Blockchain Improves Multicloud Network Management

A recent study by RightScale has reported that 81 % of now have a multi-cloud strategy, and a majority have a hybrid of private and public clouds. That’s a
significant number of companies struggling to manage complex existing
networks and multiple clouds as well as the associated security strains. 
 
Blockchain technology may still be new technology, but it has a lot of promise in exactly this kind of environment. 
 
Let’s take a look at two common challenges where blockchain has potential:
 
Making Clouds talk to each other
No matter the reason that necessitates a multi-cloud or hybrid setup, the associated networking challenges are almost always the same. Instances in each cloud provider are typically in their own private network and can’t see each other, let alone communicate, without significant routing or firewall configurations. 
 
Each instance essentially lives in a silo without any interconnection. If the instances do get bridged, it’s an entirely different challenge to make sure communication is secure and safe from attacks such as eavesdropping or “man in the middle.”
Today many businesses solve these issues, if they have sufficient resources (which is a challenge in and of itself), with NATs or VPNs to bridge each network.
 
Unfortunately, that means there’s one more service to configure and maintain and yet another point of failure. 
 
VPNs were created when more static data centers were the norm, rather than the elastic topologies that cloud-hosting enables. This doesn’t allow them to scale well. However, blockchain could help with eliminating any need for a separate, centrally managed VPN by instead using resilient peer-to-peer connections. 
 
Because of blockchain’s decentralised nature and enthusiastic open-source communities, blockchain systems are often accompanied by powerful auxiliary tools and technology, such as robust peer-to-peer networking and data-replication implementations. 
 
These characteristics provide the opportunity to bridge cloud providers into a common network where each connection point securely peers with every other point, regardless of cloud provider or container instance. The resulting peer-to-peer network can act as an agnostic overlay on top of the underlying connection points, enabling simpler and more secure data transfer. 
Cloud providers like Amazon Web Services are quickly catching on to the fact that blockchain is a flexible and increasingly common part of different enterprises’ toolkits.
 
Enabling a decentralised enterprise securely
Speaking of enabling flexible and global businesses, there are no shortages of data points to suggest that remote working is on the rise, workforces are becoming more decentralized, and the competition to attract talent is at a global scale. Successful businesses will need to embrace more flexibility, which means many will look to open remote or “branch” office locations.
 
The challenge for businesses, though, has always been to balance the need for growth against the overall cost, both operationally and from a resource perspective. And scaling a cloud-connecting, spread-out enterprise is one of the harder parts of expansion. 
 
It’s not easy to have decentralised offices and employees, connected through cloud technology, operate just as seamlessly and securely as if they were part of headquarters. 
 
This is a very common and historical challenge for businesses like restaurants or retailers, where added physical locations away from headquarters are the primary drivers of revenue growth. While the legacy solution was fiber, that proved too expensive and complex and required longer-term commitments. This meant an evolution to VPN and SD-WAN options, but what fixed one set of cost and complexity problems only brought in new ones, including expensive hardware or licenses that are more difficult to execute and maintain. As a result, some businesses opted to use multiple options, but each added option can present a security hole with even the slightest misconfiguration.
 
So now the modern enterprise is looking for its next evolution, which provides blockchain another opportunity to improve networks across locations. The flexibility of blockchain networks makes it possible to facilitate more fault-tolerant communication between connection points, even as the network changes in both expected and unexpected ways.
 
Then there’s blockchain’s redundancy. If, for example, important configurations like network topology and firewall rules were managed using on-chain state or even with smart contracts, it might be smarter to deploy and monitor modifications, as there is no central point of failure and every change is tracked with replicated chain data secured by one-way cryptographic hashes.
 
At the end of the day, businesses that want to expand locations could have a blockchain-backed network that provides:
 
• More resiliency if central network points do fail, and
• More secure endpoints with stronger identity management, given blockchain’s powerful cryptographic primitives (namely public and private keys), making it a safer option than easily crackable usernames and passwords.
 
The bottom line is that cloud requirements for the modern enterprise have forced businesses to drain resources on complex workarounds for common network-scaling problems.
 
