More Related Content Similar to Is it Up? Operating Effectively in AWS (20) More from Amazon Web Services (20) Is it Up? Operating Effectively in AWS1. P U B L I C S E C T O R
S U M M I T
Canberra, ACT
2. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
“Is it up?” – Operating Effectively in AWS
Alan Halachmi
Sr. Manager, Solutions Architecture
AWS
3. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Agenda
Agility and control
AWS operations tools
Automating operations
Next steps
4. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
5. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Governance control has driven your choice
GOVERNANCE
—
AGILITY
—
6. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Business agility and governance control
ꟷ
GOVERNANCE
—
AGILITY
—
Experiment
Be productive
Respond quickly
to change
7. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Why AWS for management and governance
Scale
1 quadrillion
Third-party solutions
4,500+
Cost savings
$100s of millions
8. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
—
Provision
—
Operate
Three aspects to achieving agility and control
—
Enable
BUSINESS AGILITY + GOVERNANCE CONTROL
9. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
AWS management and governance services
BUSINESS AGILITY + GOVERNANCE CONTROL
—
Enable
AWS
Control Tower
AWS
Organizations
AWS
Budgets
AWS
License Manager
10. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
—
Provision
AWS management and governance services
BUSINESS AGILITY + GOVERNANCE CONTROL
AWS
OpsWorks
AWS
Marketplace
AWS
CloudFormation
AWS
Service Catalog
11. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
—
Operate
AWS management and governance services
BUSINESS AGILITY + GOVERNANCE CONTROL
Amazon
CloudWatch
AWS
CloudTrail
AWS Systems
Manager
AWS
Config
AWS Trusted
Advisor
AWS Cost and
Usage Report
AWS
Cost Explorer
12. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Four aspects to operate with agility and control Operate
Optimize
Analyze and reduce cost; improve
efficiency and security posture
Act
Take operational
action on resources
Audit
Audit resource configurations,
user access, and policy enforcement
Monitor
Monitor resources
and applications
13. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
14. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Operate with agility + control Operate
Optimize to reduce cost and improve security posture
AWS Service Health Dashboard
AWS Personal Health Dashboard
Amazon CloudWatch
AWS Trusted Advisor
AWS Cost and Usage Report
AWS Cost Explorer
AWS Systems Manager
AWS CloudTrail
AWS Config
15. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
AWS Service Health Dashboard
Global Service Availability
12 Months of service history
Consumable via rss
Links to previous service event
summaries
https://status.aws.amazon.com/
16. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
AWS Health
• Increased transparency into underlying infrastructure
• AWS Health API for easy integration
• Integration for notifications and automated actions
x
17. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
AWS Personal
Health
Dashboard
Health API
Amazon
CloudWatch
Events
Amazon
Elasticsearch
Service
(Amazon ES)
How does AWS Health work?
AWS
Health
18. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Complete visibility of cloud
resources and applications Cloud native
defaults
Monitor with
automation
Single solution for
metrics and logs
Highly
scalable
Logs
Events
Metrics
Dash-
boards
Alarms
Agent and
APIs
Amazon CloudWatch
19. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Amazon CloudWatch: Key use cases
1
—
Performance and
availability monitoring
2
—
Troubleshooting
3
—
Automation and
remediation
4
—
Log management
and analytics
5
—
Cloud migration
20. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
AWS Trusted Advisor
AWS Trusted Advisor
21. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
22. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Automation best practices
Define context
Principle of least privilege
Think event driven
Think serverless
23. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
How does automation work?
Amazon
CloudWatch
Amazon
EC2
AWS
Lambda
Amazon
Kinesis
AWS Step
FunctionsAmazon ECS
AWS Batch
AWS
CodePipeline
AWS
CodeBuild
Amazon
SQS
Amazon
SNS
Amazon EC2
Systems
Manager
AWS Health
AWS Trusted Advisor
24. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Example: Automating reboot notifications
25. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Example: Resize Amazon EC2 instance type
ResizeAutomation
When an Amazon EC2 instance is reported to be overutilized, trigger an SSM
automation document to request approval to resize the instance to a larger instance
type
26. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Example: Amazon EBS lost volume recovery automation
When an Amazon EBS volume is reported as lost by AWS Health, you can
automatically recover the affected Amazon EC2 instance from a recent Amazon
Machine Image backup
27. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
AWS open source samples
You can leverage Trusted Advisor and AWS Health to automate best
practices and operational health
The samples in the following open-source repos make it easy:
https://github.com/aws/Trusted-Advisor-Tools/
https://github.com/aws/aws-health-tools
https://aws.amazon.com/blogs/opensource/
28. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Third-party and open source solutions
+ THOUSANDS MORE ON THE AWS MARKETPLACE
29. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
TECHNICAL ACCOUNT
MANAGER (TAM)
Designated technical point of contact
to all necessary AWS expertise
SUPPORT
CONCIERGE
Dedicated team of enterprise account specialists
to help with billing and account subjects
SMEs
Cloud Support Engineers, Solutions Architects,
and product teams are available for guidance
TRUSTED
ADVISOR (TA)
Online resource to help you reduce cost,
increase performance, and improve security
by optimising your AWS environment
PERSONAL
HEALTH
DASHBOARD
(PHD)
Delivers alerts and remediation
guidance when AWS is
experience events that may
impact your environment
SUPPORT
API
Programmatic access to AWS
Support Center features to create,
manage, and close your support
cases, and operationally manage
your TA check requests and status
INFRASTRUCTURE EVENT
MANAGEMENT (IEM)
Focused planning and support
business-critical events
(e.g. launches or migrations)
WELL-ARCHITECTED
REVIEW
Detailed review of your
architecture guidance on how
to best design your systems
ARCHITECTURE
SUPPORT
Consultative reviews of your
application architecture and how
to align it with AWS
OPERATIONS
SUPPORT
Consultative reviews of your cloud
operations and advice for optimisationTRAINING
Credits for online self-paced
labs provided through an AWS
training provider
ABUSE
TEAM
Assists you when AWS resources are impacted
by things such as Spam, Port scanning,
Denial of Service attacks (DDoS), or malware
AWS Enterprise Support
30. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
31. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Next steps
Dive deep
—
Analyze your organization’s key
use cases, users, and their roles
Review
—
Use the AWS Well-Architected
Tool to identify opportunities
Engage
—
Engage AWS specialists to discuss
your implementation plan