SlideShare ist ein Scribd-Unternehmen logo
1 von 32
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
AWS Directory Service, Amazon
WorkSpaces, Amazon WorkMail,
and Amazon WorkDocs
Jerry Rhoads
©2015, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Agenda
1. AWS Directory Service
2. Amazon WorkSpaces
3. Amazon WorkMail
4. Amazon WorkDocs
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
AWS Directory Service overview
• “Directory as a Service”
– Windows 2008 R2 compatible forest/domain
– Amazon EC2 instances can join the domain at launch
– Deploy AD-dependent applications on Windows in Amazon EC2
– Enables single sign-in to the AWS management console and
services
• Alleviates the pain of deploying, configuring, and
maintaining directory infrastructure in Amazon EC2
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
AWS Directory Service modes
AWS Directory Service operates in one of
two modes:
– Simple AD
– AD Connector
*Does not support EC2 Classic network*
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Simple AD directory mode
Simple AD directory mode:
• Samba 4 as the backend
• Resides only in the AWS cloud; cannot extend to on-premises
• Limited to VPC EC2 instances
• Supports applications such as SQL and SharePoint
• Supports Kerberos
• Group Policies
• Manage directory via common LDAP tools or Microsoft Directory Services MMC
• Supports ADSIedit
• Windows Event Viewer compatible logs
• Windows CLI tools such as dsadd, dsmod, and the csvde import tool
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Simple AD prerequisites
Simple AD directory for use with VPC instances:
• A VPC
• At least two subnets in different Availability Zones
• Directory Service creates two ENIs in your VPC to be
used as DNS servers
• Directory Service creates a security group to allow
you to control access to your directory
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Simple AD Directory Service ports
• TCP/UDP 53 – DNS
• TCP/UDP 88 - Kerberos authentication
• UDP 123 – NTP
• TCP 135 – RPC
• UDP 137-138 – Netlogon
• TCP 139 – Netlogon
• TCP/UDP 389 – LDAP
• TCP/UDP 445 – SMB
• TCP 873 – FRS
• TCP 3268 - Global Catalog
• TCP/UDP 1024-65535 - Ephemeral ports for RPC
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
AWS Directory Service backups
• Ability to backup directory data by creating
snapshots:
– Manual
– Auto
• Restore the directory from snapshots
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
AWS Directory Service AD Connector
AD Connector mode:
• Enables use of existing AD credentials on on-premises Active Directory domain
• Connects your on-premises directory to AWS apps and services such as
WorkSpaces, WorkDocs, and WorkMail
• Allows single sign-in to the AWS console
• On-premises data is not stored on AWS
• Forwards requests (i.e., authentication, query/search) and sends them to the on-
premises domain
• Choice of small or large connector type
• Support for Multi-Factor Authentication (MFA) – Radius
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
AWS Directory Service AD Connector
AD Connector directory requirements:
– Requires VPC with VPN connection (software-based or hardware-based)
– IP address of on-premises DNS servers
– Credentials of domain-privileged user (required by AD Connector account)
• Read all user information
• Join a computer to the domain
– AWS Directory Service creates a Connect SecurityGroup that is used on the
customer side
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon Directory Services access URL
• Globally unique, ‘friendly’ identifier for a directory, for example:
mobyapp.awsapps.com
• One unique access URL per directory
• Used by Amazon WorkMail and Amazon WorkDocs to access the
service and/or access the AWS management console
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
AWS console access
– Ability to use your on-premises AD or Simple AD
directory credentials to log in to the AWS
management console
– Map users or groups to Amazon IAM roles (new
or existing)
– Use access URL of directory followed by /console
(ie. https://mobyapp.awsapps.com/console)
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon WorkSpaces availability
Available in the following regions:
• us-east-1 (N. Virginia)
• us-west-2 (Oregon)
• eu-west-1 (Ireland)
• ap-southeast-2 (Sydney)
• ap-northeast-1 (Tokyo)
• ap-southeast-1 (Singapore)
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon WorkSpaces: key service features
• Highly secure cloud workspace accessible from
any device
• Persistent, highly secure cloud-based storage
• Amazon WorkSpaces can be joined to your
Active Directory
• Integration with customer VPC/VPN to provide
access to on-premises resources
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon WorkSpaces devices
• iPad
• Kindle Fire HDX (keyboard & mouse)
• Android tablet
• Microsoft Windows
• Mac
• Zero clients
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Keep data highly secure and available
• No data stored on end-user device
• Only pixels delivered to users (PCoIP)
• User volume backed up by Amazon S3
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Getting started – what are the steps?
• Integrate VPC with corporate Active Directory (or
use Simple Directory)
• Choose Amazon WorkSpaces bundle
• Select users to receive Amazon WorkSpaces
• Launch Amazon WorkSpaces
• Users receive email when provisioned
• Users connect to Amazon WorkSpaces
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
eth0 serves WorkSpaces
pixels back to the client
device
eth1 serves traffic to:
• Internet
• Resources in VPC
• Resources on-prem
eth0
eth1
Corp on-prem
network
Corp VPC
eni
Internet gateway
Internet
AWS Direct Connect
Amazon WorkSpaces are dual-homed
Windows Server 2008 R2 instances
with Windows 7 experience
eth1 = Corp VPC
Amazon
Client connects to a “WorkSpaces gateway”
between your device and your WorkSpaces
PCoIP
tcp and udp 4172
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon WorkMail overview
• Provides a highly secure email and
calendaring service
• Integrates with an existing corporate directory
• Controls both the keys that encrypt data and
the location in which the data is stored
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon WorkMail access
• Microsoft Outlook clients (Windows & OS X)
• Exchange ActiveSync protocol-enabled devices
– iPhone, iPad
– Kindle Fire, Fire Phone
– Android
– Windows Phone
– BlackBerry 10
• Web browser
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon WorkMail limits
• Up to 25 users for a 30-day free trial
• Mailbox size: 50 GB
• Maximum in/out message size: 25 MB
• Maximum number of recipients per email: 500
• Each user can send mail to up to 3,000
recipients every 24 hours
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon WorkMail FAQs
• Mailbox’s data at-rest is encrypted
• Data in-transit is encrypted
• Mail is scanned for spam, malware, viruses
• Integrates with Amazon Simple Directory and on-premises Active
Directory
• Supports @corpname.com email suffix
• Supports Active Directory distribution groups
• Mailboxes managed via AWS console
• Supports Mobile Policies
• Integrates with Amazon WorkDocs*
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon WorkMail regions (as of June 25, 2015)
• us-east-1 (N. Virginia)
• eu-west-2 (Ireland)
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon WorkDocs
Fully managed, highly secure enterprise storage and sharing
service.
Amazon WorkDocs users can:
– Comment on files
– Send documents to others for feedback
– Upload new versions
– Sync files between PC/MAC and Amazon WorkDocs
Eliminates the need to email and track changes to documents
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon WorkDocs supported platforms
• Supported platforms:
– PCs
– Macs
– Tablets
– Phones
• Integrates with existing corporate directory (via AD
Connector)
• Has flexible sharing policies, audit logs, and provides
control of the location where data is stored
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon WorkDocs administration & control
• Simple user management
• Delegated administration
• Fine-grained quota controls
• Employee content migration
• Viral invite option
• Audit logs
• Multi-Factor Authentication
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon WorkDocs
Sync client for Mac and Windows
• Download client from Amazon Web Services
• Register client
• Provide credentials (AD username/password)
• Choose files to sync and folders to sync
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon WorkDocs sync excluded files
• .lock or .~doctor.ppt
• hello.txt~ or ~hello.txt
• ppt.C407.tmp or ~WRD000.tmp
• Microsoft User Data or Outlook file
• */:<>?|
• Files over 5 TB
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Amazon WorkDocs
• Supports MFA with Radius
• Single sign-in available from an Amazon
WorkSpaces session
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
DEMO corporate directory integration
Users: Get to use existing enterprise credentials
IT: WorkSpaces control like regular desktops
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015
Thank You.
This presentation will be loaded to SlideShare the week following the Symposium.
http://www.slideshare.net/AmazonWebServices
AWS Government, Education, and Nonprofit Symposium
Washington, DC I June 25-26, 2015

Weitere ähnliche Inhalte

Was ist angesagt?

