by

Shailendra Singh
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF or read online on Scribd
CLOUD COMPUTING NMIMS GLOBAL ACCESS rae SCHOOL FOR NMIMS | continuine epucation COURSE DESIGN COMMITTEE Chief Academic Officer Dr: Sanjeev Chaturvedi NMIMS Global Access — School for Continuing Education TOC Reviewer Ms. Brinds Sampat Assistant Professor, NMIMS Global ‘Access - School for Continuing Education Content Reviewer Mr: Shrikant Mulike Visiting Feculty, NMIMS Global Aceass - School for Continuing Education Specialization: Business Technology Management TOC Reviewer Kali Charan Sabat Visiting Faculty, NMIMS Global Access - School for Continuing Education ‘Specialization: Information Technology ‘Specialization: Operations Management Author: Charu Verma Reviewed By: Shrikant Mulik Copyright: 2017 Publisher ISBN: 978-99-86052-11-7 Address 4495/7, Ansari Road, Daryaganj, New Delhi-110002 Oniy for [NMIMS Global Access - School for Continuing Education School Address ‘VL, Mehta Road, Vile Parle (W), Mumbai ~ 400 056, Ini CHAPTER NO. CHAPTER NAME PAGE NO. 1 Introduction to Cloud Computing 1 2 Cloud Computing Service Models a 3 Cloud Deployment Models 49 4 ‘Technology Platforms for Cloud Computing 7 Challenges in Adoption of Cloud in Business 98 6 Virtualisation 125 7 Clowa Computing and Business Value 149 8 Cloud Architectures 169 9 Securing the Cloud 191 10 Mobile Cloud-Computing 229 a Case Studies 251 Eee Caer ea URR uLUM Introduction to Cloud Computing: Introduction; Cloud Service Models; Cloud Deployment Models; Exploring the uses of cloud; Cloud computing Features; Cloud Characteristics (On-demand usage , Ubiquitous Access, Resource pooling, Elasticity, Measured usage, Resiliency) ; Common use cases of cloud Computing Cloud Service Models: Infrastructure as a service (IaaS); Platform as # service (PaaS); Software as a service (SaaS), Everything as a Service (KaaS) Cloud Deployment Models: Public, Private, Hybrid, Community ‘Technology platforms for Cloud Computing: AWS, Azure, Google App Engine, Blue Cloud, [Link] ote. Challenges of Cloud Adoption: Performance; Reliability; Seourity and Privacy; Bandwidth costs Virtualization: Introduction & benefit of Virtualization; Implementation Levels of Virtualization; VMM Design Requirements and Providers; Virtualization at OS level; Middleware support for Virtualization Cloud Computing Key Business Drivers: Cloud computing and out-sourcing; Scalability: Types of Scalability; time to Market Benefits; Distribution over Internet Fundamental Cloud Architectures: Workload Distribution Architecture; Resource Pooling Architec- ture; Dynamic Scalability Architecture; Elastic Resource Capacity Architecture; Service Load Bal- ancing Architecture; Cloud Bursting Architecture; Elastic Disk Provisioning Architecture; Redundant Storage Architecture Securing the Cloud: Basic Terms and Concepts, Confidentiality, Integrity, Authenticity, Availability, ‘Threat, Vulnerability, Risk, Security Controls, Security Mechanisms, Security Policies, Threat Agents , Anonymous Attacker, Malicious Service Agent, Trusted Attacker , Malicious Insider Cloud Security: Threats , Traffic Eavesdropping, Malicious Intermediary, Denial of Service, Insufficient Authorization, Virtualization Attack, Overlapping Trust Boundaries Mobile Cloud Introduction: Definition; Architecture; Benefits; challenges; Computing in mobile and at cloud shield Renee ey ee ne aren ere INTRODUCTION TO CLOUD COMPUTING ua Introduction 12 Cloud Cloud and Other Similar Configurations Cloud Characteristics ‘Exploring the Uses of Cloud Self Assessment Questions Activity, 13 Cloud Sarviee Models Self Assessment Questions Activity, 14 Cloud Deployment Models Self Assessment Questions Activity, 1s Cloud Computing 1a Cloud computing Features 152 Components of Cloud Computing, 153 ‘Common Use Cases of Cloud Computing 154 “Myths and Truths of Cloud Computing Self Assessment Questions Activity, 16 Impact of Cloud Computing on Businesses Self Assesement Questions Activity, LT Summary, 18 Descriptive Questions 19 Answers and Hints Lao ‘Suggested Readings & References Peon Keo acne} Narayan Hrudayalaya (NH) is a chain of hospitals, headquatered. in Bengaluru, India, Founded in 2000, this hospital chain special- ises in treating patients with severe heart problems at affordable costs. These hospitals also help poor children afflicted with heart problems. They have created a world record by performing ap- proximately 15000 surgeries on patients across 25 countries and reported higher profit margins than other American hospitals. to expand its bed strength expansion, Srikanth to determine ways «d for administrative irgeries. Therefore, the ‘and robust to achieve better nent to patients. In 2010, Narayan Hrudayalaya from 5000 to 30000. In view of Raman, CIO at Narayana Ht to build IT infrastructures w tasks as well as for perf IT infrastructure ha pecialised in setting up the IT in- pport surgeries and other regular func |. Besides, Narayana Hrudayalaya was and retaining I'Eskilled people who could rastructure, Raman was also concerned that infrastructure, a data centre would also be the large amount of data related to patients. entre. The cost and effort, required for setting up such infrastructure, was huge. Faced with these challenges, rana Hrudayalaya was looking for an alternate solution that nuld take the burden off the shoulders of its administrators who nile be able to better focus on the field of healthcare. ‘As an alternate solution, Raman decided to use the data hosting services offered by the cloud. Shifting its database to the cloud helped Narayana Hrudayalaya save Rs. 20-25 crore. The cloud also. helped the hospital in raising its healtheare standards. Since the database of Narayana Hrudayalaya resides on the cloud, there- fore patients can be referred across different branches of hospital. The patients need not carry their reports of ongoing treatment, which can be easily accessed by the doctors from the centralised database of Narayana Hrudayalaya on the cloud. Another major advantage of the cloud is the high level of security it provides to the database of Narayana Hrudayalaya. eee Oa Reece ata eae NOTES Perseus After studying this chapter, you will be able to: Discuss cloud and its characteristics Explain cloud service models Describe cloud deployment models Explain the concept of cloud computing Describe the impact of cloud computing on businesses E Ea STRODUCTION ‘The present-day business environment provides numerous challeng+ es related to the use of IT hardware and software resources by an or- ganization, For example, if a small-sized organisation needs to expand its employee base, then it would require additional hardware and soft- ware resources for the new employees. yryyy Ensuring that these new hardware and software resources are eom- patible with the requirements of the employees as well as cost-efficient often proves to be a challenge for the organisation. During the course of its expansion, the organisation may be required to purchase costly hardware and software resources, which, when used in isolation, may not fulfill all the requirements. In such eases, the organisation might be compelled to purchase some supplementary hardware or software resources that may be expensive, further adding to the cost of the or- ganisation. However, the organisation may not use all the features of the new hardware or software resources, which would lead to non-op- timal use of these resources. Similarly, when the organisation expands, it needs to increase its data storage as well as security capacity. Maintenance of the new data stor- age resources is also a challenge for the organisation. Further, the need to ensure effective backup and restore policies and disaster manage- ment strategies also increases as the organisation expands and enters into new avenues of business. This would, in turn, mean ineurring further costs in installation of additional servers and related hardware resources. Moreover, if the existing resources of the organisation are not compatible with the newly acquired resources, it would also cre- ate problems and lead to further costs. Practically, the organisation would invest in these resources whenever it would decide to expand! Now consider a situation where the organisation while going for ex- pansion, has the option of a dynamically scalable and virtual comput- ing environment provided over the Internet. Such a virtual computing environment would not only be scalable to accommodate increased requirements, but would also cost less (only once, perhaps) even when the organisation decides to expand multiple times. This is exactly what the concept of cloud computing offers. Pike Roem Tes enn ie NOTES This chapter begins with a discussion on cloud and its characteristics Next, the chapter discusses cloud service and cloud deployment mod- els. Further, the chapter discusses various aspects of cloud computing and the impact of cloud computing on businesses. El CLOUD A cloud is defined as an integration of hardware, networks, storage, services, and interfaces that enables you to deliver and access com- puting as a service. The three main users of cloud computing are end-user, business management user, and cloud service provider. The end-user utilizes the cloud services. The business management user takes the responsibility of the cloud data and services. The cloud ser- vice provider is responsible for the maintenance of the cloud’s IT as- sets. The cloud acts as a common location which is capable of fulfilling the computing needs of organisations and the users linked to it. The best feature of the cloud is that it is scalable, which means it can easily ex- pand and contract. The scalability allows provision of additional cloud resources to the user whenever needed and releasing or reverting the resourees when they are no longer needed by the user. The cloud expands to fulfill the demand for additional resourees and contracts when the additional resources are released. ‘The cloud is helpful to both type of companies — the provider company, which provides the cloud services, and the elient company, which uses these services. The provider companies integrate the services provid- ed by the application software and deploy it on the eloud. The client utilises the software as a service on rental basis. The cloud helps the provider company to know the extent of the usage of the service and also saves cost for the company, as it has to spend less for advertising the software, To the client company, the cloud saves new expenditure which they would incur on purchasing the new software whenever their requirement changes. They can utilise the other services that are based on the changed requirements using the billing model feature. This billing model helps in calculating the cost of the usage of the ser- vice by a particular client. The cloud offers the services that execute in the cloud environment and fulfill the needs of HR management, financial analysis, invento- ry management, and risk management for the clients. It has now be- come a popular way of selling the software as service. To understand this, let’s reconsider the case of Narayana Hrudayalays hospital again, which aiming to help poor children afflicted with heart problems. In 2010, the hospital decided to increase the number of beds from 5000 to 80000 in coming five years for patient treatments. They required finding a way to create IT infrastructure, which had to be sealable and robust to achieve better results and provide satisfactory treatment to patients. Therefore, they decided to use the data hosting services of- Leen OE Lake teo aha NOTES fered by the cloud. Using cloud has raised the healthcare standards in the hospital. Now, the database of Narayana Hrudayalaya resides on the cloud, which can be referred by patients easily across different branches of hospital. In addition, cloud has provided is the high level of security to the database of Narayana Hrudayalaya. 