2019-08-01ãã1ã¶æéã®è¨äºä¸è¦§
æè¡ï¼èª²ã®å¤ç°ã§ã. CloudWatch Logs ã®ãã°ãã¢ã«ã¦ã³ãã¾ããã§å ±æã,ãã°åæã«æ´»ç¨ããè¦ä»¶ãããã¾ãã.ãã®ããã®æ¤è¨¼ãè¡ãªã£ãã®ã§,ã¾ã¨ãã¦ããã¾ã. å®ç¾æ¹æ³ å®ç¾ããã«ã¯,CloudWatch Logs ã®ãã°ãéä¿¡å ã¢ã«ã¦ã³ãã§, Kinesis Data Streams â¦
æè¡2課ã®å¤ç°ã§ãã éç¨ãã§ã¼ãºã«ãªãã¨ãã©ãã«ã·ã¥ã¼ããå®å¸¸éç¨æã«ãã°ã確èªãããã¨ãããããã¨æãã¾ã.åããããªæã«æè¿ã¯ CloudWatch Logs Insights ãã使ãããã«ãã¦ãã¾ã.CloudWatch Logs Insights㯠CloudWatch Logs ã«ä¿ç®¡ããããã°â¦
æè¡ï¼èª²ã®å¤ç°ã§ã. GuardDuty ã®ãã«ãã¢ã«ã¦ã³ã管çæ©è½ãç´¹ä»ããè¨äºãæ¸ãã¾ãã.ãã«ãã¢ã«ã¦ã³ã㧠GuardDuty ãéç¨ãããªãæå¹åãã¹ãæ©è½ã§ãã,å¤æ°ã®ã¢ã«ã¦ã³ãã AWS ããã¸ã¡ã³ãã³ã³ã½ã¼ã«ã®æä½ã§æå¹åããã®ã¯ç ©éãªãã, CloudFormatâ¦
æè¡2課ã®å¤ç°ã§ã. AWS CDK ãä¸è¬å©ç¨å¯è½ã¨ãªã, ãã¼ã¸ã§ã³v1.6.1ããªãªã¼ã¹ããã¾ãã(2019/08/31æç¹). https://github.com/aws/aws-cdk/releases/tag/v1.6.1 AWS CDK CLI ã®ãã¼ã¸ã§ã³ã¢ããæ¹æ³ ãã¼ã«ã«ã®ãAWS CDK CLIãã®ãã¼ã¸ã§ã³ã1.0.0ã«ãªã£â¦
æè¡ï¼èª²ã®å¤ç°ã§ã. 以å,ãAWS Cloud Development Kitã(以ä¸ãCDK)ã®è¨äºãæ¸ãã¾ãã.å½æã¯å¯¾å¿è¨èªã« Python ããµãã¼ãããã¦ã¾ããã§ããã, Amazon Web Services ããã°ã§ Python 対å¿ã¢ãã¦ã³ã¹ãããã¾ããã®ã§,æ©é, Python 㧠CDK ã使ã£ã¦ã¿ã¾â¦
æè¡ï¼èª²ã®å¤ç°ã§ã. è¤æ°ã®ãµãã·ã¹ãã ãè¨è¨,å®è£ ããæã« VPC ãã¢ãªã³ã°ã使ã£ã¦ç¸äºã«ãããã¯ã¼ã¯çéå¯è½ã«ãããã¨ãããã¨æãã¾ã.VPC ãã¢ãªã³ã°ã使ã£ããããã¯ã¼ã¯è¨è¨ã«é¢ãã£ã¦ãã¾ãã.VPC ãã¢ãªã³ã°ã¯ VPC éã®é£æºã«ã¯æ¬ ãããªãæ©è½ã§â¦
