SlideShare ist ein Scribd-Unternehmen logo
1 von 185
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWSOME DAY
V I R T U A L
Getting Started on AWS
AWSOME DAYCourse modules
1. Introduction to the AWS Cloud
2. Getting started with the cloud
3. Building in the cloud
4. Secure your cloud applications
5. Support your cloud applications
6. Architecture
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWSOME DAY
What is the AWS Cloud?
AWSOME DAYWhat is the cloud?
On premises
Servers
Storage
Databases
Application
s
Internet
Servers Storage
Databases
Applicatio
ns
Cloud services
provider
Internet
Corp
network
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYHow does it work?
• AWS owns and maintains the network-connected hardware
• You provision and use what you need
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Storage
Compute
Database
Networking &
Content
Delivery
Business
Applications
Internet of
Things
AWSOME DAYCloud deployment models
CloudOn premises Hybrid
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
What are the benefits of the AWS Cloud?
AWSOME DAY
Trade capital expense for variable
expense
Data center investment
based upon forecast
Capital
Pay only for the amount
you consume
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYMassive economies of scale
Because of aggregate usage from all customers, AWS can achieve
higher economies of scale and pass savings on to customers
Economies of scale
Savings
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYStop guessing capacity
Overestimated
server capacity
Underestimated
server capacity
Scaling on
demand
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYIncrease speed and agility
Weeks between wanting
resources and having
resources
Minutes between wanting
resources and having
resources
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Launch
AWSOME DAY
Stop spending money on
running and maintaining datacenters
Running datacenters Business and customers
Investment
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYGo global in minutes
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAWS security
Keep your data safe
Meet compliance requirements
Save money
Scale quickly
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAY
Satellite Security, Identity &
Compliance
Storage
AWS service categories
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Media Services Migration & Transfer Mobile
Networking &
Content Delivery Robotics
End User Computing Game Tech Internet of Things Machine Learning
Management &
Governance
Business Applications Compute Customer Engagement Database Developer Tools
Analytics Application Integration AR & VR AWS Cost Management Blockchain
AWS global infrastructure
AWSOME DAYRegions
# AWS Regions
Availability Zones
Planned Regions
#
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAvailability Zones
ap-southeast-1
(Singapore)
ap-southeast-1a ap-southeast-1b
ap-southeast-1c
datacenter(s)
datacenter(s)
datacenter(s)
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYSelecting a region
Determine the right region for
your services, applications,
and data based on these
factors
Proximity to customers
(latency)
Data governance,
legal requirements
Services available
within the region
Costs (vary by region)
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAY
Edge locations: Reaching distant
customers
Edge locations
Multiple edge locations
Regional edge caches
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWS management interfaces
AWSOME DAY
AWS Management
ConsoleEasy-to-use graphical interface
Command Line Interface (AWS
CLI)Access to services by discrete command
Software Development Kits
(SDKs)Access services in your code
Three ways to interact with AWS
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAWS Management Console
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAWS CLI
~aws
• Open source tool for
interacting with AWS services
• Environments
• Linux
• MacOS
• Windows
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAWS SDKs
JavaScript
Python
PHP
.NET
Ruby
Go
Node.js
C++
Java
IoT
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWSOME DAY
Get started with AWS services
AWSOME DAYAWS products
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYCloud journey
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Build your infrastructure
AWSOME DAYWhat is Amazon EC2?
 Application server
 Web server
 Database server
 Game server
 Mail server
 Media server
 Catalog server
 File server
 Computing server
 Proxy server
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYBenefits of Amazon EC2
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
• Elasticity
AWSOME DAYBenefits of Amazon EC2
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
• Elasticity
• Control
AWSOME DAYBenefits of Amazon EC2
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
• Elasticity
• Control
• Flexibility
AWSOME DAYBenefits of Amazon EC2
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
www.example.com
Amazon
Route 53
Elastic Load
Balancing
(ELB)
Availability Zone #1
Amazon S3
bucket
Amazon EBS
snapshot
root volume
Auto Scaling group
Security group
EC2 instance
security group
data volume
web app
server
logs
CloudFront
distribution
media.example.com
• Elasticity
• Control
• Flexibility
• Integrated
AWSOME DAYBenefits of Amazon EC2
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
• Elasticity
• Control
• Flexibility
• Integrated
• Reliable
AWSOME DAYBenefits of Amazon EC2
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWS Cloud• Elasticity
• Control
• Flexibility
• Integrated
• Reliable
• Secure
AWSOME DAYBenefits of Amazon EC2
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWS Cloud• Elasticity
• Control
• Flexibility
• Integrated
• Reliable
• Secure
• Inexpensive
AWSOME DAYBenefits of Amazon EC2
• Elasticity
• Control
• Flexibility
• Integrated
• Reliable
• Secure
• Inexpensive
• Easy
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAY
Choosing the right
Amazon EC2 instances
• EC2 Instance types are optimized for different use cases,
workloads & come in multiple sizes. This allows you to optimally
scale resources to your workload requirements.
• AWS utilizes Intel® Xeon® processors for EC2 Instances
providing customers with high performance and value.
• Consider the following when choosing your instances: core
count, memory size, storage size & type, network performance,
I/O requirements & CPU technologies.
• Hurry Up & Go Idle - A larger compute instance can save you
time and money, therefore paying more per hour for a shorter
amount of time can be less expensive.
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAY
EC2 instances powered by Intel
Technologies
EC2 instance
type
Compute optimized General purpose Memory optimized Storage optimized
C5 C4 M5 M4 T2 X1 X1e R4 H1 I3 D2
Intel processor
Xeon
Platinum
8175M
Xeon E5
2666 v3
Xeon
Platinum
8175M
Xeon E5
2686 v4
2676 v3
Xeon
Family
Xeon E7
8880 v3
Xeon E7
8880 v3
Xeon E5
2686 v4
Xeon E5
2686 v4
Xeon E5
2686 v4
Xeon E5
2676 v3
Intel processor
technology
Skylake Haswell Skylake
Broadwell
Haswell
Yes Haswell Haswell Broadwell Broadwell Broadwell Haswell
Intel AVX Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes
Intel AVX2 Yes Yes Yes Yes - Yes Yes Yes Yes Yes Yes
Intel AVX-512 Yes - Yes - - - - - - - -
Intel turbo Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes
Storage EBS-only EBS-only EBS-only EBS-only EBS-only
SSD
EBS-Opt
SSD
EBS-Opt
- HDD SSD HDD
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYC5: Compute-optimized instances
• Based on 3.0 GHz Intel Xeon
Scalable Processors (Skylake)
• Up to 72 vCPUs and 144 GiB of
memory
(2:1 Memory:vCPU ratio)
• 25 Gbps NW bandwidth
• Support for Intel AVX-512
25% price/performance improvement
over C4
C4 C5
“We saw significant performance improvement on Amazon
EC2 C5, with up to a 140% performance improvement in
industry standard CPU benchmarks over C4.”
“We are eager to migrate onto the AVX-512 enabled
c5.18xlarge instance size… .We expect to decrease the
processing time of some of our key workloads by more than
30%.”
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAY
M5: Next-gen general purpose
instances
• Powered by 2.5 GHz Intel Xeon Scalable
Processors (Skylake)
• New larger instance size—m5.24xlarge
with
96 vCPUs and 384 GiB of memory
(4:1 Memory:vCPU ratio)
• Improved network and EBS performance
on smaller instance sizes
• Support for Intel AVX-512 offering up to
twice the performance for vector and
floating point workloads
14% price/performance improvement
With M5
M4 M5
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYWhat’s your platform?
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Store your data
AWSOME DAY
Amazon Elastic Block Store (Amazon
EBS)
• Persistent block storage for instances
• Protected through replication
• Different drive types
• Scale up or down in minutes
• Pay for only what you provision
• Snapshot functionality
• Encryption available
Amazon EBS Volumes
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Amazon
EC2
instance
Amazon
EC2
instance
AWS Cloud
Monday’s snapshot
Tuesday’s snapshot
Wednesday’s snapshot
Thursday’s snapshot
Friday’s snapshot
Bill
Storage
provisioned…
AWSOME DAYWhat is Amazon S3?
• Data is stored as objects within buckets
• Unlimited storage
• Single object limited to 5TB
• 99.999999999% durable
• Granular access to bucket and objects
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAmazon S3 core functionality
• Fast, durable, highly available key-based access to objects
• Object storage built to store and retrieve data
• Not a file system
Amazon S3
bucket
Amazon S3
Client
 Object returned
CLI sends GET request via S3 API 
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAmazon S3 common scenarios
• Backup and storage
• Application hosting
• Media hosting
• Software delivery
Amazon S3 buckets
Corporate
Datacenter
Amazon
EC2
Instances© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYNot just a storage bucket
Requester pays
Versioning
Hosting static websites
Object lifecycle management
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYWhat is Amazon S3 Glacier?
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
• Low-cost data archiving and long-
term backup
• Can configure lifecycle archiving
of Amazon S3 content to Amazon
Glacier
• Retrieval Options:
• Standard: 3- to 5-hours
• Bulk: 5-12 hours
• Expedited: 1 – 5 minutes
Amazon
S3 Glacier
Amazon S3
bucket
Archive after
30 days
Delete after 5
years
AWSOME DAYAmazon S3 Glacier use cases
Media asset workflows
Healthcare information archiving
Regulatory and compliance archiving
Scientific data storage
Digital preservation
Magnetic tape replacement
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAmazon S3 Glacier vault lock policy
• Deploy and enforce compliance controls
on individual Amazon Glacier vaults
• Vault becomes immutable once locked
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAmazon S3 storage classes
Storage class Features
S3 Standard • ≥3 availability zones
S3 Standard - Infrequent Access (IA)
• Retrieval fee associated with objects
• Most suitable for infrequently accessed data
S3 Intelligent-Tiering
• Automatically moves objects between tiers based on access
• ≥3 availability zones
S3 One Zone-IA
• 1 availability zone
• Costs 20% less than S3 Standard-IA
S3 Glacier
• Not available for real-time access
• Must restore objects before you can access them
• Restoring objects can take 1 minute - 12 hours
S3 Glacier Deep Archive
• Lowest cost storage for long term retention (7-10 years)
• ≥3 availability zones
• Retrieval time within 12 hours
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYArchitecture example
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWS Cloud
Internet
gateway
Internet
EC2
Web application
Instance store
(ephemeral)
S3 bucket
(static content)
EBS volume
(database files)
Secure your data
AWSOME DAY
Amazon Virtual Private Cloud (Amazon
VPC)
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWS Cloud
Region
VPC (IP Range for VPC)
Availability Zone A
Public subnet
Instances Instances
Public
internet
Private subnet
Corporate
datacenter
AWSOME DAYSecurity groups
SecurityGroupA
SecurityGroup-B
SecurityGroup-C
Inbound
Source Protocol Port
0.0.0.0/0 TCP 80
0.0.0.0/0 TCP 443
Inbound
Source Protocol Port
10.0.1.0/24 TCP 22
Inbound
Source Protocol Port
ID of Security Group B All All
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
VPC
Public subnet Private subnet
Security group
A
Instance
Instance
Security group
B
Security group
C
Instance
Instance
AWSOME DAYSecurity group details
• Only “allow” rules; no “deny” rules
• Default values:
• No inbound traffic allowed
• All outbound traffic allowed
• Stateful:
• Allows responses from allowed inbound
traffic
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYSecurity groups example
SG-Web-Tier
Inbound
Source Protocol Port
0.0.0.0/0 TCP 80
0.0.0.0/0 TCP 443
10.0.16.0/20 TCP 22
Public
internet
SG-App-Tier
Inbound
Source Protocol Port
ID of SG-Web-Tier TCP 6455
10.0.16.0/20 TCP 22
SG-DB-Tier
Inbound
Source Protocol Port
ID of SG-App-Tier TCP 3306
10.0.16.0/20 TCP 22
WWW Servers
MyPublicSubnet
(10.0.0.0/24)
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
VPC
SG-Web-Tier
MyPrivateSubnet (10.0.1.0/24)
SG-App-Tier SG-DB-Tier
App Servers DB Servers
Corp
(10.0.16.0/20)
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWSOME DAY
Go beyond servers and storage
AWSOME DAYMigration and reinvention
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Project
Foundation
Cloud-Native Retire
tech
debt
Reinvention
Time
Value
AWSOME DAYImproving your initial project
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
EC2
Web application
Instance store
(ephemeral)
S3 bucket
(static content)
EBS volume
(database files)
AWS Cloud Instance challenges:
• Performance
• Scalability
• Utilization
Database challenges:
• Infrastructure management
• Patching
• Scalability
Internet
gateway
Management challenges:
• Monitoring
• Planning for failures
• Deployment
Monitor AWS resources
AWSOME DAYWhat is Amazon CloudWatch?
