<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Cloud Computing Security: (Orchestral) Maneuvers In the Dark?</title>
	<atom:link href="http://www.rationalsurvivability.com/blog/?feed=rss2&#038;p=1031" rel="self" type="application/rss+xml" />
	<link>http://www.rationalsurvivability.com/blog/?p=1031</link>
	<description>Hoff&#039;s Ramblings about Information Survivability, Information Centricity, Risk Management and Disruptive Innovation. Oh, I have a fondness for virtualization and cloud computing security, too...</description>
	<lastBuildDate>Thu, 09 Sep 2010 02:54:50 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
	<item>
		<title>By: The Four Horsemen Of the Virtualization (and Cloud) Security Apocalypse… &#124; Portable Digital Video Recorder</title>
		<link>http://www.rationalsurvivability.com/blog/?p=1031&#038;cpage=1#comment-45776</link>
		<dc:creator>The Four Horsemen Of the Virtualization (and Cloud) Security Apocalypse… &#124; Portable Digital Video Recorder</dc:creator>
		<pubDate>Sun, 25 Apr 2010 16:51:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.rationalsurvivability.com/blog/?p=1031#comment-45776</guid>
		<description>[...] Cloud Computing Security: (Orchestral) Maneuvers In the Dark? (rationalsurvivability.com) [...]</description>
		<content:encoded><![CDATA[<p>[...] Cloud Computing Security: (Orchestral) Maneuvers In the Dark? (rationalsurvivability.com) [...]</p>
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-45776" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('45776', 'add', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_');" title="" /> <span id="karma-45776-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-45776" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('45776', 'subtract', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_')" title="" /> <span id="karma-45776-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded>
	</item>
	<item>
		<title>By: The Four Horsemen Of the Virtualization (and Cloud) Security Apocalypse&#8230; &#124; Rational Survivability</title>
		<link>http://www.rationalsurvivability.com/blog/?p=1031&#038;cpage=1#comment-45768</link>
		<dc:creator>The Four Horsemen Of the Virtualization (and Cloud) Security Apocalypse&#8230; &#124; Rational Survivability</dc:creator>
		<pubDate>Sun, 25 Apr 2010 15:25:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.rationalsurvivability.com/blog/?p=1031#comment-45768</guid>
		<description>[...] Cloud Computing Security: (Orchestral) Maneuvers In the Dark? (rationalsurvivability.com) [...]</description>
		<content:encoded><![CDATA[<p>[...] Cloud Computing Security: (Orchestral) Maneuvers In the Dark? (rationalsurvivability.com) [...]</p>
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-45768" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('45768', 'add', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_');" title="" /> <span id="karma-45768-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-45768" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('45768', 'subtract', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_')" title="" /> <span id="karma-45768-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded>
	</item>
	<item>
		<title>By: Incomplete Thought: The Other Side Of Cloud &#8211; Where The (Wild) Infrastructure Things Are&#8230; &#124; Rational Survivability</title>
		<link>http://www.rationalsurvivability.com/blog/?p=1031&#038;cpage=1#comment-40055</link>
		<dc:creator>Incomplete Thought: The Other Side Of Cloud &#8211; Where The (Wild) Infrastructure Things Are&#8230; &#124; Rational Survivability</dc:creator>
		<pubDate>Wed, 10 Mar 2010 01:21:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.rationalsurvivability.com/blog/?p=1031#comment-40055</guid>
		<description>[...] Cloud Computing Security: (Orchestral) Maneuvers In the Dark? (rationalsurvivability.com) [...]</description>
		<content:encoded><![CDATA[<p>[...] Cloud Computing Security: (Orchestral) Maneuvers In the Dark? (rationalsurvivability.com) [...]</p>
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-40055" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('40055', 'add', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_');" title="" /> <span id="karma-40055-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-40055" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('40055', 'subtract', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_')" title="" /> <span id="karma-40055-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded>
	</item>
	<item>
		<title>By: Comments on the PwC/TSB Debate: The cloud/thin computing will fundamentally change the nature of cyber security… &#124; Rational Survivability</title>
		<link>http://www.rationalsurvivability.com/blog/?p=1031&#038;cpage=1#comment-38139</link>
		<dc:creator>Comments on the PwC/TSB Debate: The cloud/thin computing will fundamentally change the nature of cyber security… &#124; Rational Survivability</dc:creator>
		<pubDate>Wed, 17 Feb 2010 04:35:11 +0000</pubDate>
		<guid isPermaLink="false">http://www.rationalsurvivability.com/blog/?p=1031#comment-38139</guid>
		<description>[...] Cloud Computing Security: (Orchestral) Maneuvers In the Dark? (rationalsurvivability.com) [...]</description>
		<content:encoded><![CDATA[<p>[...] Cloud Computing Security: (Orchestral) Maneuvers In the Dark? (rationalsurvivability.com) [...]</p>
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-38139" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('38139', 'add', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_');" title="" /> <span id="karma-38139-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-38139" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('38139', 'subtract', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_')" title="" /> <span id="karma-38139-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded>
	</item>
	<item>
		<title>By: Roland Dobbins</title>
		<link>http://www.rationalsurvivability.com/blog/?p=1031&#038;cpage=1#comment-4880</link>
		<dc:creator>Roland Dobbins</dc:creator>
		<pubDate>Tue, 16 Jun 2009 14:18:30 +0000</pubDate>
		<guid isPermaLink="false">http://www.rationalsurvivability.com/blog/?p=1031#comment-4880</guid>
		<description>&lt;a href=&quot;#comment-4877&quot; rel=&quot;nofollow&quot;&gt;@Roland Dobbins &lt;/a&gt; 

