å ¨AWSã¨ã³ã¸ãã¢ã«æ§ããCloudWatch è¨è¨ã»éç¨ èã®å·» / CloudWatch design and operation bible
AWSã³ã¹ãããã¾ããæé©åãã¾ãããï¼ ãã£ãã·ã¥ããã¼ãã¦ãããã¨ã³ããã¯ã¹ãæ¹åãã¾ãããï¼ ãã®è¨äºã§ã¯ãã¨ã«ãããã¾ãããªãã¨ããããæ¹åãã®æ¹æ³ãéé¡é¢ã§å¤§ããå¾åã«ãããµã¼ãã¹ãã¨ã«26åç´¹ä»ãã¾ãã 以ä¸åè¦åºãå ã®ð°ã¯ã³ã¹ãåæ¸åº¦ãâ¡ã¯ãã¾ãã§ããã©ã¼ãã³ã¹æ¹å度ãæãã¾ãã (1) ð°ð°ð° CloudWatch Logs: ã¨ã«ãããã°ãåºããªããã¨ãã¾ã¨ããã㨠AWSæéã®ãã¡ãCloudWatch Logsãä¸ä½ãå ããå¾åã«ããã¾ããä¿åæéãç¡æéã ããè²»ç¨ãããã...ã¨è¦ãããã¦ãå®éã¯ãã°åºåèªä½ã®æéã大åã§ãã ã¬ã¬ã·ã¼Webã¢ããªã±ã¼ã·ã§ã³ã®ãã°ã¯1ãªã¯ã¨ã¹ãã«ã¤ãä½åãä½è¡ãåºåããå¾åãããã¾ãããã¬ã¼ã ã¯ã¼ã¯ç¹æã®ä¸è¦ãªãã°ãä»ãã¦ãã¾ããåæã«åºåããããã°ã¯æ¾ç½®ããæ´çãã¦ããªã¯ã¨ã¹ãåä½ã§ã¤ãã³ãã¨ãã¦ã¾ã¨ãã¾ãããã åèè¨äº
ã¾ããéè¦åº¦ä»¥å¤ã§ã¯æ¢ã«å°å ¥ãã¦ããä¼æ¥ã®ã¢ã¦ãããããå ¬éããã°ãªã©ãåèã«ã§ãã¾ãã DevelopersIO ã§ã次ã®ããã°ãªã©ã§ç´¹ä»ããã¦ãã¾ãã ãã¢ãããã¼ããAWS Security Hub ã®ãåºç¤ã»ãã¥ãªãã£ã®ãã¹ããã©ã¯ãã£ã¹ãã«æ°ãã« 9 åã®ãã§ãã¯é ç®ã追å ããã¾ãã | DevelopersIO AWS Security Hub ã®ãåºç¤ã»ãã¥ãªãã£ã®ãã¹ããã©ã¯ãã£ã¹ãã« 30 åã®ãã§ãã¯é ç®ã追å ããã¾ãã(2022 å¹´ 2ã4 æå) | DevelopersIO ä¾ãã°ã次ã®ãããªã³ã¡ã³ããæ²è¼ããã¦ãã¾ãã [EC2.22] 使ç¨ãã¦ããªãã»ãã¥ãªãã£ã°ã«ã¼ãã¯åé¤ããå¿ è¦ãããã¾ã éè¦åº¦ : Medium (ã³ã¡ã³ã) 使ç¨ãã¦ããªãã»ãã¥ãªãã£ã°ã«ã¼ããå®æçã«æ£å¸ããããã¨ã§ãæå³ããªãã»ãã¥ãªãã£ã°ã«ã¼ãããªã½ã¼ã¹ã«ã¢ã¿ããããå¯è½æ§ãä¸ã
