Vulnerabilities / Threats // Insider Threats
10/4/2010
11:53 AM
Connect Directly
RSS
E-Mail
50%
50%

KT Launches Large Scale Private Cloud

Leading Korean telecom partners with Cloudscaling to develop platform for data-intensive mobile services.




Slideshow: Amazon's Case For Enterprise Cloud Computing
(click for larger image and for full photo gallery)
KT, Korea's largest fixed-line operator and its second largest mobile carrier, has launched the nation's first large-scale, private cloud. It will serve as a platform for data-intensive services to devices such as smartphones and tablet PCs, as well as to deliver computing infrastructure to its internal enterprise.

"Telcos should focus on the explosion of data from smartphones, the Internet, and multimedia. We should prepare for continued data growth in the future. There will be many opportunities to provide applications supporting this data explosion. We think cloud is the right technology solution to accomplish this," said Jung-sik Suh, senior VP, cloud services business unit, at KT.

Telecommunications provider KT elected to partner with San Francisco-based Cloudscaling, in part because of the service provider's use of commodity hardware, open source software, and automation, said Suh.

"The leaders in cloud technology are Internet companies, not telcos or enterprise IT companies," he said. "We wanted a cloud computing partner that understood our vision for cloud services, which is a cost-competitive offering at a high quality of service."

By using a private cloud, KT can eliminate systems that require the manual management of virtual servers, moving instead to automated management -- a more cost-effective and efficient approach, according to the company. In fact, the first phase will consolidate 9,800 servers onto the new cloud infrastructure, KT said.

"KT's approach to cloud computing is bold," said Randy Bias, CEO and founder of Cloudscaling. "Modeling their cloud computing architecture after the most efficient and lowest-cost public cloud providers should allow them to leapfrog regional competitors who are building clouds based on enterprise architectures."

Other partners include Intel, Citrix, Nexenta, Cloud.com, and SP Korea, according to Cloudscaling.

"We used commodity hardware to keep the up-front and ongoing [capital expenditure] costs down. The software stack is based heavily on free and/or open source software to lower the license costs. The system was designed for failure," said Bias. "Cloud infrastructure must be highly available, which means hardware and software failure should not interrupt the service. These loosely coupled services should be automatically provisioned, deployed, and managed."

The Cloudscaling team brings together experience building and managing cloud infrastructures at companies such as Amazon, GoGrid, Yahoo, Engine Yard, and Puppet Labs, and has teleco and service provider clients around the world.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading Must Reads - September 25, 2014
Dark Reading's new Must Reads is a compendium of our best recent coverage of identity and access management. Learn about access control in the age of HTML5, how to improve authentication, why Active Directory is dead, and more.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-6278
Published: 2014-09-30
GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attackers to execute arbitrary commands via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and m...

CVE-2014-6805
Published: 2014-09-30
The weibo (aka magic.weibo) application 1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

CVE-2014-6806
Published: 2014-09-30
The Thanodi - Setswana Translator (aka com.thanodi.thanodi) application 1.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

CVE-2014-6807
Published: 2014-09-30
The OLA School (aka com.conduit.app_00f9890a4f0145f2aae9d714e20b273a.app) application 1.2.7.132 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

CVE-2014-6808
Published: 2014-09-30
The Active 24 (aka com.zentity.app.active24) application 1.0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
In our next Dark Reading Radio broadcast, we’ll take a close look at some of the latest research and practices in application security.