SlideShare a Scribd company logo
1 of 55
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Improve your application’s availability and
performance with Amazon Global Network
Marco Cagna, Sr. Product Manager, AWS
N E T 1 + N E T 2
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Agenda
1. Benefits of the the Amazon Global Network
2. How Universitá Pegaso delivers content via Amazon CloudFront
3. Improve the availability and performance of your applications with
AWS Global Accelerator
4. Transport, Process, Package, Originate, and Monetize your video
content with AWS Elemental Media Services
5. Secure your web applications with AWS Shield and AWS WAF
S U M M I T © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Benefits of the the Amazon Global
Network
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Benefits of the Amazon global network
Superior network:
abundant, fast,
always on
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
AWS Global Infrastructure
• 19 Regions with 58 Availability Zones
• 5 Regions coming soon: Bahrain,
Cape Town, Hong Kong SAR,
Stockholm, and second USA GovCloud
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
150 CloudFront PoPs
• 139 Edge Locations
• 11 Regional Edge Caches
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
89 Direct Connect
Locations
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Amazon Global Network
• Redundant 100 GbE network
• Private network capacity between
all AWS region, except China
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Why have a backbone network?
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Multiple services traverse the backbone
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Private connectivity with AWS Direct Connect
Dedicated private connection
from on-premised to AWS
Consistent network
performance
Reduced bandwidth costs
Compatible with all
AWS services
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Private connectivity with Inter-region Peering
Private connectivity for two
or more VPCs between regions
Highly available, no single
point of failure
All traffic stays on the AWS
global backbone network
All traffic encrypted and
anonymized
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Content Distribution with Amazon CloudFront
Fast, massively scaled and
globally distributed
Highly Programmable
Deep Integration with AWS
Network and application
protection at the edge
S U M M I T © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
S U M M I T © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Multiple services traverse the backbone
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
AWS Global Accelerator
Global
Accelerator
AWS ApplicationsClient
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
AWS Global Accelerator
Availability Ease of UsePerformance
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Our customers represent different industries
Digital Publishing Mobile Apps Media
Internet of Things Ad-tech Financial services
AWS Global Accelerator
provides value for any
critical, latency-sensitive
application
Global
Accelerator
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Key features
Global
Accelerator
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Static anycast IP addresses
1.2.3.4
2.3.4.5
3.4.5.6
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Static anycast IP addresses
1.2.3.4
2.3.4.5
3.4.5.6
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Static anycast IP addresses
Cache
192.0.2.1
www.example.com
1.2.3.4
2.3.4.5
3.4.5.6
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
AWS Global Accelerator
192.0.2.1
192.0.2.1
192.0.2.1
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
AWS Global Accelerator
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
AWS Global Accelerator
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
AWS Global Accelerator
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Fault isolating design
192.0.2.0/24
Network Zone A
198.51.100.0/24
Network Zone B
Anycast BGP
announcements
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Accelerator configuration
1.2.3.4
us-east-1
us-west-2
us-east-1
Endpoints: ALB
1, ALB 2
TCP
80,443
UDP
53
5.6.7.8
ap-southeast-1
us-east-1
ap-northeast-1
Endpoints: ALB
1, NLB 1
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
How is the endpoint selected?
Application health Geo-proximity Customer-
configured policies
Client affinity
settings