Heroku Elevator Pitch Deck/DX Quick Pitch of Heroku to a Customer
Heroku Elevator Pitch Deck/DX Quick Pitch of Heroku to a CustomerHeroku Elevator Pitch Deck/DX Quick Pitch of Heroku to a Customer
Heroku Elevator Pitch Deck/DX Quick Pitch of Heroku to a CustomerSalesforce Partners
 
MSA ( Microservices Architecture ) 발표 자료 다운로드
MSA ( Microservices Architecture ) 발표 자료 다운로드MSA ( Microservices Architecture ) 발표 자료 다운로드
MSA ( Microservices Architecture ) 발표 자료 다운로드Opennaru, inc.
 
[웨비나] 클라우드 마이그레이션 수행 시 가장 많이 하는 질문 Top 10!
[웨비나] 클라우드 마이그레이션 수행 시 가장 많이 하는 질문 Top 10![웨비나] 클라우드 마이그레이션 수행 시 가장 많이 하는 질문 Top 10!
[웨비나] 클라우드 마이그레이션 수행 시 가장 많이 하는 질문 Top 10!Open Source Consulting
 
Lacework slides from AWS Meetups
Lacework slides from AWS MeetupsLacework slides from AWS Meetups
Lacework slides from AWS MeetupsJohn Varghese
 
(DVO401) Deep Dive into Blue/Green Deployments on AWS
(DVO401) Deep Dive into Blue/Green Deployments on AWS(DVO401) Deep Dive into Blue/Green Deployments on AWS
(DVO401) Deep Dive into Blue/Green Deployments on AWSAmazon Web Services
 
AWS January 2016 Webinar Series - Introduction to Docker on AWS
AWS January 2016 Webinar Series - Introduction to Docker on AWSAWS January 2016 Webinar Series - Introduction to Docker on AWS
AWS January 2016 Webinar Series - Introduction to Docker on AWSAmazon Web Services
 
An Introduction to the AWS Well Architected Framework - Webinar
An Introduction to the AWS Well Architected Framework - WebinarAn Introduction to the AWS Well Architected Framework - Webinar
An Introduction to the AWS Well Architected Framework - WebinarAmazon Web Services
 
Microservices Architecture & Testing Strategies
Microservices Architecture & Testing StrategiesMicroservices Architecture & Testing Strategies
Microservices Architecture & Testing StrategiesAraf Karsh Hamid
 
Mainframe Modernization with AWS: Patterns and Best Practices
Mainframe Modernization with AWS: Patterns and Best PracticesMainframe Modernization with AWS: Patterns and Best Practices
Mainframe Modernization with AWS: Patterns and Best PracticesAmazon Web Services
 
Simplify DevOps with Microservices and Mobile Backends.pptx
Simplify DevOps with Microservices and Mobile Backends.pptxSimplify DevOps with Microservices and Mobile Backends.pptx
Simplify DevOps with Microservices and Mobile Backends.pptxssuser5faa791
 
Consul: Service Mesh for Microservices
Consul: Service Mesh for MicroservicesConsul: Service Mesh for Microservices
Consul: Service Mesh for MicroservicesArmonDadgar
 
(SOV204) Scaling Up to Your First 10 Million Users | AWS re:Invent 2014
(SOV204) Scaling Up to Your First 10 Million Users | AWS re:Invent 2014(SOV204) Scaling Up to Your First 10 Million Users | AWS re:Invent 2014
(SOV204) Scaling Up to Your First 10 Million Users | AWS re:Invent 2014Amazon Web Services
 
성공적인 AWS Cloud 마이그레이션 전략 및 사례 - 방희란 매니저:: AWS Cloud Track 1 Intro
성공적인 AWS Cloud 마이그레이션 전략 및 사례 - 방희란 매니저:: AWS Cloud Track 1 Intro성공적인 AWS Cloud 마이그레이션 전략 및 사례 - 방희란 매니저:: AWS Cloud Track 1 Intro
성공적인 AWS Cloud 마이그레이션 전략 및 사례 - 방희란 매니저:: AWS Cloud Track 1 IntroAmazon Web Services Korea
 
(BAC404) Deploying High Availability and Disaster Recovery Architectures with...
(BAC404) Deploying High Availability and Disaster Recovery Architectures with...(BAC404) Deploying High Availability and Disaster Recovery Architectures with...
(BAC404) Deploying High Availability and Disaster Recovery Architectures with...Amazon Web Services
 
마이크로서비스 개요
마이크로서비스 개요마이크로서비스 개요
마이크로서비스 개요Younghun Yun
 
Microservices Architecture - Bangkok 2018
Microservices Architecture - Bangkok 2018Microservices Architecture - Bangkok 2018
Microservices Architecture - Bangkok 2018Araf Karsh Hamid
 
마이크로 서비스를 위한 AWS Cloud Map & App Mesh - Saeho Kim (AWS Solutions Architect)
마이크로 서비스를 위한 AWS Cloud Map & App Mesh - Saeho Kim (AWS Solutions Architect)마이크로 서비스를 위한 AWS Cloud Map & App Mesh - Saeho Kim (AWS Solutions Architect)
마이크로 서비스를 위한 AWS Cloud Map & App Mesh - Saeho Kim (AWS Solutions Architect)Amazon Web Services Korea
 
Practical FinOps in Practice
Practical FinOps in PracticePractical FinOps in Practice
Practical FinOps in PracticePetri Kallberg
 

Was ist angesagt? (20)

Heroku Elevator Pitch Deck/DX Quick Pitch of Heroku to a Customer
Heroku Elevator Pitch Deck/DX Quick Pitch of Heroku to a CustomerHeroku Elevator Pitch Deck/DX Quick Pitch of Heroku to a Customer
Heroku Elevator Pitch Deck/DX Quick Pitch of Heroku to a Customer
 
MSA ( Microservices Architecture ) 발표 자료 다운로드
MSA ( Microservices Architecture ) 발표 자료 다운로드MSA ( Microservices Architecture ) 발표 자료 다운로드
MSA ( Microservices Architecture ) 발표 자료 다운로드
 
[웨비나] 클라우드 마이그레이션 수행 시 가장 많이 하는 질문 Top 10!
[웨비나] 클라우드 마이그레이션 수행 시 가장 많이 하는 질문 Top 10![웨비나] 클라우드 마이그레이션 수행 시 가장 많이 하는 질문 Top 10!
[웨비나] 클라우드 마이그레이션 수행 시 가장 많이 하는 질문 Top 10!
 
