EU digital agenda event standards capgemini mark skilton june 2011
1. Standards in Industry
Mark Skilton, Director
Global Infrastructure Services, Strategy
co-chair , Cloud computing work group, The Open Group
mark.skilton@capgemini.com
The WEF World economic forum http://www.weforum.org/s?s=cloud+computing has recently conducted a survey and number of publications on the topic of Cloud Computing among its many interests including Climate change and Economic growth.Security guideline standards - CSA cloud Security Alliance https://cloudsecurityalliance.org/ are a significant standards body who have lead in the development of Identification, authentication, authorization, encryption and secure access to personal and corporate data and assets. Encryption protocol standards - Data encryption - Advanced Encryption standard AES (NIST http://csrc.nist.gov/publications/fips/fips197/fips-197.pdf); Transport layer encryption - Virtual Private Network protocols VPN; Message encryption - SSL Identity and Authentication Standards : OASIS – Liberty Alliance Standards Body http://www.oasis-open.org/ token authentication SAML 2.0; OPENID foundation http://openid.net/foundation/.OpenID authentication Single Sign-on. Web service Standards : ISO/IEC 29362:2008 for Web services and ISO JTC 38 to reconcile Web services, SOA and cloud computing standards development to extend WS*I under DAPS – Distributed Applications and Platform Services Initiative. World Wide Web Consortium W3C http://www.w3.org/ RDF, SPARQL, OWL, Semantic Web and Web architectures http://www.iso.org/iso/iso_technical_committee.html?commid=601355; Legal Compliance standards : – Policy compliance for corporate enterprise environments and personal privacy ISO 27000 series relating to Information Security Governance; Government Legislative standards. EU Directive 95/46/EC – Security, Data TransferEU Directive 2002/58/EC – Interception, Spam, cookies. Federal law on Safe Habor. PCI-DSS – payment cards. Government- Patriot, SubpoenasHIPPA - Personal Data protectionSarbane-Oxley – Data AuditBrowser standards- these include open and closed (Proprietary) standardsFormats for web page Screen description and manipulation of webpage information : examples include HTML (5) (W3C http://www.w3.org/), CSS DOM, ECMAScript. Feeds and Scripts, ajax, rss atom; Adobe FlashPlatform OS: Microsoft, Unix, Linux, Apple, Chrome, ,Net, Java, OpenVMS (HP).. Mobile Platform OS: Android, Windows Mobile, AppleOS, HP WebOS..Open Source Standards: OpenVMS, Apache LibCloud, Linux and many others, OSI Open Source Initiative. Open Compute initiative (Facebook) http://opencompute.org/ and many others Grid Computing and cloud projects, Globus Project OGSA Open Grid Services Architecture http://www.globus.org/ogsa/ , OGF, Nebula Cloud (NASA) , eScience Open Science Data Cloud , Reservoir fp7 project http://www.reservoir-fp7.eu/ , OpenStackhttp://www.openstack.org/ , and many othersAPI standards – for access to Cloud resources can be split into open and closed(Proprietary) APIs. OCCI Open Cloud Computing Interface – from OGF OpenGridForumhttp://www.gridforum.org/CDMI- Cloud Data Management Interface from – from SNIA Storage Network Industry Association http://www.snia.org/Open Cloud API - Python, Java – Apache Libcloud development http://libcloud.apache.org/LibcloudGoogle APIs- examples http://code.google.com/apis/maps/index.html , Google Code http://code.google.com/Amazon APIs - examples https://affiliate-program.amazon.com/gp/advertising/api/detail/main.html , Amazon WS documentation http://aws.amazon.com/documentation/Salesforce.com APIs http://www.salesforce.com/us/developer/docs/api/Content/sforce_api_quickstart_intro.htm , Salesforce.com developer documentationhttp://www.salesforce.com/us/developer/docs/api/index.htmand many others.. Code development standards - Java, windows , .NET, Ruby, Python, PHP, C++..Chip set standards: IBM, Intel, ARM, HP.. Container standards – these are open and closed (Proprietary) standards. And include :OVF Open Virtualization Format - from DMTF Distributed Management Task Force http://www.dmtf.org/standards/ovf relating to VMware VMIs.Amazon AMIs and many othersService Management certification standards - ITIL v3, ITSM is standards for Service Management (for ITC regulation). CMMI and ISO 20000 certifications for IT Service management maturity and quality standards (ISO 9000 for non ITC)Architectural standards - The Open Group http://www.opengroup.org/ TOGAF model for Enterprise Architecture with recognized International certification. The group also has Cloud Computing , SOA, Security and Semantic Interoperability reference models. NIST National Institute of Standards and Technology Cloud Initiative http://www.nist.gov/itl/cloud/ , Other Use Case developments are seen in OASIS, OMG, ODCA and many others