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Easy traffic control - Regional Traffic dials
Region : us-east-1
Region : us-west-1
Dial values: Min 0%; Max 100%; Default 100%
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Easy traffic control - Regional Traffic dials
Region : us-east-1
Region : us-west-1
Dial values: Min 0%; Max 100%; Default 100%
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Easy traffic control - Endpoint Weights
Region : us-east-1
Region : us-west-1
Weights values: Min 0; Max 255; Default 128
S U M M I T © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Prep, process and protect (e.g.
DRM, watermark) content
using AWS Media Services
Originate source
content (live feed or
VOD files)
Deliver content via
Amazon CloudFront or
AWS Global Accelerator
Video streaming applications at a glance
39
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 40
AWS Elemental Media Services
AWS Elemental
MediaLive
Live Video
Processing
Live Video
Workflow
Video
On-Demand
Workflow
AWS Elemental
MediaPackage
Origination and
JIT Packaging
Live Channel
Source
AWS Elemental
MediaStore
Media-Optimized
Storage and Origin
AWS Elemental
MediaTailor
Personalization
and Monetization
AWS Elemental
MediaConvert
File-Based
Video Processing
Devices
AWS Elemental
Live
On-Premises
Encoding
Amazon
CloudFront
CDN
Amazon
CloudFront
CDN
Amazon S3
Storage
Amazon S3
VOD Origin
AWS Elemental
MediaConnect
Live Video
Transport
AWS Step
Functions
WorkflowMedia Source
Files
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 41
AWS Elemental MediaConnect
AWS Elemental
MediaLive
Live Video
Processing
Live Video
Workflow
Video
On-Demand
Workflow
AWS Elemental
MediaPackage
Origination and
JIT Packaging
Live Channel
Source
AWS Elemental
MediaStore
Media-Optimized
Storage and Origin
AWS Elemental
MediaTailor
Personalization
and Monetization
AWS Elemental
MediaConvert
File-Based
Video Processing
Devices
AWS Elemental
Live
On-Premises
Encoding
Amazon
CloudFront
CDN
Amazon
CloudFront
CDN
Amazon S3
Storage
Amazon S3
VOD Origin
AWS Elemental
MediaConnect
Live Video
Transport
AWS Step
Functions
WorkflowMedia Source
Files
AWS Elemental MediaConnect is a
high-quality transport service for live
video.
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 42
AWS Elemental MediaLive
AWS Elemental
MediaLive
Live Video
Processing
Live Video
Workflow
Video
On-Demand
Workflow
AWS Elemental
MediaPackage
Origination and
JIT Packaging
Live Channel
Source
AWS Elemental
MediaStore
Media-Optimized
Storage and Origin
AWS Elemental
MediaTailor
Personalization
and Monetization
AWS Elemental
MediaConvert
File-Based
Video Processing
Devices
AWS Elemental
Live
On-Premises
Encoding
Amazon
CloudFront
CDN
Amazon
CloudFront
CDN
Amazon S3
Storage
Amazon S3
VOD Origin
AWS Elemental
MediaConnect
Live Video
Transport
AWS Step
Functions
WorkflowMedia Source
Files
With AWS Elemental MediaLive,
video providers can stand up live
channels in minutes, not months.
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 43
AWS Elemental MediaPackage
AWS Elemental
MediaLive
Live Video
Processing
Live Video
Workflow
Video
On-Demand
Workflow
AWS Elemental
MediaPackage
Origination and
JIT Packaging
Live Channel
Source
AWS Elemental
MediaStore
Media-Optimized
Storage and Origin
AWS Elemental
MediaTailor
Personalization
and Monetization
AWS Elemental
MediaConvert
File-Based
Video Processing
Devices
AWS Elemental
Live
On-Premises
Encoding
Amazon
CloudFront
CDN
Amazon
CloudFront
CDN
Amazon S3
Storage
Amazon S3
VOD Origin
AWS Elemental
MediaConnect
Live Video
Transport
AWS Step
Functions
WorkflowMedia Source
Files
AWS Elemental MediaPackage makes it
easy to enrich audience experiences
with time-shifted TV and to better
protect multiscreen content.
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 44
AWS Elemental MediaStore
AWS Elemental
MediaLive
Live Video
Processing
Live Video
Workflow
Video
On-Demand
Workflow
AWS Elemental
MediaPackage
Origination and
JIT Packaging
Live Channel
Source
AWS Elemental
MediaStore
Media-Optimized
Storage and Origin
AWS Elemental
MediaTailor
Personalization
and Monetization
AWS Elemental
MediaConvert
File-Based
Video Processing
Devices
AWS Elemental
Live
On-Premises
Encoding
Amazon
CloudFront
CDN
Amazon
CloudFront
CDN
Amazon S3
Storage
Amazon S3
VOD Origin
AWS Elemental
MediaConnect
Live Video
Transport
AWS Step
Functions
WorkflowMedia Source
Files
AWS Elemental MediaStore acts as
an HTTP origin optimized for fast, low-
latency writes, decreasing the
risk of buffering video.
