POPULARITY
The month of June was not the most exciting one when it comes to announcements, but Arjen, Guy, and Jean-Manuel still found some things to talk about. Although there were more diversions than usual. News Finally in Sydney AQUA for Amazon Redshift launches in three additional AWS regions Amazon EMR Studio is now available in 13 regions Serverless Amazon API Gateway now supports synchronous invocations of Express Workflows using REST APIs AWS Amplify announces support for IAM permissions boundaries on Amplify-generated IAM roles Announcing Workflow Studio, a new low-code visual workflow designer for AWS Step Functions Simplify building of serverless applications with AWS-supported container images for continuous integration systems AWS SAM launches machine learning inference templates for AWS Lambda AWS Lambda now supports SASL/PLAIN authentication for functions triggered from self-managed Apache Kafka Containers Amazon EKS pods running on AWS Fargate now support custom security groups AWS App Mesh introduces enhanced ingress traffic management capabilities Announcing AWS App Mesh Controller for Kubernetes Version 1.4.0 with Ingress Enhancements Customize and Package Dependencies With Your Apache Spark Applications on Amazon EMR on Amazon EKS | AWS News Blog EC2 & VPC AWS Removes NAT Gateway's Dependence on Internet Gateway for Private Communications Amazon EC2 adds new AMI property to flag outdated AMIs Amazon EC2 now allows you to create crash-consistent AMIs from instances with multiple EBS volumes without rebooting instances AWS Backup now supports crash-consistent backups of Amazon EBS volumes attached to an Amazon EC2 instance Announcing per second billing for EC2 Windows Server and SQL Server Instances AWS announces a new shell for F1 instances with increased FPGA resources and data transfer speeds Amazon EC2 Inf1 instances - New features, improved performance and lower prices Dev & Ops AWS Systems Manager Session Manager plugin for the AWS CLI is now open source AWS announces the general availability of AWS Proton Introducing a Public Registry for AWS CloudFormation | AWS News Blog AWS Control Tower announces accessibility, console and performance improvements Configure GitHub Actions workflows with a new GitHub Action for building serverless applications Amazon CodeGuru Reviewer Updates: New Java Detectors and CI/CD Integration with GitHub Actions | AWS News Blog AWS Systems Manager now supports free text search for a node in the Session Manager console Security Amazon Cognito now supports SMS Sandbox from Amazon SNS AWS Security Hub adds 16 new controls to its Foundational Security Best Practices standard for enhanced cloud security posture monitoring AWS Resource Access Manager enables granular access control with additional managed permissions AWS Certificate Manager Private Certificate Authority now supports more flexibility for CAs shared across accounts KMS Multi-Region Keys AWS WAF adds 15 new text transformations IAM Access Analyzer adds new policy checks to help validate conditions during IAM policy authoring Data Storage & Processing Amazon QLDB supports IAM-based access policy for PartiQL queries and ledger tables Announcing Global Clusters for Amazon DocumentDB (with MongoDB compatibility) Identify and Copy existing objects to use S3 Bucket Keys, reducing the costs of Server-Side Encryption with AWS Key Management Service (SSE-KMS) AWS Glue Studio now allows you to specify streaming ETL job settings Announcing R5d instances and lookup cache for Amazon Neptune Amazon Neptune simplifies in-console experience to help customers get started faster AWS Glue Studio now includes a code editor for customizing your job scripts File Access Auditing Is Now Available for Amazon FSx for Windows File Server | AWS News Blog Amazon Athena engine version 2 is generally available in all AWS commercial and GovCloud regions Amazon Aurora Serverless v1 supports fast database cloning Amazon DocumentDB (with MongoDB compatibility) Now Supports r5.8xlarge and r5.16xlarge Instances Amazon EMR now supports up to thirty instance type configurations in Instance Fleets Amazon DynamoDB Accelerator (DAX) now supports encryption in transit of data between your applications and DAX clusters, and between the nodes within a DAX cluster AI & ML Amazon SageMaker model registry now supports rollback of deployed models Amazon SageMaker Pipelines now supports callback capability Amazon Translate is Now Integrated with Amazon CloudWatch Events and Amazon EventBridge Amazon Lex announces support for multi-valued slots Connect to your Amazon CloudWatch data to detect anomalies and diagnose their root causes using Amazon Lookout for Metrics Amazon Translate now supports XML Localization Interchange File Format - XLIFF documents Amazon SageMaker Now Supports ml.G4dn instances for Batch Transform and Processing Jobs Other Cool Stuff Amazon CloudWatch adds Control Plane API Usage Metrics across AWS Services Amazon Location Service Is Now Generally Available with New Routing and Satellite Imagery Capabilities | AWS News Blog New LoRaWAN gateway management features generally available for AWS IoT Core for LoRaWAN Announcing support for custom partitioning in AWS IoT Analytics Data Stores AWS China (Beijing) Region Adds the Third Availability Zone AWS Client VPN launches desktop client for Linux Amazon Connect launches API to configure quick connects programmatically In the Works – AWS Region in Tel Aviv, Israel | AWS News Blog New – AWS BugBust: It's Game Over for Bugs | AWS News Blog The Nanos The month of June... Sponsors Gold Sponsor Innablr Silver Sponsors AC3 CMD Solutions DoIT International
On The Cloud Pod this week, Matthew Kohn joins the team as a substitute for Jonathan and Peter, who have gone AWOL. Also, Google demonstrates again why its network is superior to the other cloud providers. A big thanks to this week's sponsors: Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. JumpCloud, which offers a complete platform for identity, access, and device management — no matter where your users and devices are located. This week's highlights AWS now allows crash-consistent AMIs without requiring a reboot. No more manual processes needed. Google is building a subsea cable named Firmina. The cable, to be comprised of 12 fiber pairs, will carry traffic quickly and securely between North and South America. Oracle announces improvements to its block volumes. Its Ultra-High-Performance (UHP) block volume comes with up to 300,000 IOPS and 2,680 MB/s throughput per volume and is generally available across all OCI commercial regions and on all interfaces. General News: Not Dead Yet Hashicorp Vagrant 3.0 will maintain its Ruby-based features while being ported to Go. We thought this was on a path to death but apparently not. Amazon Web Services: Proceed With Caution AWS announces a new region in Tel Aviv, Israel. AWS clearly realized it was behind the other cloud providers on building new regions. Amazon launches AWS Proton in general availability. There are some super cool improvements that have been done to this. Amazon EC2 now allows you to create crash-consistent Amazon Machine Images (AMIs). This is one of our EC2 wish list items — it's great to tick it off the list. AWS announces per second billing for EC2 Windows Server and SQL Server Instances. It's nice to only be billed for what you actually use. AWS removes NAT Gateway's dependence on Internet Gateway for private communications. This has been a big annoyance for a while so nice to see it sorted! Google Cloud Platform: Just Figure It Out Google is announcing the general availability of Ubuntu Pro images on Google Cloud. Doesn't make a lot of sense to embrace open source by purchasing an enterprise product. PLAID guest posts on the GCP blog talking about using Anthos Clusters on AWS. This is a really interesting blog post. Google is announcing a new model for multi-project cloud monitoring. We don't understand this one. Google announces Firmina, an open subsea cable it's building from the East Coast to Argentina. This is why its network is superior to others. Azure: Will Make Your Head Explode Azure is launching its newest sustainable datacenter region in Arizona. But why is it in Arizona? Oracle: Give Us Your Soul Oracle Cloud Infrastructure has a new Ultra-High-Performance (UHP) block volume. Of course it came up with this — Oracle needs it to support its own product. Oracle announces Java Management Service (JMS) is now generally available. This just seems like a great way for Oracle to audit you and bill you more. TCP Lightning Round In his absence, Peter takes this week's point but the team won't tell him why just to confuse him, leaving scores at Justin (10), Ryan (5), Jonathan (7), Peter (1). Other Headlines Mentioned: Azure IoT Edge integration with Azure Monitor is now in public preview AWS App Mesh introduces enhanced ingress traffic management capabilities Amazon EC2 adds new AMI property to flag outdated AMIs Amazon SageMaker Pipelines now supports callback capability Support for SQL Server in data flows using Azure Data Factory & Azure Synapse AWS Backup now supports crash-consistent backups of Amazon EBS volumes attached to an Amazon EC2 instance Azure Monitor Agent and Data Collection Rules now generally available Amazon Translate is Now Integrated with Amazon CloudWatch Events and Amazon EventBridge Introducing AWS Elemental Link UHD: a device to send live UHD video to AWS AWS Certificate Manager Private Certificate Authority now supports more flexibility for CAs shared across accounts AWS Resource Access Manager enables granular access control with additional managed permissions Things Coming Up Announcing Google Cloud 2021 Summits [frequently updated] Google Cloud Next — Not announced yet (one site says Moscone is reserved June 28–30) Amazon re:Inforce — August 24–25 — Houston, TX Google Cloud Next 2021 — October 12–14, 2021 AWS re:Invent — November 29–December 3 — Las Vegas Oracle Open World (no details yet)
