News
8/31/2009
10:55 AM
George Crump
George Crump
Commentary
50%
50%

The Foundation Of The Data Asset

In my last entry we discussed Making Data an Asset. This entry will focus on where that data asset should be stored. What is needed is a strong storage foundation, one that is designed to last for years, if not decades, but also one that will store that data efficiently and of course be complimentary to the enterprise class indexing that we described in our last entry.

In my last entry we discussed Making Data an Asset. This entry will focus on where that data asset should be stored. What is needed is a strong storage foundation, one that is designed to last for years, if not decades, but also one that will store that data efficiently and of course be complimentary to the enterprise class indexing that we described in our last entry.This foundation is similar to the one we described in our recent article "The Foundation of DeDupe's Next Era". The difference is that if we are looking at data as an asset as opposed to something we have to retain. To ascertain what data is worthy of being an asset we need to have our index and classifications performed across the data center by companies like Index Engines or Kazeon. Those solutions have to be enterprise in scale yet be simple to implement; a single or few appliances that can index the entire enterprise in a reasonable amount of time. Once the data has been mined, data that has value or is an asset should be stored in a vault-like storage location as soon as it becomes static.

These types of storage vaults are being provided today be companies like EMC, Nexsan, NEC and Permabit. Their goal is to be able to retain data for years, store that data efficiently and to be able to provide some sort of retention capabilities that will maintain a chain of custody on that data.

Also these types of solutions must be able to be searched quickly and they must be able to move that data back into production quickly. Although tape can now be indexed, disk archives may be a more ideal storage vault for asset data. Data that is an asset will have a high probability of needing to be found and restored quickly. While indexing tape is important, index today's data that is on disk so that you can understand what data is an asset and then being able to get that data back quickly can give a company a competitive advantage.

This storage vault needs to have some of the other attributes of any other disk archive. Beyond being able to find the asset, redundancy may be the most important part of this storage vault. The archive must be able to survive through multiple component failures and still be able to deliver the data back to you. Once you have classified something as an asset, storing it just in case you need it is no longer enough. You have verified that there is a high probability that you will need it, when you do you have to make sure that you can get it back.

Once the organization realizes that there is some "gold" in the data that they are keeping, the investment to find and then store that gold becomes obvious. It allows the IT team to more easily cost justify future purchases that will benefit not just the data assets but all the data in the enterprise.

Track us on Twitter: http://twitter.com/storageswiss

Subscribe to our RSS feed.

George Crump is founder of Storage Switzerland, an analyst firm focused on the virtualization and storage marketplaces. It provides strategic consulting and analysis to storage users, suppliers, and integrators. An industry veteran of more than 25 years, Crump has held engineering and sales positions at various IT industry manufacturers and integrators. Prior to Storage Switzerland, he was CTO at one of the nation's largest integrators.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading Tech Digest, Dec. 19, 2014
Software-defined networking can be a net plus for security. The key: Work with the network team to implement gradually, test as you go, and take the opportunity to overhaul your security strategy.
Flash Poll
10 Recommendations for Outsourcing Security
10 Recommendations for Outsourcing Security
Enterprises today have a wide range of third-party options to help improve their defenses, including MSSPs, auditing and penetration testing, and DDoS protection. But are there situations in which a service provider might actually increase risk?
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-2208
Published: 2014-12-28
CRLF injection vulnerability in the LightProcess protocol implementation in hphp/util/light-process.cpp in Facebook HipHop Virtual Machine (HHVM) before 2.4.2 allows remote attackers to execute arbitrary commands by entering a \n (newline) character before the end of a string.

CVE-2014-2209
Published: 2014-12-28
Facebook HipHop Virtual Machine (HHVM) before 3.1.0 does not drop supplemental group memberships within hphp/util/capability.cpp and hphp/util/light-process.cpp, which allows remote attackers to bypass intended access restrictions by leveraging group permissions for a file or directory.

CVE-2014-5386
Published: 2014-12-28
The mcrypt_create_iv function in hphp/runtime/ext/mcrypt/ext_mcrypt.cpp in Facebook HipHop Virtual Machine (HHVM) before 3.3.0 does not seed the random number generator, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging the use of a single initial...

CVE-2014-6228
Published: 2014-12-28
Integer overflow in the string_chunk_split function in hphp/runtime/base/zend-string.cpp in Facebook HipHop Virtual Machine (HHVM) before 3.3.0 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via crafted arguments to the chunk_split ...

CVE-2014-6229
Published: 2014-12-28
The HashContext class in hphp/runtime/ext/ext_hash.cpp in Facebook HipHop Virtual Machine (HHVM) before 3.3.0 incorrectly expects that a certain key string uses '\0' for termination, which allows remote attackers to obtain sensitive information by leveraging read access beyond the end of the string,...

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Join us Wednesday, Dec. 17 at 1 p.m. Eastern Time to hear what employers are really looking for in a chief information security officer -- it may not be what you think.