Slashdot Mirror


Book Review: Architecting the Cloud

benrothke writes Most books about cloud computing are either extremely high-level quasi-marketing tomes about the myriad benefits of the cloud without any understanding of how to practically implement the technology under discussion. The other type of cloud books are highly technical references guides, that provide technical details, but for a limited audience. In Architecting the Cloud: Design Decisions for Cloud Computing Service Models, author Michael Kavis has written perhaps the most honest book about the cloud. Make no doubt about it; Kavis is a huge fan of the cloud. But more importantly, he knows what the limits of the cloud are, and how cloud computing is not a panacea. That type of candor makes this book an invaluable guide to anyone looking to understand how to effective deploy cloud technologies. Keep reading below for the rest of Ben's review. Architecting the Cloud: Design Decisions for Cloud Computing Service Models (SaaS, PaaS, and IaaS) author Michael Kavis pages 224 publisher Wiley rating 9/10 reviewer Ben Rothke ISBN 978-1118617618 summary Extremely honest and enlightening book on how to effectively use the cloud The book is an excellent balance of the almost boundless potential of cloud computing, mixed with a high amount of caution that the potential of the cloud can only be manifest with effective requirements and formal security architecture.

The full title of the book is: Architecting the Cloud: Design Decisions for Cloud Computing Service Models: SaaS, PaaS, and IaaS. One of the mistakes of using the cloud is that far too many decision makers rush in, without understanding the significant differences (and they are significant) between the 3 main cloud service models.

In chapter 1, he provides a number of enthusiastic cloud success stories to set the stage. He shows how a firm was able to build a solution entirely on the public cloud with a limited budget. He also showcases Netflix, whose infrastructure is built on Amazon Web Services (AWS).

Chapter 3 is titled cloud computing worst practices and the book would be worth purchasing for this chapter alone. The author has a number of cloud horror stories and shows the reader how they can avoid failure when moving to the cloud. While many cloud success stories showcase applications developed specifically for the cloud, the chapter details the significant challenges of migrating existing and legacy applications to the cloud. Such migrations are not easy endeavors, which he makes very clear.

In the chapter, Kavis details one of the biggest misguided perceptions of cloud computing, in that it will greatly reduce the cost of doing business. That is true for some cloud initiatives, but definitely not all, as some cloud marketing people may have you believe.

Perhaps the most important message of the chapter is that not every problem is one that needs to be solved by cloud computing. He cites a few examples where not going with a cloud solution was actually cheaper in the long run.

The book does a very good job of delineating the differences between the various types of cloud architectures and service models. He notes that one reason for leveraging IaaS over PaaS, is that when a PaaS provider has an outage, the customer can only wait for the provider to fix the issue and get the services back online. With IaaS, the customer can architect for failure and build redundant services across multiple physical or virtual data centers.

For many CIO's, the security fears of the cloud means that they will immediately write-off any consideration of cloud computing. In chapter 9, the author notes that almost any security regulation or standard can be met in the cloud. As none of the regulations and standard dictate where the data must specifically reside.

The book notes that for security to work in the cloud, firm's needs to apply 3 key strategies for managing security in cloud-based applications, namely centralization, standardization and automation.

In chapter 10, the book deals with creating a centralized logging strategy. Given that logging is a critical component of any cloud-based application; logging is one of the areas that many firms don't adequate address in their move to the cloud. The book provides a number of approaches to use to create an effective logging strategy.

The only issue I have with the book is that while the author is a big fan of Representational state transfer (REST), many firms have struggled to obtain the benefits he describes. RESTful is an abstraction of the architecture of the web; namely an architectural style consisting of a coordinated set of architectural constraints applied to components, connectors and data elements, within a distributed hypermedia system. REST ignores the details of component implementation and protocol syntax in order to focus on the roles of components, the constraints upon their interaction with other components, and their interpretation of significant data elements.

I think the author places too much reliance on RESTful web services and doesn't detail the challenges in making it work properly.RESTful is not always the right choice even though it is all the rage in some cloud design circle.