Blockchain might be a promising, yet nascent technology that ends up being useful in some cases and not in others. However, as developers dig in deeper, it might very well be the best thing to happen to the cloud-powered enterprise since the cloud itself.
 
VentureBeat
 
You Might Also Read:
 
Scalability On Blockchain - Is There A Solution?:
 
« Going Postal: ‘We Have Sent You a Message’
Pentagon Cybersecurity is Falling Behind »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

BackupVault

BackupVault

BackupVault is a leading provider of automatic cloud backup and critical data protection against ransomware, insider attacks and hackers for businesses and organisations worldwide.

ZenGRC

ZenGRC

ZenGRC - the first, easy-to-use, enterprise-grade information security solution for compliance and risk management - offers businesses efficient control tracking, testing, and enforcement.

The PC Support Group

The PC Support Group

A partnership with The PC Support Group delivers improved productivity, reduced costs and protects your business through exceptional IT, telecoms and cybersecurity services.

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

ON-DEMAND WEBINAR: What Is A Next-Generation Firewall (and why does it matter)?

ON-DEMAND WEBINAR: What Is A Next-Generation Firewall (and why does it matter)?

Watch this webinar to hear security experts from Amazon Web Services (AWS) and SANS break down the myths and realities of what an NGFW is, how to use one, and what it can do for your security posture.

Absolute Software

Absolute Software

Absolute provides persistent endpoint security and data risk management solutions for mobile devices - computers, tablets, and smartphones.

Netskope

Netskope

Netskope, a global cybersecurity leader, is redefining cloud, data, and network security to help organizations apply Zero Trust principles to protect data.

Mobile Mentor

Mobile Mentor

Mobile Mentor is an independent provider of enterprise mobility solutions in New Zealand and Australia.

6cure

6cure

The 6cure Threat Protection solution eliminates malicious traffic to critical services in real time and protects against DDoS attacks.

Thermo Systems

Thermo Systems

Thermo Systems is a design-build control systems engineering and construction firm. Capabilties include industrial control system cybersecurity.

Mitre ATT&CK

Mitre ATT&CK

MITRE ATT&CK™ is a globally-accessible knowledge base of adversary tactics and techniques based on real-world observations.

CybernetIQ

CybernetIQ

CLAW by CybernetIQ is the industry's most advanced SOAR platform helping unify all cybersecurity tools under one umbrella and providing organizations faster, better and more accurate cybersecurity.

Polish Centre for Accreditation (PCA)

Polish Centre for Accreditation (PCA)

PCA is the national accreditation body for Poland. The directory of members provides details of organisations offering certification services for ISO 27001.

Nova Leah

Nova Leah

Nova Leah helps connected medical device manufacturers meet cybersecurity compliance requirements throughout the entire product lifecycle.

Caveonix

Caveonix

Caveonix’s RiskForesight TM solution is an automated, proactive risk and compliance platform designed for hybrid and multi-cloud.

OwnZap Infosec

OwnZap Infosec

OwnZap Infosec aims to digitally shield the cyberspace by offering services like Penetration Testing and Red Teaming, Infrastructure Security Testing, and Vulnerability Assessments.

SecZetta

SecZetta

SecZetta provides third-party identity risk solutions that are easy to use, and purpose built to help organizations execute risk-based identity access and lifecycle strategies.

BIG Cyber

BIG Cyber

BIG Cyber is a specialized Managed Security Service Provider (MSSP) dedicated to bringing military grade cyber security technology to the gaming industry.

Infostream

Infostream

Infostream is a leading integrator of Digital Transformations Solutions (DTS); Public, Private, and Hybrid Cloud; Cybersecurity; Data Integrity; DevOps, DevSecOps, and Infrastructures.

Winslow Technology Group (WTG)

Winslow Technology Group (WTG)

Winslow Technology Group is a leading provider of IT Solutions, Managed Services, and Cybersecurity Services dedicated to providing exceptional business outcomes for our customers since 2003.

Gibbs Consulting

Gibbs Consulting

Gibbs Consulting provides innovative, flexible, on-demand IT Services and IT Consulting that delivers value and successful outcomes for our clients.