æè¡2課ã®å¤ç°ã§ã. Amazon GuardDuty(以ä¸, GuardDuty)ããã«ãã¢ã«ã¦ã³ãã§æå¹åãã¦ããå ´å, åã¢ã«ã¦ã³ãã® GuardDuty ã®ã¤ãã³ãã管çã»éç¨ã®ããã«ã¢ã«ã¦ã³ã管çæ©è½ã試ãæ©ä¼ããã£ãã®ã§ä»åã¯ãã®å 容ãã¾ã¨ãã¦ããã¾ã. GuardDuty ã®ãµã¼ãâ¦
æè¡ï¼èª²ã®å¤ç°ã§ã. AWS CLI 使ã£ã¦ãã¦äºæ¸¬å¤ææ©è½ããã©ã¡ã¼ã¿ãããã¥ã¡ã³ããé½åº¦ç¢ºèªããã¨ãå®è¡ã§ããã楽ã ãªã¨æã£ã¦ããã®ã§ãã, AWS Labsãæ¼ã£ã¦ããã¨ãããaws-shellãã¨ãããã¼ã«ãè¦ã¤ãã¾ããã®ã§ä»åã®è¨äºã§ã¯ãã®ãã¼ã«ã«ã¤ãã¦ç´¹ä»â¦
ããã«ã¡ã¯ããµã¼ãã¼ã¯ã¼ã¯ã¹ã®ãããã®äººãåæ¬ï¼@t_sakamï¼ã§ããä»åããååã«å¼ãç¶ãRPAãã¼ã«ã®UiPathã試ãã¾ãã 第ä¸åç®ã¯ãã¡ã¼ã«ã®åå¾å¦çã¨ä»¶åã«ããå¦çã®æ¡ä»¶åå²ã試ãã¾ãããã第äºåç®ã®ä»åã¯ãä»å¹´ã®4æã«è¿½å ããããWindowsãªã¢â¦
Git ã¨ä»²è¯ããªãããæè¡ä¸èª²ã®æå¡ã§ãã ããã·ã¥ããã¼ã¸ãç¡äºéããã¨ãç¥ãæ¯æ¥ã§ãããå ±åä½æ¥ãè¡ã以ä¸ãã³ã³ããªã¯ãçã®å¦çã¯é¿ãã¦éããªãããã§ãã ä»åã¯ãããªæã®åãåãã«å½¹ç«ã¤ãããããªããGit æ¤è¨¼ç°å¢ã®ä½ææ¹æ³ãç´¹ä»ãã¾ãã â¦
ã¯ããã«è¦ç¹ Slackã®ãã³çãã®API( pins.add )ã®ãã©ã¡ã¼ã¿ä»æ§ã«å¤æ´ããã£ãã®ã§ãå©ç¨ã®éã«ã¯æ³¨æãã¾ãããã 説æ ãµã¼ãã¼ã¯ã¼ã¯ã¹ã§ã¯ã³ãã¥ãã±ã¼ã·ã§ã³ãã¼ã«ã«Slackãå©ç¨ãã¦ãã¾ããä¸ã§ããµã¼ãã¹éçºèª²ã¯ç¤¾å é±å ±ãSlackã®ãã¹ããç¨ãã¦çºâ¦
ããã«ã¡ã¯ããµã¼ãã¼ã¯ã¼ã¯ã¹ã®ãããã®äººãåæ¬ï¼@t_sakamï¼ã§ããä»åã¯ãRPAãã¼ã«ã®UiPathã試ãã¦ã¿ã¾ããUiPathã¯ãã¬ã¼ããã¼ã®ãã¸ãã¯ã»ã¯ã¢ãã©ã³ãRPAé¨éã§ãªã¼ãã¼ã«é¸ã°ãããã³ããã°ã©ãã³ã°ã§èªååãã§ããRPAãã¼ã«ã®ä¸ã§ãç¹ã«æ³¨ç®ããâ¦
