Professional Documents
Culture Documents
Course Navigation
AWS Cer t if ied Clou d Pr act it ion er (CLF-C01)
Dem yst if yin g t h e
Clou d
Section 1
Get t in g St ar t ed
w it h AWS
Section 2
Th e Big Pict u r e
Section 3
I den t it y an d Access
M an agem en t (I AM )
Section 4
AWS Net w or k in g
Section 5
AWS Com pu t e
Section 6
AWS St or age
Section 7
Next
Hitchhiker 's Guide to AWS Cloud
Course Navigation
AWS Cer t if ied Clou d Pr act it ion er (CLF-C01)
Elast icit y an d Scalin g
EC2
Section 8
Con t en t Deliver y an d
Dom ain Nam e Syst em
(DNS)
Section 9
M on it or in g an d
Loggin g
Section 10
Secu r it y an d
Com plian ce
Section 14
Back Next
Hitchhiker 's Guide to AWS Cloud
Course Navigation
AWS Cer t if ied Clou d Pr act it ion er (CLF-C01)
Ot h er AWS Ser vices
Section 15
AWS Billin g an d
Su ppor t Ser vices
Section 16
Back Next
Dem ystifying the Cloud
Course Navigation
I n t h e Begin n in g, Bef or e Th er e Was a Clou d
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:n in
In g,
the Beginning,
Bef or e Th er e
Before
Was a There
Clou d Was a Cloud
Topic 7: What Are Clouds I hope you find the course entertaining as well as insightful. I'm ready to get
Made Of?: Just the FAQs started, and I bet you are too. So it 's tim e to wrap up this welcom e m essage
and jum p straight into the course.
Topic 8: Wrap It Up:
Dem ystifying the Cloud Let 's get started!
TiaWilliams
AWS Tr ain in g Ar ch it ect
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
I n t h e Begin n in g, Bef or e Th er e Was a Clou d
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:n in
In g,
the Beginning,
Bef or e Th er e
Before
Was a There
Clou d Was a Cloud
AWS Cert ified Cloud Pract it ioner:
Topic 2: What Are Clouds
Made Of? What Are Clouds Made Of?
Topic 3: Introduction to
Cloud Term inology
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
I n t h e Begin n in g, Bef or e Th er e Was a Clou d
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
In the beginning...
Topic
Begin1:n in
In g,
the Beginning,
Bef or e Th er e
Before
Was a There
Clou d Was a Cloud
Topic 3: Introduction to
Cloud Term inology
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
I n t h e Begin n in g, Bef or e Th er e Was a Clou d
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:n in
In g,
the Beginning,
Bef or e Th er e
Before
Was a There
Clou d Was a Cloud
Topic 3: Introduction to
Cloud Term inology
Back t o M ain
Dem ystifying the Cloud
Course Navigation
I n t h e Begin n in g, Bef or e Th er e Was a Clou d
Dem yst if yin g t h e Clou d
Section 1
Topic 3: Introduction to
Cloud Term inology
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
I n t h e Begin n in g, Bef or e Th er e Was a Clou d
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:n in
In g,
the Beginning,
Bef or e Th er e
Before
Was a There
Clou d Was a Cloud
Topic 3: Introduction to
Cloud Term inology
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
I n t h e Begin n in g, Bef or e Th er e Was a Clou d
Dem yst if yin g t h e Clou d Un ch eck ed Dat a Cen t er Gr ow t h
Section 1 Server Sprawl
Topic 1: I n t h e
Topic
Begin1:n in
In g,
the Beginning,
Bef or e Th er e
Before
Was a There
Clou d Was a Cloud
Topic 3: Introduction to
Cloud Term inology
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
I n t h e Begin n in g, Bef or e Th er e Was a Clou d
Dem yst if yin g t h e Clou d
Section 1 Bu sin ess Ch allen ges
Topic 1: I n t h e
Topic
Begin1:n in
In g,
the Beginning,
Bef or e Th er e
Cost Control
Before Capital expenditures for equipm ent purchases. Equipm ent lifecycle is typically three
Was a There
Clou d Was a Cloud
to five years.
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
I n t h e Begin n in g, Bef or e Th er e Was a Clou d
Dem yst if yin g t h e Clou d Th e Cor por at e Dat a Cen t er
Section 1 Dat a Cen t er
Topic 1: I n t h e
Topic
Begin1:n in
In g,
the Beginning,
Bef or e Th er e
Before
Was a There
Clou d Was a Cloud
Topic 3: Introduction to
Cloud Term inology
Rem ot e Wor k er
Rem ot e Wor k er
Back t o M ain
Dem ystifying the Cloud
Course Navigation
Wh at Ar e Clou ds M ade Of ?
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e
Before There
Was a Clou d Was a Cloud
Topic 2: Wh at Ar e Clou ds
Topic
M ade2:OfWhat
? Are Clouds AWS Cert ified Cloud Pract it ioner:
Made Of?
What Are Clouds Made Of?
Topic 3: Introduction to
Cloud Term inology
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
Wh at Ar e Clou ds M ade Of ?
Dem yst if yin g t h e Clou d Wh at I s Clou d Com pu t in g?
Section 1
Cloud services are typically hardware (infrastructure) and application
Topic 1: I n t h e services provided over the internet (could be any network). Cloud
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e
services com panies provide resources (i.e., com pute, network, storage,
Before There
Was a Clou d Was a Cloud
and database) as a service so that custom ers do not have to incur the
Topic 2: Wh at Ar e Clou ds cost of acquiring and m anaging the required com ponents.
Topic
M ade2:OfWhat
? Are Clouds
Made Of?
SaaS:
Topic 8: Wrap It Up: Entire infrastructure,
Dem ystifying the Cloud Sof t w ar e as a Ser vice operating system , and
software provided by a
third party
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
Wh at Ar e Clou ds M ade Of ?
Dem yst if yin g t h e Clou d
Section 1
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
Wh at Ar e Clou ds M ade Of ?
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e
Before There
Was a Clou d Was a Cloud
Topic 2: Wh at Ar e Clou ds
Com pu t e
Topic
M ade2:OfWhat
? Are Clouds
Made Of? Storage Dat abases
Topic 3: Introduction to
Cloud Term inology
Back t o M ain
Dem ystifying the Cloud
Course Navigation
I n t r odu ct ion t o Clou d Ter m in ology
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e
Before There
Was a Clou d Was a Cloud
Topic 2: Wh at Ar e Clou ds
Topic
M ade2:OfWhat
? Are Clouds
AWS Cert ified Cloud Pract it ioner:
Made Of?
