Since coming out with VMware vSphere and Virtual Infrastructure Security: Securing the Virtual Environment, I have continued to consider aspects of Digital Forensics and how current methodologies would be impacted by the cloud. My use case for this is 40,000 VMs with 512 Servers and roughly 1000 tenants. What I would consider a medium size fully functioning cloud built upon virtualization technology where the environment is agile. The cloud would furthermore contain roughly 64TBs of disk across multiple storage technologies and 48TBs of memory. Now if you do not think this exists today, you were not at VMworld 2009, where such a monster was the datacenter for the entire show and existed just as you came down the escalators to the keynote session.
TVP Tag Archives
40,000 Firewalls! Help Please!?
While at VMworld I was suddenly hit with a blast of heat generated by the 40,000 VMs running within the VMworld Datacenter of 150 Cisco UCS blades or so. This got me thinking about how would VMsafe fit into this environment and therefore about real virtualization security within the massive virtual machine possible within a multi-tenant cloud environment. If you use VMsafe within this environment there would be at least 40,000 VMsafe firewalls. If it was expanded to the full load of virtual NICs possible per VM there could be upwards of 400,000 virtual firewalls possible! At this point my head started to spin! I asked this same question on the Virtualization Security Podcast, which I host, and the panel was equally impressed with the numbers. So what is the solution?
vCloud Express
The launch of vCloud Express came with little detail on its features and functions with many confused as to what type of solution it was. Is it a product, a service, a program or a certification?
KVM in RHEL 5.4 – Red Hat leaps out of the virtual shadows.
The Linux Kernel Virtual Machine (KVM) has been available for some time in, for example, Ubuntu 8.0.4 LTS (Released April 2008). KVM is widely used and stable and it is high time that Red Hat who acquired KVM when they purchased Qumranet in September 2008, started to move their customers onto it – at least to remove the uncertainty in the customer base.
VMworld 2009 San Francisco
TVP was at VMworld 2009 in San Francisco. While there we we published a running dialog on a forum that has since disappeared. Look for our twitter streams at a future VMworld!
News: VMWorld 2009 Sunday Night Extravaganza
Are you heading to VMWorld 2009? If so, you don’t want to miss a great community-based event the night before things kick off on Monday. Please make sure that you RSVP for the event.