SlideShare a Scribd company logo
1 of 43
Revolutionising Cloud Operations

With AWS Config, AWS CloudTrail and AWS CloudWatch

Matt House, Solutions Architect
Amazon Web Services
Business
101 Technical
201 Technical
301 Technical
401 Technical
Session Grading
“The cloud has become the new normal”

Andy Jassy : AWS Senior Vice President 



“Everything’s changed, yet
nothing’s different”

AWS whitepaper: Architecting for the cloud: Best Practices
Revolutionising cloud operations
Agenda for today
• Common “Cloud” Conversations
• Operational Checklist for AWS
• Demo 1 from Ops checklist (monitoring)
• Demo 2 from Ops checklist (auditing)
• Demo 3 from Ops checklist (config management)
• Summary
Common Cloud Conversations
With AWS Partners: Services teams
My customers are demanding increased agility and
visibility in their contract. How do I move to a cloud
services business?
With AWS Customers: Operations teams
The developers in my business are using AWS to
deliver results fast, how can I use AWS to deliver
what the business wants from me equally fast?
What drives these conversations?
We
Can
Help
Fix
This!
What drives these conversations?
OPSDEV
Outcomes of these conversations
Transformation
DEVOPS
OLD NEW
Bi-Modal
Do more…
With more
Resources for AWS customers
• AWS Developer Guides
• AWS White Papers
• AWS Reference Architectures
• AWS Official Blog (Jeff Barr)
• Presentations from this summit
and re:Invent
• Operational Checklists for AWS
Operational Checklists for AWS
Tools to help Operations teams…
“Operational Checklists for AWS”
Basic Operations Checklist
Enterprise Operations Checklist
Auditing and Security Checklist
Demo #1 Monitoring and Incident Management
From the Enterprise Operations
Checklist
“Has your organization instrumented appropriate
monitoring tools and integrated your AWS resources
into its incident management processes?”
Monitoring & Incident Management (CloudWatch)
What is Continuous Integration – Continuous Delivery
Waterfall: Deploy to production once a Quarter?
Agile Sprint : Deploy to production once a Month?
CI/CD: Deploy code to production once an Hour?!
Write Code +
check in
Automated
build
Automated
test
Automated
deploy
Live in
production
CI/CD deploy
into AWS
Capture
Activity with
AWS
CloudWatch
Monitor in
CloudWatch
dashboard
Alert and
report on that
activity
Monitoring & Incident Management (CloudWatch)
Monitoring & incident Management (CloudWatch)
Write Code
+ check in
Automated
build
Automated
test
Automated
deploy
Blue/Green
live in
production
CI/CD deploy
into AWS
Blue is production –
100% load
Green is standby –
0% load
Monitoring & incident Management (CloudWatch)
LIVE
PRODUCTION
CI/CD deploy
into AWS
CI/CD toolchain
deploys new code to
green
Monitoring & incident Management (CloudWatch)
LIVE
PRODUCTION
Blue is production –
100% load
Green is standby –
0% load
CI/CD deploy
into AWS
PaaS flips DNS
Green is production –
100% load
Blue is standby – 0% load
Monitoring & incident Management (CloudWatch)
LIVE
PRODUCTION
WHERE DID
THIS GO?
CI/CD toolchain deploys new
code to green
Blue is production – 100% load
Green is standby – 0% load
AWS CloudWatch:
• Monitoring service for AWS
• Collect and track metrics
• Collect and monitor log files
• Set alarms
Available in all public regions
5 minute resolution = No Additional Charge
1 minute resolution = $3.50 per month
Capture
Activity with
AWS
CloudWatch
Monitoring & incident Management (CloudWatch)
AWS CloudWatch dashboard
• View the information CloudWatch collects
• Draw graphs
• Set Thresholds
• Send Alerts
