Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
20180122-jawsug-terada
Search
re__ma
January 22, 2018
Technology
0
310
20180122-jawsug-terada
20180122 JAWS-UG 長野で発表したスライド
タイトル: re:Invent 2017 で発表された積極的に使いたいサービス5つ!
re__ma
January 22, 2018
Tweet
Share
More Decks by re__ma
See All by re__ma
クラウドってなんだっけ? WordPressとどう関わるの? という話 / wpshinshu-20190413-terada
re__ma
0
32
イチからWordPressのインフラを考えてみる
re__ma
1
79
Staging環境を考えよう (インフラ目線から)
re__ma
2
200
Other Decks in Technology
See All in Technology
4/17/25 - CIJUG - Java Meets AI: Build LLM-Powered Apps with LangChain4j (part 2)
edeandrea
PRO
0
110
LiteXとオレオレCPUで作る自作SoC奮闘記
msyksphinz
0
650
地味にいろいろあった! 2025春のAmazon Bedrockアップデートおさらい
minorun365
PRO
1
140
Amazon CloudWatchで始める エンドユーザー体験のモニタリング
o11yfes2023
0
190
PagerDuty×ポストモーテムで築く障害対応文化/Building a culture of incident response with PagerDuty and postmortems
aeonpeople
1
180
Creating Awesome Change in SmartNews
martin_lover
1
290
Running JavaScript within Ruby
hmsk
3
330
ブラウザのレガシー・独自機能を愛でる-Firefoxの脆弱性4選- / Browser Crash Club #1
masatokinugawa
1
470
AWSで作るセキュアな認証基盤with OAuth mTLS / Secure Authentication Infrastructure with OAuth mTLS on AWS
kaminashi
0
170
React ABC Questions
hirotomoyamada
0
320
Goの組織でバックエンドTypeScriptを採用してどうだったか / How was adopting backend TypeScript in a Golang company
kaminashi
6
5.9k
Linuxのパッケージ管理とアップデート基礎知識
go_nishimoto
0
290
Featured
See All Featured
The Power of CSS Pseudo Elements
geoffreycrofte
75
5.8k
Let's Do A Bunch of Simple Stuff to Make Websites Faster
chriscoyier
507
140k
Agile that works and the tools we love
rasmusluckow
328
21k
実際に使うSQLの書き方 徹底解説 / pgcon21j-tutorial
soudai
178
53k
It's Worth the Effort
3n
184
28k
10 Git Anti Patterns You Should be Aware of
lemiorhan
PRO
656
60k
Fireside Chat
paigeccino
37
3.4k
Raft: Consensus for Rubyists