Int roduct ion t o Cloud Term inology
Topic 3: I n t r odu ct ion t o
Topic 3: Introduction to
Clou d Ter m in ology
Cloud Term inology
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
I n t r odu ct ion t o Clou d Ter m in ology
Dem yst if yin g t h e Clou d
Section 1
Scalable (Alternate Usage: Scalability)
Topic 1: I n t h e The ability to easily grow in size, capacity, and/or scope when required
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e (usually based on dem and)
Before There
Was a Clou d Was a Cloud
Topic 2: Wh at Ar e Clou ds
Topic
M ade2:OfWhat
? Are Clouds Scalin g Based on Dem an d
Made Of?
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
I n t r odu ct ion t o Clou d Ter m in ology
Dem yst if yin g t h e Clou d
Section 1
Elast ic (Alternate Usage: Elasticity)
Topic 1: I n t h e The ability to not only grow (scale) when required but also reduce in size
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e when required
Before There
Was a Clou d Was a Cloud
Topic 2: Wh at Ar e Clou ds
Topic
M ade2:OfWhat
? Are Clouds Elast icit y ? Gr ow in g an d Sh r in k in g on Dem an d
Made Of?
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
I n t r odu ct ion t o Clou d Ter m in ology
Dem yst if yin g t h e Clou d
Section 1
Fault Tolerant (Alternate Usage: Fault Tolerance)
Topic 1: I n t h e
The ability to withstand a certain am ount of failure and still rem ain
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e functional (and/or be self-healing and return to full capacity)
Before There
Was a Clou d Was a Cloud
Back t o M ain
Dem ystifying the Cloud
Course Navigation
Pr im ar y Ben ef it s of Clou d/ AWS
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e
Before There
Was a Clou d Was a Cloud
Topic 2: Wh at Ar e Clou ds
Topic
M ade2:OfWhat
? Are Clouds
AWS Cert ified Cloud Pract it ioner:
Made Of?
Prim ary Benefit s of Cloud/ AWS
Topic 3: I n t r odu ct ion t o
Topic 3: Introduction to
Clou d Ter m in ology
Cloud Term inology
Topic 4:
Topic 4:Prim
Pr imary
ar yBenefits
Ben
of ef it s of Clou d/ AWS
Cloud/AWS
Sect ion 1.4 t opics include:
- Ease of Use
Topic 5: AWS Global - Flexibilit y
Infrastructure - Cost -Effect iveness
- Scalabilit y and Elast icit y
Topic 6: So That 's What - High Availabilit y and Fault Tolerance
Clouds (AWS) Are Made Of
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
Pr im ar y Ben ef it s of Clou d/ AWS
Dem yst if yin g t h e Clou d Ease of Use
Section 1
Topic 1: I n t h e
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e
Before There
Was a Clou d Was a Cloud
Topic 2: Wh at Ar e Clou ds
Topic AWS Con sole
M ade2:OfWhat
? Are Clouds
Made Of? - Graphical user interface
- Access to AWS services
Topic 3: I n t r odu ct ion t o
Topic 3: Introduction to
Clou d Ter m in ology
Cloud Term inology
Topic 4:
Topic 4:Prim
Pr imary
ar yBenefits
Ben
of ef it s of Clou d/ AWS
Cloud/AWS
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
Pr im ar y Ben ef it s of Clou d/ AWS
Dem yst if yin g t h e Clou d Flexibilit y
Section 1
Choose as m any AWS services as needed. You receive a virtual
Topic 1: I n t h e
platform from AWS, and you load the software services you need to
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e support your applications.
Before There
Was a Clou d Was a Cloud
Topic 2: Wh at Ar e Clou ds
Topic
M ade2:OfWhat
? Are Clouds Cost -Ef f ect iven ess
Made Of?
Pay only for the am ount of services you need. There are no long-term
Topic 3: I n t r odu ct ion t o
Topic 3: Introduction to
Clou d Ter m in ology contracts or up-front com m itm ents. Discounts are provided for
Cloud Term inology certain services reserved for a m inim um period of tim e.
Topic 4:
Topic 4:Prim
Pr imary
ar yBenefits
Ben
of ef it s of Clou d/ AWS
Cloud/AWS Scalabilit y an d Elast icit y
Topic 5: AWS Global Scalability and elasticity are two benefits we discussed in our
Infrastructure term inology lesson. Scalability gives us the ability to add resources on
dem and to accom m odate growth. Elasticity m eans it 's designed to
Topic 6: So That 's What grow and shrink on dem and based on need.
Clouds (AWS) Are Made Of
Back t o M ain
Dem ystifying the Cloud
Course Navigation
AWS Global I n f r ast r u ct u r e
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e
Before There
Was a Clou d Was a Cloud
Topic 4:
Topic 4:Prim
Pr imary
ar yBenefits Sect ion 1.5 t opics include:
Ben
of ef it s of Clou d/ AWS
Cloud/AWS - Regions
- Availabilit y Zones
Topic
Topic 5: 5:AWS
AWSGlobal
Global
Infrastructure
- Dat a Cent ers
I n f r ast r u ct u r e
- What 's in It for You?
Topic 6: So That 's What
Clouds (AWS) Are Made Of
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
AWS Global I n f r ast r u ct u r e
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e
Before There
Was a Clou d Was a Cloud
Topic 2: Wh at Ar e Clou ds
Topic
M ade2:OfWhat
? Are Clouds
Made Of?
Topic 4:
Topic 4:Prim
Pr imary
ar yBenefits
Ben
of ef it s of Clou d/ AWS
Cloud/AWS AWS Global I n f r ast r u ct u r e
The AWS Global Infrastructure consists of 21 regions around the world
Topic
Topic 5: 5:AWS
AWSGlobal
Global with 64 Availability Zones ? and even m ore are being added. The red on
Infrastructure
I n f r ast r u ct u r e the diagram represents the regions that are com ing soon.
Topic 6: So That 's What At the highest level, AWS' physical infrastructure is m ade up of num erous
Clouds (AWS) Are Made Of
regions located all around the world. Each region com prises m ultiple
Availability Zones, which are where AWS data centers are located.
Topic 7: What Are Clouds
Made Of?: Just the FAQs
View an interactive global view of the AWS infrastructure.
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
AWS Global I n f r ast r u ct u r e
Dem yst if yin g t h e Clou d
Section 1
Availabilit y Zon es (AZs)
AWS Region
Topic 4:
Topic 4:Prim
Pr imary
ar yBenefits
Ben
of ef it s of Clou d/ AWS
Cloud/AWS
Topic
Topic 5: 5:AWS
AWSGlobal
Global
Infrastructure
I n f r ast r u ct u r e Availability
Availability
Zone #1
Topic 6: So That 's What
Clouds (AWS) Are Made Of
Zone
Topic 7: What Are Clouds
#1
Made Of?: Just the FAQs
Availability Availability
Topic 8: Wrap It Up: Zone #2 Zone #3
Dem ystifying the Cloud
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
AWS Global I n f r ast r u ct u r e
Dem yst if yin g t h e Clou d
Section 1
Dat a Cen t er s
Topic 1: I n t h e
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e
Located in each Availability Zone is one or m ore AWS data centers,
Before There
Was a Clou d Was a Cloud which contain the physical servers that run AWS resources.