In this themed episode of AWS TechChat, I am joined by Gabe Hollombe and we look at two relatively new AWS Services - Amazon EventBridge and Amazon AppFlow. We start the show revisiting a messaging foundation and what are the gaps Amazon EventBridge fills in our product portfolio. We discuss that Amazon EventBridge is a serverless event bus that makes it easy to connect applications together using data from your own applications, SaaS applications, and AWS services before contrasting Amazon EventBridge to Amazon CloudWatch Events. Then we pivot to Amazon EventBridge Schema Registry which allows you to discover, create, and manage OpenAPI schemas for events on Amazon EventBridge. You can find schemas for existing AWS services, create and upload custom schemas, or generate a schema based on events on an event bus. Lastly we talk about Amazon AppFlow, an even newer AWS service. Amazon AppFlow allows you to securely transfer data between SaaS applications like Salesforce, Marketo, and Slack with AWS services like Amazon Simple Storage Service (S3) and Amazon Redshift in just a few clicks. Speakers: Shane Baldacchino - Edge Specialist Solutions Architect, ANZ, AWS Gabe Hollombe - Principal Developer Advocate, AWS Resources: Amazon EventBridge https://aws.amazon.com/eventbridge/ Amazon CloudWatch Events https://docs.aws.amazon.com/AmazonCloudWatch/latest/events/WhatIsCloudWatchEvents.html Amazon EventBridge Schema Registry https://docs.aws.amazon.com/eventbridge/latest/userguide/eventbridge-schemas.html Amazon AppFlow https://aws.amazon.com/appflow/ AWS Events: AWS Modern Applications Online Series https://aws.amazon.com/events/application/modern-applications/ AWSome Day Online Conference https://aws.amazon.com/events/awsome-day/awsome-day-online/ AWS Data, Databases, and Analytics Online Series https://aws.amazon.com/events/data-analytics-series/ AWS Builders Online Series on-demand http://aws.amazon.com/events/builders-online-series/ AWS Summit Online on-demand - http://aws.amazon.com/events/summits/online AWS Events and Webinars - http://aws.amazon.com/events/
In this Episode of AWS TechChat, Pete and Shane are in Chicago and continue on part 2 of an update show that continues to cover some of the missed but very important updates that occurred in the last few months (November 2019 → January 2020) whilst we embraced re:Invent 2019. We start the show with some Container news. Firstly, we have four GitHub actions that provide hooks to accelerate your CI/CD pipeline. The actions relate to credentials, secrets, through to ECR and deployment. It helps developers focus on iterating with a high velocity and GitHub handling the heavy lifting of the deployment. Amazon EKS being all popular has had a limit increase - 100 Amazon EKS clusters per region per account. We continue to share two networking related updates - Access Control List (ACL) restrictions to public endpoints and the ability to resolve the private Amazon EKS cluster endpoint when using a peered VPC. Finally, on the container front we launched AWS Fargate Spot, only for Amazon ECS allowing saving up to 70%. Amazon EC2 Spot Now Provides Instance Launch Notifications via Amazon CloudWatch Events allowing you to up your observability and monitoring game. We then pivot to messaging updates. Amazon Simple Email Service (SES) enables you to configure DomainKeys Identified Mail (DKIM) using your own RSA key pair. It is now supports FIPS 140-2 compliant end-points and Account-Level Suppression list which allowing you to specify whether addresses should be added to the list when they result in hard bounces, or when they result in complaints, or both. Amazon SNS now brings support for a DLQ. You can now set a dead-letter queue (DLQ) to an (SNS) subscription to capture undeliverable messages and push them to a SQS queue. AWS Lambda now provides support to allow you to provision capacity, allowing you to prevent cold starts and is another tool in your toolbox that may make AWS Lambda more applicable to more workloads that require highly consistent latency. Lastly, we close off the show with Amazon EBS Fast Snapshot Restore (FSR) update. It eliminates the need for pre-warming data into volumes created from snapshots. Speakers: Shane Baldacchino - Solutions Architect, ANZ, AWS Peter Stanski - Head of Solution Architecture, AWS Resources: AWS DataSync announces a 68% price reduction https://aws.amazon.com/about-aws/whats-new/2019/11/aws-datasync-announces-68-percent-price-reduction/ Amazon Elastic Container Service publishes multiple GitHub Actions https://aws.amazon.com/about-aws/whats-new/2019/11/amazon-elastic-container-service-publishes-multiple-github-actions/ AWS for GitHub Actions https://github.com/aws-actions Amazon EKS Increases Limits to 100 Clusters per Region https://aws.amazon.com/about-aws/whats-new/2019/11/amazon-eks-increases-limits-to-100-clusters-per-region/ Amazon EKS enables network access restrictions to Kubernetes cluster public endpoints https://aws.amazon.com/about-aws/whats-new/2019/12/amazon-eks-enables-network-access-restrictions-to-kubernetes-cluster-public-endpoints/ DNS Resolution for EKS Clusters Using Private Endpoints https://aws.amazon.com/about-aws/whats-new/2019/12/dns-resolution-for-eks-clusters-using-private-endpoints/ AWS launches Fargate Spot, save up to 70% for fault tolerant applications https://aws.amazon.com/about-aws/whats-new/2019/12/aws-launches-fargate-spot-save-up-to-70-for-fault-tolerant-applications/ Amazon EC2 Spot Now Provides Instance Launch Notifications via Amazon CloudWatch Events https://aws.amazon.com/about-aws/whats-new/2019/12/amazon-ec2-spot-now-provides-instance-launch-notifications-via-amazon-cloudwatch-events/ AWS Whats New (Webhook): Amazon SES now enables you to configure DKIM using your own RSA key pair https://aws.amazon.com/about-aws/whats-new/2019/12/amazon-ses-now-enables-you-to-configure-dkim-using-your-own-rsa-/
Simon takes you through lots of great new features and capabilities for customers, and also a special call out for listeners attending AWS re:Invent to get some AWS Podcast swag! Shownotes with timestamps: 1:42 Compute In the Works – AWS Region in Milan, Italy - AWS News Blog | https://aws.amazon.com/blogs/aws/in-the-works-aws-region-in-milan-italy/ AWS GovCloud (US-East) Now Open - AWS News Blog | https://aws.amazon.com/blogs/aws/aws-govcloud-us-east-now-open/ Amazon EC2 now offers On-Demand Capacity Reservations | https://aws.amazon.com/about-aws/whats-new/2018/10/Amazon-EC2-now-offers-On-Demand-Capacity-Reservations/ Introducing Amazon EC2 Instances Featuring AMD EPYC Processors | https://aws.amazon.com/about-aws/whats-new/2018/11/introducing_amazon_ec2_instances_featuring_amd_epyc_processors/ Amazon ECS-CLI Supports Private Registry Authentication | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-ecs-cli-supports-private-registry-authentication/ Amazon EKS now supports additional VPC CIDR blocks | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-eks-now-supports-additional-vpc-cidr-blocks/ AWS Serverless Application Model Supports Amazon API Gateway Authorizers | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-sam-supports-amazon-api-gateway-authorizers/ 6:04 Cost Management Introducing the New AWS Budgets Console | https://aws.amazon.com/about-aws/whats-new/2018/10/introducing-the-new-aws-budgets-console/ AWS now Supports SEPA Direct Debit Payments in Europe | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-sepa-support/ Amazon API Gateway Announces Tiered Pricing | https://aws.amazon.com/about-aws/whats-new/2018/11/api-gateway-announces-tiered-pricing/ AWS IoT Core Improves the Ability to Ingest Large Amounts of Device Data at a Lower Cost | https://aws.amazon.com/about-aws/whats-new/2018/11/aws-iot-core-improves-ability-to-ingest-large-amounts-of-data/ Access Reserved Instance Purchase Recommendations for All of Your Linked Accounts From a Central Location | https://aws.amazon.com/about-aws/whats-new/2018/11/central-location-for-accessing-ri-purchase-recommendations-for-all-accounts/ Monitor Your Amazon Elasticsearch Reserved Instance Utilization and Coverage Using AWS Budgets | https://aws.amazon.com/about-aws/whats-new/2018/11/monitor-your-amazon-elasticsearch-ri-using-aws-budgets/ Amazon EC2 Spot Console now Provides Access to Spot Savings Information | https://aws.amazon.com/about-aws/whats-new/2018/11/Amazon-EC2-Spot-Console-now-Provides-Access-to-Spot-Savings-Information/ 10:15 Machine Learning Amazon Translate now offers 113 new language pairs | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-translate-now-offers-113-new-language-pairs/ Amazon Polly Adds Italian and Castilian Spanish Voices, and Mexican Spanish Language Support | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-polly-adds-italian-and-castilian-spanish-voices-and-mexican-spanish-language-support/ Amazon Rekognition Announces More Accurate Object and Scene Detection, Can Now Locate Objects in Your Images | https://aws.amazon.com/about-aws/whats-new/2018/11/Amazon-rekognition-announces-more-accurate-object-and-scene-detection-can-now-locate-objects-in-your-images/ Amazon SageMaker Now Supports Pipe Mode for Datasets in CSV Format | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-sagemaker-now-supports-pipe-mode-for-datasets-in-csv-form/ Amazon SageMaker Batch Transform Now Supports AWS