Available in all public regions
Typically $3/month for log storage on S3
Monitor that
in
Cloudwatch
dashboard
Monitoring & incident Management (CloudWatch)
Simple Notification Service
• Fully managed push messaging service
• Send individual messages
• Send bulk messages
• E-mail, txt, google, apple, winpho, fireOS
Available in all public regions
$1 to send 1,000,000 notifications
Alert and
report on that
Activity
Monitoring & incident Management (CloudWatch)
Demo #1 Run the Demo
Demo #1 Monitoring and Incident Management
Demo #2 Security Logging and Monitoring
From the Audit Security Checklist
“Are your organisation’s systems residing on
AWS logged and monitored?”
AWS Shared Responsibility Model
Security Logging and Monitoring (CloudTrail)
CI/CD deploy
into AWS
Everything is
an API call
Log
everything
with
CloudTrail
CloudTrail
and
CloudWatch
Logs
Security Logging and Monitoring (CloudTrail)
CI/CD deploy
into AWS
Who made these
changes?
When did they make
them?
On Whose Authority?
How is this recorded?
Security Logging and Monitoring (CloudTrail)
Your infrastructure is code
Operations are as much a part of the dev
process as anything else
Everything is an API call
You can log all the API callsEverything is
an API call
Security Logging and Monitoring (CloudTrail)
AWS CloudTrail
• History of AWS API calls
• AWS Management Console,
• AWS SDKs,
• Command line tools,
• Other AWS services
Available in all public regions
CloudTrail = No additional charge
Typically $3/month for log storage on S3
Log all API
calls with
CloudTrail
Security Logging and Monitoring (CloudTrail)
CloudTrail
and
CloudWatch
Logs
Security Logging and Monitoring (CloudTrail)
CloudWatch Logs
• An API call is an event
• Everything is an API call…
New!
Demo #2 Run the Demo
Demo #2 Security Logging and Monitoring
Demo #3 Configuration and Change Management
From the Enterprise Operations
Checklist
“Does your organization have a configuration
and change management strategy for its AWS
resources?”
Config and Change Management (AWS Config)
CI/CD deploy
into AWS
Capture
changes with
AWS Config
Look at
Config
timeline
Output to
durable
storage
CI/CD deploy
into AWS
Config and Change Management (AWS Config)
How did our AWS
resources look before?
What changed?
How do they look now?
How have the
relationships changed?
AWS Config
• Fully managed service
• AWS resource inventory
• Configuration history
• Configuration change notifications
Available in all public regions
$.003 per configuration item recorded
Capture
changes with
AWS Config
Config and Change Management (AWS Config)
AWS Config console
• View AWS Config information
• Current and historical
• Current configuration, historical timeline of
configurations
• Current relationships, historical timeline of
relationships
Available in all public regions
No additional charge
Look at
Config
timeline
Config and Change Management (AWS Config)
AWS S3
• Object Storage
• Secure
• Durable
• Highly Scalable
Available in all public regions
Free usage tier = 5GB
$0.03 per Gigabyte
Output to
durable
storage
Config and Change Management (AWS Config)
Demo #3 Run the Demo
Demo #3 Config and Change Management
APN Technology Partners
Summary
• The business demands more
• The cloud is the new normal
• Cloud allows you to exceed expectations
• Do more… with more
• AWS CloudWatch
• AWS CloudTrail
• AWS Config
What to do next
1. Download the Operational Checklists for AWS
2. Embrace the new normal and benefit
3. Use CloudWatch, CloudTrail, AWS Config
Revolutionising Cloud Operations with AWS Config, AWS CloudTrail and AWS CloudWatch

