AWS Notes
5.6K subscribers
444 photos
42 videos
10 files
2.8K links
AWS Notes — Amazon Web Services Educational and Information Channel

Chat: https://xn--r1a.website/aws_notes_chat

Contacts: @apple_rom, https://www.linkedin.com/in/roman-siewko/
Download Telegram
​​Weekly Summary on AWS (April 17-23)

🔸 ACK (AWS Controllers for Kubernetes) + EKS, ECR, DynamoDB, S3, Autoscaling and API Gateway v2 + GA 👀
🔸 Amazon Linux 2022 + ECS-optimized AMI
🔸 Amplify Geo for Android + GA
🔸 Amplify Studio + GA 💪
🔸 Athena + 10 new data sources 🔥
🔸 Aurora Serverless v2 + GA 🎉
🔸 Batch + dynamically update configuration
🔸 CloudFormation + 35 new resources
🔸 Connect + API for phone numbers
🔸 DevOps Guru Proactive Insights for Serverless Applications
🔸 EC2 Auto Scaling + default instance warm-up time
🔸 EKS + OpenTelemetry Operator addon
🔸 Glue
Auto Scaling + GA
Interactive Sessions + GA
Glue Studio Detect PII + GA
Glue Studio Job Notebooks + GA
🔸 IoT TwinMaker + GA 👍
🔸 Kendra
Box Connector
Quip Connector
🔸 Keyspaces + Spark Cassandra connector
🔸 KMS + HMAC 👀
🔸 Macie + discovering more types of sensitive data
🔸 Migration Hub Orchestrator
🔸 Neptune
Free trial 👈
IAM global condition keys
openCypher GA
🔸 Personalize + starting and stopping recommender
🔸 PrivateLink + Batch
🔸 QuickSight + 1-click public embedding
🔸 RDS + Multi-AZ for Outposts
🔸 Redshift Audit Logging + CloudWatch
🔸 SageMaker Serverless Inference + GA
🔸 Security Hub + cross-Region security scores and compliance statuses
🔸 Step Functions + 20 new AWS SDK integrations
🔸 Textract + Queries

🔹 Corretto 18.0.1, 17.0.3, 11.0.15, and 8u332
🔹 Launch Wizard
IIS
Microsoft Exchange Server
🔹 MQ + ActiveMQ 5.16.4

#AWS_week
👍2
​​Weekly Summary on AWS (April 24-30)

🔸 Audit Manager + AWS Config custom rules
🔸 CloudFormation + AWS::EC2::KeyPair 👍
🔸 Connect
API to search by name, agent hierarchies, and tags
PutUserStatus
Search and review Voice ID results
🔸 EC2 i4i instances 💥
🔸 EC2 key pairs
Retrieve public key and creation date
PPK for ED25519
🔸 IAM + aws:ResourceAccount, aws:ResourceOrgPaths, and aws:ResourceOrgID 👀
🔸 Interactive Video Service + stream chat
🔸 Lambda + Insights via Application Insights
🔸 Lightsail
HTTPS redirects
TLS policy
🔸 MSK Serverless + GA 🎉
🔸 Network Firewall + AWS Managed Threat Signatures
🔸 Rekognition Streaming Video Events + GA 🎉
🔸 RDS
IPv6 👍
Query results in JSON
Usage metrics against AWS service limits
🔸 SageMaker Data Wrangler
Data Quality and Insights Report
Random and stratified samples
🔸 SES v2 + 40MB message size
🔸 Service Catalog CDK constructs ⚠️
🔸 Snow
Large Data Migration Manager
Managing devices remotely
Update of device certificates

🔹 Control Tower landing zone v.2.9
🔹 EKS + Karpenter v0.9.0 with Pod Affinity 👈
🔹 Launch Wizard + clone inputs for SAP
🔹 Polly + Neural TTS voice in Brazilian Portuguese
🔹 RDS for MariaDB + m6i/r6i instances
🔹 RDS for MySQL + m6i/r6i instances
🔹 RDS for PostgreSQL + m6i/r6i instances
🔹 Wavelength Zone + Toronto