While the book is part of the Wiley CIO Series, cloud architects, software and security engineers, technical managers and anyone with an interest in the cloud will find this an extremely valuable resource.

Ironically, for those that are looking for ammunition why the cloud is a terrible idea, they will find plenty of evidence for it in the book. But the reasons are predominantly that those that have failed in the cloud, didn't know why they were there in the first place, or were clueless on how to use the cloud.

For those that want to do the cloud right, the book provides a vendor neutral approach and gives the reader an extremely strong foundation on which to build their cloud architecture.

The book lists the key challenges that you will face in the migration to the cloud, and details how most of those challenges can be overcome. The author is sincere when he notes areas where the cloud won't work.

For those that want an effective roadmap to get to the cloud, and one that provides essential information on the topic, Architecting the Cloud: Design Decisions for Cloud Computing Service Models is a book that will certainly meet their needs.

Reviewed by Ben Rothke.

You can purchase Architecting the Cloud: Design Decisions for Cloud Computing Service Models (SaaS, PaaS, and IaaS) from amazon.com. Slashdot welcomes readers' book reviews (sci-fi included) -- to see your own review here, read the book review guidelines, then visit the submission page. If you'd like to see what books we have available from our review library please let us know.

75 comments

  1. Hey, you, get off of my cloud by trevc · · Score: 0

    I live on an apartment An the ninety-ninth floor of my block And I sit at home lookin' out the window Imaginin' the world has stopped

    1. Re:Hey, you, get off of my cloud by Anonymous Coward · · Score: 0

      I love the Who!

    2. Re:Hey, you, get off of my cloud by yagu · · Score: 1

      and, maybe the Rolling Stones?

    3. Re:Hey, you, get off of my cloud by Anonymous Coward · · Score: 0

      now I can't get 99 Luftballons out of my head!!!!

      https://www.youtube.com/watch?v=9CnDvtwYn6I

  2. WWBHD? by Anonymous Coward · · Score: 0, Funny

    What would Bennett Haselton do?

    1. Re:WWBHD? by Anonymous Coward · · Score: 0

      I had to look that one up

      http://en.wikipedia.org/wiki/Bennett_Haselton

      Bennett Haselton (born November 20, 1978) is the American founder of Circumventor.com and Peacefire.org, two US-based websites dedicated to combating Internet censorship. Peacefire.org is focused on documenting flaws in commercial Internet blocking programs. Circumventor.com is dedicated to distributing anti-censorship tools to users in countries such as China and Iran, and as of 2011 has over 3 million subscribers through distribution channels including email and Facebook pages.[1]

      What is the connection bet him and the cloud?

    2. Re:WWBHD? by Anonymous Coward · · Score: 0

      Lurk moar.

    3. Re:WWBHD? by oldmac31310 · · Score: 1

      whoosh

      --
      http://www.acetonestudio.com
    4. Re:WWBHD? by Anonymous Coward · · Score: 0

      Lurk moar

  3. A headline that makes my glad to have by Anonymous Coward · · Score: 0

    the "Cloud to Butt" add-on.

    1. Re:A headline that makes my glad to have by dbraden · · Score: 1

      I love that add-on because I keep forgetting I have it installed, then, out of the blue, BAM!, a sentence no longer makes sense but is much more fun: "Hospitals now delivering babies in my butt, film at 11!".

    2. Re:A headline that makes my glad to have by Anonymous Coward · · Score: 0

      u r just a loudmouth...

      why don't u add content/value to the conversation.

      just stop dragging me down.

  4. One simple question I wish were answered... by mlts · · Score: 3, Interesting

    How would a cloud provider assure customers that their data will remain secure if they go bankrupt or just quit the business?

    As of now, if a provider tanks, the servers go to the auction house, and in theory, are blanked. However, in reality, there is no assurance of that, and the buyer will get all data stored free and clear. If they wanted to do a multi-terabyte torrent of a failed bank's account and transaction data, they can, and nothing legally could stop them.

