AWS Notes
5.59K subscribers
452 photos
42 videos
10 files
2.81K links
AWS Notes β€” Amazon Web Services Educational and Information Channel

Chat: https://t.iss.one/aws_notes_chat

Contacts: @apple_rom, https://www.linkedin.com/in/roman-siewko/
Download Telegram
​​Weekly Summary on AWS (April 10-16)

πŸ”Έ AppStream 2.0 + session scripts for Elastic fleets
πŸ”Έ App Runner + X-Ray πŸ‘ˆ
πŸ”Έ CloudWatch Metric Streams + additional statistics
πŸ”Έ DataSync + FSx for OpenZFS
πŸ”Έ EC2 Console launch page + EFS & FSx πŸ‘€
πŸ”Έ Fargate + 20X faster scaling πŸ’ͺ
πŸ”Έ FSx for NetApp ONTAP + single AZ deployment πŸ’₯
πŸ”Έ Kinesis Data Firehose + Coralogix
πŸ”Έ Personalize + resource tagging
πŸ”Έ PrivateLink + Connect Wisdom
πŸ”Έ SSO synchronization from AD πŸ‘
πŸ”Έ WorkSpaces + G4dn instances

πŸ”Ή Aurora MySQL + cipher suites
πŸ”Ή Chime SDK for JavaScript 3.0 and React Components 3.0
πŸ”Ή Registry of Open Data + 16 new or updated datasets

#AWS_week
πŸ‘2
​​Aurora Serverless v2:

https://aws.amazon.com/blogs/aws/amazon-aurora-serverless-v2-is-generally-available-instant-scaling-for-demanding-workloads/

Aurora Serverless v2 enables you to scale your database to hundreds of thousands of transactions per second and cost-effectively manage the most demanding workloads. It scales database capacity in fine-grained increments to closely match the needs of your workload without disrupting connections or transactions.

If you have an existing Aurora cluster, you can create an Aurora Serverless v2 instance within the same cluster. This way, you’ll have a mixed configuration cluster where both provisioned and Aurora Serverless v2 instances can coexist within the same cluster.

Aurora Serverless v2 capacity scales up and down within the minimum 0.5 ACUs and maximum 128 ACUs configuration.

Versions supported:
πŸ”Ή PostgreSQL 13
πŸ”Έ MySQL 8.0

#Aurora #Serverless
πŸ‘4πŸŽ‰1
​​Weekly Summary on AWS (April 17-23)

πŸ”Έ ACK (AWS Controllers for Kubernetes) + EKS, ECR, DynamoDB, S3, Autoscaling and API Gateway v2 + GA πŸ‘€
πŸ”Έ Amazon Linux 2022 + ECS-optimized AMI
πŸ”Έ Amplify Geo for Android + GA
πŸ”Έ Amplify Studio + GA πŸ’ͺ
πŸ”Έ Athena + 10 new data sources πŸ”₯
πŸ”Έ Aurora Serverless v2 + GA πŸŽ‰
πŸ”Έ Batch + dynamically update configuration
πŸ”Έ CloudFormation + 35 new resources
πŸ”Έ Connect + API for phone numbers
πŸ”Έ DevOps Guru Proactive Insights for Serverless Applications
πŸ”Έ EC2 Auto Scaling + default instance warm-up time
πŸ”Έ EKS + OpenTelemetry Operator addon
πŸ”Έ Glue
βž– Auto Scaling + GA
βž– Interactive Sessions + GA
βž– Glue Studio Detect PII + GA
βž– Glue Studio Job Notebooks + GA
πŸ”Έ IoT TwinMaker + GA πŸ‘
πŸ”Έ Kendra
βž– Box Connector
βž– Quip Connector
πŸ”Έ Keyspaces + Spark Cassandra connector
πŸ”Έ KMS + HMAC πŸ‘€
πŸ”Έ Macie + discovering more types of sensitive data
πŸ”Έ Migration Hub Orchestrator
πŸ”Έ Neptune
βž– Free trial πŸ‘ˆ
βž– IAM global condition keys
βž– openCypher GA
πŸ”Έ Personalize + starting and stopping recommender
πŸ”Έ PrivateLink + Batch
πŸ”Έ QuickSight + 1-click public embedding
πŸ”Έ RDS + Multi-AZ for Outposts
πŸ”Έ Redshift Audit Logging + CloudWatch
πŸ”Έ SageMaker Serverless Inference + GA
πŸ”Έ Security Hub + cross-Region security scores and compliance statuses
πŸ”Έ Step Functions + 20 new AWS SDK integrations
πŸ”Έ Textract + Queries

πŸ”Ή Corretto 18.0.1, 17.0.3, 11.0.15, and 8u332
πŸ”Ή Launch Wizard
βž– IIS
βž– Microsoft Exchange Server
πŸ”Ή MQ + ActiveMQ 5.16.4