Lacework slides from AWS Meetups
Lacework slides from AWS MeetupsLacework slides from AWS Meetups
Lacework slides from AWS Meetups
 
(DVO401) Deep Dive into Blue/Green Deployments on AWS
(DVO401) Deep Dive into Blue/Green Deployments on AWS(DVO401) Deep Dive into Blue/Green Deployments on AWS
(DVO401) Deep Dive into Blue/Green Deployments on AWS
 
AWS January 2016 Webinar Series - Introduction to Docker on AWS
AWS January 2016 Webinar Series - Introduction to Docker on AWSAWS January 2016 Webinar Series - Introduction to Docker on AWS
AWS January 2016 Webinar Series - Introduction to Docker on AWS
 
An Introduction to the AWS Well Architected Framework - Webinar
An Introduction to the AWS Well Architected Framework - WebinarAn Introduction to the AWS Well Architected Framework - Webinar
An Introduction to the AWS Well Architected Framework - Webinar
 
Microservices Architecture & Testing Strategies
Microservices Architecture & Testing StrategiesMicroservices Architecture & Testing Strategies
Microservices Architecture & Testing Strategies
 
Mainframe Modernization with AWS: Patterns and Best Practices
Mainframe Modernization with AWS: Patterns and Best PracticesMainframe Modernization with AWS: Patterns and Best Practices
Mainframe Modernization with AWS: Patterns and Best Practices
 
Deep Dive on Backup
Deep Dive on BackupDeep Dive on Backup
Deep Dive on Backup
 
Simplify DevOps with Microservices and Mobile Backends.pptx
Simplify DevOps with Microservices and Mobile Backends.pptxSimplify DevOps with Microservices and Mobile Backends.pptx
Simplify DevOps with Microservices and Mobile Backends.pptx
 
Consul: Service Mesh for Microservices
Consul: Service Mesh for MicroservicesConsul: Service Mesh for Microservices
Consul: Service Mesh for Microservices
 
(SOV204) Scaling Up to Your First 10 Million Users | AWS re:Invent 2014
(SOV204) Scaling Up to Your First 10 Million Users | AWS re:Invent 2014(SOV204) Scaling Up to Your First 10 Million Users | AWS re:Invent 2014
(SOV204) Scaling Up to Your First 10 Million Users | AWS re:Invent 2014
 
성공적인 AWS Cloud 마이그레이션 전략 및 사례 - 방희란 매니저:: AWS Cloud Track 1 Intro
성공적인 AWS Cloud 마이그레이션 전략 및 사례 - 방희란 매니저:: AWS Cloud Track 1 Intro성공적인 AWS Cloud 마이그레이션 전략 및 사례 - 방희란 매니저:: AWS Cloud Track 1 Intro
성공적인 AWS Cloud 마이그레이션 전략 및 사례 - 방희란 매니저:: AWS Cloud Track 1 Intro
 
(BAC404) Deploying High Availability and Disaster Recovery Architectures with...
(BAC404) Deploying High Availability and Disaster Recovery Architectures with...(BAC404) Deploying High Availability and Disaster Recovery Architectures with...
(BAC404) Deploying High Availability and Disaster Recovery Architectures with...
 
마이크로서비스 개요
마이크로서비스 개요마이크로서비스 개요
마이크로서비스 개요
 
Docker Kubernetes Istio
Docker Kubernetes IstioDocker Kubernetes Istio
Docker Kubernetes Istio
 
Microservices Architecture - Bangkok 2018
Microservices Architecture - Bangkok 2018Microservices Architecture - Bangkok 2018
Microservices Architecture - Bangkok 2018
 
마이크로 서비스를 위한 AWS Cloud Map & App Mesh - Saeho Kim (AWS Solutions Architect)
마이크로 서비스를 위한 AWS Cloud Map & App Mesh - Saeho Kim (AWS Solutions Architect)마이크로 서비스를 위한 AWS Cloud Map & App Mesh - Saeho Kim (AWS Solutions Architect)
마이크로 서비스를 위한 AWS Cloud Map & App Mesh - Saeho Kim (AWS Solutions Architect)
 
Practical FinOps in Practice
Practical FinOps in PracticePractical FinOps in Practice
Practical FinOps in Practice
 

Andere mochten auch

Introduction to Amazon Directory Services, Amazon WorkSpaces, Amazon WorkMail...
Introduction to Amazon Directory Services, Amazon WorkSpaces, Amazon WorkMail...Introduction to Amazon Directory Services, Amazon WorkSpaces, Amazon WorkMail...
Introduction to Amazon Directory Services, Amazon WorkSpaces, Amazon WorkMail...AWS Germany
 
Getting Started with AWS Enterprise Applications: WorkSpaces, WorkMail, WorkDocs
Getting Started with AWS Enterprise Applications: WorkSpaces, WorkMail, WorkDocsGetting Started with AWS Enterprise Applications: WorkSpaces, WorkMail, WorkDocs
Getting Started with AWS Enterprise Applications: WorkSpaces, WorkMail, WorkDocsAmazon Web Services
 
Architecting a 24x7 Live Linear Broadcast for Availability on AWS
Architecting a 24x7 Live Linear Broadcast for Availability on AWSArchitecting a 24x7 Live Linear Broadcast for Availability on AWS
Architecting a 24x7 Live Linear Broadcast for Availability on AWSAmazon Web Services
 
An introduction to Deep Learning
An introduction to Deep LearningAn introduction to Deep Learning
An introduction to Deep LearningDavid Rostcheck
 
Introduction to Apache Mesos
Introduction to Apache MesosIntroduction to Apache Mesos
Introduction to Apache Mesostomasbart
 
AWS re:Invent 2016: [JK REPEAT] Deep Dive on Amazon EC2 Instances, Featuring ...
AWS re:Invent 2016: [JK REPEAT] Deep Dive on Amazon EC2 Instances, Featuring ...AWS re:Invent 2016: [JK REPEAT] Deep Dive on Amazon EC2 Instances, Featuring ...
AWS re:Invent 2016: [JK REPEAT] Deep Dive on Amazon EC2 Instances, Featuring ...Amazon Web Services
 
(ISM317) Amazon WorkMail: Corporate Email in Less Than 10 Minutes
(ISM317) Amazon WorkMail: Corporate Email in Less Than 10 Minutes(ISM317) Amazon WorkMail: Corporate Email in Less Than 10 Minutes
(ISM317) Amazon WorkMail: Corporate Email in Less Than 10 MinutesAmazon Web Services
 
Migrate from SQL Server or Oracle into Amazon Aurora using AWS Database Migra...
Migrate from SQL Server or Oracle into Amazon Aurora using AWS Database Migra...Migrate from SQL Server or Oracle into Amazon Aurora using AWS Database Migra...
Migrate from SQL Server or Oracle into Amazon Aurora using AWS Database Migra...Amazon Web Services
 
AWS CLOUD 2017 - AWS 코어팀과 함께하는 고객 성공 전략 (황인철 상무 & 박성훈 테크니컬 어카운트 매니저 & 김소희 컨설턴트)
AWS CLOUD 2017 - AWS 코어팀과 함께하는 고객 성공 전략 (황인철 상무 & 박성훈 테크니컬 어카운트 매니저 & 김소희 컨설턴트)AWS CLOUD 2017 - AWS 코어팀과 함께하는 고객 성공 전략 (황인철 상무 & 박성훈 테크니컬 어카운트 매니저 & 김소희 컨설턴트)
AWS CLOUD 2017 - AWS 코어팀과 함께하는 고객 성공 전략 (황인철 상무 & 박성훈 테크니컬 어카운트 매니저 & 김소희 컨설턴트)Amazon Web Services Korea
 
