2024-05-01ãã1ã¶æéã®è¨äºä¸è¦§
ï¼å°ãã¿ï¼Windowsã®ã¢ããªã±ã¼ã·ã§ã³ã¤ã³ã¹ãã¼ã«ãã¢ã³ã¤ã³ã¹ãã¼ã«æ¹æ³
ã¿ãªããããã«ã¡ã¯ãããã¼ã¸ããµã¼ãã¹é¨ã®å¡©éã§ãã ä»åã¯å°ãã¿ã·ãªã¼ãºã¨ãã¦ãWindowsã®ã¢ã³ã¤ã³ã¹ãã¼ã«ã«ã¤ãã¦ãããªãã¨ãããªãã§ããããããªï¼ã ãããåºæ¥ãã«å°ã£ã¦èª¿ã¹ããã¤ï¼ã«ã¤ãã¦ã¾ã¨ãã¦ã¿ã¾ãã æ³å®èªè ã¢ããªã±ã¼ã·ã§ã³ã®è¨å®â¦
ããã¼ã¸ããµã¼ãã¹é¨ ä½ç«¹ã§ããæ¬ããã°ã§ã¯ãAWS ã«ãããã»ãã¥ãªãã£ã®åä¸ãç®çã¨ãã¦ãAmazon EC2 ã®ããã¼ã¿ä¿è·ã¨ã»ãã¥ãªãã£(Data protection and security)ãã«ã¤ãã¦è©³ãã解説ãã¦ãã¾ãããªãã·ã§ã³ã®1ã¤1ã¤ããªããªãã«å¥¥ã®æ·±ããã®ã§ããâ¦
å®éã«New Relicã使ã£ã¦ãªãã¶ã¼ãããªãã£ãã¼ã«ã使ç¨ãã¦ãªãã¶ã¼ãããªãã£ãå§ããã«ã¯ã©ãããããããã ãããã¨ããç¹ã«ãã©ã¼ã«ã¹ãã¦ä»åã¯è¨äºãæ¸ãã¦ã¿ã¾ããã
ã¨ã³ã¿ã¼ãã©ã¤ãºã¯ã©ã¦ãé¨ã®å±±ä¸(ç¥)ã§ãã AWS Organizationsç°å¢ä¸ã§ãè¤æ°ã®ã¢ã«ã¦ã³ããç¹å®ã®OUã«ä¸æ¬ã§ç§»åããããã£ãã®ã§ãç°¡åãªã¹ã¯ãªãããçµãã§ç§»åããã¦ã¿ã¾ããã ä»åã®ç°å¢ ä»åã¯ã以ä¸ã®ãããªæ¡ä»¶ä¸ã§ç§»åãè¡ãã¾ãã Organizationâ¦
ã¨ã³ã¿ã¼ãã©ã¤ãºã¯ã©ã¦ãé¨ã®å±±ä¸(ç¥)ã§ãã æè¿ã200åãããã®ã¢ã«ã¦ã³ãã§AWS Configãæå¹åããã¦ããã確èªããå¿ è¦ããã£ãããã ç°¡åãªã¹ã¯ãªãããä½ã£ã¦ç¢ºèªãã¦ã¿ã¾ããã æ¬ããã°ã§ã¯ããã®å 容ã«ã¤ãã¦ãç´¹ä»ãã¾ãã ä»åã®ç°å¢ äºåæºå â¦
æè¿ãªãã¶ã¼ãããªãã£ã®ãã¨ã«é¢ãããã¨ãå¢ãã¦ãã¾ããã®ã§ãæè¿èªãã ãªã©ã¤ãªã¼ã®ããªãã¶ã¼ãããªãã£ã»ã¨ã³ã¸ãã¢ãªã³ã°ãã¨ããæ¸ç±ã«ã¤ãã¦ãéç¨ã¨ã³ã¸ãã¢ã®è¦ç¹ããææ³ãæ·»ãã¤ã¤ãç´¹ä»ãããã¨æãã¾ãã
ã¯ããã« AWS Summit ãè¿ã¥ãã¦ãã¾ãããã ä»å¹´ãè²ã ã³ã³ãã³ãè±ããªç¶æ³ãªã®ã§ãããã楽ãã¿ã§ããã ã¡ãªã¿ã«ãåºå¼µç¨è°ã宿æ³å ã確ä¿ãã¾ãããï¼ è¿è¾ºã¯çµæ§åã¾ããããã®ã§ãæ©ãã«è¡åãï¼ ã¨ãããã¨ã§ãä»å¹´ã¯å¤§éªã«ãçå®çªãããã¨ã«ãªã£â¦