#AWS_week
πŸ‘2
​​Weekly Summary on AWS (April 24-30)

πŸ”Έ Audit Manager + AWS Config custom rules
πŸ”Έ CloudFormation + AWS::EC2::KeyPair πŸ‘
πŸ”Έ Connect
βž– API to search by name, agent hierarchies, and tags
βž– PutUserStatus
βž– Search and review Voice ID results
πŸ”Έ EC2 i4i instances πŸ’₯
πŸ”Έ EC2 key pairs
βž– Retrieve public key and creation date
βž– PPK for ED25519
πŸ”Έ IAM + aws:ResourceAccount, aws:ResourceOrgPaths, and aws:ResourceOrgID πŸ‘€
πŸ”Έ Interactive Video Service + stream chat
πŸ”Έ Lambda + Insights via Application Insights
πŸ”Έ Lightsail
βž– HTTPS redirects
βž– TLS policy
πŸ”Έ MSK Serverless + GA πŸŽ‰
πŸ”Έ Network Firewall + AWS Managed Threat Signatures
πŸ”Έ Rekognition Streaming Video Events + GA πŸŽ‰
πŸ”Έ RDS
βž– IPv6 πŸ‘
βž– Query results in JSON
βž– Usage metrics against AWS service limits
πŸ”Έ SageMaker Data Wrangler
βž– Data Quality and Insights Report
βž– Random and stratified samples
πŸ”Έ SES v2 + 40MB message size
πŸ”Έ Service Catalog CDK constructs ⚠️
πŸ”Έ Snow
βž– Large Data Migration Manager
βž– Managing devices remotely
βž– Update of device certificates

πŸ”Ή Control Tower landing zone v.2.9
πŸ”Ή EKS + Karpenter v0.9.0 with Pod Affinity πŸ‘ˆ
πŸ”Ή Launch Wizard + clone inputs for SAP
πŸ”Ή Polly + Neural TTS voice in Brazilian Portuguese
πŸ”Ή RDS for MariaDB + m6i/r6i instances
πŸ”Ή RDS for MySQL + m6i/r6i instances
πŸ”Ή RDS for PostgreSQL + m6i/r6i instances
πŸ”Ή Wavelength Zone + Toronto

#AWS_week
πŸ‘6❀1
Forwarded from CloudSec Wine (АртСм ΠœΠ°Ρ€ΠΊΠΎΠ²)
πŸ”Ά AWS Security Fundamentals

Self-paced course to learn fundamental AWS cloud security concepts, including AWS access control, data encryption methods, and how network access to your AWS infrastructure can be secured.

https://explore.skillbuilder.aws/learn/course/external/view/elearning/48/aws-security-fundamentals-second-edition

#aws
πŸ‘6❀2
​​Weekly Summary on AWS (May 1-7)

πŸ”Έ AMB (Amazon Managed Blockchain) + Goerli for Ethereum
πŸ”Έ AppConfig Feature Flag Lambda Extension + Arm/Graviton2
πŸ”Έ Braket Hybrid Jobs + embedded circuit simulators
πŸ”Έ CodeGuru Reviewer + suppress recommendations
πŸ”Έ Compute Optimizer + 4 new Trusted Advisor checks πŸ‘
πŸ”Έ Connect
βž– Schedule Manager + displays metrics
βž– StopContact
βž– Up to 6 participants on a customer service call
πŸ”Έ EKS console + info about the Kubernetes resources πŸ‘€
πŸ”Έ IoT Secure Tunneling + single-use token and token rotation
πŸ”Έ Kinesis Video Streams + image extraction
πŸ”Έ Lex + custom vocabulary
πŸ”Έ Outposts + RDS storage autoscaling
πŸ”Έ Quicksight line chart + 2 500 β†’ 10 000 data points
πŸ”Έ RDS for PostgreSQL + cascading read replicas for 14.1+ πŸ‘ˆ
πŸ”Έ RDS Performance Insights + custom time window
πŸ”Έ SageMaker Canvas + new data preparation features
πŸ”Έ SAM CLI + X-Ray
πŸ”Έ Service Catalog Provisioning constructs for AWS CDK

πŸ”Ή ElastiCache + new console
πŸ”Ή Panorama + Lenovo ThinkEdge SE70
πŸ”Ή RDS for SQL Server + SQL Server 2016 SP3, 2017 CU27, and 2019 CU15
πŸ”Ή Rekognition + Face API version 6
πŸ”Ή SageMaker Data Wrangler + M5/R5 instances

#AWS_week
πŸ‘4❀1
​​Weekly Summary on AWS (May 8-14)