Optimize MySQL Workloads with Amazon Elastic Block Store - February 2017 AWS ...
Optimize MySQL Workloads with Amazon Elastic Block Store - February 2017 AWS ...Optimize MySQL Workloads with Amazon Elastic Block Store - February 2017 AWS ...
Optimize MySQL Workloads with Amazon Elastic Block Store - February 2017 AWS ...Amazon Web Services
 
AWS re:Invent 2016: Design Patterns for High Availability: Lessons from Amazo...
AWS re:Invent 2016: Design Patterns for High Availability: Lessons from Amazo...AWS re:Invent 2016: Design Patterns for High Availability: Lessons from Amazo...
AWS re:Invent 2016: Design Patterns for High Availability: Lessons from Amazo...Amazon Web Services
 
AWS re:Invent 2016: AWS Database State of the Union (DAT320)
AWS re:Invent 2016: AWS Database State of the Union (DAT320)AWS re:Invent 2016: AWS Database State of the Union (DAT320)
AWS re:Invent 2016: AWS Database State of the Union (DAT320)Amazon Web Services
 
Introduction to DevSecOps on AWS
Introduction to DevSecOps on AWSIntroduction to DevSecOps on AWS
Introduction to DevSecOps on AWSAmazon Web Services
 
Accelerating the Transition to Broadcast and OTT Infrastructure in the Cloud
Accelerating the Transition to Broadcast and OTT Infrastructure in the CloudAccelerating the Transition to Broadcast and OTT Infrastructure in the Cloud
Accelerating the Transition to Broadcast and OTT Infrastructure in the CloudAmazon Web Services
 
Deep Dive on Elastic File System - February 2017 AWS Online Tech Talks
Deep Dive on Elastic File System - February 2017 AWS Online Tech TalksDeep Dive on Elastic File System - February 2017 AWS Online Tech Talks
Deep Dive on Elastic File System - February 2017 AWS Online Tech TalksAmazon Web Services
 
천만 사용자를 위한 AWS 아키텍처 보안 모범 사례 (윤석찬, 테크에반젤리스트)
천만 사용자를 위한 AWS 아키텍처 보안 모범 사례 (윤석찬, 테크에반젤리스트)천만 사용자를 위한 AWS 아키텍처 보안 모범 사례 (윤석찬, 테크에반젤리스트)
천만 사용자를 위한 AWS 아키텍처 보안 모범 사례 (윤석찬, 테크에반젤리스트)Amazon Web Services Korea
 

Andere mochten auch (20)

Introduction to Amazon Directory Services, Amazon WorkSpaces, Amazon WorkMail...
Introduction to Amazon Directory Services, Amazon WorkSpaces, Amazon WorkMail...Introduction to Amazon Directory Services, Amazon WorkSpaces, Amazon WorkMail...
Introduction to Amazon Directory Services, Amazon WorkSpaces, Amazon WorkMail...
 
Getting Started with AWS Enterprise Applications: WorkSpaces, WorkMail, WorkDocs
Getting Started with AWS Enterprise Applications: WorkSpaces, WorkMail, WorkDocsGetting Started with AWS Enterprise Applications: WorkSpaces, WorkMail, WorkDocs
Getting Started with AWS Enterprise Applications: WorkSpaces, WorkMail, WorkDocs
 
DDoS Resiliency
DDoS ResiliencyDDoS Resiliency
DDoS Resiliency
 
Architecting a 24x7 Live Linear Broadcast for Availability on AWS
Architecting a 24x7 Live Linear Broadcast for Availability on AWSArchitecting a 24x7 Live Linear Broadcast for Availability on AWS
Architecting a 24x7 Live Linear Broadcast for Availability on AWS
 
Deep Dive:EC2 Container Service
Deep Dive:EC2 Container ServiceDeep Dive:EC2 Container Service
Deep Dive:EC2 Container Service
 
An introduction to Deep Learning
An introduction to Deep LearningAn introduction to Deep Learning
An introduction to Deep Learning
 
Introduction to Apache Mesos
Introduction to Apache MesosIntroduction to Apache Mesos
Introduction to Apache Mesos
 
Bases de datos en la nube con AWS
Bases de datos en la nube con AWSBases de datos en la nube con AWS
Bases de datos en la nube con AWS
 
AWS re:Invent 2016: [JK REPEAT] Deep Dive on Amazon EC2 Instances, Featuring ...
AWS re:Invent 2016: [JK REPEAT] Deep Dive on Amazon EC2 Instances, Featuring ...AWS re:Invent 2016: [JK REPEAT] Deep Dive on Amazon EC2 Instances, Featuring ...
AWS re:Invent 2016: [JK REPEAT] Deep Dive on Amazon EC2 Instances, Featuring ...
 
AWS Marketplace
AWS MarketplaceAWS Marketplace
AWS Marketplace
 
(ISM317) Amazon WorkMail: Corporate Email in Less Than 10 Minutes
(ISM317) Amazon WorkMail: Corporate Email in Less Than 10 Minutes(ISM317) Amazon WorkMail: Corporate Email in Less Than 10 Minutes
(ISM317) Amazon WorkMail: Corporate Email in Less Than 10 Minutes
 
Migrate from SQL Server or Oracle into Amazon Aurora using AWS Database Migra...
Migrate from SQL Server or Oracle into Amazon Aurora using AWS Database Migra...Migrate from SQL Server or Oracle into Amazon Aurora using AWS Database Migra...
Migrate from SQL Server or Oracle into Amazon Aurora using AWS Database Migra...
 
AWS CLOUD 2017 - AWS 코어팀과 함께하는 고객 성공 전략 (황인철 상무 & 박성훈 테크니컬 어카운트 매니저 & 김소희 컨설턴트)
AWS CLOUD 2017 - AWS 코어팀과 함께하는 고객 성공 전략 (황인철 상무 & 박성훈 테크니컬 어카운트 매니저 & 김소희 컨설턴트)AWS CLOUD 2017 - AWS 코어팀과 함께하는 고객 성공 전략 (황인철 상무 & 박성훈 테크니컬 어카운트 매니저 & 김소희 컨설턴트)
AWS CLOUD 2017 - AWS 코어팀과 함께하는 고객 성공 전략 (황인철 상무 & 박성훈 테크니컬 어카운트 매니저 & 김소희 컨설턴트)
 
Optimize MySQL Workloads with Amazon Elastic Block Store - February 2017 AWS ...
Optimize MySQL Workloads with Amazon Elastic Block Store - February 2017 AWS ...Optimize MySQL Workloads with Amazon Elastic Block Store - February 2017 AWS ...
Optimize MySQL Workloads with Amazon Elastic Block Store - February 2017 AWS ...
 
AWS re:Invent 2016: Design Patterns for High Availability: Lessons from Amazo...
AWS re:Invent 2016: Design Patterns for High Availability: Lessons from Amazo...AWS re:Invent 2016: Design Patterns for High Availability: Lessons from Amazo...
AWS re:Invent 2016: Design Patterns for High Availability: Lessons from Amazo...
 
