SlideShare a Scribd company logo
1 of 18
Download to read offline
Amazon Web Services – An Overview
Scott Weber – Vice President, Cloud Solutions at EagleDream Technologies
Customer Driven. Customer Focused.
We Are Cutting-Edge
We’re first to leverage new systems,
software, and ideas to provide smart
solutions that fit your needs.
We Value People
We offer many services, but we
serve people first, and through that
we produce quality work.
We Focus on Process
From start to finish, our processes
will guide your project to a
successful completion.
2Confidential | eagledream.com
Our Mission
Security Web DesignCloud Development Compliance Communications
3Confidential | eagledream.com
Cloud Provider Architectures Compared
AWS Region
Availability
Zone 1
Availability
Zone 2
Availability
Zone 3
The Other Guys
Single Data Center In a Region
4Confidential | eagledream.com
Shared Security Model
5Confidential | eagledream.com
Agenda
• Region Architecture
• Security
• Cost Management
• IaaS
• PaaS
• X-abilities
6Confidential | eagledream.com
Virtual Private Cloud Concepts
Internet
gateway
Endpoints
VPN
gateway
VPN
Connection
AWS
Direct
Connect
VPC NAT
Gateway
Private Public
Route 53
Hosted
Zone
Route
Table
Route
Table
7Confidential | eagledream.com
Virtual Private Cloud Concepts
Internet
gateway
Endpoints
VPN
gateway
VPN
Connection
AWS
Direct
Connect
172.30.x.x/16
8
Virtual Private Cloud Concepts
Confidential | eagledream.com
Internet
gateway
Endpoints
VPN
gateway
VPN
Connection
AWS
Direct
Connect
VPC NAT
Gateway
Private Public
Route 53
Hosted
Zone
Route
Table
Route
Table
Server 1
Security Group 1
Subnet 1
Server 2
Security Group 2
Subnet 2
NACL
Virtual Private Cloud Concepts
9
Security Groups
• Software defined firewalls
• Implicit Deny All
• Explicitly define access rules
• TCP
• UDP
• ICMP
• Inbound
• Protocol
• Port
• Source
Confidential | eagledream.com
Network Access Control Lists
• Layer 3 control
• IP or subnet to subnet control
• Must define in and out
• Network segmentation control
• Example use case – Separate Production and
Test environment traffic within a VPC
• Outbound
• Protocol
• Port
• Destination
• Source/Destination can be:
• Single IP Address
• IP Address Block
• Another Security Group
• The same Security Group itself
Security Groups and NACLs
10Confidential | eagledream.com
Internet
gateway
Endpoints
VPN
gateway
Private Public
CloudFront (CDN)
&
Web Application
Firewall
Elastic Load
Balancing
Securing Web Applications
11
Log files are the key
• There is no Span port in the Cloud for a
Next Gen Firewall
• Rely instead on log files
• VPC Flow logs
• ELB logs
• CloudFront logs
• Application logs
• CloudTrail logs
• Need tooling to mine and compare to
known threats
• Sumo Logic
• Combine your on-premises logs as
well into a single pane of glass
Confidential | eagledream.com
Services from AWS
• CloudTrail
• Log EVERY API call
• Config and Config Rules
• State history of objects
• Enforce object configuration
• Identity and Access Management
• Server Roles
• Shield and Shield Advanced
• Inspector
Securing the Cloud
12Confidential | eagledream.com
Cost Management
13Confidential | eagledream.com
Cost Management
14
IaaS, the beginning of the Cloud
• Compute
• T2 – Web servers, small
Databases
• M4 – General purpose
• C4 – Compute optimized
• X1 – SAP HANA workloads
• R4 – Memory optimized
• P2 – General purpose GPU
• G2 – Graphic intensive GPU
• F1 – Field Programmable Gate
Arrays
• I3 – Storage Optimized
• D3 – Dense storage
• From 1 vCPU and 0.5 GB of RAM to
128 vCPU and 2 TB of RAM
Confidential | eagledream.com
• Disk
• 1 GB to 16 TB – no RAID
necessary
• SSD storage for $0.10/GB/month
• Block level backups
• Purchase Provisioned IOPS
• File storage
• $0.004 - $0.023/GB/month
• Licensing
• All OS licensing is included in
pricing
• Dedicated servers for HIPAA
workloads
Infrastructure as a Service
15
DBaaS
• Let someone else do the “unmitigated
heavy lifting”
• Engines that are supported
• MariaDB
• MySQL
• Postgresql
• MS SQL
• Oracle
• Aurora – 5x the performance of
MySQL
• High availability with AWS managed
Master/Slave
Confidential | eagledream.com
DWaaS (Data Warehouse as a Service)
• As low as $0.25/hr to get started
• Scale to 5 PB on disk, and hundreds of
vCPUs
• Scale to Exabytes with new features
• Postgres-like interface
• Invoke Python functions from SQL
• Managed service with backup and high
availability
Platform as a Service
16
FaaS (Lambda)
• No more servers!
• Upload code and AWS handles the rest
• Java
• C#
• NodeJS
• Python
• Will automatically scale as wide as
needed
• Costs based on requests and memory
footprint and duration of execution time
• $0.20/million/month requests
• $0.00001667/GB-second/month
Confidential | eagledream.com
CCaaS (Amazon Connect)
• Call Center as a Service
• No monthly recurring charges – pay for
what you use
• Inbound and outbound rates
• Toll-free support
• Port in numbers
• Soft phone only
• Build integrations to CRM and other
APIs
Platform as a Service
17
Scalability
• Vertical or horizontal scaling –
horizontal is better
• Horizontal scaling via automation
• Spin up or down
• Customized triggers
• Customizable flows
• Windows or Linux
Confidential | eagledream.com
High Availability
• Multiple Availability Zone deployments
for IaaS and DBaaS
• Synchronous database replication
within the Region
• Stream files to other Regions
• Cross Region read replicas of
databases
• Cross Region backup distribution
Durability
• 11 9’s of durability for data stored in S3
• 5 9’s for data on Block storage - RAID is
not needed or recommended
• 99.95% SLA at the Availability Zone
level
<X>-abilities
18Confidential | eagledream.com
Contact Us
1.888.4EAGLEDREAM
info@eagledream.com
Headquarters | Rochester, NY
300 Trolley Blvd
Rochester, NY 14606
New England | Boston, MA
300 Baker Avenue, Suite 300
Concord, MA 01742
Primary Contact(s):
Scott Weber
Vice President, Cloud Solutions
Email: Scott.Weber@eagledream.com
We look forward to working with you. EagleDream.com