ããã«ã¡ã¯ï¼ã¨ã³ã¿ã¼ãã©ã¤ãºã¯ã©ã¦ãé¨ã¯ã©ã¦ãã³ã³ãµã«ãã£ã³ã°èª²ã®æ¥é«ã§ãã ããç§ã®ãã¨ãå°ãã§ãç¥ãããã¨æã£ã¦ããã ãããªããç§ã®å¾è¼©ãæ¸ãã¦ããã以ä¸ã®ããã°ãè¦ãã¦ã¿ã¦ãã ããã sabawaku.serverworks.co.jp æ¬æ¥ã¯ä»¥ä¸ããã°ã®å¾ç·¨ï¼â¦
ããã«ã¡ã¯ãEnterprise Cloudé¨ ã½ãªã¥ã¼ã·ã§ã³ã¢ã¼ããã¯ã1課 宮形 ã§ãã 2023å¹´ããå°æ¹èªæ²»ä½æ§ãä¸å¿ã¨ããã¬ãã¡ã³ãã¯ã©ã¦ãã«ããããããªã»ã¼ã«ã¹ãããã¸ã§ã¯ããæ å½ãã¦ããã¾ããæè¿å¤ããªã£ã¦ããã®ããæ¨æºåã·ã¹ãã å士ã®ãã¼ã¿é£æºæ©è½â¦
ã¢ãããã¼ãå 容 å®éã«ALBãä½æãã¦è©¦ãã¦ã¿ã Webã³ã³ã½ã¼ã«ããã®ä½æ åä½ç¢ºèª ã¦ã¼ã¹ã±ã¼ã¹ ã¢ãããã¼ãå 容 ä»åã®ã¢ãããã¼ãã«ãããã¤ã³ã¿ã¼ãããåãã®ALBã«ããã¦ãããªãã¯IPv4ã¢ãã¬ã¹ç¡ãã®ALBãæ§æãããã¨ãå¯è½ã«ãªãã¾ãããä¸è¨ã®â¦
ã«ã¹ã¿ãã¼ãµã¯ã»ã¹é¨ã®å±±ï¨ã§ãã ä»åã¯Incident Manager ãæ´»ç¨ãã¦Security Hubã§æ¤åºããã¤ã³ã·ãã³ãã管çããæ¹æ³ãæ¤è¨¼ãã¦ã¿ã¾ããã Systems Manager Incident Managerã«ã¤ã㦠æ¦è¦ å®åç¯å² å ¨ä½å ä»åæ³å®ããå©ç¨ã·ã¼ã³ ä»åã®æ§æ ããå®è£ â¦
Amazon Aurora ã® ç£æ»ãã° ( pgAudit ) ãããã°ã¢ã¼ã«ã¤ãç¨ã® AWS ã¢ã«ã¦ã³ãã«ãã S3 ãã±ããã«åºåãã¦ã¿ã¾ããã
ã¯ããã« Amazon Connectã«ããåçºä¿¡æ©è½ã¯ãåºæ¬çã«PCä¸ã®Webãã©ã¦ã¶ä¸ã§åä½ããã½ãããã©ã³ã§æä½ããããã«è¨è¨ããã¦ãã¾ãã ãã¡ããåºå®é»è©±ãã¢ãã¤ã«ãã©ã³ã¸è»¢éããå½¢ã§ã®åçºä¿¡é話ãå¯è½ã§ãæ¥åãå©ç¨ã·ã¼ã³ã«ãã£ã¦ã¯æå¹ãªã®ã§ããã â¦
ã¯ããã« ããã«ã¡ã¯ãããã¼ã¸ããµã¼ãã¹é¨ã®ç¦ç°ã§ãã 以ä¸ããã°ã®å¾ç·¨ã«ãªãã¾ãã Amazon EventBridgeã«ããNew Relicã¸AWS Security Hubã®ã¤ãã³ãæ å ±ãéããã¨ãã§ããã®ã§ å®éã«ã©ã®ããã«å¯è¦åãããã®ãã«ã¤ãã¦ç´¹ä»ãã¾ãã blog.serverworkâ¦
