https://www.channelfutures.com/wp-content/themes/channelfutures_child/assets/images/logo/footer-new-logo.png
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Solutions Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
  • MSP 501
    • Back
    • 2023 MSP 501 Application
    • 2022 MSP 501 Rankings
    • 2022 NextGen 101 Rankings
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2023 Editorial Calendar
  • Awards
    • Back
    • 2022 MSP 501
    • Channel Influencers
    • Circle of Excellence
    • DE&I 101
    • Technology Advisor 101 (TA 101)
    • Channel Leaders Lists
  • Events
    • Back
    • 2023 Call for Speakers
    • CP Conference & Expo
    • MSP Summit
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
Channel Futures
  • NEWSLETTER
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Solutions Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
  • MSP 501
    • Back
    • 2023 MSP 501 Application
    • 2022 MSP 501 Rankings
    • 2022 NextGen 101 Rankings
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2023 Editorial Calendar
  • Awards
    • Back
    • 2022 MSP 501
    • Channel Influencers
    • Circle of Excellence
    • DE&I 101
    • Technology Advisor 101 (TA 101)
    • Channel Leaders Lists
  • Events
    • Back
    • 2023 Call for Speakers
    • CP Conference & Expo
    • MSP Summit
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
    • Newsletter
  • REGISTER
  • MSPs
  • VARs / SIs
  • Agents
  • Cloud Service Providers
  • Channel Partners Events
 Channel Futures

Security


Why Cloud Security Needs Visibility-as-a-Service

  • Written by WeathersfieldTM
  • May 18, 2017
Jeff Harris, VP Solutions Marketing of Ixia looks at how to solve the challenge of gaining visibility in public cloud environments to ensure security and compliance.

Whether you are a network administrator, security manager, or CIO, how would you feel if you were unable to see and manage major parts of your network environment? This is the problem that organizations migrating their applications and workloads to public clouds are wrestling with today. Because public cloud infrastructure is owned by the provider, your organization’s access to application and network data is typically limited. 

Public clouds need to handle hyperscale deployments, resource pooling, and continuous configuration changes based on demand, which brings unique challenges to ensuring visibility, security, and compliance. In February 2017, Ixia surveyed over 220 senior IT staff at enterprise organizations on their cloud security concerns, and 76 percent of respondents were ‘very concerned’ or ‘concerned’ about security in their cloud environment. The top security concern with cloud adoption was ‘loss of control over network data’ (56 percent) and being able to achieve full visibility across their networks (47 percent). 

The limitation is in traditional visibility architectures. They cannot deliver the agility and insight required to ensure proper operation and security of cloud workloads. On-premises solutions depend on physical hardware, taps, and the fact that the organization’s network deployment is unlikely to grow or shrink dramatically overnight. In addition, while virtualization deployments enable more rapid changes than ever before, the physical server architecture does not fundamentally change. As a result, the same visibility architecture can be retained, with hardware shifting to software with virtual taps and virtual packet brokers.

Clouds obscure visibility

But this all changes with the move to the public cloud. The benefits that it offers – flexibility, agility, elasticity and rapid scaling both horizontally and vertically – present significant challenges in terms of gaining visibility and monitoring the performance and security of public cloud environments. There is a lack of independent application-level monitoring and analytics of workload behavior, and the tools offered by public cloud providers to monitor the performance of your environment do not include packet data, which is critical for network visibility. 

Without special tools to see into your providers’ data centers, your network and security teams are working blind, unable to diagnose problems or quickly remediate threats and attacks on critical business applications. 

But just tapping into cloud data can be dangerous, if not done thoughtfully. To support a distributed visibility architecture that can use the full power of the public cloud and deliver full visibility of server workloads, you face two primary limitations:

How to capture and filter traffic – In a conventional data center, physical network taps and network packet brokers can be inserted with full control over the network domain.  But in the public cloud, there is no way to insert physical devices.  In addition, control of the network domain is limited.

How to scale without bringing out too much, or too little, data – the public cloud is built to scale to meet peak demand.  As applications scale to meet demand, new instances are created.  As a result, your cloud-based network visibility solution needs to fully accommodate this scalability to be effective.