More Related Content

What's hot

AWS Security 101: Understanding the Shared Security Model - Jeff Westphal, Mi...
AWS Security 101: Understanding the Shared Security Model - Jeff Westphal, Mi...AWS Security 101: Understanding the Shared Security Model - Jeff Westphal, Mi...
AWS Security 101: Understanding the Shared Security Model - Jeff Westphal, Mi...AWS Chicago
 
(ENT201) New Generation Hybrid Architectures with Suncorp, NetApp, and AWS | ...
(ENT201) New Generation Hybrid Architectures with Suncorp, NetApp, and AWS | ...(ENT201) New Generation Hybrid Architectures with Suncorp, NetApp, and AWS | ...
(ENT201) New Generation Hybrid Architectures with Suncorp, NetApp, and AWS | ...Amazon Web Services
 
How IT at Getty Images Brokers Cloud Services
How IT at Getty Images Brokers Cloud ServicesHow IT at Getty Images Brokers Cloud Services
How IT at Getty Images Brokers Cloud ServicesRightScale
 
Managing application & instance state on AWS
Managing application & instance state on AWSManaging application & instance state on AWS
Managing application & instance state on AWSDavid Mat
 
Introducing and Benefits of Ultra Fast Cloud Direct Connectivity to and from ...
Introducing and Benefits of Ultra Fast Cloud Direct Connectivity to and from ...Introducing and Benefits of Ultra Fast Cloud Direct Connectivity to and from ...
Introducing and Benefits of Ultra Fast Cloud Direct Connectivity to and from ...Amazon Web Services
 
Automating Cloud Operations: Tips from Managed Services
Automating Cloud Operations: Tips from Managed ServicesAutomating Cloud Operations: Tips from Managed Services
Automating Cloud Operations: Tips from Managed ServicesAngela_Tripp
 