ããã«ã¡ã¯ãæ«å»£ã§ãã å æ¥ã®ä»¥ä¸ã¢ãããã¼ãã«ã¦ãAmazon CloudFront ã Lambda é¢æ° URL ãªãªã¸ã³ã®ãªãªã¸ã³ã¢ã¯ã»ã¹ã³ã³ããã¼ã« (OAC) ããµãã¼ãããããã«ãªãã¾ããã aws.amazon.com ããããã°é¢æ° URL ã«ã¤ãã¦ã¯ãã¡ãã®ããã°ã«ã¦èª¬æãæ¤è¨¼â¦
ããã«ã¡ã¯ï¼ã¨ã³ã¿ã¼ãã©ã¤ãºã¯ã©ã¦ãé¨ã¯ã©ã¦ãã³ã³ãµã«ãã£ã³ã°èª²ã®æ¥é«ã§ãã ããç§ã®ãã¨ãå°ãã§ãç¥ãããã¨æã£ã¦ããã ãããªããç§ã®å¾è¼©ãæ¸ãã¦ããã以ä¸ã®ããã°ãè¦ãã¦ã¿ã¦ãã ããã sabawaku.serverworks.co.jp ä»åã¯ãEC2 Instance Conâ¦
ã¨ã³ã¿ã¼ãã©ã¤ãºã¯ã©ã¦ãé¨ã®å±±ä¸(ç¥)ã§ããä»åã¯ãIAM Access Analyzer ã®åæçµæããAWS CLI ã§CSVåºåãã¦ã¿ããã¨æãã¾ãã IAM Access Analyzer ã¨ã¯ ããã¸ã¡ã³ãã³ã³ã½ã¼ã«ã®ã¨ã¯ã¹ãã¼ãã§ã¯ãJSONããã¨ã¯ã¹ãã¼ãã§ããªã å®è¡ã³ãã³ã ã³ãã³â¦
ã¨ã³ã¿ã¼ãã©ã¤ãºã¯ã©ã¦ãé¨ã®å±±ä¸(ç¥)ã§ãã å æ¥ã社å ã®ã¡ã³ãã¼ã¨AWS BuilderCards ããã¬ã¤ãã¾ããã ç§ã¯ãåãã¬ã¤ã¤ã¼ãä½æããã¢ã¼ããã¯ãã£ãæå¹ããã¸ã£ãã¸ãããã¬ãã§ãªã¼ãä»°ãã¤ããã¾ããã ãã®æã®æ§åã¯ãè¿æ¥ä¸ã«å¼ç¤¾YouTubeãã£ã³â¦
ã¯ããã« åæ èµ·ãã£ãã㨠åå åé¿ç 1. poetryã使ç¨ãã 2. requirements.txtã使ç¨ãã éçºç°å¢ã§ã¯Pipfileã使ç¨ãã¤ã¤ãããã±ã¼ã¸ã³ã°ã«ã¯requirements.txtã使ããã¿ã¼ã³ 3. ã«ã¹ã¿ã Dockerã¤ã¡ã¼ã¸ã使ç¨ãã æå¾ã« ã¯ããã« ã¢ããªã±ã¼ã·ã§ã³â¦
ããã«ã¡ã¯ãEnterprise Cloudé¨ ã½ãªã¥ã¼ã·ã§ã³ã¢ã¼ããã¯ã1課 宮形 ã§ãã 4æããã¬ãã¡ã³ãã¯ã©ã¦ãã®BLOGè¨äºãæ¸ãå§ãã¾ããããå¿æ´ããã ããæå¿ã®æ¹ã«ã¢ã¤ãã£ããç»åãä½ã£ã¦ããã ãã¾ãããã¨ã¦ããããããä»åãããã¡ãç»åãå©ç¨ããã¦â¦
ããã«ã¡ã¯ï¼ã¤ã¼ã´ãªã§ãã ãã©ããªç®çã§ãã£ã¦ããã¾ãèããã«ACM証ææ¸ã使ãã°ããã®ã§ã¯ï¼ãããAWSã§å¤é¨ã®è¨¼ææ¸ã使ãããããï¼ç¨®é¡ï¼DV/OV/EVï¼ã®ã©ããé¸ã¹ã°ãããåãããªããã¨æãæ¹ãããããããªãã®ã§ãAWSã§ä½¿ãã証ææ¸ãç´¹ä»ãããâ¦