Visibility solutions that rely on a single, dedicated software agent to handle the inspection of packets can introduce a single point of failure, as well as limited scalability. So instead of adapting physical network visibility techniques to the cloud environment, what is really needed is a true, cloud-native visibility architecture. Further, this architecture needs to deploy simply without requiring complex configuration and adjustments by your IT team. Therefore, scalable cloud visibility needs to be implemented as Visibility-as-a-Service (VaaS). 

Seeing into the cloud

The first stage in building the VaaS architecture is creating an orchestration layer, accessible via a Software-as-a-Service (SaaS)-based web interface. Optimally, it would use a native-cloud service provider database, identity management, APIs, and other services. This means that the enterprise is no longer required to install or manage any part of the offering. It would implement similar to how a cloud storage provider would offer storage space, management, and maintenance for your files.

This orchestration layer would then connect to cloud-based sensors in the source instances, and to connectors in the various security and monitoring tools. The most efficient, scalable way to deploy these sensors and connectors is within containers, embedded in the same instances as your organization’s micro-service based workloads and tools. As they are embedded directly in the instances, the sensors filter for relevant visibility traffic at the applications’ source.  

Embedding sensors into the source instances is not just efficient, it delivers another key advantage: minimizing how much inter-cloud bandwidth is used.  This saves you money as only relevant data is sent to the tools. The sensor can communicate the cloud workload, such as database or web, to the orchestration layer. Using this metadata, your organization can associate tools to the different workload types, and create ‘groups’ that comprise the sensors and the relevant tools. 

As additional instances of a given service are spun up, these immediately cause the creation of additional sensors, which then connect to the relevant connectors in the security and monitoring tools. And, as these extra sensors are brought on-line within a group, the connectors to the tools are scaled automatically since they too reside within a scalable container environment. This delivers true cloud-native elasticity, with no need for manual intervention.

The ability to scale both the sensors and the connectors on demand, and to leverage cloud-native services, is critical to visibility-as-a-service – giving an OpEx-based consumption model for intelligent visibility which aligns to other SaaS services used by enterprises.  Simple, scalable cloud visibility results in better security and compliance, while still delivering the cost advantages of public cloud deployments. 

About the Author

Jeff Harris leads solutions marketing for Ixia’s security and visibility portfolio of products and capabilities. As a former product development leader of advanced networking, communications, and surveillance products for commercial and military applications, Jeff has a deep appreciation for security implications that occur in development and the importance of unobstructed visibility in operation. Jeff has led first to market product teams in personal area networks, mobile ad hoc networks as well as a wide range of microelectronics and advanced sensor systems.

Tags: Agents Cloud Service Providers MSPs VARs/SIs Cloud Security

Most Recent


  • Microsoft's Nicole Herskowitz
    ‘The Next Normal is Here’: Microsoft, Cisco, RingCentral Make the Case for Generative AI in Collaboration
    “Every decade or so a new technology emerges that is truly disruptive,” said RingCentral's president and COO.
  • Seattle
    Microsoft Job Cuts Hit Hundreds More Workers in Seattle Area
    In January, Microsoft initiated a plan to shed about 10,000 workers.
  • boxing gloves
    Channel Conflict, Controversy: Avaya Bankruptcy, Mass Layoffs, High-Profile Execs Depart
    There's always something to buzz about in the channel.
  • Cisco African American Partner Community Eyes Hiring, HBCU Opportunities
    Cisco is working with 14 Black-owned partner firms in a "high-touch" manner to invest in their growth.

Leave a comment Cancel reply

-or-

Log in with your Channel Futures account

Alternatively, post a comment by completing the form below:

Your email address will not be published. Required fields are marked *

Related Content

  • Conflict Boxing Gloves
    Channel Conflict, Controversy: SolarWinds Hack, Racism, Layoffs, Zoom-RingCentral
  • Paying ransomware
    Sophos: Avaddon Ransomware Becoming More Prominent, Aggressive
  • DevSecOps
    ServiceNow, Microsoft Set to Deliver Broad SecOps Integration
  • kicking down obstacles
    IBM, Microsoft ‘Helping Eliminate Obstacles’ for Developers

Upcoming Events

View all

Channel Partners Conference & Expo

May 1, 2023 - May 4, 2023

Channel Partners Europe

June 13, 2023 - June 14, 2023

Channel Futures Leadership Summit

October 30, 2023 - November 2, 2023

Galleries

View all

Channel Conflict, Controversy: Avaya Bankruptcy, Mass Layoffs, High-Profile Execs Depart

