AWS Week in Review – Amazon EC2 Instance Connect Endpoint, Detective, Amazon S3 Dual Layer Encryption, Amazon Verified Permission – June 19, 2023

0
472

[ad_1]

Voiced by Polly

This week, I’ll meet you at AWS companion’s Jamf Nation Live in Amsterdam the place we’re exhibiting use Amazon EC2 Mac to deploy your distant developer workstations or configure your iOS CI/CD pipelines within the cloud.Mac in an instant

Last Week’s Launches
While I used to be touring final week, I saved an eye fixed on the AWS News. Here are some launches that obtained my consideration.

Amazon EC2 Instance Connect Endpoint. Endpoint for EC2 Instance Connect means that you can securely entry Amazon EC2 cases utilizing their non-public IP addresses, making the usage of bastion hosts out of date. Endpoint for EC2 Instance Connect is by far my favourite launch from final week. With EC2 Instance Connect, you employ AWS Identity and Access Management (IAM) insurance policies and principals to regulate SSH entry to your cases. This removes the necessity to share and handle SSH keys. We additionally up to date the AWS Command Line Interface (AWS CLI) to mean you can simply join or open a secured tunnel to an occasion utilizing solely its occasion ID. I learn and contributed to a few threads on social media the place you identified that AWS Systems Manager Session Manager already supplied comparable capabilities. You’re proper. But the additional benefit of EC2 Instance Connect Endpoint is that it means that you can use your present SSH-based instruments and libraries, such because the scp command.

Amazon Inspector now helps code scanning of AWS Lambda capabilities. This expands the present functionality to scan Lambda capabilities and related layers for software program vulnerabilities in software bundle dependencies. Amazon Detective additionally extends discovering teams to Amazon Inspector. Detective mechanically collects findings from Amazon Inspector, GuardDuty, and different AWS safety companies, reminiscent of AWS Security Hub, to assist enhance situational consciousness of associated safety occasions.

Amazon Verified Permissions is mostly out there. If you’re designing or growing enterprise purposes that have to implement user-based permissions, you’ve got a brand new choice to centrally handle software permissions. Verified Permissions is a fine-grained permissions administration and authorization service in your purposes that can be utilized at any scale. Verified Permissions centralizes permissions in a coverage retailer and helps builders use these permissions to authorize person actions inside their purposes. Similarly to the best way an identification supplier simplifies authentication, a coverage retailer allows you to handle authorization in a constant and scalable method. Read Danilo’s put up to find the small print.

Amazon S3 Dual-Layer Server-Side Encryption with keys saved in AWS Key Management Service (DSSE-KMS). Some closely regulated industries require double encryption to retailer some sort of knowledge at relaxation. Amazon Simple Storage Service (Amazon S3) affords DSSE-KMS, a brand new free encryption possibility that gives two layers of knowledge encryption, utilizing completely different keys and completely different implementation of the 256-bit Advanced Encryption Standard with Galois Counter Mode (AES-GCM) algorithm. My colleague Irshad’s put up has all the small print.

AWS CloudPath Lake Dashboards present out-of-the-box visibility and prime insights out of your audit and safety information instantly throughout the CloudPath Lake console. CloudTrail Lake options quite a lot of AWS curated dashboards so you will get began immediately – with no required detailed dashboard setup or SQL expertise.

AWS IAM Identity Center now helps automated person provisioning from Google Workspace. You can now join your Google Workspace to AWS IAM Identity Center (successor to AWS Single Sign-On) as soon as and handle entry to AWS accounts and purposes centrally in IAM Identity Center.

AWS CloudShell is now out there in 12 extra areas. AWS CloudShell is a browser-based shell that makes it simpler to securely handle, discover, and work together along with your AWS assets. The record of the 12 new Regions is detailed within the launch announcement.

For a full record of AWS bulletins, remember to control the What’s New at AWS web page.

Other AWS News
Here are another updates and information that you simply may need missed:

  • AWS Extension for Stable Diffusion WebUI. WebUI is a well-liked open-source internet interface that means that you can simply work together with Stable Diffusion generative AI. We constructed this extension that will help you emigrate present workloads (reminiscent of inference, practice, and ckpt merge) out of your native or standalone servers to the AWS Cloud.
  • GoDaddy developed a multi-Region, event-driven system. Their system handles 400 tens of millions occasions per day. They plan to scale it to course of 2 billion messages per day in a close to future. My colleague Marcia explains the element of their structure in her put up.
  • The Official AWS Podcast – Listen every week for updates on the most recent AWS information and deep dives into thrilling use circumstances. There are additionally official AWS podcasts in a number of languages. Check out the podcasts in FrenchGermanItalian, and Spanish.
  • AWS Open Source News and Updates – This is a publication curated by my colleague Ricardo to carry you the most recent open supply tasks, posts, occasions, and extra.

Upcoming AWS Events
Check your calendars and join these AWS occasions:

That’s all for this week. Check again subsequent Monday for one more Week in Review!

This put up is a part of our Week in Review sequence. Check again every week for a fast roundup of attention-grabbing information and bulletins from AWS!
— seb

LEAVE A REPLY

Please enter your comment!
Please enter your name here