1.24 CLOUD AND OTHER SIMILAR CONFIGURATIONS ‘There are several multi-tenant implementations that are similar to the cloud. A clear understanding of the following terms will help you in distinguishing these from the cloud: 2 Application Service Provider (ASP): Jostein Eikeland, the founder of Tele-computing, coined the term ASP in 1996. An ASP is defined as an organisation that hosts and manages one or more applications and their underlying infrastructure, Customers could use these applications over the Internet and would be billed for the amount of utilisation. 2 Autonomic computing: It is a group of self-managing features of distributed computing resources that can function on the basis of a group of pre-defined policies. This type of computing is capa- ble of self-healing (that is, discovering and corresting their faults), self-configuration of their components, self-optimisation of their resources, and self-protection from malware'and attacks. 2 Cluster: It is a group of networked systems sharing the same set of resources, where all the nodes are actively working or some nodes are in the standby mode, waiting to take over after the failure of an active node. 2 Distributed computing: This is an implementation technique in which different roles or tasks are distributed among separate nodes in the network. Grid computing, peer-to-peer architecture, and client-server architecture are some forms of distributed com. puting. 2 High Performance Computing (HPC): This technique divides « task into pieces and uses parallel processing algorithms to execute each piece on different processors on the same node or multiple nodes in the network. Q Utility computing: It started in the early days of mainframes in the 1960s. Mainframes were very expensive even for large, prof- itable companies. Hence, mainframe manufacturers provided a form of utility computing called time-sharing, where they offered database storage and compute power to banks and other large or- ganisations fora fee. In the 1990s, telephone companies came up with Virtual Private Net- work (VPN) services that were offered over dedicated point-to-point connections. They kept the price low, as they were able to switch traf fic so as to balance bandwidth utilisations and use the available band- Cie ReenTes enn ie NOTES width more effectively. At that time, they used the cloud symbol to demarcate the points between the networks that were the responsi- bility of the provider and the points that were the responsibility of the Utility computing allows the use of resources; keeps an account of all utilised resources, such as CPU cycles, storage in GBs, and network data transfer in GBs; and bills the consumers in a manner that is simi- lar to the billing process of other utilities, such as telephone and water services. Utility computing often needs a cloud-like infrastructure, as it emphasises the business model through which computing services are provided. PEER-TO-PEER ARCHITECTURE A peerto-peer architecture is a network of hosts in which sharing of resources, processing, and communications control are fully decen- tralised, Each host acts as a server or provider of certain services However, it relies on other hosts within the network for other services. Each client present on the network is considered equal in terms of using resources, and users are verified by each individual machine. Figure 1.1 shows the peer-to-peer architecture: Peer? Figure 1.1: The Peer-to-Peer Architecture There are important benefit-related dissimilarities between cloud and peerto-peer deployments. Distinctive benefits of the cloud environ ment are that it can be easily scaled to meet growth demands and enable access to any type of hosted applications. It does not burden user-end devices but it needs to be configured with the highest level of security. On the other hand, peerto-peer deployments are relatively inexpensive and simple to set up and manage. The shortcomings with cloud implementation include high initial eap- ital investment and good technology expertise to establish and man- age it. The downside of peer-to-peer architecture is that it is limited in extensibility, tends to overburden user workstations by making them work as servers for other users, has lax security, and is typically unable to provide any type of system-wide service. But, these shortcomings Pee een Takeo Tero ata (el NOTES of peer-to-peer implementation can be overcome by using servers that are dedicated for computing, storage, management, and monitoring. (CLIENT-SERVER ARCHITECTURE, Aclient-server architecture is a form of distributed computing where requesters (clients) depend on a number of providers (servers) for various services or resources such as database, applications, securi- ty, printing, and backups. Typically, there is at least one server that provides central authentication services. These servers also provide access to shared files, printers, hardware storage, and applications. When a user runs an application from the cloud, it is part of a client= server application. However, the cloud can provide increased perfor- mance, flexibility, and significant cost savings because the application hosting and support is the responsibility of the cloud service provider, and the amount of available resources appears to be infinite to the consumer: Figure 1.2 shows the client-server architecture: Application Server Web Server Figure 1.2: The Client-Server Architecture GRID COMPUTING In the early 1990s, Carl Kesselman and Ian Foster formulated the concept of grid computing as a cluster of computer systems that were geographically distributed but worked together to perform a common task. In a grid, a cluster of loosely coupled computers work together to solve a single problem that involves massive amounts of numerical calculation and compute cycles. Grid computing uses grid-controlling software that splits the work into smaller fragments and allocates each fragment to a collection of thousands of computers. The controlling unit later assembles the results to build the output. Grids are usually used to harness idle computer power. 8 CLOUD COMPUTING NOTES The cloud harnesses idle computer power over a network connection, Users have a metered utility service to keep track of the amount of sation and generate a periodic bill. Like an electric or computer grid, the cloud has no upfront, implementation, or capital expenses for the user. The user only pays for the amount used. Figure 1.3 shows the architecture of grid computing: Grid Control Server client f Task é. Took 2 wl Yd J (Cluster of Grid Nodes client 2 Figube 1.3: The Grid Computing Architecture 1.2.2. CLOUD CHARACTERISTICS As stated earlier, the cloud is a model where users have a convenient, on-demand access to a shared pool of resources, such as servers, stor- age, and applications, over the Internet. Users don't have a control of the hardware infrastructure underlying the cloud, which is owned and managed by the provider. They access the services or allocated resources using a Web browser. The significant characteristics of the cloud are as follows: © On-demand usage: A consumer can set up the required comput- ing capabilities, such as server time and storage on the network, automatically without having any direct communication with the cloud service provider. 2. Ubiquitous access: Capabilities that are present over the network ‘employ normal methods used by various devices such as mobile phones, tablets, laptops, or workstations. @ Resource pooling: The cloud provider's computing resources, such as storage, processing, memory, and network bandwidth col- lectively serve various consumers with the help of a multi-tenant model. On the basis of the consumer's demand, various physical and virtual resources are systematically allocated and re-allocat- ed. There is a sense of location abstraction, as the client does not have knowledge of the exact location of the allocated resources but may well be capable of mentioning the location at higher lev- el of abstraction, for example, country, state, or data center. Ee een Oe LaRe eco aha) NOTES 2 Elasticity: Cloud computing capabilities can be systematically provisioned to meet demand and load requirements. These capa~ bilities can be increased or decreased in any quantity and at any time as per the client's requirement. 2 Measured usage: Cloud systems are automatically controlled and they optimise the usage of resources by implementing a metering capability on the basis of the type of service (e.g, storage, process- ing, bandwidth, and active user accounts) used by the client, In cloud computing, the monitoring, controlling and reporting of re- source usage can be done by both the provider and the consumer, which helps in ensuring the transparency of both. 2. Resiliency: In the cloud environment, the resiliency feature spec= ifies the ability of a server, network or a data center in recovering and continuing its operations in case of failure of equipment, pow- er or other disruption. 1.23 EXPLORING THE USES OF CLOUD As discussed earlier, cloud has huge benefits for both eorporate users and individual users. Both these users use cloud for some specific pur- poses or according to their need. Some important uses of cloud are as follows: 1. File storage and sharing: Sending/receiving large files through e-mail has often been a time consuming process. This problem can be overcome by using the loud, as you can store large files on the cloud and can share them by downloading at any location, whenever required. 2. Data management: Data is of prime importanee for any organisation; therefore, proper management of data is essential for the business of the organisation. The organisation has various types of data such as emails, contracts, images, and blogs. This data goes into the cloud when the organisation becomes associated with the cloud. Therefore, security and privacy of the data isa very big concern. The cloud secures the data using a firewall and it ean be used for any number of applications and processes. 8, Web hosting: Companies can host their small or large Web applications on the cloud. The cloud is capable of handling the incoming traffic of these Web applications. The cloud also provides storage space that can be increased with the increasing user database on Web-based applications. 