πŸ”Έ Amplify Android Library + Kotlin
πŸ”Έ Athena + Hive views
πŸ”Έ Backup Audit Manager + compliance status for VMware Virtual Machines
πŸ”Έ CloudWatch
βž– AMI events πŸ‘
βž– CloudWatch Synthetics + canary resources deletion
βž– Prometheus usage metrics
βž– Secrets Manager usage metrics
πŸ”Έ EC2 NitroTPM & UEFI Secure Boot + GA πŸŽ‰
πŸ”Έ EKS Anywhere + curated packages πŸ‘€
πŸ”Έ EFS + locks per connection 8192 β†’ 65536
πŸ”Έ GameKit for Unreal Engine + Android, iOS, and MacOS πŸŽ‰
πŸ”Έ IoT SiteWise + BatchGetAssetPropertyValueHistoryBatchGetAssetPropertyValue, and BatchGetAssetPropertyAggregates
πŸ”Έ Lambda + Node.js 16 πŸ’₯
πŸ”Έ Lex + phrase hints
πŸ”Έ PrivateLink + IPv6 πŸ’ͺ
πŸ”Έ SSO + delegated admin πŸ‘ˆ
πŸ”Έ VPC
βž– Multiple IPv6 CIDR blocks ⚠️
βž– Traffic Mirroring + GWLB

πŸ”Ή FreeRTOS + Espressif, NXP and STMicroelectronics
πŸ”Ή SageMaker Notebook Instances + ml.g5 & Python 3.8
πŸ”Ή Step Functions + new console

#AWS_week
πŸ‘5
Π—Π΅Ρ€ΠΊΠ°Π»ΠΎ ΠΎΡ„ΠΈΡ†ΠΈΠ°Π»ΡŒΠ½Ρ‹Ρ… ΠΏΡ€ΠΎΠ²Π°ΠΉΠ΄Π΅Ρ€ΠΎΠ² для terraform, доступноС с российских ΠΈ бСлорусских адрСсов: https://registry.comcloud.xyz/
πŸ‘Ž64πŸ‘33
DevOpsDays Ukraine May 17-18, online talks:

πŸ”Ή Incident Response: Moving Beyond the Reaction β€” Emily Freeman (AWS)
πŸ”Έ Navigating Complexity of Decision-Making for Resilient Data Architectures β€” Lena Hall (AWS)

Join us: https://devopsdays.com.ua
πŸ‘8πŸ‘Ž2❀1
πŸ‘23
​​Weekly Summary on AWS (May 15-21)

πŸ”Έ ADOT (AWS Distro for OpenTelemetry) + metrics
πŸ”Έ App Mesh + IPv6 πŸ‘
πŸ”Έ Backup
βž– FSx for NetApp ONTAP πŸŽ‰
βž– FSx for OpenZFS πŸŽ‰
πŸ”Έ Chime SDK + video background replacement and blur on iOS and Android
πŸ”Έ Control Tower
βž– Concurrent operations for all optional guardrails
βž– Existing security and logging accounts πŸ‘€
πŸ”Έ EC2 Auto Scaling + metric data from the previous 14 days for Predictive Scaling
πŸ”Έ EC2 i4i.metal instances πŸŽ‰
πŸ”Έ Encryption SDK for .NET + GA
πŸ”Έ Glue
βž– Glue Studio Visual Job API + GA
βž– KAFKA_SASL_MECHANISM
πŸ”Έ Kendra + Jira connector
πŸ”Έ QuickSight 1-click public embedding + GA
πŸ”Έ Redshift
βž– Isolation level SERIALIZABLE for concurrent transactions
βž– Linear learner algorithm with Redshift ML
πŸ”Έ Resilience Hub + ECS, Route 53, DRS, Backup, and Terraform
πŸ”Έ SSM Incident Manager + automatically create incidents  in other regions, populate runbook parameters with incident metadata, and collect resource information

πŸ”Ή CloudWatch Console + new dashboard widgets
πŸ”Ή MQ + RabbitMQ 3.9.16 & 3.8.30
πŸ”Ή Kubeflow v1.4.1

#AWS_week
πŸ”₯6πŸ‘1
​​Amazon EC2 Graviton3 instances - c7g:

https://aws.amazon.com/blogs/aws/new-amazon-ec2-c7g-instances-powered-by-aws-graviton3-processors/

c6g.medium $0.034 Up to 10 Gigabit
c7g.medium $0.0363 Up to 12.5 Gigabit

c6g.large $0.068 Up to 10 Gigabit
c7g.large $0.0725 Up to 12.5 Gigabit
c6a.large $0.0765 Up to 12.5 Gigabit
c6i.large $0.085 Up to 12.5 Gigabit

And also: πŸ‘‡

▫️ Free trial on t4g.small instances (Again! The fourth πŸ”₯ time!) for up to 750 hours/month until the end of this year (December 31, 2022)! πŸ’ͺ

#EC2
πŸ”₯4πŸ‘2
πŸ‘3πŸ”₯3πŸ‘1
​​Weekly Summary on AWS (May 22-28)

