SlideShare a Scribd company logo
1 of 45
Revolutionising Cloud Operations

With AWS Config, AWS CloudTrail and AWS CloudWatch

Matt House, Solutions Architect
Amazon Web Services
Business
101 Technical
201 Technical
301 Technical
401 Technical
Session Grading
Where are we today?
Where are we today?
“The cloud has become the new normal”

Andy Jassy : AWS Senior Vice President 



“Everything’s changed, yet
nothing’s different”

AWS whitepaper: Architecting for the cloud: Best Practices
Revolutionising cloud operations
Agenda for today
• Common “Cloud” Conversations
• Operational Checklist for AWS
• Demo 1 from Ops checklist (monitoring)
• Demo 2 from Ops checklist (auditing)
• Demo 3 from Ops checklist (config
management)
• Summary
Common Cloud Conversations
With AWS Partners: Services teams
My customers are demanding increased agility and
visibility in their contract. How do I move to a cloud
services business?
With AWS Customers: Operations teams
The developers in my business are using AWS to
deliver results fast, how can I use AWS to deliver
what the business wants from me equally fast?
What drives these conversations?
We
Can
Help
Fix
This!
What drives these conversations?
OPSDEV
Outcomes of these conversations
Transformation
DEVOPS
OLD NEW
Bi-Modal
Do more…
With more
Resources for AWS customers
• AWS Developer Guides
• AWS White Papers
• AWS Reference Architectures
• AWS Official Blog (Jeff Barr)
• Presentations from this summit
and re:Invent
• Operational Checklists for AWS
Operational Checklists for AWS
Tools to help Operations teams…
“Operational Checklists for AWS”
Basic Operations Checklist
Enterprise Operations Checklist
Auditing and Security Checklist
Demo #1 Monitoring and Incident Management
From the Enterprise Operations
Checklist
“Has your organization instrumented appropriate
monitoring tools and integrated your AWS resources
into its incident management processes?”
Monitoring & Incident Management (CloudWatch)
What is Continuous Integration – Continuous Delivery
Waterfall: Deploy to production once a Quarter?
Agile Sprint : Deploy to production once a Month?
CI/CD: Deploy code to production once an Hour?!
Write Code +
check in
Automated
build
Automated
test
Automated
deploy
Live in
production
CI/CD deploy
into AWS
Capture
Activity with
AWS
CloudWatch
Monitor in
CloudWatch
dashboard
Alert and
report on that
activity
Monitoring & Incident Management (CloudWatch)
Monitoring & incident Management (CloudWatch)
Write Code
+ check in
Automated
build
Automated
test
Automated
deploy
Blue/Green
live in
production
CI/CD deploy
into AWS
Blue is production –
100% load
Green is standby –
0% load
Monitoring & incident Management (CloudWatch)
LIVE
PRODUCTION
CI/CD deploy
into AWS
CI/CD toolchain
deploys new code to
green
Monitoring & incident Management (CloudWatch)
LIVE
PRODUCTION
Blue is production –
100% load
Green is standby –
0% load
CI/CD deploy
into AWS
PaaS flips DNS
Green is production –
100% load
Blue is standby – 0% load
Monitoring & incident Management (CloudWatch)
LIVE
PRODUCTION
WHERE DID
THIS GO?
CI/CD toolchain deploys new
code to green
Blue is production – 100% load
Green is standby – 0% load
AWS CloudWatch:
• Monitoring service for AWS
• Collect and track metrics
• Collect and monitor log files
• Set alarms
Available in all public regions
5 minute resolution = No Additional Charge
1 minute resolution = $3.50 per month
Capture
Activity with
AWS
CloudWatch
Monitoring & incident Management (CloudWatch)
AWS CloudWatch dashboard
• View the information CloudWatch collects
• Draw graphs
• Set Thresholds
• Send Alerts
