How to Build a Hybrid Cloud Computing Strategy

Forrester's James Staten explains why a hybrid cloud computing strategy -- one that blends elements of public, internal and hosted cloud computing -- may be smartest. He also has four tips for IT leaders on building a secure hybrid cloud plan.

By James Staten
Wed, May 27, 2009

CIO — Cloud infrastructures are a highly efficient evolution of server virtualization and the scale-out deployment model—but companies should note this evolutionary path isn't a fit for all applications. That being said, cloud computing platforms are more than just shared, multi-tenant infrastructures on the public Internet. Three infrastructure-as-a-service cloud deployment options are available to enterprises today, each with unique characteristics and economics that can help optimize application and service deployment objectives:

1. Public clouds. These deliver the best economies of scale, but their shared infrastructure model can limit configuration, security, and SLA specificity, making them a less-than-ideal fit for services using sensitive data that is subject to compliancy or safe harbor regulations.

2. Internal clouds. These sit within your data center and behind company-built protections, but they typically have modest economies of scale due to funding limitations and tend to be less automated.

3. Hosted clouds. Hosted clouds run at a service provider on resources that are walled off with enterprise-class protections but managed as a pool. These fall between the first two options, providing more custom protections like an internal cloud but with the greater economies of scale of being a service from a cloud provider.

Enterprises should build a strategy that leverages all three options via virtual private cloud technologies, which will result in a hybrid cloud strategy that optimizes business service deployment efficiencies.

Virtual private cloud is a technique for extending your organizational trust boundaries over a series of resources regardless of their deployment. It builds off the basic concept of a virtual private network (VPN), but is a more robust networking concept that lets you define and control addressing, topology, protocols, and encrypted communications for instances deployed to cloud computing platforms.

Virtual private cloud technology defines the network security boundaries for the business service and the locations (types of deployments) where elements of these services can be placed or moved. These solutions can be enabled by two types of offerings: 1) those that focus on the network security layer; and 2) those that abstract the application tier across cloud deployment boundaries.

The evolution of cloud computing and virtual private cloud technologies add to the ever widening portfolio of infrastructure deployment options that help enterprises match the infrastructure to the needs of the application more efficiently and cost effectively than has been possible before. Here are a few tips to ensure the integration between these deployment infrastructures deliver the greatest value:

1. View cloud platforms as a portfolio of deployment options.

Look at creating a portfolio of cloud resources, composed of public, internal, and hosted cloud deployments linked together with traditional deployments via virtual private cloud. Look for ways to optimize—and automate—the deployment and management of your business services where most appropriate based on the application requirements and business/IT policies. You definitely want to learn to walk in cloud environments before going hog wild and spreading services across lots of cloud deployments but, as you gain experience, begin to craft a strategy that streamlines deployment expenses in much the same way that you optimize your Web site deployment. The ultimate goal is to speed IT service delivery while reducing costs.

2. Partner with enterprise architects to get the deployment model right.

Your Web infrastructure likely spans your data center, a content delivery network, and a hosting provider—each chosen for what they do best and connected to deliver optimum performance and customer experience. Approach cloud computing in the same way. Work with your enterprise architects to determine what types and portions of applications and what data sets are the best fit with the specific cloud deployment options discussed here and create joint policies to guide appropriate use as new applications are built or readied for the cloud.

3. Build a security model and policy with your CISO.

Work with your security and risk management professionals to understand what protections must be taken for what types of data so you can determine where applications can safely be deployed. Create and publish this as a policy for all application development professionals to help guide their use of cloud resources. Also, use this guide to set the SLAs for your private cloud, whether internal or hosted.

4. Ask your hosting providers about their cloud plans.

You likely have relationships with one or more hosting providers today. Get an understanding of what cloud services they provide or plan to provide to you in the future. Determine if a hosted cloud is a possibility from these vendors, what degree of configurability is available, and if they can provide virtual private cloud services between your data center and their cloud offerings.