AWS re:Invent 2016: AWS Database State of the Union (DAT320)
AWS re:Invent 2016: AWS Database State of the Union (DAT320)AWS re:Invent 2016: AWS Database State of the Union (DAT320)
AWS re:Invent 2016: AWS Database State of the Union (DAT320)
 
Introduction to DevSecOps on AWS
Introduction to DevSecOps on AWSIntroduction to DevSecOps on AWS
Introduction to DevSecOps on AWS
 
Accelerating the Transition to Broadcast and OTT Infrastructure in the Cloud
Accelerating the Transition to Broadcast and OTT Infrastructure in the CloudAccelerating the Transition to Broadcast and OTT Infrastructure in the Cloud
Accelerating the Transition to Broadcast and OTT Infrastructure in the Cloud
 
Deep Dive on Elastic File System - February 2017 AWS Online Tech Talks
Deep Dive on Elastic File System - February 2017 AWS Online Tech TalksDeep Dive on Elastic File System - February 2017 AWS Online Tech Talks
Deep Dive on Elastic File System - February 2017 AWS Online Tech Talks
 
천만 사용자를 위한 AWS 아키텍처 보안 모범 사례 (윤석찬, 테크에반젤리스트)
천만 사용자를 위한 AWS 아키텍처 보안 모범 사례 (윤석찬, 테크에반젤리스트)천만 사용자를 위한 AWS 아키텍처 보안 모범 사례 (윤석찬, 테크에반젤리스트)
천만 사용자를 위한 AWS 아키텍처 보안 모범 사례 (윤석찬, 테크에반젤리스트)
 

Ähnlich wie AWS Directory Service, Amazon WorkSpaces, Amazon WorkMail, and Amazon WorkDocs

Using AWS Services to Go “All In” on AWS
Using AWS Services to Go “All In” on AWSUsing AWS Services to Go “All In” on AWS
Using AWS Services to Go “All In” on AWSAmazon Web Services
 
Running Microsoft Workloads on AWS
Running Microsoft Workloads on AWSRunning Microsoft Workloads on AWS
Running Microsoft Workloads on AWSAmazon Web Services
 
Practical Steps to Hack Proofing AWS
Practical Steps to Hack Proofing AWSPractical Steps to Hack Proofing AWS
Practical Steps to Hack Proofing AWSAmazon Web Services
 
02 amazon workspaces aws wwps dc symposium - halachmi - version 1 5
02 amazon workspaces   aws wwps dc symposium - halachmi - version 1 502 amazon workspaces   aws wwps dc symposium - halachmi - version 1 5
02 amazon workspaces aws wwps dc symposium - halachmi - version 1 5Amazon Web Services
 
AWS Service Drill Downs - AWS Symposium 2014 - Washington D.C.
AWS Service Drill Downs - AWS Symposium 2014 - Washington D.C. AWS Service Drill Downs - AWS Symposium 2014 - Washington D.C.
AWS Service Drill Downs - AWS Symposium 2014 - Washington D.C. Amazon Web Services
 
Disaster Recovery of On-Premises IT Infrastructure with AWS
Disaster Recovery of On-Premises IT Infrastructure with AWSDisaster Recovery of On-Premises IT Infrastructure with AWS
Disaster Recovery of On-Premises IT Infrastructure with AWSAmazon Web Services
 
ModernizationAWS.pdf
ModernizationAWS.pdfModernizationAWS.pdf
ModernizationAWS.pdfIsmailCassiem
 
C2S Tech Tips: Rapid Prototyping
C2S Tech Tips: Rapid PrototypingC2S Tech Tips: Rapid Prototyping
C2S Tech Tips: Rapid PrototypingAmazon Web Services
 
Transparency and Control with AWS CloudTrail and AWS Config
Transparency and Control with AWS CloudTrail and AWS ConfigTransparency and Control with AWS CloudTrail and AWS Config
Transparency and Control with AWS CloudTrail and AWS ConfigAmazon Web Services
 
Updating Security Operations for the Cloud - AWS Symposium 2014 - Washington ...
Updating Security Operations for the Cloud - AWS Symposium 2014 - Washington ...Updating Security Operations for the Cloud - AWS Symposium 2014 - Washington ...
Updating Security Operations for the Cloud - AWS Symposium 2014 - Washington ...Amazon Web Services
 
DevOps in the Public Sector: How the Democratic Party Implemented DevOps to M...
DevOps in the Public Sector: How the Democratic Party Implemented DevOps to M...DevOps in the Public Sector: How the Democratic Party Implemented DevOps to M...
DevOps in the Public Sector: How the Democratic Party Implemented DevOps to M...Amazon Web Services
 
Protecting Your Data With AWS KMS and AWS CloudHSM
Protecting Your Data With AWS KMS and AWS CloudHSM Protecting Your Data With AWS KMS and AWS CloudHSM
Protecting Your Data With AWS KMS and AWS CloudHSM Amazon Web Services
 
Hybrid Cloud Solutions to Transform Your Organization
Hybrid Cloud Solutions to Transform Your OrganizationHybrid Cloud Solutions to Transform Your Organization
Hybrid Cloud Solutions to Transform Your OrganizationAmazon Web Services
 
Enhanced Security and Compliance with AWS
Enhanced Security and Compliance with AWSEnhanced Security and Compliance with AWS
Enhanced Security and Compliance with AWSAmazon Web Services
 
(SEC315) AWS Directory Service Deep Dive
(SEC315) AWS Directory Service Deep Dive (SEC315) AWS Directory Service Deep Dive
(SEC315) AWS Directory Service Deep Dive Amazon Web Services
 
SEC306 Using Microsoft Active Directory Across On-Premises and AWS Cloud Wind...
SEC306 Using Microsoft Active Directory Across On-Premises and AWS Cloud Wind...SEC306 Using Microsoft Active Directory Across On-Premises and AWS Cloud Wind...
SEC306 Using Microsoft Active Directory Across On-Premises and AWS Cloud Wind...Amazon Web Services
 
Hybrid IT Approach and Technologies with the AWS Cloud | AWS Public Sector Su...
Hybrid IT Approach and Technologies with the AWS Cloud | AWS Public Sector Su...Hybrid IT Approach and Technologies with the AWS Cloud | AWS Public Sector Su...
Hybrid IT Approach and Technologies with the AWS Cloud | AWS Public Sector Su...Amazon Web Services
 

Ähnlich wie AWS Directory Service, Amazon WorkSpaces, Amazon WorkMail, and Amazon WorkDocs (20)

Using AWS Services to Go “All In” on AWS
Using AWS Services to Go “All In” on AWSUsing AWS Services to Go “All In” on AWS
Using AWS Services to Go “All In” on AWS
 
Running Microsoft Workloads on AWS
Running Microsoft Workloads on AWSRunning Microsoft Workloads on AWS
Running Microsoft Workloads on AWS
 
Practical Steps to Hack Proofing AWS
Practical Steps to Hack Proofing AWSPractical Steps to Hack Proofing AWS
Practical Steps to Hack Proofing AWS
 
02 amazon workspaces aws wwps dc symposium - halachmi - version 1 5
02 amazon workspaces   aws wwps dc symposium - halachmi - version 1 502 amazon workspaces   aws wwps dc symposium - halachmi - version 1 5
02 amazon workspaces aws wwps dc symposium - halachmi - version 1 5
 
AWS Service Drill Downs - AWS Symposium 2014 - Washington D.C.
AWS Service Drill Downs - AWS Symposium 2014 - Washington D.C. AWS Service Drill Downs - AWS Symposium 2014 - Washington D.C.
AWS Service Drill Downs - AWS Symposium 2014 - Washington D.C.
 