#AWS_week
👍61
​​Weekly Summary on AWS (May 1-7)

🔸 AMB (Amazon Managed Blockchain) + Goerli for Ethereum
🔸 AppConfig Feature Flag Lambda Extension + Arm/Graviton2
🔸 Braket Hybrid Jobs + embedded circuit simulators
🔸 CodeGuru Reviewer + suppress recommendations
🔸 Compute Optimizer + 4 new Trusted Advisor checks 👍
🔸 Connect
Schedule Manager + displays metrics
StopContact
Up to 6 participants on a customer service call
🔸 EKS console + info about the Kubernetes resources 👀
🔸 IoT Secure Tunneling + single-use token and token rotation
🔸 Kinesis Video Streams + image extraction
🔸 Lex + custom vocabulary
🔸 Outposts + RDS storage autoscaling
🔸 Quicksight line chart + 2 50010 000 data points
🔸 RDS for PostgreSQL + cascading read replicas for 14.1+ 👈
🔸 RDS Performance Insights + custom time window
🔸 SageMaker Canvas + new data preparation features
🔸 SAM CLI + X-Ray
🔸 Service Catalog Provisioning constructs for AWS CDK

🔹 ElastiCache + new console
🔹 Panorama + Lenovo ThinkEdge SE70
🔹 RDS for SQL Server + SQL Server 2016 SP3, 2017 CU27, and 2019 CU15
🔹 Rekognition + Face API version 6
🔹 SageMaker Data Wrangler + M5/R5 instances

#AWS_week
👍41
​​Weekly Summary on AWS (May 8-14)

🔸 Amplify Android Library + Kotlin
🔸 Athena + Hive views
🔸 Backup Audit Manager + compliance status for VMware Virtual Machines
🔸 CloudWatch
AMI events 👍
CloudWatch Synthetics + canary resources deletion
Prometheus usage metrics
Secrets Manager usage metrics
🔸 EC2 NitroTPM & UEFI Secure Boot + GA 🎉
🔸 EKS Anywhere + curated packages 👀
🔸 EFS + locks per connection 819265536
🔸 GameKit for Unreal Engine + Android, iOS, and MacOS 🎉
🔸 IoT SiteWise + BatchGetAssetPropertyValueHistoryBatchGetAssetPropertyValue, and BatchGetAssetPropertyAggregates
🔸 Lambda + Node.js 16 💥
🔸 Lex + phrase hints
🔸 PrivateLink + IPv6 💪
🔸 SSO + delegated admin 👈
🔸 VPC
Multiple IPv6 CIDR blocks ⚠️
Traffic Mirroring + GWLB

🔹 FreeRTOS + Espressif, NXP and STMicroelectronics
🔹 SageMaker Notebook Instances + ml.g5 & Python 3.8
🔹 Step Functions + new console

#AWS_week
👍5
​​Weekly Summary on AWS (May 15-21)

🔸 ADOT (AWS Distro for OpenTelemetry) + metrics
🔸 App Mesh + IPv6 👍
🔸 Backup
FSx for NetApp ONTAP 🎉
FSx for OpenZFS 🎉
🔸 Chime SDK + video background replacement and blur on iOS and Android
🔸 Control Tower
Concurrent operations for all optional guardrails
Existing security and logging accounts 👀
🔸 EC2 Auto Scaling + metric data from the previous 14 days for Predictive Scaling
🔸 EC2 i4i.metal instances 🎉
🔸 Encryption SDK for .NET + GA
🔸 Glue
Glue Studio Visual Job API + GA
KAFKA_SASL_MECHANISM
🔸 Kendra + Jira connector
🔸 QuickSight 1-click public embedding + GA
🔸 Redshift
Isolation level SERIALIZABLE for concurrent transactions
Linear learner algorithm with Redshift ML
🔸 Resilience Hub + ECS, Route 53, DRS, Backup, and Terraform
🔸 SSM Incident Manager + automatically create incidents  in other regions, populate runbook parameters with incident metadata, and collect resource information