KMS Based Encryption | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-sagemaker-batch-transform-now-supports-aws-kms-based-encr/ Now Clone a Hyperparameter Tuning Job through the Amazon SageMaker Console | https://aws.amazon.com/about-aws/whats-new/2018/11/now-clone-a-hyperparameter-tuning-job-through-the-amazon-sagemak0/ Amazon SageMaker Now Supports Apache MXNet 1.3 and TensorFlow 1.11 | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-sagemaker-now-supports-apache-mxnet-1-3-and-tensorflow-1-/ Amazon SageMaker Now Supports Incremental Learning for Image Classification and Object Detection Algorithms | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-sagemaker-now-supports-incremental-learning-for-image-cla/ Amazon SageMaker Batch Transform Now Supports Amazon Virtual Private Cloud | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-sagemaker-batch-transform-now-supports-amazon-virtual-pri/ Now Use Chainer 5.0 on AWS Deep Learning AMIs | https://aws.amazon.com/about-aws/whats-new/2018/11/chainer5-0_launch_deep_learning_ami/ Introducing Machine Learning for Telecommunication | https://aws.amazon.com/about-aws/whats-new/2018/11/introducing-machine-learning-for-telecommunication/ 15:14 Storage Amazon EFS now Supports AWS VPN and Inter-Region VPC Peering | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-efs-now-supports-aws-vpn-and-inter-region-vpc-peering/ Amazon Elastic File System Now Supports 512 Locks per File | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-elastic-file-system-now-supports-512-locks-per-file/ Amazon S3 Management Console is Now Available in Five New Languages | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-s3-console-is-now-available-in-five-new-languages/ Amazon Data Lifecycle Manager adds support for copying EBS volume tags to EBS snapshots | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-data-lifecycle-manager-adds-support-for-copying-ebs-volume-tags-to-ebs-snapshots/ 16:23 Networking Announcing the general availability of Bring Your Own IP for Amazon Virtual Private Cloud | https://aws.amazon.com/about-aws/whats-new/2018/10/announcing-the-general-availability-of-bring-your-own-ip-for-amazon-virtual-private-cloud/ Amazon API Gateway Launches the Serverless Developer Portal | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-api-gateway-launches-the-serverless-developer-portal/ Amazon API Gateway Adds Support for AWS WAF | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-api-gateway-adds-support-for-aws-waf/ Amazon CloudFront announces six new Edge locations across North America, Europe, and Asia | https://aws.amazon.com/about-aws/whats-new/2018/11/cloudfront-nov6-launch/ Amazon Route 53 Releases Interactive Map for Traffic Flow Geoproximity Routing | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-route-53-releases-interactive-map-for-traffic-flow-geoproximity-routing/ 19:17 Databases Amazon ElastiCache Now Supports the Next Generation General-Purpose and Memory-Optimized Amazon EC2 M5 and R5 Nodes | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon_elasticache_now_supports_the_next_generation_general-purpose_and_memory-optimized_amazon_ec2_m5_and_r5_nodes/ New – Redis 5.0 Compatibility for Amazon ElastiCache - AWS News Blog | https://aws.amazon.com/blogs/aws/new-redis-5-0-compatibility-for-amazon-elasticache/ Amazon RDS Enables Stopping and Starting of Multi-AZ Database Instances | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-rds-stop-and-start-of-multi-az-instances/ Amazon RDS for MySQL,MariaDB and PostgreSQL Now Supports Database Storage Size up to 32TiB | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-rds-mysql-mariadb-postgresql-32tib-support/ Amazon RDS now supports MySQL 8.0 | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-rds-now-supports-mysql-8/ Amazon RDS now supports MariaDB 10.3 | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-rds-now-supports-mariadb-10_3/ PostgreSQL 11 is Now Available in Amazon RDS Database Preview Environment | https://aws.amazon.com/about-aws/whats-new/2018/10/postgresql-11-available-in-rds-database-preview/ Amazon RDS for SQL Server Enhances Backup and Restore Capabilities | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-rds-for-sql-server-enhances-backup-and-restore-capabilities/ Amazon RDS for Oracle Now Supports M5 Instance Types | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-rds-for-oracle-supports-m5-instances/ Amazon RDS Performance Insights is Generally Available on RDS for Oracle | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-rds-performance-insights-is-generally-available-on-rds-for-oracle/ Amazon RDS for Oracle Now Supports Oracle Java | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-rds-for-oracle-now-supports-oracle-java/ Amazon RDS for Oracle Now Supports Extended Data Types | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-rds-for-oracle-now-supports-extended-data-types/ Amazon RDS Now Sends Events to Amazon CloudWatch Events | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-rds-now-sends-events-to-amazon-cloudwatch-events/ Amazon RDS for SQL Server Now Supports Always On Availability Groups | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-rds-for-sql-server-now-supports-alwayson-availability-groups/ Amazon Aurora with PostgreSQL Compatibility Supports IAM Authentication | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-aurora-postgresql-supports-iam-authentication/ 24:37 Management Tools New – CloudFormation Drift Detection - AWS News Blog | https://aws.amazon.com/blogs/aws/new-cloudformation-drift-detection/ New AWS CloudFormation Management Console Now Available | https://aws.amazon.com/about-aws/whats-new/2018/11/new-aws-cloudformation-management-console-now-available/ AWS CloudFormation coverage updates for Amazon Secrets Manager, Amazon API Gateway, Amazon RDS, Amazon Route53, Amazon Cloudwatch alarms and more | https://aws.amazon.com/about-aws/whats-new/2018/11/aws-cloudformation-coverage-updates-for-amazon-secrets-manager--/ Introducing AWS CloudFormation support for Amazon Data Lifecycle Manager policies | https://aws.amazon.com/about-aws/whats-new/2018/11/introducing-aws-cloudformation-support-for-amazon-data-lifecycle-manager-policies/ New Quick Start builds a CI/CD pipeline to test AWS CloudFormation templates using AWS TaskCat | https://aws.amazon.com/about-aws/whats-new/2018/10/new-quickstart-builds-cicd-pipeline-to-test-cloudformation-templates-using-taskcat/ Amazon CloudWatch Events Adds the Ability to Share Events Across All Accounts in an Organization | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-cloudwatch-events-adds-the-ability-to-share-events-across-all-accounts-in-an-organization/ Easily Monitor Security Events of Your AWS Managed Microsoft AD Using Amazon CloudWatch Logs | https://aws.amazon.com/about-aws/whats-new/2018/10/easily-monitor-security-events-of-your-aws-managed-microsoft-ad-using-amazon-cloudwatch-logs/ 27:41 Business Productivity Amazon WorkDocs Now Lets You Control IP Address Access to Your Site | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-workdocs-control-ip-address-access/ Alexa for Business now enables third party device makers to have their products be managed as shared devices | https://aws.amazon.com/about-aws/whats-new/2018/10/alexa-for-business-now-enables-third-party-device-makers-to-have/ Introducing Amazon AppStream 2.0 AWS CloudFormation Support and User Pool APIs | https://aws.amazon.com/about-aws/whats-new/2018/10/introducing-amazon-appstream-2-0-aws-cloudformation-support-and-/ Amazon WorkDocs Drive Now Available for Mac | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-workdocs-drive-available-for-mac/ 28:30 Security AWS Firewall Manager Now Supports Multiple AWS WAF Rule Groups | https://aws.amazon.com/about-aws/whats-new/2018/10/firewall-manager-now-supports-multiple-aws-waf-rulegroups-per-policy/ AWS Single Sign-On Now Enables You to Optimize How Long You can Access AWS Accounts | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-single-sign-on-now-enables-you-to-optimize-how-long-you-can-access-aws-accounts/ AWS Single Sign-On Adds More Pre-Integrated Business Applications | https://aws.amazon.com/about-aws/whats-new/2018/11/aws-single-sign-on-adds-more-pre-integrated-business-applications/ Amazon GuardDuty Optimizes AWS CloudTrail Analysis Reducing Cost for Customers | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-guardduty-optimizes-aws-cloudtrail-analysis-reducing-cost-for-customers/ Amazon Inspector Launches Agentless Network Assessments | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-inspector-launches-agentless-network-assessments/ Amazon Inspector Adds Amazon EC2 Instance Details to Security Findings | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-inspector-adds-amazon-ec2-instance-details-to-security-findings/ Centralized Logging Now Leverages Amazon Cognito for User Authentication | https://aws.amazon.com/about-aws/whats-new/2018/11/centralized-logging-now-leverages-amazon-cognito-for-user-authentication/ AWS Key Management Service Has a New Console Experience | https://aws.amazon.com/about-aws/whats-new/2018/11/aws-key-management-service-has-a-new-console-experience/ 32:13 Analytics Amazon QuickSight adds support for Top N Filters, Cascading Parameter Controls, and JSON Parsing | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-quickSight-now-supports-top-bottom-filters-cascading-parameter-controls-and-json-parsing-on-data-sources/ Amazon EMR now supports a public EMR artifact repository for Maven builds | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-emr-now-supports-a-public-EMR-artifact-repository-for-maven-builds/ Amazon EMR now supports G3, H1, and Z1d instances | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-emr-now-supports-g3-h1-z1d-instances/ Support for Flink 1.6.0, Zeppelin 0.8.0, and S3 Select with Hive and Presto on Amazon EMR release 5.18.0 | https://aws.amazon.com/about-aws/whats-new/2018/11/support-for-flink-160-zeppelin-080-and-s3-select-with-hive-and-presto-on-amazon-emr-release-5180/ Stream data from Microsoft Windows based services using the Amazon Kinesis Agent for Microsoft Windows | https://aws.amazon.com/about-aws/whats-new/2018/11/stream-data-from-microsoft-windows-based-services-using-the-amazon-kinesis-agent-for-microsoft-windows/ 33:36 Customer Engagement Amazon Pinpoint announces support for transactional emails and the addition of rich email analytics dashboards | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-pinpoint-announces-support-for-transactional-emails-and-t/ 34:33 Application Integration Amazon SQS FIFO Queues Now Available in Asia Pacific (Tokyo) and Asia Pacific (Sydney) Regions - Amazon Web Services | https://aws.amazon.com/about-aws/whats-new/2018/11/amazon-sqs-fifo-asia-pacific-tokyo-sydney/