Disaster Recovery of On-Premises IT Infrastructure with AWS
Disaster Recovery of On-Premises IT Infrastructure with AWSDisaster Recovery of On-Premises IT Infrastructure with AWS
Disaster Recovery of On-Premises IT Infrastructure with AWS
 
AWS as a Data Platform
AWS as a Data PlatformAWS as a Data Platform
AWS as a Data Platform
 
Big Data and Analytics on AWS
Big Data and Analytics on AWS Big Data and Analytics on AWS
Big Data and Analytics on AWS
 
ModernizationAWS.pdf
ModernizationAWS.pdfModernizationAWS.pdf
ModernizationAWS.pdf
 
C2S Tech Tips: Rapid Prototyping
C2S Tech Tips: Rapid PrototypingC2S Tech Tips: Rapid Prototyping
C2S Tech Tips: Rapid Prototyping
 
Transparency and Control with AWS CloudTrail and AWS Config
Transparency and Control with AWS CloudTrail and AWS ConfigTransparency and Control with AWS CloudTrail and AWS Config
Transparency and Control with AWS CloudTrail and AWS Config
 
Updating Security Operations for the Cloud - AWS Symposium 2014 - Washington ...
Updating Security Operations for the Cloud - AWS Symposium 2014 - Washington ...Updating Security Operations for the Cloud - AWS Symposium 2014 - Washington ...
Updating Security Operations for the Cloud - AWS Symposium 2014 - Washington ...
 
DevOps in the Public Sector: How the Democratic Party Implemented DevOps to M...
DevOps in the Public Sector: How the Democratic Party Implemented DevOps to M...DevOps in the Public Sector: How the Democratic Party Implemented DevOps to M...
DevOps in the Public Sector: How the Democratic Party Implemented DevOps to M...
 
Protecting Your Data With AWS KMS and AWS CloudHSM
Protecting Your Data With AWS KMS and AWS CloudHSM Protecting Your Data With AWS KMS and AWS CloudHSM
Protecting Your Data With AWS KMS and AWS CloudHSM
 
Hybrid Cloud Solutions to Transform Your Organization
Hybrid Cloud Solutions to Transform Your OrganizationHybrid Cloud Solutions to Transform Your Organization
Hybrid Cloud Solutions to Transform Your Organization
 
Enhanced Security and Compliance with AWS
Enhanced Security and Compliance with AWSEnhanced Security and Compliance with AWS
Enhanced Security and Compliance with AWS
 
(SEC315) AWS Directory Service Deep Dive
(SEC315) AWS Directory Service Deep Dive (SEC315) AWS Directory Service Deep Dive
(SEC315) AWS Directory Service Deep Dive
 
SEC306 Using Microsoft Active Directory Across On-Premises and AWS Cloud Wind...
SEC306 Using Microsoft Active Directory Across On-Premises and AWS Cloud Wind...SEC306 Using Microsoft Active Directory Across On-Premises and AWS Cloud Wind...
SEC306 Using Microsoft Active Directory Across On-Premises and AWS Cloud Wind...
 
Amazon WorkSpaces for Education
Amazon WorkSpaces for EducationAmazon WorkSpaces for Education
Amazon WorkSpaces for Education
 
Hybrid IT Approach and Technologies with the AWS Cloud | AWS Public Sector Su...
Hybrid IT Approach and Technologies with the AWS Cloud | AWS Public Sector Su...Hybrid IT Approach and Technologies with the AWS Cloud | AWS Public Sector Su...
Hybrid IT Approach and Technologies with the AWS Cloud | AWS Public Sector Su...
 

Mehr von Amazon Web Services

Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Amazon Web Services
 
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Amazon Web Services
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateAmazon Web Services
 
Costruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSCostruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSAmazon Web Services
 
Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Amazon Web Services
 
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Amazon Web Services
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...Amazon Web Services
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsAmazon Web Services
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareAmazon Web Services
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSAmazon Web Services
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAmazon Web Services
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareAmazon Web Services
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWSAmazon Web Services
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckAmazon Web Services
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without serversAmazon Web Services
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...Amazon Web Services
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceAmazon Web Services
 

Mehr von Amazon Web Services (20)

Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
 
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS Fargate
 
Costruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSCostruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWS
 
Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot
 
Open banking as a service
Open banking as a serviceOpen banking as a service
Open banking as a service
 
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
 
Computer Vision con AWS
Computer Vision con AWSComputer Vision con AWS
Computer Vision con AWS
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatare
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e web
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
 
Fundraising Essentials
Fundraising EssentialsFundraising Essentials
Fundraising Essentials
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container Service
 

Kürzlich hochgeladen

GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdflior mazor
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024Rafal Los
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Scriptwesley chun
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)Gabriella Davis
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonAnna Loughnan Colquhoun
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfsudhanshuwaghmare1
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Drew Madelung
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MIND CTI
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityPrincipled Technologies
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FMESafe Software
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CVKhem
 
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...Principled Technologies
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...apidays
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024The Digital Insurer
 
Top 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live StreamsTop 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live StreamsRoshan Dwivedi
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Miguel Araújo
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingEdi Saputra
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationSafe Software
 

Kürzlich hochgeladen (20)

GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
Top 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live StreamsTop 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live Streams
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 