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 45
AWS Elemental MediaTailor
AWS Elemental
MediaLive
Live Video
Processing
Live Video
Workflow
Video
On-Demand
Workflow
AWS Elemental
MediaPackage
Origination and
JIT Packaging
Live Channel
Source
AWS Elemental
MediaStore
Media-Optimized
Storage and Origin
AWS Elemental
MediaTailor
Personalization
and Monetization
AWS Elemental
MediaConvert
File-Based
Video Processing
Devices
AWS Elemental
Live
On-Premises
Encoding
Amazon
CloudFront
CDN
Amazon
CloudFront
CDN
Amazon S3
Storage
Amazon S3
VOD Origin
AWS Elemental
MediaConnect
Live Video
Transport
AWS Step
Functions
WorkflowMedia Source
Files
AWS Elemental MediaTailor
personalizes and delivers content while
mitigating ad blocking and providing a
better viewing experience.
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 46
AWS Elemental MediaConvert
AWS Elemental
MediaLive
Live Video
Processing
Live Video
Workflow
Video
On-Demand
Workflow
AWS Elemental
MediaPackage
Origination and
JIT Packaging
Live Channel
Source
AWS Elemental
MediaStore
Media-Optimized
Storage and Origin
AWS Elemental
MediaTailor
Personalization
and Monetization
AWS Elemental
MediaConvert
File-Based
Video Processing
Devices
AWS Elemental
Live
On-Premises
Encoding
Amazon
CloudFront
CDN
Amazon
CloudFront
CDN
Amazon S3
Storage
Amazon S3
VOD Origin
AWS Elemental
MediaConnect
Live Video
Transport
AWS Step
Functions
WorkflowMedia Source
Files
AWS Elemental MediaConvert provides
transcoding for mezzanine, broadcast
and multiscreen video delivery.
S U M M I T © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Biggest threats to web applications today
App
Vulnerabilities
Bad Bots
DDoS
0
200
400
600
800
1000
1200
1400
1600
1800
Largest DDoS Attacks (Gbps)
Mem
cached
Mirai
botnet
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Three layers of perimeter protection
Build a highly scalable, secure, well-monitored,
DDoS-protected application
Objective:
1. Secure content delivery layer with reduced surface area
2. Firewall layer for common and customer specific exploits
3. DDoS protection layer for mitigating availability impact
Software
automation
of security
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Layered perimeter protection – Basic AWS Application
EC2 Instance
S3 Bucket
Public
Subnet
Private
Subnet
ALB
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
S3 Origin Access Identity
• Prevents direct access to your
Amazon S3 bucket
• No S3 URLs are accessible directly
Custom Origin Security Groups
• Whitelist ONLY the
CloudFront IP range
• Protects origin from overload
Restricting external access to your origin
CloudFront ALB EC2CloudFront S3
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Layered perimeter protection – Adding secure
Content Delivery
EC2 Instance
S3 Bucket
Public
Subnet
Private
Subnet
CloudFront
ALB
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Choosing a Web Application Firewall:
AWS WAF
Security
Automations
Managed Rules
for AWS WAF
Multiple Rule
Condition Types
Combine and
build hierarchy
Actions : Allow /
Block / Count
CloudWatch
Metrics
Sampled Web
Requests
Full Logs
Lambda
Automations
AWS Firewall
Manager
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Layered perimeter protection – Adding a Firewall
EC2 Instance
S3 Bucket
Public
Subnet
Private
Subnet
CloudFront
WAF
ALB
Firewall
Manager
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Choosing a DDoS protection provider:
AWS Shield Standard & Advanced
Automatic
Protection across
customers
Enhanced
Protection
baselined to you
24x7 access to
DDoS Response
Team (DRT)
Built-in DDoS
Protection for
Everyone
Point and
Protect Wizard
AWS WAF at no
additional cost
For protected resources
AWS Firewall
Manager at no
additional cost
Cost Protection
for scaling
CloudWatch
Metrics
Attack
Diagnostics
Global Threat
Environment
Dashboard
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Layered perimeter protection – Adding DDoS
Protection
EC2 Instance
S3 Bucket
Public
Subnet
Private
Subnet
Shield
Shield
Advanced
ALB
CloudFront
WAF
Firewall
Manager
S U M M I T © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T
Summary
1. Benefits of the the Amazon Global Network
2. How Universitá Pegaso delivers content via Amazon CloudFront
3. Improve the availability and performance of your applications with
AWS Global Accelerator
4. Transport, Process, Package, Originate, and Monetize your video
content with AWS Elemental Media Services
5. Secure your web applications with AWS Shield and AWS WAF