Simon shares a great list of new capabilities for customers! Chapters: 00:00- 00:08 Opening 00:09 - 10:50 Compute 10:51 - 25:50 Database and Storage 25:51 - 28:25 Network 28:26 - 35:01 Development 35:09 - 39:03 AI/ML 39:04 - 45:04 System Management and Operations 45:05 - 46:18 Identity 46:19 - 48:05 Video Streaming 48:06 - 49:14 Public Datasets 49:15 - 49:54 AWS Marketplace 49:55 - 51:03 YubiKey Support for MFA 51:04 - 51:18 Closing Shownotes: Amazon EC2 F1 Instance Expands to More Regions, Adds New Features, and Improves Development Tools | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-ec2-f1-instance-expands-to-more-regions-adds-new-features-and-improves-development-tools/ Amazon EC2 F1 instances now Available in an Additional Size | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-ec2-f1-instances-now-available-in-an-additional-size/ Amazon EC2 R5 and R5D instances now Available in 8 Additional AWS Regions | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-ec2-r5-and-r5d-instances-now-available-in-8-additional-aws-regions/ Introducing Amazon EC2 High Memory Instances with up to 12 TB of memory, Purpose-built to Run Large In-memory Databases, like SAP HANA | https://aws.amazon.com/about-aws/whats-new/2018/09/introducing-amazon-ec2-high-memory-instances-purpose-built-to-run-large-in-memory-databases/ Introducing a New Size for Amazon EC2 G3 Graphics Accelerated Instances | https://aws.amazon.com/about-aws/whats-new/2018/10/introducing-a-new-size-for-amazon-ec2-g3-graphics-accelerated-instances/ Amazon EC2 Spot Console Now Supports Scheduled Scaling for Application Auto Scaling | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-ec2-spot-console-now-supports-scheduled-scaling-for-application-auto-scaling/ Amazon Linux 2 Now Supports 32-bit Applications and Libraries | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-linux-2-now-supports-32-bit-applications-and-libraries/ AWS Server Migration Service Adds Support for Migrating Larger Data Volumes | https://aws.amazon.com/about-aws/whats-new/2018/09/aws-server-migration-service-adds-support-for-migrating-larger-data-volumes/ AWS Migration Hub Saves Time Migrating with Application Migration Status Automation | https://aws.amazon.com/about-aws/whats-new/2018/10/aws_migration_hub_saves_time_migrating_with_application_migration_status_automation/ Plan Your Migration with AWS Application Discovery Service Data Exploration | https://aws.amazon.com/about-aws/whats-new/2018/09/plan-your-migration-with-aws-application-discovery-service-data-exploration/ AWS Lambda enables functions that can run up to 15 minutes | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-lambda-supports-functions-that-can-run-up-to-15-minutes/ AWS Lambda announces service level agreement | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-lambda-introduces-service-level-agreement/ AWS Lambda Console Now Enables You to Manage and Monitor Serverless Applications | https://aws.amazon.com/about-aws/whats-new/2018/08/aws-lambda-console-enables-managing-and-monitoring/ Amazon EKS Enables Support for Kubernetes Dynamic Admission Controllers | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-eks-enables-support-for-kubernetes-dynamic-admission-cont/ Amazon EKS Simplifies Cluster Setup with update-kubeconfig CLI Command | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-eks-simplifies-cluster-setup-with-update-kubeconfig-cli-command/ Amazon Aurora Parallel Query is Generally Available | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-aurora-parallel-query-is-generally-available/ Amazon Aurora Now Supports Stopping and Starting of Database Clusters | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-aurora-stop-and-start/ Amazon Aurora Databases Support up to Five Cross-Region Read Replicas | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-aurora-databases-support-up-to-five-cross-region-read-replicas/ Amazon RDS Now Provides Database Deletion Protection | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-rds-now-provides-database-deletion-protection/ Announcing Managed Databases for Amazon Lightsail | https://aws.amazon.com/about-aws/whats-new/2018/10/announcing-managed-databases-for-amazon-lightsail/ Amazon RDS for MySQL and MariaDB now Support M5 Instance Types | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-rds-for-mysql-and-mariadb-support-m5-instance-types/ Amazon RDS for Oracle Now Supports Database Storage Size up to 32TiB | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-rds-for-oracle-now-supports-32tib/ Specify Parameter Groups when Restoring Amazon RDS Backups | https://aws.amazon.com/about-aws/whats-new/2018/10/specify-parameter-groups-when-restoring-amazon-rds-backups/ Amazon ElastiCache for Redis adds read replica scaling for Redis Cluster | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-elasticache-for-redis-adds-read-replica-scaling-for-redis-cluster/ Amazon Elasticsearch Service now supports encrypted communication between Elasticsearch nodes | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon_elasticsearch_service_now_supports_encrypted_communication_between_elasticsearch_nodes/ Amazon Athena adds support for Creating Tables using the results of a Select query (CTAS) | https://aws.amazon.com/about-aws/whats-new/2018/10/athena_ctas_support/ Amazon Redshift announces Query Editor to run queries directly from the AWS Management Console | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon_redshift_announces_query_editor_to_run_queries_directly_from_the_aws_console/ Support for TensorFlow and S3 select with Spark on Amazon EMR release 5.17.0 | https://aws.amazon.com/about-aws/whats-new/2018/09/support-for-tensorflow-s3-select-with-spark-on-amazon-emr-release-517/ AWS Database Migration Service Makes It Easier to Migrate Cassandra Databases to Amazon DynamoDB | https://aws.amazon.com/about-aws/whats-new/2018/09/aws-dms-aws-sct-now-support-the-migration-of-apache-cassandra-databases/ The Data Lake Solution Now Integrates with Microsoft Active Directory | https://aws.amazon.com/about-aws/whats-new/2018/09/the-data-lake-solution-now-integrates-with-microsoft-active-directory/ Amazon S3 Announces Selective Cross-Region Replication Based on Object Tags | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-s3-announces-selective-crr-based-on-object-tags/ AWS Storage Gateway Is Now Available as a Hardware Appliance | https://aws.amazon.com/about-aws/whats-new/2018/09/aws-storage-gateway-is-now-available-as-a-hardware-appliance/ AWS PrivateLink now supports access over AWS VPN | https://aws.amazon.com/about-aws/whats-new/2018/09/aws-privatelink-now-supports-access-over-aws-vpn/ AWS PrivateLink now supports access over Inter-Region VPC Peering | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-privatelink-now-supports-access-over-inter-region-vpc-peering/ Network Load Balancer now supports AWS VPN | https://aws.amazon.com/about-aws/whats-new/2018/09/network-load-balancer-now-supports-aws-vpn/ Network Load Balancer now supports Inter-Region VPC Peering | https://aws.amazon.com/about-aws/whats-new/2018/10/network-load-balancer-now-supports-inter-region-vpc-peering/ AWS Direct Connect now Supports Jumbo Frames for Amazon Virtual Private Cloud Traffic | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-direct-connect-now-supports-jumbo-frames-for-amazon-virtual-private-cloud-traffic/ Amazon CloudFront announces two new Edge locations, including its second location in Fujairah, United Arab Emirates | https://aws.amazon.com/about-aws/whats-new/2018/10/cloudfront-fujairah/ AWS CodeBuild Now Supports Building Bitbucket Pull Requests | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-codebuild-now-supports-building-bitbucket-pull-requests/ AWS CodeCommit Supports New File and Folder Actions via the CLI and SDKs | https://aws.amazon.com/about-aws/whats-new/2018/09/aws-codecommit-supports-new-file-and-folder-actions-via-the-cli-and-sdks/ AWS Cloud9 Now Supports TypeScript | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-cloud9-now-supports-typescript/ AWS CloudFormation coverage updates for Amazon API Gateway, Amazon ECS, Amazon Aurora Serverless, Amazon ElastiCache, and more | https://aws.amazon.com/about-aws/whats-new/2018/09/aws-cloudformation-coverage-updates-for-amazon-api-gateway--amaz/ AWS Elastic Beanstalk adds support for T3 instance and Go 1.11 | https://aws.amazon.com/about-aws/whats-new/2018/09/aws-elastic-beanstalk-adds-support-for-t3-instance-and-go-1-11/ AWS Elastic Beanstalk Console Supports Network