More Related Content

What's hot

Introduction to AWS - AWSome Day Zurich November 2016
Introduction to AWS - AWSome Day Zurich November 2016Introduction to AWS - AWSome Day Zurich November 2016
Introduction to AWS - AWSome Day Zurich November 2016
Amazon Web Services
 
AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...
AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...
AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...
Amazon Web Services
 

What's hot (20)

AWS Sydney Summit 2013 - Architecting for High Availability
AWS Sydney Summit 2013 - Architecting for High AvailabilityAWS Sydney Summit 2013 - Architecting for High Availability
AWS Sydney Summit 2013 - Architecting for High Availability
 
AWS re:Invent 2016: Open Source at AWS—Contributions, Support, and Engagement...
AWS re:Invent 2016: Open Source at AWS—Contributions, Support, and Engagement...AWS re:Invent 2016: Open Source at AWS—Contributions, Support, and Engagement...
AWS re:Invent 2016: Open Source at AWS—Contributions, Support, and Engagement...
 
Introduction to AWS - AWSome Day Zurich November 2016
Introduction to AWS - AWSome Day Zurich November 2016Introduction to AWS - AWSome Day Zurich November 2016
Introduction to AWS - AWSome Day Zurich November 2016
 
Cloud and Enterprise Tools – Rob Purdy, General Manager, Datacom
Cloud and Enterprise Tools – Rob Purdy, General Manager, DatacomCloud and Enterprise Tools – Rob Purdy, General Manager, Datacom
Cloud and Enterprise Tools – Rob Purdy, General Manager, Datacom
 
Aberdeen Oil & Gas Event - AWS Partner Eurotech
Aberdeen Oil & Gas Event - AWS Partner EurotechAberdeen Oil & Gas Event - AWS Partner Eurotech
Aberdeen Oil & Gas Event - AWS Partner Eurotech
 
Analisi dei dati con AWS: una panoramica degli strumenti disponibili
Analisi dei dati con AWS: una panoramica degli strumenti disponibiliAnalisi dei dati con AWS: una panoramica degli strumenti disponibili
Analisi dei dati con AWS: una panoramica degli strumenti disponibili
 
Your First Hour on AWS: Building the Foundation for Large Scale AWS Adoption ...
Your First Hour on AWS: Building the Foundation for Large Scale AWS Adoption ...Your First Hour on AWS: Building the Foundation for Large Scale AWS Adoption ...
Your First Hour on AWS: Building the Foundation for Large Scale AWS Adoption ...
 
Revolutionising Cloud Operations with AWS Config, AWS CloudTrail and AWS Clou...
Revolutionising Cloud Operations with AWS Config, AWS CloudTrail and AWS Clou...Revolutionising Cloud Operations with AWS Config, AWS CloudTrail and AWS Clou...
Revolutionising Cloud Operations with AWS Config, AWS CloudTrail and AWS Clou...
 
AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...
AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...
AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...
 
Migration to AWS Cloud
Migration to AWS CloudMigration to AWS Cloud
Migration to AWS Cloud
 
SAP Workloads on AWS
SAP Workloads on AWSSAP Workloads on AWS
SAP Workloads on AWS
 
DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...
DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...
DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...
 
An Introduction to AWS - AWS Summit Bahrain 2017
An Introduction to AWS - AWS Summit Bahrain 2017An Introduction to AWS - AWS Summit Bahrain 2017
An Introduction to AWS - AWS Summit Bahrain 2017
 
AWS vs Azure vs Google (GCP) - Slides
AWS vs Azure vs Google (GCP) - SlidesAWS vs Azure vs Google (GCP) - Slides
AWS vs Azure vs Google (GCP) - Slides
 
AWS 101 Webinar: Journey to the AWS Cloud - Introduction to Cloud Computing w...
AWS 101 Webinar: Journey to the AWS Cloud - Introduction to Cloud Computing w...AWS 101 Webinar: Journey to the AWS Cloud - Introduction to Cloud Computing w...
AWS 101 Webinar: Journey to the AWS Cloud - Introduction to Cloud Computing w...
 
Monitoring, Hold the Infrastructure - Getting the Most out of AWS Lambda - AW...
Monitoring, Hold the Infrastructure - Getting the Most out of AWS Lambda - AW...Monitoring, Hold the Infrastructure - Getting the Most out of AWS Lambda - AW...
Monitoring, Hold the Infrastructure - Getting the Most out of AWS Lambda - AW...
 