AWS Directory Service, Amazon WorkSpaces, Amazon WorkMail, and Amazon WorkDocs

  • 1. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 AWS Directory Service, Amazon WorkSpaces, Amazon WorkMail, and Amazon WorkDocs Jerry Rhoads ©2015, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 2. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Agenda 1. AWS Directory Service 2. Amazon WorkSpaces 3. Amazon WorkMail 4. Amazon WorkDocs
  • 3. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 AWS Directory Service overview • “Directory as a Service” – Windows 2008 R2 compatible forest/domain – Amazon EC2 instances can join the domain at launch – Deploy AD-dependent applications on Windows in Amazon EC2 – Enables single sign-in to the AWS management console and services • Alleviates the pain of deploying, configuring, and maintaining directory infrastructure in Amazon EC2
  • 4. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 AWS Directory Service modes AWS Directory Service operates in one of two modes: – Simple AD – AD Connector *Does not support EC2 Classic network*
  • 5. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Simple AD directory mode Simple AD directory mode: • Samba 4 as the backend • Resides only in the AWS cloud; cannot extend to on-premises • Limited to VPC EC2 instances • Supports applications such as SQL and SharePoint • Supports Kerberos • Group Policies • Manage directory via common LDAP tools or Microsoft Directory Services MMC • Supports ADSIedit • Windows Event Viewer compatible logs • Windows CLI tools such as dsadd, dsmod, and the csvde import tool
  • 6. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Simple AD prerequisites Simple AD directory for use with VPC instances: • A VPC • At least two subnets in different Availability Zones • Directory Service creates two ENIs in your VPC to be used as DNS servers • Directory Service creates a security group to allow you to control access to your directory
  • 7. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Simple AD Directory Service ports • TCP/UDP 53 – DNS • TCP/UDP 88 - Kerberos authentication • UDP 123 – NTP • TCP 135 – RPC • UDP 137-138 – Netlogon • TCP 139 – Netlogon • TCP/UDP 389 – LDAP • TCP/UDP 445 – SMB • TCP 873 – FRS • TCP 3268 - Global Catalog • TCP/UDP 1024-65535 - Ephemeral ports for RPC
  • 8. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 AWS Directory Service backups • Ability to backup directory data by creating snapshots: – Manual – Auto • Restore the directory from snapshots
  • 9. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 AWS Directory Service AD Connector AD Connector mode: • Enables use of existing AD credentials on on-premises Active Directory domain • Connects your on-premises directory to AWS apps and services such as WorkSpaces, WorkDocs, and WorkMail • Allows single sign-in to the AWS console • On-premises data is not stored on AWS • Forwards requests (i.e., authentication, query/search) and sends them to the on- premises domain • Choice of small or large connector type • Support for Multi-Factor Authentication (MFA) – Radius
  • 10. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 AWS Directory Service AD Connector AD Connector directory requirements: – Requires VPC with VPN connection (software-based or hardware-based) – IP address of on-premises DNS servers – Credentials of domain-privileged user (required by AD Connector account) • Read all user information • Join a computer to the domain – AWS Directory Service creates a Connect SecurityGroup that is used on the customer side
  • 11. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon Directory Services access URL • Globally unique, ‘friendly’ identifier for a directory, for example: mobyapp.awsapps.com • One unique access URL per directory • Used by Amazon WorkMail and Amazon WorkDocs to access the service and/or access the AWS management console
  • 12. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 AWS console access – Ability to use your on-premises AD or Simple AD directory credentials to log in to the AWS management console – Map users or groups to Amazon IAM roles (new or existing) – Use access URL of directory followed by /console (ie. https://mobyapp.awsapps.com/console)
  • 13. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon WorkSpaces availability Available in the following regions: • us-east-1 (N. Virginia) • us-west-2 (Oregon) • eu-west-1 (Ireland) • ap-southeast-2 (Sydney) • ap-northeast-1 (Tokyo) • ap-southeast-1 (Singapore)
  • 14. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon WorkSpaces: key service features • Highly secure cloud workspace accessible from any device • Persistent, highly secure cloud-based storage • Amazon WorkSpaces can be joined to your Active Directory • Integration with customer VPC/VPN to provide access to on-premises resources
  • 15. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon WorkSpaces devices • iPad • Kindle Fire HDX (keyboard & mouse) • Android tablet • Microsoft Windows • Mac • Zero clients
  • 16. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Keep data highly secure and available • No data stored on end-user device • Only pixels delivered to users (PCoIP) • User volume backed up by Amazon S3
  • 17. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Getting started – what are the steps? • Integrate VPC with corporate Active Directory (or use Simple Directory) • Choose Amazon WorkSpaces bundle • Select users to receive Amazon WorkSpaces • Launch Amazon WorkSpaces • Users receive email when provisioned • Users connect to Amazon WorkSpaces
  • 18. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 eth0 serves WorkSpaces pixels back to the client device eth1 serves traffic to: • Internet • Resources in VPC • Resources on-prem eth0 eth1 Corp on-prem network Corp VPC eni Internet gateway Internet AWS Direct Connect Amazon WorkSpaces are dual-homed Windows Server 2008 R2 instances with Windows 7 experience eth1 = Corp VPC Amazon Client connects to a “WorkSpaces gateway” between your device and your WorkSpaces PCoIP tcp and udp 4172
  • 19. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015
  • 20. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon WorkMail overview • Provides a highly secure email and calendaring service • Integrates with an existing corporate directory • Controls both the keys that encrypt data and the location in which the data is stored
  • 21. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon WorkMail access • Microsoft Outlook clients (Windows & OS X) • Exchange ActiveSync protocol-enabled devices – iPhone, iPad – Kindle Fire, Fire Phone – Android – Windows Phone – BlackBerry 10 • Web browser
  • 22. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon WorkMail limits • Up to 25 users for a 30-day free trial • Mailbox size: 50 GB • Maximum in/out message size: 25 MB • Maximum number of recipients per email: 500 • Each user can send mail to up to 3,000 recipients every 24 hours
  • 23. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon WorkMail FAQs • Mailbox’s data at-rest is encrypted • Data in-transit is encrypted • Mail is scanned for spam, malware, viruses • Integrates with Amazon Simple Directory and on-premises Active Directory • Supports @corpname.com email suffix • Supports Active Directory distribution groups • Mailboxes managed via AWS console • Supports Mobile Policies • Integrates with Amazon WorkDocs*
  • 24. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon WorkMail regions (as of June 25, 2015) • us-east-1 (N. Virginia) • eu-west-2 (Ireland)
  • 25. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon WorkDocs Fully managed, highly secure enterprise storage and sharing service. Amazon WorkDocs users can: – Comment on files – Send documents to others for feedback – Upload new versions – Sync files between PC/MAC and Amazon WorkDocs Eliminates the need to email and track changes to documents
  • 26. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon WorkDocs supported platforms • Supported platforms: – PCs – Macs – Tablets – Phones • Integrates with existing corporate directory (via AD Connector) • Has flexible sharing policies, audit logs, and provides control of the location where data is stored
  • 27. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon WorkDocs administration & control • Simple user management • Delegated administration • Fine-grained quota controls • Employee content migration • Viral invite option • Audit logs • Multi-Factor Authentication
  • 28. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon WorkDocs Sync client for Mac and Windows • Download client from Amazon Web Services • Register client • Provide credentials (AD username/password) • Choose files to sync and folders to sync
  • 29. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon WorkDocs sync excluded files • .lock or .~doctor.ppt • hello.txt~ or ~hello.txt • ppt.C407.tmp or ~WRD000.tmp • Microsoft User Data or Outlook file • */:<>?| • Files over 5 TB
  • 30. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Amazon WorkDocs • Supports MFA with Radius • Single sign-in available from an Amazon WorkSpaces session
  • 31. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 DEMO corporate directory integration Users: Get to use existing enterprise credentials IT: WorkSpaces control like regular desktops
  • 32. AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015 Thank You. This presentation will be loaded to SlideShare the week following the Symposium. http://www.slideshare.net/AmazonWebServices AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015