4. File backup: Organisations and users can take backup of their important applications or data on the cloud database. In case of any kind of failure of their devices, the data can be recovered from the cloud database using another system. Siem teo tana} NOTES 5. Load balancing: The cloud allows you to balance heavy traffic of your websites by deploying additional servers at different locations. Load balancing is highly useful for e-commerce websites like Amazon, Flipkart, Snapdeal, etc. as they have to manage large chunks of requests from millions of their users. These websites can also efficiently handle the large database of images of products and videos with the help of the cloud. 6, Mobility: The cloud provides mobility by allowing users to access their documents at any place. For example, cloud services, like Google Does, allow you to access your important documents in your office or at your home. Your documents no longer need to bbe system-specific. 1. The cloud service provider is responsible for maintaining the IP assets of the cloud. (True/Felse) 2. HPC stands for Performance 3. The allows provision of additional cloud resources, to the user whenever needed and releasing or reverting these resourees when they are no longer needed by the user. SESS With the help of the Internet, search the basic architecture of the cloud. El CLOUD SERVICE MODELS ‘There are three high-level cloud models depending on what resources you use and the benefits you get from the cloud. These are described as follows: Q Infrastructure-as-a-Service (IaaS): In this model, you can either use servers or storage in the cloud. In this model, you do not have to purchase and maintain your own IT hardware. However, you need to install your applications on your cloud-based hardware Q Platform-as-a-Service (PaaS): In this model, you can use the cloud as a platform to develop and sell software applications. 2. Software-as-a-Service (SaaS): In this model, you can use various software applications, such as CRM and ERP. and collaboration tools on the Web. You save by not having to buy or maintain IT hardware or applications. Presa v en eme Leet a tar ve! For all the cloud service models described above, you pay a monthly fee to the cloud provider for the hardware or applications you use. Figure 1.4 shows the projected global market size for the public cloud by the end of this decade: tN Figure 1.4: Global Public Cloud Market $iz8)2011-3020 Source: Forex Research Ins. In a research report by International Data Corporation (IDC) titled “Worldwide Software as a Service 2010-2014 Forecast: Software Will Never Be the Same,” it was said that the SaaS revenue will grow by Compound Annual Growth Rate (CAGR) of around 26% up to 2014. ‘Traditional ERP projects and sales would be, in particular, badly hit with traditional ERP upgrades being delayed or cancelled and would grow at a CAGR of just 5%. It was also said that software vendors will be looking at new routes to market their products and services. The IDC survey found that most ‘SaaS was being delivered to US companies (they currently had 71% of the market), but by 2014 it would become more global. ‘The PaaS market size was expected to grow at a CAGR of 269% and grow from US$ 810 million in 2010 to US$ 18 billion by 2015 and evolve into a strong alternative to traditional internal development platforms. Many Independent Software Developers (ISVs) have been using PaaS since 2010; however, corporate software developers and service providers have started engaging more with PaaS from 2012 only. For SaaS, the volume is more than that for IaaS or PaaS. Total revenue for 2011 was close to US$ 21 billion. Forrester Research had predicted that SaaS revenues would reach US$ 92 billion by 2016 and account for 26% of the software market. This would create some saturation, and growth would likely to be slow between 2016 and 2020, NOTES n 2 CLOUD COMPUTING NOTES CONT 4, In Platform-as-a-Serviee model, you can either use servers or storage in the cloud, (True/False) 5. Inthe model, youean use various softwareapplications, such as CRM and ERP and collaboration tools on the Web. Network-as-a-Service enables users to access network infrastruc ture securely, easily and directly, Search and report more about Network-as-a-Service. Ey CLOUD DEPLOYMENT MODELS Generally, cloud deployment models can be classified on the basis of either location or the type of service being provided. On the basis of location, cloud deployment models can be classified as public cloud, private cloud, hybrid cloud, and community cloud. Let’s learn about each modelin detail 2. Public clouds: These type of clouds are accessed or used by gen- eral masses. Public clouds are hosted, maintained as well as man- aged by cloud service providers such as Amazon, Google, and Mi erosoft, In this type of cloud, service providers charge the cloud users)according to their usage. Generally, small organisations ‘can start using cloud services with current requirement and then can increase their usage by acquiring more resourees according to their requirements. During expansion, there is no need for an organisation to invest in the infrastructure and it ean pay just ac- cording to what is being used. In the public cloud, there is no need for organisations (customers) to control or manage the resources; instead, they are being administered by a third party. Some exam- ples of public cloud providers are Savvis, Verizon, Amazon Web Services, and Rackspace. Remember that in the case of a public cloud, resources are owned or hosted by the cloud service pro- vider (a company) and the services are sold to other companies. Figure 1.5 demonstrates the use of a public cloud: . oo Company ¥ HR comes Figure 1.5: The Level of Accessibility in a Public Cloud Presa v en eme Leet a tar ve! Q. Private clouds: In a private cloud, the cloud computing infrastruc- ture is solely designed for a single organisation and it cannot be accessed by or shared with other organisations. As compared to public clouds, private clouds are more costly and more secure. ‘A private cloud can be either on-premise or hosted externally. In the case of on-premise private clouds, the service is exclusively used and hosted by a single organisation. However, private clouds, which are hosted externally, are used by a single organisation and are not shared with other organisations. In these eases, cloud ser- vices are hosted by a third party that specialises in cloud infra- structure. In the case of a private cloud, security is kept in mind at every level of the cloud design. The general objective of a private cloud is not to sell cloud services (IaaS/PaaS/SaaS) to external or~ ganisations, but to get the advantages of cloud architecture. Fige ure 1.6 demonstrates the accessibility of a private cloud: Figure 1.6: The Level of Accessibility in @ Private Cloud 2 Community clouds: A community cloud is @ type of cloud that is shared among various organisations with a common tie. This type of cloud is generally managed by a third party offering the cloud service and can be made available on- or off-premise. To under- stand the concept of a community cloud and the need for design- ing a community cloud, let’s take an example. In any state or coun- try, say England, a community cloud can be provided to enable all government organisations to share their resourees on the cloud. Due to the sharing of resources on the community cloud, the data of all citizens of that state can be easily managed by government organisations. Figure 1.7 shows the level of accessibility in com- munity cloud: Communi Commun ud or bent A ued or bent [> [~T ot ‘Clon Sarees Cloud arvices GaaSiPaaSiSa38) (aS PaaS Saa8) Organisations having commontis to Organisations having common ie Figure 1.7: The Level of Accessibility in a Community Cloud NOTES Siemon teeta} NOTES Q. Hybrid cloud: The cloud environment in which various internal or external service providers provide services to many organisa- tions is known as hybrid cloud. Generally, it is observed that an organisation hosts applications, which require high-level security and are critical, on a private cloud, It is also possible that the ap- plications requiring less concern can be hosted on a publie cloud. In hybrid clouds, an organisation can use both types of cloud, i public and private, together. A hybrid cloud is generally used in situations such as cloud bursting in which applications running in private cloud shift itself towards public cloud when there is an increase in requirement of resources. In the case of cloud bursting, an organisation generally uses its own computing infrastructure; however, in high load requirements, the organisation can access clouds. In other words, the organisation using a hybrid cloud can manage an internal private cloud for general usage and migrate the entire or a part of an application to a public cloud during peak periods. Figure 1.8 shows the implementation of @ hybrid cloud: Public Cloud Migreted Application Organisation ¥ i. clouds are accessed or used by the general masses and fare hosted, maintained as well as managed by cloud service providers. 7. In which of the following types of cloud, the cloud computing infrastructure is solely designed for a single organisation and cannot be accessed by or shared with other organisations? a. Private b. Public cc. Community d._ None of these Presa v en eme Leet a tar ve! NOTES Search and enlist the implications while implementing the cloud deployment model in an organisation. BEES Limitations of cloud Despite all the merits, there are numerous limitations linked to cloud computing, Most enterprises are not prepared for the unique challenges they will face when they migrate their data into the cloud. Some ofthe imitations of cloud computing are as follows | 2 Security issues: Before adopting this technology, you should | know that you will be surrendering all your company’s pri- vate and confidential data to a third-party cloud serviee pro- | vider. This could potentially put your company to greatest risk. Therefore, you must select the most reliable service provider, | who could keep your information totally secure. 2 Prone to attack: Storing information in the cloud could make your company’s vulnerable for external hacking attacks and threats. As there is nothing on the Internet is completely secure, so there is always a possibility of stealing of confidential data. 2 Network connection: You will always require a very good Inter- net connection to be logged onto the server at all times. If there are problems of network connectivity, accessing the cloud also becomes a problem. 2 Downtime: A cloud service providers has to serve multiple cli- ents each day, so there can be a time when the main server gets down or your internet connection is offline. In such cases, you will not be able to access any of your applications, or data from the cloud. 2 Vendor incompatibility: Many times hosting and integrating the cloud applications created on different platform throw in- teroperability and support issues. For instance, applications de- veloped by Microsoft, such as .Net, might not work properly on the Linux platform 2 Additional costs: Although cloud computing provides cost ben= efits, but it impose some hidden or additional costs as well. For instance, you might have to pay extra charges for data transfer or other services. 2 Peripherals access: Many times peripheral devices like printers or scanners might not work with cloud. You will have to require software to be installed locally in order to access such devices. 