Topic 2: Wh at Ar e Clou ds
Topic
M ade2:OfWhat
? Are Clouds
Made Of?
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
AWS Global I n f r ast r u ct u r e
Dem yst if yin g t h e Clou d Wh at 's in I t f or You ?
Section 1
Topic 1: I n t h e Here's why you should care about regions and Availability Zones:
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e
Before There
Was a Clou d Was a Cloud - Provision resources closest to the people that will use them
Topic 2: Wh at Ar e Clou ds
- Multiple Availability Zones and regions m eans the AWS
Topic
M ade2:OfWhat
? Are Clouds infrastructure is fault tolerant
Made Of? - Expands high availability beyond a single geographical area
Topic 3: I n t r odu ct ion t o - Applications m ay be configured for high availability by
Topic 3: Introduction to provisioning them in m ultiple regions for failover/disaster
Clou d Ter m in ology
Cloud Term inology recovery
Topic 4:
Topic 4:Prim
Pr imary
ar yBenefits
Ben
of ef it s of Clou d/ AWS
Cloud/AWS
Topic
Topic 5: 5:AWS
AWSGlobal
Global
Infrastructure
I n f r ast r u ct u r e
Back t o M ain
Dem ystifying the Cloud
Course Navigation
So Th at 's Wh at Clou ds (AWS) Ar e M ade Of
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e
Before There
Was a Clou d Was a Cloud
Topic 2: Wh at Ar e Clou ds
Topic
M ade2:OfWhat
? Are Clouds
Made Of?
AWS Cert ified Cloud Pract it ioner:
Topic 3: I n t r odu ct ion t o
Topic 3: Introduction to
Clou d Ter m in ology
Cloud Term inology
So That 's What Clouds (AWS)
Are Made Of
Topic 4:
Topic 4:Prim
Pr imary
ar yBenefits
Ben
of ef it s of Clou d/ AWS
Cloud/AWS
Topic
Topic 5: 5:AWS
AWSGlobal
Global
Infrastructure
I n f r ast r u ct u r e Sect ion 1.6 t opics include:
- Net working
Topic 6:
Topic 6:SoSo That
Th at's'sWhat
Wh at
Clou ds(AWS)
(AWS)Are
Ar eMade
M adeOf - Com put e
Clouds
Of - St orage
Topic 7: What Are Clouds
Made Of?: Just the FAQs
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
So Th at 's Wh at Clou ds (AWS) Ar e M ade Of
Dem yst if yin g t h e Clou d AWS Cloud
Section 1
Topic 2: Wh at Ar e Clou ds
Topic
M ade2:OfWhat
? Are Clouds
Made Of?
Topic 4:
Topic 4:Prim
Pr imary
ar yBenefits Networking
Ben
of ef it s of Clou d/ AWS
Cloud/AWS
Topic
Topic 5: 5:AWS
AWSGlobal
Global
Infrastructure
I n f r ast r u ct u r e
Topic 6:
Topic 6:SoSo That
Th at's'sWhat
Wh at Direct Route 53
Clou ds(AWS)
Clouds (AWS)Are
Ar eMade
M adeOf Connect
Of
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
So Th at 's Wh at Clou ds (AWS) Ar e M ade Of
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e Com pute
Before There
Was a Clou d Was a Cloud
Topic 2: Wh at Ar e Clou ds
Topic
M ade2:OfWhat
? Are Clouds
Made Of?
Topic 4:
Topic 4:Prim
Pr imary
ar yBenefits
Ben
of ef it s of Clou d/ AWS
Cloud/AWS
Topic
Topic 5: 5:AWS
AWSGlobal
Global
Infrastructure
I n f r ast r u ct u r e
Topic 6:
Topic 6:SoSo That
Th at's'sWhat
Wh at
Clou ds(AWS)
Clouds (AWS)Are
Ar eMade
M adeOf
Of
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
So Th at 's Wh at Clou ds (AWS) Ar e M ade Of
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e
Before There
Was a Clou d Was a Cloud
Topic 2: Wh at Ar e Clou ds
Topic
M ade2:OfWhat
? Are Clouds
Made Of?
Topic 4:
Topic 4:Prim
Pr imary
ar yBenefits
Ben
of ef it s of Clou d/ AWS
Cloud/AWS
Topic
Topic 5: 5:AWS
AWSGlobal
Global
Infrastructure
I n f r ast r u ct u r e
Topic 6:
Topic 6:SoSo That
Th at's'sWhat
Wh at
Clou ds(AWS)
Clouds (AWS)Are
Ar eMade
M adeOf
Of
Storage
Topic 7: What Are Clouds
Made Of?: Just the FAQs
S3 Glacier
Back t o M ain
Dem ystifying the Cloud
Course Navigation
Wh at Ar e Clou ds M ade Of ?: Ju st t h e FAQs
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e
Before There
Was a Clou d Was a Cloud
Topic 2: Wh at Ar e Clou ds
Topic
M ade2:OfWhat
? Are Clouds AWS Cert ified Cloud Pract it ioner:
Made Of?
What Are Clouds Made Of?:
Topic 3: I n t r odu ct ion t o
Topic 3: Introduction to
Clou d Ter m in ology
Cloud Term inology
Just t he FAQs
Topic 4:
Topic 4:Prim
Pr imary
ar yBenefits
Ben
of ef it s of Clou d/ AWS
Cloud/AWS
Topic 6:
Topic 6:SoSo That
Th at's'sWhat
Wh at
Clou ds(AWS)
Clouds (AWS)Are
Ar eMade
M adeOf
Of
Back Next
Back t o M ain
Dem ystifying the Cloud
Course Navigation
Wh at Ar e Clou ds M ade Of ?: Ju st t h e FAQs
Dem yst if yin g t h e Clou d Ju st t h e FAQs
Section 1
Back t o M ain
Dem ystifying the Cloud
Course Navigation
Wr ap I t Up
Dem yst if yin g t h e Clou d
Section 1
Topic 1: I n t h e
Topic
Begin1:
n in
Ing,the
BefBeginning,
or e Th er e
Before There
Was a Clou d Was a Cloud
Topic 2: Wh at Ar e Clou ds
Topic
M ade2:OfWhat
? Are Clouds AWS Cert ified Cloud Pract it ioner:
Made Of?