March 28, 2023

Cisco African American Partner Community Eyes Hiring, HBCU Opportunities

March 28, 2023

National Women’s History Month: Channel Women Recall ‘the Best Thing’

March 28, 2023

Industry Perspectives

View all

Why You Should Include Audiovisual Solutions in Your UC Services

March 28, 2023

Selling Your MSP: Strategic vs. Financial Buyers

March 22, 2023

10 Strategic Smart Enterprise Drivers for 2023

March 16, 2023

Webinars

View all

Give Customers the Power: How MSPs Can Leverage Cloud Choice

April 4, 2023

DE&I Dialogue: How the Right DE&I Initiatives Can Propel Your Business

April 5, 2023

Meet the 2023 Channel Futures Channel Influencers

April 13, 2023

White Papers

View all

6 UCaaS Reseller Challenges and How Real World Businesses Solved Them

February 1, 2023

Frost Radar: North American UCaaS Market, 2022

February 1, 2023

The Complete Guide to White-Label UCaaS for Reseller Success

February 1, 2023

Channel Futures TV

View all

Coffee with Craig and James Episode 121: Hewlett Packard Enterprise

Aryaka ‘Driving Value to the Channel Community’ with Throttle

March 24, 2023

Real-Life M&A: Advice for a Successful Channel Deal

March 13, 2023

Coffee with Craig and James Episode 120: Ronnell Richards

March 3, 2023

Twitter

ChannelFutures

“Every decade a new technology emerges that is truly disruptive.”-- #AI sentiments from @RingCentral @Microsoft… twitter.com/i/web/status/1…

March 29, 2023
ChannelFutures

Check out this edition of Channel Futures TV! Glen Lomond discusses @HitachiVantara's approach to as-a-service of… twitter.com/i/web/status/1…

March 28, 2023
ChannelFutures

.@Microsoft #layoffs target more workers in Seattle area. dlvr.it/SldRzg https://t.co/DGtDBBU4m0

March 28, 2023
ChannelFutures

[email protected] buys 5 MSPs to expand geographic footprint dlvr.it/SldPyq https://t.co/GnewmOXRch

March 28, 2023
ChannelFutures

.@Lacework announces partner program updates, new #MSP program. #security dlvr.it/SldP9H https://t.co/hUKTOYgoY3

March 28, 2023
ChannelFutures

Learn how MSPs can generate new revenue streams with audiovisual solutions. @shure #ucservices #channelpartners… twitter.com/i/web/status/1…

March 28, 2023
ChannelFutures

⭐ 2023 #ChannelInfluencer spotlight: @andrewsage from @Cisco! Congratulations on this incredible honor from your pe… twitter.com/i/web/status/1…

March 28, 2023
ChannelFutures

The latest @ATTPartners awards give a nice glimpse of how M&A is shaping partner hierarchies.… twitter.com/i/web/status/1…

March 28, 2023

MSP 501

The industry's largest and most comprehensive partner awards program.

Newsletters and Updates

Sign up for The Channel Report, Channel Futures Update, MSP 501 Newsletter and more.

Live Channel Events

Get the latest information on the next industry-leading Channel Partners event.

Galleries

Educational slide shows and images from live events.

Media Kit And Advertising

Want to reach our audience? Access our media kit.

DISCOVER MORE FROM INFORMA TECH

  • Channel Partners Events
  • Telecoms.com
  • MSP 501
  • Black Hat
  • IoT World Today
  • Omdia

WORKING WITH US

  • Contact
  • About Us
  • Advertise
  • Newsletter

FOLLOW Channel Futures ON SOCIAL

  • Privacy
  • CCPA: “Do Not Sell My Data”
  • Cookie Policy
  • Terms
Copyright © 2023 Informa PLC. Informa PLC is registered in England and Wales with company number 8860726 whose registered and Head office is 5 Howick Place, London, SW1P 1WG.
This website uses cookies, including third party ones, to allow for analysis of how people use our website in order to improve your experience and our services. By continuing to use our website, you agree to the use of such cookies. Click here for more information on our Cookie Policy and Privacy Policy.
X