Application Security
7/23/2013
02:52 PM
Connect Directly
Google+
LinkedIn
Twitter
RSS
E-Mail
50%
50%

Google Cloud Storage Improves

Three new features make Google's cloud storage service more useful for developers and businesses.

8 Great Cloud Storage Services
8 Great Cloud Storage Services
(click image for larger view and for slideshow)
Continuing its effort to make its infrastructure-as-a-service (IaaS) business more competitive with Amazon Web Services, Google on Monday added three significant features to its Cloud Storage service.

Google Cloud Storage, launched in 2010, provides online storage as a Web service. Though there is some functional overlap with the company's consumer-oriented storage service Google Drive — both have APIs that support programmatic data access — Cloud Storage provides a more robust level of service and capabilities for desktop, mobile and Web applications.

Cloud Storage competes with Amazon S3, Windows Azure Storage and Rackspace Cloud Block Storage, among others. Though Google entered the IaaS business long after Amazon did, it is catching up in terms of capabilities, thanks to the introduction of Object Lifecycle Management, Regional Buckets and Automatic Parallel Composite Uploads.

[ Is Google pushing the boundaries of acceptable ad placement? Read Google Gmail Ads Appear Within Inbox. ]

Object Lifecycle Management suggests tedious technobabble, but the term nonetheless succinctly describes a critical storage function: the ability to delete files programmatically. As Google developer programs engineer Brian Dorsey explains in a blog post, this feature allows developers to configure a storage bucket to keep files for a specified period of time before getting rid of them.

Object Lifecycle Management can also be used in conjunction with Object Versioning to keep, say, only the three most recent versions of files. It is an essential way to manage storage usage and costs.

Regional Buckets provide a way to specify where Durable Reduced Availability data — a form of storage that reduces cost at the expense of availability — is stored, so it can be served from the same network fabric as Google Compute Engine instances. This reduces network latency and increases bandwidth to virtual machines, which may be advantageous when running data-intensive code.

Automatic Parallel Composite Uploads is a new feature in the 'gsutil' app, a Python application that lets users interact with Cloud Storage from the command line. It allows large objects to be uploaded in parallel, a potential time savings.

Google only really committed to the IaaS market in May when it made Compute Engine available to the public and received ISO 27001:2005 international security certifications for its Cloud Platform. Launched last year as an invitation-only service, Compute Engine began admitting Google Cloud Platform Gold Support customers in April.

Google in May also made its platform-as-a-service offering, App Engine, more appealing by adding support for the popular PHP programming language.

Research firm IDC last week said that cloud computing has become "business as usual" for enterprises, rather than a service restricted to IT infrastructure.

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Lorna Garey
50%
50%
Lorna Garey,
User Rank: Ninja
7/24/2013 | 8:27:30 PM
re: Google Cloud Storage Improves
Tom, with Object Lifecycle Management, does Google guarantee that the files are fully deleted, including any backups, such that it could be used by companies with policies to destroy certain data after say three years? Right now, maybe they do that by wiping out encryption keys, so that an e-discovery request can be answered with an assurance that the data is gone. If so, that seems like a compelling selling point.
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Flash Poll
DevOps’ Impact on Application Security
DevOps’ Impact on Application Security
Managing the interdependency between software and infrastructure is a thorny challenge. Often, it’s a “developers are from Mars, systems engineers are from Venus” situation.
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2013-7421
Published: 2015-03-02
The Crypto API in the Linux kernel before 3.18.5 allows local users to load arbitrary kernel modules via a bind system call for an AF_ALG socket with a module name in the salg_name field, a different vulnerability than CVE-2014-9644.

CVE-2014-8160
Published: 2015-03-02
net/netfilter/nf_conntrack_proto_generic.c in the Linux kernel before 3.18 generates incorrect conntrack entries during handling of certain iptables rule sets for the SCTP, DCCP, GRE, and UDP-Lite protocols, which allows remote attackers to bypass intended access restrictions via packets with disall...

CVE-2014-9644
Published: 2015-03-02
The Crypto API in the Linux kernel before 3.18.5 allows local users to load arbitrary kernel modules via a bind system call for an AF_ALG socket with a parenthesized module template expression in the salg_name field, as demonstrated by the vfat(aes) expression, a different vulnerability than CVE-201...

CVE-2015-0239
Published: 2015-03-02
The em_sysenter function in arch/x86/kvm/emulate.c in the Linux kernel before 3.18.5, when the guest OS lacks SYSENTER MSR initialization, allows guest OS users to gain guest OS privileges or cause a denial of service (guest OS crash) by triggering use of a 16-bit code segment for emulation of a SYS...

CVE-2014-8921
Published: 2015-03-01
The IBM Notes Traveler Companion application 1.0 and 1.1 before 201411010515 for Window Phone, as distributed in IBM Notes Traveler 9.0.1, does not properly restrict the number of executions of the automatic configuration option, which makes it easier for remote attackers to capture credentials by c...

Dark Reading Radio
Archived Dark Reading Radio
How can security professionals better engage with their peers, both in person and online? In this Dark Reading Radio show, we will talk to leaders at some of the security industry’s professional organizations about how security pros can get more involved – with their colleagues in the same industry, with their peers in other industries, and with the IT security community as a whole.