ããã«ã¡ã¯ãMSé¨ã®é«æ©ï¼å¤§ï¼ã§ãã ã¿ãªãã Vuls 㨠AWS Inspector ã¯ãåç¥ã§ããããã ã¨ãã«èå¼±æ§æ¤ç¥ãã¼ã«ã§ããVuls ã¯ãã¥ã¼ãã£ã¼æ ªå¼ä¼ç¤¾ãæä¾ãã¦ãããªã¼ãã³ã½ã¼ã¹ï¼SaaSç FutureVulsãããå¾è¿°ï¼ã§ãã¦ãAWS Inspector㯠AWSããæä¾ãâ¦
æ¬æ¥ãããEC2: AMIãä½æãã¢ã¯ã·ã§ã³ã§ããã¯ã¢ãããä½æããéã«ãAMIã®ä¸ä»£ç®¡çãè¡ããªãããã«è¨å®ã§ããããã«ãªãã¾ããã ä¸ä»£ç®¡çããªãã«ããæ©è½ã«ã¤ã㦠ããã¾ã§Cloud Automatorãå©ç¨ãã¦AMIãä½æããéã¯ä¸ä»£ç®¡çãè¡ãå¿ è¦ããã£ããããâ¦
ä»æãä½èèªçã 7% æ¸ãããæè¡ä¸èª²ã®æå¡ã§ãããã¤ã¨ããã®æåã«ã¯ãææ ¢ããªãã¦ãèªç¶ã¨æ¸éãé²ãç°å¢ä½ããéè¦ã¨èãã¾ããããã®è©±ã¯é·ãã®ã§å¥ã®æ©ä¼ã«ãã¾ãããã ãã¦ä»å㯠Amazon EC2(ä»¥ä¸ EC2) ã®èµ·åã»åæ¢ããã³ããã°ã©ãã³ã°ã§èªååâ¦
ããã«ã¡ã¯ããµã¼ãã¼ã¯ã¼ã¯ã¹æ°äººã¨ã³ã¸ãã¢ã®æ¾äºã§ãã ã¿ãªããdockerfileãèªåã§ä½æãã¦å®è¡ãã¦ã¾ããï¼ ä»åã¯EC2ã§dockerhubããnginxã®ã¤ã¡ã¼ã¸ãå¼ã£å¼µã£ã¦ããã°éæ»ã§ã³ã³ããä½æã§ãããã®ãããã¦EC2ã¨dockerHubã使ããã«vagrant+virtualbâ¦
AWS VPCã§ããè¸ã¿å°ãã¨å¼ã°ãããµã¼ãã¼ãããã¾ãããªãè¸ã¿å°ãªã®ãããè¸ã¿å°ãã¯é常ã®æå³ã§ã¯é«ãã¨ããã®ãã®ãåãã¨ããªã©ã«ä½¿ãå°ã®ãã¨ã§ãããæ¯å©ç表ç¾ã§ã¯ä½ã ãæªãæå³ã§ä½¿ããã¾ãããä»äººãè¸ã¿å°ã«ãã¦åºä¸ããããªã©ãããã«ãåæ¯ãªâ¦
ããã°ç§»è»¢ã«ä¼´ããæ¬è¨äºå ã®æç« ãç»åãä¸é¨ä¿®æ£ã(2021/05/14) ããã«ã¡ã¯ãCIé¨ã®æ¿ï¨ã¨ç³ãã¾ãã ç§ã¯ãµã¼ãã¼ã¯ã¼ã¯ã¹ã«å ¥ç¤¾ãã¦3é±éã»ã©ã§ãããã¨ã¦ã馴æã¿ãããæ¯æ¥ãªã©ãã¯ã¹ããç¶æ ã§éããã¦ããã¾ãã ãã®ãããªç°å¢ã§ä»äºãã§ãããã¨â¦