1 SCe mote tannanc} NOTES 1.5 | CLOUD COMPUTING Cloud computing is completely based on the Internet and is consid- ered as the next phase in the development of the Internet. Cloud com- puting utilises the cloud that provides the mechanism to offer services as per the user's needs at any location and anytime. Organisations use cloud computing to fulfill the requirements of their clients and partners. The three major contributors in cloud computing are ven- dors, partners, and business leaders. The vendors provide applica- tions and their associated technology, infrastructure, hardware, and integration. The partners provide cloud services on demand and offer support service to their clients. Business leaders utilise and evaluate cloud services offered by their partners. Cloud computing allows or- ganisations to treat their resources as/a pool and not as independent resources. Figure 1.9 illustrates the various aspects of cloud comput- ing, which include features, types, modes, benefits, comparisons, and stakeholders: ‘Various Aspects of Cloud Computing Figure 1.9: Various Aspects of Cloud Computing Let's understand the need for cloud computing in a business organi- sation through an example. Following the recruitment of an employ- ee in a company, the employee has to be provided various hardware and software required to perform his/her job. The company also has to ensure about licenses of software provided and the hardware ar- rangement for employee. This traditional way of providing software and hardware to employee causes additional expense for the compa ny. However; with cloud computing, the company has to load a single Presa v en eme Leet a tar ve! application which provides the interface to use the various software needed by an employee. In other words, cloud computing handles the workload efficiently. It decreases the workload of local computers during the execution of an application. Cloud computing handles the workload instead of local computers and also decreases the demand from the user's end. The only software required by the user's system is the interface software which acts as a Web browser, and the rest of computing is handled by the cloud. 1.5. CLOUD COMPUTING FEATURES, Cloud computing system must satisfy the economic considerations in order to achieve business oriented goals and be useful in real life sce= narios. To exist in today’s business environment, economical issues are the most important thing to consider: If anything is not economi- cally feasible in context of its use, it will definitely decay within a small time period. So in developing cloud applications or data centers, eco= nomic feasibility must be considered. Besides economic feasibility, some more important features that are considered in cloud computing are as follow: 2 Quality of service: In cloud computing, the Quality of Services (QoS) at the resources level guarantees the basie quality of ser- vices. Cisco, Amazon EC? and Amazon $8 are the example of such kind of system. Agility and adaptability: It refers to quick reaction according to the size and service requirements as well as adaptation according- ly. With elasticity and horizontal scaling, agility and adaptability is achieved by cloud environments, Examples of such environments are RightScale and FlexNet. 2 Availability: Current cloud systems possess high data availability in all three cloud types as IaaS, PaaS and SaaS that make them more flexible and usable. MS Azure and Amazon S8 are the most prominent examples of such kinds of systems. 2 Cost reduction: A significant cost reduction has been achieved by cloud investors developing cloud environments with simplified service provisioning and resource management. It generally refers to resource management and scaling. This aspect mainly reduces cost on the users’ side of cloud environments like outsourcing, re= ducing management overhead and scalability. Google App Engine through horizontal sealing is a prominent example such type of cloud environment. Pay per use: Pay per use is a widely accepted billing model of cloud services that allows users to only for what they used. IeaS, Poa and SaaS all types of cloud support pay per use static billing model. On the users end, it is considered as the automatic billing. PayPal and HP PPU support the pay per use billing model. NOTES ry crema keo tata} NOTES 2. Improved time to market: Only applies for cloud resellers, aggre gators and consumers. With simplified service provisioning and management, cloud computing environment provides more time to market and sell services to consumers. It reduces the overhead of managing resources and developing applications and services that allow cloud consumers to invest more time in promoting their end users services and products, 2 Return of investment: Cloud environment allows cloud consum- ers to reduce workload by using cloud resources and services. It can be also referred as the outsourcing and work offloading, In most cases, it applies to cloud consumers only. Q CAPEX to OPEX: CAPEX refers to capital expenditure in setting up whole infrastructure while OPEX refers with operational ex- penditure that an organisation bears in achieving required capa- bilities. With advent of eloud systems, a company ean convert their CAPEX to OPEX by using loud resources and applications. Q Multi-tenaney: It is regarded as one of the essential attribute in cloud computing concept which allows multiple users from differ- ‘ent domains to access single resource or service of their images si- multaneously. In « multitenant architecture, a service or resource is implemented as virtually partitioned and each user can access an instance of a customised virtual application. Multi-tenancy also supports image separation, general data management, and instan- tiation that improve overall availability of resources to users. 2 Securityand compliance: Enough security policies areimplement- ed in cloud computing environment to make it safe and reliable for users. Encryption, identification, authentication & authorisa- tion and data rights management are the key points considered in developing a secure cloud environment. Various technologies support these features. The concept of data rights management and legislative regulation is introduced for compliance. These se- curity mechanism and compliance make resources easily available and catered by the providers. Almost cloud systems support these features. 2 Data management: Cloud computing addresses issues of data management to ensure data availability everywhere. Distributed data management, conversion, and versioning are the important features data management. Mesh, AmazonDynamo, and Web- Sphere are the cloud environments support these features. 1.52 COMPONENTS OF CLOUD COMPUTING Cloud computing comprises a virtualised pool of infrastructure re- sourees with applications and services that can be used directly through a self-service portal. For the end user, cloud computing con- sists of the following: Presa v en eme Leet a tar ve! 2 Client: A client is an access device or software interface that a user can use to access cloud services. There are different types of clients in terms of hardware and application software. However, all types of cloud clients are divided into three broad categories, namely: ¢ Mobile clients ¢ Thin clients ¢ Thick clients Client types can include computers, mobiles, smart phones, tab- lets, and servers. The client device communicates with cloud ser- vices by using cloud APIs and browsers. 2 Cloud network: A network is the connecting link between the user and cloud services. The Internet is the most straightforward and common choice for accessing the cloud. Employing advanced net- ‘work services, such as encryption and compression, during transit will benefit both the service provider and the user. 2. Cloud Application Programming Interface (APD; A cloud APT is a set of programming instruction and tool that provides abstrac- tions over a specifie provider cloud. It includes ¢ custom or unique provider call that can be used to enhance the amount of control over a cloud implementation. These calls can be used to build ap- plications for accessing and communicating with the cloud ser- vices. APIs help programmers to have a common mechanism for connecting to a particular cloud service. 1.5.3 COMMON USE CASES OF CLOUD COMPUTING. Cloud computing is used in businesses to achieve business goals. The type of cloud service that business organisations want to use totally depends upon the kind of requirement and the nature of their bu: ness. Public clouds have been popular with Small and Medium Busi- nesses (SMBs) because of the eloud economies and expense pattern. Other companies that would benefit from the cloud are those who have unpredictable demands, sharp load spikes, seasonal demands, or need for massive compute resources for short time periods. Busi- nesses that are unwilling to spend on capital expenses for purchasing new IT hardware and software will also prefer public clouds. The benefit applies forall business verticals, be ittechnical or non-tech- nical. Large organisations that want to start businesses worldwide and enter global markets will benefit from public clouds. However, the de- gree of control in public clouds is less than what is possible in private clouds. On the other hand, a private cloud will benefit businesses with high security, privacy, and compliance requirements. Itis also suitable for businesses that are more vertically integrated, and want to control the supply chain, distribution, and access for vendors and partners. NOTES rt) CLOUD COMPUTING NOTES Many businesses are opting for private cloud over public cloud. It is @ cloud like environment, where virtualised resources are available in a pool with pay-per-use billing for internal business units. The epplica- tion, data, and underlying infrastructure are usually housed within the enterprise and protected by the corporate firewalls. Data safety, pro- cess compliance, and serviee availability remain in full control of the internal IT staff. However, the private cloud takes away the real benefit of a cloud, where you do not have to pay for the capital expenses for the hardware and software and do not have to spend on configura- tion maintenance. With a private cloud, these benefits go away. You are burdened with the procurement expenses and recurring maintenance, This again robs a business manager of peace of mind. As such, it is important to keep a tab on the expenses related to a private cloud. To partially offset the expenses of a private cloud, owners can take advan- tage of a virtual private or hybrid eloud, where a public cloud provider uses its public resources to create a private cloud for the enterprise. Nirvanix, based in San Diego California, offers multi-site hybrid cloud storage, wheré storage in a private cloud can be expanded to use storage resources at data centers within the enterprise or outside at Nirvanix's datacenters (located in Texas, California, New Jersey of USA, Germany, and Japan). The customer provides the datacen- ter space, power, cooling, and Internet connection. Nirvanix provides and manages the storage at the customer datacenters with a secure connection to its