    1. Re:One simple question I wish were answered... by Anonymous Coward · · Score: 0

      Any legitimate bank is hosting their own cloud.

    2. Re:One simple question I wish were answered... by toonces33 · · Score: 2

      There is also the question of how good a job they do with encrypting the data. Who at the cloud company would have the ability to decrypt the data? Are there regular security audits by an outside party who can affirm that the things the cloud company claims are in fact accurate?

      It gets even more complicated for enterprise users. What happens when an employee leaves the company? How is access controlled to prevent continued access? What about data that you might possess that you might have received under an NDA? How is this controlled so that this information cannot leak to outsiders?

      To me, cloud is all smoke and mirrors. Most cloud providers are really targeting consumers by offering a free service so that they can mine data and deliver more advertisements. The old saying is that if you aren't paying for the service, then *you* are the product. If you are cool with all of this, then go at it.

    3. Re:One simple question I wish were answered... by Anonymous Coward · · Score: 0

      Douglas Adams provided the answer to this in his book "Mostly Harmless", paraphrased like this -

      "We won't go bankrupt."

    4. Re:One simple question I wish were answered... by bernz · · Score: 4, Informative

      "There is also the question of how good a job they do with encrypting the data."

      Most let you manage your own keys. So as long as you have a reasonable key management, it's up to YOU, not the provider.

      "Are there regular security audits by an outside party who can affirm that the things the cloud company claims are in fact accurate?"

      For the big players, yes. http://aws.amazon.com/complian.... Also "AWS has achieved ISO 27001 certification and has been validated as a Level 1 service provider under the Payment Card Industry (PCI) Data Security Standard (DSS). We undergo annual SOC 1 audits and have been successfully evaluated at the Moderate level for Federal government systems as well as DIACAP Level 2 for DoD systems."

      Every one of those compliances requires auditing.

      "What happens when an employee leaves the company? How is access controlled to prevent continued access?"

      You federate your enterprise IAM with your cloud provider. Most support some form of SAML or OAuth. ADFS (an MS product) supports such things easily. You terminate the employee in your normal system and their IAM account is terminated. Also, you don't give deep credentials to most people but rather wrap them in services. You then stash those credentials in a secret/key server.

      "To me, cloud is all smoke and mirrors."

      That is because you haven't done the required reading.

    5. Re:One simple question I wish were answered... by Anonymous Coward · · Score: 0

      I bought about 50 servers from a secured creditor for a tech company that went out of business. Among them where a few servers running mysql, with customer databases intact. The rest included a bunch of web application servers, a git server, etc. In mysql I had about 90 million names, addresses, phone numbers, email addresses, birthdays, user names and passwords ( stored plain text ). No credit card numbers, but enough data to do some bad things with.

      I can assure you... no matter what a provider says will happen to customer data probably won't really happen when all the engineers stop getting paid.

      There ought to be consumer protections for all this... perhaps regulation that requires all businesses that collect personally identifiable information buy some type of insurance that covers secure destruction of that data if they go out of business, after a customer cancels, or various other qualifying actions that warrant destruction of customer data. Maybe more efficient might be to roll it into the bankruptcy itself as one of the first people to get paid, a service to delete data.

    6. Re:One simple question I wish were answered... by jeffmeden · · Score: 2

      How would a cloud provider assure customers that their data will remain secure if they go bankrupt or just quit the business?

      As of now, if a provider tanks, the servers go to the auction house, and in theory, are blanked. However, in reality, there is no assurance of that, and the buyer will get all data stored free and clear. If they wanted to do a multi-terabyte torrent of a failed bank's account and transaction data, they can, and nothing legally could stop them.

      Like, a contract to escrow the cost of the wiping and/or returning of all relevant hardware to the original owner? There are plenty of precedents in contract law to mitigate risk in the case of bankruptcy. Just because you can't think of them doesn't mean they aren't there.