More Related Content

What's hot

What's hot (20)

Grid computing in the cloud for Financial Services industry - CMP205-I - New ...
Grid computing in the cloud for Financial Services industry - CMP205-I - New ...Grid computing in the cloud for Financial Services industry - CMP205-I - New ...
Grid computing in the cloud for Financial Services industry - CMP205-I - New ...
 
Build intelligent applications quickly with AWS AI services - AIM301 - New Yo...
Build intelligent applications quickly with AWS AI services - AIM301 - New Yo...Build intelligent applications quickly with AWS AI services - AIM301 - New Yo...
Build intelligent applications quickly with AWS AI services - AIM301 - New Yo...
 
Introduzione a blockchain e registri digitali
Introduzione a blockchain e registri digitaliIntroduzione a blockchain e registri digitali
Introduzione a blockchain e registri digitali
 
Introduction to EC2 A1 instances, powered by the AWS Graviton processor - CMP...
Introduction to EC2 A1 instances, powered by the AWS Graviton processor - CMP...Introduction to EC2 A1 instances, powered by the AWS Graviton processor - CMP...
Introduction to EC2 A1 instances, powered by the AWS Graviton processor - CMP...
 
Alexa + IoT - SVC203 - New York AWS Summit
Alexa + IoT - SVC203 - New York AWS SummitAlexa + IoT - SVC203 - New York AWS Summit
Alexa + IoT - SVC203 - New York AWS Summit
 
Next generation intelligent data lakes, powered by GraphQL & AWS AppSync - MA...
Next generation intelligent data lakes, powered by GraphQL & AWS AppSync - MA...Next generation intelligent data lakes, powered by GraphQL & AWS AppSync - MA...
Next generation intelligent data lakes, powered by GraphQL & AWS AppSync - MA...
 
Introduction to the Well-Architected Framework and Tool - SVC212 - Santa Clar...
Introduction to the Well-Architected Framework and Tool - SVC212 - Santa Clar...Introduction to the Well-Architected Framework and Tool - SVC212 - Santa Clar...
Introduction to the Well-Architected Framework and Tool - SVC212 - Santa Clar...
 
Breaking language barriers with AI
Breaking language barriers with AIBreaking language barriers with AI
Breaking language barriers with AI
 
Add intelligence to applications - AIM205 - Santa Clara AWS Summit.pdf
Add intelligence to applications - AIM205 - Santa Clara AWS Summit.pdfAdd intelligence to applications - AIM205 - Santa Clara AWS Summit.pdf
Add intelligence to applications - AIM205 - Santa Clara AWS Summit.pdf
 
Accelerating product development with high performance computing - CMP301 - S...
Accelerating product development with high performance computing - CMP301 - S...Accelerating product development with high performance computing - CMP301 - S...
Accelerating product development with high performance computing - CMP301 - S...
 
What's new in Amazon Aurora - ADB204 - Santa Clara AWS Summit.pdf
What's new in Amazon Aurora - ADB204 - Santa Clara AWS Summit.pdfWhat's new in Amazon Aurora - ADB204 - Santa Clara AWS Summit.pdf
What's new in Amazon Aurora - ADB204 - Santa Clara AWS Summit.pdf
 
Migration to AWS: The foundation for enterprise transformation - SVC210 - New...
Migration to AWS: The foundation for enterprise transformation - SVC210 - New...Migration to AWS: The foundation for enterprise transformation - SVC210 - New...
Migration to AWS: The foundation for enterprise transformation - SVC210 - New...
 
Move users to AWS with Amazon WorkSpaces and Amazon AppStream 2-0
Move users to AWS with Amazon WorkSpaces and Amazon AppStream 2-0Move users to AWS with Amazon WorkSpaces and Amazon AppStream 2-0
Move users to AWS with Amazon WorkSpaces and Amazon AppStream 2-0
 
Data modeling with Amazon DynamoDB - ADB301 - New York AWS Summit
Data modeling with Amazon DynamoDB - ADB301 - New York AWS SummitData modeling with Amazon DynamoDB - ADB301 - New York AWS Summit
Data modeling with Amazon DynamoDB - ADB301 - New York AWS Summit
 
Increase the value of video using ML and AWS media services - SVC301 - Santa ...
Increase the value of video using ML and AWS media services - SVC301 - Santa ...Increase the value of video using ML and AWS media services - SVC301 - Santa ...
Increase the value of video using ML and AWS media services - SVC301 - Santa ...
 
Building enterprise solutions with blockchain technology - SVC217 - New York ...
Building enterprise solutions with blockchain technology - SVC217 - New York ...Building enterprise solutions with blockchain technology - SVC217 - New York ...
Building enterprise solutions with blockchain technology - SVC217 - New York ...
 
Managing Enterprise security in the Cloud
Managing Enterprise security in the CloudManaging Enterprise security in the Cloud
Managing Enterprise security in the Cloud
 
Migrating Business Critical Applications to AWS
Migrating Business Critical Applications to AWSMigrating Business Critical Applications to AWS
Migrating Business Critical Applications to AWS
 
A culture of rapid innovation with DevOps, microservices, & serverless - MAD2...
A culture of rapid innovation with DevOps, microservices, & serverless - MAD2...A culture of rapid innovation with DevOps, microservices, & serverless - MAD2...
A culture of rapid innovation with DevOps, microservices, & serverless - MAD2...
 
Build data-drive, high performance, internet scale applications with AWS Data...
Build data-drive, high performance, internet scale applications with AWS Data...Build data-drive, high performance, internet scale applications with AWS Data...
Build data-drive, high performance, internet scale applications with AWS Data...
 

