AWS Flashcards
Operational Excellence: (5)
Perform operations as code
Anticipate failure
Learn from all operational failures
Make frequent, small, reversible changes
Refine operations procedures frequently
Reliability: (5)
Scale horizontally
Stop guessing capacity
Test recovery procedures
Automatically recover from failure
Manage change in automation
Performance Efficiency: (5)
Democratize advanced technologies
Use serverless architectures
Go global in minutes
Experiment more often
Consider mechanical sympathy
Stores/secures encrypted credentials/passwords, eliminating the need to hard-code them for API calls
Secrets Manager
used to give your CloudFront distribution permission to fetch a private object from your origin server
Origin Access Identity
Connects VPCs and on-premises networks (Hub and Spoke)
Transit Gateway
Gather information about on-premises environment for migration
Application Discovery Service:
Moves large amounts of data from on-premises to AWS
Data Sync
ML-bases tool to recommend best compute solutions for a workload
Compute Optimizer:
One platform to manage VPC security groups, Shield, and WAF rules
Firewall manager:
Enables users to share AWS resources easily and securely.
Resource Access Manager:
Automates the set up and governance a secure and compliant multi-account AWS environment
Control tower:
Automates security checks across multiple accounts.
Security Hub
Allows for a single user’s password to seamlessly access many different machines/services (3rd party)
Active Directory (MS)
automated deployment for workloads via cloud formation templates
QuickStarts
allows you to set up and run popular in-memory data stores (high throughput/low latency (like Redis and Memcached)
Elasticache
Provides on-premises applications with access to unlimited cloud storage
Storage Gateway
For Site to site VPN (on premises side)
Customer Gateway
For Site to site VPN (VPC Subnet side)
Virtual Private Gateway
Centralized console for managing hybrid cloud environment
Systems Manager
Connects on-premises services to 1000s of VPCs
PrivateLink
Launches popular file systems like Windows and Lustre
FSx:
Uses SQL to process data from data streams
Kinesis Data Analytics:
Centralize and automatic backup of data
AWS Backup
Self-service contact/call center GUI
Connect
5G routing for application traffic to servers without leaving the telecommunications network.
Wavelength
Message broker service - facilities message brokers (Apache ActiveMQ and RabbitMQ) that allows cross-platform exchange of information (sub for SNS, SQS)
MQ:
Create/trigger a rule to perform scheduled tasks (CRON), or to react to events happening within your AWS accounts
EventBridge
grants access to a specific resource(s)
Resource-based policy:
used to restrict which services, resources, and API actions users/roles can use (in Organizations)
Service Control Policies:
View/Manage your resource limits in a centralized location
Service Quotas (Service Limits):
built by solutions architects to help deploy popular technologies
AWS Quick Starts:
visually coordinate the the assembly of application components and microservices
Step Function:
USB security key device using tap/touch
U2F (Universal 2nd Factor) Security Key:
in-memory cache that delivers fast read performance of DynamoDB tables
DAX:
provisioning rightsizing recommendations for EC2/auto scaling, EBS, and Lambda
Compute Optimizer:
replicate data and scale automatically across regions (active/active)
Dynamo DB Global Tables:
A service that creates temporary, limited-privileges credentials (when request is approved)
Security Token Service (STS)
A way to extend Microsoft AD onto AWS
Directory Services
Converts media files stored in S3 into the formats required by customer playback devices (phones, etc.)
Elastic Transcoder
Store and sync data across mobile and web apps in real-time without a GraphQL server
AppSync
Tools and services for developing and deploying scalable full stack web and mobile applications.
Amplify
Application testing service - web and mobile apps against desktop browsers, real mobile devices, and tablets
Device Farm
Scan and gather information about on-premises data centers and dependency mapping
Application Discovery Service
Simplify migration by using lift-and-shift
Application migration service
A scalable 2-way (outbound/inbound) marketing communications service
Pinpoint
Allows you to download satellite data to your AWS VPC within seconds
Ground Station