AWS Notes
5.59K subscribers
439 photos
42 videos
10 files
2.8K links
AWS Notes — Amazon Web Services Educational and Information Channel

Chat: https://t.me/aws_notes_chat

Contacts: @apple_rom, https://www.linkedin.com/in/roman-siewko/
Download Telegram
EKS + IPv6:

https://aws.amazon.com/blogs/aws/amazon-elastic-kubernetes-service-adds-ipv6-networking/

🔸 First, you can run more pods on one single host or subnet without the risk of exhausting all available IPv4 addresses available in your VPC.
🔸 Second, it allows for lower-latency communications with other IPv6 services, running on-premises, on AWS, or on the internet, by avoiding an extra NAT hop.
🔸 Third, it relieves network engineers of the burden of maintaining complex routing configurations.

#EKS #IPv6
👍4🔥2
GKE in the EKS console:

https://aws.amazon.com/blogs/containers/connecting-google-kubernetes-engine-gke-clusters-to-amazon-eks/

With Amazon EKS Connector, customers can view their GKE cluster’s information along with Amazon EKS clusters in the EKS console.
In addition to GKE, Amazon EKS Connector allows you to register and connect any conformant Kubernetes cluster to Amazon EKS. Any external cluster information shown in the EKS console is view-only.

#EKS #GKE
👍3🔥2
Получаем тэги на виртуалке через метадата:

https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/Using_Tags.html#work-with-tags-in-IMDS

Сначала включаем:

aws ec2 modify-instance-metadata-options --instance-id $(curl -s http://169.254.169.254/latest/meta-data/instance-id) --instance-metadata-tags enabled

Теперь получаем:

curl -s http://169.254.169.254/latest/meta-data/tags/instance/Name
test.instance

#metadata
👍16
​​Weekly Summary on AWS (January 2-8)

🔹 EMR on EKS
Custom Image Validation Tool
Error message details
Customized container images including Graviton-based
EMR Studio JupyterLab v3.1.4

🔹 OpenSearch + version 1.1
Cross-cluster replication
Anomaly detection for historical data
Bucket Level Alerting
Fine grained access control on existing domains

🔹 Glue
Interactive Sessions and Job Notebooks
Personal Identifiable Information (PII) detection and remediation
Autoscaling

🔹 IoT Device Management + Automated Retry

🔹 IoT Core for LoRaWAN + Downlink Queue Management and Network Analyzer

🔹 Lambda + ES Modules and Top-Level Await for Node.js 14

🔹 EKS + IPv6

🔹 ACM Private CA + Kubernetes cert-manager v1.0

🔹 Redshift + AWS Data Exchange

🔹 CloudTrail Lake

🔹 CloudWatch Logs + Organizations

🔹 ECR + repository pull statistics

🔹 EC2 Instance Tags through Metadata

🔹 QLDB + JSON

🔹 Managed Blockchain + Hyperledger Fabric v2.2 LTS

🔹 EC2 On-Demand Capacity Reservations + Cluster Placement Groups

🔹 AppStream 2.0 + SAML 2.0 federated user identities

🔹 RDS for SQL Server + SSAS Multidimensional

🔹 Firewall Manager + Shield Advanced automatic application layer DDoS mitigation

#AWS_week
👍1
Forwarded from Nikolay
AWS Community Builders
Всем привет. Набор на весну 2022 официально открыт. Ссылка на форму - https://amazonmr.au1.qualtrics.com/jfe/form/SV_b89ma6QvizVPjWC?=CB2022-CBs

О программе я рассказывал, но вкратце расскажу о бенефитах:

SWAG от амазона(присылают посылкой)
500 долларов кредитов на все сервисы AWS(ну может быть кроме Ground Station) в год(раньше присылали физически, сейчас по e-mail)
Годовая бесплатная подписка на cloud academy
Ваучер на любой экзамен(1 раз в год)
Доступ к закрытым ивентам
Возможность постить в отдельной конфе на dev.to
Ну и конечно, самое главное - нетворкинг.