Similar to Migliora la disponibilità e le prestazioni delle tue applicazioni con Amazon Global Network

Similar to Migliora la disponibilità e le prestazioni delle tue applicazioni con Amazon Global Network (20)

Securely deliver applications with AWS - SVC305 - Atlanta AWS Summit
Securely deliver applications with AWS - SVC305 - Atlanta AWS SummitSecurely deliver applications with AWS - SVC305 - Atlanta AWS Summit
Securely deliver applications with AWS - SVC305 - Atlanta AWS Summit
 
Introduction to AWS Global Accelerator - SVC211 - Chicago AWS Summit
Introduction to AWS Global Accelerator - SVC211 - Chicago AWS SummitIntroduction to AWS Global Accelerator - SVC211 - Chicago AWS Summit
Introduction to AWS Global Accelerator - SVC211 - Chicago AWS Summit
 
AWS Summit Singapore 2019 | Operating Microservices at Hyperscale
AWS Summit Singapore 2019 | Operating Microservices at HyperscaleAWS Summit Singapore 2019 | Operating Microservices at Hyperscale
AWS Summit Singapore 2019 | Operating Microservices at Hyperscale
 
Introduction to the AWS Well-Architected Framework and AWS WA Tool - SVC214-R...
Introduction to the AWS Well-Architected Framework and AWS WA Tool - SVC214-R...Introduction to the AWS Well-Architected Framework and AWS WA Tool - SVC214-R...
Introduction to the AWS Well-Architected Framework and AWS WA Tool - SVC214-R...
 
如何成功的完成混合雲遷移專案
如何成功的完成混合雲遷移專案如何成功的完成混合雲遷移專案
如何成功的完成混合雲遷移專案
 
Delivering applications securely with AWS - SVC303 - Chicago AWS Summit
Delivering applications securely with AWS - SVC303 - Chicago AWS SummitDelivering applications securely with AWS - SVC303 - Chicago AWS Summit
Delivering applications securely with AWS - SVC303 - Chicago AWS Summit
 
Securely Deliver Applications with AWS - SVC305 - Anaheim AWS Summit
Securely Deliver Applications with AWS - SVC305 - Anaheim AWS SummitSecurely Deliver Applications with AWS - SVC305 - Anaheim AWS Summit
Securely Deliver Applications with AWS - SVC305 - Anaheim AWS Summit
 
Websites go Serverless - AWS Summit Berlin
Websites go Serverless - AWS Summit BerlinWebsites go Serverless - AWS Summit Berlin
Websites go Serverless - AWS Summit Berlin
 
Introduction to the AWS Cloud - AWSome Day 2019 - Vancouver
Introduction to the AWS Cloud - AWSome Day 2019 - VancouverIntroduction to the AWS Cloud - AWSome Day 2019 - Vancouver
Introduction to the AWS Cloud - AWSome Day 2019 - Vancouver
 
Introduction to the AWS Cloud - AWSome Day 2019 - Chicago
Introduction to the AWS Cloud - AWSome Day 2019 - ChicagoIntroduction to the AWS Cloud - AWSome Day 2019 - Chicago
Introduction to the AWS Cloud - AWSome Day 2019 - Chicago
 
Introduction to the AWS Cloud - AWSome Day 2019 - Charlotte
Introduction to the AWS Cloud - AWSome Day 2019 - CharlotteIntroduction to the AWS Cloud - AWSome Day 2019 - Charlotte
Introduction to the AWS Cloud - AWSome Day 2019 - Charlotte
 
Accelerate and secure your applications running on AWS - SVC208 - Santa Clara...
Accelerate and secure your applications running on AWS - SVC208 - Santa Clara...Accelerate and secure your applications running on AWS - SVC208 - Santa Clara...
Accelerate and secure your applications running on AWS - SVC208 - Santa Clara...
 
Introduction to the AWS Cloud - AWSome Day 2019 - Denver
Introduction to the AWS Cloud - AWSome Day 2019 - Denver Introduction to the AWS Cloud - AWSome Day 2019 - Denver
Introduction to the AWS Cloud - AWSome Day 2019 - Denver
 
Introducing-AWS-Hong-Kong-Region
Introducing-AWS-Hong-Kong-RegionIntroducing-AWS-Hong-Kong-Region
Introducing-AWS-Hong-Kong-Region
 
Continuous Delivery on AWS with Zero Downtime
Continuous Delivery on AWS with Zero DowntimeContinuous Delivery on AWS with Zero Downtime
Continuous Delivery on AWS with Zero Downtime
 
Introduction to the AWS Cloud - AWSome Day 2019 - Toronto
Introduction to the AWS Cloud - AWSome Day 2019 - TorontoIntroduction to the AWS Cloud - AWSome Day 2019 - Toronto
Introduction to the AWS Cloud - AWSome Day 2019 - Toronto
 