• Monitors:
• AWS resources
• Applications running on AWS
• Collects and tracks:
• Standard metrics
• Custom metrics
• Alarms:
• Send notifications
• Automatically make changes
based on rules you define
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYHow CloudWatch works
CloudWatch
Available
statistics
Statistics
consumer
AWS Management
Console
CloudWatch metrics
CPUUtilization
StatusCheckFailed
CloudWatch
alarm
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Supported
AWS resource
Custom
application-specific
metrics
PageViewCount
SNS email
notification
Amazon
EC2 Auto
Scaling
AWSOME DAYCloudWatch benefits
Access all your metrics from a single platform
Maintain visibility across your applications,
infrastructure, and services
Reduce mean time to resolution (MTTR)
and improve total cost of ownership (TCO)
Drive insights to optimize applications
and operational resources
Pay as you go
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Manage demand efficiently
AWSOME DAYWhy scaling matters
Amazon EC2 Auto Scaling
adjusts capacity as needed
• Scale out for spikes
• Scale in during off-peak
• Replace unhealthy instances
• Pay only for what you use
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Su M T W Th F Sa
Demand Capacity
AWSOME DAY
Dynamic scaling with
Amazon EC2 Auto Scaling
• Select a load metric for
your application
• Set as conditional and/or
scheduled
• Use with CloudWatch,
optionally instance
instance
instanceinstance
instance instance
Follow the demand curve for your applications
Max 10
Min 2
Desired 6
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Amazon EC2 Auto Scaling group
AWSOME DAY
Dynamic scaling with
Amazon EC2 Auto Scaling
• Select a load metric for
your application
• Set as conditional and/or
scheduled
• Use with CloudWatch,
optionally instance
instance
instanceinstance
instance instance
instance instance
instance instance
High Demand
Follow the demand curve for your applications
Max 10
Min 2
Desired 6
Max 10
Min 2
Desired 10
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Amazon EC2 Auto Scaling group
AWSOME DAY
Dynamic scaling with
Amazon EC2 Auto Scaling
• Select a load metric for
your application
• Set as conditional and/or
scheduled
• Use with CloudWatch,
optionally instance
instance
Low Demand
Follow the demand curve for your applications
Max 10
Min 2
Desired 6
Max 10
Min 2
Desired 10
Max 10
Min 2
Desired 2
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Amazon EC2 Auto Scaling group
AWSOME DAY
Fleet management with
Amazon EC2 Auto
Scaling
• Monitor the health of
running instances
• Replace impaired
instances automatically
• Balance capacity across
Availability Zones Instance
Instance
InstanceInstance
Instance Instance
Instance
Instance
Instance
Instance
Replace impaired Amazon EC2 instances without intervention
Max 10
Min 2
Desired 10
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Amazon EC2 Auto Scaling group
AZ1
AZ2
AWSOME DAY
Fleet management with
Amazon EC2 Auto
Scaling
• Monitor the health of
running instances
• Replace impaired
instances automatically
• Balance capacity across
Availability Zones Instance
Instance
InstanceInstance
Instance Instance
Instance
Instance
Instance
Instance
Replace impaired Amazon EC2 instances without intervention
O
O
Max 10
Min 2
Desired 10
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Amazon EC2 Auto Scaling group
AZ1
AZ2
AWSOME DAY
Fleet management with
Amazon EC2 Auto
Scaling
• Monitor the health of
running instances
• Replace impaired
instances automatically
• Balance capacity across
Availability Zones Instance
Instance
InstanceInstance
Instance Instance
Instance
Instance
Replace impaired Amazon EC2 instances without intervention
O
O
Max 10
Min 2
Desired 10
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Amazon EC2 Auto Scaling group
AZ1
AZ2
AWSOME DAY
Fleet management with
Amazon EC2 Auto
Scaling
• Monitor the health of
running instances
• Replace impaired
instances automatically
• Balance capacity across
Availability Zones Instance
Instance
InstanceInstance
Instance Instance
Instance
Instance
Instance
Instance
Replace impaired Amazon EC2 instances without intervention
P
P
Max 10
Min 2
Desired 10
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Amazon EC2 Auto Scaling group
AZ1
AZ2
AWSOME DAYElastic Load Balancing
High availability
Health checks
SSL/TLS termination
Operational monitoring
Automatically distribute traffic across multiple targets
Instance Instance Instance Instance Instance
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Elastic Load
Balancing
AWSOME DAYApplication Load Balancer example
Application Load
Balancer
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
EC2 instance
/data
/api
/images
Application 1
Application 2
Application 3
AWSOME DAYNetwork Load Balancer example
Network Load
Balancer
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
EC2
EC2
EC2
Streaming
Data
EC2
AutoScaling
5442
5442
5442
Deploy database services
AWSOME DAYDIY vs. AWS database services
• Operating system access
• Need features of specific
application
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
• Easy to set up, manage, maintain
• Push-button high availability
• Focus on performance
• Managed infrastructure
AWSOME DAY
What is Amazon Relational Database
Service?
A database service that makes it easy to set up, operate,
and scale a relational database in the cloud
Amazon RDS Engines
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
• Easily scalable
• Automatic software patching
• Automated backups
• Database snapshots
• Multi-AZ deployments
• Automatic host replacement
• Encryption at rest and in transit
AWSOME DAYWhat is Amazon Aurora?
• Enterprise-class relational database
• MySQL- or PostgreSQL-compatible
• Up to 5X faster than standard MySQL databases
• Up to 3X faster than standard PostgreSQL databases
• Continuous backup to Amazon S3
• Up to 15 low-latency read replicas
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYRelational vs key-value databases
Relational (SQL) Key-value (NoSQL)
Data storage Rows and columns Key-value, document, graph
Schemas Fixed Dynamic
Querying Using SQL
Focused on collection of
documents
Scalability Vertical Horizontal
Example
ISBN Title Author Format
3111111223439
Withering
Depths
Tark,
Frank
Paperback
3122222223439 Wily Willy
Felton,
Maria
eBook
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
{
ISBN: 3111111223439,
Title: “Withering Depths”,
Author: ”Tark, Frank”,
Format: “Paperback”
}
AWSOME DAY
• Fully managed
• Low-latency queries
• Fine-grained access control
• Regional and global options
What is Amazon DynamoDB?
Fast and flexible NoSQL database service for any scale
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAmazon DynamoDB use cases
• Serverless web applications
• Microservices data store
• Mobile backends
• Ad tech
• Gaming
• Internet of Things (IoT)
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYOther purpose-built database services
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Amazon Redshift
Fast, scalable data
warehouse
Amazon
DocumentDB
MongoDB-compatible
database
Amazon Neptune
Graph database
AWSOME DAYWhat is AWS Database Migration Service?
Migrate databases to AWS quickly and securely
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYThe right tool for the right job
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
What are my requirements?
Enterprise class relational database
Amazon Relational
Database Service
(Amazon RDS)
Fast and flexible NoSQL database service for any Amazon DynamoDB
Operating system access or application features not
supported by AWS database services
Databases on EC2
Specific case-driven requirements (Machine learning,
warehouse, graphs)
AWS purpose-built
database services
Automate deployment
AWSOME DAYWhat is AWS CloudFormation?
Model and provision all your cloud infrastructure resources
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAWS CloudFormation example
Template-file
(YAML/JSON
)
----- -- -- --- -- ----- -
- -- --- --
----- -- -- --- --
----- -- -- --- --
CloudFormation Designer
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
VPC (10.1.0.0/16)
Web
server
Security group
Internet
gateway
Public Subnet 1
(10.1.11.0/24)
AWSOME DAYPutting it all together (1 of 4)
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWS Cloud
Internet
gateway
Internet
S3 bucket
(static content)
EC2
Web application EBS volume
(database files)
AWSOME DAYPutting it all together (2 of 4)
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWS Cloud
Internet
gateway
Internet
S3 bucket
(static content)
EC2
Web application Amazon RDS
AWSOME DAYPutting it all together (3 of 4)
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWS Cloud
Internet
gateway
Internet
S3 bucket
(static content)
Amazon RDS
Elastic Load
Balancing
Auto Scaling group
EC2 Instances
CloudWatch
AWSOME DAYPutting it all together (4 of 4)
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWS Cloud
Internet
gateway
Internet
S3 bucket
(static content)
Amazon RDS
Elastic Load
Balancing
Auto Scaling group
EC2 Instances
CloudWatchAWS CloudFormation
Connect and share data
AWSOME DAYChallenge: hybrid cloud
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Amazon EC2 Auto
Scaling group
EC2 instances EBS volumes
AWS Cloud
Corporate data center
Clients
Internet
gateway
Network challenges:
• Performance
• Reliability
Storage challenges:
• Duplication of data onsite/offsite
• Too much network traffic
• Cost inefficient
Communications challenge:
• Cloud instances cannot
route to onsite servers
AWSOME DAYWhat is AWS Direct Connect?
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
A dedicated network connection from your premises to AWS
Reduces network costs
Creates consistent network performance
Provides private connectivity to your
AmazonVPC
Scales easily
AWSOME DAYAWS Direct Connect example
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWS Cloud
Corporate data center
Other AWS
Services
VPC
Virtual private
gateway
Content
router/firewall
AWS Direct Connect
location
Customer
or partner
router
AWS
Direct
Connect
endpoint EC2 instances
AWSOME DAYWhat is Amazon Route 53?
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
A highly available and scalable Domain Name System (DNS) web service
Register domain names
Route internet traffic to the resources for your domain
Check the health of your resources
AWSOME DAYRouting traffic
Amazon Route 53
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
https://sales.example.com
ELB
EC2 instances
ELBELB
VPC
AWSOME DAY
What is Amazon Elastic File System
(Amazon EFS)?
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
A scalable, elastic, cloud-native file system for Linux
Dynamic elasticity
Scalable performance
Shared file storage
Fully managed
Cost-effective
AWSOME DAYPutting it all together
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Amazon EC2 Auto
Scaling group
EC2 instances
Amazon
EFS
AWS Cloud
Clients
Internet
gateway
Corporate data center
Virtual
private
gateway
AWS Direct
Connect
Amazon Route 53
Deliver content faster
AWSOME DAYChallenge: Media streaming service
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Transcode
video to
multiple
formats
Ingest
encoded
video
Catalog
video
metadata
Stream
video to
clients
The architecture must meet the following requirements:
Efficient, scalable
compute resources
Fast data
access
Low latency
AWSOME DAY
AWS Lambda: Run code without
servers
Set your code to trigger
from an event source
Pay only for the
compute time
you use
AWS
SERVICES
MOBILE APPS
HTTP
ENDPOINTS
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Upload your code
to AWS
Lambda
Lambda runs your code
only when triggered
AWSOME DAYBenefits of Lambda
Supports multiple programming languages
Completely automated administration
Built-in fault tolerance
Supports orchestration of multiple functions
Pay per use pricing
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYLambda example: create thumbnails
Source
bucket
Target
bucket
1
3
JSON
Access
policy
Lambda
function
User
5
Lambda
2
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWS Cloud
4
Execution
role
AWSOME DAY
What is Amazon Simple Notification
Service (Amazon SNS)?
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Fully managed pub/sub messaging for distributed or serverless applica
Reliably deliver messages with durability
Automatically scale your workload
Simplify your architecture
Keep messages private and secure
AWSOME DAYAmazon SNS overview
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
SNS topics
SubscribersPublisher Message filters
Amazon Simple Notification Service AWS Lambda
Message Queues
HTTP/S
AWSOME DAYWhat is Amazon CloudFront?
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
A fast, secure, and global content delivery network (CDN)
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAY
How CloudFront delivers content to
users
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Edge location
cache
www.example.com/content
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAY
How CloudFront delivers content to
users
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
S3 bucket
Edge location
cache
www.example.com/content
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYWhat is Amazon ElastiCache?
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Fully managed Redis or Memcached-compatible in-memory data stor
Extreme performance
Fully Managed
Scalable
Amazon ElastiCache for Redis
Versatile in-memory data store
Amazon ElastiCache for Memcached
Scalable caching tier for data-intensive apps
AWSOME DAYChallenge: Media streaming service
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWS Cloud
Video
encoders
CloudFront Ingest
S3 bucket
SNS topic
HQ
480p
360p
Audio only
AWS Lambda transcoding functions
Playback
S3 bucket
Clients
DynamoDB
Lambda
Video metadata
CloudFront
Streaming
Stream
ElastiCache for
Redis
Searc
h
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWSOME DAY
Secure your infrastructure
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
AWSOME DAYSecurity is our top priority
Designed for