В общем много чего интересного и полезного.

Если у вас есть какие-либо блог-посты, публичные выступления, в общем абсолютно любой вклад в развитие коммунити - скорее всего вашу заявку одобрят. Не стесняйтесь и подавайтесь уже сегодня. Срок подачи заявок с сегодняшнего дня до 24 января.
Подробности поддержки IPv6 в EKS:

https://aws.amazon.com/blogs/containers/amazon-eks-launches-ipv6-support/

🔸 IPv6 support works for new and existing VPCs; you can opt in on a VPC-by-VPC basis.
🔸 Each VPC is given an IPv4 address prefix (CIDR block size can be from /16 to /28) a unique /56 IPv6 address prefix (fixed) from within Amazon’s GUA (Global Unicast Address); you can assign a /64 address prefix to each subnet in your VPC.
🔸 All the VPC features such as Security Groups, Route Tables, Network ACLs, Peering, and DNS resolution within a VPC all operate in the same way as IPv4.
🔸 Every instance gets both IPv4 and IPv6 addresses, along with corresponding DNS entries. For a given instance, only a single IPv4 address from the VPC address range is consumed.

#EKS #IPv6
​​Новая AWS Console — главная страница с полезной информацией.

Удобно, что сразу видны расходы (если включён доступ к биллингу для юзера в аккаунте), ссылки на последние сервисы и возможность расположить нужные элементы в удобных местах на дашборде.

Можно убрать или добавить виджеты (меню снизу), на текущий момент дополнительный виджет - это лишь Favorites. Можно изменить размер виджета, нажав Change Size.

В общем, реально полезное изменение для консоли, с удобным подходом, как это реализовано для AWS Activate.

Пользуемся!

#AWS_Console
👍6
Полезный пост с описанием моментов по созданию мультирегиональных приложений:

https://aws.amazon.com/blogs/architecture/creating-a-multi-region-application-with-aws-services-part-2-data-and-replication/

When building a distributed system, consider the consistency, availability, partition tolerance (CAP) theorem. This theorem states that an application can only pick 2 out of the 3, and tradeoffs should be considered.
▫️ Consistency – all clients always have the same view of data
▫️ Availability – all clients can always read and write data
▫️ Partition Tolerance – the system will continue to work despite physical partitions

#design
👍8
​​Weekly Summary on AWS (January 9-15)

🔸 AppSync + cache entry eviction
🔸 AWS Toolkit for JetBrains IDEs + ECS-Exec
🔸 EC2 + Hpc6a instance type
🔸 EC2 Windows Server + Launch Speed Optimizations
🔸 ElastiCache + publish logs (6.2+)
🔸 EMR Studio
• Real-time collaborative notebooks
SQL Explorer
🔸 IoT SiteWise Edge + Data Upload Prioritization
🔸 Kendra + query language
🔸 Lex + PrivateLink
🔹 Local Zones + Atlanta / Phoenix / Seattle
🔸 Redshift Spectrum + custom data validation rules
🔸 RDS for MySQL + 5.7.36 & 8.0.27
🔸 RDS Performance Insights + GetResourceMetadata, ListAvailableResourceDimensions, ListAvailableResourceMetrics
🔸 SageMaker Feature Store + connector for Spark
🔸 SNS + ABAC (Attribute-based access controls)
🔸 SSM + Command Document
🔹 Well-Architected Framework + Streaming Media Lens

#AWS_week
​​📚 FREE resources to prepare for AWS Certified Solution Architect Associate (SAA-CO2) exam.

1️⃣ AWS Ramp-Up Guide: Architect
https://d1.awsstatic.com/training-and-certification/ramp-up_guides/Ramp-Up_Guide_Architect.pdf

2️⃣ Exam Readiness: AWS Certified Solutions Architect – Associate (Digital)
https://explore.skillbuilder.aws/learn/course/external/view/elearning/125/exam-readiness-aws-certified-solutions-architect-associate-digital

3️⃣ AWS Certification Official Practice Question Sets (English)
https://explore.skillbuilder.aws/learn/course/external/view/elearning/9153/aws-certification-official-practice-question-sets-english

4️⃣ AWS Whitepapers + Well architected Framework + FAQs
https://aws.amazon.com/certification/certified-solutions-architect-associate/

5️⃣ Practice Exams
http://www.koenig-solutions.com/aws

p.s. Original source.