Load Balancer | https://aws.amazon.com/about-aws/whats-new/2018/10/aws_elastic_beanstalk_console_supports_network_load_balancer/ AWS Amplify Announces Vue.js Support for Building Cloud-powered Web Applications | https://aws.amazon.com/about-aws/whats-new/2018/09/aws-amplify-announces-vuejs-support-for-building-cloud-powered-web-applications/ AWS Amplify Adds Support for Securely Embedding Amazon Sumerian AR/VR Scenes in Web Applications | https://aws.amazon.com/about-aws/whats-new/2018/09/AWS-Amplify-adds-support-for-securely-embedding-Amazon-Sumerian/ Amazon API Gateway adds support for multi-value parameters | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-api-gateway-adds-support-for-multi-parameters/ Amazon API Gateway adds support for OpenAPI 3.0 API specification | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-api-gateway-adds-support-for-openapi-3-api-specification/ AWS AppSync Launches a Guided API Builder for Mobile and Web Apps | https://aws.amazon.com/about-aws/whats-new/2018/09/AWS-AppSync-launches-a-guided-API-builder-for-apps/ Amazon Polly Adds Mandarin Chinese Language Support | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-polly-adds-mandarin-chinese-language-support/ Amazon Comprehend Extends Natural Language Processing for Additional Languages and Region | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon_comprehend_extends_natural_language_processing_for_additional_languages_and_region/ Amazon Transcribe Supports Deletion of Completed Transcription Jobs | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon_transcribe_supports_deletion_of_completed_transcription_jobs/ Amazon Rekognition improves the accuracy of image moderation | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-rekognition-improves-the-accuracy-of-image-moderation/ Save time and money by filtering faces during indexing with Amazon Rekognition | https://aws.amazon.com/about-aws/whats-new/2018/09/save-time-and-money-by-filtering-faces-during-indexing-with-amazon-rekognition/ Amazon SageMaker Now Supports Tagging for Hyperparameter Tuning Jobs | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-sagemaker-now-supports-tagging-for-hyperparameter-tuning-/ Amazon SageMaker Now Supports an Improved Pipe Mode Implementation | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-sagemaker-now-supports-an-improved-pipe-mode-implementati/ Amazon SageMaker Announces Enhancements to its Built-In Image Classification Algorithm | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-sagemaker-announces-enhancements-to-its-built-in-image-cl/ AWS Glue now supports connecting Amazon SageMaker notebooks to development endpoints | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-glue-now-supports-connecting-amazon-sagemaker-notebooks-to-development-endpoints/ AWS Glue now supports resource-based policies and resource-level permissions for the AWS Glue Data Catalog | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-glue-now-supports-resource-based-policies-and-resource-level-permissions-and-for-the-AWS-Glue-Data-Catalog/ Resource Groups Tagging API Supports Additional AWS Services | https://aws.amazon.com/about-aws/whats-new/2018/10/resource-groups-tagging-api-supports-additional-aws-services/ Changes to Tags on AWS Resources Now Generate Amazon CloudWatch Events | https://aws.amazon.com/about-aws/whats-new/2018/09/changes-to-tags-on-aws-resources-now-generate-amazon-cloudwatch-events/ AWS Systems Manager Announces Enhanced Compliance Dashboard | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-systems-manager-announces-enhanced-compliance-dashboard/ Conditional Branching Now Supported in AWS Systems Manager Automation | https://aws.amazon.com/about-aws/whats-new/2018/09/Conditional_Branching_Now_Supported_in_AWS_Systems_Manager_Automation/ AWS Systems Manager Launches Custom Approvals for Patching | https://aws.amazon.com/about-aws/whats-new/2018/10/AWS_Systems_Manager_Launches_Custom_Approvals_for_Patching/ Amazon CloudWatch adds Ability to Build Custom Dashboards Outside the AWS Console | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-cloudwatch-adds-ability-to-build-custom-dashboards-outside-the-aws-console/ Amazon CloudWatch Agent adds Custom Metrics Support | https://aws.amazon.com/about-aws/whats-new/2018/09/amazon-cloudwatch-agent-adds-custom-metrics-support/ Amazon CloudWatch Launches Client-side Metric Data Aggregations | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-cloudWatch-launches-client-side-metric-data-aggregations/ AWS IoT Device Management Now Provides In Progress Timeouts and Step Timeouts for Jobs | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-iot-device-management-now-provides-in-progress-timeouts-and-step-timeouts-for-jobs/ Amazon GuardDuty Provides Customization of Notification Frequency to Amazon CloudWatch Events | https://aws.amazon.com/about-aws/whats-new/2018/10/amazon-guardduty-provides-customization-of-notification-frequency-to-amazon-cloudwatch-events/ AWS Managed Microsoft AD Now Offers Additional Configurations to Connect to Your Existing Microsoft AD | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-managed-microsoft-ad-now-offers-additional-configurations-to-connect-to-our-existing-microsoft-ad/ Easily Deploy Directory-Aware Workloads in Multiple AWS Accounts and VPCs by Sharing a Single AWS Managed Microsoft AD | https://aws.amazon.com/about-aws/whats-new/2018/09/aws-directory-service-share-directory-across-accounts-and-vpcs/ AWS Single Sign-on Now Enables You to Customize the User Experience to Business Applications | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-single-sign-on-now-enables-you-to-customize-the-user-experience-to-business-applications/ Live Streaming on AWS Now Features AWS Elemental MediaLive and MediaPackage | https://aws.amazon.com/about-aws/whats-new/2018/09/live-streaming-on-aws-now-features-aws-elemental-medialive-and-mediapackage/ AWS Elemental MediaStore Increases Object Size Limit to 25 Megabytes | https://aws.amazon.com/about-aws/whats-new/2018/10/aws-elemental-mediastore-increase-object-size-limit-to-25-megabytes/ Amazon Kinesis Video Streams now supports adding and retrieving Metadata at Fragment-Level | https://aws.amazon.com/about-aws/whats-new/2018/10/kinesis-video-streams-fragment-level-metadata-support/ AWS Public Datasets Now Available from the German Meteorological Office, Broad Institute, Chan Zuckerberg Biohub, fast.ai, and Others | https://aws.amazon.com/about-aws/whats-new/2018/10/public-datasets/ Customize Your Payment Frequency and More with AWS Marketplace Flexible Payment Scheduler | https://aws.amazon.com/about-aws/whats-new/2018/10/customize-your-payment-frequency-and-more-with-awsmarketplace-flexible-payment-scheduler/ Sign in to your AWS Management Console with YubiKey Security Key for Multi-factor Authentication (MFA) | https://aws.amazon.com/about-aws/whats-new/2018/09/aws_sign_in_support_for_yubikey_security_key_as_mfa/
Another big round up of useful new capabilities for customers! Shownotes: Announcing S3 One Zone-Infrequent Access, a New Amazon S3 Storage Class | https://aws.amazon.com/about-aws/whats-new/2018/04/announcing-s3-one-zone-infrequent-access-a-new-amazon-s3-storage-class/ Amazon S3 Select Is Now Generally Available | https://aws.amazon.com/about-aws/whats-new/2018/04/amazon-s3-select-is-now-generally-available/ Amazon DynamoDB Adds Support for Continuous Backups and Point-In-Time Recovery (PITR) | https://aws.amazon.com/about-aws/whats-new/2018/03/amazon-dynamodb-adds-support-for-continuous-backups-and-point-in-time-recovery/ Amazon DynamoDB Encryption at Rest Now Available in Additional Regions | https://aws.amazon.com/about-aws/whats-new/2018/04/amazon-dynamodb-encryption-at-rest-now-available-in-additonal-regions/ Amazon AppStream 2.0 Enables Custom Branding | https://aws.amazon.com/about-aws/whats-new/2018/03/appstream2-enables-custom-branding/ AWS Cloud9 Supports Local Debugging of AWS Lambda Functions in Python | https://aws.amazon.com/about-aws/whats-new/2018/03/aws-cloud9-supports-local-debugging-of-aws-lambda-functions-in-python/ AWS Lambda Supports Node.js v8.10 | https://aws.amazon.com/about-aws/whats-new/2018/04/aws-lambda-supports-nodejs/ AWS CloudFormation Now Supports Launch Templates | https://aws.amazon.com/about-aws/whats-new/2018/03/aws-cloudformation-now-supports-launch-templates/ AWS Serverless Application Model (SAM) Implementation is Now Open-source - Amazon Web Services | https://aws.amazon.com/about-aws/whats-new/2018/04/aws-sam-implementation-is-now-open-source/ Introducing Service Discovery for Amazon ECS | https://aws.amazon.com/about-aws/whats-new/2018/03/introducing-service-discovery-for-amazon-ecs/ AWS Fargate Platform Version 1.1 Adds Support for Task Metadata, Container Health Checks, and Service Discovery | https://aws.amazon.com/about-aws/whats-new/2018/03/aws-fargate-platform-version-1-1/ AWS AppSync now Generally Available (GA) with new GraphQL Features | https://aws.amazon.com/about-aws/whats-new/2018/04/aws-appsync-now-ga/ AWS Amplify Adds Support for GraphQL and AWS AppSync Enabling Real-time Data Capabilities in JavaScript Applications | https://aws.amazon.com/about-aws/whats-new/2018/04/aws-amplify-adds-support-for-graphql-and-aws-appsync-enabling-re/ AWS X-Ray Adds Support for Customer Managed AWS KMS Keys | https://aws.amazon.com/about-aws/whats-new/2018/04/aws-x-ray-adds-support-for-customer-managed-aws-kms-keys/ Amazon API Gateway Supports Cross-Account AWS Lambda Authorizers and Integrations | https://aws.amazon.com/about-aws/whats-new/2018/04/amazon-api-gateway-supports-cross-account-aws-lambda-authorizers/ Amazon API Gateway Supports Resource Policies