security
Constantly
monitored
Highly
automated
Highly
available
Highly
accredited
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYSecurity of the cloud
• Hosts, network, software, facilities
• Protection of the AWS global infrastructure is top priority
• Availability of third-party audit reports
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Foundation services
Compute Storage Database Network
AWS global
infrastructure
RegionsAvailability Zones Edge Locations
AWS
AWSOME DAYSecurity in the cloud
Client-side data encryption &
Data integrity authentication
Platform, applications, identity & access management
Operating system, network & firewall configuration
Customer data
Customer
Considerations
• What you should store
• Which AWS services you should use
• Which Region to store in
• In what content format and structure
• Who has access
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Server-side encryption
(File system and/or data)
Network traffic protection
(Encryption/integrity/identity)
AWSOME DAYAWS shared responsibility model
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Foundation services
Compute Storage Database Network
AWS global
infrastructure
RegionsAvailability Zones Edge Locations
AWS
Client-side data encryption &
Data integrity authentication
Platform, applications, identity & access management
Operating system, network & firewall configuration
Customer data
Customer
Server-side encryption
(File system and/or data)
Network traffic protection
(Encryption/integrity/identity)
AWSOME DAY
Security, identity, and compliance
products
AWS Artifact
AWS Certificate Manager
Amazon Cloud Directory
AWS CloudHSM
Amazon Cognito
AWS Directory Service
AWS Firewall Manager
Amazon GuardDuty
AWS Identity and Access
Management
Amazon Inspector
AWS Key Management Service
Amazon Macie
AWS Organizations
AWS Shield
AWS Secrets Manager
AWS Single Sign-On
AWS WAF
AWS Artifact
AWS Certificate Manager
Amazon Cloud Directory
AWS CloudHSM
Amazon Cognito
AWS Directory Service
AWS Firewall Manager
Amazon GuardDuty
AWS Identity and Access
Management
Amazon Inspector
AWS Key Management Service
Amazon Macie
AWS Organizations
AWS Shield
AWS Secrets Manager
AWS Single Sign-On
AWS WAF
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Manage authentication and authorization
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
AWSOME DAY
AWS Identity and Access Management
(IAM)
Securely control access to AWS resources
A person or application that interacts with AWS
Collection of users with identical permissions
Temporary privileges that an entity can assume
Group
Role
IAM user
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAuthentication: Who are you?
IAM user IAM group
IAM
AWS
CLI
AWS
Management
Console
$ aws
AWS
SDKs
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAuthorization: What can you do?
IAM user,
group or role
IAM policies
Full
acces
s
Read
only
AWS
CLI
Amazon
S3 Bucket
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
$ aws
AWSOME DAYIAM roles
• IAM users, applications, and
services may assume IAM roles
• Roles uses an IAM policy for
permissions
IAM role
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAY
Using roles for temporary security
credentials
EC2
instance
Application
Amazon
S3 bucket
IAM role
IAM
policy
Assume
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAWS account root user
Account root user has complete access to all AWS services
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Recommendations
Delete root user access keys
Create an IAM user
Grant administrator access
Use IAM credentials to interact with AWS
Enable MFA
AWSOME DAYBest practices
• Delete access keys for the AWS
account root user
• Activate multi-factor
authentication (MFA)
• Only give IAM users permissions
they need
• Use roles for applications
• Rotate credentials regularly
• Remove unnecessary users
and credentials
• Monitor activity in your AWS
account
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Assess your security and compliance
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
AWSOME DAYChallenges of threat assessment
• Expensive
• Complex
• Time-consuming
• Difficult to track IT changes
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYWhat is Amazon Inspector?
Automated security assessment as a service
• Assesses applications for
vulnerabilities
• Produces a detailed list of security
findings
• Leverages security best practices
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYAmazon Inspector findings
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYRemediation recommendation
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Protect your infrastructure from Distributed
Denial of Service (DDoS) attacks
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
AWSOME DAYWhat is DDoS?
DDoS
DDoSDDoS
O
Legit user
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYDDoS mitigation challenges
Complex
Limited bandwidth
Involves rearchitecting
Manual
Degraded performance
Time-consuming
Expensive
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYWhat is AWS Shield?
DDoS
• A managed DDoS protection service
• Always-on detection and mitigations
• Seamless integration and deployment
• Cost-efficient and customizable protection
DDoSDDoS
P
Legit user
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAY
AWS Shield Standard and AWS Shield
Advanced
AWS Shield Standard
(included)
• Quick detection
• Inline attack mitigation
AWS Shield Advanced
(Optional)
• Enhanced detection
• Advanced attack mitigation
• Visibility and attack notification
• DDoS cost protection
• Specialized support
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWS security compliance
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
AWSOME DAYAssurance programs
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAY
How AWS helps customers achieve
compliance
Sharing information
• Industry certifications
• Security and control practices
• Compliance reports directly
under NDA
Assurance program
• Certifications/attestations
• Laws, regulations, and privacy
• Alignments/frameworks
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYCustomer responsibility
Review – Design – Identify –Verify
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWSOME DAY
Fundamentals of pricing
AWSOME DAYHow do you pay for AWS?
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYPay as you go
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
On premises/colocation AWS
UNDERUTILIZATION
Only pay for what you use
AWSOME DAY
Save when you reserve:
Reserved Instances
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
• Save up to 75 percent
over equivalent on-
demand capacity
• Choose
• No upfront
payments (NURI)
• partial up-front
(PURI)
• all up-front (AURI)
NURI PURI AURI
EC2
instance
AWSOME DAYUse more, pay less
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Automatic volume-based discounts
AWSOME DAYPricing concepts
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Compute Storage Data transfer
• Charged per hour/second*
• Varies by instance type
*Linux only
• Charged typically per GB • Outbound is aggregated and
charged
• Inbound has no charge (with
some exceptions)
• Charged typically per GB
AWSOME DAYDifferent services are priced differently
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Amazon EC2
Amazon EBS
Amazon S3
AWS CloudFormation
AWSOME DAYAmazon EC2: Four purchase types
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
On-Demand Instances
• Charged per hour/second*
• Short-term
• Unpredictable workloads
Reserved Instances
• Discount for 1 to 3 year
commitments
• Applications with steady
state usage
Dedicated Hosts
• Physical server dedicated to
you
• Applications with specific
compliance requirements
Spot Instances
• Spare AWS capacity for up to
90% discount
• Applications with flexible
start and end times
• Urgent computing needs for
large amounts of capacity
AWSOME DAYAmazon EBS pricing model
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Volumes Snapshots Data transfer
• Charged by GB
provisioned/month
• Varies by volume type
• Charged by space consumed
in Amazon S3
• Charged for volume copied
across regions
• Inbound data transfer is free
• Outbound data transfer
charges are tiered
AWSOME DAYAmazon S3 pricing model
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
• Amount of storage used
• Region
• Storage class
• Number and type of requests (GET, PUT, COPY)
• Amount of data transferred out of the region
AWSOME DAY
AWS services with no additional
charge
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Amazon VPC
Elastic Beanstalk
Auto Scaling
AWS CloudFormation
AWS Identity and Access
Management (IAM)
Cost estimating tools
AWSOME DAYAWS Free Tier
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Enables you to gain free hands-on experience with
the AWS platform, products, and services.
AWSOME DAYAWS Simple Monthly Calculator
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
• Estimate your monthly bill
• Per-service cost breakdown
• Aggregate monthly estimate
• Provides common customer examples
AWSOME DAYAnalyzing with AWS Cost Explorer
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Get started
quickly
Set custom intervals Filter/group data
Forecast cost and usage Save
progress
Access data
programmatically
AWSOME DAYWhat Is Trusted Advisor?
A service providing guidance to help you reduce cost,
increase performance, and improve security
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWS Support
AWSOME DAYSupport plan overview
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Support plan Features
Basic
• Customer service
• Support forums
• Service health checks
• Documentation, whitepapers, and best-practice guides
Developer
• Best-practice guidance
• Client-side diagnostic tools
• Building-block architecture support
Business
• Use-case guidance
• IAM for controlling individuals' access to AWS Support
• Full AWS Trusted Advisor
• An API for interacting with Support Center and Trusted Advisor
• Third-party software support
Enterprise
• Application architecture guidance
• Infrastructure event management
• Technical Account Manager (TAM)
• White-glove case routing
• Management business reviews
AWSOME DAYSupport documentation
• Knowledge Center (FAQs and common
requests)
• AWS Documentation
• AWS Discussion Forums
• AWS Support Center
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWSOME DAY
The AWSWell-Architected Framework
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
AWSOME DAY
What is the Well-Architected
Framework?
• A guide for designing infrastructures that are:
Secure
High-performing
Resilient
Efficient
• A systematic approach to evaluating and implementing
architectures
• Established best practices developed through lessons
learned by working with customers
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYFive pillars of the framework
Operational
excellence
Security Reliability
Performance
efficiency
Cost
optimization
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYOperational excellence
• Perform operations as code
• Annotate documentation
• Make frequent, small, reversible changes
• Refine operations procedures frequently
• Anticipate failure
• Learn from all operational failures
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYSecurity
• Implement a strong identity foundation
• Enable traceability
• Apply security at all layers
• Automate security best practices
• Protect data in transit and at rest
• Prepare for security events
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYReliability
• Test recovery procedures
• Automatically recover from failure
• Scale horizontally to increase aggregate
system availability
• Stop guessing capacity
• Manage change in automation
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYPerformance efficiency
• Democratize advanced technologies
• Go global in minutes
• Use serverless architectures
• Experiment more often
• Apply mechanical sympathy
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYCost optimization
• Adopt a consumption model
• Measure overall efficiency
• Stop spending money on data center
operations
• Analyze and attribute expenditure
• Use managed services to reduce cost of
ownership
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Reference architectures
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
AWSOME DAYReference architectures
• Visually represent application
architecture
• Demonstrate how services combine to
form a solution
• Provide guidance on building
applications
• Serve as templates to accelerate
delivery
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAY
Example: Improving availability with
Elastic Load Balancing
Web
Server
App
Server
DB
Server
Web
Server
App
Server
DB
Server
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Elastic Load Balancing
Availability Zone A
Availability Zone B
Replicated data
AWS Cloud
AWSOME DAYExample: Web application hosting
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Amazon
Route 53
Amazon
CloudFront
Amazon RDS
Amazon RDS
Replication
1
2
S3
Resources
3
Elastic Load
Balancing
4
7
App servers
EC2
App servers
EC2
Availability Zone A
Web servers
EC2
Web servers
EC2
Availability Zone B
5
5
5
5
Auto Scaling
Auto Scaling
Auto Scaling
Auto Scaling
6
6
6
6
AWS Cloud
AWSOME DAYAWS Quick Starts
• AWS CloudFormation templates
• Built by AWS solutions architects and
partners based on AWS best practices
• Include a guide with deployment
instructions
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWSOME DAY
AWSOME DAYBefore AWS
• Guessing theoretical maximum peaks?
• Is there enough resource capacity?
• Is this sufficient storage?
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
AWSOME DAYWith AWS
• With AWS:
• Servers
• Databases
• Storage
• Higher-level applications
Resources can be:
P Initiated within seconds
P Treated as “temporary and disposable”
Free from the inflexibility and constraints
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights
reserved.
Thank you!
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWSOME DAY