Grrr - no, &lt;a href=&quot;http://www.rationalsurvivability.com/blog/?p=815&amp;cpage=1#comment-4875&quot; rel=&quot;nofollow&quot;&gt;this one&lt;/a&gt;.  I suck at HTML.

;&gt;</description>
		<content:encoded><![CDATA[<p><a href="#comment-4877" rel="nofollow">@Roland Dobbins </a> </p>
<p>Grrr &#8211; no, <a href="http://www.rationalsurvivability.com/blog/?p=815&amp;cpage=1#comment-4875" rel="nofollow">this one</a>.  I suck at HTML.</p>
<p>;&gt;</p>
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-4880" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('4880', 'add', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_');" title="" /> <span id="karma-4880-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-4880" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('4880', 'subtract', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_')" title="" /> <span id="karma-4880-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded>
	</item>
	<item>
		<title>By: Roland Dobbins</title>
		<link>http://www.rationalsurvivability.com/blog/?p=1031&#038;cpage=1#comment-4877</link>
		<dc:creator>Roland Dobbins</dc:creator>
		<pubDate>Tue, 16 Jun 2009 13:59:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.rationalsurvivability.com/blog/?p=1031#comment-4877</guid>
		<description>&lt;a href=&quot;#comment-4876&quot; rel=&quot;nofollow&quot;&gt;@Roland Dobbins &lt;/a&gt; 

The post to which I attemped to link is &lt;a href=&quot;http://www.rationalsurvivability.com/blog/?p=815&amp;cpage=1#comment-4875&quot; rel=&quot;nofollow&quot;&gt;this one&lt;/a&gt;.</description>
		<content:encoded><![CDATA[<p><a href="#comment-4876" rel="nofollow">@Roland Dobbins </a> </p>
<p>The post to which I attemped to link is <a href="http://www.rationalsurvivability.com/blog/?p=815&amp;cpage=1#comment-4875" rel="nofollow">this one</a>.</p>
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-4877" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('4877', 'add', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_');" title="" /> <span id="karma-4877-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-4877" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('4877', 'subtract', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_')" title="" /> <span id="karma-4877-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded>
	</item>
	<item>
		<title>By: Roland Dobbins</title>
		<link>http://www.rationalsurvivability.com/blog/?p=1031&#038;cpage=1#comment-4876</link>
		<dc:creator>Roland Dobbins</dc:creator>
		<pubDate>Tue, 16 Jun 2009 13:58:32 +0000</pubDate>
		<guid isPermaLink="false">http://www.rationalsurvivability.com/blog/?p=1031#comment-4876</guid>
		<description>Moving stuff around dynamically via routing tricks, via DNS tricks (i.e., GSLB-type things), et. al., can and have been done; they can provide some temporary relief in some circumstances, but absolutely, the attackers will note the change and adjust accordingly.