Dem yst ifying t he Cloud
Topic 3: I n t r odu ct ion t o
Topic 3: Introduction to
Clou d Ter m in ology
Cloud Term inology
Topic 4:
Topic 4:Prim
Pr imary
ar yBenefits
Ben
of ef it s of Clou d/ AWS
Cloud/AWS
Sect ion 1 t opics included:
- In t he Beginning, Before There Was a Cloud
Topic
Topic 5: 5:AWS
AWSGlobal
Global
- What Are Clouds Made Of?
Infrastructure
I n f r ast r u ct u r e - Int roduct ion t o Cloud Term inology
- Prim ary Benefit s of Cloud/ AWS
Topic 6:
Topic 6:SoSo That
Th at's'sWhat
Wh at
Clou ds(AWS)
(AWS)Are
Ar eMade
M adeOf - AWS Global Infrast ruct ure
Clouds
Of - So That 's What Clouds (AWS) Are Made Of
Topic 7: What Are Clouds - Just t he FAQs
Topic 7: Wh at Ar e Clou ds
Made Of?: Just the FAQs - Wrap It Up!
M ade Of ?: Ju st t h e FAQs
Topic
Topic 8:
8:Wrap
Wr apItI tUp:
Up:
Dem
Demystifying
yst if yin gthe
t h eCloud
Clou d
Back t o M ain
Getting Started with AWS
Course Navigation
AWS Fr ee Tier
Get t in g St ar t ed
w it h AWS
Section 2
Topic1:
Topic 1:AWS
AWSFree
Fr eeTier
Tier
Back Next
Back t o M ain
Getting Started with AWS
Course Navigation
AWS Fr ee Tier
Get t in g St ar t ed
w it h AWS
Section 2
Topic1:
Topic 1:AWS
AWSFree
Fr eeTier
Tier
AWS Fr ee Tier
Alw ays Fr ee
A Available to all AWS custom ers at no cost
Fr ee f or 12 M on t h s
B Free for 12 m onths following your initial AWS
sign-up date
Tr ial
C Short-term free trials
Back t o M ain
Getting Started with AWS
Course Navigation
Access an d Tou r t h e AWS M an agem en t Con sole
Get t in g St ar t ed
w it h AWS
Section 2
Topic
Topic1:
1:AWS
AWSFree
Fr eeTier
Tier
Topic
Topic2:2:Access
Accessand
an dTour
Tou r
the
t h e AWS Con sole ent
AWS
Console
Managem
AWS Cert ified Cloud Pract it ioner:
Let 's Get St art ed:
What You Need t o Know
Back Next
Back t o M ain
Getting Started with AWS
Course Navigation
Access an d Tou r t h e AWS M an agem en t Con sole
Get t in g St ar t ed
Access an d Tou r t h e AWS M an agem en t Con sole
w it h AWS
Section 2
Topic
Topic1:
1:AWS
AWSFree
Fr eeTier
Tier The AWS Managem ent Console is the graphical user interface
Topic (GUI) that is used to m anage an AWS account. Below is a
Topic2:2:Access
Accessand
an dTour
Tou r
the sum m ary of tasks that can be com pleted using the AWS
t h e AWS Con sole ent
AWS Managem
Console M an agem en t Con sole:
Back
Next Topic
Back t o M ain
The Big Picture
Course Navigation
You r Piece of t h e AWS Clou d
Th e Big Pict u r e
Section 3
Topic
Topic 1:
1:Your
You rPiece
Pieceofofthe
AWS Cloud
t h e AWS Clou d
Back Next
Back t o M ain
The Big Picture
Course Navigation
You r Piece of t h e AWS Clou d
Back Next
Back t o M ain
The Big Picture
Course Navigation
You r Piece of t h e AWS Clou d
Th e Big Pict u r e
Section 3
AWS Clou d
Topic
Topic 1:
1:Your
You rPiece
Pieceofofthe
AWS Cloud
t h e AWS Clou d
Region
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
Over view of I den t it y an d Access M an agem en t
I den t it y an d Access
M an agem en t (I AM )
Section 4
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access
M an agem en
Managem entt
AWS Cert ified Cloud Pract it ioner:
Topic 2: IAM Users, IAM: Managing Users, Groups, and Roles
Groups, Roles, and
Policies
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
Over view of I den t it y an d Access M an agem en t
I den t it y an d Access Wh at I s I AM ?
M an agem en t (I AM )
Section 4
- I AM (I dentity and Access M anagem ent) is the service where AWS
Topic
Topic 1:
1: Over view of
Overview of user accounts and their access to various AWS services is m anaged.
IIdentity
den t it y and
an d Access
Access - The com m on use of I AM is to m anage:
M an agem en
Managem entt - Users
- Groups
Topic 2: IAM Users, - Access policies
Groups, Roles, and - Roles
Policies - User credentials
- User password policies
Topic 3: IAM: Just the - Multi-factor authentication (MFA)
FAQs - API keys for program m atic (CLI) access
- The user created when you create an AWS account is called the
Topic 4: IAM: Wrap It Up! r oot user.
- By default, the root user has full adm inistrative rights and access to
every part of the account.
- Any new or additional users created in the AWS account are created
with no access to any AWS resources. The only granted access is the
ability to log in.
- For a user to access an AWS service, perm ission m ust be granted to
that user, which is m anaged in/by IAM.
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
Over view of I den t it y an d Access M an agem en t
I den t it y an d Access I AM Best Pr act ices
M an agem en t (I AM )
Section 4
- AWS Best Pr act ices: Guidelines that recom m end settings,
Topic
Topic 1:
1: Over view of
Overview of configurations, and architecture for m aintaining a high level of
IIdentity
den t it y and
an d Access
Access security, accessibility, and efficiency.
M an agem en
Managem entt - When a new AWS root account is created, it is best practice to
com plete the tasks listed in IAM under Security Status, including:
Topic 2: IAM Users, - Delet e your root access keys
Groups, Roles, and - Act ivat e MFA on your root account
Policies - Cr eat e individual IAM users
- Use groups to assign perm issions
Topic 3: IAM: Just the - Apply an IAM password policy
FAQs
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
Over view of I den t it y an d Access M an agem en t
I den t it y an d Access Act ivat e M FA on You r Root Accou n t
M an agem en t (I AM )
Section 4
- What is M FA?
Topic
Topic 1:
1: Over view of
Overview of - MFA stands for M ulti-Factor Authentication.
IIdentity
den t it y and
an d Access
Access - It is an additional layer of security on your root account that is
M an agem en
Managem entt provided by a third party.
