tcp.fm

The Smart Choice would have been to go back to the room – Ep 50


Listen Later

Sponsors:

  • Foghorn Consulting
  • Blue Medora
  • Your co-hosts are back from Thanksgiving and Re:Invent, and we’re running through all of it for you. In this episode, we cover the lead-up to opening day. Next week, we’ll release an episode fully devoted to Re:Invent coverage. 

    This week’s highlights

     

    • CloudWatch has been growing quietly into a much more robust tool with 11 updates since the last episode.
      • Attribute-based access control comes to AWS. This should allow a finer control over your security privileges.
        • CloudTrail Insights launches with machine learning to help you separate the signal from the noise in your user activity and API usage.
        •  

          Amazon EC2 introduces new API 

          We’re one step closer to actually paying for what we use with the announcement that EC2 T2 instances will support Unlimited Mode at the account level. If your workload is spread out among multiple accounts, this will be something you should look at. But if you’re looking for load balancer updates, there’s a new batch of those for you too. We especially like the Weighted Target Groups, which have been needed for blue/green deployments for a while now.

          Restores and Replicas

          Migrating to the cloud has gotten a bit easier with differential and log restores on RDS for SQL servers. Like a lot of the recent announcements, simplicity was highlighted in the announcement of increased availability of DynamoDB tables using global table replicas

          “It’ll only take a few clicks” makes it sound like Amazon thinks clicking things must be very taxing on us.

          Secrets and Cents

          CloudTrail Insights will alert you to unusual activity at a cost of 35 cents per 100,000 write management events analyzed. It’s hard to know yet whether how expensive that will end up being, but it sounds cheap. AWS Single Sign-On will connect to Azure AD, making it easier to migrate to Amazon, and AWS Secrets Manager will make it easier to rotate your secrets by handling it at the API level.

          AWS is moving from role-based to attribute-based access control and will be implementing Tag Policies to allow you to control the standardization of your tags. Implementing these should serve to become b

          ...more
          View all episodesView all episodes
          Download on the App Store

          tcp.fmBy Justin Brodley, Jonathan Baker, Ryan Lucas and Matt Kohn