See this post for more commentary in this arena:



IF-MAP is somewhat interesting, but there are already existing information interchange formats in the control and management planes which aren&#039;t being leveraged to their fullest - NetFlow, IPFIX/PSAMP, flow-spec, and even basic techniques making use of BGP such as S/RTBH and QPPB.  DNS architecture is a particular sore point, as time and time again DNS ends up being the weak link in the chain, followed by a lack of deployment of even the most basic network infrastructure BCPs such as BCP84 via ACLs/uRPF/QPPB, S/RTBH, iACLs, rACLs, CoPP, et. al.  

Situational awareness is an area in which huge improvements in network detection/classification/traceback are required; you can&#039;t mitigate that which you can&#039;t see or understand.  NetFlow (and later, IPFIX/PSAMP) telemetry is key to scalable network visibility, and both statistical and behavioral NetFlow-based anomaly-detection are extremely important.

[Full disclosure; I work for a company which develops commercial NetFlow-based anomaly-detection systems.  That being said, I strongly advocate starting out with open-source tools,  moving to commercial tools when additional capabilities are required above and beyond what the open-source tools provide, and after gaining operational experience using open-source tools.]</description>
		<content:encoded><![CDATA[<p>Moving stuff around dynamically via routing tricks, via DNS tricks (i.e., GSLB-type things), et. al., can and have been done; they can provide some temporary relief in some circumstances, but absolutely, the attackers will note the change and adjust accordingly.</p>
<p>See this post for more commentary in this arena:</p>
<p>IF-MAP is somewhat interesting, but there are already existing information interchange formats in the control and management planes which aren&#8217;t being leveraged to their fullest &#8211; NetFlow, IPFIX/PSAMP, flow-spec, and even basic techniques making use of BGP such as S/RTBH and QPPB.  DNS architecture is a particular sore point, as time and time again DNS ends up being the weak link in the chain, followed by a lack of deployment of even the most basic network infrastructure BCPs such as BCP84 via ACLs/uRPF/QPPB, S/RTBH, iACLs, rACLs, CoPP, et. al.  </p>
<p>Situational awareness is an area in which huge improvements in network detection/classification/traceback are required; you can&#8217;t mitigate that which you can&#8217;t see or understand.  NetFlow (and later, IPFIX/PSAMP) telemetry is key to scalable network visibility, and both statistical and behavioral NetFlow-based anomaly-detection are extremely important.</p>
<p>[Full disclosure; I work for a company which develops commercial NetFlow-based anomaly-detection systems.  That being said, I strongly advocate starting out with open-source tools,  moving to commercial tools when additional capabilities are required above and beyond what the open-source tools provide, and after gaining operational experience using open-source tools.]</p>
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-4876" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('4876', 'add', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_');" title="" /> <span id="karma-4876-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-4876" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('4876', 'subtract', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_')" title="" /> <span id="karma-4876-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded>
	</item>
	<item>
		<title>By: Virtualization Management &#124; UK Not Sold On Cloud Computing &#124; Tek-Tools</title>
		<link>http://www.rationalsurvivability.com/blog/?p=1031&#038;cpage=1#comment-4841</link>
		<dc:creator>Virtualization Management &#124; UK Not Sold On Cloud Computing &#124; Tek-Tools</dc:creator>
		<pubDate>Mon, 15 Jun 2009 11:13:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.rationalsurvivability.com/blog/?p=1031#comment-4841</guid>
		<description>[...] Rational Survivability » Cloud Computing Security: (Orchestral &#8230; - Last week Kevin L. Jackson wrote an insightful article titled: Cloud Computing: The Dawn of Maneuver Warfare in IT Security. I enjoyed Kevin&#8217;s piece but struggled with how I could respond: cheerleader or pundit. &#8230; [...]</description>
		<content:encoded><![CDATA[<p>[...] Rational Survivability » Cloud Computing Security: (Orchestral &#8230; &#8211; Last week Kevin L. Jackson wrote an insightful article titled: Cloud Computing: The Dawn of Maneuver Warfare in IT Security. I enjoyed Kevin&#8217;s piece but struggled with how I could respond: cheerleader or pundit. &#8230; [...]</p>
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-4841" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('4841', 'add', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_');" title="" /> <span id="karma-4841-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-4841" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('4841', 'subtract', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_')" title="" /> <span id="karma-4841-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded>
	</item>
	<item>
		<title>By: David O'Berry</title>
		<link>http://www.rationalsurvivability.com/blog/?p=1031&#038;cpage=1#comment-4833</link>
		<dc:creator>David O'Berry</dc:creator>
		<pubDate>Mon, 15 Jun 2009 05:28:02 +0000</pubDate>
		<guid isPermaLink="false">http://www.rationalsurvivability.com/blog/?p=1031#comment-4833</guid>
		<description>Great clarification and that thought pattern is an exciting one to me Kevin based on technologies like CUDA/Stream Processing and standards for security data exchange like IF-MAP.  I do believe we have to get to that morphing tactical cloud as well as take that concept to the endpoint in many situations to develop an overall enhanced visibility posture thereby increasing the chance at resilience if not outright mitigation.