ããã¼ã¸ããµã¼ãã¹é¨ ä½ç«¹ã§ããæ¬ããã°ã§ã¯ãSavings Plans ã®è³¼å ¥å¾ã«å¿ããã«è¨å®ããã3ã¤ã®éç¥åã³ç£è¦è¨å®ã«ã¤ãã¦è¨è¼ãã¦ãã¾ããã¾ãã³ã¹ãç°å¸¸æ¤åºã¨ã®é¢é£æ§ãããã«ãã¢ã«ã¦ã³ãç°å¢ãåæã¨ããè¨å®å¯¾è±¡ã«ã¤ãã¦ãè¨è¼ãã¾ãããæ¯éããã3â¦
ã¨ã³ã¿ã¼ãã©ã¤ãºã¯ã©ã¦ãé¨ã®å±±ä¸(ç¥)ã§ãã ç§äºã§å¤§å¤æ縮ã§ãããæ¬æ¥5æ12æ¥ã¯ç§ã®èªçæ¥ã§ããçæ§ãèªçæ¥ã¯ã©ã®ããã«éãããã¾ãã§ããããã 家æãæ人ã»å人ã¨ä¸ç·ã«ãç¥ããããããã¬ã¼ã³ããè²·ãã«è¡ã£ããâ¦ãè²ã ãªéããæ¹ãããã¨ã¯æãâ¦
ã¨ã³ã¿ã¼ãã©ã¤ãºã¯ã©ã¦ãé¨ã®å±±ä¸(ç¥)ã§ãã ä»åã¯ãAWS Config Rulesï¼ä»¥ä¸ãConfigã«ã¼ã«ï¼ã§ä¸å®æéå©ç¨ã®ç¡ãIAMã¦ã¼ã¶ã¼ãæ¤ç¥ãã修復ã¢ã¯ã·ã§ã³ã§AWSDenyAllããªã·ã¼ãã¢ã¿ããï¼ç®¡çè ã¸ã®ã¡ã¼ã«éç¥ãè¡ã£ã¦ã¿ããã¨æãã¾ãã ã¾ããCloudFormaâ¦
ã¯ããã« æ¬ããã°ã§ã¯Amazon ECS on AWS Fargateï¼ä»¥ä¸ãECS on Fargateï¼ã®ã¹ã±ã¼ãªã³ã°ããªã·ã¼ãå®éã«åããã¦ç解ãã¾ã ã¯ããã« ECS on Fargateã®ã¹ã±ã¼ãªã³ã°ããªã·ã¼ã¨ã¯ åæ æ§æ æ§æå³ ããã㤠ãããã¤æé ãã¡ã¤ã«ï¼lib/my_ecs_construct-â¦
åãã¾ãã¦24åã®æ°åã®æ± ä¸ã§ããä»åã¯åãã¦ããã°ã®è¨äºãæ稿ããã®ã§ãç¾å¨åå¼·ãã¦ããAWSèªå®AWS Certified Cloud Practitionerï¼ã¯ã©ã¦ããã©ã¯ãã£ã·ã§ãã¼ãã¼ã¸ã§ã³ã¯CLF-002ï¼ã®åå¼·ã§ç§èªèº«ãééããé¨åãã¤ã¾ã¥ããé¨åãèå³ãæã£ã¦å¦ç¿â¦
ãµã¼ãã¹éçºèª²ã®ããã°ããã§ãã ä»å¹´ããã¯ããã©ã´ã³ã¯ã¨ã¹ã ã¢ã¤ã©ã³ãã«è¡ãããã§ãã AMI ã®å ´å ä½ææ¥ï¼CreationDateï¼ã2024å¹´1æ1æ¥ã®AMIããã£ãã¨ãã¾ãããã®AMIã2024å¹´4æ1æ¥ã«ã³ãã¼ãã¾ãã ãã¦ãã³ãã¼ãã¦åºæ¥ãAMIã®ä½ææ¥ã¯ä½æ¥ã«â¦
ã¯ããã« ããã«ã¡ã¯ãã¨ã³ã¿ã¼ãã©ã¤ãºã¯ã©ã¦ãé¨ã®èæ±ã§ãã ä»å㯠Organizations ç°å¢ã§ããã©ã«ãã»ãã¥ãªãã£ã°ã«ã¼ãã®ã«ã¼ã«ãèªåçã«ç¡å¹åããæ¹æ³ã«ã¤ãã¦è¨è¼ãã¾ãã ã¯ãã㫠対象èªè ããã©ã«ãã»ãã¥ãªãã£ã°ã«ã¼ãã¨ã¯ï¼ ããã©ã«ãã»ãâ¦