🔹 CloudWatch Console + new dashboard widgets
🔹 MQ + RabbitMQ 3.9.16 & 3.8.30
🔹 Kubeflow v1.4.1

#AWS_week
🔥6👍1
​​Weekly Summary on AWS (May 22-28)

🔸 AMG + version 8.4 & creating Grafana API tokens
🔸 Backup Audit Manager + S3 & Storage Gateway
🔸 CloudFront + CloudFront-Viewer-TLS header
🔸 Config + CloudWatch
🔸 Comprehend + 14 new PII entity types
🔸 DataSync
GCP
Azure
🔸 EC2
c7g Graviton3 instances 🔥
m6id/c6id 7.6TB Local NVMe instances 💥
p4de NVIDIA A100 GPUs instances 💥
Stop protection 👈
🔸 ECS Auto Scaling + changes for Capacity Providers
🔸 ElastiCache for Redis & MemoryDB for Redis + JSON
🔸 ElastiCache for Memcached 1.6.12 + in-transit encryption
🔸 FSx for Lustre + root squash
🔸 IoT Device Management + Active Jobs Limit 1000100 000
🔸 Lambda + PowerShell 👀
🔸 Lightsail + ECR
🔸 Personalize + offline metrics for recommenders
🔸 SSM + port forwarding to remote hosts 👍
🔸 Transit Gateway Network Manager + Multi-Account Support

🔹 AppSync + new console
🔹 ElastiCache for Memcached 1.6.12
🔹 Genomics CLI v1.5.0
🔹 Launch Wizard + SQL Server using FSx for NetApp ONTAP
🔹 Wavelength Zone
Nashville and Tampa
Seoul

#AWS_week
👍10
​​Weekly Summary on AWS (May 29 - June 4)

🔸 Amplify
AWSSigV4Signer
Geo (JavaScript) + Geofences
🔸 AppSync + new GraphQL Utility Helpers
🔸 Braket + Borealis
🔸 Chime SDK + centralized attendee controls
🔸 Connect
High-volume outbound communications
Task templates
TransferContact
🔸 Control Tower
Account Factory for Terraform + customization for management, log, and audit accounts 👀
Single account enrollment and update 👈
🔸 Cognito + IP address in unauthenticated calls
🔸 Data Exchange for APIs + metered billing
🔸 DataSync + EFS security: Access Points, TLS, and IAM role
🔸 DRS +  multiple staging and target accounts
🔸 EBS io2 Block Express +  Elastic Volumes and Fast Snapshot Restore (FSR)
🔸 Elemental MediaTailor + CloudWatch Vended Logs
🔸 EMR Serverless + GA 🎉
🔸 FSx for OpenZFS + update the storage and IOPS capacity
🔸 IAM + WebAuthn & Safari 👍
🔸 Kendra + GitHub SaaS & OnPrem connectors
🔸 Lookout for Metrics
Anomaly detection
Athena connector
🔸 Outposts + EC2 Dedicated Hosts
🔸 Pinpoint + custom message channel activity
🔸 PrivateLink
S3 on Outposts
Panorama
Backup for VMware
🔸 Proton + components
🔸 RDS + SSE encrypted SNS topics
🔸 Route 53 + IP-based routing 👈
🔸 SageMaker JumpStart
Automatic tuning
Incremental training for models
🔸 Transcribe + automatic language identification for multi-lingual audio

🔹 Marketplace + SaaS free trials
🔹 NoSQL Workbench for Amazon DynamoDB + CreateTable, UpdateTable, and DeleteTable
🔹 Step Functions + interactive workshop 👀
🔹 Storage Gateway Hardware Appliance + purchase through resellers
🔹 SUSE Linux Enterprise Server + price reduction
🔹 Well-Architected Tool + AWS re:Post

