AWS Notes
Ir al canal en Telegram
AWS Notes — Amazon Web Services Educational and Information Channel Chat: https://t.me/aws_notes_chat Contacts: @apple_rom, https://www.linkedin.com/in/roman-siewko/ No ads.
Mostrar más5 803
Suscriptores
-224 horas
-17 días
+2630 días
Archivo de publicaciones
5 804
Хорошие комментарии от Андрея Девяткина по AWS Startup Security Baseline:
https://fivexl.io/blog/fivexl-reaction/
Особенно солидарен по пункту
Enforce a password policy, ведь IAM users в идеале быть не должно вообще, потому этот пункту заведомо ущербный.
📓 AWS Prescriptive Guidance — AWS Startup Security Baseline (AWS SSB)
#security5 804
Хорошие комментарии от Андрея Девяткина по AWS Startup Security Baseline:
https://fivexl.io/blog/fivexl-reaction/
Особенно солидарен по пункту
Enforce a password policy, ведь IAM users в идеале быть не должно вообще, потому этот пункту заведомо ущербный.
📓 AWS Prescriptive Guidance — AWS Startup Security Baseline (AWS SSB)
#security5 804
Repost from AWS Weekly
Issue #45 | 7 November – 13 November 2022
▪️ Amazon Time Sync public NTP service | guide
▪️ AppConfig achieves FedRAMP High Authority To Operate
▪️ Athena Query Result Reuse to accelerate queries
▪️ Aurora logical replication cache
▪️ Aurora Serverless v2 is now available in 20 regions
▪️ Backup VMware to EC2 workloads restore
▪️ Billing Conductor recurring custom line items
▪️ Certificate Manager ECDSA P-256 TLS certificates support
▪️ CloudTrail delegated administrator account
▪️ CloudTrail Lake Customer Managed KMS Keys (CMK) encryption
▪️ CloudWatch Logs export to SSE-KMS encrypted S3 buckets
▪️ Config 14 new resource types
▪️ EC2
| attribute-based instance type selection for ASG, EC2 Fleet, and Spot Fleet
| macOS Ventura support
| placement groups cross-account sharing
| price and capacity optimized allocation strategy for Spot Instances
▪️ ECS task scale-in protection |
blog
▪️ ElastiCache IPv6 support | Redis 7 support
▪️ EventBridge New Scheduler | new
▪️ Firewall Manager import existing Network Firewall resources
▪️ Ground Station Customer Provided Ephemeris | in preview
▪️ IoT Device Defender audit check of revoked intermediate CA
▪️ Kendra is now FedRAMP High Compliant
▪️ Keyspaces Murmur3Partioner support
▪️ Lambda new Telemetry API | blog
▪️ Lightsail domain registration and DNS autoconfiguration
▪️ OpenSearch Service cross-VPC connectivity with PrivateLink
▪️ Polly Swedish, Norwegian and Finnish | VPC Support | GA
▪️ Private 5G multiple radio-units support
▪️ QuickSight send SPICE consumption metrics to CloudWatch
▪️ RDS for SQL Access to Transaction Log Backups
▪️ RDS new GP3 storage volumes support: no multi-az
▪️ Resource Explorer resource search and discovery service | GA
▪️ SageMaker Canvas
| correlation matrices for advanced data analysis
| customer managed keys for time series forecast models
| Stable Diffusion and Bloom models
| TensorFlow Text Classification algorithms
▪️ Secrets Manager API RPS limit increase
▪️ Security Hub CIS Benchmark 1.4.0
▪️ SNS subscription filter policies quota increase by 50x
▪️ VPC IPv6 Subnet default GR now supports multiple addresses
▪️ Wavelength Zone in Manchester
▪️ Well-Architected Tool speed up reviews with workload discovery
▪️ WorkSpaces WSP protocol API5 804
«Эффективное масштабирование кластеров Kubernetes с помощью Karpenter» - Виктор Ведмич, AWS.
Видео с DevOpsDays Almaty 11 ноября 2022 года, ссылка с отметкой времени на начало доклада:
https://youtu.be/xR_d-Z-BbPg?t=10044
#video
5 804
🆕 EventBridge Scheduler: 🎉🎉🎉
https://aws.amazon.com/blogs/compute/introducing-amazon-eventbridge-scheduler/
EventBridge Scheduler provides at-least-once event delivery to targets, and you can create schedules that adjust to different delivery patterns:
⏰ Time window allows you to start a schedule within a window of time. This means that the scheduled tasks are dispersed across the time window to reduce the impact of multiple requests on downstream services.
⏳ Maximum retention time of the event is the maximum time to keep an unprocessed event in the scheduler. If the target is not responding during this time, the event is dropped or sent to a DLQ.
🔁 Retries with exponential backoff help to retry a failed task with delayed attempts. This improves the success of the task when the target is available.
✉️ A dead letter queue is an SQS queue where events that failed to get delivered to the target are routed.
By default, EventBridge Scheduler tries to send the event for 24 hours and a maximum of 185 times.
⚠️ Quota on schedules: 1 million per account (soft limit)
#EventBridge
5 804
🆕 EventBridge Scheduler: 🎉🎉🎉
https://aws.amazon.com/blogs/compute/introducing-amazon-eventbridge-scheduler/
EventBridge Scheduler provides at-least-once event delivery to targets, and you can create schedules that adjust to different delivery patterns:
⏰ Time window allows you to start a schedule within a window of time. This means that the scheduled tasks are dispersed across the time window to reduce the impact of multiple requests on downstream services.