Weitere ähnliche Inhalte

Was ist angesagt?

AWSome Day 2016 - Module 2: Infrastructure Services
AWSome Day 2016 - Module 2: Infrastructure ServicesAWSome Day 2016 - Module 2: Infrastructure Services
AWSome Day 2016 - Module 2: Infrastructure ServicesAmazon Web Services
 
Migrating Microsoft SQL to AWS - AWS Online Tech Talks
Migrating Microsoft SQL to AWS - AWS Online Tech TalksMigrating Microsoft SQL to AWS - AWS Online Tech Talks
Migrating Microsoft SQL to AWS - AWS Online Tech TalksAmazon Web Services
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateAmazon Web Services
 
AWS 101 - Journey to the AWS Cloud Series
AWS 101 - Journey to the AWS Cloud SeriesAWS 101 - Journey to the AWS Cloud Series
AWS 101 - Journey to the AWS Cloud SeriesAmazon Web Services
 
Achieve Agility with SAP Solutions on AWS (Level 100)
Achieve Agility with SAP Solutions on AWS (Level 100)Achieve Agility with SAP Solutions on AWS (Level 100)
Achieve Agility with SAP Solutions on AWS (Level 100)Amazon Web Services
 
SharePoint 2010 Virtualisation - SharePoint Saturday UK
SharePoint 2010 Virtualisation - SharePoint Saturday UKSharePoint 2010 Virtualisation - SharePoint Saturday UK
SharePoint 2010 Virtualisation - SharePoint Saturday UKMichael Noel
 
Deploy Golang WebApp dengan AWS App Runner
Deploy Golang WebApp dengan AWS App RunnerDeploy Golang WebApp dengan AWS App Runner
Deploy Golang WebApp dengan AWS App RunnerRio Astamal
 
AWS SSA Webinar - Cost optimisation on AWS
AWS SSA Webinar - Cost optimisation on AWSAWS SSA Webinar - Cost optimisation on AWS
AWS SSA Webinar - Cost optimisation on AWSCobus Bernard
 
Running SAP All-in-One ERP production system deployment on the AWS cloud
Running SAP All-in-One ERP production system deployment on the AWS cloudRunning SAP All-in-One ERP production system deployment on the AWS cloud
Running SAP All-in-One ERP production system deployment on the AWS cloudAmazon Web Services
 
AWS Canberra WWPS Summit 2013 - Cloud Computing with AWS: Introduction to AWS
AWS Canberra WWPS Summit 2013 - Cloud Computing with AWS: Introduction to AWSAWS Canberra WWPS Summit 2013 - Cloud Computing with AWS: Introduction to AWS
AWS Canberra WWPS Summit 2013 - Cloud Computing with AWS: Introduction to AWSAmazon Web Services
 
Azure vmware solutions para partners
Azure vmware solutions para partnersAzure vmware solutions para partners
Azure vmware solutions para partnersskadobayashi
 
Microsoft SQL Server Migration Strategies (WIN302) - AWS re:Invent 2018
Microsoft SQL Server Migration Strategies (WIN302) - AWS re:Invent 2018Microsoft SQL Server Migration Strategies (WIN302) - AWS re:Invent 2018
Microsoft SQL Server Migration Strategies (WIN302) - AWS re:Invent 2018Amazon Web Services
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceAmazon Web Services
 

Was ist angesagt? (20)

AWSome Day 2016 - Module 2: Infrastructure Services
AWSome Day 2016 - Module 2: Infrastructure ServicesAWSome Day 2016 - Module 2: Infrastructure Services
AWSome Day 2016 - Module 2: Infrastructure Services
 
AWS Outposts Update
AWS Outposts UpdateAWS Outposts Update
AWS Outposts Update
 
Migrating Microsoft SQL to AWS - AWS Online Tech Talks
Migrating Microsoft SQL to AWS - AWS Online Tech TalksMigrating Microsoft SQL to AWS - AWS Online Tech Talks
Migrating Microsoft SQL to AWS - AWS Online Tech Talks
 
AWS for Startups
AWS for StartupsAWS for Startups
AWS for Startups
 
Aws
AwsAws
Aws
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS Fargate
 
AWS 101 - Journey to the AWS Cloud Series
AWS 101 - Journey to the AWS Cloud SeriesAWS 101 - Journey to the AWS Cloud Series
AWS 101 - Journey to the AWS Cloud Series
 
Achieve Agility with SAP Solutions on AWS (Level 100)
Achieve Agility with SAP Solutions on AWS (Level 100)Achieve Agility with SAP Solutions on AWS (Level 100)
Achieve Agility with SAP Solutions on AWS (Level 100)
 
SharePoint 2010 Virtualisation - SharePoint Saturday UK
SharePoint 2010 Virtualisation - SharePoint Saturday UKSharePoint 2010 Virtualisation - SharePoint Saturday UK
SharePoint 2010 Virtualisation - SharePoint Saturday UK
 
Deploy Golang WebApp dengan AWS App Runner
Deploy Golang WebApp dengan AWS App RunnerDeploy Golang WebApp dengan AWS App Runner
Deploy Golang WebApp dengan AWS App Runner
 
AWS SSA Webinar - Cost optimisation on AWS
AWS SSA Webinar - Cost optimisation on AWSAWS SSA Webinar - Cost optimisation on AWS
AWS SSA Webinar - Cost optimisation on AWS
 
Virtual AWSome Day Training
Virtual AWSome Day TrainingVirtual AWSome Day Training
Virtual AWSome Day Training
 
Running SAP All-in-One ERP production system deployment on the AWS cloud
Running SAP All-in-One ERP production system deployment on the AWS cloudRunning SAP All-in-One ERP production system deployment on the AWS cloud
Running SAP All-in-One ERP production system deployment on the AWS cloud
 
AWS Canberra WWPS Summit 2013 - Cloud Computing with AWS: Introduction to AWS
AWS Canberra WWPS Summit 2013 - Cloud Computing with AWS: Introduction to AWSAWS Canberra WWPS Summit 2013 - Cloud Computing with AWS: Introduction to AWS
AWS Canberra WWPS Summit 2013 - Cloud Computing with AWS: Introduction to AWS
 
Aws 101
Aws 101Aws 101
Aws 101
 
Azure vmware solutions para partners
Azure vmware solutions para partnersAzure vmware solutions para partners
Azure vmware solutions para partners
 
AWSomeDays 2018 TechTrack
AWSomeDays 2018 TechTrackAWSomeDays 2018 TechTrack
AWSomeDays 2018 TechTrack
 
Microsoft SQL Server Migration Strategies (WIN302) - AWS re:Invent 2018
Microsoft SQL Server Migration Strategies (WIN302) - AWS re:Invent 2018Microsoft SQL Server Migration Strategies (WIN302) - AWS re:Invent 2018
Microsoft SQL Server Migration Strategies (WIN302) - AWS re:Invent 2018
 
SAP Modernization with AWS
SAP Modernization with AWSSAP Modernization with AWS
SAP Modernization with AWS
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container Service
 

Ähnlich wie AWSome Day Brasil - Junho 2020

Introduction to the AWS Cloud - AWSome Day 2019 - Charlotte
Introduction to the AWS Cloud - AWSome Day 2019 - CharlotteIntroduction to the AWS Cloud - AWSome Day 2019 - Charlotte
Introduction to the AWS Cloud - AWSome Day 2019 - CharlotteAmazon Web Services
 
Introduction to the AWS Cloud - AWSome Day 2019 - Toronto
Introduction to the AWS Cloud - AWSome Day 2019 - TorontoIntroduction to the AWS Cloud - AWSome Day 2019 - Toronto
Introduction to the AWS Cloud - AWSome Day 2019 - TorontoAmazon Web Services
 
Introduction to the AWS Cloud - AWSome Day 2019 - Chicago
Introduction to the AWS Cloud - AWSome Day 2019 - ChicagoIntroduction to the AWS Cloud - AWSome Day 2019 - Chicago
Introduction to the AWS Cloud - AWSome Day 2019 - ChicagoAmazon Web Services
 
Introduction to the AWS Cloud - AWSome Day 2019 - Vancouver
Introduction to the AWS Cloud - AWSome Day 2019 - VancouverIntroduction to the AWS Cloud - AWSome Day 2019 - Vancouver
Introduction to the AWS Cloud - AWSome Day 2019 - VancouverAmazon Web Services
 
Introduction to the AWS Cloud - AWSome Day 2019 - Denver
Introduction to the AWS Cloud - AWSome Day 2019 - Denver Introduction to the AWS Cloud - AWSome Day 2019 - Denver
Introduction to the AWS Cloud - AWSome Day 2019 - Denver Amazon Web Services
 
AWSome Day - AWS Federal Pop-Up Loft
AWSome Day - AWS Federal Pop-Up LoftAWSome Day - AWS Federal Pop-Up Loft
AWSome Day - AWS Federal Pop-Up LoftAmazon Web Services
 
Why AWS for running Microsoft workloads - CMP202-I - New York AWS Summit
Why AWS for running Microsoft workloads - CMP202-I - New York AWS SummitWhy AWS for running Microsoft workloads - CMP202-I - New York AWS Summit
Why AWS for running Microsoft workloads - CMP202-I - New York AWS SummitAmazon Web Services
 
Well Archictecture Framework dotNET.pdf
Well Archictecture Framework dotNET.pdfWell Archictecture Framework dotNET.pdf
Well Archictecture Framework dotNET.pdfConradoDeBiasi
 
Building well architected .NET applications - SVC209 - Atlanta AWS Summit
Building well architected .NET applications - SVC209 - Atlanta AWS SummitBuilding well architected .NET applications - SVC209 - Atlanta AWS Summit
Building well architected .NET applications - SVC209 - Atlanta AWS SummitAmazon Web Services
 
Building application and migrating workload to AWS
Building application and migrating workload to AWSBuilding application and migrating workload to AWS
Building application and migrating workload to AWSAmazon Web Services
 
[AWS Media Symposium 2019] Perfecting the Media Experience with AWS - Bhavik ...
[AWS Media Symposium 2019] Perfecting the Media Experience with AWS - Bhavik ...[AWS Media Symposium 2019] Perfecting the Media Experience with AWS - Bhavik ...
[AWS Media Symposium 2019] Perfecting the Media Experience with AWS - Bhavik ...Amazon Web Services Korea
 
Blur the boundaries between your on-premises to AWS cloud by embracing VMWare...
Blur the boundaries between your on-premises to AWS cloud by embracing VMWare...Blur the boundaries between your on-premises to AWS cloud by embracing VMWare...
Blur the boundaries between your on-premises to AWS cloud by embracing VMWare...AWS Summits
 
AWS ECS Workshop A Journey to Modern Applications
AWS ECS Workshop A Journey to Modern ApplicationsAWS ECS Workshop A Journey to Modern Applications
AWS ECS Workshop A Journey to Modern ApplicationsAmazon Web Services
 
Hosting .NET Applications on AWS - AWS Federal Pop-Up Loft
Hosting .NET Applications on AWS  - AWS Federal Pop-Up LoftHosting .NET Applications on AWS  - AWS Federal Pop-Up Loft
Hosting .NET Applications on AWS - AWS Federal Pop-Up LoftAmazon Web Services
 
Strumenti e servizi basici per sviluppatori, come iniziare a creare sul cloud...
Strumenti e servizi basici per sviluppatori, come iniziare a creare sul cloud...Strumenti e servizi basici per sviluppatori, come iniziare a creare sul cloud...
Strumenti e servizi basici per sviluppatori, come iniziare a creare sul cloud...Amazon Web Services
 
DevConZM - Modern Applications Development in the Cloud
DevConZM - Modern Applications Development in the CloudDevConZM - Modern Applications Development in the Cloud
DevConZM - Modern Applications Development in the CloudCobus Bernard
 
India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...
India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...
India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...Mani Chandrasekaran
 

Ähnlich wie AWSome Day Brasil - Junho 2020 (20)

Introduction to the AWS Cloud - AWSome Day 2019 - Charlotte
Introduction to the AWS Cloud - AWSome Day 2019 - CharlotteIntroduction to the AWS Cloud - AWSome Day 2019 - Charlotte
Introduction to the AWS Cloud - AWSome Day 2019 - Charlotte
 
Introduction to the AWS Cloud - AWSome Day 2019 - Toronto
Introduction to the AWS Cloud - AWSome Day 2019 - TorontoIntroduction to the AWS Cloud - AWSome Day 2019 - Toronto
Introduction to the AWS Cloud - AWSome Day 2019 - Toronto
 
Introduction to the AWS Cloud - AWSome Day 2019 - Chicago
Introduction to the AWS Cloud - AWSome Day 2019 - ChicagoIntroduction to the AWS Cloud - AWSome Day 2019 - Chicago
Introduction to the AWS Cloud - AWSome Day 2019 - Chicago
 
Introduction to the AWS Cloud - AWSome Day 2019 - Vancouver
Introduction to the AWS Cloud - AWSome Day 2019 - VancouverIntroduction to the AWS Cloud - AWSome Day 2019 - Vancouver
Introduction to the AWS Cloud - AWSome Day 2019 - Vancouver
 