ãµã¼ãã¼ã¬ã¹ã使ã£ã¦ããã¨ã¤ã³ãã©ãAWSã管çãã¦ãããã®ã§ãéçºè ã»éç¨è ç®ç·ããã¯ããã§ã« âå®å ¨ã»å®å¿â ãå¾ããã¦ããã¨è¨ããªãããªãã§ããããããªä¸ã§ããããªãµã¼ãã¹éç¨è ããããã¯ãéçºè ã¨ä¼è©±ãã¦ããçµé¨è«ãåºã« ãããªã âå®å ¨ã»å®å¿â ãç®æãã話ããããã¦é ãã¾ãã
ããã«ã¡ã¯ãä½ã æ¨ã§ããå¹´æ«ã«æ¸ããã¨æã£ã¦ããã£ããå¿ãã¦ãã宿é¡ã§ãã 2022å¹´æ«ã®re:Inventã®ãã¼ãã¼ãã§AWSã®CEOã§ããAdam SelipskyãããA Zero ETL futureãã¨ããæ¦å¿µãæå±ãã¾ãããè¨ããã¨ãããã¨ã¯è§£ãã®ã§ãããããã¯ä¸ä½ã©ãããæèã§ããªãã®ãããªã®ã ããã¨çåã«æãæ¹ã¯å¤ãã¨æãã¾ããããã§ãèªåãªãã«ãã¼ã¿åæãåãå·»ãç¾ç¶ã¨èª²é¡ãã¼ãETLã®æ¦å¿µãåºã¦ããçç±ãã¾ã¨ãã¦ã¿ã¾ããããã¯ç§èªèº«ã®æèãªã®ã§ãå ¨ç¶éãå¯è½æ§ãé«ãã§ãã®ã§ãæªããããã ãã¼ã¿åæã¨ETLã®ç¾ç¶ã¨èª²é¡ ã¼ãETLã®è©±ãããåã«ããã¼ã¿åæã¨ETLã®ç¾ç¶ã®è©±ããã¾ãããããã¼ã¿åæãããéã«ã¯ãå¿ ããã¼ã¿ãå¿ è¦ã§ããã§ã¯ããã®ãã¼ã¿ã¯ã©ããããã£ã¦ããã®ãï¼åä¸ã®ã·ã¹ãã å ã§åæããå ´åãããã¾ãããå¤ãã®å ´åã¯ãããããªã·ã¹ãã ããå¿ è¦ãªãã¼ã¿ãéãã¦
ããã«ã¡ã¯NewsPicks SREãã¼ã ã®ç¾æ¿é¨ã§ãã NewsPicksã®SREã®ããã·ã§ã³ã®1ã¤ã«ãã³ã¹ããé©æ£åãããã¨ãããã®ãããã¾ãããµã¼ãã¹ã®è¦æ¨¡æ¡å¤§ã«æ¯ä¾ãã¦ã¤ã³ãã©ã³ã¹ããå¢ããªãããã«ãã売ä¸ã«å¯¾ããã³ã¹ãã®å²åãä½ãç¶æãã¦ããã®ãããã·ã§ã³ã«ãªãã¾ãã ä»åã¯ãã®ããã·ã§ã³ã«å¯¾ããã¢ã¯ã·ã§ã³ã¨ãã¦éçºç°å¢ã®ã¤ã³ãã©ã³ã¹ããé©æ£åãã話ããã¾ãã NewsPicksã®éçºç°å¢ã«ã¤ã㦠éçºç°å¢ã®ã³ã¹ããã©ããã£ã¦é©æ£åããã 稼åæé対å¿ãå®ç¾ããä»çµã¿ã«ã¤ã㦠å®éã©ããããåæ¸ã§ããã®ã ã¾ã¨ã NewsPicksã®éçºç°å¢ã«ã¤ã㦠ã¾ããNewsPicksã®éçºç°å¢ã«ã¤ãã¦æ¦è¦ã説æãã¾ãã ã¤ã³ãã©åºç¤ã¯æ¬çªç°å¢ã¨åæ§ã«AWSãå©ç¨ãã¦ããéçºãã¼ã ã¯ç¾å¨10以ä¸ã®ãã¼ã ãåå¨ããããããã®ãã¼ã å°ç¨ã«ç¨æãããéçºç°å¢ãå©ç¨ãã¦ãã¾ãã 2å¹´ç¨åã¾ã§ã¯éçº