- It provides a continually changing, random , six-digit code you
Topic 2: IAM Users, need to input (along with your password) when logging in to
Groups, Roles, and your root account.
Policies
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
Over view of I den t it y an d Access M an agem en t
I den t it y an d Access
M an agem en t (I AM )
Section 4
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access User n am e__________
M an agem en
Managem entt Passw or d__________
Access Gr an t ed
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
Over view of I den t it y an d Access M an agem en t
I den t it y an d Access Best Pr act ices f or I AM User s
M an agem en t (I AM )
Section 4
- Best practice is to never use your root account for day-to-day use.
Topic
Topic 1:
1: Over view of
Overview of - If you want full adm in access, create an IAM user and attach the
IIdentity
den t it y and
an d Access
Access Adm in ist r at or Access policy to it.
M an agem en
Managem entt - Use that account as your daily driver.
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access AWS Cert ified Cloud Pract it ioner:
M an agem en
Managem entt
Topic 2: I AM User s,
IAM: Managing Users, Groups, and Roles
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access I AM User s
M an agem en t (I AM )
Section 4
- IAM users are individuals who have been granted access to an AWS
account. For exam ple, if your com pany gives you access to their
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access
AWS account, then you are an IAM user (probably one of m any the
M an agem en
Managem entt com pany has set up).
Topic 2: I AM User s, - Each IAM user has three m ain com ponents:
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups, Roles, and - A u ser n am e
Policies
Policies - A passw or d
- Per m ission s to access various AWS services
Topic 3: IAM: Just the
FAQs - Without perm issions being explicitly granted to an IAM user, that
user will not able to access any AWS services.
Topic 4: IAM: Wrap It Up!
- Generally, a com pany's I.T. departm ent will be responsible for
"attaching" what are called IAM permission policies to an IAM user
based on what that user needs access to (in order to do their job).
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies M ar k
S3 Bucket
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
In order to access
AWS services, Users,
Groups, and other
AWS resources (such
as EC2), m ust be
granted perm ission
by using IAM Access
Policies OR IAM
S3 Bucket Roles.
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies M ar k
S3 Bucket
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies M ar k
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies M ar k
I AM S3
Topic 4: IAM: Wrap It Up!
Fu ll Access Policy
S3 Bucket
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic 2: IAM Users, With an IAM S3 policy
Gr ou ps, Roles, an d
Groups, Roles, and attached to the user
Policies
Policies Mark, he can now
M ar k
access the S3 bucket.
Topic 3: IAM: Just the
FAQs
I AM S3
Topic 4: IAM: Wrap It Up!
Fu ll Access Policy
S3 Bucket
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies Adr ian M ar k Jam es
I AM S3
Topic 4: IAM: Wrap It Up!
Fu ll Access Policy
S3 Bucket
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies Adr ian M ar k Jam es
Gr ou p
Topic 3: IAM: Just the
" Dev "
FAQs
S3 Bucket
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies Adr ian M ar k Jam es
Gr ou p
Topic 3: IAM: Just the " Dev "
FAQs
Adrian
Topic 4: IAM: Wrap It Up! Mark
Jam es
S3 Bucket
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies Adr ian M ar k Jam es
Gr ou p
Topic 3: IAM: Just the " Dev "
FAQs
I AM S3
Fu ll Access
Policy
S3 Bucket
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies Adr ian M ar k Jam es
Gr ou p
Topic 3: IAM: Just the " Dev "
FAQs
I AM S3
Fu ll Access
Policy
S3 Bucket
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies Adr ian M ar k Jam es
Gr ou p
Topic 3: IAM: Just the " Dev "
FAQs
I AM S3
With Mark
Fu llrem oved
Access
from the Group,
Policy only
Adrian and Jam es
have access to the S3
bucket through the
policy attached to the
group.
S3 Bucket
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies Adr ian M ar k Jam es
Gr ou p
Topic 3: IAM: Just the " Dev "
FAQs
I AM S3
Fu ll Access
Policy
S3 Bucket
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies Adr ian M ar k Jam es
Gr ou p
Topic 3: IAM: Just the " Dev "
FAQs
I AM S3
Fu ll Access
Policy
EC2 S3 Bucket
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies Adr ian M ar k Jam es
Gr ou p
Topic 3: IAM: Just the " Dev "
FAQs
I AM S3
Fu ll Access
Policy
I AM Role
EC2 S3 Bucket
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM User s, Gr ou ps, Roles, an d Policies
I den t it y an d Access
M an agem en t (I AM )
Section 4 AWS Cloud
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access I AM
M an agem en
Managem entt
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies Adr ian M ar k Jam es
Gr ou p
Topic 3: IAM: Just the " Dev "
FAQs
I AM S3
Fu ll Access
Policy
I AM Role
EC2 S3 Bucket
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM : Ju st t h e FAQs
I den t it y an d Access
M an agem en t (I AM )
Section 4
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access AWS Cert ified Cloud Pract it ioner:
M an agem en
Managem entt
Topic 2: I AM User s,
IAM: Managing Users, Groups, and Roles
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies
Topic 3: I AM : Ju st t h e
Topic 3: IAM: Just the Sect ion 4.3 t opics include:
FAQs
FAQs - Just t he FAQs
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM : Ju st t h e FAQs
I den t it y an d Access Ju st t h e FAQs
M an agem en t (I AM )
Section 4 - The r oot u ser account is created when the AWS account is created.
- The root account has access to ever yt h in g within the AWS account.
Topic
Topic 1:
1: Over view of
Overview of
- The root account should n ot be used for daily m anagem ent tasks.
IIdentity
den t it y and
an d Access
Access
- Create an additional account for daily adm in ist r at ion .
M an agem en
Managem entt
- I AM u ser s have no rights by default when created, except the ability
Topic 2: I AM User s, to log in.
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups, Roles, and
- I AM gr ou ps can be used to grant m ultiple users the sam e access.
Policies
Policies - Policies assigned to users and groups grant access to AWS
resources.
Topic 3: I AM : Ju st t h e - I AM r oles are used to grant on e AWS resource access to another
Topic 3: IAM: Just the
FAQs
FAQs resource (e.g., allow EC2 to access S3).
- M u lt i-f act or au t h en t icat ion (M FA) provides an additional layer of
Topic 4: IAM: Wrap It Up! protection when logging in to AWS.
- Use passw or d policies to enforce password com plexity and
strength.
- API access k eys m ay be used for logging in to the com m and line
interface.
Back Next
Back t o M ain
Identity and Access Managem ent (IAM)
Course Navigation
I AM : Wr ap I t Up!