AWS networking fundamentals
AWS networking fundamentalsAWS networking fundamentals
AWS networking fundamentals
 
Black Belt Tips for Cloud Network Operations - AWS Summit Sydney
Black Belt Tips for Cloud Network Operations - AWS Summit SydneyBlack Belt Tips for Cloud Network Operations - AWS Summit Sydney
Black Belt Tips for Cloud Network Operations - AWS Summit Sydney
 
Castles in Castles - Secure Operational Scale - AWS Summit Sydney
Castles in Castles - Secure Operational Scale - AWS Summit SydneyCastles in Castles - Secure Operational Scale - AWS Summit Sydney
Castles in Castles - Secure Operational Scale - AWS Summit Sydney
 
Hybrid Solutions at the Edge – Go Global Faster, Efficiently, and More Secure...
Hybrid Solutions at the Edge – Go Global Faster, Efficiently, and More Secure...Hybrid Solutions at the Edge – Go Global Faster, Efficiently, and More Secure...
Hybrid Solutions at the Edge – Go Global Faster, Efficiently, and More Secure...
 

More from Amazon Web Services

Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
Amazon Web Services
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
Amazon Web Services
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
Amazon Web Services
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
Amazon Web Services
 

More from Amazon Web Services (20)

Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
 
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS Fargate
 
Costruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSCostruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWS
 
Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot
 
Open banking as a service
Open banking as a serviceOpen banking as a service
Open banking as a service
 
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
 
Computer Vision con AWS
Computer Vision con AWSComputer Vision con AWS
Computer Vision con AWS
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatare
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e web
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
 
Fundraising Essentials
Fundraising EssentialsFundraising Essentials
Fundraising Essentials
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container Service
 

Migliora la disponibilità e le prestazioni delle tue applicazioni con Amazon Global Network