èæ¯ å»å¹´7æã«IAM Roles Anywhereããªãªã¼ã¹ãããã¢ã¯ã»ã¹ãã¼ç®¡çãä¸è¦ã§AWSã®å¤é¨ã®ãªã½ã¼ã¹ã«å¯¾ãã¦IAMãã¼ã«ãå²ãå½ã¦ãã§ããããã«ãªãã¾ããã ãããå ¬å¼ã®ããã¥ã¡ã³ãã«ã¯èªå·±ç½²å証ææ¸ãä½æããæ¹æ³ãè¨è¼ããã¦ãã¾ããããç¾å¨ãããä¸ã«ä¸ãã£ã¦ããè¨äºã§ã¯æé ãè¤éã§ãªããªã容æã«ä½æã§ããªããã®ãå¤ãã¨æãã¾ããã ãªã®ã§ä»åã¯IAM Roles Anywhere + èªå·±ç½²å証ææ¸ãçéã§ä½æããæ¹æ³ãç´¹ä»ãã¾ãã ã¾ããGitHubä¸ã«IAM Roles Anywhereä½æã®ã¹ã¯ãªãããå ¬éãã¦ãã¾ãã®ã§ãè¯ãã£ãããæ´»ç¨ãã ããã 1. cfsslã®ã¤ã³ã¹ãã¼ã« ã¾ãã¯cfsslãã¤ã³ã¹ãã¼ã«ãã¾ããcfsslã¯ç°¡åã«CSRãç§å¯éµãä½æã§ãããã¼ã«ã§ãã opensslã§ãã¨ããããªãªãã·ã§ã³ãæå®ããªãã¨ãããªãããã¢ã«ã´ãªãºã ãééãããä¿¡é ¼ã¢
ãã¤ã®ä¸ã人ã ã¯æ¨©éè¨è¨ã«è¦ããããã¦ãããããã¯æãã¾ãã¬ãã ãå¤åã«ããããã¼ãã note ã«å ¥ã£ã¦ããã¨ãããã® AWS ã®æ¨©éè¨è¨ãã©ããã¦ããããã¨ãããããæãæ©ã¿ã¾ãã£ã人éã§ããã çµç¹ãå¤ããã°æ¨©éãå¤ããã誰ãä½ããããã®ããªãã¦ã¨ã¦ãææ¡ããããªããããã¨ãã£ã¦å ¨å¡ã« Administrator ãå²ãæ¯ããããªè±ªèããæã¡åããã¦ããããçµç¹åç·¨ãç¹°ãè¿ãããä¸ã§ããªãã¨ãéç¨ã«èãããè¨è¨ãèããå®è£ ãããã¨è©¦ã¿ãå 容ãã¾ã¨ããã®ããã® note ã§ãã note 社ã«ããã AWS 権éè¨è¨ã®å¤é·ã¨ããã®çµæçã¾ããèªå㧠AWS ã®æ¨©éãæãåºãä»çµã¿ã«ã¤ãã¦æ¸ãã¦ããã¾ãã â»ãã®è¨äºã¯noteæ ªå¼ä¼ç¤¾ Advent Calendar 2022 ã® 25 ç®ã®è¨äºã§ãã 注æäºé ã¤ãã¤ãã¨æ¸ãé£ãã¦ããã 12,000 åè¶ ã®å¤§ä½ note ã¨ãªã£ã¦ãã¾
åç»ã¯ãã¡ã https://youtu.be/BdSB9yBilxY?t=3812 è¦ãã¦ãããã�EventBridge ã®æ¬æ°ã£ã¦ãã¤ã㪠/ The art of EventBridge