vanstee
137
6.9k
Embracing the Ebb and Flow
colly
85
4.6k
Helping Users Find Their Own Way: Creating Modern Search Experiences
danielanewman
29
2.5k
Refactoring Trust on Your Teams (GOTO; Chicago 2020)
rmw
34
2.9k
The Art of Programming - Codeland 2020
erikaheidi
53
13k
Transcript
re:Invent 2017 Ͱൃද ͞Εͨੵۃతʹ͍͍ͨ αʔϏε5ͭʂ JAWS-UG ࢧ෦ ࣉా ྯਅ
Α͏ͦ͜দຊ • લ͔ΒɺদຊͰJAWS-UGΛΓ͔ͨͬͨ • 11݄ͷࢧ෦ͷRebootʹମௐෆྑͰߦ͚ͣɻɻɻ • ͜ʹΌ͞Μ͕ɺ΅ͦͬͱͭͿ͍ͨͷΛؾʹɺদຊͰΔ͜ͱʹ! • 1ʹճߦ͍͍ͨͱࢥ͍ͬͯ·͢ɻ࣍ 3
or 4݄͝ΖʹΕΕ • ࢢͱ࿈ܞاըߟ͑த • ͪͳΈʹɺݝத෦ͰձΛି͚͚ͯ͠Δاۀ༷͕͋Εɺඇ ৗʹخ͍͠Ͱ͢
• ࣉా ྯਅ(Reima TERADA) • ॴଐ1ɿ גࣜձࣾαʔόʔϫʔΫε ΫϥυΠϯςάϨʔγϣϯ෦ ٕज़2՝ (AWSΤϯδχΞ)
• ॴଐ2ɿ ৴भେֶେֶӃ ߴΤωϧΪʔཧֶݚڀࣨ ത࢜1 • Twitterɿ@re__maɹfacebook: https://www.facebook.com/reima.terada
ֶੜͬͯʁ • ͍ΘΏΔɺ͘͝ී௨ͷࣾձਓυΫλʔ • ౦ژΛԕ͘Εͯɺݝࡏॅ • جຊɺϦϞʔτϫʔΫͰશͯͷࣄΛ • னؒࣄͯ͠ɺே൩+ٳʹݚڀɾ࣮ ݧɾղੳ
ݚڀ༰ • ߴΤωϧΪʔཧֶ͕ઐ • εΠεɺδϡωʔϒͷڊେͳՃثͱ͔ʹԑ͕͋Γ ·͢ • ͍ͬͯΔͷɺ౦ʹ࡞Ζ͏ͱߦ͍ͬͯΔɺϦχ ΞίϥΠμʔܭըͷଌఆثR&D
ࣄͷํͷ • ΠϯϑϥΤϯδχΞΛ͍ͬͯ·͢ • ओʹɺVPCͱEC2ͱRDSΛຖ݄࡞͍ͯ͠·͢ • CloudFormation৬ਓʹͳΕ·͢ • ίʔυPythonͰগ͠ॻ͚·͕͢ɺࣄͰίʔ σΟϯά͍ͯ͠·ͤΜ
• ࠷ۙɺӡ༻ͱ͔ηΩϡϦςΟपΓ͕ଟΊͰ͢
re:InventͰൃද͞ΕͨαʔϏε • 2ϲ݄΄Ͳܦաͯ͠͠·ͬͨͷͰɺ؆୯ʹ͓ ͞Β͍Λ • ৽αʔϏεͱͯ͠ɺ60ݸఔग़ͨΑ͏Ͱ͢ https://aws.amazon.com/jp/new/reinvent/ • re:Inventલޙʹز͔͕ͭ͋Γ·ͨ͠
ಠஅͱภݟͱࣗͷࣄ͔ Β͑ΒͿɺ͍͍ͨαʔϏε • ྑ͍ͳͱࢥ͍ͬͯΔαʔϏεΛ5ͭબΜͰ͠·͢ • AWS Fargate • Amazon Time
Sync Service • Amazon Aurora Serverless • Inter-Region VPC Peering • Amazon GuardDuty
AWS Fargate • ͓ͳ͡ΈͷίϯςφͷϑϧϚωʔδυαʔϏε • ͍͍ͱ͜Ζ • ίϯςφΛಈ͔͢αʔόʔͷӡ༻Λ͠ͳ͍͍ͯ͘ (ECSͰ͕͜͜ωοΫͩͬͨ •
AutoScalingΑΓىಈ͕ૣ͍ • AutoScalingͷνϡʔχϯάෆཁ • ҙ • ·ͩɺ౦ژϦʔδϣϯʹདྷ͍ͯͳ͍ • ྉۚɺECS ͱ͔ EKS ͱ͔ΑΓߴΊ (αʔόʔӡ༻ͷίετΛߟ͑Εଟଥ
AWS Fargate ͜͜ͷཧͨ͘͠ͳ͔ͬͨ AutoScalingͩͱνϡʔχϯάඞཁ εέʔϦϯά͢Δ͔͔࣌ؒΔ FargateͩͱEC2ͷϦιʔεཧෆཁʂ ίϯςφͩͱىಈඵͰՄೳʂ
Amazon Time Sync Service • NTPΛVPCͳ͍͔Β͑Δɺ͋ΔҙຯຯͳαʔϏεͰ͢ • αʔϏε͕ग़Δલ • NTPͷઃఆͰɺ
ntp.nict.jp ͱ͔ʹ͚͍ͯͨɻ • GIPΛ͍࣋ͬͯΔαʔόʔɺΠϯλʔωοτ͔ΒΞΫηε͕Մೳ ϓϥΠϕʔταϒωοτ͔ΒɺNAT͕ඞཁ NAT͓͚ͳ͍߹ɺNTPதܧαʔόʔ͕ඞཁ • ࠓճͷαʔϏεͷ͍͍ͱ͜Ζ • 169.254.169.123 Λࢦఆ͢ΕVPCͳΒͲ͜ͰΞΫηεՄೳʂ • ҙ • ͱ͘ʹͳ͠ (ͲΜͲΜ͑ྑ͍ʂ