Available in all public regions
Typically $3/month for log storage on S3
Monitor that
in
Cloudwatch
dashboard
Monitoring & incident Management (CloudWatch)
Simple Notification Service
• Fully managed push messaging service
• Send individual messages
• Send bulk messages
• E-mail, txt, google, apple, winpho, fireOS
Available in all public regions
$1 to send 1,000,000 notifications
Alert and
report on that
Activity
Monitoring & incident Management (CloudWatch)
Demo #1 Run the Demo
Demo #1 Monitoring and Incident Management
Demo #2 Security Logging and Monitoring
From the Audit Security Checklist
“Are your organisation’s systems residing on
AWS logged and monitored?”
AWS Shared Responsibility Model
Security Logging and Monitoring (CloudTrail)
CI/CD deploy
into AWS
Everything is
an API call
Log
everything
with
CloudTrail
CloudTrail
and
CloudWatch
Logs
Security Logging and Monitoring (CloudTrail)
CI/CD deploy
into AWS
Who made these
changes?
When did they make
them?
On Whose Authority?
How is this recorded?
Security Logging and Monitoring (CloudTrail)
Your infrastructure is code
Operations are as much a part of the dev
process as anything else
Everything is an API call
You can log all the API callsEverything is
an API call
Security Logging and Monitoring (CloudTrail)
AWS CloudTrail
• History of AWS API calls
• AWS Management Console,
• AWS SDKs,
• Command line tools,
• Other AWS services
Available in all public regions
CloudTrail = No additional charge
Typically $3/month for log storage on S3
Log all API
calls with
CloudTrail
Security Logging and Monitoring (CloudTrail)
CloudTrail
and
CloudWatch
Logs
Security Logging and Monitoring (CloudTrail)
CloudWatch Logs
• An API call is an event
• Everything is an API call…
Demo #2 Run the Demo
Demo #3 Security Logging and Monitoring
Demo #3 Configuration and Change Management
From the Enterprise Operations
Checklist
“Does your organization have a configuration
and change management strategy for its AWS
resources?”
Config and Change Management (AWS Config)
CI/CD deploy
into AWS
Capture
changes with
AWS Config
Look at
Config
timeline
Output to
durable
storage
CI/CD deploy
into AWS
Config and Change Management (AWS Config)
How did our AWS
resources look before?
What changed?
How do they look now?
How have the
relationships changed?
AWS Config
• Fully managed service
• AWS resource inventory
• Configuration history
• Configuration change notifications
Available in all public regions
$.003 per configuration item recorded
Capture
changes with
AWS Config
Config and Change Management (AWS Config)
AWS Config console
• View AWS Config information
• Current and historical
• Current configuration, historical timeline of
configurations
• Current relationships, historical timeline of
relationships
Available in all public regions
No additional charge
Look at
Config
timeline
Config and Change Management (AWS Config)
AWS S3
• Object Storage
• Secure
• Durable
• Highly Scalable
Available in all public regions
Free usage tier = 5GB
$0.03 per Gigabyte
Output to
durable
storage
Config and Change Management (AWS Config)
Demo #3 Run the Demo
Demo #3 Config and Change Management
APN Technology Partners
Summary
• The business demands more
• The cloud is the new normal
• Cloud allows you to exceed expectations
• Do more… with more
• AWS CloudWatch
• AWS CloudTrail
• AWS Config
What to do next
1. Download the Operational Checklists for AWS
2. Embrace the new normal and benefit
3. Use CloudWatch, CloudTrail, AWS Config
Revolutionising Cloud Operations with AWS Config, AWS CloudTrail and AWS Cloudwatch – Matt House