Hinweis der Redaktion

  1. Today I am going to speak about Directory Service, WorkSpaces, WorkMail, and WorkDocs. This is a deep dive into these subjects, therefore I am assuming you are relatively familiar with the services and acronyms such as EC2, ENI, S3 and so on.
  2. This is a Directory Service that makes it simple to use log into Servers and Workstations, as well as AD dependent applications and Amazon applications such as WorkSpaces, WorkMail and WorkDocs up and going in minutes. Some use cases are Dev/test Environments, Connecting On-Prem Active Directory with VPC resources, SSO access to the AWS Console. The Directory Service functions like Windows 2008R2 Active Directory Mode.
  3. There are two types of Directory Modes, Simple AD which is a SAMBA 4 Active Directory like environment. This Simple AD operates in Windows 2008 Forest/Doman modes. It doesn't’t support complex directory Integrates with Exchange or Lync, child domain and trusts. It is a Simple Directory containing computer and user objects. It comes in two sizes Small up to 10,000 Objects and Large supporting up to 100,000 Objects. Simple AD makes it possible to connect Windows Servers in your VPC to a Directory for single User management and authorization. Additionally WorkSpaces, WorkMail and WorkDocs can use this directory and in minutes you are using the services w/o having to build out an Active Directory Infrastructure. If you need Exchange, Lync Integration, child domains or want to integrate your corporate directory with AWS’ services SSO to the AWS Console, WorkSpaces, WorkMail and WorkDocs –you would use the AD Connector.
  4. The First mode is Simple AD Directory Mode. It is SAMBA 4 emulating Active Directory 2008 R2 mode. It can only be used for instances in your VPC only and it makes it simple to deploy AD-Dependent Apps such as MS SQL, MS SharePoint and you can join Windows 2003 R2 – Windows 2012 R2 Servers that live in your VPC. Active Directory GroupPolicy and Kerberos are supported. Limited to Windows clients, e.g. Linux domain joins not currently supported. Active Directory tools such as Active Directory Users and Computers to manage the Directory. ADSI edit tools and other Windows CLI tools can be used (dsadd, dsmod, and csvde)
  5. Directory Service doesn’t support EC2 instances as Directory Service is launched into a VPC and the resources that Directory Service will access are in that VPC. Simple Directory will launch on two EC2 instances and will create two ENIs into your VPC. The purpose of these ENIs is to produce DNS endpoints for DNS clients in your VPC. Additionally, Directory Service will create a Security Group that allows the necessary traffic for the Directory Service to communicate with your services. For Example Active Directory requires TCP/UDP ports 1024-65535 for RPC. Exact Port Requirements are listed on the next slide
  6. These are the ports you will need open in your security group. When creating the Directory, the service creates a Security Group with these ports open from your VPC to the Directory Service Servers.
  7. You can take up to 5 Manual Snapshots per Simple Directory. This means if you need to take a snapshot and have 5 manual snapshots, you must delete one of your stored manual snapshots. The 5 manual limit is separate from the Auto Snapshots. The Simple AD takes daily snapshots automatically, up to 10 days. The Directory can be restored from manual or from Auto snaps.
  8. This mode allows you to use your On-Prem directory credentials to authenticate to our AWS APPS and Services such as WorkSpaces, WorkMail, WorkDocs and perform SSO to the AWS Console. It works by forwarding authentication requests to your Active Directory Domain. Being that we forward credentials, AWS does not store/cache any of your Active Directory data. In order to operate the Directory Connector, a VPN or Direct Connect must exist between your Data-Center/Compute Facility (AD location) and your AWS VPC. Lastly, Directory Service supports Multi Factor Authentication via your Radius Server. Support Octa, Ping federate,
  9. To get AD Connector up and going you will need to deploy a VPC, create a Domain Privileged Account in your Active Directory. That account will be used by the AD Connector as the connector account user. The account needs the “Read all user information” and “Join a computer to the domain” privileges. The Domain Admin group has these permissions, however as a Best Security Practice, we recommend creating a group with the Read all user information and join a computer to the domain privileges. And creating a user with a very strong password and adding them to the group. Directory Data is not stored on the AD connector, e.g. it is a proxy like client versus a light directory mode.
  10. The URL is globally unique and once created cannot be changed. You will have to delete the Directory Connector in order to “rename” it.
  11. Now I am going to talk about WorkSpaces. WorkSpaces is a managed Desktop Computing Service in the Cloud. It allows you to easily provision cloud based desktops that allow you to access docs, apps, and resources on the device of your choice. WorkSpaces is offered in the following regions. The service uses PCoIP and the best experience is < 100ms latency and the protocol supports a round trip latency of 250ms .
  12. WorkSpaces is a Secure Cloud Workspace accessible from any device using the WorkSpaces application. You can download this application from from https://clients.amazonworkspaces.com/ and is available form the Apple App Store and Google Play for IAD and Android Devices. Each workspace has Persistent Storage, therefore can survive a reboot and if needed to be rebuilt, the data persists. WorkSpaces can integrate with Active Directory (on-prem or in the AWS Cloud).
  13. Amazon WorkSpaces provides customers with a choice of devices they can use to connect to their desktop. They can use an iPad, a Kindle Fire HDK (including the ability to use a keyboard and mouse), a Windows or Mac desktop. The iPad and Android clients have numerous optimizations to make a desktop experience on the device intuitive, such as a slide out radial control to access commonly used functions and a choice of mouse modes.
  14. Amazon WorkSpaces delivers only pixels to users, using the Teradici PCoIP protocol, and customer data does not stay on the end user’s device. The user volume provided for a user’s WorkSpace is regularly backed up to Amazon S3 as a snapshot, helping ensure data durability even in the case of hardware failure.
  15. Once customers have access to the WorkSpaces service, getting started is simple. If customers want integration with their corporate Active Directory, they will need to have a VPC configured with a hardware VPN connection back to their corporate network. Once they’ve configured their directory, they just need to select the WorkSpaces Bundle they require, choose the users who will receive WorkSpaces and launch those WorkSpaces. Once the WorkSpaces are provisioned (which will include them joining the customer’s Active Directory domain if they are integrating their directory), users get an email telling them how they can install the client and connect to their WorkSpaces
  16. WorkSpaces are Windows 2008 R2 instances with Windows 7 experience skin. PC over Internet Protocol or PCoIP is the communication protocol to connect your WorkSpaces client software to your WorkSpace Computer. The WorkSpace is dual-homed, ETH0 is the PCoIP connection into the workspace from the internet, and an Elastic Network Interface, or ENI (ETH1) is connected to provide connectivity to your VPC and to your Corporate Network via Direct Connect or a VPN Gateway. WorkSpace access the Internet from either the InterNet GateWay (IGW) or can use a NAT or Proxy to access the internet.
  17. 1 WorkSpaces Client iniates authentication to Oauth gateway over SSL on public Internet with user credentials 2 . Oauth gateway sends authentication request over SSL to AD Connector 3 . AD Connector does LDAP authen3ca3on to Ac3ve Directory 4 .  Client receives Oath 3cket back from gateway based on authen3ca3on request 5 .   Client requests PCoIP gateway IP from WorkSpaces broker . Request is over SSL and uses Oauth ticket to identify user / directory . 6 .   Client requests connection to WorkSpace via PCOIP gateway . Request is over SSL using Oauth ticket . 7 .   Gateway receives Oauth 3cket , and retrieves user creden3als over SSL from the WorkSpaces connec3on manager ( which retrieves creden3als from Directory Service over SSL ) 8 .   PCoIP gateway ini3ates Windows logon on the WorkSpace via AWS private network . 9 .   User logon request to Ac3ve Directory 10 .   PCoIP streaming connec3on over AES-­‐256 encrypted channel
  18. The next service I am going to talk about is WorkMail.
  19. Data encrypted at rest AES 256? Data in transit SSL encrypted. Workdocs integration via the Web Browser client.
  20. AWS uses one of the strongest cipher blocks to protect data at rest, AES 256 encryption. SSL protects data in transit. WorkDocs is accessed from your browser (and from client software on supported devices) via https://corpname.awsapps.com/workdocs same URL you used to create your directory.
  21. There is built-in, true native, integration with a company’s active directory if desired. There is delegated administration. Administrators can assign quota at the company and user level. WorkDocs has workflow to migrate content from one user to another as people leave the organization. And an interesting capability that will appeal to some of the smaller to mid-size enterprises….the viral invite feature. Instead of having to administratively onboard users, just let your employees share with each other…when an invite goes to someone that isn’t already in the system, he or she is asked to create an account.
  22. Amazon WorkSpaces integrates with customers’ Corporate Directories. This means that all WorkSpaces provisioned by a customer will join the customer’s Active Directory domain. This means that users can continue to use their existing corporate credentials to get seamless access to corporate resources (eg. Exchange, Sharepoint, other internal applications). This also means that for administrators, as the WorkSpaces join the customer’s Active Directory domain, they can be managed just like any other desktops with management tools or processes that customers are already using. Demo of a Corp WorkSpace connected to Corp AD, with Corp Connected Lync 2013, Outlook connected to WorkMail, Demo of GPO to set Desktop background and publish IE shortcuts and settings.