The Rise of Serverless Architectures
The Rise of Serverless ArchitecturesThe Rise of Serverless Architectures
The Rise of Serverless ArchitecturesBenny Bauer
 
Application Lifecycle Management on AWS
Application Lifecycle Management on AWSApplication Lifecycle Management on AWS
Application Lifecycle Management on AWSDavid Mat
 
(NET307) Pinterest: The road from EC2-Classic To EC2-VPC
(NET307) Pinterest: The road from EC2-Classic To EC2-VPC(NET307) Pinterest: The road from EC2-Classic To EC2-VPC
(NET307) Pinterest: The road from EC2-Classic To EC2-VPCAmazon Web Services
 
Beyond PaaS v.s IaaS: How to Manage Both
Beyond PaaS v.s IaaS: How to Manage BothBeyond PaaS v.s IaaS: How to Manage Both
Beyond PaaS v.s IaaS: How to Manage BothRightScale
 
DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...
DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...
DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...AWS Germany
 
Amazon relational database service (rds)
Amazon relational database service (rds)Amazon relational database service (rds)
Amazon relational database service (rds)AWS Riyadh User Group
 

What's hot (20)

Simplestream
SimplestreamSimplestream
Simplestream
 
AWS Security 101: Understanding the Shared Security Model - Jeff Westphal, Mi...
AWS Security 101: Understanding the Shared Security Model - Jeff Westphal, Mi...AWS Security 101: Understanding the Shared Security Model - Jeff Westphal, Mi...
AWS Security 101: Understanding the Shared Security Model - Jeff Westphal, Mi...
 
Thinkbox Software
Thinkbox SoftwareThinkbox Software
Thinkbox Software
 
(ENT201) New Generation Hybrid Architectures with Suncorp, NetApp, and AWS | ...
(ENT201) New Generation Hybrid Architectures with Suncorp, NetApp, and AWS | ...(ENT201) New Generation Hybrid Architectures with Suncorp, NetApp, and AWS | ...
(ENT201) New Generation Hybrid Architectures with Suncorp, NetApp, and AWS | ...
 
How IT at Getty Images Brokers Cloud Services
How IT at Getty Images Brokers Cloud ServicesHow IT at Getty Images Brokers Cloud Services
How IT at Getty Images Brokers Cloud Services
 
Industrial Light & Magic
Industrial Light & MagicIndustrial Light & Magic
Industrial Light & Magic
 
Managing application & instance state on AWS
Managing application & instance state on AWSManaging application & instance state on AWS
Managing application & instance state on AWS
 
BBC
BBCBBC
BBC
 
Ingest and storage options
Ingest and storage optionsIngest and storage options
Ingest and storage options
 
Introducing and Benefits of Ultra Fast Cloud Direct Connectivity to and from ...
Introducing and Benefits of Ultra Fast Cloud Direct Connectivity to and from ...Introducing and Benefits of Ultra Fast Cloud Direct Connectivity to and from ...
Introducing and Benefits of Ultra Fast Cloud Direct Connectivity to and from ...
 
Automating Cloud Operations: Tips from Managed Services
Automating Cloud Operations: Tips from Managed ServicesAutomating Cloud Operations: Tips from Managed Services
Automating Cloud Operations: Tips from Managed Services
 
The Rise of Serverless Architectures
The Rise of Serverless ArchitecturesThe Rise of Serverless Architectures
The Rise of Serverless Architectures
 
Application Lifecycle Management on AWS
Application Lifecycle Management on AWSApplication Lifecycle Management on AWS
Application Lifecycle Management on AWS
 
(NET307) Pinterest: The road from EC2-Classic To EC2-VPC
(NET307) Pinterest: The road from EC2-Classic To EC2-VPC(NET307) Pinterest: The road from EC2-Classic To EC2-VPC
(NET307) Pinterest: The road from EC2-Classic To EC2-VPC
 
Beyond PaaS v.s IaaS: How to Manage Both
Beyond PaaS v.s IaaS: How to Manage BothBeyond PaaS v.s IaaS: How to Manage Both
Beyond PaaS v.s IaaS: How to Manage Both
 
DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...
DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...
DevOps für mittlere Unternehmen und Großunternehmen - AWS Cloud Web Day für M...
 