ããã«ã¡ã¯ãæè¡ï¼èª²ã大éªå¤åã®å ¨ï¼ã¡ããï¼ã§ãã ãµã¼ãã¼ã¯ã¼ã¯ã¹ã«å ¥ç¤¾ããã¯ã©ã¦ãã¯ã¼ã¯ã¹ã¿ã¤ã«ããçµé¨ãã¦ãä»äºã¯ãªãã£ã¹ã§ãããã®ã®å¸¸èãå¤ããã¾ããã ã¡ãªã¿ã«ããã®ããã°ãèªå® ã§ä½æãã¾ããã ãã ããã®ææã ã¨ã¨ã¢ã³ã³ã®é»æ°ä»£ãâ¦
CIé¨ã®åèã§ããéååã«éçºç°å¢ãEC2ã«ç§»è¡ãã¾ããã åè: ã¨ã³ã¸ãã¢ããã° - éçºç°å¢ãAmazonEC2ã«ç§»ããçµæãåã®Vimã¯ããããã¹ããªã ãããã6å¹´ãçµã£ã¦ãããã¨ã«é©ãã¾ãããããã¾ã§ãå¿«é©ã«EC2ã§éçºããã¦ãã¾ãã ãã¦ãAmazon EC2 ã¯â¦
ããã«ã¡ã¯ãæè¡2課ã®è³è³ã§ããçããAWS CLIï¼ä»¥éCLIï¼ã使ã£ã¦ããã§ããããã ç§ã§ããï¼å®ã¯ãã¾ãå¤ç¨ã¯ãã¦ãã¾ããã»ã»ã»ï¼¾ï¼¾ï¼ ã¨ããã§CLIã使ç¨ããéã«MFAèªè¨¼ããããã¨ãã§ããã®ããåç¥ã§ãããããã¾ããMFAã®è¨å®ã¯ããã³ã³ããããã§â¦
ããã¼ã¸ããµã¼ãã¹é¨æå±ãæãå°ã»è¦³ãå°ã»éæ¯çã¯ã©ã¹ã¿ã®æ©æ¬ã§ãã éæ¯çãã¥ã¨ã«ãªã³ã¯ã¹ã®ã¾ãã¾ããªèª²éã¦ã¼ã¶ã¼ã ã£ãã®ã§ããã課éããåã«ãããæ§ç¯åããã¥ã¨ã«ã¿ã¯ãã£ã¯ã¹ãéããæ¹ãè¯ããã¨ã«æ°ãã¤ãã¦æè¿ã¯çµè²»åæ¸ãã¤ã¤æ¥½ããã§ãâ¦
ããã«ã¡ã¯ãæè¡3課ã®åã§ãã æ¢åãªã½ã¼ã¹ã®è¨å®å¤æ´ãè¡ãå ´åãå½±é¿ç¯å²ã確èªãããã¨æãã¾ãã EC2ã¤ã³ã¹ã¿ã³ã¹ã®è¨å®å¤æ´ãä¾ãã°ã¤ã³ã¹ã¿ã³ã¹ã¿ã¤ãã®å¤æ´ã¨ãããã¨ã§ããã°å½±é¿ã¯ãã®ã¤ã³ã¹ã¿ã³ã¹ã®ã¿ã¨ãããã¨ã«ãªãã¾ãããã»ãã¥ãªãã£ã°ã«â¦
S3ãã±ãããæ°è¦ä½æããéããã¹ã¦ã®ã¢ã«ã¦ã³ãã«åå¨ããæ¢åã®ãã±ããåã¨ç°ãªãå¿ è¦ãããã¾ãã ãªãã«ã¯èª°ãã¤ãã¦ããªãã ããã¨æã£ã¦å½åãããã¨ããã¨ãæå¤ã¨ä½¿ããã¦ãã¦ååãä»ããããªãå ´åãããã¾ãã ä»åã¯ã2019/08/06ç¾å¨ã§ãä½æâ¦
EC2ã¤ã³ã¹ã¿ã³ã¹ä½ææã«ç¶æ³ã«å¿ãã¦ãç°ãªãUserDataãå®è¡ããããã¨ãããã¾ãã ä¾ãã°ãCloudFormationã®ãã©ã¡ã¼ã¿ã§ã¤ã³ã¹ãã¼ã«ããPHPã®ãã¼ã¸ã§ã³ãåãæ¿ãããã¨ãã¾ãã # ããã©ã«ããã¼ã¸ã§ã³ãã¤ã³ã¹ãã¼ã« yum install -y php yum installâ¦