    7. Re:One simple question I wish were answered... by mlts · · Score: 1

      I don't know a single cloud provider that would provide that contract. In other lines of work, there would be a third party escrow company. However, with a cloud provider, since decryption would be needed, the only way to provide any assurance is to have some backend appliances that do encryption and are rented, with a paid deposit that once the rental ceases, all keys are wiped. That way, a bankrupt provider would have all their servers sold, but the encryption appliances would be owned by another party. Of course, this may not mean much as it might be a fight wresting the leased items from the bankruptcy trustee, but in theory, it helps put at least a layer in place of protection.

      However, I don't know any cloud provider who would spend the time and effort to do this, just because the current system of assuring people that "passwords", "encryption", and "firewalls" is good enough.

    8. Re:One simple question I wish were answered... by Anonymous Coward · · Score: 0

      "Most let you manage your own keys. So as long as you have a reasonable key management, it's up to YOU, not the provider."

      If I'm running your OS in a hyper-visor, I can pause the VM and dump the memory. Then I've got your key because the OS loads the key into memory.

      Your provider can see your data in the clear. End of Story. Physical hardware is the be's all end's all.

    9. Re:One simple question I wish were answered... by benrothke · · Score: 1

      That’s a major question and one that every firm needs to address before using the cloud.

      There are safeguards you can put in place. You can back-up all cloud data as a start.

      There are a lot of articles on the topic. Check this one out as a start: http://spendmatters.com/2013/1...

    10. Re:One simple question I wish were answered... by lgw · · Score: 2

      If I'm running your OS in a hyper-visor, I can pause the VM and dump the memory. Then I've got your key because the OS loads the key into memory.

      Your provider can see your data in the clear. End of Story. Physical hardware is the be's all end's all.

      Some things are true across all the big players (I don't know about the government-audited services; I can only imaging there's even more tracking).

      If you're running the service, you don't have access to the datacenters, and likely don't even have access to the location of the data centers (the big players all keep exact datacenter locations somewhat secret - they have addresses, but the addresses don't mean much). If you work at the data center, you don't know what any given server is doing. So you don't really have physical access to the hardware in a useful way.

      Further, everything is logged and audited like crazy - not so much for stuff like PCI compliance, but for troubleshooting. If a server falls in the woods, a whole team will hear. I'm sure everyone has tools to let you remote into any given hypervisor, but I'd be quite surprised if you could do so without a heck of an auditing trail.

      It's not quite there for banking, but for most normal business, chances are there's more safety against a bad employee of MS Google, or Amazon than there is protecting you from your own IT staff locally.

      --
      Socialism: a lie told by totalitarians and believed by fools.
    11. Re:One simple question I wish were answered... by Anonymous Coward · · Score: 0

      u gots any evidene for your big talk?

      the pci board certified 'parts' of amazon.

      you take then and build your merchant account from there.

      plenty of merchants are pci certified in the amazon cloud.

    12. Re:One simple question I wish were answered... by Anonymous Coward · · Score: 0

      what about illegitimate bank?

    13. Re:One simple question I wish were answered... by jeffmeden · · Score: 1

      I don't know a single cloud provider that would provide that contract. In other lines of work, there would be a third party escrow company. However, with a cloud provider, since decryption would be needed, the only way to provide any assurance is to have some backend appliances that do encryption and are rented, with a paid deposit that once the rental ceases, all keys are wiped. That way, a bankrupt provider would have all their servers sold, but the encryption appliances would be owned by another party. Of course, this may not mean much as it might be a fight wresting the leased items from the bankruptcy trustee, but in theory, it helps put at least a layer in place of protection.

      However, I don't know any cloud provider who would spend the time and effort to do this, just because the current system of assuring people that "passwords", "encryption", and "firewalls" is good enough.

      If you don't care that the data is "gone for good" then a split encryption system is not needed, just a thorough erasure system (which is where an escrowed sum comes into play, to cover the cost of a third party service performing on-site wiping of all hard drives with customer data in the event of bankruptcy). I also do not know of a single cloud provider that does this today, the cost difference at scale of a cloud solution vs a managed hosting solution is not that great, so a company with truly invaluable data will choose the latter and retain all control. Hopefully one or more all-cloud platforms will come forward with solutions like this in the future.