πŸ”Έ AMG + version 8.4 & creating Grafana API tokens
πŸ”Έ Backup Audit Manager + S3 & Storage Gateway
πŸ”Έ CloudFront + CloudFront-Viewer-TLS header
πŸ”Έ Config + CloudWatch
πŸ”Έ Comprehend + 14 new PII entity types
πŸ”Έ DataSync
βž– GCP
βž– Azure
πŸ”Έ EC2
βž– c7g Graviton3 instances πŸ”₯
βž– m6id/c6id 7.6TB Local NVMe instances πŸ’₯
βž– p4de NVIDIA A100 GPUs instances πŸ’₯
βž– Stop protection πŸ‘ˆ
πŸ”Έ ECS Auto Scaling + changes for Capacity Providers
πŸ”Έ ElastiCache for Redis & MemoryDB for Redis + JSON
πŸ”Έ ElastiCache for Memcached 1.6.12 + in-transit encryption
πŸ”Έ FSx for Lustre + root squash
πŸ”Έ IoT Device Management + Active Jobs Limit 1000 β†’ 100 000
πŸ”Έ Lambda + PowerShell πŸ‘€
πŸ”Έ Lightsail + ECR
πŸ”Έ Personalize + offline metrics for recommenders
πŸ”Έ SSM + port forwarding to remote hosts πŸ‘
πŸ”Έ Transit Gateway Network Manager + Multi-Account Support

πŸ”Ή AppSync + new console
πŸ”Ή ElastiCache for Memcached 1.6.12
πŸ”Ή Genomics CLI v1.5.0
πŸ”Ή Launch Wizard + SQL Server using FSx for NetApp ONTAP
πŸ”Ή Wavelength Zone
βž– Nashville and Tampa
βž– Seoul

#AWS_week
πŸ‘10
Forwarded from CloudSec Wine (АртСм ΠœΠ°Ρ€ΠΊΠΎΠ²)
πŸ”Ά A Review of the AWS Security Model

AWS have released their own security maturity model, but does it stack up against what we're seeing in real-world attacks and in the approaches being suggested by the rest of the AWS security community?

https://www.nojones.net/posts/a-review-of-the-aws-security-maturity-model

#aws
πŸ‘2
​​Weekly Summary on AWS (May 29 - June 4)

πŸ”Έ Amplify
βž– AWSSigV4Signer
βž– Geo (JavaScript) + Geofences
πŸ”Έ AppSync + new GraphQL Utility Helpers
πŸ”Έ Braket + Borealis
πŸ”Έ Chime SDK + centralized attendee controls
πŸ”Έ Connect
βž– High-volume outbound communications
βž– Task templates
βž– TransferContact
πŸ”Έ Control Tower
βž– Account Factory for Terraform + customization for management, log, and audit accounts πŸ‘€
βž– Single account enrollment and update πŸ‘ˆ
πŸ”Έ Cognito + IP address in unauthenticated calls
πŸ”Έ Data Exchange for APIs + metered billing
πŸ”Έ DataSync + EFS security: Access Points, TLS, and IAM role
πŸ”Έ DRS +  multiple staging and target accounts
πŸ”Έ EBS io2 Block Express +  Elastic Volumes and Fast Snapshot Restore (FSR)
πŸ”Έ Elemental MediaTailor + CloudWatch Vended Logs
πŸ”Έ EMR Serverless + GA πŸŽ‰
πŸ”Έ FSx for OpenZFS + update the storage and IOPS capacity
πŸ”Έ IAM + WebAuthn & Safari πŸ‘
πŸ”Έ Kendra + GitHub SaaS & OnPrem connectors
πŸ”Έ Lookout for Metrics
βž– Anomaly detection
βž– Athena connector
πŸ”Έ Outposts + EC2 Dedicated Hosts
πŸ”Έ Pinpoint + custom message channel activity
πŸ”Έ PrivateLink
βž– S3 on Outposts
βž– Panorama
βž– Backup for VMware
πŸ”Έ Proton + components
πŸ”Έ RDS + SSE encrypted SNS topics
πŸ”Έ Route 53 + IP-based routing πŸ‘ˆ
πŸ”Έ SageMaker JumpStart
βž– Automatic tuning
βž– Incremental training for models
πŸ”Έ Transcribe + automatic language identification for multi-lingual audio

πŸ”Ή Marketplace + SaaS free trials
πŸ”Ή NoSQL Workbench for Amazon DynamoDB + CreateTable, UpdateTable, and DeleteTable
πŸ”Ή Step Functions + interactive workshop πŸ‘€
πŸ”Ή Storage Gateway Hardware Appliance + purchase through resellers
πŸ”Ή SUSE Linux Enterprise Server + price reduction
πŸ”Ή Well-Architected Tool + AWS re:Post

#AWS_week
πŸ‘7