Introduction to the AWS Cloud - AWSome Day 2019 - Denver
Introduction to the AWS Cloud - AWSome Day 2019 - Denver Introduction to the AWS Cloud - AWSome Day 2019 - Denver
Introduction to the AWS Cloud - AWSome Day 2019 - Denver
 
AWSome Day - AWS Federal Pop-Up Loft
AWSome Day - AWS Federal Pop-Up LoftAWSome Day - AWS Federal Pop-Up Loft
AWSome Day - AWS Federal Pop-Up Loft
 
Why AWS for running Microsoft workloads - CMP202-I - New York AWS Summit
Why AWS for running Microsoft workloads - CMP202-I - New York AWS SummitWhy AWS for running Microsoft workloads - CMP202-I - New York AWS Summit
Why AWS for running Microsoft workloads - CMP202-I - New York AWS Summit
 
Core services
Core servicesCore services
Core services
 
AWSome Day 2019 - Mexico City
AWSome Day 2019 - Mexico CityAWSome Day 2019 - Mexico City
AWSome Day 2019 - Mexico City
 
Well Archictecture Framework dotNET.pdf
Well Archictecture Framework dotNET.pdfWell Archictecture Framework dotNET.pdf
Well Archictecture Framework dotNET.pdf
 
Building well architected .NET applications - SVC209 - Atlanta AWS Summit
Building well architected .NET applications - SVC209 - Atlanta AWS SummitBuilding well architected .NET applications - SVC209 - Atlanta AWS Summit
Building well architected .NET applications - SVC209 - Atlanta AWS Summit
 
Building application and migrating workload to AWS
Building application and migrating workload to AWSBuilding application and migrating workload to AWS
Building application and migrating workload to AWS
 
AWSome Day 2019 - Detroit
AWSome Day 2019 - DetroitAWSome Day 2019 - Detroit
AWSome Day 2019 - Detroit
 
[AWS Media Symposium 2019] Perfecting the Media Experience with AWS - Bhavik ...
[AWS Media Symposium 2019] Perfecting the Media Experience with AWS - Bhavik ...[AWS Media Symposium 2019] Perfecting the Media Experience with AWS - Bhavik ...
[AWS Media Symposium 2019] Perfecting the Media Experience with AWS - Bhavik ...
 
Blur the boundaries between your on-premises to AWS cloud by embracing VMWare...
Blur the boundaries between your on-premises to AWS cloud by embracing VMWare...Blur the boundaries between your on-premises to AWS cloud by embracing VMWare...
Blur the boundaries between your on-premises to AWS cloud by embracing VMWare...
 
AWS ECS Workshop A Journey to Modern Applications
AWS ECS Workshop A Journey to Modern ApplicationsAWS ECS Workshop A Journey to Modern Applications
AWS ECS Workshop A Journey to Modern Applications
 
Hosting .NET Applications on AWS - AWS Federal Pop-Up Loft
Hosting .NET Applications on AWS  - AWS Federal Pop-Up LoftHosting .NET Applications on AWS  - AWS Federal Pop-Up Loft
Hosting .NET Applications on AWS - AWS Federal Pop-Up Loft
 
Strumenti e servizi basici per sviluppatori, come iniziare a creare sul cloud...
Strumenti e servizi basici per sviluppatori, come iniziare a creare sul cloud...Strumenti e servizi basici per sviluppatori, come iniziare a creare sul cloud...
Strumenti e servizi basici per sviluppatori, come iniziare a creare sul cloud...
 
DevConZM - Modern Applications Development in the Cloud
DevConZM - Modern Applications Development in the CloudDevConZM - Modern Applications Development in the Cloud
DevConZM - Modern Applications Development in the Cloud
 
India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...
India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...
India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...
 

Mehr von Amazon Web Services LATAM

AWS para terceiro setor - Sessão 1 - Introdução à nuvem
AWS para terceiro setor - Sessão 1 - Introdução à nuvemAWS para terceiro setor - Sessão 1 - Introdução à nuvem
AWS para terceiro setor - Sessão 1 - Introdução à nuvemAmazon Web Services LATAM
 
AWS para terceiro setor - Sessão 2 - Armazenamento e Backup
AWS para terceiro setor - Sessão 2 - Armazenamento e BackupAWS para terceiro setor - Sessão 2 - Armazenamento e Backup
AWS para terceiro setor - Sessão 2 - Armazenamento e BackupAmazon Web Services LATAM
 
AWS para terceiro setor - Sessão 3 - Protegendo seus dados.
AWS para terceiro setor - Sessão 3 - Protegendo seus dados.AWS para terceiro setor - Sessão 3 - Protegendo seus dados.
AWS para terceiro setor - Sessão 3 - Protegendo seus dados.Amazon Web Services LATAM
 
AWS para terceiro setor - Sessão 1 - Introdução à nuvem
AWS para terceiro setor - Sessão 1 - Introdução à nuvemAWS para terceiro setor - Sessão 1 - Introdução à nuvem
AWS para terceiro setor - Sessão 1 - Introdução à nuvemAmazon Web Services LATAM
 
AWS para terceiro setor - Sessão 2 - Armazenamento e Backup
AWS para terceiro setor - Sessão 2 - Armazenamento e BackupAWS para terceiro setor - Sessão 2 - Armazenamento e Backup
AWS para terceiro setor - Sessão 2 - Armazenamento e BackupAmazon Web Services LATAM
 
AWS para terceiro setor - Sessão 3 - Protegendo seus dados.
AWS para terceiro setor - Sessão 3 - Protegendo seus dados.AWS para terceiro setor - Sessão 3 - Protegendo seus dados.
AWS para terceiro setor - Sessão 3 - Protegendo seus dados.Amazon Web Services LATAM
 
Automatice el proceso de entrega con CI/CD en AWS
Automatice el proceso de entrega con CI/CD en AWSAutomatice el proceso de entrega con CI/CD en AWS
Automatice el proceso de entrega con CI/CD en AWSAmazon Web Services LATAM
 
Automatize seu processo de entrega de software com CI/CD na AWS
Automatize seu processo de entrega de software com CI/CD na AWSAutomatize seu processo de entrega de software com CI/CD na AWS
Automatize seu processo de entrega de software com CI/CD na AWSAmazon Web Services LATAM
 
Ransomware: como recuperar os seus dados na nuvem AWS
Ransomware: como recuperar os seus dados na nuvem AWSRansomware: como recuperar os seus dados na nuvem AWS
Ransomware: como recuperar os seus dados na nuvem AWSAmazon Web Services LATAM
 
Ransomware: cómo recuperar sus datos en la nube de AWS
Ransomware: cómo recuperar sus datos en la nube de AWSRansomware: cómo recuperar sus datos en la nube de AWS
Ransomware: cómo recuperar sus datos en la nube de AWSAmazon Web Services LATAM
 
Aprenda a migrar y transferir datos al usar la nube de AWS
Aprenda a migrar y transferir datos al usar la nube de AWSAprenda a migrar y transferir datos al usar la nube de AWS
Aprenda a migrar y transferir datos al usar la nube de AWSAmazon Web Services LATAM
 
Aprenda como migrar e transferir dados ao utilizar a nuvem da AWS
Aprenda como migrar e transferir dados ao utilizar a nuvem da AWSAprenda como migrar e transferir dados ao utilizar a nuvem da AWS
Aprenda como migrar e transferir dados ao utilizar a nuvem da AWSAmazon Web Services LATAM
 
Cómo mover a un almacenamiento de archivos administrados
Cómo mover a un almacenamiento de archivos administradosCómo mover a un almacenamiento de archivos administrados
Cómo mover a un almacenamiento de archivos administradosAmazon Web Services LATAM
 
Os benefícios de migrar seus workloads de Big Data para a AWS
Os benefícios de migrar seus workloads de Big Data para a AWSOs benefícios de migrar seus workloads de Big Data para a AWS
Os benefícios de migrar seus workloads de Big Data para a AWSAmazon Web Services LATAM
 

Mehr von Amazon Web Services LATAM (20)

AWS para terceiro setor - Sessão 1 - Introdução à nuvem
AWS para terceiro setor - Sessão 1 - Introdução à nuvemAWS para terceiro setor - Sessão 1 - Introdução à nuvem
AWS para terceiro setor - Sessão 1 - Introdução à nuvem
 
AWS para terceiro setor - Sessão 2 - Armazenamento e Backup
AWS para terceiro setor - Sessão 2 - Armazenamento e BackupAWS para terceiro setor - Sessão 2 - Armazenamento e Backup
AWS para terceiro setor - Sessão 2 - Armazenamento e Backup
 
AWS para terceiro setor - Sessão 3 - Protegendo seus dados.
AWS para terceiro setor - Sessão 3 - Protegendo seus dados.AWS para terceiro setor - Sessão 3 - Protegendo seus dados.
AWS para terceiro setor - Sessão 3 - Protegendo seus dados.
 
AWS para terceiro setor - Sessão 1 - Introdução à nuvem
AWS para terceiro setor - Sessão 1 - Introdução à nuvemAWS para terceiro setor - Sessão 1 - Introdução à nuvem
AWS para terceiro setor - Sessão 1 - Introdução à nuvem
 
AWS para terceiro setor - Sessão 2 - Armazenamento e Backup
AWS para terceiro setor - Sessão 2 - Armazenamento e BackupAWS para terceiro setor - Sessão 2 - Armazenamento e Backup
AWS para terceiro setor - Sessão 2 - Armazenamento e Backup
 
AWS para terceiro setor - Sessão 3 - Protegendo seus dados.
AWS para terceiro setor - Sessão 3 - Protegendo seus dados.AWS para terceiro setor - Sessão 3 - Protegendo seus dados.
AWS para terceiro setor - Sessão 3 - Protegendo seus dados.
 
Automatice el proceso de entrega con CI/CD en AWS
Automatice el proceso de entrega con CI/CD en AWSAutomatice el proceso de entrega con CI/CD en AWS
Automatice el proceso de entrega con CI/CD en AWS
 
Automatize seu processo de entrega de software com CI/CD na AWS
Automatize seu processo de entrega de software com CI/CD na AWSAutomatize seu processo de entrega de software com CI/CD na AWS
Automatize seu processo de entrega de software com CI/CD na AWS
 
Cómo empezar con Amazon EKS
Cómo empezar con Amazon EKSCómo empezar con Amazon EKS
Cómo empezar con Amazon EKS
 
Como começar com Amazon EKS
Como começar com Amazon EKSComo começar com Amazon EKS
Como começar com Amazon EKS
 
Ransomware: como recuperar os seus dados na nuvem AWS
Ransomware: como recuperar os seus dados na nuvem AWSRansomware: como recuperar os seus dados na nuvem AWS
Ransomware: como recuperar os seus dados na nuvem AWS
 
Ransomware: cómo recuperar sus datos en la nube de AWS
Ransomware: cómo recuperar sus datos en la nube de AWSRansomware: cómo recuperar sus datos en la nube de AWS
Ransomware: cómo recuperar sus datos en la nube de AWS
 
Ransomware: Estratégias de Mitigação
Ransomware: Estratégias de MitigaçãoRansomware: Estratégias de Mitigação
Ransomware: Estratégias de Mitigação
 
Ransomware: Estratégias de Mitigación
Ransomware: Estratégias de MitigaciónRansomware: Estratégias de Mitigación
Ransomware: Estratégias de Mitigación
 
Aprenda a migrar y transferir datos al usar la nube de AWS
Aprenda a migrar y transferir datos al usar la nube de AWSAprenda a migrar y transferir datos al usar la nube de AWS
Aprenda a migrar y transferir datos al usar la nube de AWS
 
Aprenda como migrar e transferir dados ao utilizar a nuvem da AWS
Aprenda como migrar e transferir dados ao utilizar a nuvem da AWSAprenda como migrar e transferir dados ao utilizar a nuvem da AWS
Aprenda como migrar e transferir dados ao utilizar a nuvem da AWS
 
Cómo mover a un almacenamiento de archivos administrados
Cómo mover a un almacenamiento de archivos administradosCómo mover a un almacenamiento de archivos administrados
Cómo mover a un almacenamiento de archivos administrados
 
Simplifique su BI con AWS
Simplifique su BI con AWSSimplifique su BI con AWS
Simplifique su BI con AWS
 
Simplifique o seu BI com a AWS
Simplifique o seu BI com a AWSSimplifique o seu BI com a AWS
Simplifique o seu BI com a AWS
 