own datacenters, which can be used during peak re- quirements or for non-critical data. Figure 1.10 shows a clear picture as to how a virtual private cloud can be configured by a public cloud provider as per the need of the user: | (Cloud Provided Datacenter X ‘Customer Datsosnter A ‘and provider's ‘datacenters Figure 1.10: Virtual Private Cloud Configured by a Public Cloud Provider 1.54 MYIHS AND TRUTHS OF CLOUD COMPUTING There are several apprehensions of the impact of the cloud and how this disruptive technology will impact individuals, corporate IT teams, Presa v en eme Leet a tar ve! Independent Software Developers (ISVs), IT service providers, and product organisations. Some of the apprehensions are baseless. Table 1.1 lists a few public cloud myths and reality: 'S. PublicCloud Reality No. Myth. 1. Ifmyoorganisa- The role will still be required, but the scope will tion moves IT change. Some services will move to the public services tothe cloud but several will remain for corporate IT man- cloud, my role agers. They will still have to manage security, user aan IT manag- accounts, OS, and applications. There will he sever- erbecomss less al new tasks, stich as integrating corporate servie= technicaland es with eloud services, keeping a backup of cloud redundant. _ storage, ensuring secure communications between. cloud and corporate LAN, maintaining Service Level Agreement (SLA) with the Cloud Service Provider (CSP), and working on escalations to the csr 2. My organisation You will sill be responsible eae will lose control £ : over the user suc data, ‘where and use the for less crit 3. Onlysmall Compliance i key factor Large organisations use businesses ean the publie eloud for applications that are not regu- benefit from the lated and required by the government to be hosted. publiccloud. within an internal datacenter, Backups, DR, appli cation development, compute-intensive applic tions whose resource requirements vary drastically over time are the reasons why the cloud is used by large organisations. 4, To fully take ad- It is recominended that you keep some applications vantage of cloud internal and move a few to the cloud. Apps with computing, you! fluctuating londs are good candidates for the cloud. will ultimately Apps with sensitive, financial, or critical data are have to move all, ideally hosted on-premise. 8. CAPEX refers to in setting up whole infrastructure while OPEX refers to s 9. In a multitenant architecture, a service or resource is implemented as virtually partitioned and each user can access an instance of a customised virtual application. (True/False) NOTES ey Poem Leona} NOTES Organisations are investing in eloud computing in almost every country for better customer experience. Find out the budget allo- cated by organisations of different countries to get the benefits of cloud computing. IMPACT OF CLOUD COMP! BUSINESSES ‘ING ON Cloud Computing has become a disrupting technology that is replac~ ing the IT infrastructure used by small and large enterprises. By using cloud computing, enterprises can do away with many captive datacen- ters and server-storage infrastructure owned and managed by them. In any case, IT managers around the world are excited by the poten- tial of cloud computing, but at the same time, are apprehensive of the security and complianes concerns around it. Despite this, senior man- agement and business owners want to go for cloud, as it allows them to get rid of the IT infrastructure and focus on expanding their core competencies and Fevenue verticals. They look forward to pay-per- use invoices and on-demand resource provisioning for meeting peak loads, without having to buy and manage resources for use during temporary pealeload periods. However, there is no denying the fact that IT managers are worried about the loss of control over managing their computing resources and data storage systems, about having to share the same comput- ing platform with other unknown tenants, and about not knowing the insiders who manage their hardware platform. Alll these factors are ‘expected to have an impact on the availability and quality of services provided by IT managers to corporate users, for which the IT manag- ers are ultimately liable and answerable. As such, cloud service should not be considered similar to traditional hosting. A cloud service has a few salient features that distinguish it from hosting services. These features are given as follows: 2. Cloud services are sold on demand, typically by the minute, hour, or month. You as a user can use as much or as little of a service as you want at any time. The service can be an application or even hardware resources, such as storage capacity or compute power. The service and underlying infrastructure is fully managed by the provider: All you need is a Web browser and an Internet connec- tion. Presa v en eme Leet a tar ve! Using cloud, instead of running applications on an in-house IT hard- ware and datacenter, you run them on machines owned and managed by the cloud provider. You access the applications over the Internet. ‘The machines, applications, and your data are held outside of your en- terprise, at the provider's or someone else's datacenter that has been chosen for use. A cloud service can be public, private, or a hybrid of the two. A public cloud offers services to anyone on the Internet. Amazon Web Services, Google, and [Link] are some of the leading public cloud pro- viders. A private cloud is an internal IT infrastructure, usually located within the user's datacenter: It offers application services to a limited number of users within one ora few related organisations. Like a pub= lic cloud, the infrastructure is shared by multiple users and each user gets resources as and when he/she requires. . By using Cloud Computing, enterprises can do away with | many captive datacenters and server-storage infrastructure owned and managed by them.(True/False) 11, The. can be an application or even hardware resources, such as storage capacity or compute power. Determine the impact of cloud computing in banking sector of the world. E ra SUMMARY 2 The cloud can be defined as an integration of hardware, networks, storage, services, and interfaces that allows in offering the com- puting as service. The cloud is helpful to both the provider company, which provides the cloud services, and the client company, which uses the services on the cloud. In the private cloud, the cloud computing infrastructure is sole- ly designed for a single organisation and cannot be accessed or shared with other organisations. @. The cloud environment in which various internal or external ser- vice providers provide services to many organisations is known as hybrid cloud. Q. The cloud computing is fully based on the Internet. NOTES Promote tannic} NOTES ‘The cloud computing uses the cloud which provides the mecha- nism to provide the services as per the needs of the elient at any location and time. ‘The cloud computing allows the organisations to treat their re- sources as a pool, and not independently. ora To uns) Autonomic Computing: It is a group of self-managing features of distributed computing resources that can function on the ba- sis of a group of pre-defined policies. Public Cloud: A type of cloud that is accessed or used by gen- eral masses and hosted, are maintained as well as managed by cloud service providers. Community Cloud: A type of cloud that is shared among vari- ‘ous organisations with a common tie. Cloud Computing? A kind of computing which makes the organ- isations treat their resourees as a pool, and not independently. El DESCRIPTIVE QUESTIONS 1 a 3, 4 3. What do you understand by a cloud? What are different Characteristics of a cloud? Describe the different types of cloud service models in detail Explain different types of cloud deployment models. Discuss the need and features of cloud computing, Describe the impact of cloud computing on businesses. El ANSWERS AND HINTS: ANSWERS FOR SELF ASSESSMENT QUESTIONS ree Answers Cloud 1 True 2. High Performance Computing 3. Scalability Cloud Service Models 4. False 5. Software-as-a-Serviee or Saas Cloud Deployment Models. 6. Public 7. a Private Pros eave emele Leave NOTES ov nswers Cloud Computing 8 Capital expenditure, operational expenditure 9 True Impact of Cloud Comput-. 10. True ing on Businesses 11, Cloud service HINTS FOR DESCRIPTIVE QUESTIONS 1. A cloud is defined as an integration of hardware, networks, storage, services, and interfaces that enables you to deliver and access computing as a service. Refer to Section 1.2 Cloud. 2, There are three high-level cloud models depending on what resources you use and the benefits you get from the clouds Refer. to Section 1.3 Cloud Service Modeis. 3, Generally, cloud deployment models can be classified either on the basis of location or the type of service being provided. Refer to Section 14 Cloud Deployment Models. 4, Cloud computing is completely based on the Internet and is considered as the next phase in the development of the Internet. Refer to Section 1.5 Cloud Computing. 5. Cloud Computing has become a disrupting technology that is replacing the IT infrastructure used by small and large enterprises. Refer to Section 1,6 Impact of Cloud Computing on Businesses. SUGGESTED READINGS & REFERE! ES SUGGESTED READINGS 2 Murugesan, S., & Bojanova, I. (2016). Encyclopedia of Cloud Com- puting. Chichester, West Sussex: John Wiley & Sons. Q Hurwitz, J. (2010). Cloud Computing for Dummies. Hoboken, NJ: Wiley. E-REFERENCES @ (nd), Internet and Technology. Retrieved February 21, 2017, from httpsi//[Link]/developerworks/eommunity/blogs/72276200- Fca-deb3-Sd64-8d2b58b2dde8/entry/4_Types_of_Cloud_Comput- ing_Deployment_Model_You_Need_to_Knowi?lang=en Q How the cloud is improving healtheare in remote populations. (nd.). Retrieved February 21, 2017, from http:/[Link]- [Link]/news/2017/jan/16/how-cloud-improving-health- care-remote-populations/ CLOUD COMPUTING SERVICE MODELS CONTENTS 2a Introduction 2. Infrastructure as a Seryige (LaaS) Self Assessment Questions Activity, Platform as a Servies (Psa) Leveraging PaaS for Productivity 28.2 Guidelines for'Seleoting a PaaS Frovider 233 Coneerns with PaaS 234 ‘Language and PaaS; Self Assessment Questions Activity 24 Software o2 a Service (Sas8) ‘Self Assessment Questions Activity, 25 Database asa Service (DBaaS) Self Assessment Questions Activity 26 Everything as « Service (XaaS) Self Assessment Questions Activity, Specialised Cloud Services ‘Self Assesement Questions Activity, Summary Descriptive Questions Answers and Hints ‘Suggested Readings & References Pr Meo Lee erin ed RODUCTORY 1A GROUPON IMPROVED ITS CUSTOMER HANDLING USING SAAS. Groupon, founded in 2008, offers deals on stuffs related to cus- tomer's daily needs. Thousands of employees work for the compa ny in its different offices across Europe, America, Asia, and Africa. The company only offers products and services of high standards, deals with its customers with full honesty and provides excellent inch, it started gaining popu- larity and the customer's database increased tremendously. The ‘company initially appointed a si rson to handle customers’ query, but it soon realised that ‘ime ticketing system would be required to handle the larg istomers. Joe