Amazon relational database service (rds)
Amazon relational database service (rds)Amazon relational database service (rds)
Amazon relational database service (rds)
 
Sundog Media Toolkit
Sundog Media Toolkit Sundog Media Toolkit
Sundog Media Toolkit
 
Intro slides
Intro slides Intro slides
Intro slides
 
Serverless Patterns
Serverless PatternsServerless Patterns
Serverless Patterns
 

Similar to Amazon Web Services Architecture - An Overview

Cloud computing and Service Platforms
Cloud computing and Service Platforms Cloud computing and Service Platforms
Cloud computing and Service Platforms Vibhawa Nirmal
 
Virtualization and cloud computing
Virtualization and cloud computingVirtualization and cloud computing
Virtualization and cloud computingDeep Gupta
 
SMC301 The State of Serverless Computing
SMC301 The State of Serverless ComputingSMC301 The State of Serverless Computing
SMC301 The State of Serverless ComputingAmazon Web Services
 
AWS re:Invent 2016: The State of Serverless Computing (SVR311)
AWS re:Invent 2016: The State of Serverless Computing (SVR311)AWS re:Invent 2016: The State of Serverless Computing (SVR311)
AWS re:Invent 2016: The State of Serverless Computing (SVR311)Amazon Web Services
 
A Complete Guide Cloud Computing
A Complete Guide Cloud ComputingA Complete Guide Cloud Computing
A Complete Guide Cloud ComputingSripati Mahapatra
 
Cloud Migration and Portability Best Practices
Cloud Migration and Portability Best PracticesCloud Migration and Portability Best Practices
Cloud Migration and Portability Best PracticesRightScale
 
The State of Serverless Computing | AWS Public Sector Summit 2017
The State of Serverless Computing | AWS Public Sector Summit 2017The State of Serverless Computing | AWS Public Sector Summit 2017
The State of Serverless Computing | AWS Public Sector Summit 2017Amazon Web Services
 
Achieve business agility with Cloud APIs, Cloud-aware Apps, and Cloud DevOps ...
Achieve business agility with Cloud APIs, Cloud-aware Apps, and Cloud DevOps ...Achieve business agility with Cloud APIs, Cloud-aware Apps, and Cloud DevOps ...
Achieve business agility with Cloud APIs, Cloud-aware Apps, and Cloud DevOps ...Chris Haddad
 
Come costruire apllicazioni "12-factor microservices" in AWS
Come costruire apllicazioni "12-factor microservices" in AWSCome costruire apllicazioni "12-factor microservices" in AWS
Come costruire apllicazioni "12-factor microservices" in AWSAmazon Web Services
 
AWS 201 - A Walk through the AWS Cloud: What's New with AWS
AWS 201 - A Walk through the AWS Cloud: What's New with AWSAWS 201 - A Walk through the AWS Cloud: What's New with AWS
AWS 201 - A Walk through the AWS Cloud: What's New with AWSAmazon Web Services
 
VTU Open Elective 6th Sem CSE - Module 2 - Cloud Computing
VTU Open Elective 6th Sem CSE - Module 2 - Cloud ComputingVTU Open Elective 6th Sem CSE - Module 2 - Cloud Computing
VTU Open Elective 6th Sem CSE - Module 2 - Cloud ComputingSachin Gowda
 
Migrating Your Data Platform At a High Growth Startup
Migrating Your Data Platform At a High Growth StartupMigrating Your Data Platform At a High Growth Startup
Migrating Your Data Platform At a High Growth StartupDatabricks
 
Workshop : Wild Rydes Takes Off - The Dawn of a New Unicorn
Workshop : Wild Rydes Takes Off - The Dawn of a New UnicornWorkshop : Wild Rydes Takes Off - The Dawn of a New Unicorn
Workshop : Wild Rydes Takes Off - The Dawn of a New UnicornAmazon Web Services
 
Introduction to Cloud Computing 2021
Introduction to Cloud Computing 2021Introduction to Cloud Computing 2021
Introduction to Cloud Computing 2021Samuel Dratwa
 