Expanding your Data Center with Hybrid Cloud Infrastructure
Expanding your Data Center with Hybrid Cloud InfrastructureExpanding your Data Center with Hybrid Cloud Infrastructure
Expanding your Data Center with Hybrid Cloud Infrastructure
 
AWS re:Invent 2016: Building and Growing a Successful AWS User Group (DCS203)
AWS re:Invent 2016: Building and Growing a Successful AWS User Group (DCS203)AWS re:Invent 2016: Building and Growing a Successful AWS User Group (DCS203)
AWS re:Invent 2016: Building and Growing a Successful AWS User Group (DCS203)
 
Compute Without Servers – Building Applications with AWS Lambda
Compute Without Servers – Building Applications with AWS LambdaCompute Without Servers – Building Applications with AWS Lambda
Compute Without Servers – Building Applications with AWS Lambda
 
AWS re:Invent 2016: Partner-Led Migrations to AWS Starting with the Enterpris...
AWS re:Invent 2016: Partner-Led Migrations to AWS Starting with the Enterpris...AWS re:Invent 2016: Partner-Led Migrations to AWS Starting with the Enterpris...
AWS re:Invent 2016: Partner-Led Migrations to AWS Starting with the Enterpris...
 

Viewers also liked

Amazon RDS for MySQL: Best Practices and Migration
Amazon RDS for MySQL: Best Practices and MigrationAmazon RDS for MySQL: Best Practices and Migration
Amazon RDS for MySQL: Best Practices and Migration
Amazon Web Services
 
Ultimate hybrid cloud
Ultimate hybrid cloudUltimate hybrid cloud
Ultimate hybrid cloud
Mirantis
 
Hybrid Cloud example for SlideShare
Hybrid Cloud example for SlideShareHybrid Cloud example for SlideShare
Hybrid Cloud example for SlideShare
Hewlett-Packard
 

Viewers also liked (20)

Hybrid Cloud Solutions to Transform Your Organization
Hybrid Cloud Solutions to Transform Your OrganizationHybrid Cloud Solutions to Transform Your Organization
Hybrid Cloud Solutions to Transform Your Organization
 
Using Security To Build With Confidence - Session Sponsored by Trend Micro
Using Security To Build With Confidence - Session Sponsored by Trend MicroUsing Security To Build With Confidence - Session Sponsored by Trend Micro
Using Security To Build With Confidence - Session Sponsored by Trend Micro
 
Your First Hour on AWS presented by Chris Hampartsoumian
Your First Hour on AWS presented by Chris HampartsoumianYour First Hour on AWS presented by Chris Hampartsoumian
Your First Hour on AWS presented by Chris Hampartsoumian
 
The Journey to Digital Enterprise, presented by CSC
The Journey to Digital Enterprise, presented by CSCThe Journey to Digital Enterprise, presented by CSC
The Journey to Digital Enterprise, presented by CSC
 
Top 5 Ways to Secure Your Business on the Cloud
Top 5 Ways to Secure Your Business on the CloudTop 5 Ways to Secure Your Business on the Cloud
Top 5 Ways to Secure Your Business on the Cloud
 
Windows and .NET on AWS
Windows and .NET on AWSWindows and .NET on AWS
Windows and .NET on AWS
 
Amazon RDS for MySQL: Best Practices and Migration
Amazon RDS for MySQL: Best Practices and MigrationAmazon RDS for MySQL: Best Practices and Migration
Amazon RDS for MySQL: Best Practices and Migration
 
150601 gartner cloud_summit_vfinal
150601 gartner cloud_summit_vfinal150601 gartner cloud_summit_vfinal
150601 gartner cloud_summit_vfinal
 
Ultimate hybrid cloud
Ultimate hybrid cloudUltimate hybrid cloud
Ultimate hybrid cloud
 
MODAClouds Value - Solving Top Problems of Cloud Dev Lifecycle
MODAClouds Value - Solving Top Problems of Cloud Dev LifecycleMODAClouds Value - Solving Top Problems of Cloud Dev Lifecycle
MODAClouds Value - Solving Top Problems of Cloud Dev Lifecycle
 