Good stuff.

-David</description>
		<content:encoded><![CDATA[<p>Great clarification and that thought pattern is an exciting one to me Kevin based on technologies like CUDA/Stream Processing and standards for security data exchange like IF-MAP.  I do believe we have to get to that morphing tactical cloud as well as take that concept to the endpoint in many situations to develop an overall enhanced visibility posture thereby increasing the chance at resilience if not outright mitigation.</p>
<p>Good stuff.</p>
<p>-David</p>
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-4833" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('4833', 'add', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_');" title="" /> <span id="karma-4833-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-4833" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('4833', 'subtract', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_')" title="" /> <span id="karma-4833-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded>
	</item>
	<item>
		<title>By: Kevin L.Jackson</title>
		<link>http://www.rationalsurvivability.com/blog/?p=1031&#038;cpage=1#comment-4832</link>
		<dc:creator>Kevin L.Jackson</dc:creator>
		<pubDate>Mon, 15 Jun 2009 04:51:27 +0000</pubDate>
		<guid isPermaLink="false">http://www.rationalsurvivability.com/blog/?p=1031#comment-4832</guid>
		<description>Excellent! This is just the type of dialog I&#039;d hoped for. I would, however, like to say that my focus is on the use of cloud computing in the DoD, DHS and Intelligence communities.  For the foreseeable future, I expect these organization to deploy private clouds where their would be more flexibility in IP addresses, hostnames and communications conduits. Those environment should also have the network visibility required to execute such coordinated actions. I also expect this technology will lead to &quot;tactical clouds&quot; that would link network resources in an adhoc manner in order to increase capabilities for a limited time in a specific geographic area. I am definitely guilty of mixing tenses and will need to watch that the next time.</description>
		<content:encoded><![CDATA[<p>Excellent! This is just the type of dialog I&#8217;d hoped for. I would, however, like to say that my focus is on the use of cloud computing in the DoD, DHS and Intelligence communities.  For the foreseeable future, I expect these organization to deploy private clouds where their would be more flexibility in IP addresses, hostnames and communications conduits. Those environment should also have the network visibility required to execute such coordinated actions. I also expect this technology will lead to &#8220;tactical clouds&#8221; that would link network resources in an adhoc manner in order to increase capabilities for a limited time in a specific geographic area. I am definitely guilty of mixing tenses and will need to watch that the next time.</p>
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-4832" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('4832', 'add', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_');" title="" /> <span id="karma-4832-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-4832" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('4832', 'subtract', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_')" title="" /> <span id="karma-4832-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded>
	</item>
	<item>
		<title>By: beaker</title>
		<link>http://www.rationalsurvivability.com/blog/?p=1031&#038;cpage=1#comment-4831</link>
		<dc:creator>beaker</dc:creator>
		<pubDate>Mon, 15 Jun 2009 03:53:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.rationalsurvivability.com/blog/?p=1031#comment-4831</guid>
		<description>&lt;a href=&quot;#comment-4830&quot; rel=&quot;nofollow&quot;&gt;@David O’Berry &lt;/a&gt; 

I enjoy reading Kevin&#039;s writings and I am impressed with his networking (human,) especially given his interactions with folks like Vivek Kundra.  This is why it&#039;s important to ensure the messaging surrounding &quot;Cloud,&quot; especially in the federal sector sets the appropriate expectations.

With Cyberwar this and funding that, we can and should be spending our time and money on things that have the most bang for the buck.  For the most part, as it relates to security -- and even in the realm of Cloud -- that means those boring things Kevin described in the beginning of his article.

Cloud doesn&#039;t change the need, just the application.