CNG 256 cloud computing
CNG 256 cloud computingCNG 256 cloud computing
CNG 256 cloud computingFrank Victory
 

Similar to Amazon Web Services Architecture - An Overview (20)

Cloud computing and Service Platforms
Cloud computing and Service Platforms Cloud computing and Service Platforms
Cloud computing and Service Platforms
 
Virtualization and cloud computing
Virtualization and cloud computingVirtualization and cloud computing
Virtualization and cloud computing
 
GCP.pptx
GCP.pptxGCP.pptx
GCP.pptx
 
Cloud computing
Cloud computing Cloud computing
Cloud computing
 
SMC301 The State of Serverless Computing
SMC301 The State of Serverless ComputingSMC301 The State of Serverless Computing
SMC301 The State of Serverless Computing
 
AWS re:Invent 2016: The State of Serverless Computing (SVR311)
AWS re:Invent 2016: The State of Serverless Computing (SVR311)AWS re:Invent 2016: The State of Serverless Computing (SVR311)
AWS re:Invent 2016: The State of Serverless Computing (SVR311)
 
A Complete Guide Cloud Computing
A Complete Guide Cloud ComputingA Complete Guide Cloud Computing
A Complete Guide Cloud Computing
 
Jjm cloud computing
Jjm cloud computingJjm cloud computing
Jjm cloud computing
 
Cloud Migration and Portability Best Practices
Cloud Migration and Portability Best PracticesCloud Migration and Portability Best Practices
Cloud Migration and Portability Best Practices
 
The State of Serverless Computing | AWS Public Sector Summit 2017
The State of Serverless Computing | AWS Public Sector Summit 2017The State of Serverless Computing | AWS Public Sector Summit 2017
The State of Serverless Computing | AWS Public Sector Summit 2017
 
Achieve business agility with Cloud APIs, Cloud-aware Apps, and Cloud DevOps ...
Achieve business agility with Cloud APIs, Cloud-aware Apps, and Cloud DevOps ...Achieve business agility with Cloud APIs, Cloud-aware Apps, and Cloud DevOps ...
Achieve business agility with Cloud APIs, Cloud-aware Apps, and Cloud DevOps ...
 
Come costruire apllicazioni "12-factor microservices" in AWS
Come costruire apllicazioni "12-factor microservices" in AWSCome costruire apllicazioni "12-factor microservices" in AWS
Come costruire apllicazioni "12-factor microservices" in AWS
 
What is cloud
What is cloudWhat is cloud
What is cloud
 
AWS 201 - A Walk through the AWS Cloud: What's New with AWS
AWS 201 - A Walk through the AWS Cloud: What's New with AWSAWS 201 - A Walk through the AWS Cloud: What's New with AWS
AWS 201 - A Walk through the AWS Cloud: What's New with AWS
 
Cloud Computing
Cloud ComputingCloud Computing
Cloud Computing
 
VTU Open Elective 6th Sem CSE - Module 2 - Cloud Computing
VTU Open Elective 6th Sem CSE - Module 2 - Cloud ComputingVTU Open Elective 6th Sem CSE - Module 2 - Cloud Computing
VTU Open Elective 6th Sem CSE - Module 2 - Cloud Computing
 
Migrating Your Data Platform At a High Growth Startup
Migrating Your Data Platform At a High Growth StartupMigrating Your Data Platform At a High Growth Startup
Migrating Your Data Platform At a High Growth Startup
 
Workshop : Wild Rydes Takes Off - The Dawn of a New Unicorn
Workshop : Wild Rydes Takes Off - The Dawn of a New UnicornWorkshop : Wild Rydes Takes Off - The Dawn of a New Unicorn
Workshop : Wild Rydes Takes Off - The Dawn of a New Unicorn
 
Introduction to Cloud Computing 2021
Introduction to Cloud Computing 2021Introduction to Cloud Computing 2021
Introduction to Cloud Computing 2021
 
CNG 256 cloud computing
CNG 256 cloud computingCNG 256 cloud computing
CNG 256 cloud computing
 

Recently uploaded

Deliver Latency Free Customer Experience
Deliver Latency Free Customer ExperienceDeliver Latency Free Customer Experience
Deliver Latency Free Customer ExperienceOpsTree solutions
 