Harrow, Director o} mer of Groupon decided to find some Web-based wroblem, and for this he chose to take the s: ‘a. company providing en- rr service platform, based on the Software 'S) cloud service model, which pro- the companies from small size to me- r, you do not need to install it, because it easy monthly subseription. ly uses the concept of tickets in their working et is generated by a client eall, which can be up- searched or resolved all through a Web interface. wres of Zendesk support are as follows: 4s are completely customisable RSS feeds feature is available with both tickets and views Q Self-service portal for help desk users Tickets are associated with clients’ emails Q When tickets are resolved, they automatically converted into solutions and also added to the solution database ‘The macro feature of Zendesk is helpful in answering the ques- tions asked frequently by customers. Groupon is handling 15000 tickets per day with the help of 150 customer support agents and. Zendesk. The predefined macros in Zendesk helped agents in providing one touch resolution of their queries. The Zendesk solutions can also be integrated with other solutions easily, Groupon integrated Zendesk with Gooddata software solu- tion that enhanced the reporting capabilities of Groupon. With this integration, Groupon overcame the limitations of convention- al spreadsheets. Lema Reo ate ES or Ae Se) NOTES Poche After studying this chapter, you will be able to: Explain Infrastructure as a Service (Ina) Describe Platform as a Service (PaaS) Discuss Software as a Service (SaaS) Explain Everything as a Service (XaaS) Describe Specialised Cloud Services El INTRODUCTION In the previous chapter, we have discussed various cloud-based ser vices briefly. You have seen that these end-services are at'least, to some extent, similar to what IT managers offer from intermally-host~ ed, traditional infrastructure, Both eloud-based services and the ser- vices provided by IT managers offer computing power and storage, an application-development and hosting platform, which users ean use with little or no customisation, yryyy But the services offered by the cloud are more beneficial in compari- son to services provided by IT managers. For example, the virtualised (and usually vast) resource pooling and self-service characteristics are fundamental aspects of the services offered by the cloud. In a public cloud, the infrastructure is multi-tenant, Most public clouds have hun- dreds or thousands of servers spread across the country or the world. A user can set up the cloud environment easily using the self-service portal. There is often no initial:expense. The user is charged on a monthly basis (or whatever the billing period is) for the actual amount of resources used for that month. It is just like a utility bill that a user might get at home for phone or electricity usage, Cloud makes it convenient to set up a new environment. It takes a short time (for example, a few hours) to set up servers with required storage, OS, database, and development tools in a cloud. On the other hand, to set up an internal, non-cloud server and storage system for a new development project or application, the roll-out will take weeks or months. In order to set up a new environment, you will have to go through various phases, namely, architecture, approval, negotiation, procurement, setup, installation, testing, and go-live, Each of these phases can take several weeks to complete. The cloud services have been in use for years before the term “cloud computing” was coined. In fact, all services available in the cloud have been available since the dawn of computing. But now, the cost of set- ting up cloud infrastructure has become cheaper, the cloud delivery mechanisms have become more convenient to use, and the related bandwidth has become more widespread and affordable, ED e volun Lee eran ed NOTES For larger businesses, several of their internal business units will move towards the cloud, unless compelled by government regulations to keep the data and applications within their internal premises. There are three key types of cloud-based service mechanisms: a Infrastructure as a Serviee (IaaS) Platform as a Service (PaaS) O Software as a Service (SaaS) In this chapter, you will first learn about Infrastructure as a Service (aaS). Then this chapter will describe Platform as a Service (PaaS) Next, this chapter will discuss Software as a service (SaaS) and Ev- erything as a Service (SaaS). Finally, this chapter will discuss about specialised cloud services. Ea INFRASTRUCTURE AS A SE ICE (IAAS) TaaS is a model in which you, as.a customer, pay for the resources (such as computing power, memory, storage, handwidth, security de- vices, load balancers, etc.) kept at the provider's facility or wherever the provider keeps its hardware. The provider owns the equipment and maintains it ata level specified in the previously-agreed upon Service Level Agreement (SLA). As a customer, all you need to do is to pay for the part of the resources dedicated permanently to your account or resources that you acquire temporarily to meet the short- term needs, The customer can install OS, applications, libraries, and other software within the virtual machine and has limited control on networking and security equipment, such as host firewalls. Consider the case of a cable TV operator who is planning to expand its services to offer on-demand movies to users over an Internet Pro- tocol (IP) network. The users should be able to stream movies to their laptops, desktops or IP-enabled TVs over a DSL or broadband. The problem is that the datacenter location is far from the customer base. The operator does not have high-speed IP access to all its users. The movies are very large and must be available on-demand. The operator decides to host the movies on the public cloud. It will allow the opera tor to manage massive data files and bandwidth demands without in- creasing physical resourees or link speeds. The operator will pay only for storage space and bandwidth consumed to stream videos to the paying users. The cloud provider has user authentication and Role- Based Access Control (RBAC) to control administrators from the TV operator company who are authorised to change the movie database. In this way, the cable operator got the benefit of IaaS. Since the early 1980s, various offerings such as mainframes and thin computing (which are similar to today’s Ina and private clouds) have been built. One of the innovations of IaaS was a storage provider known as Storage Networks, which was built in late 90s in Waltham, ‘Massachusetts. They offered storage-as-a-utility along with pay-per- eRe Reo ati So Aue oh SME NOTES use billing model. They provided a list of services, for example, data archiving, backups, and replication. The user community was, howev- e1; not ready for the services and they were unfortunately far ahead of their times to be commercially successful. In July 2008, its Board of Direetors announced the closure of the bu: ness and approved a plan to liquidate the company. The company re- tained only a small transition team to oversee the wind down of the business and terminated rest of the employees working in the com- pany. In December 2003, a company called Rocket Software (httpi/www. [Link]/) of Newton, Massachusetts bought some of the technical assets of the company. That was in early 2000s, when server virtualisation or pay-per-use for hardware resources was uncommon asa marketable utility. Even the term cloud computing had not been coined. However, today, with robust virtualisation technologies (such as Xen from Citrix, Hyper-V from Microsoft, vSphere from VMware and open source software), high-speed broadband, and shrinking eor- porate budgets for IT, businesses are looking to buy or rent only what they need for the day. laaS is the solution for them, To be eommercial- ly successful, the IaaS service must include the following: 2. Utility-style computing service with pay-per-use billing 2 Superior, world-class IT infrastructure and support Q Virtualised servers, storage, and network to create a shared clus- ter of resources 2 Dynamic scalability of memory; bandwidth, storage, and servers (usually to thousands of servers) to meet user needs in real-time @ Flexi ity for clients to enhance or reduce the assigned resources 2. Automation of administrative tasks @. Ability to view and manage resource utilisation As a user, you need to be sure that your IaaS provider has the above-mentioned attributes. Here is a list of questions to ask your provider: 1. What does the provider have in place to protect non-IT infrastructure, such as its datacenter, UPS, diesel generator, racks, and air-conditioners, and IT infrastructure, such as servers and storage? 2. How does it configure the security of the virtual machines? 8. How does the provider validate the integrity of the Virtual Machine Images (VMIs)? 4, How does it protect customer data, applications, and infrastructure from attacks by other tenants in the same cloud? 5. What tools does the provider use to detect security flaws? Er Meolun Tee eran ed NOTES 6. What are the physical locations where data will be stored? This is required for compliance with certain regulations that need data to be in the same country. 7, How and at what frequency are the backups provided? Is backup data encrypted? 8, What are the DR and BCP plans? 1. TaaS is a model in which you, as a customer, pay for the resources such as computing power, memory, storage, ete. kept at the provider's facility or wherever the provider keeps its hardware. (True/False) 2, SLA stands for a, Service Level Agreement’ by Server Level Agreement c. Service Less Agreement. d. Services Level Agreements 3. One of the innovations of IaaS was a storage provider known 4, Xen)from Citrix, Hyper-V from Microsoft and vSphere from VMware are technologies. B= #8 =—=~=—es—EIF Find out about three types of IaaS cloud offerings and discuss with your friends, El PLATFORM AS A SERVICE (PAAS) PaaS is a cloud service where a client gets a set of application and product development tool hosted on the provider's infrastructure. The client can deploy acquired applications or those developed by us~ ing programming languages and tools which the provider supports. The consumer does not control, own or manage the underlying cloud infrastructure, including servers, OS, storage, security devices, net- work, but has @ control over the deployed applications and possibly also over the configurations of the hosting environment. Developers on the PaaS platform develop applications on the cloud platform with the help of APIs, website portals or gateway software deployed on the cloud servers, [Link] (a part of [Link]), Microsoft Azure and Google AppEngine are few leading PaaS pro- viders. Despite the advancement in this area, PaaS suffers from absence of widely-adopted standards for application portability between clouds. fem leRee a tye ES ogo SE) NOTES Table 2.1 shows a comparison between a traditional development en- vironment and PaaS on the basis of the features offered: MultiTenaney Intended for asingle ora Supports hundreds to small group of users. thousands of users, each with multiple active projects. Partition of data is must to protect several ‘User End-Points Application-based tools, Web browser-based t8ie. browsers. Deployment Deployment and salabilty Scalability fuk, an are left for installation and —_load-balancirig are the golive phases basi building blocks Runtime Moni: Development solutions are Bull 7D toring usually not related with able wit Virtual Ma- Multiple options are avila», Need to wore with the chines, Servers, bleandean be customised infrastructure offered by Storage, Data- to meet any user require-_ Pais providers. bases ment. Integrated De- May have separa ;nvironment for ‘velopment Envi- ment and. ronment (IDE) devel sing, andhggodl ‘Table 2.2 shows the list of various categories of PaaS: Category Description ‘Examples: 1 ‘These are PaaS offerings where [Link], Google, Long- software developers eanuse Jump, Magie Software, current tools, which they prefer Microsoft, NetSuite, TIBCO, tolocally develop the software. and Wavemaker. Once they compile and test the application, they can upload it con the cloud. w ‘The PaaS vendors provide [Link], Intuit, Trackvia, acloud-based development _and Wolf Frameworks environment, which includes stages, such as design, coding, debugging, testing, staging, and deployment. All phases provide browser-based access. The de- ‘velopers build and test applica- tions at the PaaS provider's site. Er eme volun Lee eran el NOTES Category Description ‘Examples, mm ‘These PaaS vendors target Caspio, Cordys, Mendix, business experts, not coders or WorkXpress, and Zoho. developers. The vendors pro- vide tools, templates that can bbe easily customised to build applications. There is no need to write original code, it speeds up application delivery timeline, w ‘These PaaS vendors enable de- Amazon, CloudBees, En- velopers to use tools for building gine Yard, Gigaspaces, IBM, the applications, either Joyent, Microsoft, Red Fit, in the cloud. The standing Cloud, and Cloud use the cloud to stag (vMWae). ine een tions, Despite the availability of various PaaS vendors, consumers need to be cautious. Small, start-up vendors may not be in business a few years down the line and large established PaaS vendors may be slow to keep up with new offerings and attempt to sell their traditional products. There are a few well-established PaaS providers, such as [Link], Google, and Mierosoft. ‘The existing development user community must be familiar with the technologies and offerings within the selected PaaS service. 23 LEVERAGING PAAS FOR PRODUCTIVITY ‘The following key features will increase a developer's productivity if they are effectively implemented on a PaaS site: @ Ubiquitous access and quick deployment: This is particularly important for organisations whose developers are geographically spread out, mobile, and always changing in number. PaaS enables rapid implementation, scalability, and collaboration. Q Caching: The PaaS environment that supports caching for cloud resources will boost application performance. Developers would need an APT to put an object or resource in the cache and to flush the cache. 2 Integrated Development Environment (IDE): The PaaS environ- ment must have a browser-based development studio with an IDE for development, test, and debugging of applications. PaaS must provide the same development and production environment and the capability to build apps in various languages, such as Java, Python, C#, Ruby, or PHP 2. Database: Each PaaS must provide a database for developers to store and access data. For example, for PaaS cloud, [Link] Lemoore ES ot Ae SES NOTES has a service called [Link] that enables you to build ta- bles, fields, and relationships. It includes file storage, user man agement, authentication and development tools that make it easy to build applications. The database and APIs must support open standards, such as REST, OAuth, SAML, and SOAR, 2 Integration: Integration with external databases and Web services and their compatibility is ensured with leading cloud providers, such as Google AppEngine, Microsoft Azure, Amazon or Fore. com. 2 Logging: Log creation is a common requirement for all developers, regardless of the application they are developing. The PaaS em ronment must have APIS to open and close log files, write event logs, examine entries, and send alerts for certain events detected in the log files. Q Identity management: Developers in a PaaS or traditional em ronment need to authenticate and manage users within their ap= plications. Each user has a set of privileges managed by a role- based access mechanism. The PaaS cloud must support federated identity management system where a user, once authenticated, is given credentials to access services within the application as well as on other clouds. APIs with the PaaS should eache, use, and de- lete credentials as needed. Q Messaging: PaaS cloud must provide ability to APIs to manage messages, such as the ability to post messages to any queue, con- sume messages, and examine message content without consuming them. It must support a highly-secured and on-demand collabora- tion throughout the Software Development Life Cycle (SDLC) with phases, such as design, development, testing, deployment, produe- tion, and support. 2. Job processing: PaaS must provide the capability to APIs to en- able developers to start, monitor, pause, and stop jobs that require large processing, such as Hadoop style data mining. Hadoop is a software framework that enables applications to conveniently work with thousands of nodes and petabytes of data and is based on Java programming language. 2 Session management: PaaS must provide the ability to view ac- cess or change user sessions. When a user session migrates from one node to another in the cloud (say to server failure, for exam- ple) the PaaS environment must maintain the user session, 2 Service discovery: PaaS platform must give developers a conve- nient way to discover available services and the ability to search the cloud by service types. It must provide a range of search crite~ ria for different service categories offered by the provider, Besides the above-mentioned features, you must make sure that the PaaS environment meets your specific programming needs. EC ame volun Lee eran ed NOTES Here is a list of questions you need to ask a potential PaaS provider: Q. What development environments does the vendor provide? 2. Can your existing and read-for-market applications be hosted from the PaaS cloud? This will prove the readiness of the provider. What is the security responsibility (for user authentication, data, etc.) of the provider and the consumer? 2. Does the provider have the expertise and willingness to work rectly with you for porting, customisation, and deployment, as of tenas required? What facilities are there for logging of security events and user ac- tivity? Do they use log servers, independent of the PaaS platform? What tools are available to deteet security flaws in applications? Does the provider have sound intrusion detection or prevention systems? What about change management? Does the provider have a ro- bust, centralised mechanism for maintenance without incurring downtime or performance degradations? 2 What are the provisions for backups and DR? How does the elotid vendor ensure that application flaws of one customer do not impact the shared infrastructure or someone else's data? 2 Can the public PaaS provider offer the services within a hybrid cloud model? This will assure enhanced security and flexibility. Out of all the applications you have to develop, some will not be suit- able for PaaS. For example, if you need to develop and test on a main frame or Unix system, that is not offered by PaaS provider, you will need to set up and use an internal environment. For other applica- tions, you can use environments offered by PaaS providers. 2.3.2 GUIDELINES FOR SELECTING A PAAS, PROVIDER ‘Some guidelines for choosing a suitable PaaS provider are as follows: 2 Compatibility with other clouds: PaaS providers generally claim portability to all other clouds. This cannot be true as the cloud en- vironments are unique and standards are still evolving. However, you need to be aware of providers who elaim they have everything for everyone. 2. Target customers: PaaS providers have certain target customers and architect their environment to appeal to a particular group of users, For example, Microsoft focuses on NET and PHP develop- ers. Oracle focusses on Java developers. Make sure that the PaaS eRe at NES Aveo GET NOTES provider you select offers and supports the application develop- ment environment you need. Avoid vendor lock-in: You must select a provider who facilitates cloud interoperability for your application. It must be easily ported to another public or hybrid cloud or even to a non-virtualised in- ternal infrastructure. For this reason, the provider must abstract application runtime, data handling, and middleware from the un- derlying infrastructure. Q Platform management: Make sure that the PaaS provider can manage and maintain the environment. Many PaaS platforms are built using open-source projects and applications for which the provider may not have skills or control. 2 The test of time: Make sure that the cloud vendor will be in busi- ness in the times to come. With the ephemeral nature of cloud businesses, make sure that the provider has a reliable set of partners, satisfied customers, and.a sound financial base and can continue to survive even in harsh times. 2.3.3 CONCERNS WITH PAAS ‘The convenience attained with PaaS (as per the above points) leads to a great loss of control over the environment and security. The follow- ing are the drawbacks of using PaaS: Lack of visibility: Tt is difficult to know if you are running in a secure, robust environment, There is no standard way to deter- mine the patch levels, view, and analyse the activity logs, or per- form a vulnerability audit on the platform. Remote tests are usu- ally banned. 2. Portability/Interoperability with applications on another cloud: Unlike IaaS, where OS images can be moved between clouds, ap= plications developed on a PaaS involve cloud-provider’s APIs and customised language extensions. This makes porting of applica- tions difficult. @ Security: Some PaaS providers include built-in security services, but the end-user has no information on the implemented security mechanisms. The customers cannot install host-level security ap- plications for antivirus, WAF (python-based framework for config- uring, compiling, and installing applications), host-based firewalls or disable services or ports. 2. Security for development code: Since the development code re~ sides on a third-party, shared infrastructure, the customers are wary of security and privacy of the code, which is the prime In- tellectual Property (IP) for the Independent Software Vendors (ISVs). Pree tolunLee eran ed NOTES 2.3.4 LANGUAGE AND PAAS Select a PaaS provider with the right type of orientation and support for various software languages that will help to build a flexible and portable application: 2 Programming-language specific PaaS: These were common in the early 2000s but are now less in number, They support one language, be it Java, Ruby on Rails, Python or NET or any an- other language. The advantages they provide are the use of lan- guage-specific tools, customised support, extensive libraries, and specific code to run computing-intensive tasks in the clouds. It allows scientists and analysts to access extensive computing re- quirements they are comfortable with and need from, within a de~ velopment and test environment. 