Os benefícios de migrar seus workloads de Big Data para a AWS
Os benefícios de migrar seus workloads de Big Data para a AWSOs benefícios de migrar seus workloads de Big Data para a AWS
Os benefícios de migrar seus workloads de Big Data para a AWS
 

Kürzlich hochgeladen

Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slidevu2urc
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?Antenna Manufacturer Coco
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?Igalia
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)wesley chun
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationMichael W. Hawkins
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsMaria Levchenko
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Igalia
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024The Digital Insurer
 
Advantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your BusinessAdvantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your BusinessPixlogix Infotech
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdfhans926745
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024The Digital Insurer
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Miguel Araújo
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Servicegiselly40
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUK Journal
 
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfThe Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfEnterprise Knowledge
 
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxThe Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxMalak Abu Hammad
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking MenDelhi Call girls
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024Rafal Los
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking MenDelhi Call girls
 

Kürzlich hochgeladen (20)

Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 
Advantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your BusinessAdvantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your Business
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Service
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfThe Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
 
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxThe Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptx
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 

AWSome Day Brasil - Junho 2020

  • 1. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved. AWSOME DAY V I R T U A L Getting Started on AWS
  • 2. AWSOME DAYCourse modules 1. Introduction to the AWS Cloud 2. Getting started with the cloud 3. Building in the cloud 4. Secure your cloud applications 5. Support your cloud applications 6. Architecture © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 3. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved. AWSOME DAY
  • 4. What is the AWS Cloud?
  • 5. AWSOME DAYWhat is the cloud? On premises Servers Storage Databases Application s Internet Servers Storage Databases Applicatio ns Cloud services provider Internet Corp network © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 6. AWSOME DAYHow does it work? • AWS owns and maintains the network-connected hardware • You provision and use what you need © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Storage Compute Database Networking & Content Delivery Business Applications Internet of Things
  • 7. AWSOME DAYCloud deployment models CloudOn premises Hybrid © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 8. What are the benefits of the AWS Cloud?
  • 9. AWSOME DAY Trade capital expense for variable expense Data center investment based upon forecast Capital Pay only for the amount you consume © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 10. AWSOME DAYMassive economies of scale Because of aggregate usage from all customers, AWS can achieve higher economies of scale and pass savings on to customers Economies of scale Savings © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 11. AWSOME DAYStop guessing capacity Overestimated server capacity Underestimated server capacity Scaling on demand © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 12. AWSOME DAYIncrease speed and agility Weeks between wanting resources and having resources Minutes between wanting resources and having resources © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Launch
  • 13. AWSOME DAY Stop spending money on running and maintaining datacenters Running datacenters Business and customers Investment © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 14. AWSOME DAYGo global in minutes © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 15. AWSOME DAYAWS security Keep your data safe Meet compliance requirements Save money Scale quickly © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 16. AWSOME DAY Satellite Security, Identity & Compliance Storage AWS service categories © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Media Services Migration & Transfer Mobile Networking & Content Delivery Robotics End User Computing Game Tech Internet of Things Machine Learning Management & Governance Business Applications Compute Customer Engagement Database Developer Tools Analytics Application Integration AR & VR AWS Cost Management Blockchain
  • 18. AWSOME DAYRegions # AWS Regions Availability Zones Planned Regions # © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 19. AWSOME DAYAvailability Zones ap-southeast-1 (Singapore) ap-southeast-1a ap-southeast-1b ap-southeast-1c datacenter(s) datacenter(s) datacenter(s) © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 20. AWSOME DAYSelecting a region Determine the right region for your services, applications, and data based on these factors Proximity to customers (latency) Data governance, legal requirements Services available within the region Costs (vary by region) © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 21. AWSOME DAY Edge locations: Reaching distant customers Edge locations Multiple edge locations Regional edge caches © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 23. AWSOME DAY AWS Management ConsoleEasy-to-use graphical interface Command Line Interface (AWS CLI)Access to services by discrete command Software Development Kits (SDKs)Access services in your code Three ways to interact with AWS © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 24. AWSOME DAYAWS Management Console © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 25. AWSOME DAYAWS CLI ~aws • Open source tool for interacting with AWS services • Environments • Linux • MacOS • Windows © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 26. AWSOME DAYAWS SDKs JavaScript Python PHP .NET Ruby Go Node.js C++ Java IoT © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 27. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved. AWSOME DAY
  • 28. Get started with AWS services
  • 29. AWSOME DAYAWS products © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 30. AWSOME DAYCloud journey © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 32. AWSOME DAYWhat is Amazon EC2?  Application server  Web server  Database server  Game server  Mail server  Media server  Catalog server  File server  Computing server  Proxy server © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 33. AWSOME DAYBenefits of Amazon EC2 © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. • Elasticity
  • 34. AWSOME DAYBenefits of Amazon EC2 © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. • Elasticity • Control
  • 35. AWSOME DAYBenefits of Amazon EC2 © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. • Elasticity • Control • Flexibility
  • 36. AWSOME DAYBenefits of Amazon EC2 © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. www.example.com Amazon Route 53 Elastic Load Balancing (ELB) Availability Zone #1 Amazon S3 bucket Amazon EBS snapshot root volume Auto Scaling group Security group EC2 instance security group data volume web app server logs CloudFront distribution media.example.com • Elasticity • Control • Flexibility • Integrated
  • 37. AWSOME DAYBenefits of Amazon EC2 © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. • Elasticity • Control • Flexibility • Integrated • Reliable
  • 38. AWSOME DAYBenefits of Amazon EC2 © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS Cloud• Elasticity • Control • Flexibility • Integrated • Reliable • Secure
  • 39. AWSOME DAYBenefits of Amazon EC2 © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS Cloud• Elasticity • Control • Flexibility • Integrated • Reliable • Secure • Inexpensive
  • 40. AWSOME DAYBenefits of Amazon EC2 • Elasticity • Control • Flexibility • Integrated • Reliable • Secure • Inexpensive • Easy © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 41. AWSOME DAY Choosing the right Amazon EC2 instances • EC2 Instance types are optimized for different use cases, workloads & come in multiple sizes. This allows you to optimally scale resources to your workload requirements. • AWS utilizes Intel® Xeon® processors for EC2 Instances providing customers with high performance and value. • Consider the following when choosing your instances: core count, memory size, storage size & type, network performance, I/O requirements & CPU technologies. • Hurry Up & Go Idle - A larger compute instance can save you time and money, therefore paying more per hour for a shorter amount of time can be less expensive. © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 42. AWSOME DAY EC2 instances powered by Intel Technologies EC2 instance type Compute optimized General purpose Memory optimized Storage optimized C5 C4 M5 M4 T2 X1 X1e R4 H1 I3 D2 Intel processor Xeon Platinum 8175M Xeon E5 2666 v3 Xeon Platinum 8175M Xeon E5 2686 v4 2676 v3 Xeon Family Xeon E7 8880 v3 Xeon E7 8880 v3 Xeon E5 2686 v4 Xeon E5 2686 v4 Xeon E5 2686 v4 Xeon E5 2676 v3 Intel processor technology Skylake Haswell Skylake Broadwell Haswell Yes Haswell Haswell Broadwell Broadwell Broadwell Haswell Intel AVX Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Intel AVX2 Yes Yes Yes Yes - Yes Yes Yes Yes Yes Yes Intel AVX-512 Yes - Yes - - - - - - - - Intel turbo Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Storage EBS-only EBS-only EBS-only EBS-only EBS-only SSD EBS-Opt SSD EBS-Opt - HDD SSD HDD © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 43. AWSOME DAYC5: Compute-optimized instances • Based on 3.0 GHz Intel Xeon Scalable Processors (Skylake) • Up to 72 vCPUs and 144 GiB of memory (2:1 Memory:vCPU ratio) • 25 Gbps NW bandwidth • Support for Intel AVX-512 25% price/performance improvement over C4 C4 C5 “We saw significant performance improvement on Amazon EC2 C5, with up to a 140% performance improvement in industry standard CPU benchmarks over C4.” “We are eager to migrate onto the AVX-512 enabled c5.18xlarge instance size… .We expect to decrease the processing time of some of our key workloads by more than 30%.” © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 44. AWSOME DAY M5: Next-gen general purpose instances • Powered by 2.5 GHz Intel Xeon Scalable Processors (Skylake) • New larger instance size—m5.24xlarge with 96 vCPUs and 384 GiB of memory (4:1 Memory:vCPU ratio) • Improved network and EBS performance on smaller instance sizes • Support for Intel AVX-512 offering up to twice the performance for vector and floating point workloads 14% price/performance improvement With M5 M4 M5 © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 45. AWSOME DAYWhat’s your platform? © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 47. AWSOME DAY Amazon Elastic Block Store (Amazon EBS) • Persistent block storage for instances • Protected through replication • Different drive types • Scale up or down in minutes • Pay for only what you provision • Snapshot functionality • Encryption available Amazon EBS Volumes © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amazon EC2 instance Amazon EC2 instance AWS Cloud Monday’s snapshot Tuesday’s snapshot Wednesday’s snapshot Thursday’s snapshot Friday’s snapshot Bill Storage provisioned…
  • 48. AWSOME DAYWhat is Amazon S3? • Data is stored as objects within buckets • Unlimited storage • Single object limited to 5TB • 99.999999999% durable • Granular access to bucket and objects © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 49. AWSOME DAYAmazon S3 core functionality • Fast, durable, highly available key-based access to objects • Object storage built to store and retrieve data • Not a file system Amazon S3 bucket Amazon S3 Client  Object returned CLI sends GET request via S3 API  © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 50. AWSOME DAYAmazon S3 common scenarios • Backup and storage • Application hosting • Media hosting • Software delivery Amazon S3 buckets Corporate Datacenter Amazon EC2 Instances© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 51. AWSOME DAYNot just a storage bucket Requester pays Versioning Hosting static websites Object lifecycle management © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 52. AWSOME DAYWhat is Amazon S3 Glacier? © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. • Low-cost data archiving and long- term backup • Can configure lifecycle archiving of Amazon S3 content to Amazon Glacier • Retrieval Options: • Standard: 3- to 5-hours • Bulk: 5-12 hours • Expedited: 1 – 5 minutes Amazon S3 Glacier Amazon S3 bucket Archive after 30 days Delete after 5 years
  • 53. AWSOME DAYAmazon S3 Glacier use cases Media asset workflows Healthcare information archiving Regulatory and compliance archiving Scientific data storage Digital preservation Magnetic tape replacement © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 54. AWSOME DAYAmazon S3 Glacier vault lock policy • Deploy and enforce compliance controls on individual Amazon Glacier vaults • Vault becomes immutable once locked © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 55. AWSOME DAYAmazon S3 storage classes Storage class Features S3 Standard • ≥3 availability zones S3 Standard - Infrequent Access (IA) • Retrieval fee associated with objects • Most suitable for infrequently accessed data S3 Intelligent-Tiering • Automatically moves objects between tiers based on access • ≥3 availability zones S3 One Zone-IA • 1 availability zone • Costs 20% less than S3 Standard-IA S3 Glacier • Not available for real-time access • Must restore objects before you can access them • Restoring objects can take 1 minute - 12 hours S3 Glacier Deep Archive • Lowest cost storage for long term retention (7-10 years) • ≥3 availability zones • Retrieval time within 12 hours © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 56. AWSOME DAYArchitecture example © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS Cloud Internet gateway Internet EC2 Web application Instance store (ephemeral) S3 bucket (static content) EBS volume (database files)
  • 58. AWSOME DAY Amazon Virtual Private Cloud (Amazon VPC) © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS Cloud Region VPC (IP Range for VPC) Availability Zone A Public subnet Instances Instances Public internet Private subnet Corporate datacenter
  • 59. AWSOME DAYSecurity groups SecurityGroupA SecurityGroup-B SecurityGroup-C Inbound Source Protocol Port 0.0.0.0/0 TCP 80 0.0.0.0/0 TCP 443 Inbound Source Protocol Port 10.0.1.0/24 TCP 22 Inbound Source Protocol Port ID of Security Group B All All © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. VPC Public subnet Private subnet Security group A Instance Instance Security group B Security group C Instance Instance