  • 1. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Improve your application’s availability and performance with Amazon Global Network Marco Cagna, Sr. Product Manager, AWS N E T 1 + N E T 2
  • 2. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Agenda 1. Benefits of the the Amazon Global Network 2. How Universitá Pegaso delivers content via Amazon CloudFront 3. Improve the availability and performance of your applications with AWS Global Accelerator 4. Transport, Process, Package, Originate, and Monetize your video content with AWS Elemental Media Services 5. Secure your web applications with AWS Shield and AWS WAF
  • 3. S U M M I T © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved. Benefits of the the Amazon Global Network
  • 4. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Benefits of the Amazon global network Superior network: abundant, fast, always on
  • 5. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T AWS Global Infrastructure • 19 Regions with 58 Availability Zones • 5 Regions coming soon: Bahrain, Cape Town, Hong Kong SAR, Stockholm, and second USA GovCloud
  • 6. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. 150 CloudFront PoPs • 139 Edge Locations • 11 Regional Edge Caches
  • 7. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T 89 Direct Connect Locations
  • 8. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Amazon Global Network • Redundant 100 GbE network • Private network capacity between all AWS region, except China
  • 9. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Why have a backbone network?
  • 10. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 11. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Multiple services traverse the backbone
  • 12. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Private connectivity with AWS Direct Connect Dedicated private connection from on-premised to AWS Consistent network performance Reduced bandwidth costs Compatible with all AWS services
  • 13. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Private connectivity with Inter-region Peering Private connectivity for two or more VPCs between regions Highly available, no single point of failure All traffic stays on the AWS global backbone network All traffic encrypted and anonymized
  • 14. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Content Distribution with Amazon CloudFront Fast, massively scaled and globally distributed Highly Programmable Deep Integration with AWS Network and application protection at the edge
  • 15. S U M M I T © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 16. S U M M I T © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 17. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Multiple services traverse the backbone
  • 18. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T AWS Global Accelerator Global Accelerator AWS ApplicationsClient
  • 19. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T AWS Global Accelerator Availability Ease of UsePerformance
  • 20. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Our customers represent different industries Digital Publishing Mobile Apps Media Internet of Things Ad-tech Financial services AWS Global Accelerator provides value for any critical, latency-sensitive application Global Accelerator
  • 21. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Key features Global Accelerator
  • 22. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Static anycast IP addresses 1.2.3.4 2.3.4.5 3.4.5.6
  • 23. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Static anycast IP addresses 1.2.3.4 2.3.4.5 3.4.5.6
  • 24. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Static anycast IP addresses Cache 192.0.2.1 www.example.com 1.2.3.4 2.3.4.5 3.4.5.6
  • 25. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T AWS Global Accelerator 192.0.2.1 192.0.2.1 192.0.2.1
  • 26. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T AWS Global Accelerator
  • 27. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T AWS Global Accelerator
  • 28. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T AWS Global Accelerator
  • 29. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Fault isolating design 192.0.2.0/24 Network Zone A 198.51.100.0/24 Network Zone B Anycast BGP announcements
  • 30. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Accelerator configuration 1.2.3.4 us-east-1 us-west-2 us-east-1 Endpoints: ALB 1, ALB 2 TCP 80,443 UDP 53 5.6.7.8 ap-southeast-1 us-east-1 ap-northeast-1 Endpoints: ALB 1, NLB 1
  • 31. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T How is the endpoint selected? Application health Geo-proximity Customer- configured policies Client affinity settings
  • 32. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Easy traffic control - Regional Traffic dials Region : us-east-1 Region : us-west-1 Dial values: Min 0%; Max 100%; Default 100%
  • 33. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Easy traffic control - Regional Traffic dials Region : us-east-1 Region : us-west-1 Dial values: Min 0%; Max 100%; Default 100%
  • 34. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Easy traffic control - Endpoint Weights Region : us-east-1 Region : us-west-1 Weights values: Min 0; Max 255; Default 128
  • 35. S U M M I T © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 36. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Prep, process and protect (e.g. DRM, watermark) content using AWS Media Services Originate source content (live feed or VOD files) Deliver content via Amazon CloudFront or AWS Global Accelerator Video streaming applications at a glance 39
  • 37. © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 40 AWS Elemental Media Services AWS Elemental MediaLive Live Video Processing Live Video Workflow Video On-Demand Workflow AWS Elemental MediaPackage Origination and JIT Packaging Live Channel Source AWS Elemental MediaStore Media-Optimized Storage and Origin AWS Elemental MediaTailor Personalization and Monetization AWS Elemental MediaConvert File-Based Video Processing Devices AWS Elemental Live On-Premises Encoding Amazon CloudFront CDN Amazon CloudFront CDN Amazon S3 Storage Amazon S3 VOD Origin AWS Elemental MediaConnect Live Video Transport AWS Step Functions WorkflowMedia Source Files
  • 38. © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 41 AWS Elemental MediaConnect AWS Elemental MediaLive Live Video Processing Live Video Workflow Video On-Demand Workflow AWS Elemental MediaPackage Origination and JIT Packaging Live Channel Source AWS Elemental MediaStore Media-Optimized Storage and Origin AWS Elemental MediaTailor Personalization and Monetization AWS Elemental MediaConvert File-Based Video Processing Devices AWS Elemental Live On-Premises Encoding Amazon CloudFront CDN Amazon CloudFront CDN Amazon S3 Storage Amazon S3 VOD Origin AWS Elemental MediaConnect Live Video Transport AWS Step Functions WorkflowMedia Source Files AWS Elemental MediaConnect is a high-quality transport service for live video.