Amazon Time Sync Service ͍Ζ͍Ζ༨ʹඞཁ NTPαʔόʔࢹඞཁ
Amazon Aurora Serverless • ͷ RDB ͷServerlessͷαʔϏε • ΞϓϦΛ No
SQL (Dynamo DB)͚ʹॻ͖͑ͳͯ͘ར༻Մ ೳ • ߟ͑ΒΕΔϢʔεέʔε • Serveless (Lambda) Λओʹ༻͍ͨΞϓϦέʔγϣϯ • RDB͕ඞཁͳϨΨγʔͳαʔϏε͔ͭɺখنͳαʔϏε • ex) ͚ࣾͷ؆୯ͳཧγεςϜɺࣗલͷblogαΠτ
Amazon Aurora Serverless • ݸਓతʹ·ͣਪ͍ͨ͠ɺখنͳγεςϜͰͷར༻ • খنͳ߹Ͱɺt2ܥΛར༻͠ͳͯ͘αʔϏε͕Մೳ ͔ͭɺطଘt2.smallͱ΄ͱΜͲಉ͡ஈʹͳΔͱߟ͑ΒΕΔ • ͠ɺΞΫηε͕૿͑Εɺࣗಈతʹεέʔϧ
(εέʔϧʹ ඞཁͳ࣌ؒཁݕূ • RDSͷαʔόʔͷఀࢭػೳग़͕ͨɺ͜ΕΛར༻͢Ε αʔόʔͷఀࢭ͕ෆཁ
Amazon Aurora Serverless • ଞͷྫͱͯ͠ɺEC2͕AutoScaling͢ΔγεςϜͰͷ ར༻ • RDSͷΩϟύγςΟ͕ωοΫͱͳΓɺγεςϜશମ͕ εέʔϧ͠ͳ͘ͳΔͷΛ͛Δ •
Aurora ReadReplica AutoScaling Ͱ͍ۙ͜ͱՄ ೳ͕ͩɺύϥϝʔλνϡʔχϯάෆཁ (EC2ͷ AutoScalingͱLambdaͱ͔ɺFargateͷؔͱҰॹʂ
Inter-Region VPC Peering • ࠓ·Ͱͳ͔ͬͨɺϦʔδϣϯؒͷVPCͷଓ͕Մೳʹ • άϩʔόϧʹ·͕ͨΔγεςϜΛ࡞Δͱ͖ʹཉ͔ͬͨ͠ ͭ • ·ͨɺDRରࡦͱͯ͠ར༻Մೳ
• جຊతͳ༻ɺVPC-Peeringͱ΄΅ಉ͡ • ҙ • ౦ژ·ͩ
Inter-Region VPC Peering Transit VPC͕ඞཁͩͬͨ https://aws.amazon.com/jp/answers/networking/aws-multiple-region-multi-vpc-connectivity/ Transit VPCଆͷϧʔλʔ ϧʔςΟϯάอकϥΠηϯείετඞཁ ϧʔλෆཁ
ϧʔςΟϯάͷઃఆ VPCͰ݁
Amazon GuardDuty • AWSͷ௨৴ͳͲΛࢹ͠ɺෆ৹ͳߦಈ͕͋ͬͨ߹ʹΞϥʔτΛ͛ͯ͘ΕΔ αʔϏε • ྑ͍ • AgentΛΠϯετʔϧ͢Δඞཁ͕ͳ͍(Agent Less)
• طଘͷͷʹ؆୯ʹՃՄೳ • ͍··ͰͷηΩϡϦςΟιϑτͱൺΔͱ͍҆ʂ • ԿΑΓେࣄͳͷɺ໘ͳηΩϡϦςΟͷࢹӡ༻ͱ௨ΛࣗಈͰͬͯ͘ ΕΔͱ͜Ζ (͔͠AWSͷ͍࣋ͬͯΔσʔλͱ͖߹Θ͕ͤߦΘΕΔͨΊɺࣗͰಘΒΕ ΔใΑΓͨ͘͞Μͷใͱಥ͖߹Θͤͯ͘ΕΔ
Amazon GuardDuty • ҙ • ΟϧεରࡦιϑτͰͳ͍ (DeepSecurityͳͲͷ୯७ͳஔ͖͑ ʹͳΒͳ͍ • WAFͰͳ͍
(WAF AWS WAF Λઃఆ͢Δඞཁ͋Γ • ݱࡏͷରEC2ͱIAM (ͱ͍͑ɺඞཁ࠷ݶΧόʔ͞Ε͍ͯΔ • Ξϥʔτ্͕͕ͬͨΒɺࣗͰରԠ͕ඞཁ • શମతͳηΩϡϦςΟࢹ͕͚ͨ͠ΕɺAlert LogicͳͲΛͬͨ΄ ͏͕͍͍ (͓͔͔ͨͩۚ͠Δ
ଞʹαʔϏεଟ • Cloud9 (IDE • Amazon MQ (ϝοηʔδϒϩʔΧʔαʔϏε • ৽͍͠ΠϯελϯελΠϓ
(M5, H1 • Aurora Multi-Master • Dynamo DB Global Tables (ϦʔδϣϯΛ͑ͨϚϧνϚε λ • etc
·ͱΊ • ྫͷ͜ͱͳ͕Βɺ re:Invent ͰͷଟͷαʔϏε͕ग़·͠ ͨΑͱ • ͓͢͢ΊͰ͖ΔαʔϏεΛϐοΫΞοϓͯ͠5ͭհͯ͠Έ ·ͨ͠ •
ઃఆෆཁͳαʔϏεͱ͔ɺ͜ΕͰ͖Δͱӡ༻͕ΉͬͪΌָ ʹͳΔαʔϏεͱ͔Λ·ͱΊͯΈͨͭΓͰ͢ • IoT·ΘΓͱ͔MLपΓͱ͔͍͍͚͍ͭͯͯͳ͍ͷͰɺؤ ுͬͯΩϟονΞοϓ͠ͳͯ͘ɻɻɻ
JAWS DAYS 2018 ! • https://jawsdays2018.jaws-ug.jp