ã¿ãã§ã.
ChatOps ãµã¼ãã¹ã® AWS Chatbot ãä¸è¬å©ç¨éå§ããã¾ãã.Amazon Chime ã Slack ã¸ä»ãµã¼ãã¹ããã®éç¥ã¡ãã»ã¼ã¸ã Lambda çã§å¦çããæéãä¸è¦ã§ã¡ãã»ã¼ã¸ãæé©åããã¦ãããã楽ã ãªã¨ãã¼ã¿æéä¸ã«æãã¾ãã.ãã®è¨äºã§ Chatbot ãã©ããªéç¥ãåãåããããæ´çãã¾ã.ããã¦,ãã1ã¤ã®ç¹å¾´ã§ãã Slack ããã®ã³ãã³ãå®è¡ãç´¹ä»ã㦠Chatbot ãå©ç¨æ¤è¨ããã¦ãã人ã®åèã«ãªãã°å¬ããã§ã.
Chatbot ã¨ä»ã®ãµã¼ãã¹ã¨ã®é£æº
Chatbot ã¯ããã¥ã¡ã³ãã«è¨è¼ã®ããã« SNS ãã¿ã¼ã²ããã«ãã¦ä»ãµã¼ãã¹ã®ã¤ãã³ããéç¥ã Amazon Chime ããã㯠Slack ã§åãåããããã«ãªãã¾ã.
éç¥ã®ã¤ã¡ã¼ã¸ aws.amazon.com
ã³ã¹ã管ç
AWS ã®ã³ã¹ã管ç㧠AWS Budgets ã®ã¢ã©ã¼ãã Chatbot ã¸ã®é£æºã§ãã¾ã.ã¡ã¼ã«ã§è¦ãããã Slack çã§è¦ãããã«ããã¨æ¥½ã§ããã.AWS Budgets é£æºã¤ã¡ã¼ã¸ã¨ãã¦å ¬å¼ããã°ã«è¼ã£ã¦ãã¾ãã,äºç®ã«å¯¾ããå©ç¨ç¶æ³ãã¢ã©ã¼ãéç¥ãã¦ããã¾ã.
éçºãã¼ã« ã®éç¥
CloudFormation ã®éç¥ã¯ã¹ã¿ãã¯ã®å®è¡ã¹ãã¼ã¿ã¹ãä½æãéå§ããæã¨å®äºããæã§éç¥ãã¦ããã¾ã.ç»åã¯ã¹ã¿ãã¯ã®ä½æãæåããæã®ãã®ã§ã.ãã®ä»ã« CodeCommit/CodeBuild/CodeDeploy/CodePipeline ã®éç¥ãéä¿¡å¯è½ã§ã.
CloudWatch ã¢ã©ã¼ã
CloudWatch ã¢ã©ã¼ã ã®éç¥ãå¯è½ãªã®ã§ AWS ãªã½ã¼ã¹ã®ç£è¦ã¢ã©ã¼ããéç¥ãã¦ã¿ã¾ãã.ç»å㯠EC2 ã® CPU 使ç¨çã60%ãè¶ ããå ´åã®ã¢ã©ã¼ãã§ãã,ã¡ããªã¯ã¹ã®ç»åã§ç¶æ³ã示ãã¦ããã¦ãã¦ããããããã§ã.
CloudWatch ã¤ãã³ãã§ã®è¨å®
CloudWatch ã¤ãã³ãã«ã¼ã«ã§è¨å®ãã対å¿ããä»ãµã¼ãã¹ã®éç¥ã Chatbot ã«çµ±åå¯è½ã§ã.
Config ããã®éç¥
AWS Config ã®å¤æ´å±¥æ´ã«é¢ããã¤ãã³ããéç¥ã§ãã¾ã.ãªã½ã¼ã¹ã®å¤æ´ããã£ãæã¹ãã¼ãã£ã¼ãªæç¥ãã§ããããã«ãªãããã§ã.
GuardDuty ããã®éç¥
GuardDuty ã®ã»ãã¥ãªãã£è å¨ã¤ãã³ããéç¥ã§ãã¾ã.
PHD ããã®éç¥
Personal Health Dashboard ã®éç¥ã¯ä»¥åè¨äºã§ãç´¹ä»ãã¾ããã,å½±é¿ãåãããªã½ã¼ã¹ãéç¥ãã¦ããã¾ã.
SecurityHub ããã®éç¥
SecurityHub ããã®ã»ãã¥ãªãã£ãã§ãã¯çµæãéç¥ããã®ãç»åã®ãã®ã§ã.
Systems Manager ããã®éç¥
Systems Manager ã®ã¤ãã³ããéç¥ãçµ±åã§ãã¾ã.ç»å㯠RunCommand ã®å®è¡çµæãéç¥ããä¾ã§ã.
Slack ãã AWS CLI ã³ãã³ããå®è¡
Chatbot ã¯éç¥ãåãåãã ãã§ãªã Slack ãã AWS CLI ã³ãã³ããå®è¡ã§ãã¾ã.Chatbot ã«ã¢ã¿ãããã IAM ãã¼ã«ã«ã³ãã³ãå®è¡ã«å¿ è¦ãªããªã·ã¼ãé©ç¨ãã¾ã.ä»åã¯ããã¥ã¡ã³ãã«è¨è¼ã®ããåç §ã®æ¨©éãä»ä¸ãã¾ãã.
{ "Version": "2012-10-17", "Statement": [ { "Effect": "Deny", "Action": [ "iam:*", "kms:*", "sts:*", "cognito-idp:GetSigningCertificate", "ec2:GetPasswordData", "ecr:GetAuthorizationToken", "gamelift:RequestUploadCredentials", "gamelift:GetInstanceAccess", "lightsail:DownloadDefaultKeyPair", "lightsail:GetInstanceAccessDetail", "lightsail:GetKeyPair", "lightsail:GetKeyPairs", "redshift:GetClusterCredentials", "s3:GetBucketPolicy", "storagegateway:DescribeChapCredentials" ], "Resource": [ "*" ] } ] }
è¤æ°ã¢ã«ã¦ã³ãã§è¨å®ããã¦ããå ´å,@aws set default-account
ã§åãæ¿ãã¦ããå®è¡ãã¦ããã¾ã.
試ãã« CloudWatch ã®ã¢ã©ã¼ã ä¸è¦§ã@aws cloudwatch describe-alarms
ã§åºåã§ãã¾ã.
ä»ã«ã Lambda ãå®è¡ããã,CloudWatch Logs ã®ç¢ºèªãããã¥ã¡ã³ãã§ç´¹ä»ããã¦ãã¾ãã®ã§,éç¨ä¸ã®ã·ã¹ãã ã§ã¢ã©ã¼ããåºãã®ã確èªã㦠Slack ããç¶æ³ã確èªããã¨ããã¢ããã¼ããä»å¾ã§ãã¾ãã®ã§æ´»ç¨ãã¦ããããã¨æãã¾ã.
ã¾ã¨ã
Chatbot ã®éç¥ã§ãããµã¼ãã¹ãæ´çãã¾ãã.Slack ãæ¥åã§ä½¿ã£ã¦ããäºä¾ãå¤ãèãããæ¥åã¨ã®è¦ªåæ§ãé«ã Chatbot ãæ´»ç¨ãã¦ãã£ãããã AWS ãããã«ä½¿ãããªãã¦ããã¾ããã!