#AWS_certification
12👍1
Хорошая статья-сравнение параллельного запуска Lambda, App Runner и Fargate:

https://nathanpeck.com/concurrency-compared-lambda-fargate-app-runner/

🔸 Concurrency
🔹 Scaling

Lambda
🔸 Single concurrent request per Lambda function instance, but many separate Lambda function instances
🔹 Fully managed by AWS Lambda, default limit of 1000 concurrent executions. Scale out more function instances in under a second.

App Runner
🔸 Multiple concurrent requests per container, enforces a configurable hard limit such as 100 concurrent reqs/container
🔹 Fully managed by App Runner. Configure a concurrency limit per containerized process. Scale out more container instances in less than 1 min.

Fargate
🔸 Multiple concurrent requests per container, no built-in limits on concurrency per container
🔹 Managed by you. Scale out more container instances based on your desired metric: CPU, concurrency, or a custom metric. Scale out in less than 1 min.

#design
👍12
AWS CDK Crash Course:

https://www.youtube.com/watch?v=T-H4nJQyMig

00:15 CDK Crash Course Intro
01:13 What we'll cover
02:34 Resources
03:07 CDK Basics
07:34 What are CDK Constructs?
10:15 Level 3 Construct Examples
12:08 Synthesis, Assets, Bootstrapping and Deploy
14:53 CDK Workshop Speedrun - Cloud9 Prep
21:01 CDK Workshop Speedrun - New Project
28:02 CDK Workshop Speedrun - Hello, CDK
35:42 CDK Workshop Speedrun - Writing Constructs
42:26 CDK Workshop Speedrun - Using Construct Libraries
44:14 CDK Workshop Speedrun - Testing Constructs
48:51 Advanced CDK
59:32 More Resources and Thanks!

#CDK #video
👍1
​​FREE 🔥 AWS Exam Readiness courses from Tutorials Dojo:

https://portal.tutorialsdojo.com/product-category/aws/aws-digital-courses-2/aws-exam-readiness-courses/

▪️ AWS Certified Solutions Architect Professional (SAP-C01)
▪️ AWS Certified DevOps Engineer Professional (DOP-C01)
▪️ AWS Certified Security Specialty (SCS-C01)
▪️ AWS Certified Database Specialty (DBS-C01)
▪️ AWS Certified Data Analytics Specialty (DAS-C01)
▪️ AWS Certified Machine Learning Specialty (MLS-C01)

#AWS_certification
​​Weekly Summary on AWS (January 16-22)

🔸 CloudWatch Application Insights + Microsoft AD & SharePoint
🔸 DRS (AWS Elastic Disaster Recovery) + failback
🔸 DynamoDB + ReturnConsumedCapacity
🔸 FinSpace + Spark 3.1.2
🔸 FSx for NetApp ONTAP + CloudWatch
🔸 EMR
• Spark SQL to insert data into and update Glue Data Catalog
Iceberg
🔸 GuardDuty + detection of EC2 credentials used from another AWS account
🔸 Location Service
Matrix routing
Request-based pricing for all customer use cases
🔸 Migration Hub Strategy Recommendations + Babelfish for Aurora PostgreSQL
🔸 MQ + RabbitMQ 3.8.26
🔸 Security Hub
Trusted Advisor adds 111 checks
• Integration with AWS Health
🔸 SSM Automation
• Execute runbooks from Slack
Outbound webhooks for 3-d party tools
🔸 SageMaker Pipelines
EMR integration for large scale data processing
Parallelism Configuration
🔸 AWS Client VPN + banner text and maximum session duration
🔹 Wavelength Zones + Charlotte, Detroit, Los Angeles and Minneapolis

#AWS_week
👍10