for APIs | https://aws.amazon.com/about-aws/whats-new/2018/04/amazon-api-gateway-supports-resource-policies/ Introducing AWS Certificate Manager Private Certificate Authority | https://aws.amazon.com/about-aws/whats-new/2018/04/introducing-aws-certificate-manager-private-certificate-authority/ Longer Sessions For IAM Roles | https://aws.amazon.com/about-aws/whats-new/2018/03/longer-role- sessions/ Enable Trusted Organization Access in AWS Organizations | https://aws.amazon.com/about-aws/whats-new/2018/03/aws-organizations-trusted-organization-access/ Increase User Logon Performance in AWS Managed Microsoft AD | https://aws.amazon.com/about-aws/whats-new/2018/03/increase-user-logon-performance-in-aws-managed-microsoft-ad/ New Multi-Account, Multi-Region Data Aggregation Capability in AWS Config | https://aws.amazon.com/about-aws/whats-new/2018/04/new-multi-account-multi-region-data-aggregation-capability-in-aws-config/ Introducing AWS Firewall Manager - Amazon Web Services (AWS) | https://aws.amazon.com/about-aws/whats-new/2018/04/introducing-aws-firewall-manager/ Introducing AWS Secrets Manager - Amazon Web Services (AWS) | https://aws.amazon.com/about-aws/whats-new/2018/04/introducing-aws-secrets-manager/ Amazon CloudWatch Metric Math | https://aws.amazon.com/about-aws/whats-new/2018/04/amazon-cloudwatch-adds-metric-math-to-enable-custom-operations-on-metrics/ Amazon CloudWatch Events Adds Amazon SQS FIFO as an Event Target | https://aws.amazon.com/about-aws/whats-new/2018/04/amazon-cloudWatch-events-adds-amazon-SQS-FIFO-as-an-event-target/ Amazon CloudWatch Adds Route 53 Logs to Vended Logs | https://aws.amazon.com/about-aws/whats-new/2018/03/amazon-cloudwatch-adds-route53-logs-to-vended-logs/ Making Easier to Track Your Amazon EBS Volume State | https://aws.amazon.com/about-aws/whats-new/2018/03/making-easier-to-track-your-amazon-ebs-volume-state/ Resource Groups Tagging API | https://aws.amazon.com/about-aws/whats-new/2018/03/resource-groups-tagging-api-now-supports-13-additional-aws-services/ AWS Systems Manager Adds Patch Management for CentOS Linux | https://aws.amazon.com/about-aws/whats-new/2018/03/aws-systems-manager-adds-patch-management-for-centos-linux/ AWS Config Notifications Are Now Integrated with Amazon CloudWatch Events | https://aws.amazon.com/about-aws/whats-new/2018/03/aws-config-notifications-are-now-integrated-with-amazon-cloudwatch-events/ Amazon Connect Automated Outbound Calling is Now Generally Available | https://aws.amazon.com/about-aws/whats-new/2018/03/amazon-connect-automated-outbound-calling-is-now-generally-available/ Amazon Connect Federated Single Sign-On Using SAML 2.0 is Generally Available | https://aws.amazon.com/about-aws/whats-new/2018/03/amazon-connect-federated-single-sign-on-using-saml-2-0-is-generally-available/ Amazon Elasticsearch Service Simplifies User Authentication and Access for Kibana with Amazon Cognito | https://aws.amazon.com/about-aws/whats-new/2018/04/amazon-elasticsearch-service-simplifies-user-authentication-and-access-for-kibana-with-amazon-cognito/ Amazon EFS Now Supports Encryption of Data in Transit | https://aws.amazon.com/about-aws/whats-new/2018/04/amazon-efs-now-supports-encryption-of-data-in-transit/ Apache MXNet Model Server Adds Container Support for Scalable Model Serving | https://aws.amazon.com/about-aws/whats-new/2018/04/mxnet-model-server-container-support/ AWS Deep Learning AMIs Now Include Optimized TensorFlow 1.6 for Amazon EC2 P3 and C5 Instances | https://aws.amazon.com/about-aws/whats-new/2018/03/aws-deep-learning-amis-optimized-tensorflow/ Amazon SageMaker has Open Sourced TensorFlow 1.6 and Apache MXNet 1.1 Docker Containers with Support for Local Mode, and More Instance Types Across All Modules | https://aws.amazon.com/about-aws/whats-new/2018/04/amazon-sagemaker-has-open-sourced-tensorflow-1-6-and-apache-mxnet-1-1-docker-containers-with-support-for-local-mode-and-now-supports-more-instance-types-across-all-modules/ Amazon Translate is Now Generally Available | https://aws.amazon.com/about-aws/whats-new/2018/04/amazon-translate-is-now-generally-available/ Amazon Transcribe is Now Generally Available | https://aws.amazon.com/about-aws/whats-new/2018/04/amazon-transcribe-is-now-generally-available/ Amazon Polly Increases Character Limits | https://aws.amazon.com/about-aws/whats-new/2018/03/amazon-polly-increases-character-limits/ Amazon Rekognition Improves Accuracy of Real-Time Face Recognition and Verification | https://aws.amazon.com/about-aws/whats-new/2018/04/amazon-rekognition-improves-accuracy-of-real-time-face-recognition-and-verification/ Amazon Simple Notification Service (SNS) now Supports AWS PrivateLink | https://aws.amazon.com/about-aws/whats-new/2018/04/amazon-SNS-now-supports-aws-privatelink/ Amazon Athena releases an updated JDBC driver with support for Array data types | https://aws.amazon.com/about-aws/whats-new/2018/04/amazon-athena-updated-jdbc-driver-launch/ Amazon QuickSight Adds New Data Connectors to Popular Business Apps and JSON | https://aws.amazon.com/about-aws/whats-new/2018/04/AmazonQuickSight-adds-new-app-connectors-and-JSON-support/ AWS Batch Adds Support for Automatic Termination with Job Execution Timeout | https://aws.amazon.com/about-aws/whats-new/2018/04/aws-batch-adds-support-for-automatic-termination-with-job-execution-timeout/ Announcing Enhancements to AWS Auto Scaling | https://aws.amazon.com/about-aws/whats-new/2018/04/announcing-enhancements-to-aws-auto-scaling/ Announcing 4 Free Digital Training Courses on New AWS Services | https://aws.amazon.com/about-aws/whats-new/2018/04/four-digital-courses-on-new-AWS-services/ Announcing the AWS Certified Security - Specialty Exam | https://aws.amazon.com/about-aws/whats-new/2018/04/aws-certified-security-specialty/ AWS Elemental MediaConvert Introduces Basic Pricing Tier | https://aws.amazon.com/about-aws/whats-new/2018/03/aws-elemental-mediaconvert-introduces-basic-pricing-tier/ Identify Opportunities for Amazon RDS Cost Savings Using AWS Cost Explorer's Reserved Instance (RI) Purchase Recommendations | https://aws.amazon.com/about-aws/whats-new/2018/04/cost-explorer-reserved-instance-purchase-recommendations/
It is update time! Simon shares a great selection of new things for customers - what will be your favourite? Shownotes: Amazon Polly Gives WordPress a Voice! - AWS Machine Learning Blog | https://aws.amazon.com/blogs/machine-learning/amazon-polly-gives-wordpress-a-voice/ Amazon Polly New Phonation Tag Enables You to Create Softer Speech | https://aws.amazon.com/about-aws/whats-new/2018/02/amazon-polly-new-phonation-tag-enables-you-to-create-softer-speech/ Amazon Connect Adds Speech Synthesis Markup Language Support for Amazon Lex Chatbots | https://aws.amazon.com/about-aws/whats-new/2018/02/amazon-connect-adds-speech-synthesis-markup-language-support-for-amazon-lex-chatbots/ Announcing Responses Capability in Amazon Lex and SSML Support in Text Response | https://aws.amazon.com/about-aws/whats-new/2018/02/announcing-responses-capability-in-amazon-lex-and-ssml-support-in-text-response/ Now Export and Import your Amazon Lex Chatbot Schema | https://aws.amazon.com/about-aws/whats-new/2018/02/now-export-and-import-your-amazon-lex-chatbot-schema/ Amazon DynamoDB Now Supports Server-Side Encryption at Rest | https://aws.amazon.com/about-aws/whats-new/2018/02/amazon-dynamodb-now-supports-server-side-encryption-at-rest/ Amazon DynamoDB Accelerator (DAX) Releases SDKs for Python and .NET, Support for T2 Instances, and now available in the Asia Pacific (Singapore) and Asia Pacific (Sydney) Regions | https://aws.amazon.com/about-aws/whats-new/2018/02/amazon-dynamodb-accelerator-dax-releases-sdks-for-python-and-dot-net-support-for-t2-instances-and-now-available-in-the-asia-pacific-singapore-and-asia-pacific-sydney-regions/ Amazon Cognito Simplifies User Migration | https://aws.amazon.com/about-aws/whats-new/2018/02/amazon-cognito-simplifies-user-migration/ Amazon ECS Adds New Endpoint to Access Task Metrics and Metadata | https://aws.amazon.com/about-aws/whats-new/2018/02/amazon-ecs-adds-new-endpoint-to-access-task-metrics-and-metadata/ AWS Fargate Supports Container Workloads Regulated By ISO, PCI, SOC, and HIPAA | https://aws.amazon.com/about-aws/whats-new/2018/03/aws-fargate-supports-container-workloads-regulated-by-iso-pci-soc-and-hipaa/ Target Tracking Available for Container Service Auto Scaling in Amazon ECS Console | https://aws.amazon.com/about-aws/whats-new/2018/02/target-tracking-available-for-container-service-auto-scaling-in-amazon-ecs-console/ AWS Shield now Integrated with AWS CloudTrail | https://aws.amazon.com/about-aws/whats-new/2018/02/aws-shield-now-integrated-with-aws-cloudtrail/ Amazon GameLift Introduces Backfill Functionality to FlexMatch, the Dynamic Matchmaking Service for Multiplayer Experiences | https://aws.amazon.com/about-aws/whats-new/2018/02/amazon-gamelift-introduces-backfill-functionality-to-flexmatch-the-dynamic-matchmaking-service-for-multiplayer-experiences/ Amazon GameLift FleetIQ and Spot Instances Reduce Costs by up to 90% | https://aws.amazon.com/about-aws/whats-new/2018/02/amazon-gamelift-fleetiq-and-spot-instances-reduce-costs-by-up-to-90-percent/ New AWS Direct Connect sites land in Paris and Taipei | https://aws.amazon.com/about-aws/whats-new/2018/02/new-aws-direct-connect-sites-land-in-paris-and-taipei/ Inter-Region VPC Peering is Now Available in Nine Additional AWS Regions | https://aws.amazon.com/about-aws/whats-new/2018/02/inter-region-vpc-peering-is-now-available-in-nine-additional-aws-regions/ Longer Format Resource IDs are Now Available in Amazon EC2 | https://aws.amazon.com/about-aws/whats-new/2018/02/longer-format-resource-ids-are-now-available-in-amazon-ec2/ AWS AppSync Adds new GraphQL Functionality and Removes Whitelist Approvals from Preview | https://aws.amazon.com/about-aws/whats-new/2018/02/aws-appsync-adds-new-graphql-functionality-and-removes-whitelist-approvals-from-preview/ AWS AppSync Expands to Three New Regions, Adds API Key Extension Feature | https://aws.amazon.com/about-aws/whats-new/2018/02/aws-appsync-expands-to-three-new-regions-adds-api-key-extension-feature/ AWS Config Adds Support for AWS WAF RuleGroups | https://aws.amazon.com/about-aws/whats-new/2018/02/aws-config-adds-support-for-aws-waf-rulegroups/ New Products for Managed Rules on AWS WAF | https://aws.amazon.com/about-aws/whats-new/2018/02/new-products-for-managed-rules-on-aws-waf/ Amazon Inspector Now Supports Windows Server 2016 | https://aws.amazon.com/about-aws/whats-new/2018/02/amazon-inspector-now-supports-windows-server-2016/ AWS Trusted Advisor's S3 Bucket Permissions Check Is Now Free | https://aws.amazon.com/about-aws/whats-new/2018/02/aws-trusted-advisors-s3-bucket-permissions-check-is-now-free/ Amazon EC2 Auto Scaling Adds Support for Service-Linked Roles | https://aws.amazon.com/about-aws/whats-new/2018/02/amazon-ec2-auto-scaling-adds-support-for-service-linked-roles/ Network Load Balancer now Supports Cross-Zone Load Balancing | https://aws.amazon.com/about-aws/whats-new/2018/02/network-load-balancer-now-supports-cross-zone-load-balancing/ Auto Scaling in Amazon SageMaker is now Available | https://aws.amazon.com/about-aws/whats-new/2018/02/auto-scaling-in-amazon-sagemaker-is-now-available/ AWS DeepLens Announces the Ability to Directly Import Models from Amazon SageMaker | https://aws.amazon.com/about-aws/whats-new/2018/02/aws-deeplens-announces-the-ability-to-directly-import-models-from-amazon-sagemaker/ Introducing the Real-Time Insights on AWS Account Activity | https://aws.amazon.com/about-aws/whats-new/2018/02/introducing-the-real-time-insights-on-aws-account-activity/ AWS Serverless Application Repository Now Generally Available | https://aws.amazon.com/about-aws/whats-new/2018/02/aws-serverless-application-repository-now-generally-available/ Amazon AppStream 2.0 Now Supports Copying Images Across AWS Regions | https://aws.amazon.com/about-aws/whats-new/2018/02/amazon-appstream-2_0-now-supports-copying-images-across-aws-regions/ Amazon CloudWatch Events now Supports AWS Batch as an Event Target | https://aws.amazon.com/about-aws/whats-new/2018/03/amazon-cloudwatch-events-now-supports-aws-batch-as-an-event-target/ AWS Service Catalog Announces AutoTags for Automatic Tagging of Provisioned Resources | https://aws.amazon.com/about-aws/whats-new/2018/03/aws-service-catalog-announces-autotags-for-automatic-tagging-of-provisioned-resources/ AWS Service Catalog Launches Brand Your Console to Deliver a Customizable User Experience | https://aws.amazon.com/about-aws/whats-new/2018/03/aws-service-catalog-launches-brand-your-console-to-deliver-a-customizable-user-experience/ AWS Storage Gateway Expands Automation with New CloudWatch Event, and Support for "Requester Pays" Buckets | https://aws.amazon.com/about-aws/whats-new/2018/03/aws-storage-gateway-expands-automation-with-new-cloudwatch-event-and-support-for-requester-pays-buckets/ Amazon Redshift Spectrum Now Supports Scalar JSON and Ion Data Types | https://aws.amazon.com/about-aws/whats-new/2018/03/amazon-redshift-spectrum-now-supports-scalar-json-and-ion-data-types/ PostgreSQL 10 now Supported in Amazon RDS | https://aws.amazon.com/about-aws/whats-new/2018/02/postgresql-10-now-supported-in-amazon-rds/ AWS GovCloud (US) Region Adds Third Availability Zone | https://aws.amazon.com/about-aws/whats-new/2018/03/aws-govcloud-us-region-adds-third-availability-zone/ AWS Snowball Now Available in AWS Singapore Region | https://aws.amazon.com/about-aws/whats-new/2018/03/aws-snowball-now-available-in-aws-singapore-region/
Simon reviews some of the updates to AWS services, a new Alexa Skill, a repository of all AWS re:Invent 2017 content as well as a black-belt tip! Shownotes: Amazon Route 53 Releases Auto Naming API for Service Name Management and Discovery | https://aws.amazon.com/about-aws/whats-new/2017/12/amazon-route-53-releases-auto-naming-api-name-service-management/ Elasticsearch 6.0 now available on Amazon Elasticsearch Service | https://aws.amazon.com/about-aws/whats-new/2017/12/elasticsearch-6-0-now-available-on-amazon-elasticsearch-service/ Run Petabyte-Scale Clusters on Amazon Elasticsearch Service Using I3 instances | https://aws.amazon.com/about-aws/whats-new/2017/12/run-petabyte-scale-clusters-on-amazon-elasticsearch-service-using-i3-instances/ Encryption at rest now available on Amazon Elasticsearch Service | https://aws.amazon.com/about-aws/whats-new/2017/12/encryption-at-rest-now-available-on-amazon-elasticsearch-service/ AWS Storage Gateway adds upload notifications, MIME-type detection, SUSE Linux support and additional features to File Gateway | https://aws.amazon.com/about-aws/whats-new/2017/11/aws-storage-gateway-adds-upload-notifications-mime-type-detection-suse-linux-support-and-additional-features-to-file-gateway/ Amazon CloudWatch Alarms now alerts you when any M out of N metric datapoints in an interval are above your threshold | https://aws.amazon.com/about-aws/whats-new/2017/12/amazon-cloudwatch-alarms-now-alerts-you-when-any-m-out-of-n-metric-datapoints-in-an-interval-are-above-your-threshold/ Amazon CloudWatch now supports two new chart visualization options in metrics and dashboards | https://aws.amazon.com/about-aws/whats-new/2017/12/amazon-cloudwatch-now-supports-two-new-chart-visualization-options-in-metrics-and-dashboards/ Amazon CloudWatch Events now Supports AWS CodeBuild as an Event Target | https://aws.amazon.com/about-aws/whats-new/2017/12/amazon-cloudwatch-events-now-supports-aws-codebuild-as-an-event-target/ Amazon CloudWatch Logs now Supports KMS Encryption | https://aws.amazon.com/about-aws/whats-new/2017/12/amazon-cloudwatch-logs-now-supports-kms-encryption/ New – Amazon CloudWatch Agent with AWS Systems Manager Integration – Unified Metrics & Log Collection for Linux & Windows - AWS News Blog | https://aws.amazon.com/blogs/aws/new-amazon-cloudwatch-agent-with-aws-systems-manager-integration-unified-metrics-log-collection-for-linux-windows/ AWS CloudTrail Enhances Event History View and Search | https://aws.amazon.com/about-aws/whats-new/2017/12/aws-cloudtrail-enhances-event-history-view-and-search/ AWS CodePipeline Adds Support for Amazon ECS and AWS Fargate | https://aws.amazon.com/about-aws/whats-new/2017/12/aws-codepipeline-adds-support-for-amazon-ecs-and-aws-fargate/ You Can Now Automate Amazon AppStream 2.0 Agent Updates on your Streaming Instances | https://aws.amazon.com/about-aws/whats-new/2017/12/you-can-now-automate-amazon-appStream2-agent-updates-on-your-streaming-instances/ Amazon AppStream 2.0 Now Supports Tagging to Track Your Resources | https://aws.amazon.com/about-aws/whats-new/2017/12/amazon-appstream-2-0-now-supports-tagging-to-track-your-resources/ Easily Apply Amazon Cloud Directory Schema Changes with In-Place Schema Upgrades | https://aws.amazon.com/about-aws/whats-new/2017/12/easily-apply-amazon-cloud-directory-schema-changes-with-in-place-schema-upgrades/ AWS Organizations Enhancements | https://aws.amazon.com/about-aws/whats-new/2017/12/aws-organizations-enhancements/ AWS Single Sign-On – Cloud SSO Service - AWS | https://aws.amazon.com/single-sign-on/ EFS File Sync Now Available in All Amazon EFS Regions | https://aws.amazon.com/about-aws/whats-new/2017/12/efs-file-sync-now-available-in-all-amazon-efs-regions/ Use AWS Budgets advanced filtering options to extend your cost monitoring capabilities | https://aws.amazon.com/about-aws/whats-new/2017/12/use-aws-budgets-advanced-filtering-options-to-extend-your-cost-monitoring-capabilities/ Amazon RDS for PostgreSQL Supports R4, T2 and M4 Instance Types | https://aws.amazon.com/about-aws/whats-new/2017/12/amazon-rds-for-postgresql-supports-r4-t2-and-m4-instance-types/ Support for Apache Spark 2.2.1 with Amazon SageMaker integration and Apache Hive 2.3.2 on Amazon EMR release 5.11.0 | https://aws.amazon.com/about-aws/whats-new/2017/12/support-for-apache-spark-2_2_1-with-amazon-sagemaker-integration-and-apache-hive-2_3_2-on-amazon-emr-release-5_11_0/ Amazon ECS Adds ELB Health Check Grace Period | https://aws.amazon.com/about-aws/whats-new/2017/12/amazon-ecs-adds-elb-health-check-grace-period/ AWS Direct Connect Update – Ten New Locations Added in Late 2017 - AWS News Blog | https://aws.amazon.com/blogs/aws/aws-direct-connect-update-ten-new-locations-added-in-late-2017/ AWS Alexa Skill Now Available | https://aws.amazon.com/about-aws/whats-new/2017/11/aws-alexa-skill-now-available/ AWS re:Invent 2017 Sessions & Podcast Feed | http://aws-reinvent-audio.s3-website.us-east-2.amazonaws.com/2017/2017.html Specifying Parameter Values for the AWS Command Line Interface - AWS Command Line Interface | https://docs.aws.amazon.com/cli/latest/userguide/cli-using-param.html AWS Systems Manager Parameter Store - AWS Systems Manager | https://docs.aws.amazon.com/systems-manager/latest/userguide/systems-manager-paramstore.html
Learn how Mapbox improved and leveled up their Amazon ECS monitoring by using Amazon CloudWatch Events and custom metrics. We cover the events that kick off data collection, which enables our team to track the trillions of compute seconds happening every day on Mapbox's ECS clusters. The result of the data collection includes custom metrics and alarms used to inform stakeholders across Mapbox about detailed ECS usage, so development teams and finance alike can easily put a price tag on each container.