AWS Startup Meetup #13 LT ç»å£è³æã§ãã Infrastructure as Codeï¼IaCï¼ãå°å ¥ãããã®ã®ãIaCåããæ©æµãæã£ã¦ããããå°ãªããIaCã§åºç¤ãçµ±ä¸ãã¦ããæ¹éã転æãã¦ãã£ã話ããç´¹ä»ãã¾ãã
éèã·ã¹ãã ã®éç¨ä¿å®ãæ å ±ã·ã¹ãã é¨éã®ITæ¯æ´ãªã©ãçµã¦ãç¾å¨ã¯é¡§å®¢ã¸ã®AWSå°å ¥ã»ç§»è¡ã®ææ¡ãæ§ç¯ãªã©ãæ å½ã社å åãã®åå¼·ä¼ãæè¡æ¯æ´ãªã©ãå®æ½ããAWSã¨ã³ã¸ãã¢ã®è²æã«ãææ¦ä¸ã好ããªé£ã¹ç©ã¯ã«ã¬ã¼ã¨é¤åã å·çã»ç£ä¿®è ãã¼ã¸ï¼æ²è¼è¨äºï¼6件 ã¿ãªãããAWSã®ã»ãã¥ãªãã£ã°ã«ã¼ãã¯ãåãã§ããããï¼ ããã«ã¡ã¯ãã¨ã³ã¸ãã¢ã®ä¸äºã§ãã AWSã®ãµã¼ãã¹ãå©ç¨ããä¸ã§ãé¿ãã¦ã¯éããªãã®ãã»ãã¥ãªãã£ã°ã«ã¼ãã®è¨å®ã§ãã ãã®ã»ãã¥ãªãã£ã°ã«ã¼ãã§ãããæ¹ãã¦ããã¥ã¡ã³ããèªã¿è¿ãã¨è²ã ã¨çºè¦ãããã¾ããã ããã§ä»åã¯ãã»ãã¥ãªãã£ã°ã«ã¼ãã®åºæ¬çãªé¨åããããããã¤ã¤ãã¤ã³ã¹ã¿ã³ã¹ã¸ã®è¨å®ãã¿ã¼ã³ãªã©ã«ã¤ãã¦èª¬æãã¦ããããã¨æãã¾ãã ã»ãã¥ãªãã£ã°ã«ã¼ãã®ãããã ä¸è¨ã§ãã㨠ã»ãã¥ãªãã£ã°ã«ã¼ãã¯ãã¹ãã¼ããã«ãªãã¡ã¤ã¢ã¦ã©ã¼ã«ãã§ãã¤ã³ã¹ã¿ã³ã¹ã¬ãã«ã§åä½ã ãã
SREãã¼ã ã®é·ç°ã§ãã KAYAC Advent Calendar 2022ã®11æ¥ç®ã®è¨äºã§ãã ã¢ããªã±ã¼ã·ã§ã³ããä½ãããã®å¤é¨ãµã¼ãã¹ãå©ç¨ããã¨ãããã®ãµã¼ãã¹ãå©ç¨ããããã®API Keyãªãç§å¯éµãªãã®ç§å¯æ å ±ãä¿æãããã¨ã«ãªãã¾ãã æå·åãããã®ããã¡ã¤ã«ã¨ãã¦ã¢ããªã±ã¼ã·ã§ã³ã«æããããã Amazon Web Services(AWS)ãªãAWS Secrets Managerã AWS Systems Managerã®Parameter Store(SSM Paramater Store)ã«ä¿åãããã®ãå®è¡æã«èªã¿è¾¼ãã ãããã§ãããã ãããã®ç§å¯æ å ±ãã©ãããæ¥ãã®ããããã¾ããï¼ ã©ãããæ¥ãç§å¯æ å ±ãªã®ã ç§å¯æ å ±ã使ã£ã¦åºã©ããã調ã¹ãããã®ã§ããã°åé¡ã¯ãªãã§ãããã # ä¾ãã°AWSã®IAM User Credenntialsã¨ã $ AWS_A