/Hoff</description>
		<content:encoded><![CDATA[<p><a href="#comment-4830" rel="nofollow">@David O’Berry </a> </p>
<p>I enjoy reading Kevin&#8217;s writings and I am impressed with his networking (human,) especially given his interactions with folks like Vivek Kundra.  This is why it&#8217;s important to ensure the messaging surrounding &#8220;Cloud,&#8221; especially in the federal sector sets the appropriate expectations.</p>
<p>With Cyberwar this and funding that, we can and should be spending our time and money on things that have the most bang for the buck.  For the most part, as it relates to security &#8212; and even in the realm of Cloud &#8212; that means those boring things Kevin described in the beginning of his article.</p>
<p>Cloud doesn&#8217;t change the need, just the application.</p>
<p>/Hoff</p>
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-4831" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('4831', 'add', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_');" title="" /> <span id="karma-4831-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-4831" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('4831', 'subtract', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_')" title="" /> <span id="karma-4831-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded>
	</item>
	<item>
		<title>By: David O'Berry</title>
		<link>http://www.rationalsurvivability.com/blog/?p=1031&#038;cpage=1#comment-4830</link>
		<dc:creator>David O'Berry</dc:creator>
		<pubDate>Mon, 15 Jun 2009 03:40:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.rationalsurvivability.com/blog/?p=1031#comment-4830</guid>
		<description>I definitely appreciate his enthusiasm but as you point out, I get very worried when someone mixes things up a bit through accidental tense changes or wording and gives a picture like what Mr. Jackson did in that piece.

I do believe that eventually you can use virtualization technology to create a silver buckshot approach to security instead of always relying on a serial silver bullet mentality but not in the manner he puts forth.

It&#039;s possible he is simply talking about overwhelming response to an attack through a brute force means which, while I applaud in theory, is not something we can legitimately even attempt right now without huge distributed bot-net type grids of our own.  That simply does not exist in most situations and in fact even were it accurate or feasible to attempt to implement now, most Government organizations are going the opposite way in an attempt to reduce the surface area of attack space.  DOS, while noisy and a pain, is probably on the lower end of many folks worries right now as attack vectors go.

-David</description>
		<content:encoded><![CDATA[<p>I definitely appreciate his enthusiasm but as you point out, I get very worried when someone mixes things up a bit through accidental tense changes or wording and gives a picture like what Mr. Jackson did in that piece.</p>
<p>I do believe that eventually you can use virtualization technology to create a silver buckshot approach to security instead of always relying on a serial silver bullet mentality but not in the manner he puts forth.</p>
<p>It&#8217;s possible he is simply talking about overwhelming response to an attack through a brute force means which, while I applaud in theory, is not something we can legitimately even attempt right now without huge distributed bot-net type grids of our own.  That simply does not exist in most situations and in fact even were it accurate or feasible to attempt to implement now, most Government organizations are going the opposite way in an attempt to reduce the surface area of attack space.  DOS, while noisy and a pain, is probably on the lower end of many folks worries right now as attack vectors go.</p>
<p>-David</p>
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-4830" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('4830', 'add', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_');" title="" /> <span id="karma-4830-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-4830" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('4830', 'subtract', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_')" title="" /> <span id="karma-4830-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded>
	</item>
	<item>
		<title>By: Krish</title>
		<link>http://www.rationalsurvivability.com/blog/?p=1031&#038;cpage=1#comment-4813</link>
		<dc:creator>Krish</dc:creator>
		<pubDate>Sun, 14 Jun 2009 18:44:30 +0000</pubDate>
		<guid isPermaLink="false">http://www.rationalsurvivability.com/blog/?p=1031#comment-4813</guid>
		<description>When I read Kevin&#039;s article, I also thought that moving the resources to deflect attacks was not making sense because the resource will either be attached to an IP address or a hostname or, in some cases, a domain name or subdomain name. Then, I thought I am missing something and shut myself up :-).</description>
		<content:encoded><![CDATA[<p>When I read Kevin&#8217;s article, I also thought that moving the resources to deflect attacks was not making sense because the resource will either be attached to an IP address or a hostname or, in some cases, a domain name or subdomain name. Then, I thought I am missing something and shut myself up <img src='http://www.rationalsurvivability.com/blog/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> .</p>
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-4813" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('4813', 'add', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_');" title="" /> <span id="karma-4813-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-4813" src="http://www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('4813', 'subtract', 'www.rationalsurvivability.com/blog/wp-content/plugins/comment-rating/', '1_14_')" title="" /> <span id="karma-4813-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded>
	</item>
</channel>
</rss>
