Appendix F. Compliance Considerations

Audit concepts such as segmentation and monitoring applied to a vCloud environment reveal new challenges. Elasticity might break old segmentation controls and the capability to isolate sensitive data in a rapidly growing environment. Role-based access controls and virtual firewalls must also demonstrate compatibility with audit requirements for segmentation, including detailed audit trails and logs. Can a provider guarantee that an offline image with sensitive data in memory is accessible only by authorized users? Can a log indicate who accessed it and when? vCloud resource management requires multiple admin-level roles.

The complexity of vCloud environments, coupled with new and different technology, requires ...

Get VMware vCloud® Architecture Toolkit (vCAT): Technical and Operational Guidance for Cloud Success now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.