ã¡ãã£ã¨æã¾ã§ã¯ãã¼ã¿åºç¤ã®ç®¡ç人ã»ã¢ã¼ããã¯ã, ç¾å¨ã¯æãã£ããã¯ã©ã¦ãã¢ã¼ããæ±ãã³ã³ãµã«ã¿ã³ãã«ãªã£ããã³ã§ã. ç§èªèº«ã®çµé¨ã»ã¹ãã«ã»ãã®ããã°ã«æ¸ãã¦ããã³ã³ãã³ãã®é¢ä¿ã§, ããã¼ã¿åºç¤ã£ã¦ä½ã使ã£ã¦ä½ãã°ããã®?ãçãªHowï¼ãããã¯Whereï¼ã®ç¸è«. ãGoogleã®ããã°ã¯ã¨ãªã¼ã£ã¦ãã¤ãããã¨èãããã©ä½ãã§ããã®?ãçãªåå¥ã®ãµã¼ãã¹ã«å¯¾ãããç¸è«. ãã¶ã£ã¡ãããããããããã¾ããð¸ãã¨ããHow much?ãªè©±. æãé£ãããã®ãããªã話ããããåããã¦ãã¾ã. ã, ï¼ä»äºä»¥å¤ã®å¶ã¿ã«ãããï¼å人ã¨ãã¦ã¯æ¯åº¦åã話ãããã®ã¯ã¾ãã¾ãç²ããã®ã§, ãã¼ã¿åºç¤ã«ãããã¡ãªãä½ã使ã£ã¦ä½ãã°ãããï¼ãã¨ããåãã«å¯¾ããå¦æ¹ç® ã¨ãããã¼ãã§, ã¯ã©ã¦ãä¸ã§ãã¼ã¿åºç¤ãæ§ç¯ããéã®ãµã¼ãã¹ã®é¸ã³æ¹ ï¼ãã¼ã¿åºç¤ã«éããï¼ã¯ã©ã¦ãæéã®åºæ¬çãªèãæ¹ ãGoogle
æè¿ã½ã¼ãã¹ããªã¼ã ãè²·ããçé ¸æ°´ã飲ãã®ã«ã¯ã¾ã£ã¦ã¾ããæ©æ¢°å¦ç¿ã¨ã³ã¸ãã¢ã®@yktm31ã§ãã 以åã«ãAWS Lake Formationã§ãã¼ã¿ã¬ã¤ã¯ä½é¨ï¼ãã¨ããè¨äºãæ¸ãã¦ã¿ã¦ããã¼ã¿åºç¤ã¢ã¼ããã¯ãã£ã«èå³ã湧ãã¦ãã¾ããã ãã¼ã¿ã¬ã¤ã¯ãã¦ã¹ã¯ãããã¼ã¿ã¦ã§ã¢ãã¦ã¹ãã¨ããã¼ã¿ã¬ã¤ã¯ããçµ±åãããããªã¢ã¼ããã¯ãã£ã§ã 2020å¹´ã«Databricks社ã«ããæå±ãããæ°ãããã¼ã¿åºç¤ã¢ã¼ããã¯ãã£ã¨ãã¦æ³¨ç®ããã¦ããããã§ãã www.databricks.com ããã§ä»åãããã¼ã¿ã¬ã¤ã¯ãã¦ã¹ãã«ã¤ãã¦èª¿ã¹ã¦ã¿ããã¨ãã¾ã¨ãã¦ã¿ããã¨æãã¾ãã ãªããã¼ã¿ã¬ã¤ã¯ãã¦ã¹ã注ç®ããã¦ããã®ãï¼ ãã¼ã¿ã¦ã§ã¢ãã¦ã¹ã®ç¹å¾´ã»èª²é¡ ãã¼ã¿ã¬ã¤ã¯ã®ç¹å¾´ã»èª²é¡ ãã¼ã¿ã¬ã¤ã¯ãã¦ã¹ã®ç¹å¾´ ãã¼ã¿ã¬ã¤ã¯ãã¦ã¹ã®ã¢ã¼ããã¯ã㣠Azure Azure Synapse Analyticsã