This presentation will include a deep dive into the code behind multiple security automation and remediation functions. This session will consider potential use cases, as well as feature a demonstration of a proposed script, and then walk through the code set to explain the various challenges and solutions of the intended script. All examples of code will be previously unreleased and will feature integration with services such as Trusted Advisor and Macie. All code will be released as OSS after re:Invent.
Simon discusses a variety of updates and some great Services that now work even better together! City on a Cloud Innovation Challenge: https://aws.amazon.com/stateandlocal/cityonacloud/ EC2 Run Command as a target for Amazon CloudWatch Events: https://aws.amazon.com/blogs/aws/ec2-run-command-is-now-a-cloudwatch-events-target/ Amazon EMR Instance Fleets: https://aws.amazon.com/blogs/aws/new-amazon-emr-instance-fleets/ Instance Size Flexibility for EC2 Reserved Instances: https://aws.amazon.com/blogs/aws/new-instance-size-flexibility-for-ec2-reserved-instances/ Amazon SES IP Pre-Warming: https://aws.amazon.com/about-aws/whats-new/2017/03/amazon-ses-can-now-automatically-warm-up-your-dedicated-ip-addresses/ Amazon Cloud Directory API Efficiency: https://aws.amazon.com/about-aws/whats-new/2017/03/new-amazon-cloud-directory-api-makes-it-easier-to-query-data-along-multiple-dimensions/ Amazon API Gateway integrates with AWS Certificate Manager: https://aws.amazon.com/about-aws/whats-new/2017/03/amazon-api-gateway-integrates-with-aws-certificate-manager-acm/
AWS CloudTrail, Amazon CloudWatch Events, AWS Identity & Access Management (IAM), Trusted Advisor, AWS Config Rules, other services? In this session, we will help you use existing and recently launched services to automate configuration governance so that security is embedded in the development process. We outline four easy steps (Control, Monitor, Fix, and Audit) and demonstrate how different services can be used to meet your governance needs. We will showcase real-life examples and you can take home a blog post with code examples and the full source code for scripts and tooling that AWS professional services have built using these services.
In this session, we’ll show how customers can use management tools to standardize the creation of AWS resources and then govern these resources through the lifecycle. By using AWS CloudFormation and AWS Service Catalog to provision resources at scale, AWS Config to audit any changes to the configuration of these resources, Amazon CloudWatch to monitor the health of these resources, and AWS CloudTrail to audit who or what made API calls to these resources, customers can automate and scale the administration of their infrastructure on AWS. They can even go one step further and automate compliance checking and remediation by using AWS Config rules and Amazon CloudWatch Events. We will demo how this is possible by looking at some common use cases.
Johnson & Johnson is in the process of doing a proof of concept to rewrite the compliance framework that they presented at re:Invent 2014. This framework leverages the newest AWS services and abandons the need for continual describes and master rules servers. Instead, Johnson & Johnson plans to use a distributed, event-based architecture that not only reduces costs but also assigns costs to the appropriate projects rather than central IT.
This session enables security operators to automate governance and implement use cases addressed by AWS services such as AWS CloudTrail, AWS Config Rules, Amazon CloudWatch Events, and Trusted Advisor. Based on the nature of vulnerabilities, internal processes, compliance regimes, and other priorities, this session discusses the service to use when. We also show how to detect, report, and fix vulnerabilities, or gain more information about attackers. We dive deep into new features and capabilities of relevant services and use an example from an AWS customer, Siemens AG, about how to best automate governance and scale. A prerequisite for this session is knowledge of security and basic software development using Java, Python, or Node.
This session demonstrates 5 different security and compliance validation actions that you can perform using Amazon CloudWatch Events and AWS Config rules. This session focuses on the actual code for the various controls, actions, and remediation features, and how to use various AWS services and features to build them. The demos in this session include CIS Amazon Web Services Foundations validation; host-based AWS Config rules validation using AWS Lambda, SSH, and VPC-E; automatic creation and assigning of MFA tokens when new users are created; and automatic instance isolation based on SSH logons or VPC Flow Logs deny logs. This session focuses on code and live demos.
With security-relevant services such as AWS Config, VPC Flow Logs, Amazon CloudWatch Events, and AWS Lambda, you now have the ability to programmatically wrangle security events that may occur within your AWS environment, including prevention, detection, response, and remediation. This session covers the process of automating security event response with various AWS building blocks, taking several ideas from drawing board to code, and gaining confidence in your coverage by proactively testing security monitoring and response effectiveness before anyone else does.
In this episode Simon covers a raft of updates that have happened in the last few weeks - hopefully something for everyone! AWS CodeDeploy with Amazon CloudWatch Events: http://docs.aws.amazon.com/codedeploy/latest/userguide/monitoring-cloudwatch-events.html Amazon CloudFront HTTP/2 support: https://aws.amazon.com/about-aws/whats-new/2016/09/amazon-cloudfront-now-supports-http2/ and Query String Whitelisting: https://aws.amazon.com/about-aws/whats-new/2016/08/announcing-query-string-whitelisting-for-amazon-cloudfront/ Reader endpoint for Amazon Aurora: https://aws.amazon.com/blogs/aws/new-reader-endpoint-for-amazon-aurora-load-balancing-higher-availability/ and Release 1.7 updates: https://aws.amazon.com/blogs/aws/amazon-aurora-update-parallel-read-ahead-faster-indexing-numa-awareness/ AWS Config ALB Integration: https://aws.amazon.com/about-aws/whats-new/2016/08/aws-config-adds-support-for-application-load-balancers/ Mobile Hub Integrate Tab: https://aws.amazon.com/about-aws/whats-new/2016/09/aws-mobile-hub-simplifies-backend-feature-integration-into-existing-mobile-apps/ AWS Storage Gateway Console Update: https://aws.amazon.com/about-aws/whats-new/2016/08/weve-redesigned-the-aws-storage-gateway-console/ Auto Scaling for EC2 Spot Fleets: https://aws.amazon.com/blogs/aws/new-auto-scaling-for-ec2-spot-fleets/ AWS Elastic Beanstalk Nginx with Tomcat:https://aws.amazon.com/about-aws/whats-new/2016/08/aws-elastic-beanstalk-supports-nginx-proxy-server-with-tomcat/, ALB support: https://aws.amazon.com/about-aws/whats-new/2016/08/aws-elastic-beanstalk-supports-application-load-balancer/, .NET enhancements: https://aws.amazon.com/about-aws/whats-new/2016/08/aws-elastic-beanstalk-supports-asp-net-core-and-multi-app-net-support/ Amazon CloudWatch Logs Console enhancements: https://aws.amazon.com/blogs/aws/improvements-to-cloudwatch-logs-dashboards/ 50 Tags per AWS Resource: http://blogs.aws.amazon.com/security/post/Tx3O5RCX34VOGY6/Now-Organize-Your-AWS-Resources-by-Using-up-to-50-Tags-per-Resource EC2 Auto Scaling Group Metric Improvements: https://aws.amazon.com/about-aws/whats-new/2016/08/free-auto-scaling-group-metrics-with-graphs/ Amazon WorkSpaces Updates: https://aws.amazon.com/blogs/aws/amazon-workspaces-update-hourly-usage-and-expanded-root-volume/ New Oldest Message Metric Amazon CloudWatch metric for Amazon SQS: https://aws.amazon.com/about-aws/whats-new/2016/08/new-amazon-cloudwatch-metric-for-amazon-sqs-monitors-the-age-of-the-oldest-message/