Transitioning to Hybrid Cloud
Transitioning to Hybrid CloudTransitioning to Hybrid Cloud
Transitioning to Hybrid Cloud
 
Intro to Big Data Analytics and the Hybrid Cloud
Intro to Big Data Analytics and the Hybrid CloudIntro to Big Data Analytics and the Hybrid Cloud
Intro to Big Data Analytics and the Hybrid Cloud
 
AWS Blackbelt NINJA Dojo – Dean Samuels
AWS Blackbelt NINJA Dojo – Dean SamuelsAWS Blackbelt NINJA Dojo – Dean Samuels
AWS Blackbelt NINJA Dojo – Dean Samuels
 
AWS Lambda - Event Driven Event-driven Code in the Cloud
AWS Lambda - Event Driven Event-driven Code in the CloudAWS Lambda - Event Driven Event-driven Code in the Cloud
AWS Lambda - Event Driven Event-driven Code in the Cloud
 
Next generation cloud data center technologies
Next generation cloud data center technologiesNext generation cloud data center technologies
Next generation cloud data center technologies
 
Hybrid Cloud example for SlideShare
Hybrid Cloud example for SlideShareHybrid Cloud example for SlideShare
Hybrid Cloud example for SlideShare
 
Design - Integration Scenarios for Hybrid Cloud
Design - Integration Scenarios for Hybrid CloudDesign - Integration Scenarios for Hybrid Cloud
Design - Integration Scenarios for Hybrid Cloud
 
Hybrid Cloud Point of View - IBM Event, 2015
Hybrid Cloud Point of View - IBM Event, 2015Hybrid Cloud Point of View - IBM Event, 2015
Hybrid Cloud Point of View - IBM Event, 2015
 
Overview of .Net Development on AWS
Overview of .Net Development on AWSOverview of .Net Development on AWS
Overview of .Net Development on AWS
 
Choosing Public vs. Private vs. Hybrid Cloud Computing
Choosing Public vs. Private vs. Hybrid Cloud ComputingChoosing Public vs. Private vs. Hybrid Cloud Computing
Choosing Public vs. Private vs. Hybrid Cloud Computing
 

Similar to Revolutionising Cloud Operations with AWS Config, AWS CloudTrail and AWS CloudWatch

Webinar aws 101 a walk through the aws cloud- introduction to cloud computi...
Webinar aws 101   a walk through the aws cloud- introduction to cloud computi...Webinar aws 101   a walk through the aws cloud- introduction to cloud computi...
Webinar aws 101 a walk through the aws cloud- introduction to cloud computi...
Amazon Web Services
 

Similar to Revolutionising Cloud Operations with AWS Config, AWS CloudTrail and AWS CloudWatch (20)

Improving Security Agility using DevSecOps
Improving Security Agility using DevSecOpsImproving Security Agility using DevSecOps
Improving Security Agility using DevSecOps
 
ENT302 Deep Dive on AWS Management Tools
ENT302 Deep Dive on AWS Management ToolsENT302 Deep Dive on AWS Management Tools
ENT302 Deep Dive on AWS Management Tools
 
ENT302 Deep Dive on AWS Management Tools
ENT302 Deep Dive on AWS Management Tools ENT302 Deep Dive on AWS Management Tools
ENT302 Deep Dive on AWS Management Tools
 
(ISM209) Acceleration of AWS Enterprise Adoption In GE
(ISM209) Acceleration of AWS Enterprise Adoption In GE(ISM209) Acceleration of AWS Enterprise Adoption In GE
(ISM209) Acceleration of AWS Enterprise Adoption In GE
 
Webinar aws 101 a walk through the aws cloud- introduction to cloud computi...
Webinar aws 101   a walk through the aws cloud- introduction to cloud computi...Webinar aws 101   a walk through the aws cloud- introduction to cloud computi...
Webinar aws 101 a walk through the aws cloud- introduction to cloud computi...
 
