ããã«ã¡ã¯ãEnterprise Cloudé¨ ã½ãªã¥ã¼ã·ã§ã³ã¢ã¼ããã¯ã1課 宮形 ã§ããå æ¥ AWS Summit Japan 2024 ã¸åå ããããã«å¹å¼µã¸è¡ã£ã¦ãã¾ãããæ¯åº¦ãªããä¼å ´ã®ç±éã«ã¯å§åããã¾ããã¨ã³ã¸ãã¢ã¨ãã¦ããåºæ¿ãé ãããæ¯å¹´æ¥½ãã¿ãªã¤ãã³ãã§ããã¾ãã
ä»åãµãããã§ã¬ãã¡ã³ãã¯ã©ã¦ãé¢ä¿ã®ã»ãã·ã§ã³ãèããããåå è ã®SNSçã§ã®ã¬ãã¼ããæè¦ããããã¾ãããç®ã«çã¾ã£ãã®ããAWSä¸ã®ãªã½ã¼ã¹ã«å¯¾ãã¦ãã¤ãã³ãã¼ç³»ãããã¯ã¼ã¯ããDNSã§åå解決ããå¿ è¦ããããã¨ã«çæ§é©ããã¦ããç¹ã§ãããAWS ã«ããã¦ã¯ Route 53 Resolver ã¤ã³ãã¦ã³ãã¨ã³ããã¤ã³ããå©ç¨ãããã¨ã§ãã¤ã³ã¿ã¼ããããä»ããã¨ãDNSã§ã®åå解決ãå®ç¾ã§ãã¾ãããã ããRoute 53 Resolver ã¯åä½ã§ã¯å©ç¨ã§ããããªã³ãã¬ãã¹ã®DNSãµã¼ãã¼ã¾ãã¯Active Directoryã®è¨å®å¤æ´ã¨çµã¿åããã¦å©ç¨ããå¿ è¦ãããã¾ããæ¬BLOGã§ã¯ãªã³ãã¬ãã¹å´ã§å¿ è¦ã¨ãªãè¨å®å¤æ´ã«ã¤ãã¦ãç´¹ä»ãããã¨æãã¾ãã
- åææ¡ä»¶
- AWS ã«ããã¦DNSã§ã®åå解決ãå¿ è¦ãªãªã½ã¼ã¹ã¨ã¯
- è¨å®å¤æ´åã®ç¶æ ã確èª
- DNSãµã¼ãã¼ã®è¨å®å¤æ´
- è¨å®å¤æ´å¾ã®ç¶æ ã確èª
- ã¾ã¨ã
åææ¡ä»¶
ä¸è¨ã®åææ¡ä»¶ãæ³å®ãã¾ãã
- å°æ¹èªæ²»ä½æ§ã«ããããã¤ãã³ãã¼ç³»ãããã¯ã¼ã¯ãæ³å®
- ãã¤ãã³ãã¼ç³»ãããã¯ã¼ã¯ã¯ãªã³ãã¬ãã¹ãAWSã©ã¡ããã¤ã³ã¿ã¼ãããã«ã¯æªæ¥ç¶
- ãªã³ãã¬ãã¹ã¨AWSéã¯æ¢ã« Direct Connect çã®å°ç¨ç·ãµã¼ãã¹ã§ãã©ã¤ãã¼ãæ¥ç¶ããã¦ãã
- ãªã³ãã¬ãã¹å´ã®ãã¤ãã³ãã¼ç³»ãããã¯ã¼ã¯ä¸ã«DNSãµã¼ãã¼ãæ¢ã«åå¨ãã¦ãã
- Windows Server ã®å½¹å² Active Directory ãã¡ã¤ã³ãµã¼ãã¹ã§åæã«ã¤ã³ã¹ãã¼ã«ããã DNSãµã¼ãã¼ãå©ç¨
- AWSå´ã«ã¯ VPC 㨠Route 53 Resolver ã¤ã³ãã¦ã³ãã¨ã³ããã¤ã³ããæ§ç¯ããã¦ãã