More Related Content

What's hot

AWS Enterprise Summit London 2013 - Stuart Lynn - Sage
AWS Enterprise Summit London 2013 - Stuart Lynn - SageAWS Enterprise Summit London 2013 - Stuart Lynn - Sage
AWS Enterprise Summit London 2013 - Stuart Lynn - Sage
Amazon Web Services
 
AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...
AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...
AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...
Amazon Web Services
 
Best Practices in Planning a Large-Scale Migration to AWS - May 2017 AWS Onli...
Best Practices in Planning a Large-Scale Migration to AWS - May 2017 AWS Onli...Best Practices in Planning a Large-Scale Migration to AWS - May 2017 AWS Onli...
Best Practices in Planning a Large-Scale Migration to AWS - May 2017 AWS Onli...
Amazon Web Services
 

What's hot (20)

Cloud watchingwithcloudwatch
Cloud watchingwithcloudwatchCloud watchingwithcloudwatch
Cloud watchingwithcloudwatch
 
(SDD420) Amazon WorkSpaces: Advanced Topics and Deep Dive | AWS re:Invent 2014
(SDD420) Amazon WorkSpaces: Advanced Topics and Deep Dive | AWS re:Invent 2014(SDD420) Amazon WorkSpaces: Advanced Topics and Deep Dive | AWS re:Invent 2014
(SDD420) Amazon WorkSpaces: Advanced Topics and Deep Dive | AWS re:Invent 2014
 
AWS Enterprise Summit London 2013 - Stuart Lynn - Sage
AWS Enterprise Summit London 2013 - Stuart Lynn - SageAWS Enterprise Summit London 2013 - Stuart Lynn - Sage
AWS Enterprise Summit London 2013 - Stuart Lynn - Sage
 
Basics of cloud computing ( aws )
Basics of cloud computing ( aws )Basics of cloud computing ( aws )
Basics of cloud computing ( aws )
 
AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...
AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...
AWS re:Invent 2016: Deploying Amazon WorkSpaces at Enterprise Scale to Delive...
 
Best Practices in Planning a Large-Scale Migration to AWS - May 2017 AWS Onli...
Best Practices in Planning a Large-Scale Migration to AWS - May 2017 AWS Onli...Best Practices in Planning a Large-Scale Migration to AWS - May 2017 AWS Onli...
Best Practices in Planning a Large-Scale Migration to AWS - May 2017 AWS Onli...
 
How to Find and Fix Waste to Optimize Your Cloud Spend
How to Find and Fix Waste to Optimize Your Cloud SpendHow to Find and Fix Waste to Optimize Your Cloud Spend
How to Find and Fix Waste to Optimize Your Cloud Spend
 
DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...
DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...
DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...
 
How MSPs Can Be Successful in AWS, Azure, and Google Clouds
How MSPs Can Be Successful in AWS, Azure, and Google CloudsHow MSPs Can Be Successful in AWS, Azure, and Google Clouds
How MSPs Can Be Successful in AWS, Azure, and Google Clouds
 
AWS re:Invent 2016: Saving at Scale with Reserved Instances (ENT307)
AWS re:Invent 2016: Saving at Scale with Reserved Instances (ENT307)AWS re:Invent 2016: Saving at Scale with Reserved Instances (ENT307)
AWS re:Invent 2016: Saving at Scale with Reserved Instances (ENT307)
 
AWS Sydney Summit 2013 - Architecting for High Availability
AWS Sydney Summit 2013 - Architecting for High AvailabilityAWS Sydney Summit 2013 - Architecting for High Availability
AWS Sydney Summit 2013 - Architecting for High Availability
 
Creating a Culture of Cost Management in Your Organization – J.R. Storment, C...
Creating a Culture of Cost Management in Your Organization – J.R. Storment, C...Creating a Culture of Cost Management in Your Organization – J.R. Storment, C...
Creating a Culture of Cost Management in Your Organization – J.R. Storment, C...
 
Start your datacentre transformation journey with azure migrate
Start your datacentre transformation journey with azure migrateStart your datacentre transformation journey with azure migrate
Start your datacentre transformation journey with azure migrate
 
Easy Analytics with AWS - AWS Summit Bahrain 2017
Easy Analytics with AWS - AWS Summit Bahrain 2017Easy Analytics with AWS - AWS Summit Bahrain 2017
Easy Analytics with AWS - AWS Summit Bahrain 2017
 
Top 10 Cloud Trends for 2018 and Actions You Can Take Now
Top 10 Cloud Trends for 2018 and Actions You Can Take NowTop 10 Cloud Trends for 2018 and Actions You Can Take Now
Top 10 Cloud Trends for 2018 and Actions You Can Take Now
 
Cloud Migration and Portability (with and without Containers)
Cloud Migration and Portability (with and without Containers)Cloud Migration and Portability (with and without Containers)
Cloud Migration and Portability (with and without Containers)
 