  • 39. © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 42 AWS Elemental MediaLive AWS Elemental MediaLive Live Video Processing Live Video Workflow Video On-Demand Workflow AWS Elemental MediaPackage Origination and JIT Packaging Live Channel Source AWS Elemental MediaStore Media-Optimized Storage and Origin AWS Elemental MediaTailor Personalization and Monetization AWS Elemental MediaConvert File-Based Video Processing Devices AWS Elemental Live On-Premises Encoding Amazon CloudFront CDN Amazon CloudFront CDN Amazon S3 Storage Amazon S3 VOD Origin AWS Elemental MediaConnect Live Video Transport AWS Step Functions WorkflowMedia Source Files With AWS Elemental MediaLive, video providers can stand up live channels in minutes, not months.
  • 40. © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 43 AWS Elemental MediaPackage AWS Elemental MediaLive Live Video Processing Live Video Workflow Video On-Demand Workflow AWS Elemental MediaPackage Origination and JIT Packaging Live Channel Source AWS Elemental MediaStore Media-Optimized Storage and Origin AWS Elemental MediaTailor Personalization and Monetization AWS Elemental MediaConvert File-Based Video Processing Devices AWS Elemental Live On-Premises Encoding Amazon CloudFront CDN Amazon CloudFront CDN Amazon S3 Storage Amazon S3 VOD Origin AWS Elemental MediaConnect Live Video Transport AWS Step Functions WorkflowMedia Source Files AWS Elemental MediaPackage makes it easy to enrich audience experiences with time-shifted TV and to better protect multiscreen content.
  • 41. © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 44 AWS Elemental MediaStore AWS Elemental MediaLive Live Video Processing Live Video Workflow Video On-Demand Workflow AWS Elemental MediaPackage Origination and JIT Packaging Live Channel Source AWS Elemental MediaStore Media-Optimized Storage and Origin AWS Elemental MediaTailor Personalization and Monetization AWS Elemental MediaConvert File-Based Video Processing Devices AWS Elemental Live On-Premises Encoding Amazon CloudFront CDN Amazon CloudFront CDN Amazon S3 Storage Amazon S3 VOD Origin AWS Elemental MediaConnect Live Video Transport AWS Step Functions WorkflowMedia Source Files AWS Elemental MediaStore acts as an HTTP origin optimized for fast, low- latency writes, decreasing the risk of buffering video.
  • 42. © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 45 AWS Elemental MediaTailor AWS Elemental MediaLive Live Video Processing Live Video Workflow Video On-Demand Workflow AWS Elemental MediaPackage Origination and JIT Packaging Live Channel Source AWS Elemental MediaStore Media-Optimized Storage and Origin AWS Elemental MediaTailor Personalization and Monetization AWS Elemental MediaConvert File-Based Video Processing Devices AWS Elemental Live On-Premises Encoding Amazon CloudFront CDN Amazon CloudFront CDN Amazon S3 Storage Amazon S3 VOD Origin AWS Elemental MediaConnect Live Video Transport AWS Step Functions WorkflowMedia Source Files AWS Elemental MediaTailor personalizes and delivers content while mitigating ad blocking and providing a better viewing experience.
  • 43. © 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 46 AWS Elemental MediaConvert AWS Elemental MediaLive Live Video Processing Live Video Workflow Video On-Demand Workflow AWS Elemental MediaPackage Origination and JIT Packaging Live Channel Source AWS Elemental MediaStore Media-Optimized Storage and Origin AWS Elemental MediaTailor Personalization and Monetization AWS Elemental MediaConvert File-Based Video Processing Devices AWS Elemental Live On-Premises Encoding Amazon CloudFront CDN Amazon CloudFront CDN Amazon S3 Storage Amazon S3 VOD Origin AWS Elemental MediaConnect Live Video Transport AWS Step Functions WorkflowMedia Source Files AWS Elemental MediaConvert provides transcoding for mezzanine, broadcast and multiscreen video delivery.
  • 44. S U M M I T © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 45. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Biggest threats to web applications today App Vulnerabilities Bad Bots DDoS 0 200 400 600 800 1000 1200 1400 1600 1800 Largest DDoS Attacks (Gbps) Mem cached Mirai botnet
  • 46. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Three layers of perimeter protection Build a highly scalable, secure, well-monitored, DDoS-protected application Objective: 1. Secure content delivery layer with reduced surface area 2. Firewall layer for common and customer specific exploits 3. DDoS protection layer for mitigating availability impact Software automation of security
  • 47. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Layered perimeter protection – Basic AWS Application EC2 Instance S3 Bucket Public Subnet Private Subnet ALB
  • 48. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T S3 Origin Access Identity • Prevents direct access to your Amazon S3 bucket • No S3 URLs are accessible directly Custom Origin Security Groups • Whitelist ONLY the CloudFront IP range • Protects origin from overload Restricting external access to your origin CloudFront ALB EC2CloudFront S3
  • 49. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Layered perimeter protection – Adding secure Content Delivery EC2 Instance S3 Bucket Public Subnet Private Subnet CloudFront ALB
  • 50. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Choosing a Web Application Firewall: AWS WAF Security Automations Managed Rules for AWS WAF Multiple Rule Condition Types Combine and build hierarchy Actions : Allow / Block / Count CloudWatch Metrics Sampled Web Requests Full Logs Lambda Automations AWS Firewall Manager
  • 51. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Layered perimeter protection – Adding a Firewall EC2 Instance S3 Bucket Public Subnet Private Subnet CloudFront WAF ALB Firewall Manager
  • 52. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Choosing a DDoS protection provider: AWS Shield Standard & Advanced Automatic Protection across customers Enhanced Protection baselined to you 24x7 access to DDoS Response Team (DRT) Built-in DDoS Protection for Everyone Point and Protect Wizard AWS WAF at no additional cost For protected resources AWS Firewall Manager at no additional cost Cost Protection for scaling CloudWatch Metrics Attack Diagnostics Global Threat Environment Dashboard
  • 53. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Layered perimeter protection – Adding DDoS Protection EC2 Instance S3 Bucket Public Subnet Private Subnet Shield Shield Advanced ALB CloudFront WAF Firewall Manager
  • 54. S U M M I T © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 55. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.S U M M I T Summary 1. Benefits of the the Amazon Global Network 2. How Universitá Pegaso delivers content via Amazon CloudFront 3. Improve the availability and performance of your applications with AWS Global Accelerator 4. Transport, Process, Package, Originate, and Monetize your video content with AWS Elemental Media Services 5. Secure your web applications with AWS Shield and AWS WAF