AWS re:Invent 2016: Automating and Scaling Infrastructure Administration with...
AWS re:Invent 2016: Automating and Scaling Infrastructure Administration with...AWS re:Invent 2016: Automating and Scaling Infrastructure Administration with...
AWS re:Invent 2016: Automating and Scaling Infrastructure Administration with...
 
Automated Compliance and Governance with AWS Config and AWS CloudTrail - June...
Automated Compliance and Governance with AWS Config and AWS CloudTrail - June...Automated Compliance and Governance with AWS Config and AWS CloudTrail - June...
Automated Compliance and Governance with AWS Config and AWS CloudTrail - June...
 
AWS Management Tools Deep Dive - DevDay Los Angeles 2017
AWS Management Tools Deep Dive - DevDay Los Angeles 2017AWS Management Tools Deep Dive - DevDay Los Angeles 2017
AWS Management Tools Deep Dive - DevDay Los Angeles 2017
 
Raleigh DevDay 2017: Deep Dive on AWS Management Tools
Raleigh DevDay 2017: Deep Dive on AWS Management ToolsRaleigh DevDay 2017: Deep Dive on AWS Management Tools
Raleigh DevDay 2017: Deep Dive on AWS Management Tools
 
Raleigh DevDay 2017: Are you well architected learn best practices to build r...
Raleigh DevDay 2017: Are you well architected learn best practices to build r...Raleigh DevDay 2017: Are you well architected learn best practices to build r...
Raleigh DevDay 2017: Are you well architected learn best practices to build r...
 
Getting Started with AWS Security
 Getting Started with AWS Security Getting Started with AWS Security
Getting Started with AWS Security
 
Security Requires Visibility-Turn Data Into Security Insight
Security Requires Visibility-Turn Data Into Security InsightSecurity Requires Visibility-Turn Data Into Security Insight
Security Requires Visibility-Turn Data Into Security Insight
 
Amazon Web Services User Group Sydney - March 2018
Amazon Web Services User Group Sydney - March 2018Amazon Web Services User Group Sydney - March 2018
Amazon Web Services User Group Sydney - March 2018
 
AWS re:Invent 2016: Born in the Cloud; Built Like a Startup (ARC205)
AWS re:Invent 2016: Born in the Cloud; Built Like a Startup (ARC205)AWS re:Invent 2016: Born in the Cloud; Built Like a Startup (ARC205)
AWS re:Invent 2016: Born in the Cloud; Built Like a Startup (ARC205)
 
Using AWS CloudTrail and AWS Config to Enhance the Governance and Compliance ...
Using AWS CloudTrail and AWS Config to Enhance the Governance and Compliance ...Using AWS CloudTrail and AWS Config to Enhance the Governance and Compliance ...
Using AWS CloudTrail and AWS Config to Enhance the Governance and Compliance ...
 
WIN401_Migrating Microsoft Applications to AWS
WIN401_Migrating Microsoft Applications to AWSWIN401_Migrating Microsoft Applications to AWS
WIN401_Migrating Microsoft Applications to AWS
 
Innovation morning agenda+azure arc
Innovation morning agenda+azure arcInnovation morning agenda+azure arc
Innovation morning agenda+azure arc
 
Devops on AWS
Devops on AWSDevops on AWS
Devops on AWS
 
DevOps on AWS: Deep Dive on AWS Code Services and AWS CloudFormation
DevOps on AWS: Deep Dive on AWS Code Services and AWS CloudFormationDevOps on AWS: Deep Dive on AWS Code Services and AWS CloudFormation
DevOps on AWS: Deep Dive on AWS Code Services and AWS CloudFormation
 
Benefits of Cloud Computing
Benefits of Cloud ComputingBenefits of Cloud Computing
Benefits of Cloud Computing
 

More from Amazon Web Services

Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
Amazon Web Services
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
Amazon Web Services
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
Amazon Web Services
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
Amazon Web Services
 

More from Amazon Web Services (20)

Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
 
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS Fargate
 
Costruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSCostruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWS
 
Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot
 
Open banking as a service
Open banking as a serviceOpen banking as a service
Open banking as a service
 
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
 
Computer Vision con AWS
Computer Vision con AWSComputer Vision con AWS
Computer Vision con AWS
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatare
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e web
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
 
Fundraising Essentials
Fundraising EssentialsFundraising Essentials
Fundraising Essentials
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container Service
 

Recently uploaded

Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Victor Rentea
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
WSO2
 

Recently uploaded (20)

Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
 
Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : Uncertainty
 
WSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering DevelopersWSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering Developers
 
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot ModelMcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
 
Platformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityPlatformless Horizons for Digital Adaptability
Platformless Horizons for Digital Adaptability
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptx
 
MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectors
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Vector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxVector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptx
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 

Revolutionising Cloud Operations with AWS Config, AWS CloudTrail and AWS CloudWatch

  • 1. Revolutionising Cloud Operations
 With AWS Config, AWS CloudTrail and AWS CloudWatch
 Matt House, Solutions Architect Amazon Web Services
  • 2. Business 101 Technical 201 Technical 301 Technical 401 Technical Session Grading
  • 3. “The cloud has become the new normal”
 Andy Jassy : AWS Senior Vice President 
 
 “Everything’s changed, yet nothing’s different”
 AWS whitepaper: Architecting for the cloud: Best Practices Revolutionising cloud operations
  • 4. Agenda for today • Common “Cloud” Conversations • Operational Checklist for AWS • Demo 1 from Ops checklist (monitoring) • Demo 2 from Ops checklist (auditing) • Demo 3 from Ops checklist (config management) • Summary
  • 5. Common Cloud Conversations With AWS Partners: Services teams My customers are demanding increased agility and visibility in their contract. How do I move to a cloud services business? With AWS Customers: Operations teams The developers in my business are using AWS to deliver results fast, how can I use AWS to deliver what the business wants from me equally fast?
  • 6. What drives these conversations? We Can Help Fix This!
  • 7. What drives these conversations? OPSDEV
  • 8. Outcomes of these conversations Transformation DEVOPS OLD NEW Bi-Modal Do more… With more
  • 9. Resources for AWS customers • AWS Developer Guides • AWS White Papers • AWS Reference Architectures • AWS Official Blog (Jeff Barr) • Presentations from this summit and re:Invent • Operational Checklists for AWS
  • 10. Operational Checklists for AWS Tools to help Operations teams… “Operational Checklists for AWS” Basic Operations Checklist Enterprise Operations Checklist Auditing and Security Checklist
  • 11. Demo #1 Monitoring and Incident Management From the Enterprise Operations Checklist “Has your organization instrumented appropriate monitoring tools and integrated your AWS resources into its incident management processes?”
  • 12. Monitoring & Incident Management (CloudWatch) What is Continuous Integration – Continuous Delivery Waterfall: Deploy to production once a Quarter? Agile Sprint : Deploy to production once a Month? CI/CD: Deploy code to production once an Hour?! Write Code + check in Automated build Automated test Automated deploy Live in production
  • 13. CI/CD deploy into AWS Capture Activity with AWS CloudWatch Monitor in CloudWatch dashboard Alert and report on that activity Monitoring & Incident Management (CloudWatch)
  • 14. Monitoring & incident Management (CloudWatch) Write Code + check in Automated build Automated test Automated deploy Blue/Green live in production
  • 15. CI/CD deploy into AWS Blue is production – 100% load Green is standby – 0% load Monitoring & incident Management (CloudWatch) LIVE PRODUCTION