#AWS_week
👍7
​​Weekly Summary on AWS (June 5-11)

🔸 Amplify Flutter + customizable authentication flows
🔸 AppFlow + Salesforce Marketing Cloud
🔸 Application Migration Service + automated application modernizations
🔸 Aurora PostgreSQL
LO module
Zero-downtime patching 👈
🔸 Chime SDK + messaging conversation APIs
🔸 CloudFront + TLS 1.3 session resumption 👍
🔸 Cost Allocation Tags + UpdateCostAllocationTagsStatus
🔸 EC2 + r6id instances 💥
🔸 Health Dashboard + Connector for ServiceNow
🔸 Mainframe Modernization + GA 🎉
🔸 Neptune + Python integration
🔸 SageMaker Canvas + accelerates onboarding
🔸 SageMaker Data Wrangler
Export into SageMaker Feature Store
Split data into train and test sets
SageMaker Autopilot invoke
🔸 SageMaker Experiments + common chart types
🔸 SageMaker Studio & SageMaker Notebook Instance + JupyterLab 3 notebooks
🔸 Security Hub + automatically receives Config managed and custom rule evaluation results 👀
🔸 SSM Change Manager + ServiceNow change requests
🔸 SSM Incident Manager + ServiceNow Incidents

🔹 AppStream 2.0 + stream.standard.xlarge and stream.standard.2xlarge instance sizes
🔹 Aurora PostgreSQL + 13.7, 12.11, 11.16, and 10.21 versions
🔹 DeepRacer + quotas
🔹 EMR 6.6 + Spark 3.2, HUDI 0.10.1, Iceberg 0.13, Trino 0.367, PrestoDB 0.267, and more
🔹 IoT Device Management + 80% price reduction for Secure Tunneling
🔹 Personalize + unstructured text in six new languages
🔹 RDS for MySQL + 5.7.38 and 8.0.29
🔹 RDS for SQL Server + SQL Server 2014 SP3 CU4 SU

#AWS_week
👍5
​​Weekly Summary on AWS (June 12-18)

🔸 AppFlow + Facebook Ads, Google Ads, and Mixpanel
🔸 Chime SDK + 100 webcam video streams
🔸 Config + 15 new resource types
🔸 Connect
15 minute scheduled reports
GetCurrentUserData
🔸 DynamoDB + enhanced integration with Service Quotas 👀
🔸 EC2 Recycle Bin + IAM condition keys
🔸 EC2 VT1 + AMD-Xilinx Video SDK 2.0
🔸 ECS + Bottlerocket for NVIDIA
🔸 Keyspaces + CloudWatch
🔸 Lookout for Metrics + filters for alerts & edit existing alerts
🔸 Quicksight
Drag controller on table and pivot table
Showing/hiding pivot table columns
🔸 RDS for SQL Server + TDE enabled database migrations
🔸 SageMaker Canvas + VPC endpoints
🔸 SageMaker Data Wrangler + PySpark and Altair code snippets
🔸 Service Catalog
ABAC
Cross-account AppRegistry
🔸 OpenSearch
Cross-region search 👍
Tag-based access control
🔸 Transfer Family + SetStatOption & TlsSessionResumptionMode

🔹 Aurora Serverless v1 + in-place upgrade from MySQL 5.6 to 5.7
🔹 Budgets + UI Improvements
🔹 RDS Console + enable DevOps Guru for RDS

#AWS_week
👍2
​​ Top AWS Week Updates 2023 January 22-28

1️⃣ OpenSearch Serverless GA
2️⃣ Lambda runtime management controls
3️⃣ Fault Injection Simulator Pause I/O action for EBS
4️⃣ IPAM updates
5️⃣ Porting Advisor for Graviton



1️⃣ OpenSearch Serverless → GA:

https://aws.amazon.com/blogs/big-data/amazon-opensearch-serverless-is-now-generally-available/

На re:Invent 2022 появился "всего один" новый serverless сервис — OpenSearch Serverless. В отличие от пачки, что появились на re:Invent 2021.