2 Language-agnostic providers: They were designed for developers working with multiple programming languages, databases, and frameworks. For example, they offer support for various languag- es, such as Python, Java, NET, and Ruby, and databases, such as MS SQL, MySQL, Postgres, and MongoDB. Potential drawbacks are that you may not find the same degree of language-specific customisations or libraries to distribute your code to several other clouds, 2. Hybrid PaaS: It is a cloud service that gives you the freedom to ‘work with a complex mix of off-premises and on-premises applica- tions and data. They abstract the infrastructure layer and on-prem- ise resources. For example, if you have a large, on-premise Oracle database that you do not want to replicate to a public cloud for its size, security or cost reasons, you can access it from applications in a hybrid PaaS. However, a potential drawback of hybrid PaaS is the need to set up and manage the hardware abstraction layer, which requires in-house expertise and management efforts. The PaaS market is fast maturing with several commercial PaaS pro- viders. Your selection would depend on your need for a single lan- guage, mix of stack component and several languages or a PaaS that ‘would allow you to access in-house data or applications. is a cloud service where the customer gets a set of application and product development tool hosted on the provider's infrastructure. 6. APaaS environment that supports caching for cloud resources will boost application performance. (True/False) Ms PaaS is a cloud service that gives you the freedom to work with a complex mix of off-premises and on-premises applications and data. femeleReo atn ye Eso ao SE) NOTES [a Ee Enlist some benefits offered by PaaS to application developers. 2.4 | SOFTWARE AS A SERVICE (SAAS) Saa$ allows consumers to access and use provider's applications run- ning on the cloud infrastructure. The applications can be accessed from different kinds of client devices using a Web browser. As in the case of PaaS, the customer does not manage or control the underlying cloud infrastructure (servers, storage, OS, network) or the application. features. The customer can, however, configure user-specific applica tion parameters and settings. SaaS provides several benefits. Users get to use the application over the Internet without the onus of buying, implementing or managing the software, Similor to JaaS and PaaS, the fee is charged according to the usage-basis, whereby customers purchase rights to use some or all modules as needed, Although SaaS and ASP may seem similar, they are different in many ways. ‘Table 2.3 lists the differences between ASP and SaaS: ‘TABLE 2.3: DIFFERENCES BETWEEN AP Baus Oso ECL) Feature ASP ae Owner ASP applications are usually Mult-tenant, application ship. single tenant gittelion-senP, hosted by tho application erarchitecture hosted bya developer, with regular third-party with an HTML- updates direetly from the front end to make iteasy for developer. remote se. Infra’ Maybe anon-viriualised Shared, virtualised serw- structure environment with direct ers, network and storage attached storage with server systems form a resource and storage dedicated to the pool; server and storage are application. shared with other services. Web-Notoriginally written to be Built tobe Web-based and based Web-based and used over the used over the publie Inter- Intemet: hence, there is per net. formance degradation, ‘There are a large number of SaaS providers, such as Microsoft LiveCRM, Google Apps, Trend Micro, Symantec, and Zoho. In Sep- tember 2007, SAP launched Business ByDesign — an online version of ERP service targeted at small and medium-sized businesses who do not want to invest in a large IT deployment. It enables a preconfigured suite for managing financials, customer relationships, HR, projects, in. About a year later, in October 2008, Poem keo tana} NOTES Infor (based in Alpharetta, Georgia) entered the cloud market with the launch of a SaaS version of ERP SyteLine, a very unique offering that allows the user to move seamlessly between on-premises deploy- ment and public cloud-based SaaS or vice-versa. In 2007, Microsoft Dynamics entered in the SaaS market by introduc- ing CRMLive, which is executed at Microsoft datacenters around the world, along with all the other “Live” products, such as Live Small Business Office. Software-plus-services for Microsoft Dynamics ERP is the new capability being offered, It enables the client to implement the Microsoft Dynamics application as a wholly-owned on-site solu- tion, or through Microsoft online services, or as a combination, In 2009, Oracle entered in the market by introducing services comprise of Oracle Soureing and Oracle Soureing Optimisation products. In ad- dition, Oracle also offers CRMOnDemand, a CRM as a SaaS. But SaaS needs cautious thinking anda well-planned deployment. There must be a tested confidence that organisational data is secure in the remote site. The issue of confidentiality, integrity, and service availability has to be addressed by the provider. Authentication to the application needs to be tightly protected using tested Identity Access Management (IdAM) applications. Here is a list of questions you need to ask your SaaS provider: How does the provider make sure that the users who sign up are not fraudsters and will not start malicious activity? How and to what extent is security integrated with the SDLC at different phases, such as architecture, coding, testing, and deploy- ment? What are the design and coding standards? What Web security standards are being followed? How is customers’ data protected from attacks by other tenants? oooo How is data at-rest and in-motion protected from other application users in the cloud? Software as a Service (SaaS), a cloud computing service model, makes available a software on-demand as a Web-based service. This type of software service does not require any type of physical installation of the software at the client's end, but the service is purchased with a monthly fee and ean be used till the client pay for it. SaaS is available to its users in two varieties: Vertical SaaS: This type of software service actually targets the needs of a specific industry, such as software for the healthcare, agriculture, real estate, or finance industries. Q. Horizontal SaaS: This type of software service focuses on software categories, such as for marketing purpose, sales, developer tools, or for HR management. Comoe Reo tat E So Aueoh oS aeTN NOTES Some common characteristics of SaaS applications are as follows: 2 Configuration and customization: SaaS applications are custom- isable by customers in terms of look and feel and functionality. A customer can have its own parameter settings for the configura- tion options. For example, he or she ean customize a logo, can use a set of custom colors, but cannot change the page layout unless such an option was designed for the change. @ Frequent updates: SaaS applications are easily and frequently up- dated than traditional software, in fact in many cases on a weekly or monthly basis. This is because the application is hosted central- ly, and updated and executed at the provider's end. 2 Open integration protocols: SaaS applications offer integration protocols and application programming interfaces (APIs), which covers a wider area of network. Generally, these protocols are based on HTTP (Hyper Text Transfer Protocol), REST (Represen- tational State Transfer) and SOAP (Simple Object Access Proto= col). 2 Collaborative functionality: SaaS applications are inspired by web 2.0 functionality and the success of online social networks, so that these applications allow its users to collaborate and share infor- mation. 8. In SaaS, users can only get to use the application over the Internet after buying, implementing or managing the software. (True/False) 9. IdAM stands for: a. Identify Access Management b, Tdentity Access Management ©. Identity Excess Management d. Identity Access Manager Do SaaS providers also exist in India? If yes, find out some of them. Ea DATABASE AS A SERVICE (DBAAS) Database is an essential component of all enterprise applications. Database services for on-premise applications are configured using internal, purchased servers and database. Large organisations have a shared infrastructure for internal teams, where the database may bea shared service and used for different applications. Thus, several 2 CLOUD COMPUTING NOTES applications can simultaneously access a single database running on clustered servers and centralised SAN or NAS storage. The applica- tions are, however, isolated from each other, Organisations ean use a shared database on a private or public cloud. In either case, the data for each application is explicitly protected by the centralised service called Database-as-a-Service (DBaaS). Cloud providers, especially PaaS, offer a database based on commer- cial products, such es PostgreSQL, MySQL, Oracle or Microsoft SQL. Nowadays, there are several available database service provid- ers. Here are a few factors to consider before selecting one for your requirement: 2. Research: Find the available options and scrutinize the SLA, the offered services, commitments and support. 2. Estimate your needs: Calculate what you will really need. It is ex- pensive to add resoutees incrementally in real-time to meet load spikes. 2. Vendor and community support: Ask the cloud provider for refer- ences and take time to speak with them. Check if the provider has a capable team, which is willing to help you with technical issues on a 24/T basis. Make sure that the database has support from an active user community and user forums. Q_ API support for databases: Make sure that your provider supports ‘and that you use APIs that will work on other clouds. This lets you focus on your application without worrying about infrastructure and compatibility. Price: Cost for cloud databases run from free versions to variable pay-per-use to fixed monthly fee option, Open-source solutions are inexpensive (and have good community support). Tuned for the cloud: Make sure that the database configuration, scalability, reliability, and performance are all tuned to work in a cloud environment where it may be subjected to immense load spikes and large number of concurrent users. 2 Compatibility with on-premise databases: Vendors offer pub- lic cloud database that is different from their on-premise edition. Understand the differences and try to use features that are sup- ported on-premise to ease your migration to a hybrid cloud when required. Sharding a database helps in improving performance. It is a process of breaking a large database into a number of smaller databases that are located on one or more servers. The goal of database profiling is to highlight any predictable issues that may arise. This helps in avoiding any unpredictable problems that may come up during implementation or runctime.

You might also like