I den t it y an d Access
M an agem en t (I AM )
Section 4
Topic
Topic 1:
1: Over view of
Overview of
IIdentity
den t it y and
an d Access
Access AWS Cert ified Cloud Pract it ioner:
M an agem en
Managem entt
IAM: Managing Users, Groups, and Roles
Topic 2: I AM User s,
Topic
Gr 2: IAM
ou ps, Users,
Roles, an d
Groups,
Policies Roles, and
Policies
Back Next
Back t o M ain
AWS Networking
Course Navigation
Net w or k in g 101
Topic 1:
1: Net
Networking
w or k in g101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic 2: Conceptual
Overview of VPCs
Virt ual Privat e Cloud (VPC)
Topic 3: A Walkthrough of
VPC Basics
Sect ion 5.1 t opics include:
Topic 4: Internet - Net working 101
Gateways and Route
- Visualizing t he Net work
Tables
Back Next
Back t o M ain
AWS Networking
Course Navigation
Net w or k in g 101
Vir t u al Pr ivat e Clou d (VPC) Com par in g Net w or k s t o Neigh bor h oods
Section 5
Networks are the roads that allow your data to m ove from device to
Topic 1:
1: Net
Networking device. Networks connect to other networks to allow data to m ove to
Topic w or k in g101
101
rem ote devices.
Topic 2: Conceptual
Overview of VPCs
Topic 3: A Walkthrough of
VPC Basics
Topic 4: Internet
Gateways and Route
Tables
Back Next
Back t o M ain
AWS Networking
Course Navigation
Net w or k in g 101
Vir t u al Pr ivat e Clou d (VPC) Com par in g Net w or k s t o Neigh bor h oods
Section 5
Houses represent the different com puters on a network.
Topic 1:
Topic 1: Net
Networking
w or k in g101
101
Topic 2: Conceptual
Overview of VPCs
Topic 3: A Walkthrough of
VPC Basics
Topic 4: Internet
Gateways and Route
Tables
Back Next
Back t o M ain
AWS Networking
Course Navigation
Net w or k in g 101
Vir t u al Pr ivat e Clou d (VPC) Com par in g Net w or k s t o Neigh bor h oods
Section 5
Cars represent the data as it m oves across the network.
Topic 1:
Topic 1: Net
Networking
w or k in g101
101
Topic 2: Conceptual
Overview of VPCs
Topic 3: A Walkthrough of
VPC Basics
Topic 4: Internet
Gateways and Route
Tables
Back Next
Back t o M ain
AWS Networking
Course Navigation
Net w or k in g 101
Topic 1:
Topic 1: Net
Networking
w or k in g101
101
Topic 2: Conceptual
Overview of VPCs Com puter
Topic 3: A Walkthrough of
VPC Basics
Switch
Topic 4: Internet
Gateways and Route
Tables
Com puter
Topic 5: VPC Subnets, Router
Security Groups, and
NACLs
Com puter
Com puter
Back t o M ain
AWS Networking
Course Navigation
Con cept u al Over view of VPCs
Topic 1:
1: Net
Networking
w or k in g101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
Over
2: Con
Overview
cept u al
Conceptual
view ofof VPCs
VPCs
Virt ual Privat e Cloud (VPC)
Topic 3: A Walkthrough of
VPC Basics
Sect ion 5.2 t opics include:
Topic 4: Internet - What Is a VPC?
Gateways and Route
- VPC Concept ual Analogy
Tables
- Applying t he Concept s
Topic 5: VPC Subnets,
Security Groups, and
NACLs
Back Next
Back t o M ain
AWS Networking
Course Navigation
Con cept u al Over view of VPCs
NOTE: When you create an AWS account, a "default " VPC is created for
Topic 6: VPCs: Just the you.
FAQs and Wrap It Up!
Back Next
Back t o M ain
AWS Networking
Course Navigation
Con cept u al Over view of VPCs
Topic
Topic 2:
2: Con cept u al
Conceptual
Over view of
Overview of VPCs
VPCs
Posts, Photos,
Videos
Topic 3: A Walkthrough of
VPC Basics
Topic 4: Internet
Gateways and Route
Tables
AWS
Topic 5: VPC Subnets,
Security Groups, and Friend's
You r My
NACLs VPC
VPC VPC
RDS
Back Next
Back t o M ain
AWS Networking
Course Navigation
Con cept u al Over view of VPCs
Topic 1:
Topic 1: Net
Networking
w or k in g101
101 A subnet (shorthand for "subnetwork") is a subsection of a network.
Generally, a subnet includes all of the com puters in a specific location.
Topic
Topic 2:
2: Con cept u al
Conceptual
Over view of
Overview of VPCs
VPCs
Exam ple
Su bn et 1
Topic 6: VPCs: Just the
FAQs and Wrap It Up!
Su bn et 2
Back Next
Back t o M ain
AWS Networking
Course Navigation
Con cept u al Over view of VPCs
AWS Clou d
Topic 1:
Topic 1: Net
Networking
w or k in g101
101
Topic
Topic 2:
2: Con cept u al
Conceptual
Over view ofof VPCs
VPCs Vir t u al Pr ivat e Clou d
Overview
Topic 3: A Walkthrough of
VPC Basics
Su bn et
Topic 4: Internet
Gateways and Route
Tables
Back Next
Back t o M ain
AWS Networking
Course Navigation
Con cept u al Over view of VPCs
AWS Clou d
Topic 1:
Topic 1: Net
Networking
w or k in g101
101
Topic
Topic 2:
2: Con cept u al
Conceptual
Over view ofof VPCs
VPCs Vir t u al Pr ivat e Clou d
Overview
Topic 3: A Walkthrough of
VPC Basics
Su bn et
Topic 4: Internet
Gateways and Route
Tables
Am azon RDS
Back t o M ain
AWS Networking
Course Navigation
A Walk t h r ou gh of VPC Basics
Topic 1:
1: Net
Networking
w or k in g101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
Over
2: Con
Overview
cept u al
Conceptual
view ofof VPCs
VPCs
Virt ual Privat e Cloud (VPC)
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
Sect ion 5.3 t opics include:
Topic 4: Internet - VPC Walkt hrough in t he AWS Console
Gateways and Route
Tables
Back Next
Back t o M ain
AWS Networking
Course Navigation
A Walk t h r ou gh of VPC Basics
AWS Clou d
Topic 1:
Topic 1: Net
Networking
w or k in g101
101
Topic
Topic 2:
2: Con cept u al
Conceptual
Over view ofof VPCs
VPCs Vir t u al Pr ivat e Clou d
Overview
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics Su bn et
VPC Basics
Topic 4: Internet
Gateways and Route
Tables
Back t o M ain
AWS Networking
Course Navigation
I n t er n et Gat ew ays an d Rou t e Tables
Topic 1:
1: Net
Networking
w or k in g101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
Over
2: Con
Overview
cept u al
Conceptual
view ofof VPCs
VPCs
Virt ual Privat e Cloud
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
Topic 4: I n t er n et
Sect ion 5.4 t opics include:
Topic
Gat ew4:ays
Internet
an d Rou t e - Int ernet Gat eways
Gateways and Route
Tables - Rout e Tables
Tables
- Net working Securit y
Topic 5: VPC Subnets,
Security Groups, and
NACLs
Back Next
Back t o M ain
AWS Networking
Course Navigation
I n t er n et Gat ew ays an d Rou t e Tables
I n t er n et Gat ew ays (I GWs)
Vir t u al Pr ivat e Clou d (VPC)
Section 5
Sim plif ied Def in it ion
Topic 1:
Topic 1: Net
Networking
w or k in g101
101 A com bination of hardware and software that provides your private
network with a r ou t e to the world outside (m eaning the internet) of the
Topic
Topic 2:
2: Con cept u al
Conceptual VPC
Over view of
Overview of VPCs
VPCs
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of AWS Def in it ion
of VPC Basics
VPC Basics
Topic 5: VPC Subnets, NOTE: Your default VPC already has an IGW at t ach ed.