Amazon Web Services ããã° AWS å©ç¨æ¨æºåã¬ã¤ãã©ã¤ã³çå®ã®ãã¹ããã©ã¯ãã£ã¹ çµç¹ã§æ¨ªæçã« AWS ã®å±éãé²ãã¦ããã«ããããã¯ã©ã¦ãç°å¢ã®çµ±å¶ãã»ãã¥ãªãã£å¯¾çãå質ã®ç¢ºä¿ã«ãæ©ã¿ã§ã¯ããã¾ãããï¼ çµç¹ã§ AWS ã®å©ç¨ãæ¡å¤§ããéã«ã¯ãããããã®ç°å¢ã«ããã¦ç¢ºå®ã«çµ±å¶ãå¹ãããé©åãªã»ãã¥ãªãã£å¯¾çãè¡ããå質ã®ã°ãã¤ããæãããã¨ãæ¬ ããã¾ããããã®éã«æå¹ãªã¢ããã¼ãã AWS å©ç¨æ¨æºåã¬ã¤ãã©ã¤ã³ï¼ä»¥ä¸ãã¬ã¤ãã©ã¤ã³ãã¨è¨è¼ï¼ã®æ´»ç¨ã§ããæ¬ããã°ã§ã¯ã¬ã¤ãã©ã¤ã³ãçå®ããæå¹ã«æ´»ç¨ããããã®ãã¹ããã©ã¯ãã£ã¹ããç´¹ä»ãã¾ãã ã¯ããã« å¤ãã®ä¼æ¥ãæ¿åºæ©é¢ã«ããã¦ãã¯ã©ã¦ãã®æ´»ç¨ãå éããåããå éãã¦ãã¾ãããããããã®éç¨ã«ããã¦ä»¥ä¸ã®ãããªèª²é¡ã«ç´é¢ããã±ã¼ã¹ãããã¾ãã è¨è¨ã»éç¨æ¹éããã©ãã©ã§çµ±å¶ãåãã¦ããªã ã»ãã¥ãªãã£å¯¾çãåå
æ¬æã®å 容ã¯ã2022å¹´8æ29æ¥ã«Alejandro Villanuevaãæ稿ããããã°(https://sysdig.com/blog/26-aws-security-best-practices/)ãå ã«æ¥æ¬èªã«ç¿»è¨³ã»åæ§æããå 容ã¨ãªã£ã¦ããã¾ãã Well-architected ãã¬ã¼ã ã¯ã¼ã¯ã®æãéè¦ãªæ±ã®1ã¤ã¯ãã»ãã¥ãªãã£ã§ãããããã£ã¦ãAWSã»ãã¥ãªãã£ãã¹ããã©ã¯ãã£ã¹ã«å¾ã£ã¦ãä¸æ¸¬ãªã»ãã¥ãªãã£ã®äºæ ãé²æ¢ãããã¨ãéè¦ã§ãã ãã¦ãããªãã¯åé¡ã解決ããããã«ãã½ãªã¥ã¼ã·ã§ã³ãæ§ç¯ãã¦ãã¹ãããç®çã§AWSã«çç®ãã¾ãããã¢ã«ã¦ã³ããä½æããã³ã¼ãã¼ãæ·¹ãã¦ã¯ã¼ã¯ã¹ãã¼ã·ã§ã³ã«åº§ããè¨è¨ãã³ã¼ãã£ã³ã°ããã«ãããããã¤ãããæºåã¯ãã¹ã¦æ´ãã¾ãããããããããã§ã¯ããã¾ããã ã½ãªã¥ã¼ã·ã§ã³ã®éç¨æ§ãå®å ¨æ§ãä¿¡é ¼æ§ãããã©ã¼ãã³ã¹ãè²»ç¨å¯¾å¹æãé«ããã«ã¯ãå¤ã
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}