Misc. Flashcards
AWS Management Console
- Lets manage and access individual AWS resources through a web-based user interface
AWS Resource Groups
- Enables you to create logical groups of resources based on factors such as tags, regions, resource types, or other criteria.
- Users can create custom groups that represent specific applications, environments (e.g., development, testing, production)
Group
composed of users where policies can be attached.
Policies
permissions granted to users
Roles
- Assumed by users
- Temporary
AWS Inspector
- An automated security assessment service
- Helps improve the security and compliance of applications
CloudFormation
- Allows you to use simple text files to model and provision
- Infrastructure as code
DMS
(Database Migration Service)
Used to migrate databases from on-premises database system into AWS
KMS
(Key Management Service)
Managed service that makes it easy to create and control the encryption keys
CloudHSM
(Hardware Security Module)
Enables you to easily generate and use your own encryption keys on the AWS Cloud
AWS Cost & Usage Report
- Lists AWS usage for each service category used by an account and its IAM users in an hourly or daily line items, any tags that have been activated for cost allocation purposes
AWS Server Migration Service (SMS)
- Agentless service
- Makes it easier and faster for you to migrate thousands of on-premises workloads to AWS
AWS Storage Gateway
- Connects on-premises software appliance with cloud-based storage
- Provides seamless integration with data security features between IT environment and AWS storage infrastructure
Amazon ElastiCache for Redis
- Fast in-memory data store that provides sub-millisecond latency to power IoT applications
Penetration Testing
The practice of testing a network or web application to find security vulnerabilities that an attacker could exploit
CloudFront
- Delivers content to end users with low latency
- Caches common responses
DynamoDB DAX
- In-memory cache for Dynamo
- Fully managed, highly available
- Used to reduce the latency of requests to a database from millisecond to microseconds
S3 pricing is based on 4 factors:
- The storage class you have chosen
- The total amount of data (gb) you’ve stored
- Data transfer out
- Number of requests
Amazon EMR
- Reliably handles a broad set of big data, log analysis, web indexing, data transformations (ETL), ML, financial analysis, bioinformatics
Amazon S3 Transfer Acceleration
Helps to read and write data to Amazon S3 over long geographic distances with low latency
CloudEndure
Enables you to migrate running machine images into Amazon EC2 with their data
AWS X-Ray
- Easily detect where high latencies are occurring
- Debugging service
Amazon Cognito
- Lets you add user sign-up, Sign-in, and access control to your web and mobile apps quickly and easily
- Lets users access applications through mobile devices using trusted identity providers like fb
Key design principles of AWS Cloud
- scalability
- disposable resources
- automation
- loose coupling
- managed services instead of servers
- flexible data storage options
ECS
Elastic Container Service
- highly scalable
- supports Docker containers
Macie
- fully managed Data Security & Data Privacy service
- uses machine learning and pattern matching to protect ur sensitive data in AWS
- PII
Predictive Scaling
- Uses daily and weekly trends to determine when to scale
AMI
Amazon Machine Image
- Provides the information required to launch an instance
AppStream 2.0
- non-persistent desktop and applications service for remotely accessing your work
Amazon Workspace
- fully managed service
- for windows and Linux that lets you to access resources from any supported device
AWS Computer Optimizar
- Machine Learning
- Used to analyze the historical usage patterns
- Helps you identify the most optimal AWS resources
Launch Wizard
- Sizing, configuration, deploying 3rd party applications
-SAP
App Runner
- auto builds/deploys containerized applications
AWS Managed Service
- helps you adopt AWS at scale and operate more efficiently and securely
CloudWatch Logs Insights
CloudWatch Logs Stream
- searching and analyzing
- sequence of log events/ does not utilize queries
Application Discovery Service
- helps you plan migration to the AWS Cloud by collecting usage and configuration data about your on-premises servers
PrivateLink
- private connectivity
- between on-premises and VPC, AWS services w/o exposing it to the public
Access Advisor
Helps identify unnecessary permissions that have been assigned to users
S3 File Gateway
- allows you to store and access objects in S3 from NFS or SMB file data with local caching