  • 60. AWSOME DAYSecurity group details • Only “allow” rules; no “deny” rules • Default values: • No inbound traffic allowed • All outbound traffic allowed • Stateful: • Allows responses from allowed inbound traffic © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 61. AWSOME DAYSecurity groups example SG-Web-Tier Inbound Source Protocol Port 0.0.0.0/0 TCP 80 0.0.0.0/0 TCP 443 10.0.16.0/20 TCP 22 Public internet SG-App-Tier Inbound Source Protocol Port ID of SG-Web-Tier TCP 6455 10.0.16.0/20 TCP 22 SG-DB-Tier Inbound Source Protocol Port ID of SG-App-Tier TCP 3306 10.0.16.0/20 TCP 22 WWW Servers MyPublicSubnet (10.0.0.0/24) © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. VPC SG-Web-Tier MyPrivateSubnet (10.0.1.0/24) SG-App-Tier SG-DB-Tier App Servers DB Servers Corp (10.0.16.0/20)
  • 62. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved. AWSOME DAY
  • 63. Go beyond servers and storage
  • 64. AWSOME DAYMigration and reinvention © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Project Foundation Cloud-Native Retire tech debt Reinvention Time Value
  • 65. AWSOME DAYImproving your initial project © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. EC2 Web application Instance store (ephemeral) S3 bucket (static content) EBS volume (database files) AWS Cloud Instance challenges: • Performance • Scalability • Utilization Database challenges: • Infrastructure management • Patching • Scalability Internet gateway Management challenges: • Monitoring • Planning for failures • Deployment
  • 67. AWSOME DAYWhat is Amazon CloudWatch? • Monitors: • AWS resources • Applications running on AWS • Collects and tracks: • Standard metrics • Custom metrics • Alarms: • Send notifications • Automatically make changes based on rules you define © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 68. AWSOME DAYHow CloudWatch works CloudWatch Available statistics Statistics consumer AWS Management Console CloudWatch metrics CPUUtilization StatusCheckFailed CloudWatch alarm © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. Supported AWS resource Custom application-specific metrics PageViewCount SNS email notification Amazon EC2 Auto Scaling
  • 69. AWSOME DAYCloudWatch benefits Access all your metrics from a single platform Maintain visibility across your applications, infrastructure, and services Reduce mean time to resolution (MTTR) and improve total cost of ownership (TCO) Drive insights to optimize applications and operational resources Pay as you go © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 71. AWSOME DAYWhy scaling matters Amazon EC2 Auto Scaling adjusts capacity as needed • Scale out for spikes • Scale in during off-peak • Replace unhealthy instances • Pay only for what you use © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Su M T W Th F Sa Demand Capacity
  • 72. AWSOME DAY Dynamic scaling with Amazon EC2 Auto Scaling • Select a load metric for your application • Set as conditional and/or scheduled • Use with CloudWatch, optionally instance instance instanceinstance instance instance Follow the demand curve for your applications Max 10 Min 2 Desired 6 © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amazon EC2 Auto Scaling group
  • 73. AWSOME DAY Dynamic scaling with Amazon EC2 Auto Scaling • Select a load metric for your application • Set as conditional and/or scheduled • Use with CloudWatch, optionally instance instance instanceinstance instance instance instance instance instance instance High Demand Follow the demand curve for your applications Max 10 Min 2 Desired 6 Max 10 Min 2 Desired 10 © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amazon EC2 Auto Scaling group
  • 74. AWSOME DAY Dynamic scaling with Amazon EC2 Auto Scaling • Select a load metric for your application • Set as conditional and/or scheduled • Use with CloudWatch, optionally instance instance Low Demand Follow the demand curve for your applications Max 10 Min 2 Desired 6 Max 10 Min 2 Desired 10 Max 10 Min 2 Desired 2 © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amazon EC2 Auto Scaling group
  • 75. AWSOME DAY Fleet management with Amazon EC2 Auto Scaling • Monitor the health of running instances • Replace impaired instances automatically • Balance capacity across Availability Zones Instance Instance InstanceInstance Instance Instance Instance Instance Instance Instance Replace impaired Amazon EC2 instances without intervention Max 10 Min 2 Desired 10 © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amazon EC2 Auto Scaling group AZ1 AZ2
  • 76. AWSOME DAY Fleet management with Amazon EC2 Auto Scaling • Monitor the health of running instances • Replace impaired instances automatically • Balance capacity across Availability Zones Instance Instance InstanceInstance Instance Instance Instance Instance Instance Instance Replace impaired Amazon EC2 instances without intervention O O Max 10 Min 2 Desired 10 © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amazon EC2 Auto Scaling group AZ1 AZ2
  • 77. AWSOME DAY Fleet management with Amazon EC2 Auto Scaling • Monitor the health of running instances • Replace impaired instances automatically • Balance capacity across Availability Zones Instance Instance InstanceInstance Instance Instance Instance Instance Replace impaired Amazon EC2 instances without intervention O O Max 10 Min 2 Desired 10 © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amazon EC2 Auto Scaling group AZ1 AZ2
  • 78. AWSOME DAY Fleet management with Amazon EC2 Auto Scaling • Monitor the health of running instances • Replace impaired instances automatically • Balance capacity across Availability Zones Instance Instance InstanceInstance Instance Instance Instance Instance Instance Instance Replace impaired Amazon EC2 instances without intervention P P Max 10 Min 2 Desired 10 © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amazon EC2 Auto Scaling group AZ1 AZ2
  • 79. AWSOME DAYElastic Load Balancing High availability Health checks SSL/TLS termination Operational monitoring Automatically distribute traffic across multiple targets Instance Instance Instance Instance Instance © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Elastic Load Balancing
  • 80. AWSOME DAYApplication Load Balancer example Application Load Balancer © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. EC2 instance /data /api /images Application 1 Application 2 Application 3
  • 81. AWSOME DAYNetwork Load Balancer example Network Load Balancer © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. EC2 EC2 EC2 Streaming Data EC2 AutoScaling 5442 5442 5442
  • 83. AWSOME DAYDIY vs. AWS database services • Operating system access • Need features of specific application © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. • Easy to set up, manage, maintain • Push-button high availability • Focus on performance • Managed infrastructure
  • 84. AWSOME DAY What is Amazon Relational Database Service? A database service that makes it easy to set up, operate, and scale a relational database in the cloud Amazon RDS Engines © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. • Easily scalable • Automatic software patching • Automated backups • Database snapshots • Multi-AZ deployments • Automatic host replacement • Encryption at rest and in transit
  • 85. AWSOME DAYWhat is Amazon Aurora? • Enterprise-class relational database • MySQL- or PostgreSQL-compatible • Up to 5X faster than standard MySQL databases • Up to 3X faster than standard PostgreSQL databases • Continuous backup to Amazon S3 • Up to 15 low-latency read replicas © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 86. AWSOME DAYRelational vs key-value databases Relational (SQL) Key-value (NoSQL) Data storage Rows and columns Key-value, document, graph Schemas Fixed Dynamic Querying Using SQL Focused on collection of documents Scalability Vertical Horizontal Example ISBN Title Author Format 3111111223439 Withering Depths Tark, Frank Paperback 3122222223439 Wily Willy Felton, Maria eBook © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. { ISBN: 3111111223439, Title: “Withering Depths”, Author: ”Tark, Frank”, Format: “Paperback” }
  • 87. AWSOME DAY • Fully managed • Low-latency queries • Fine-grained access control • Regional and global options What is Amazon DynamoDB? Fast and flexible NoSQL database service for any scale © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 88. AWSOME DAYAmazon DynamoDB use cases • Serverless web applications • Microservices data store • Mobile backends • Ad tech • Gaming • Internet of Things (IoT) © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 89. AWSOME DAYOther purpose-built database services © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amazon Redshift Fast, scalable data warehouse Amazon DocumentDB MongoDB-compatible database Amazon Neptune Graph database
  • 90. AWSOME DAYWhat is AWS Database Migration Service? Migrate databases to AWS quickly and securely © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 91. AWSOME DAYThe right tool for the right job © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. What are my requirements? Enterprise class relational database Amazon Relational Database Service (Amazon RDS) Fast and flexible NoSQL database service for any Amazon DynamoDB Operating system access or application features not supported by AWS database services Databases on EC2 Specific case-driven requirements (Machine learning, warehouse, graphs) AWS purpose-built database services
  • 93. AWSOME DAYWhat is AWS CloudFormation? Model and provision all your cloud infrastructure resources © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 94. AWSOME DAYAWS CloudFormation example Template-file (YAML/JSON ) ----- -- -- --- -- ----- - - -- --- -- ----- -- -- --- -- ----- -- -- --- -- CloudFormation Designer © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. VPC (10.1.0.0/16) Web server Security group Internet gateway Public Subnet 1 (10.1.11.0/24)
  • 95. AWSOME DAYPutting it all together (1 of 4) © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS Cloud Internet gateway Internet S3 bucket (static content) EC2 Web application EBS volume (database files)
  • 96. AWSOME DAYPutting it all together (2 of 4) © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS Cloud Internet gateway Internet S3 bucket (static content) EC2 Web application Amazon RDS
  • 97. AWSOME DAYPutting it all together (3 of 4) © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS Cloud Internet gateway Internet S3 bucket (static content) Amazon RDS Elastic Load Balancing Auto Scaling group EC2 Instances CloudWatch
  • 98. AWSOME DAYPutting it all together (4 of 4) © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS Cloud Internet gateway Internet S3 bucket (static content) Amazon RDS Elastic Load Balancing Auto Scaling group EC2 Instances CloudWatchAWS CloudFormation
  • 100. AWSOME DAYChallenge: hybrid cloud © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amazon EC2 Auto Scaling group EC2 instances EBS volumes AWS Cloud Corporate data center Clients Internet gateway Network challenges: • Performance • Reliability Storage challenges: • Duplication of data onsite/offsite • Too much network traffic • Cost inefficient Communications challenge: • Cloud instances cannot route to onsite servers
  • 101. AWSOME DAYWhat is AWS Direct Connect? © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. A dedicated network connection from your premises to AWS Reduces network costs Creates consistent network performance Provides private connectivity to your AmazonVPC Scales easily
  • 102. AWSOME DAYAWS Direct Connect example © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS Cloud Corporate data center Other AWS Services VPC Virtual private gateway Content router/firewall AWS Direct Connect location Customer or partner router AWS Direct Connect endpoint EC2 instances
  • 103. AWSOME DAYWhat is Amazon Route 53? © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. A highly available and scalable Domain Name System (DNS) web service Register domain names Route internet traffic to the resources for your domain Check the health of your resources
  • 104. AWSOME DAYRouting traffic Amazon Route 53 © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. https://sales.example.com ELB EC2 instances ELBELB VPC
  • 105. AWSOME DAY What is Amazon Elastic File System (Amazon EFS)? © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. A scalable, elastic, cloud-native file system for Linux Dynamic elasticity Scalable performance Shared file storage Fully managed Cost-effective
  • 106. AWSOME DAYPutting it all together © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amazon EC2 Auto Scaling group EC2 instances Amazon EFS AWS Cloud Clients Internet gateway Corporate data center Virtual private gateway AWS Direct Connect Amazon Route 53
  • 108. AWSOME DAYChallenge: Media streaming service © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Transcode video to multiple formats Ingest encoded video Catalog video metadata Stream video to clients The architecture must meet the following requirements: Efficient, scalable compute resources Fast data access Low latency
  • 109. AWSOME DAY AWS Lambda: Run code without servers Set your code to trigger from an event source Pay only for the compute time you use AWS SERVICES MOBILE APPS HTTP ENDPOINTS © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Upload your code to AWS Lambda Lambda runs your code only when triggered
  • 110. AWSOME DAYBenefits of Lambda Supports multiple programming languages Completely automated administration Built-in fault tolerance Supports orchestration of multiple functions Pay per use pricing © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 111. AWSOME DAYLambda example: create thumbnails Source bucket Target bucket 1 3 JSON Access policy Lambda function User 5 Lambda 2 © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS Cloud 4 Execution role
  • 112. AWSOME DAY What is Amazon Simple Notification Service (Amazon SNS)? © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. Fully managed pub/sub messaging for distributed or serverless applica Reliably deliver messages with durability Automatically scale your workload Simplify your architecture Keep messages private and secure
  • 113. AWSOME DAYAmazon SNS overview © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. SNS topics SubscribersPublisher Message filters Amazon Simple Notification Service AWS Lambda Message Queues HTTP/S
  • 114. AWSOME DAYWhat is Amazon CloudFront? © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. A fast, secure, and global content delivery network (CDN) © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 115. AWSOME DAY How CloudFront delivers content to users © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Edge location cache www.example.com/content © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 116. AWSOME DAY How CloudFront delivers content to users © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. S3 bucket Edge location cache www.example.com/content © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 117. AWSOME DAYWhat is Amazon ElastiCache? © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. Fully managed Redis or Memcached-compatible in-memory data stor Extreme performance Fully Managed Scalable Amazon ElastiCache for Redis Versatile in-memory data store Amazon ElastiCache for Memcached Scalable caching tier for data-intensive apps