Webinar Development & Test
Webinar Development & TestWebinar Development & Test
Webinar Development & Test
 
Cost Optimisation on AWS
Cost Optimisation on AWSCost Optimisation on AWS
Cost Optimisation on AWS
 
AWS Summit Berlin 2013 - Big Data Analytics
AWS Summit Berlin 2013 - Big Data AnalyticsAWS Summit Berlin 2013 - Big Data Analytics
AWS Summit Berlin 2013 - Big Data Analytics
 
Cloud Economics and calculating CTO - AWSome Day Zurich 112016
Cloud Economics and calculating CTO - AWSome Day Zurich 112016Cloud Economics and calculating CTO - AWSome Day Zurich 112016
Cloud Economics and calculating CTO - AWSome Day Zurich 112016
 

Viewers also liked

Viewers also liked (20)

Transparency and Control with AWS CloudTrail and AWS Config
Transparency and Control with AWS CloudTrail and AWS ConfigTransparency and Control with AWS CloudTrail and AWS Config
Transparency and Control with AWS CloudTrail and AWS Config
 
Automating your Infrastructure Deployment with CloudFormation and OpsWorks –...
 Automating your Infrastructure Deployment with CloudFormation and OpsWorks –... Automating your Infrastructure Deployment with CloudFormation and OpsWorks –...
Automating your Infrastructure Deployment with CloudFormation and OpsWorks –...
 
Using Security To Build With Confidence in AWS – Justin Foster, Director of P...
Using Security To Build With Confidence in AWS – Justin Foster, Director of P...Using Security To Build With Confidence in AWS – Justin Foster, Director of P...
Using Security To Build With Confidence in AWS – Justin Foster, Director of P...
 
AWS Innovation at Scale – Rodney Haywood
AWS Innovation at Scale – Rodney HaywoodAWS Innovation at Scale – Rodney Haywood
AWS Innovation at Scale – Rodney Haywood
 
Your First Hour on AWS: Building the Foundation for Large Scale AWS Adoption ...
Your First Hour on AWS: Building the Foundation for Large Scale AWS Adoption ...Your First Hour on AWS: Building the Foundation for Large Scale AWS Adoption ...
Your First Hour on AWS: Building the Foundation for Large Scale AWS Adoption ...
 
Common Application Architecture Patterns – Dan Zoltak
Common Application Architecture Patterns – Dan ZoltakCommon Application Architecture Patterns – Dan Zoltak
Common Application Architecture Patterns – Dan Zoltak
 
Automating Backup & Archiving with AWS and CommVault – Chris Gondek, Principa...
Automating Backup & Archiving with AWS and CommVault – Chris Gondek, Principa...Automating Backup & Archiving with AWS and CommVault – Chris Gondek, Principa...
Automating Backup & Archiving with AWS and CommVault – Chris Gondek, Principa...
 
Introduction to the AWS Cloud – Russell Hall
Introduction to the AWS Cloud – Russell HallIntroduction to the AWS Cloud – Russell Hall
Introduction to the AWS Cloud – Russell Hall
 
Drinking from the Fire Hose: The Jump to Real Time Analytics Session Sponsore...
Drinking from the Fire Hose: The Jump to Real Time Analytics Session Sponsore...Drinking from the Fire Hose: The Jump to Real Time Analytics Session Sponsore...
Drinking from the Fire Hose: The Jump to Real Time Analytics Session Sponsore...
 
Moving Enterprise Windows Workloads to AWS – Peter Stanski
Moving Enterprise Windows Workloads to AWS – Peter StanskiMoving Enterprise Windows Workloads to AWS – Peter Stanski
Moving Enterprise Windows Workloads to AWS – Peter Stanski
 
How to Accelerate the Adoption of AWS and Reduce Cost and Risk with a Data F...
 How to Accelerate the Adoption of AWS and Reduce Cost and Risk with a Data F... How to Accelerate the Adoption of AWS and Reduce Cost and Risk with a Data F...
How to Accelerate the Adoption of AWS and Reduce Cost and Risk with a Data F...
 