James Staten is a Principal Analyst at Forrester Research, advising IT Infrastructure & Operations professionals on the transformation of the server and data center into more efficient, business-focused ecosystems. He is an expert on cloud computing. To obtain free, related research from Forrester (registration required), please visit: www.forrester.com/ciodatacenter.

Follow everything from CIO.com on Twitter @CIOonline

The Vblock FastPath Desktop Virtualization Platform is a purpose-built solution that helps IT organizations to automate desktop and application management by enabling rapid deployment, reducing costs and improving security through centralization of the desktop environment.
Learn more about how an HP NonStop SQL compares to Oracle database solutions in handling critical business needs-all while providing the 24/7 availability, scalability, mixed workload handling and manageability today's enterprises demand.
This document is aimed at those looking at data center builds, upgrades, or consolidation. It provides an introduction to some of the new security challenges of such environments and provides recommendations for implementing security in next-generation data centers.
Brocade and McAfee have partnered on a portfolio of offerings that seamlessly blend network innovations and security management to address the challenges of both physical and virtual environments.
This editorial brief addresses the disconnect between security and operations teams and the need for IT operations teams to address security and risk management.
Network connectivity is more than just plumbing. Leading organizations today see high-performance network connectivity as a critical enabler of competitive advantage, and not just a way to cut expenses. Click here for exclusive survey findings from Comcast and IDG on why Ethernet/fiber is the smart choice for high-performance network connectivity.
Big Data-it has the potential of transforming a business. In the case of Klout, a social networking analytics site, big data is the heart of the business. Klout processes and analyzes billions of user data signals every day-from Facebook, Twitter, LinkedIn, blogs and more. How do they do it? Gain valuable insights from David Mariani, vice president of engineering for Klout.
Date: February 29, 2012
Time: 1:00 PM EST

Seasoned IT managers know from experience that in many cases the bulk of the cost of an IT solution is incurred after the sale. Issues can range from sizing and skill development, to committing significant resources installing, deploying, managing, and supporting a complex assortment of hardware, software, and networking.

With the Oracle Database Appliance, you can eliminate the time, risk, and costs often associated with building, implementing, and maintaining a high-availability solution for your users and customers. Plus it's based on Intel Xeon processors to ensure a high level of performance and scalability.

Attend this Webcast to discover how the Oracle Database Appliance can help you increase your ROI by:
* Reducing deployment time from weeks to hours
* Simplifying ongoing maintenance and support
* Benefitting from the highest levels of availability
This webinar will explain the key phases of virtualization maturity, outline the critical maturity challenges, and provide you with a step-by-step guide to building your virtualization maturity and maximizing your virtualization outcomes.
Continuous Availability Is Now Within Reach

You need to expand your database services to be available 24/7, while lowering your data center costs. A challenge? Not with Oracle. Now, there's a simple, reliable, affordable way to take advantage of the world's #1 database and the continuous availability it has to offer —the Oracle Database Appliance.

You can eliminate the time, risk, and costs normally associated with building a high-availability database solution for your users and customers. Attend this Webcast to discover how the Oracle Database Appliance can help you:

* Consolidate many small databases onto a single, reliable system
* Deploy and manage a clustered database system in hours, not weeks
* Benefit from single-vendor support

Learn about this affordable, highly available database system that can scale seamlessly as applications and data grow.
Today's workforce is truly mobile. At the office, from customer sites, even at home or in a hotel - their connectivity and application performance needs remain the same. But even though their requirements don't change, the challenges in meeting their expectations do.
Too much information can be just as limiting as too little information if users can't get what they want when they want it. Find out how the IT leaders at one of Canada's leading law firms, Fraser Milner Casgrain LLP, implemented Recommind's next-generation content delivery and search platform within their SharePoint portal to enable timely and effortless access to the information users need.
Newsletter Sign-Up »

Receive the latest news test, reviews and trends on your favorite technology topics

Choose a newsletter
  1. View all Newsletters | Privacy Policy
Resource Center