ã¯ããã« ãããã ã¯ããã« ã®ãã¿ããªããªã£ã¦ãã¾ããããçµãåºãã¦ã¿ããã¨æãã¾ãã æ¥ã¨ãããã¨ã§ãå ¥å¦ã®å£ç¯ã§ãããæã家ã®åä¾ãæ°ããªå¦æ ¡ã«å ¥å¦ã¨ãããã¨ã§ãããããããã¨å¤§æ ã¦ã§æºåãã¦ã¾ããã èªåã®åã£ã¦æããããã®ããã®ãªã®ãªâ¦
ã¯ããã« åæ ããæ¥ã®ã㨠ã°ã°ã£ã¦ã¿ã botocoreãboto3 ã®ãã¼ã¸ã§ã³ã確èªãã¦ã¿ã å¾ã ã«æ ¸å¿ã« ãªããã¼ã¸ã§ã³ç«¶åãçºçããã®ã åå ã¾ã¨ã å¯¾å¿ ãããã« ã¯ããã« ãµã¼ãã¼ã¯ã¼ã¯ã¹ã®å®®æ¬ã§ããä»åã¯æ¬çªéç¨ãã¦ãã AWS Lambda é¢æ°ãä½ãå¤æ´â¦
ããã«ã¡ã¯ããã¯ãã«ã«ãµãã¼ã課ã®èå·ã§ãã AWS å ¬å¼ã® Workshop ã® L ãã«ã試ããæã«æ©ãã ç¹ãããã¾ããã®ã§å ±æã¨ãªãã¾ãã 該å½ã® Workshop ã¯ä»¥ä¸ã¨ãªãã¾ãã core2-for-aws-iot-kit.m5stack.com M5Stack Core2 for AWS èªä½ã®ç´¹ä»ã«ã¤ãã¦ã¯â¦
ã¯ããã« ããã«ã¡ã¯ãããã¼ã¸ããµã¼ãã¹é¨ã®ç¦ç°ã§ãã ã»ãã¥ãªãã£ã¯ãæè¡çãªç°å¢ãæ¥ã é²åããä¸ã§ã常ã«æåç·ã§å¯¾å¿ããªããã°ãªããªãéè¦ãªåéã§ãã ãã®ããã°ã§ã¯ãAWS Security Hubã¨Amazon EventBridgeã使ç¨ãã¦ãã»ãã¥ãªãã£ã¤ãã³ãæ â¦
New Relicã®ã¤ã³ã¹ãã¼ã«ã³ãã³ãã使ç¨ãã¦ãPowershellã§ã©ã®ãããªå¦çããã¦ããã解説ãã¾ãã
ããã«ã¡ã¯ãããã¼ã¸ããµã¼ãã¹é¨ 大åã§ãã ãªãã¼ã¹ãããã·ï¼ä»åã®å ´ånginxï¼ã®ãã°ãNew Relic Logsã«é£æºãã¦è¦ããåãã¦ã¿ã¾ãã New Relic APMãå ¥ãããããã©ã«ãã§ãã°ãèªå転éãããã®ã§ä¾¿å©ã§ããAPMã対å¿ãã¦ããè¨èªã§ããã°APMãå ¥ãâ¦
ã¨ã³ã¿ã¼ãã©ã¤ãºã¯ã©ã¦ãé¨ã®å±±ä¸(ç¥)ã§ãã AWS Network Firewallï¼ä»¥ä¸ãNFWï¼ã§ãç¹å®ã¡ã¼ã«ã¢ãã¬ã¹å®ã¦ã®SMTPéä¿¡ã®ã¿è¨±å¯ãããããªå¶å¾¡ãå¯è½ãã調æ»ãè¡ãã¾ããã è²ã 試è¡é¯èª¤ãã¾ãããä¸æããããªãããAWSãµãã¼ãã¸ã®åãåãããè¡ã£ãã¨â¦