Bridging Between CAD & GIS: 6 Ways to Automate Your Data Integration
Bridging Between CAD & GIS:  6 Ways to Automate Your Data IntegrationBridging Between CAD & GIS:  6 Ways to Automate Your Data Integration
Bridging Between CAD & GIS: 6 Ways to Automate Your Data Integrationmarketing932765
 
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...Alkin Tezuysal
 
React JS; all concepts. Contains React Features, JSX, functional & Class comp...
React JS; all concepts. Contains React Features, JSX, functional & Class comp...React JS; all concepts. Contains React Features, JSX, functional & Class comp...
React JS; all concepts. Contains React Features, JSX, functional & Class comp...Karmanjay Verma
 
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24Mark Goldstein
 
Tampa BSides - The No BS SOC (slides from April 6, 2024 talk)
Tampa BSides - The No BS SOC (slides from April 6, 2024 talk)Tampa BSides - The No BS SOC (slides from April 6, 2024 talk)
Tampa BSides - The No BS SOC (slides from April 6, 2024 talk)Mark Simos
 
Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...Farhan Tariq
 
Kuma Meshes Part I - The basics - A tutorial
Kuma Meshes Part I - The basics - A tutorialKuma Meshes Part I - The basics - A tutorial
Kuma Meshes Part I - The basics - A tutorialJoão Esperancinha
 
Microsoft 365 Copilot: How to boost your productivity with AI – Part two: Dat...
Microsoft 365 Copilot: How to boost your productivity with AI – Part two: Dat...Microsoft 365 Copilot: How to boost your productivity with AI – Part two: Dat...
Microsoft 365 Copilot: How to boost your productivity with AI – Part two: Dat...Nikki Chapple
 
Which standard is best for your content?
Which standard is best for your content?Which standard is best for your content?
Which standard is best for your content?Rustici Software
 
Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Hiroshi SHIBATA
 
Landscape Catalogue 2024 Australia-1.pdf
Landscape Catalogue 2024 Australia-1.pdfLandscape Catalogue 2024 Australia-1.pdf
Landscape Catalogue 2024 Australia-1.pdfAarwolf Industries LLC
 
Decarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityDecarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityIES VE
 
Infrared simulation and processing on Nvidia platforms
Infrared simulation and processing on Nvidia platformsInfrared simulation and processing on Nvidia platforms
Infrared simulation and processing on Nvidia platformsYoss Cohen
 
Generative Artificial Intelligence: How generative AI works.pdf
Generative Artificial Intelligence: How generative AI works.pdfGenerative Artificial Intelligence: How generative AI works.pdf
Generative Artificial Intelligence: How generative AI works.pdfIngrid Airi González
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesThousandEyes
 
A Framework for Development in the AI Age
A Framework for Development in the AI AgeA Framework for Development in the AI Age
A Framework for Development in the AI AgeCprime
 
MuleSoft Online Meetup Group - B2B Crash Course: Release SparkNotes
MuleSoft Online Meetup Group - B2B Crash Course: Release SparkNotesMuleSoft Online Meetup Group - B2B Crash Course: Release SparkNotes
MuleSoft Online Meetup Group - B2B Crash Course: Release SparkNotesManik S Magar
 
Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024TopCSSGallery
 
UiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPathCommunity
 

Recently uploaded (20)

Deliver Latency Free Customer Experience
Deliver Latency Free Customer ExperienceDeliver Latency Free Customer Experience
Deliver Latency Free Customer Experience
 
Bridging Between CAD & GIS: 6 Ways to Automate Your Data Integration
Bridging Between CAD & GIS:  6 Ways to Automate Your Data IntegrationBridging Between CAD & GIS:  6 Ways to Automate Your Data Integration
Bridging Between CAD & GIS: 6 Ways to Automate Your Data Integration
 
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
 
React JS; all concepts. Contains React Features, JSX, functional & Class comp...
React JS; all concepts. Contains React Features, JSX, functional & Class comp...React JS; all concepts. Contains React Features, JSX, functional & Class comp...
React JS; all concepts. Contains React Features, JSX, functional & Class comp...
 