æ¬BLOGã§ã¯ Active Directory ãã¡ã¤ã³ãµã¼ãã¹ãDNSãµã¼ãã¼ ããã³ Route 53 Resolver ã¤ã³ãã¦ã³ãã¨ã³ããã¤ã³ã ã®æ§ç¯æ¹æ³ã¯ç´¹ä»ãã¾ãããä¸è¨å¼ç¤¾BLOGã«ã¦ç´¹ä»ãã¦ããã¾ãã®ã§å¿ è¦ã«å¿ãã¦ã覧ãã ããã
blog.serverworks.co.jp blog.serverworks.co.jp
AWS ã«ããã¦DNSã§ã®åå解決ãå¿ è¦ãªãªã½ã¼ã¹ã¨ã¯
ã¬ãã¡ã³ãã¯ã©ã¦ãAWSã«ããã¦å°æ¹èªæ²»ä½æ§ããå©ç¨ãããå¯è½æ§ã®é«ããªã½ã¼ã¹ã®ãã¡ãä¸è¨ã®ãã®ã¯DNSã§åå解決ãè¡ãæ¥ç¶ãã¾ããIPã¢ãã¬ã¹ã§ã®æ¥ç¶ãåºæ¥ããã®ãããã¾ããããã«ãAZã®åé·æ§æãDNSã§å®ç¾ãã¦ãããµã¼ãã¹ãããããIPã¢ãã¬ã¹ã§ã®æ¥ç¶ã¯ãå§ããã¾ããã
- RDS
- Aurora
- Elastic Load Balancing
- VPC Endpoint (S3ãã±ããçã®ãã©ã¤ãã¼ãæ¥ç¶ã«å©ç¨)
- Transfer Family
- FSx for Windows File Server
è¨å®å¤æ´åã®ç¶æ ã確èª
æ¬BLOGã§ã¯ RDS ã¸ã®æ¥ç¶ãè¡ãå ´åã¨ãã¾ããRDS ã¯IPã¢ãã¬ã¹ã§ã®æ¥ç¶ããµãã¼ããã¦ããããæ§ç¯æã«èªåçã«å²ãå½ã¦ãããDNSåã§æ¥ç¶ããå¿ è¦ãããã¾ãã
(RDSåå).(AWSãèªåå²ãå½ã¦ããã¦ãã¼ã¯ãªæåå).ap-northeast-1.rds.amazonaws.com
ãã®DNSåã¯AWSãã¤ã³ã¿ã¼ãããä¸ã§æä¾ãããããªãã¯DNSã§ãåå解決ãåºæ¥ã¾ããããã¤ãã³ãã¼ç³»ãããã¯ã¼ã¯ã¯ã¤ã³ã¿ã¼ãããæªæ¥ç¶ã®ããããªã³ãã¬ãã¹ä¸ã®ç«¯æ«ã§åå解決ãè¡ã£ã¦ãä¸è¨ä¾ã®éããè¦ã¤ããã¾ãããã¨ãªãã¾ãã
DNSãµã¼ãã¼ã®è¨å®å¤æ´
Active Directory ãã¡ã¤ã³ãµã¼ãã¹ã§åæã«ã¤ã³ã¹ãã¼ã«ããã DNSãµã¼ãã¼ã«ããã¦ã¯ãæ¡ä»¶ä»ããã©ã¯ã¼ãã¼ãã®è¨å®å¤æ´ãè¡ã Route 53 Resolver ãå©ç¨ãã¾ããä»ã®ç¨®é¡ã®DNSãµã¼ãã¼ã«ããã¦ãåæ§æ©è½ã¯ããçã§ãã®ã§ãããããæ¦å¿µã¨ãã¦ã¯åãã§ãã
DNSãµã¼ãã¼ã«è¨å®ãã Route 53 Resolver ã¤ã³ãã¦ã³ãã¨ã³ããã¤ã³ãã®ãã©ã¯ã¼ãå IPã¢ãã¬ã¹ãAWSããã¸ã¡ã³ãã³ã³ã½ã¼ã«ãã確èªãã¾ãã