  5. If you're not using Cloud to Butt by Mirage · · Score: 1

    Then you have yet to unlock the full hilarity potential of the internet...

    https://chrome.google.com/webs...

    1. Re:If you're not using Cloud to Butt by Anonymous Coward · · Score: 0

      Did you install the calvin and hobbes add-on? :)

  6. Sounds like a good read by riis138 · · Score: 1

    Looks like a good read! I am curious if there is any information pertaining to the acceptable use of the cloud in unique IT environments such as healthcare.

    --
    Somewhere, something incredible is waiting to be known. -Carl Sagan
    1. Re:Sounds like a good read by benrothke · · Score: 1

      The book doesn’t deal with acceptable use per se, as much of acceptable use is determined by the specific user of the cloud.

      As I wrote about “almost any security regulation or standard can be met in the cloud. As none of the regulations and standard dictates where the data must specifically reside”.

      So if you define what the with acceptable use is and build that into your cloud policy and contract, that would be acceptable.

  7. Words by ChefJeff789 · · Score: 0

    "Architecting?" Is that really a word? Suposebly so... Irregardless, this looks like a good read.

    1. Re:Words by OakDragon · · Score: 1

      They're verbing again.

    2. Re:Words by Anonymous Coward · · Score: 0

      in english...anything can become a word...get off it!

  8. "the cloud" is not a free service by Chirs · · Score: 1

    Most providers of "cloud" services are *not* free. You pay for time, workload, network, storage, etc.

    In IaaS (infrastructure as a service) you're basically just renting time/space/bandwidth on someone else's equipment.

    1. Re:"the cloud" is not a free service by Anonymous Coward · · Score: 0

      no one ever said the cloud was free.

    2. Re:"the cloud" is not a free service by Anonymous Coward · · Score: 0

      Sure there are parts of the cloud that is free.much of it is via fermium services.
      If you want enterprise grade cloud services, then it will cost a lotno one thinks it won’t.

  9. Architecting, "a software", orientate, et al by jabberw0k · · Score: 2

    I have an information for you, that while some spend time architecting, others designerize. You'll have to acclimatizate yourself to how folks vocalizate now. Here, drink a water. (Sigh)

  10. "Architecting" ??? wtf...? by RobotRunAmok · · Score: 2

    The reviewer does not indicate if the book is written in English, which is relevant because the title clearly is not.

    1. Re: "Architecting" ??? wtf...? by Finallyjoined!!! · · Score: 1

      I'm with you on this point, "architecting" is an offence to the English language. In fact /. is highlighting the word as incorrect in the bloody editor.

      --
      If I had an Ass, I'd call it Fanny Bottom, then I could slap my Ass; Fanny Bottom, on the Arse.
    2. Re: "Architecting" ??? wtf...? by benrothke · · Score: 1

      A search of www.merriam-webster.com returns: the word you've entered isn't in the dictionary. So you are correct, this is not an official English word.

      But its de facto use is seen at:
      http://gapp.usc.edu/graduate-p...
      http://aws.amazon.com/training...
      http://www.cs.berkeley.edu/~al...

      Lookif selfie can be a word, why can’t we let architecting in?

    3. Re: "Architecting" ??? wtf...? by RobotRunAmok · · Score: 2

      >>Lookif selfie can be a word, why can’t we let architecting in?

      Because "selfie" fills a legitimate and objective need, filling a void created by an advancing technology and culture, neatly and succintly describing a "photograph of someone taken by that same someone, intended primarily for social media."

      "Architecting" is superfluous, already synonymous with the shorter and more familiar "building" and "designing," and it contains the pompous subtext of equating the skills and efforts of an architect with those of code-monkeys and gannt-jockeys.

  11. Jennifer Lawrence "knows what the limits" are by Anonymous Coward · · Score: 0

    So maybe Jennifer Lawrence should write a book, because she "knows what the limits of the cloud are" too!