AWS Blackbelt NINJA Dojo – Dean Samuels
AWS Blackbelt NINJA Dojo – Dean SamuelsAWS Blackbelt NINJA Dojo – Dean Samuels
AWS Blackbelt NINJA Dojo – Dean Samuels
 
Modernising your Applications on AWS: AWS SDKs and Application Web Services –...
Modernising your Applications on AWS: AWS SDKs and Application Web Services –...Modernising your Applications on AWS: AWS SDKs and Application Web Services –...
Modernising your Applications on AWS: AWS SDKs and Application Web Services –...
 
Infrastructure as Code Continuous Integration: A Delivery Pipeline Journey Se...
Infrastructure as Code Continuous Integration: A Delivery Pipeline Journey Se...Infrastructure as Code Continuous Integration: A Delivery Pipeline Journey Se...
Infrastructure as Code Continuous Integration: A Delivery Pipeline Journey Se...
 
Cloudwatch: Monitoring your AWS services with Metrics and Alarms
Cloudwatch: Monitoring your AWS services with Metrics and AlarmsCloudwatch: Monitoring your AWS services with Metrics and Alarms
Cloudwatch: Monitoring your AWS services with Metrics and Alarms
 
Big Data and Analytics – End to End on AWS – Russell Nash
Big Data and Analytics – End to End on AWS – Russell NashBig Data and Analytics – End to End on AWS – Russell Nash
Big Data and Analytics – End to End on AWS – Russell Nash
 
RMG203 Cloud Infrastructure and Application Monitoring with Amazon CloudWatch...
RMG203 Cloud Infrastructure and Application Monitoring with Amazon CloudWatch...RMG203 Cloud Infrastructure and Application Monitoring with Amazon CloudWatch...
RMG203 Cloud Infrastructure and Application Monitoring with Amazon CloudWatch...
 
Managing Your Application Lifecycle on AWS: Continuous Integration and Deploy...
Managing Your Application Lifecycle on AWS: Continuous Integration and Deploy...Managing Your Application Lifecycle on AWS: Continuous Integration and Deploy...
Managing Your Application Lifecycle on AWS: Continuous Integration and Deploy...
 
Mobile Applications and The Internet of Things: AWS Lambda & AWS Cognito – Ad...
Mobile Applications and The Internet of Things: AWS Lambda & AWS Cognito – Ad...Mobile Applications and The Internet of Things: AWS Lambda & AWS Cognito – Ad...
Mobile Applications and The Internet of Things: AWS Lambda & AWS Cognito – Ad...
 
The trials and triumphs of re architecting for aws and implementing dev ops -...
The trials and triumphs of re architecting for aws and implementing dev ops -...The trials and triumphs of re architecting for aws and implementing dev ops -...
The trials and triumphs of re architecting for aws and implementing dev ops -...
 

Similar to Revolutionising Cloud Operations with AWS Config, AWS CloudTrail and AWS Cloudwatch – Matt House

Webinar aws 101 a walk through the aws cloud- introduction to cloud computi...
Webinar aws 101   a walk through the aws cloud- introduction to cloud computi...Webinar aws 101   a walk through the aws cloud- introduction to cloud computi...
Webinar aws 101 a walk through the aws cloud- introduction to cloud computi...
Amazon Web Services
 

Similar to Revolutionising Cloud Operations with AWS Config, AWS CloudTrail and AWS Cloudwatch – Matt House (20)

Improving Security Agility using DevSecOps
Improving Security Agility using DevSecOpsImproving Security Agility using DevSecOps
Improving Security Agility using DevSecOps
 
(ISM209) Acceleration of AWS Enterprise Adoption In GE
(ISM209) Acceleration of AWS Enterprise Adoption In GE(ISM209) Acceleration of AWS Enterprise Adoption In GE
(ISM209) Acceleration of AWS Enterprise Adoption In GE
 
AWS re:Invent 2016: Automating and Scaling Infrastructure Administration with...
AWS re:Invent 2016: Automating and Scaling Infrastructure Administration with...AWS re:Invent 2016: Automating and Scaling Infrastructure Administration with...
AWS re:Invent 2016: Automating and Scaling Infrastructure Administration with...
 