ããã«ã¡ã¯ãMSé¨ã®é«æ©ï¼å¤§ï¼ã§ãã SignalFx ã«ã¤ã㦠ã¿ãªãã SignalFxããåç¥ã§ããããã2013å¹´ã«è¨ç«ãUS 㯠San Mateoã«æ¬ç¤¾ãæ²ããSaaSåã®ç£è¦ãã©ãããã©ã¼ã ãæä¾ãã¦ãã¾ãã signalfx.com åµæ¥ã¯ Facebook社ã§ç£è¦ã½ãªã¥ã¼ã·ã§ã³ãéçºãâ¦
æè¡ä¸èª²ã®æå¡ã§ããå ¥ç¤¾ããåå¹´ãéãã¾ãããããã£ã¨é·ãå¨ç±ãã¦ãããããªæè¦ãããã大å¤å¯åº¦ã®æ¿ãæéãéããã¦ãã¾ãã ãã¦ãæ¬è¨äºã¯ç§éã§ãããã¯ã¼ã¯ãä½æããæ¹æ³ã§ãã Network namespace(ä»¥ä¸ netns) 㨠veth peer ã§è»½éãªä»®æ³ãããâ¦
ããã«ã¡ã¯ãæè¡3課ã®åã§ãã ããã¾ã§ã«ããã¤ãElasticsearch Serviceã«é¢ããããã°ãæ¸ãã¾ããããã»ã¼ã»ã¼åå¿è ã®ç¶æ ãããªãã¨ãéç¨ããã¨ããã¾ã§ããã¤ãã¾ããã åããããã®ããã¥ã¡ã³ãããã¡ãã¨èªãã§ããã°ãããã¨ãããã®ãå¤ã ãã£â¦
ããã«ã¡ã¯ãæè¡3課ã®åã§ãã 以åããAmazon Elasticsearch ServiceãCloudTrailãVPC Flowlogsãéç´ããã¨ããããã°ãæ¸ããã®ã§ããããã®ã¾ã¾ã ã¨ãã¼ã¿ããã¾ãä¸æ¹ãªã®ã§ãLambdaãå©ç¨ãããã¼ãã¼ã·ã§ã³ãå®è£ ãã¦ã¿ã¾ããã ä¸è¨ã®ããã¥ã¡ã³ãâ¦
AWSã触ãå§ãã¦4ãµæã«ãªã£ãã®ã§ãããAWS Systems Managerï¼SSMï¼ã®Automationã«ã¤ãã¦ããèããã©ä½ãã§ãããåãããªãç¶æ ã ã£ããããå®éã«è§¦ã£ã¦ã¿ã¾ããã ãæ¿èªè ã«ç¢ºèªå¾ãEC2ãèµ·åãããã¨ããå¦çãAutomationã使ã£ã¦å®æ½ãã¦ã¿ã¾ãã AWâ¦
ããã«ã¡ã¯ããµã¼ãã¼ã¯ã¼ã¯ã¹ã®ãããã®äººãåæ¬ï¼@t_sakamï¼ã§ããä»åã¯ãAlexaã¹ãã«ã®ããããã¯ã¤ãºããã¢ãããã¼ãããã®ã§ããã®ãç¥ããã¨æ´æ°ããå 容ã«ã¤ãã¦ã®ããã°ã§ãã ä»åã¯ãAlexa Developer Serviceã®ã¬ãã¼ãã§å©ç¨ç¶æ³ã確èªãã¤ã¤ãâ¦