  • 16. CI/CD deploy into AWS CI/CD toolchain deploys new code to green Monitoring & incident Management (CloudWatch) LIVE PRODUCTION Blue is production – 100% load Green is standby – 0% load
  • 17. CI/CD deploy into AWS PaaS flips DNS Green is production – 100% load Blue is standby – 0% load Monitoring & incident Management (CloudWatch) LIVE PRODUCTION WHERE DID THIS GO? CI/CD toolchain deploys new code to green Blue is production – 100% load Green is standby – 0% load
  • 18. AWS CloudWatch: • Monitoring service for AWS • Collect and track metrics • Collect and monitor log files • Set alarms Available in all public regions 5 minute resolution = No Additional Charge 1 minute resolution = $3.50 per month Capture Activity with AWS CloudWatch Monitoring & incident Management (CloudWatch)
  • 19. AWS CloudWatch dashboard • View the information CloudWatch collects • Draw graphs • Set Thresholds • Send Alerts Available in all public regions Typically $3/month for log storage on S3 Monitor that in Cloudwatch dashboard Monitoring & incident Management (CloudWatch)
  • 20. Simple Notification Service • Fully managed push messaging service • Send individual messages • Send bulk messages • E-mail, txt, google, apple, winpho, fireOS Available in all public regions $1 to send 1,000,000 notifications Alert and report on that Activity Monitoring & incident Management (CloudWatch)
  • 21. Demo #1 Run the Demo
  • 22. Demo #1 Monitoring and Incident Management
  • 23. Demo #2 Security Logging and Monitoring From the Audit Security Checklist “Are your organisation’s systems residing on AWS logged and monitored?”
  • 24. AWS Shared Responsibility Model Security Logging and Monitoring (CloudTrail)
  • 25. CI/CD deploy into AWS Everything is an API call Log everything with CloudTrail CloudTrail and CloudWatch Logs Security Logging and Monitoring (CloudTrail)
  • 26. CI/CD deploy into AWS Who made these changes? When did they make them? On Whose Authority? How is this recorded? Security Logging and Monitoring (CloudTrail)
  • 27. Your infrastructure is code Operations are as much a part of the dev process as anything else Everything is an API call You can log all the API callsEverything is an API call Security Logging and Monitoring (CloudTrail)
  • 28. AWS CloudTrail • History of AWS API calls • AWS Management Console, • AWS SDKs, • Command line tools, • Other AWS services Available in all public regions CloudTrail = No additional charge Typically $3/month for log storage on S3 Log all API calls with CloudTrail Security Logging and Monitoring (CloudTrail)
  • 29. CloudTrail and CloudWatch Logs Security Logging and Monitoring (CloudTrail) CloudWatch Logs • An API call is an event • Everything is an API call… New!
  • 30. Demo #2 Run the Demo
  • 31. Demo #2 Security Logging and Monitoring
  • 32. Demo #3 Configuration and Change Management From the Enterprise Operations Checklist “Does your organization have a configuration and change management strategy for its AWS resources?”
  • 33. Config and Change Management (AWS Config) CI/CD deploy into AWS Capture changes with AWS Config Look at Config timeline Output to durable storage
  • 34. CI/CD deploy into AWS Config and Change Management (AWS Config) How did our AWS resources look before? What changed? How do they look now? How have the relationships changed?
  • 35. AWS Config • Fully managed service • AWS resource inventory • Configuration history • Configuration change notifications Available in all public regions $.003 per configuration item recorded Capture changes with AWS Config Config and Change Management (AWS Config)
  • 36. AWS Config console • View AWS Config information • Current and historical • Current configuration, historical timeline of configurations • Current relationships, historical timeline of relationships Available in all public regions No additional charge Look at Config timeline Config and Change Management (AWS Config)
  • 37. AWS S3 • Object Storage • Secure • Durable • Highly Scalable Available in all public regions Free usage tier = 5GB $0.03 per Gigabyte Output to durable storage Config and Change Management (AWS Config)
  • 38. Demo #3 Run the Demo
  • 39. Demo #3 Config and Change Management
  • 41. Summary • The business demands more • The cloud is the new normal • Cloud allows you to exceed expectations • Do more… with more • AWS CloudWatch • AWS CloudTrail • AWS Config
  • 42. What to do next 1. Download the Operational Checklists for AWS 2. Embrace the new normal and benefit 3. Use CloudWatch, CloudTrail, AWS Config