Cloud Computing Ch8
Cloud Computing Ch8
1| P a g e Year 4
Semester 8
Amazon QuickSight: is a fast, cloud-powered business intelligence (BI) service
that makes it easy for you to deliver insights to everyone in your organization.
AWS Data Pipeline: is a web service that helps you reliably process and move
data between different AWS compute and storage services, as well as on-
premises data sources, at specified intervals.
AWS Glue: is a fully managed extract, transform, and load (ETL) service that
makes it easy for customers to prepare and load their data for analytics.
AWS Lake Formation: is a service that makes it easy to set up a secure data
lake in days.
Amazon Managed Streaming for Kafka (MSK): is a fully managed service that
makes it easy for you to build and run applications that use Apache Kafka to
process streaming data.
Application Services
Tracking Software Licenses with AWS Service Catalog and AWS Step Functions
This solution uses the following AWS services:
AWS Service Catalog
AWS Lambda
AWS Step Functions
AWS CloudFormation
Amazon DynamoDB
Amazon SES
Secure Serverless Development Using AWS Service Catalog
How to secure infrequently used EC2 instances with AWS Systems Manager
How Cloudticity Automates Security Patches for Linux and Windows using
Amazon EC2 Systems Manager and AWS Step Functions
Cloud Security
The following security requirements limit the threats if we achieve that
requirement than we can say our data is safe on cloud:
Identity management
Physical security
Personnel security
Privacy
Confidentiality
Access controllability
Integrity
CloudWatch
2| P a g e Year 4
Semester 8
Amazon CloudWatch is a monitoring service for AWS cloud resources and the
applications you run on AWS.
CloudFormation
AWS CloudFormation provides a common language for you to describe and
provision all the infrastructure resources in your cloud environment.
Advantage of Cloud Formation
Model it all: AWS CloudFormation allows you to model your entire
infrastructure in a text file.
Automate and deploy: AWS CloudFormation provisions your resources in a
safe, repeatable manner, allowing you to build and rebuild your infrastructure
and applications, without having to perform manual actions or write custom
scripts.
It's just code: Codifying your infrastructure allows you to treat your
infrastructure as just code.
CloudTrail
AWS CloudTrail is an AWS service that helps you enable governance,
compliance, and operational and risk auditing of your AWS account.
You can create two types of trails for an AWS account:
A trail that applies to all regions
A trail that applies to one region
Benefits of CloudTrail
Simplified compliance
Security analysis and troubleshooting
Visibility into user and resource activity
Security automation
OpsWorks
AWS OpsWorks is a configuration management service that provides managed
instances of Chef and Puppet.
OpsWorks has three offerings:
AWS Opsworks for Chef Automate
AWS OpsWorks for Puppet Enterprise &
AWS OpsWorks Stacks.
Short forms, or abbreviations used in this chapter
EMR: Elastic MapReduce.
KMS: Key Management Service.
3| P a g e Year 4
Semester 8
IAM: Identity and Access Management.
KDS: Kinesis Data Streams.
ML: Machine learning.
BI: Business Intelligence.
ETL: Extract, Transform, Load.
MSK: Managed Streaming for Kafka.
EC2: Elastic Compute Cloud.
KBS: knowledge base articles.
CSPs: Cloud Service Providers
SSE: Server-Side Encryption.
IP Adress: Internet Protocol Address.
OIDC: OpenID Connect.
IDP: Identity Provider.
CA: Certificate Authority.
Cloud Computing
Chapter 8
END
4| P a g e Year 4
Semester 8