AWS ããã¸ã¡ã³ãã³ã³ã½ã¼ã«ããRoute 53 ã³ã³ã½ã¼ã«ã¸ç§»åããããã²ã¼ã·ã§ã³ãã¤ã³ããããªã¾ã«ãã¼ãâãã¤ã³ãã¦ã³ãã¨ã³ããã¤ã³ãããé¸æãã¾ããæ¢ã«æ§ç¯ãããã¨ã³ããã¤ã³ããéããIPã¢ãã¬ã¹ãã»ã¯ã·ã§ã³ã«è¡¨ç¤ºãããIPã¢ãã¬ã¹ã®å¤ãæ§ãã¾ãããã«ãAZã§æ§æãã¦è¤æ°IPã¢ãã¬ã¹ã表示ããããã¨ãä¸è¬çã§ãããã¹ã¦ã®IPã¢ãã¬ã¹ãæ§ãã¾ãã
Active Directory ãã¡ã¤ã³ãµã¼ãã¹ãã¤ã³ã¹ãã¼ã«ãã Windows Server ã®ãã¹ã¯ãããããã管çãã¼ã«ãâãDNS (DNSããã¼ã¸ã£ã¼)ããé¸æãèµ·åãã¾ãããDNSããã¼ã¸ã£ã¼ãã表示ããã¾ããå·¦ã®ããªã¼ã«è¡¨ç¤ºããã管çããDNSãµã¼ãã¼é ä¸ã®ãæ¡ä»¶ä»ãã©ã¯ã¼ãã¼ãããå³ã¯ãªãã¯ãããæ°è¦æ¡ä»¶ä»ããã©ã¯ã¼ãã¼ããé¸æãã¾ãã
ãæ°è¦æ¡ä»¶ä»ããã©ã¯ã¼ãã¼ãã表示ããã¾ããæ¬BLOGã®ä¾ã§ã¯ãDNSãã¡ã¤ã³ãã«AWSã®ãªã½ã¼ã¹ã®åå解決ã«å©ç¨ããããã¡ã¤ã³ amazonaws.com
ãå
¥åãã¾ããããã¹ã¿ã¼ãµã¼ãã¼ã®IPã¢ãã¬ã¹ãã®ä¸è¦§ã«å
ã»ã©æ§ãã Route 53 Resolver ã¤ã³ãã¦ã³ãã¨ã³ããã¤ã³ã ã®ãã¹ã¦ã®IPã¢ãã¬ã¹ãå
¥åãããOKããæ¼ä¸ãã¾ããã解決ã§ãã¾ãããã¨è¡¨ç¤ºããÃãã¼ã¯ã«ãªãå ´åã§ãåä½ä¸ã¯åé¡ããã¾ããã
DNSãµã¼ãã¼ã®è¨å®å¤æ´ã¨ãã¦ã¯ããã ãã§å®äºã«ãªãã¾ãã
è¨å®å¤æ´å¾ã®ç¶æ ã確èª
DNSãµã¼ãã¼ã®è¨å®å¤æ´ã®åã«ã¯åå解決ã§ãã¦ããªãã£ã RDS ã®DNSåããã¤ã³ã¿ã¼ãããæªæ¥ç¶ã®ç«¯æ«ã«ããã¦ãåå解決ã§ããããã«ãªã£ããã¨ã確èªã§ãã¾ãã
ã¾ã¨ã
æ¬æ¥ã¤ã³ã¿ã¼ãããæªæ¥ç¶ã§ãããã¤ãã³ãã¼ç³»ãããã¯ã¼ã¯ã«ããã¦ããRoute 53 Resolver ã¨ãªã³ãã¬ãã¹å´ã®Active Directory ã¾ãã¯DNSãµã¼ãã¼ãç¨ãããã¨ã§ãã¤ã³ã¿ã¼ãããã«éä¿¡ãããã¨ãªããããªãã¯ã¯ã©ã¦ãAWSä¸ã®ãªã½ã¼ã¹ã«å¯¾ãã¦åå解決ãè¡ãããã¨ããç´¹ä»ããã¦ããã ãã¾ããã æ¬BLOGãå°ãã§ãçæ§ã®åèã«ãªãã°å¹¸ãã§ãã
宮形ç´å¹³(å·çè¨äºã®ä¸è¦§)
ã¨ã³ã¿ã¼ãã©ã¤ãºã¯ã©ã¦ãé¨ ã½ãªã¥ã¼ã·ã§ã³ã¢ã¼ããã¯ã1課
好ããªãé ã¯ç¼¶ãã¥ã¼ãã¤ã¨æ¬æ ¼ç¼é