Security Groups, and
NACLs
I n t er n et Gat ew ay
Back Next
Back t o M ain
AWS Networking
Course Navigation
I n t er n et Gat ew ays an d Rou t e Tables
Topic 1:
Topic 1: Net
Networking
w or k in g101
101 AWS Clou d
Topic
Topic 2:
2: Con cept u al
Conceptual
Over view of
Overview of VPCs
VPCs Vir t u al Pr ivat e Clou d
I GW
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
Topic 4: I n t er n et
Topic
Gat ew4:ays
Internet
an d Rou t e
Gateways and Route
Tables
Tables
Rou t e Table
Su bn et
Topic 6: VPCs: Just the
FAQs and Wrap It Up!
Am azon EC2
Back Next
Back t o M ain
AWS Networking
Course Navigation
I n t er n et Gat ew ays an d Rou t e Tables
Topic 1:
Topic 1: Net
Networking
w or k in g101
101 AWS Clou d Det ach ed
Topic
Topic 2:
2: Con cept u al
Conceptual I GW
Over view of
Overview of VPCs
VPCs
Vir t u al Pr ivat e Clou d
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
Topic 4: I n t er n et
Topic
Gat ew4:ays
Internet
an d Rou t e
Gateways and Route
Tables
Tables
Rou t e Table
Su bn et
Topic 6: VPCs: Just the
FAQs and Wrap It Up!
Am azon EC2
Back Next
Back t o M ain
AWS Networking
Course Navigation
I n t er n et Gat ew ays an d Rou t e Tables
Topic 1:
Topic 1: Net
Networking
w or k in g101
101 AWS Clou d
Topic
Topic 2:
2: Con cept u al
Conceptual
Over view of
Overview of VPCs
VPCs Vir t u al Pr ivat e Clou d
I GW
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
Topic 4: I n t er n et
Topic
Gat ew4:ays
Internet
an d Rou t e
Gateways and Route
Tables
Tables
Rou t e Table
Su bn et
Topic 6: VPCs: Just the
FAQs and Wrap It Up!
Am azon EC2
Back Next
Back t o M ain
AWS Networking
Course Navigation
I n t er n et Gat ew ays an d Rou t e Tables
Rou t e Tables
Vir t u al Pr ivat e Clou d (VPC)
Section 5
Sim plif ied Def in it ion
Topic 1:
Topic 1: Net
Networking
w or k in g101
101 The AWS definition is sim ple enough, so let 's jum p right down to it!
Topic
Topic 2:
2: Con cept u al
Conceptual
Over view of
Overview of VPCs
VPCs
AWS Def in it ion
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of "A route table contains a set of r u les, called r ou t es, that are used to
of VPC Basics
VPC Basics
det er m in e w h er e n et w or k t r af f ic is dir ect ed."
Topic 4: I n t er n et
Topic
Gat ew4:ays
Internet
an d Rou t e NOTE: Your def au lt VPC already has a m ain route table.
Gateways and Route
Tables
Tables
Rou t e Table
Back Next
Back t o M ain
AWS Networking
Course Navigation
I n t er n et Gat ew ays an d Rou t e Tables
Topic 1:
Topic 1: Net
Networking
w or k in g101
101 AWS Clou d
Topic
Topic 2:
2: Con cept u al
Conceptual
Over view of
Overview of VPCs
VPCs
Vir t u al Pr ivat e Clou d I GW
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
Topic 4: I n t er n et
Topic
Gat ew4:ays
Internet
an d Rou t e
Gateways and Route
Tables
Tables
Rou t e Table
Su bn et Su bn et
Topic 6: VPCs: Just the
FAQs and Wrap It Up!
Back Next
Back t o M ain
AWS Networking
Course Navigation
I n t er n et Gat ew ays an d Rou t e Tables
Topic 1:
Topic 1: Net
Networking
w or k in g101
101 AWS Clou d Det ach ed
Topic
Topic 2:
2: Con cept u al
Conceptual I GW
Over view of
Overview of VPCs
VPCs
Vir t u al Pr ivat e Clou d
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
Topic 4: I n t er n et
Topic
Gat ew4:ays
Internet
an d Rou t e
Gateways and Route
Tables
Tables
Rou t e Table
Su bn et Su bn et
Topic 6: VPCs: Just the
FAQs and Wrap It Up!
Back Next
Back t o M ain
AWS Networking
Course Navigation
I n t er n et Gat ew ays an d Rou t e Tables
Topic 1:
Topic 1: Net
Networking
w or k in g101
101 AWS Clou d Det ach ed
Topic
Topic 2:
2: Con cept u al
Conceptual I GW
Over view of
Overview of VPCs
VPCs
Vir t u al Pr ivat e Clou d I GW
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
Topic 4: I n t er n et
Topic
Gat ew4:ays
Internet
an d Rou t e
Gateways and Route
Tables
Tables
Rou t e Table
Su bn et Su bn et
Topic 6: VPCs: Just the
FAQs and Wrap It Up!