  • 118. AWSOME DAYChallenge: Media streaming service © 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS Cloud Video encoders CloudFront Ingest S3 bucket SNS topic HQ 480p 360p Audio only AWS Lambda transcoding functions Playback S3 bucket Clients DynamoDB Lambda Video metadata CloudFront Streaming Stream ElastiCache for Redis Searc h
  • 119. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved. AWSOME DAY
  • 120. Secure your infrastructure © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 121. AWSOME DAYSecurity is our top priority Designed for security Constantly monitored Highly automated Highly available Highly accredited © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 122. AWSOME DAYSecurity of the cloud • Hosts, network, software, facilities • Protection of the AWS global infrastructure is top priority • Availability of third-party audit reports © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Foundation services Compute Storage Database Network AWS global infrastructure RegionsAvailability Zones Edge Locations AWS
  • 123. AWSOME DAYSecurity in the cloud Client-side data encryption & Data integrity authentication Platform, applications, identity & access management Operating system, network & firewall configuration Customer data Customer Considerations • What you should store • Which AWS services you should use • Which Region to store in • In what content format and structure • Who has access © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Server-side encryption (File system and/or data) Network traffic protection (Encryption/integrity/identity)
  • 124. AWSOME DAYAWS shared responsibility model © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Foundation services Compute Storage Database Network AWS global infrastructure RegionsAvailability Zones Edge Locations AWS Client-side data encryption & Data integrity authentication Platform, applications, identity & access management Operating system, network & firewall configuration Customer data Customer Server-side encryption (File system and/or data) Network traffic protection (Encryption/integrity/identity)
  • 125. AWSOME DAY Security, identity, and compliance products AWS Artifact AWS Certificate Manager Amazon Cloud Directory AWS CloudHSM Amazon Cognito AWS Directory Service AWS Firewall Manager Amazon GuardDuty AWS Identity and Access Management Amazon Inspector AWS Key Management Service Amazon Macie AWS Organizations AWS Shield AWS Secrets Manager AWS Single Sign-On AWS WAF AWS Artifact AWS Certificate Manager Amazon Cloud Directory AWS CloudHSM Amazon Cognito AWS Directory Service AWS Firewall Manager Amazon GuardDuty AWS Identity and Access Management Amazon Inspector AWS Key Management Service Amazon Macie AWS Organizations AWS Shield AWS Secrets Manager AWS Single Sign-On AWS WAF © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 126. Manage authentication and authorization © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 127. AWSOME DAY AWS Identity and Access Management (IAM) Securely control access to AWS resources A person or application that interacts with AWS Collection of users with identical permissions Temporary privileges that an entity can assume Group Role IAM user © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 128. AWSOME DAYAuthentication: Who are you? IAM user IAM group IAM AWS CLI AWS Management Console $ aws AWS SDKs © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 129. AWSOME DAYAuthorization: What can you do? IAM user, group or role IAM policies Full acces s Read only AWS CLI Amazon S3 Bucket © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. $ aws
  • 130. AWSOME DAYIAM roles • IAM users, applications, and services may assume IAM roles • Roles uses an IAM policy for permissions IAM role © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 131. AWSOME DAY Using roles for temporary security credentials EC2 instance Application Amazon S3 bucket IAM role IAM policy Assume © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 132. AWSOME DAYAWS account root user Account root user has complete access to all AWS services © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Recommendations Delete root user access keys Create an IAM user Grant administrator access Use IAM credentials to interact with AWS Enable MFA
  • 133. AWSOME DAYBest practices • Delete access keys for the AWS account root user • Activate multi-factor authentication (MFA) • Only give IAM users permissions they need • Use roles for applications • Rotate credentials regularly • Remove unnecessary users and credentials • Monitor activity in your AWS account © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 134. Assess your security and compliance © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 135. AWSOME DAYChallenges of threat assessment • Expensive • Complex • Time-consuming • Difficult to track IT changes © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 136. AWSOME DAYWhat is Amazon Inspector? Automated security assessment as a service • Assesses applications for vulnerabilities • Produces a detailed list of security findings • Leverages security best practices © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 137. AWSOME DAYAmazon Inspector findings © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 138. AWSOME DAYRemediation recommendation © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 139. Protect your infrastructure from Distributed Denial of Service (DDoS) attacks © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 140. AWSOME DAYWhat is DDoS? DDoS DDoSDDoS O Legit user © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 141. AWSOME DAYDDoS mitigation challenges Complex Limited bandwidth Involves rearchitecting Manual Degraded performance Time-consuming Expensive © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 142. AWSOME DAYWhat is AWS Shield? DDoS • A managed DDoS protection service • Always-on detection and mitigations • Seamless integration and deployment • Cost-efficient and customizable protection DDoSDDoS P Legit user © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 143. AWSOME DAY AWS Shield Standard and AWS Shield Advanced AWS Shield Standard (included) • Quick detection • Inline attack mitigation AWS Shield Advanced (Optional) • Enhanced detection • Advanced attack mitigation • Visibility and attack notification • DDoS cost protection • Specialized support © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 144. AWS security compliance © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 145. AWSOME DAYAssurance programs © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 146. AWSOME DAY How AWS helps customers achieve compliance Sharing information • Industry certifications • Security and control practices • Compliance reports directly under NDA Assurance program • Certifications/attestations • Laws, regulations, and privacy • Alignments/frameworks © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 147. AWSOME DAYCustomer responsibility Review – Design – Identify –Verify © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 148. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved. AWSOME DAY
  • 150. AWSOME DAYHow do you pay for AWS? © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 151. AWSOME DAYPay as you go © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. On premises/colocation AWS UNDERUTILIZATION Only pay for what you use
  • 152. AWSOME DAY Save when you reserve: Reserved Instances © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. • Save up to 75 percent over equivalent on- demand capacity • Choose • No upfront payments (NURI) • partial up-front (PURI) • all up-front (AURI) NURI PURI AURI EC2 instance
  • 153. AWSOME DAYUse more, pay less © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Automatic volume-based discounts
  • 154. AWSOME DAYPricing concepts © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Compute Storage Data transfer • Charged per hour/second* • Varies by instance type *Linux only • Charged typically per GB • Outbound is aggregated and charged • Inbound has no charge (with some exceptions) • Charged typically per GB
  • 155. AWSOME DAYDifferent services are priced differently © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amazon EC2 Amazon EBS Amazon S3 AWS CloudFormation
  • 156. AWSOME DAYAmazon EC2: Four purchase types © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. On-Demand Instances • Charged per hour/second* • Short-term • Unpredictable workloads Reserved Instances • Discount for 1 to 3 year commitments • Applications with steady state usage Dedicated Hosts • Physical server dedicated to you • Applications with specific compliance requirements Spot Instances • Spare AWS capacity for up to 90% discount • Applications with flexible start and end times • Urgent computing needs for large amounts of capacity
  • 157. AWSOME DAYAmazon EBS pricing model © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Volumes Snapshots Data transfer • Charged by GB provisioned/month • Varies by volume type • Charged by space consumed in Amazon S3 • Charged for volume copied across regions • Inbound data transfer is free • Outbound data transfer charges are tiered
  • 158. AWSOME DAYAmazon S3 pricing model © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. • Amount of storage used • Region • Storage class • Number and type of requests (GET, PUT, COPY) • Amount of data transferred out of the region
  • 159. AWSOME DAY AWS services with no additional charge © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amazon VPC Elastic Beanstalk Auto Scaling AWS CloudFormation AWS Identity and Access Management (IAM)
  • 161. AWSOME DAYAWS Free Tier © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Enables you to gain free hands-on experience with the AWS platform, products, and services.
  • 162. AWSOME DAYAWS Simple Monthly Calculator © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. • Estimate your monthly bill • Per-service cost breakdown • Aggregate monthly estimate • Provides common customer examples
  • 163. AWSOME DAYAnalyzing with AWS Cost Explorer © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Get started quickly Set custom intervals Filter/group data Forecast cost and usage Save progress Access data programmatically
  • 164. AWSOME DAYWhat Is Trusted Advisor? A service providing guidance to help you reduce cost, increase performance, and improve security © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 166. AWSOME DAYSupport plan overview © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Support plan Features Basic • Customer service • Support forums • Service health checks • Documentation, whitepapers, and best-practice guides Developer • Best-practice guidance • Client-side diagnostic tools • Building-block architecture support Business • Use-case guidance • IAM for controlling individuals' access to AWS Support • Full AWS Trusted Advisor • An API for interacting with Support Center and Trusted Advisor • Third-party software support Enterprise • Application architecture guidance • Infrastructure event management • Technical Account Manager (TAM) • White-glove case routing • Management business reviews
  • 167. AWSOME DAYSupport documentation • Knowledge Center (FAQs and common requests) • AWS Documentation • AWS Discussion Forums • AWS Support Center © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 168. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved. AWSOME DAY
  • 169. The AWSWell-Architected Framework © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 170. AWSOME DAY What is the Well-Architected Framework? • A guide for designing infrastructures that are: Secure High-performing Resilient Efficient • A systematic approach to evaluating and implementing architectures • Established best practices developed through lessons learned by working with customers © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 171. AWSOME DAYFive pillars of the framework Operational excellence Security Reliability Performance efficiency Cost optimization © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 172. AWSOME DAYOperational excellence • Perform operations as code • Annotate documentation • Make frequent, small, reversible changes • Refine operations procedures frequently • Anticipate failure • Learn from all operational failures © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 173. AWSOME DAYSecurity • Implement a strong identity foundation • Enable traceability • Apply security at all layers • Automate security best practices • Protect data in transit and at rest • Prepare for security events © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 174. AWSOME DAYReliability • Test recovery procedures • Automatically recover from failure • Scale horizontally to increase aggregate system availability • Stop guessing capacity • Manage change in automation © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 175. AWSOME DAYPerformance efficiency • Democratize advanced technologies • Go global in minutes • Use serverless architectures • Experiment more often • Apply mechanical sympathy © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 176. AWSOME DAYCost optimization • Adopt a consumption model • Measure overall efficiency • Stop spending money on data center operations • Analyze and attribute expenditure • Use managed services to reduce cost of ownership © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 177. Reference architectures © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 178. AWSOME DAYReference architectures • Visually represent application architecture • Demonstrate how services combine to form a solution • Provide guidance on building applications • Serve as templates to accelerate delivery © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 179. AWSOME DAY Example: Improving availability with Elastic Load Balancing Web Server App Server DB Server Web Server App Server DB Server © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Elastic Load Balancing Availability Zone A Availability Zone B Replicated data AWS Cloud
  • 180. AWSOME DAYExample: Web application hosting © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amazon Route 53 Amazon CloudFront Amazon RDS Amazon RDS Replication 1 2 S3 Resources 3 Elastic Load Balancing 4 7 App servers EC2 App servers EC2 Availability Zone A Web servers EC2 Web servers EC2 Availability Zone B 5 5 5 5 Auto Scaling Auto Scaling Auto Scaling Auto Scaling 6 6 6 6 AWS Cloud
  • 181. AWSOME DAYAWS Quick Starts • AWS CloudFormation templates • Built by AWS solutions architects and partners based on AWS best practices • Include a guide with deployment instructions © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 182. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved. AWSOME DAY
  • 183. AWSOME DAYBefore AWS • Guessing theoretical maximum peaks? • Is there enough resource capacity? • Is this sufficient storage? © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 184. AWSOME DAYWith AWS • With AWS: • Servers • Databases • Storage • Higher-level applications Resources can be: P Initiated within seconds P Treated as “temporary and disposable” Free from the inflexibility and constraints © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
  • 185. Thank you! © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved. AWSOME DAY