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
 
Tampa BSides - The No BS SOC (slides from April 6, 2024 talk)
Tampa BSides - The No BS SOC (slides from April 6, 2024 talk)Tampa BSides - The No BS SOC (slides from April 6, 2024 talk)
Tampa BSides - The No BS SOC (slides from April 6, 2024 talk)
 
Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...
 
Kuma Meshes Part I - The basics - A tutorial
Kuma Meshes Part I - The basics - A tutorialKuma Meshes Part I - The basics - A tutorial
Kuma Meshes Part I - The basics - A tutorial
 
Microsoft 365 Copilot: How to boost your productivity with AI – Part two: Dat...
Microsoft 365 Copilot: How to boost your productivity with AI – Part two: Dat...Microsoft 365 Copilot: How to boost your productivity with AI – Part two: Dat...
Microsoft 365 Copilot: How to boost your productivity with AI – Part two: Dat...
 
Which standard is best for your content?
Which standard is best for your content?Which standard is best for your content?
Which standard is best for your content?
 
Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024
 
Landscape Catalogue 2024 Australia-1.pdf
Landscape Catalogue 2024 Australia-1.pdfLandscape Catalogue 2024 Australia-1.pdf
Landscape Catalogue 2024 Australia-1.pdf
 
Decarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityDecarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a reality
 
Infrared simulation and processing on Nvidia platforms
Infrared simulation and processing on Nvidia platformsInfrared simulation and processing on Nvidia platforms
Infrared simulation and processing on Nvidia platforms
 
Generative Artificial Intelligence: How generative AI works.pdf
Generative Artificial Intelligence: How generative AI works.pdfGenerative Artificial Intelligence: How generative AI works.pdf
Generative Artificial Intelligence: How generative AI works.pdf
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
 
A Framework for Development in the AI Age
A Framework for Development in the AI AgeA Framework for Development in the AI Age
A Framework for Development in the AI Age
 
MuleSoft Online Meetup Group - B2B Crash Course: Release SparkNotes
MuleSoft Online Meetup Group - B2B Crash Course: Release SparkNotesMuleSoft Online Meetup Group - B2B Crash Course: Release SparkNotes
MuleSoft Online Meetup Group - B2B Crash Course: Release SparkNotes
 
Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024
 
UiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to Hero
 

Amazon Web Services Architecture - An Overview

  • 1. Amazon Web Services – An Overview Scott Weber – Vice President, Cloud Solutions at EagleDream Technologies
  • 2. Customer Driven. Customer Focused. We Are Cutting-Edge We’re first to leverage new systems, software, and ideas to provide smart solutions that fit your needs. We Value People We offer many services, but we serve people first, and through that we produce quality work. We Focus on Process From start to finish, our processes will guide your project to a successful completion. 2Confidential | eagledream.com Our Mission Security Web DesignCloud Development Compliance Communications
  • 3. 3Confidential | eagledream.com Cloud Provider Architectures Compared AWS Region Availability Zone 1 Availability Zone 2 Availability Zone 3 The Other Guys Single Data Center In a Region
  • 5. 5Confidential | eagledream.com Agenda • Region Architecture • Security • Cost Management • IaaS • PaaS • X-abilities
  • 6. 6Confidential | eagledream.com Virtual Private Cloud Concepts Internet gateway Endpoints VPN gateway VPN Connection AWS Direct Connect VPC NAT Gateway Private Public Route 53 Hosted Zone Route Table Route Table
  • 7. 7Confidential | eagledream.com Virtual Private Cloud Concepts Internet gateway Endpoints VPN gateway VPN Connection AWS Direct Connect 172.30.x.x/16
  • 8. 8 Virtual Private Cloud Concepts Confidential | eagledream.com Internet gateway Endpoints VPN gateway VPN Connection AWS Direct Connect VPC NAT Gateway Private Public Route 53 Hosted Zone Route Table Route Table Server 1 Security Group 1 Subnet 1 Server 2 Security Group 2 Subnet 2 NACL Virtual Private Cloud Concepts
  • 9. 9 Security Groups • Software defined firewalls • Implicit Deny All • Explicitly define access rules • TCP • UDP • ICMP • Inbound • Protocol • Port • Source Confidential | eagledream.com Network Access Control Lists • Layer 3 control • IP or subnet to subnet control • Must define in and out • Network segmentation control • Example use case – Separate Production and Test environment traffic within a VPC • Outbound • Protocol • Port • Destination • Source/Destination can be: • Single IP Address • IP Address Block • Another Security Group • The same Security Group itself Security Groups and NACLs
  • 10. 10Confidential | eagledream.com Internet gateway Endpoints VPN gateway Private Public CloudFront (CDN) & Web Application Firewall Elastic Load Balancing Securing Web Applications
  • 11. 11 Log files are the key • There is no Span port in the Cloud for a Next Gen Firewall • Rely instead on log files • VPC Flow logs • ELB logs • CloudFront logs • Application logs • CloudTrail logs • Need tooling to mine and compare to known threats • Sumo Logic • Combine your on-premises logs as well into a single pane of glass Confidential | eagledream.com Services from AWS • CloudTrail • Log EVERY API call • Config and Config Rules • State history of objects • Enforce object configuration • Identity and Access Management • Server Roles • Shield and Shield Advanced • Inspector Securing the Cloud
  • 14. 14 IaaS, the beginning of the Cloud • Compute • T2 – Web servers, small Databases • M4 – General purpose • C4 – Compute optimized • X1 – SAP HANA workloads • R4 – Memory optimized • P2 – General purpose GPU • G2 – Graphic intensive GPU • F1 – Field Programmable Gate Arrays • I3 – Storage Optimized • D3 – Dense storage • From 1 vCPU and 0.5 GB of RAM to 128 vCPU and 2 TB of RAM Confidential | eagledream.com • Disk • 1 GB to 16 TB – no RAID necessary • SSD storage for $0.10/GB/month • Block level backups • Purchase Provisioned IOPS • File storage • $0.004 - $0.023/GB/month • Licensing • All OS licensing is included in pricing • Dedicated servers for HIPAA workloads Infrastructure as a Service
  • 15. 15 DBaaS • Let someone else do the “unmitigated heavy lifting” • Engines that are supported • MariaDB • MySQL • Postgresql • MS SQL • Oracle • Aurora – 5x the performance of MySQL • High availability with AWS managed Master/Slave Confidential | eagledream.com DWaaS (Data Warehouse as a Service) • As low as $0.25/hr to get started • Scale to 5 PB on disk, and hundreds of vCPUs • Scale to Exabytes with new features • Postgres-like interface • Invoke Python functions from SQL • Managed service with backup and high availability Platform as a Service
  • 16. 16 FaaS (Lambda) • No more servers! • Upload code and AWS handles the rest • Java • C# • NodeJS • Python • Will automatically scale as wide as needed • Costs based on requests and memory footprint and duration of execution time • $0.20/million/month requests • $0.00001667/GB-second/month Confidential | eagledream.com CCaaS (Amazon Connect) • Call Center as a Service • No monthly recurring charges – pay for what you use • Inbound and outbound rates • Toll-free support • Port in numbers • Soft phone only • Build integrations to CRM and other APIs Platform as a Service
  • 17. 17 Scalability • Vertical or horizontal scaling – horizontal is better • Horizontal scaling via automation • Spin up or down • Customized triggers • Customizable flows • Windows or Linux Confidential | eagledream.com High Availability • Multiple Availability Zone deployments for IaaS and DBaaS • Synchronous database replication within the Region • Stream files to other Regions • Cross Region read replicas of databases • Cross Region backup distribution Durability • 11 9’s of durability for data stored in S3 • 5 9’s for data on Block storage - RAID is not needed or recommended • 99.95% SLA at the Availability Zone level <X>-abilities
  • 18. 18Confidential | eagledream.com Contact Us 1.888.4EAGLEDREAM info@eagledream.com Headquarters | Rochester, NY 300 Trolley Blvd Rochester, NY 14606 New England | Boston, MA 300 Baker Avenue, Suite 300 Concord, MA 01742 Primary Contact(s): Scott Weber Vice President, Cloud Solutions Email: Scott.Weber@eagledream.com We look forward to working with you. EagleDream.com

Editor's Notes

  1. Bigger text? emphasize