К сожалению, в данном случае приставка "serverless" означает лишь то, что сервис автоматически масштабируется. А не то, что он масштабируется до нуля. 😐

⚠️ Минимальная стоимость OpenSearch Serverless700$ в месяц (т.к. минимально допустимое значение 4 OCU).

2️⃣ Lambda runtime management controls:

https://aws.amazon.com/blogs/compute/introducing-aws-lambda-runtime-management-controls/

Лямбда (как сервис) всегда обновлялась автоматически под капотом (security патчи, улучшения и т.д.), причём без оповещения об этом пользователя. Это нарушает строгие требования некоторых compliance и теперь можно не только мониторить эти обновления, но и даже отключить их.

aws lambda put-runtime-management-config --function-name function_arn --update-runtime-on Manual --runtime-version-arn runtime_version_arn

3️⃣ Fault Injection Simulator Pause I/O action for EBS:

https://docs.aws.amazon.com/fis/latest/userguide/fis-actions-reference.html#ebs-actions-reference

Теперь с помощью FIS можно моделировать тормоза EBS-дисков. Например, теперь можно будет посмотреть, как упадёт ваша self-hosted база до того, как на проде вдруг начнёт сильно тормозить диск.

4️⃣ IPAM updates.

Сразу два важных улучшения для тех, кому нужно нарезать сети для различных подразделений своей компании в AWS.

🔘 IPv6 contiguous CIDR block for IPAM pools:

https://docs.aws.amazon.com/vpc/latest/ipam/intro-create-ipv6-pools.html

При создании VPC можно самому указать IPv4 блок адресов, а вот IPv6 выдаёт AWS в случайном порядке (и забирает их после удаления VPC). Если вы хотите рулить IPv6 адресами также, то приходилось покупать адреса и заводить их в AWS как BYOIP. Теперь же можно использовать для этого IPAM, где можно получить блок IPv6 адресов /52 (по умолчанию —можно попросить до /40), который останется навсегда.

🔘 Integrate IPAM with accounts outside of an AWS Organization:

https://docs.aws.amazon.com/vpc/latest/ipam/enable-integ-ipam-outside-org.html

Другая новость — теперь IPAM работает не только для вашей AWS Organizations, что характерно для многих крупных компаний, имеющих разные организации (AWS Organizations), а при этом, понятно, общую сеть.

Нужно отметить, что IPAM — штука не бесплатная, стоит по $0.20 за каждый используемый IP в месяц (именно используемый, а не диапазон). Однако для большой компании это не актуально, в то время как удобства очевидны.

5️⃣ Porting Advisor for Graviton:

https://github.com/aws/porting-advisor-for-graviton

Вышла первая версия утилиты, которая анализирует зависимости на предмет портируемости под Graviton. Сделана на базе aarch64 Porting Advisor.

Поддерживаемые языки:
▪️ Python 3+
▪️ Java 8+
▪️ Go 1.11+
▪️ C/C++
▪️ Fortran

👇
Bonus items для тех, кто дочитал до сюда. 🙂

🔢 Aurora PostgreSQL + 14.6 version support:

https://aws.amazon.com/about-aws/whats-new/2023/01/amazon-aurora-supports-postgresql-versions/

Проходная новость, что Аврора получила поддержку 14.6 версии (и других минорных предыдущих версий), однако интересно отметить, что обычно RDS получала первой обновления, а пока на момент написания поста у RDS лишь 14.5 максимум.

🆒 720 → 730 hours per month inflation

Обнаружил в AWS Pricing Calculator прикольную фразу:

The AWS Pricing Calculator calculates using 730 hours in a month for cost calculations.

То есть у нас нонче в месяце 730 часов, а не 720, как было многие годы до этого?! 😁

☲☲☲☲☲☲☲☲☲☲☲

📌 Полный список всех AWS Updates за прошлую неделю здесь.

#AWS_week
👍14