⏳ Maximum retention time of the event is the maximum time to keep an unprocessed event in the scheduler. If the target is not responding during this time, the event is dropped or sent to a DLQ.
🔁 Retries with exponential backoff help to retry a failed task with delayed attempts. This improves the success of the task when the target is available.
✉️ A dead letter queue is an SQS queue where events that failed to get delivered to the target are routed.
By default, EventBridge Scheduler tries to send the event for 24 hours and a maximum of 185 times.
⚠️ Quota on schedules: 1 million per account (soft limit)
#EventBridge
5 804
Repost from AWS User Group | Tashkent
It's happening today!
We are starting our session today at 6:30PM at Westminster International University.
📌 LOCATION: Istikbol Building, Floor 2, Room 201.
Guests will be admitted from the main entry at Istikbol Street.
❗️PLEASE BRING YOUR PASSPORT, AS UNIVERSITY POLICY REQUIRE ALL GUESTS TO PRESENT A VALID FORM OF ID.
If you have any questions, you can ask them in our Telegram chat.
5 804
🆕 AWS Resource Explorer:
https://aws.amazon.com/blogs/aws/introducing-aws-resource-explorer-quickly-find-resources-in-your-aws-account/
✅ Search for resources in all regions at once.
✅ You can search directly from the console by typing
/Resources (in the picture).
✅ Free!
❌ So far, you can search inside only one account.
#Resource_Explorer5 804
Новый AWS Region — Цюрих, Швейцария: 🎉
https://aws.amazon.com/blogs/aws/a-new-aws-region-opens-in-switzerland/
Седьмой (!) на текущий момент в Европе, идентификатор
eu-central-2. Как и в подавляющем большинстве других регионов, имеет 3 AZ.
Итого на теперь всего — 28 регионов.
#AWS_Regions5 804
AWS Outpost - полностью управляемое решение, которое позволяет пользователям вынести инфраструктуру AWS, включая сервисы, API и инструменты в собственный центр обработки данных. И теперь AWS Outposts можно заказать в Казахстан, совместно с @RinatUzbekov и @igor_sh_aws - рассказали что за зверь такой AWS Outposts, для каких целей он потребуется, какие сервисы будут доступны на нем. Демо как заказать AWS Outposts и какой процесс доставки оплаты, все это и не только в нашем видео подкасте. Для вашего удобства есть тайм-коды.
#podcast
Посмотреть и послушать можно тут:
- Видео формат - YouTube
- Apple Podcasts
- Google Podcasts
- Spotify
- PodBean
- Yandex Music
5 804
Что-то Dynamo DB от Маарека заходила с трудом, поискал в ютубе русскоязычное и неожиданно наткнулся на весьма годный ролик, пусть и немного староватый. Рекомендую: https://www.youtube.com/watch?v=ldV512UFkmY
5 804
Issue 44 | 31 October – 6 November, 2022
▪️AMS now supports SQL Server on EC2 Operations
▪️App Runner VPC Support
▪️AppStream certificate-based authentication
▪️Braket Aquila - neutral atom quantum processor
▪️CloudFormation
- RDS Multi-AZ deployments with two readable standbys
- StackSets improves insights on stack instances
▪️Connect
-
DismissUserContact API | GA
- Customer Profiles extra customer info
- quick connects new UI, Cloudtrail support
▪️Copilot support App Runner’s privately accessible services
▪️EC2 opt out of directly shared AMI
▪️EMR on EKS cross-job parameter sharing with job templates
▪️IoT Core Location Action
▪️Kinesis Data Streams inspect data records via console
▪️Launch Wizard
- Host Auto Failover for FSx NetApp ONTAP and SAP HANA
- placing MSSQL tempdb in an instance store
▪️MemoryDB Redis data tiering
▪️Migration Hub Orchestrator MSSQL migration
▪️ParallelCluster multiple instance type allocation
▪️Polly Dutch NTTS voice
▪️RDS
- Custom for SQL scaling storage
- RDS Multi-AZ 2x faster transaction commit latency
▪️S3 on Outposts new Lifecycle actions and filters
▪️SageMaker Autopilot
- 2x faster experiments in Hyperparameter Optimization training mode
- AutoML experiment feature selection and data type change
▪️Security Hub new integration partner Wiz
▪️SES Virtual Deliverability Manager
▪️SNS real-time data redaction, data masking, data protection | GA
▪️Textract
- Analyze Expense API
- Analyze ID API
- new forms and text extraction features
▪️VPC cross-account Elastic IP transfer
▪️WAF Granular Geographic Match5 804
🆕 AWS RDS +
gp3! 🎉
https://docs.aws.amazon.com/AmazonRDS/latest/UserGuide/CHAP_Storage.html#gp3-storage
#RDS5 804
AWS services that support IPv6:
https://docs.aws.amazon.com/general/latest/gr/aws-ipv6-support.html#ipv6-service-support
p.s. My forecast is that the picture can seriously change in a month. 😀
#IPv6
5 804
Всем привет! AWS запустил Specialty Certification Challenge и при регистрации можно получить 50% скидку на экзамены - https://pages.awscloud.com/GLOBAL-ln-GC-TrainCert-Specialty-Certification-Challenge-2022-reg.html
¡Ya disponible! Investigación de Telegram 2025 — los principales insights del año 