  12. a solution in search of a problem by Simonetta · · Score: 1

    Until such time that the tech community of the world can and will effectively deal with (i.e. either convince to stop misbehaving or just kill 'em) all the brilliant psychopathic programmers in their mist that create malware and viruses that defraud millions of people, then it is plain madness and criminal negligence to encourage people to entrust their data to some unknown and unmonitored external entity such as the 'cloud'.

    Until that time, safe and productive cloud computing is just a fantasy. It's a solution in search of problem. Avoid it.

    1. Re:a solution in search of a problem by benrothke · · Score: 1

      :::entrust their data to some unknown and unmonitored external entity such as the 'cloud'.

      Do you really consider Amazon Web Services unknown and unmonitored?

      The granularity of what they can report on shows their monitoring capabilities are quite sophisticated. :::Until that time, safe and productive cloud computing is just a fantasy. It's a solution in search of problem. Avoid it.

      I think the facts speak for themselves. There are thousands of examples of safe and productive instances of cloud computing,

      But there are also tens of thousands of examples of insecure and unproductive instances of cloud computing,

  13. Standards Standards Standards by Tablizer · · Score: 1

    The main bottleneck of "the cloud" is standards. Unless organizations can easily swap vendors and make their own (optional) backups without hassles, the "cloud" will continue to be a fractured, risky, and messy place.

    The problem is that there are no incentives to standardize because service companies don't want the market to become a commodity because commoditization usually eats their profits (at least in the industrialized world) just like it did with PC's. They want you to be locked in to Their Way so that you can't leave for competitors.

    I don't know how to solve that problem. Telling big players to sacrifice profits will go over like a lead balloon.

    Standards would include configuration portals, directory structures, and "stack version sets" that combine application-language + database + web-server versions etc. into a single stack version number for cross-comparison shopping. Shopping based on differing versions of each component is not realistic because it's not realistic for a cloud-provider to test and support kajillion version combo's.

    Either that, "the cloud" could support virtual servers such that one can take their virtual server elsewhere when needed, but then "the cloud" is mostly just offering equipment hosting rather than "cloud services", which gets away from the initial concept. It's a chip cloud.

    1. Re:Standards Standards Standards by Xaedalus · · Score: 1

      Mod this up please--this statement right here: "The problem is that there are no incentives to standardize because service companies don't want the market to become a commodity because commoditization usually eats their profits (at least in the industrialized world) just like it did with PC's. They want you to be locked in to Their Way so that you can't leave for competitors." is responsible for most of the competing standards and general "upgrade or die/walled garden" clusterfucks in Tech.

      --
      Here's to hot beer, cold women, and Glaswegian kisses for all.
    2. Re:Standards Standards Standards by benrothke · · Score: 1

      Excellent point.

      Lack of standardization is one of the biggest problems facing cloud computing.

      It’s inevitable a few standards will eventually emerge. But until then, there’s a lot of uncertainty.

  14. Best part, it's free by Anonymous Coward · · Score: 0

    here https://kickass.to/architecting-the-cloud-design-decisions-for-cloud-computing-service-models-pdf-t8931864.html

  15. Yea no... by Charliemopps · · Score: 5, Interesting

    I maintain several cloud based applications. STAY AWAY.

    There is no time when "The Cloud" is a good idea. In fact, I'd say it's even worse than "Closed source" software. Because no you not only lose access to the application, you lose access to your data as well. And trust me, the cloud service provider will use that access against you. I have yet to see a contract negotiation with a cloud service provider that didn't eventually devolve into the Cloud threatening to cut off access to the data with no option to export if the user didn't agree to unfavorable terms. This doesn't happen "Sometimes" this happens every time... with multiple vendors. They are very friendly and the rates are cheap at first, but after you've been with them for a few years... Then they start turning the screws. Unless you control "The cloud" yourself, stay very very far away.