Back Next
Back t o M ain
AWS Networking
Course Navigation
I n t er n et Gat ew ays an d Rou t e Tables
Net w or k in g Secu r it y
Vir t u al Pr ivat e Clou d (VPC)
Section 5
Net work Access Cont rol List (NACL)
A firewall/security layer on the subnet level
Topic 1:
Topic 1: Net
Networking
w or k in g101
101
Securit y Group (SG)
Topic
Topic 2:
2: Con cept u al
Conceptual A firewall/security layer on the instance/server level
Over view of
Overview of VPCs
VPCs
Secu r it y Gr ou p
Am azon EC2
Back Next
Back t o M ain
AWS Networking
Course Navigation
I n t er n et Gat ew ays an d Rou t e Tables
Topic 1:
Topic 1: Net
Networking
w or k in g101
101 AWS Clou d
Topic
Topic 2:
2: Con cept u al
Conceptual
Over view of
Overview of VPCs
VPCs
Vir t u al Pr ivat e Clou d I GW
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
Topic 4: I n t er n et
Topic
Gat ew4:ays
Internet
an d Rou t e
Gateways and Route
Tables
Tables
Rou t e Table
Net w or k Access Con t r ol List (NACL)
Topic 5: VPC Subnets,
Security Groups, and
ALLOW DENY
NACLs
Su bn et Su bn et
Topic 6: VPCs: Just the
FAQs and Wrap It Up!
Secu r it y Gr ou p Secu r it y Gr ou p
Back t o M ain
AWS Networking
Course Navigation
VPC Su bn et s, Secu r it y Gr ou ps, an d NACLs
Topic 1:
1: Net
Networking
w or k in g101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
Over
2: Con
Overview
cept u al
Conceptual
view ofof VPCs
VPCs
Virt ual Privat e Cloud (VPC)
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
Topic 4: I n t er n et
Sect ion 5.5 t opics include:
Topic
Gat ew4:ays
Internet
an d Rou t e - VPC Subnet s
Gateways and Route
Tables - Securit y Groups
Tables
- NACLs
Topic 5: VPC Su bn et s,
Topicr it5:yVPC
Secu Subnets,
Gr ou ps, an d
Security Groups, and
NACLs
NACLs
Back Next
Back t o M ain
AWS Networking
Course Navigation
VPC Su bn et s, Secu r it y Gr ou ps, an d NACLs
Topic 1:
Topic 1: Net
Networking
w or k in g101
101
A subnet (shorthand for "subnetwork") is a subsection of a network.
Topic
Generally, a subnet includes all the com puters in a specific location. Think
Topic 2:
2: Con cept u al
Conceptual
Over view of
Overview of VPCs
VPCs about your home network, and how it relates to your ISP's network. Think of
your hom e network as a subnet of your ISP's network.
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
AWS Def in it ion
Topic 4: I n t er n et
Topic
Gat ew4:ays
Internet
an d Rou t e "When you create a VPC, it spans all of the Availability Zones in the region.
Gateways and Route
Tables
Tables
After creating a VPC, you can add on e or m or e su bn et s in each
Availabilit y Zon e. Each subnet m u st r eside en t ir ely within one
Topic 5: VPC Su bn et s, Availability Zone and can n ot span zon es."
Topicr it5:yVPC
Secu Subnets,
Gr ou ps, an d
Security Groups, and
NACLs
NACLs NOTE: Your def au lt VPC already has a subnets created by default.
Back Next
Back t o M ain
AWS Networking
Course Navigation
VPC Su bn et s, Secu r it y Gr ou ps, an d NACLs
Topic
Topic 2:
2: Con cept u al
Conceptual
Over view of
Overview of VPCs
VPCs
Rou t e Table
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
Topic 4: I n t er n et
Topic
Gat ew4:ays
Internet
an d Rou t e
Gateways and Route
Tables
Tables
Net w or k Access Con t r ol List (NACL)
Topic 5: VPC Su bn et s,
Topicr it5:yVPC
Secu Subnets,
Gr ou ps, an d
Security Groups, and
NACLs
NACLs
Secu r it y Gr ou p Secu r it y Gr ou p
Back Next
Back t o M ain
AWS Networking
Course Navigation
VPC Su bn et s, Secu r it y Gr ou ps, an d NACLs
I n t er n et
Vir t u al Pr ivat e Clou d (VPC)
Section 5 I GW
VPC
Topic 1:
Topic 1: Net
Networking
w or k in g101
101
Topic
Topic 2:
2: Con cept u al
Conceptual Rou t e Table
Rou t e Table
Over view of
Overview of VPCs
VPCs w / I GW w / ou t I GW
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
Topic 4: I n t er n et
Topic
Gat ew4:ays
Internet
an d Rou t e
Gateways and Route
Tables
Tables
Net w or k Access Con t r ol List (NACL)
Topic 5: VPC Su bn et s,
Topicr it5:yVPC
Secu Subnets,
Gr ou ps, an d
Security Groups, and
NACLs
NACLs
Secu r it y Gr ou p Secu r it y Gr ou p
Back Next
Back t o M ain
AWS Networking
Course Navigation
VPC Su bn et s, Secu r it y Gr ou ps, an d NACLs
Net w or k in g Secu r it y
Vir t u al Pr ivat e Clou d (VPC)
Section 5 Net w or k Access Con t r ol List (NACL)
An optional firewall/security layer that controls inbound and outbound
Topic 1:
Topic 1: Net
Networking
w or k in g101
101 traffic for one or m ore subnets. The default VPC has a NACL associated
with the default subnet.
Topic
Topic 2:
2: Con cept u al
Conceptual
Over view of
Overview of VPCs
VPCs Secu r it y Gr ou p (SG)
A firewall/security layer on the instance/server level
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics Wh at I s a Fir ew all?
A type of software that either allows or blocks certain kinds of internet
Topic 4: I n t er n et
Topic traffic to pass through it
Gat ew4:ays
Internet
an d Rou t e
Gateways and Route
Tables
Tables Exam ple: If the NACL and SG are configured to allow web traffic (HTTP),
then HTTP requests will be allowed into the subnet and then into the EC2
Topic 5: VPC Su bn et s,
Topicr it5:yVPC Subnets, instance. If they are configured to deny FTP (File Transfer Protocol) traffic,
Secu Gr ou ps, an d
Security Groups, and
NACLs then any FTP request will be blocked.
NACLs
Secu r it y Gr ou p
Secu r it y
Am azon EC2
Back Next
Back t o M ain
VPC Subnets, Security Groups, and NACLs
HTTP I n t er n et
FTP
I n t er n et
Gat ew ay (I GW)
VPC
RT w / I GW RT w / o I GW
FTP - DENY
HTTP - ALLOW
NACL
Pu blic Su bn et Pr ivat e Su bn et
Secu r it y Gr ou p Secu r it y Gr ou p
Back Next
VPC Subnets, Security Groups, and NACLs
VPC
Rou t er
I n bou n d Ou t bou n d
Ru les Ru les
Pu blic Su bn et Pr ivat e Su bn et
Secu r it y Gr ou p Secu r it y Gr ou p
Back Next
VPC Subnets, