CC-4-1
CC-4-1
Introduction to Cloud
Computing
Lecture 4A
Danyal Farhat
FAST School of Computing
NUCES Lahore
Fundamental Concepts and
Models – Part 1
Lecture’s Agenda
• Roles and Boundaries
• Cloud Characteristics
Roles
Cloud Provider:
• Cloud Provider is the organization that provides cloud-based IT
resources.
• Cloud providers own the IT resources that are made available for
lease by cloud consumers.
• Some cloud providers also “resell” IT resources leased from other
cloud providers.
Example: MS Azure Stack deployed on PTCL servers.
Roles (Cont.)
Cloud Consumer:
• A cloud consumer is an organization (or a human) that has a formal
contract or arrangement with a cloud provider to use IT resources
made available by the cloud provider.
Roles (Cont.)
Cloud Service Owner:
• The person or organization that legally owns a cloud service is
called a cloud service owner.
• The cloud service owner can be the cloud consumer, or the cloud
provider that owns the cloud within which the cloud service
resides.
• For example, either the cloud consumer of Cloud X or the cloud
provider of Cloud X could own Cloud Service A.
• A cloud service owner is not called a cloud resource owner because
the cloud service owner role only applies to cloud services (which
are externally accessible IT resources that reside in a cloud).
Roles (Cont.)
Cloud Service Owner:
• Tower technologies web server deployed in a VM that resides in
PTCL cloud.
Roles (Cont.)
Cloud Service Owner:
• AWS EC2 Instance available as a service in AWS cloud for the
consumers.
Roles (Cont.)
Cloud Resource Administrator:
• A cloud resource administrator is the person or organization
responsible for administering a cloud-based IT resource (including
cloud services).
• The cloud resource administrator can belong to cloud consumer or
cloud provider of the cloud within which the cloud service resides.
• The cloud resource administrator can also belong to a third-party
organization contracted to administer the cloud based IT resource.
Example: NUCES is using an AWS service administered by Systems Limited.
Roles (Cont.)
Cloud Resource Administrator:
Roles (Cont.)
Cloud Resource Administrator:
Roles (Cont.)
Cloud Auditor:
• A third-party (often accredited) that conducts independent
assessments of cloud environments assumes the role of the cloud
auditor.
• The responsibilities associated with this role include the evaluation
of security controls, privacy impacts, and performance.
• The main purpose of the cloud auditor role is to provide an
unbiased assessment (and possible endorsement) of a cloud
environment to help strengthen the trust relationship between
cloud consumers and cloud providers.
Roles (Cont.)
Cloud Broker:
• This role is assumed by a party that assumes the responsibility of
managing and negotiating the usage of cloud services between
cloud consumers and cloud providers.
• Mediation services provided by cloud brokers include service
intermediation, aggregation, and arbitrage.
• Can be a person from cloud provider’s marketing or business
department.
• Can be a third party organization providing consulting services.
Roles (Cont.)
Cloud Carrier:
• The party responsible for providing the wire-level connectivity
between cloud consumers and cloud providers assumes the role of
the cloud carrier.
• This role is normally assumed by network and telecommunication
providers.
• Example: VU using PTCL cloud using two communication links.
Communication link from OneLink
Communication link from PTCL
Boundaries
Organizational Boundary:
• “An organizational boundary represents the physical perimeter that
surrounds a set of IT resources that are owned and governed by an
organization.”
• The organizational boundary does not represent the boundary of
an actual organization, only an organizational set of IT assets and IT
resources.
• Clouds have their own an organizational boundary.
Boundaries (Cont.)
Organizational Boundary:
Boundaries (Cont.)
Trust Boundary:
• When an organization assumes the role of cloud consumer to
access cloud-based IT resources, it needs to extend its trust beyond
the physical boundary of the organization to include parts of the
cloud environment.
• “A trust boundary is a logical perimeter that spans beyond physical
boundaries to represent the extent to which IT resources are
trusted.”
• When analyzing cloud environments, the trust boundary is most
frequently associated with the trust issued by the organization
acting as the cloud consumer.
Boundaries (Cont.)
Trust Boundary:
Roles and Boundaries – Key Points
• Common roles associated with cloud-based interaction and
relationships include the cloud provider, cloud consumer, cloud
service owner, and cloud resource administrator.
• Cloud Characteristics
Cloud Characteristics
• On-demand usage
• Ubiquitous access
• Multitenancy (and resource pooling)
• Elasticity
• Measured usage
• Resiliency (not included in NIST’s definition)
Cloud Characteristics (Cont.)
On-demand Usage:
• A cloud consumer can unilaterally access cloud-based IT resources
giving the cloud consumer the freedom to self-provision IT
resources.
• Cloud providers with vast IT resources can offer the greatest range
of elasticity.
Cloud Characteristics (Cont.)
Measured Usage:
• The measured usage characteristic represents the ability of a cloud
platform to keep track of the usage of its IT resources, primarily by
cloud consumers.