    1. Re:Yea no... by swillden · · Score: 1

      the Cloud threatening to cut off access to the data with no option to export if the user didn't agree to unfavorable terms

      That's a *very* strong assertion. In fact, it seems like the sort of thing that the courts would stop, hard. It's essentially extortion. It's absolutely the sort of thing that would send customers screaming... and discouraging everyone around them. I find it hard to believe that any reputable cloud service provider would dare risk their business by doing something like that.

      --
      Note to ACs: I usually delete AC replies without reading them. If you want to talk to me, log in.
    2. Re:Yea no... by Anonymous Coward · · Score: 0

      openstack

    3. Re:Yea no... by WaffleMonster · · Score: 1

      That's a *very* strong assertion. In fact, it seems like the sort of thing that the courts would stop, hard. It's essentially extortion. It's absolutely the sort of thing that would send customers screaming... and discouraging everyone around them. I find it hard to believe that any reputable cloud service provider would dare risk their business by doing something like that.

      Lost track of number of people who have called in with issues trying to extract data from various providers.

      Either they claim they can't do it, provider cut them off and they are screwed or provider feels it necessary to charge a massive fee to extract customers data. Another fine twist is allowing access to data but not in a way it could practically be extracted.

      Guessing some of these are cases of you owe us money and we're leveraging whatever we can to force you to pay yet some have specifically mentioned rate hikes and cumulative costs as reason for decision to bail.

      You can parse this out till your blue in the face draw whatever lines and labels you think demarcate acceptable behavior from extortion.

      Bottom line if you don't insist on full and meaningful access to full datasets your essentially begging the provider to take advantage of you. Expecting they would not seek to maximally leverage their position is not a serious option.

    4. Re:Yea no... by swillden · · Score: 1

      Expecting they would not seek to maximally leverage their position is not a serious option.

      Well, as a Googler, I definitely do not expect Google to do anything remotely like this with their cloud offerings. Heck, Google is careful to ensure there are mechanisms for users of their free services to take their data out, and holding someone's data hostage for more money or whatever just runs counter to everything the culture holds important. I don't think Amazon would do it either. Smaller players... I suppose it's possible, but it still seems like bad business on their part.

      --
      Note to ACs: I usually delete AC replies without reading them. If you want to talk to me, log in.
  16. Re:what happens by Anonymous Coward · · Score: 0

    The SANS Internet Storm Center was built just for that - https://isc.sans.edu/

  17. More details please... by h4ck7h3p14n37 · · Score: 1

    Will an experienced admin (20+ years *NIX) that's currently using RackSpace (dedicated and cloud) learn anything from this book? It's so hard to tell from this review.

    I've been using RackSpace for a few months now and I find that it's not much different than hosting the servers myself except I don't have to deal with things like router/switch configuration and hardware replacements.

    1. Re:More details please... by benrothke · · Score: 1

      :::::Will an experienced admin (20+ years *NIX) that's currently using RackSpace (dedicated and cloud) learn anything from this book? It's so hard to tell from this review.

      I think so. :::I've been using RackSpace for a few months now and I find that it's not much different than hosting the servers myself except I don't have to deal with things like router/switch configuration and hardware replacements.

      From a hosting and sys admin perspective, it is not a radical difference.

      But from a cloud application perspective, there is a lot to learn.

  18. Either by Fwipp · · Score: 1

    "Most books about cloud computing are either extremely high-level quasi-marketing tomes about the myriad benefits of the cloud without any understanding of how to practically implement the technology under discussion. "

    Or....?

    You didn't even get your first sentence right, I'm not going to read about the rest of your thoughts.

    1. Re:Either by benrothke · · Score: 1

      You are correct about my not getting the first sentence right.

      With that, don’t let defective sentence stop you from reading a very good book.

  19. Nonsense by Anonymous Coward · · Score: 0

    Listen, I'm a network engineer with over 30 years of experience.

    The "cloud" is not a new idea. It's a new buzzword for a very OLD idea. It simply means storing your data on somebody else's servers all under their control.

    Its fine for individuals that travel all over the world and don't have access to servers, but if your in a large corporation or a government agency, then you already have servers, already have internet access, and so you have everything you need to establish your own "cloud" at no additional expense. WHY would you pay some 3rd party to host your data, where they can get to it and do who knows what with it?

    1. Re:Nonsense by synaptic · · Score: 1

      Because it's cheaper.

  20. The cloud by Ol+Olsoc · · Score: 1
    First and foremost, the cloud is not in any way shape or form secure.Any thing you put there is there to share.

    Second, it is a buzzword that is used to get gullible suits to think that they can get rid of their IT depatments.

    It's not like all this hasn't been proven already.

    --
    The shepherds did so well protecting the flock that the sheep no longer believed that wolves existed.
    1. Re:The cloud by benrothke · · Score: 1

      ::::First and foremost, the cloud is not in any way shape or form secure.Any thing you put there is there to share.

      It’s as secure as you want to make it.

      Many firms that take security seriously use the cloud. :::::Second, it is a buzzword that is used to get gullible suits to think that they can get rid of their IT depatments.

      You do have a good point there.

  21. The Cloud Song by Anonymous Coward · · Score: 0

    The Cloud Song by Cynthia Sherwood
    (Sing to the tune of “The Farmer in the Dell”)
    The puffy, flat, white clouds
    We call them cumulus
    Hi-ho-a-cloud-e-oh
    The puffy, flat, white clouds.
    The feathery, thin white clouds
    Are cirrus
    high in the sky
    Hi-ho-a-cloud-e-oh
    The feathery, thin white clouds.
    The gray and foggy clouds
    Are stratus
    low in the sky
    Hi-ho-a-cloud-e-oh
    The gray and foggy clouds.
    The dark and stormy clouds
    Watch out for nimbus
    rain
    Hi-ho-a-cloud-e-oh
    The dark and stormy clouds.

    Get this at Super Teacher Worksheets - www.superteacherworksheets.com

  22. Naming by StripedCow · · Score: 1

    Why don't we just call "the cloud" by the name we used for it decades ago?
    "Mainframe", that is.

    --
    If Pandora's box is destined to be opened, *I* want to be the one to open it.
  23. Real world example .. by lippydude · · Score: 1

    Is there a fully described real world example, we all could take a look at before committing ourselves to the 'Cloud'?

    1. Re:Real world example .. by benrothke · · Score: 1

      The use of Netflix on AWS is well documented.

      Start here: http://aws.amazon.com/solution...

    2. Re:Real world example .. by lippydude · · Score: 1

      "The use of Netflix on AWS is well documented. Start here: AWS Case Study: Netflix"

      I was hoping for some diagrams and detailed textual analysis. I read somewhere that Netflix originality went with the 'Cloud' but quality-of-service was so poor, they had to go out and build their own content delivery backend.

    3. Re:Real world example .. by benrothke · · Score: 1

      If you start a dialogue with a sales rep at AWS, they have a log of diagrams and detailed technical material they will share.

      You can also look around at http://aws.amazon.com/document..., as there is a lot of good technical material there.

  24. Sorry, corrected link by Anonymous Coward · · Score: 0
  25. All cloud naysayers are by definition insane by Anonymous Coward · · Score: 0

    All cloud naysayers are by their very definition insane.
    Ever hear of Amazon? 100% cloud. Over $50B in revenue.
    What about salesforce.com100% cloud. Over $20B in revenue.

    If you don’t believe in the cloudyou are a delusional person.

  26. so what by Anonymous Coward · · Score: 0

    who cares about the grammar....like u word for the university library?

    if u r tech...grammar is a has been.

  27. The Cloud Song by Anonymous Coward · · Score: 0

    this is a take off of lucy in the cloud skie with diamonds!

    but the beathles didn't have a saas model to write songs...so they just were best!

    Pete best!

  28. Hey, you, get off of my cloud by Anonymous Coward · · Score: 0

    95% of these comments here are from people who know ZERO about the cloud.

    just loudmouths and jokes who want to yelp.