Webinar aws 101 a walk through the aws cloud- introduction to cloud computi...
Webinar aws 101   a walk through the aws cloud- introduction to cloud computi...Webinar aws 101   a walk through the aws cloud- introduction to cloud computi...
Webinar aws 101 a walk through the aws cloud- introduction to cloud computi...
 
Automated Compliance and Governance with AWS Config and AWS CloudTrail - June...
Automated Compliance and Governance with AWS Config and AWS CloudTrail - June...Automated Compliance and Governance with AWS Config and AWS CloudTrail - June...
Automated Compliance and Governance with AWS Config and AWS CloudTrail - June...
 
ENT302 Deep Dive on AWS Management Tools
ENT302 Deep Dive on AWS Management ToolsENT302 Deep Dive on AWS Management Tools
ENT302 Deep Dive on AWS Management Tools
 
Getting Started with AWS Security
 Getting Started with AWS Security Getting Started with AWS Security
Getting Started with AWS Security
 
ENT302 Deep Dive on AWS Management Tools
ENT302 Deep Dive on AWS Management Tools ENT302 Deep Dive on AWS Management Tools
ENT302 Deep Dive on AWS Management Tools
 
Amazon Web Services User Group Sydney - March 2018
Amazon Web Services User Group Sydney - March 2018Amazon Web Services User Group Sydney - March 2018
Amazon Web Services User Group Sydney - March 2018
 
Security Requires Visibility-Turn Data Into Security Insight
Security Requires Visibility-Turn Data Into Security InsightSecurity Requires Visibility-Turn Data Into Security Insight
Security Requires Visibility-Turn Data Into Security Insight
 
Devops on AWS
Devops on AWSDevops on AWS
Devops on AWS
 
WIN401_Migrating Microsoft Applications to AWS
WIN401_Migrating Microsoft Applications to AWSWIN401_Migrating Microsoft Applications to AWS
WIN401_Migrating Microsoft Applications to AWS
 
Using AWS CloudTrail and AWS Config to Enhance the Governance and Compliance ...
Using AWS CloudTrail and AWS Config to Enhance the Governance and Compliance ...Using AWS CloudTrail and AWS Config to Enhance the Governance and Compliance ...
Using AWS CloudTrail and AWS Config to Enhance the Governance and Compliance ...
 
How MediaMath Turbo-charged DevOps with AWS and CloudCheckr
How MediaMath Turbo-charged DevOps with AWS and CloudCheckrHow MediaMath Turbo-charged DevOps with AWS and CloudCheckr
How MediaMath Turbo-charged DevOps with AWS and CloudCheckr
 
Migración a la Nube: Preparación y Mejores Prácticas
Migración a la Nube: Preparación y Mejores PrácticasMigración a la Nube: Preparación y Mejores Prácticas
Migración a la Nube: Preparación y Mejores Prácticas
 
Benefits of Cloud Computing
Benefits of Cloud ComputingBenefits of Cloud Computing
Benefits of Cloud Computing
 
AWS Management Tools Deep Dive - DevDay Los Angeles 2017
AWS Management Tools Deep Dive - DevDay Los Angeles 2017AWS Management Tools Deep Dive - DevDay Los Angeles 2017
AWS Management Tools Deep Dive - DevDay Los Angeles 2017
 
Best of re:Invent 2016 meetup presentation
Best of re:Invent 2016 meetup presentationBest of re:Invent 2016 meetup presentation
Best of re:Invent 2016 meetup presentation
 
AWS re:Invent 2016: Born in the Cloud; Built Like a Startup (ARC205)
AWS re:Invent 2016: Born in the Cloud; Built Like a Startup (ARC205)AWS re:Invent 2016: Born in the Cloud; Built Like a Startup (ARC205)
AWS re:Invent 2016: Born in the Cloud; Built Like a Startup (ARC205)
 
Integrating-Cloud-Development-Security-And-Operations.pdf
Integrating-Cloud-Development-Security-And-Operations.pdfIntegrating-Cloud-Development-Security-And-Operations.pdf
Integrating-Cloud-Development-Security-And-Operations.pdf
 

More from Amazon Web Services

Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
Amazon Web Services
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
Amazon Web Services
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
Amazon Web Services
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
Amazon Web Services
 

More from Amazon Web Services (20)

Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
 
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS Fargate
 
Costruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSCostruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWS
 
Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot
 
Open banking as a service
Open banking as a serviceOpen banking as a service
Open banking as a service
 
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
 
Computer Vision con AWS
Computer Vision con AWSComputer Vision con AWS
Computer Vision con AWS
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatare
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e web
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
 
Fundraising Essentials
Fundraising EssentialsFundraising Essentials
Fundraising Essentials
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container Service
 

Recently uploaded

Recently uploaded (20)

HTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation StrategiesHTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation Strategies
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
Manulife - Insurer Innovation Award 2024
Manulife - Insurer Innovation Award 2024Manulife - Insurer Innovation Award 2024
Manulife - Insurer Innovation Award 2024
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 

Revolutionising Cloud Operations with AWS Config, AWS CloudTrail and AWS Cloudwatch – Matt House

  • 1. Revolutionising Cloud Operations
 With AWS Config, AWS CloudTrail and AWS CloudWatch
 Matt House, Solutions Architect Amazon Web Services
  • 2. Business 101 Technical 201 Technical 301 Technical 401 Technical Session Grading
  • 3. Where are we today?
  • 4. Where are we today?
  • 5. “The cloud has become the new normal”
 Andy Jassy : AWS Senior Vice President 
 
 “Everything’s changed, yet nothing’s different”
 AWS whitepaper: Architecting for the cloud: Best Practices Revolutionising cloud operations
  • 6. Agenda for today • Common “Cloud” Conversations • Operational Checklist for AWS • Demo 1 from Ops checklist (monitoring) • Demo 2 from Ops checklist (auditing) • Demo 3 from Ops checklist (config management) • Summary
  • 7. Common Cloud Conversations With AWS Partners: Services teams My customers are demanding increased agility and visibility in their contract. How do I move to a cloud services business? With AWS Customers: Operations teams The developers in my business are using AWS to deliver results fast, how can I use AWS to deliver what the business wants from me equally fast?
  • 8. What drives these conversations? We Can Help Fix This!
  • 9. What drives these conversations? OPSDEV
  • 10. Outcomes of these conversations Transformation DEVOPS OLD NEW Bi-Modal Do more… With more
  • 11. Resources for AWS customers • AWS Developer Guides • AWS White Papers • AWS Reference Architectures • AWS Official Blog (Jeff Barr) • Presentations from this summit and re:Invent • Operational Checklists for AWS
  • 12. Operational Checklists for AWS Tools to help Operations teams… “Operational Checklists for AWS” Basic Operations Checklist Enterprise Operations Checklist Auditing and Security Checklist
  • 13. Demo #1 Monitoring and Incident Management From the Enterprise Operations Checklist “Has your organization instrumented appropriate monitoring tools and integrated your AWS resources into its incident management processes?”
  • 14. Monitoring & Incident Management (CloudWatch) What is Continuous Integration – Continuous Delivery Waterfall: Deploy to production once a Quarter? Agile Sprint : Deploy to production once a Month? CI/CD: Deploy code to production once an Hour?! Write Code + check in Automated build Automated test Automated deploy Live in production
  • 15. CI/CD deploy into AWS Capture Activity with AWS CloudWatch Monitor in CloudWatch dashboard Alert and report on that activity Monitoring & Incident Management (CloudWatch)
  • 16. Monitoring & incident Management (CloudWatch) Write Code + check in Automated build Automated test Automated deploy Blue/Green live in production
  • 17. CI/CD deploy into AWS Blue is production – 100% load Green is standby – 0% load Monitoring & incident Management (CloudWatch) LIVE PRODUCTION
  • 18. CI/CD deploy into AWS CI/CD toolchain deploys new code to green Monitoring & incident Management (CloudWatch) LIVE PRODUCTION Blue is production – 100% load Green is standby – 0% load
  • 19. CI/CD deploy into AWS PaaS flips DNS Green is production – 100% load Blue is standby – 0% load Monitoring & incident Management (CloudWatch) LIVE PRODUCTION WHERE DID THIS GO? CI/CD toolchain deploys new code to green Blue is production – 100% load Green is standby – 0% load
  • 20. AWS CloudWatch: • Monitoring service for AWS • Collect and track metrics • Collect and monitor log files • Set alarms Available in all public regions 5 minute resolution = No Additional Charge 1 minute resolution = $3.50 per month Capture Activity with AWS CloudWatch Monitoring & incident Management (CloudWatch)
  • 21. AWS CloudWatch dashboard • View the information CloudWatch collects • Draw graphs • Set Thresholds • Send Alerts Available in all public regions Typically $3/month for log storage on S3 Monitor that in Cloudwatch dashboard Monitoring & incident Management (CloudWatch)
  • 22. Simple Notification Service • Fully managed push messaging service • Send individual messages • Send bulk messages • E-mail, txt, google, apple, winpho, fireOS Available in all public regions $1 to send 1,000,000 notifications Alert and report on that Activity Monitoring & incident Management (CloudWatch)
  • 23. Demo #1 Run the Demo
  • 24. Demo #1 Monitoring and Incident Management
  • 25. Demo #2 Security Logging and Monitoring From the Audit Security Checklist “Are your organisation’s systems residing on AWS logged and monitored?”
  • 26. AWS Shared Responsibility Model Security Logging and Monitoring (CloudTrail)
  • 27. CI/CD deploy into AWS Everything is an API call Log everything with CloudTrail CloudTrail and CloudWatch Logs Security Logging and Monitoring (CloudTrail)
  • 28. CI/CD deploy into AWS Who made these changes? When did they make them? On Whose Authority? How is this recorded? Security Logging and Monitoring (CloudTrail)
  • 29. Your infrastructure is code Operations are as much a part of the dev process as anything else Everything is an API call You can log all the API callsEverything is an API call Security Logging and Monitoring (CloudTrail)
  • 30. AWS CloudTrail • History of AWS API calls • AWS Management Console, • AWS SDKs, • Command line tools, • Other AWS services Available in all public regions CloudTrail = No additional charge Typically $3/month for log storage on S3 Log all API calls with CloudTrail Security Logging and Monitoring (CloudTrail)
  • 31. CloudTrail and CloudWatch Logs Security Logging and Monitoring (CloudTrail) CloudWatch Logs • An API call is an event • Everything is an API call…
  • 32. Demo #2 Run the Demo
  • 33. Demo #3 Security Logging and Monitoring
  • 34. Demo #3 Configuration and Change Management From the Enterprise Operations Checklist “Does your organization have a configuration and change management strategy for its AWS resources?”
  • 35. Config and Change Management (AWS Config) CI/CD deploy into AWS Capture changes with AWS Config Look at Config timeline Output to durable storage
  • 36. CI/CD deploy into AWS Config and Change Management (AWS Config) How did our AWS resources look before? What changed? How do they look now? How have the relationships changed?
  • 37. AWS Config • Fully managed service • AWS resource inventory • Configuration history • Configuration change notifications Available in all public regions $.003 per configuration item recorded Capture changes with AWS Config Config and Change Management (AWS Config)
  • 38. AWS Config console • View AWS Config information • Current and historical • Current configuration, historical timeline of configurations • Current relationships, historical timeline of relationships Available in all public regions No additional charge Look at Config timeline Config and Change Management (AWS Config)
  • 39. AWS S3 • Object Storage • Secure • Durable • Highly Scalable Available in all public regions Free usage tier = 5GB $0.03 per Gigabyte Output to durable storage Config and Change Management (AWS Config)
  • 40. Demo #3 Run the Demo
  • 41. Demo #3 Config and Change Management
  • 43. Summary • The business demands more • The cloud is the new normal • Cloud allows you to exceed expectations • Do more… with more • AWS CloudWatch • AWS CloudTrail • AWS Config
  • 44. What to do next 1. Download the Operational Checklists for AWS 2. Embrace the new normal and benefit 3. Use CloudWatch, CloudTrail, AWS Config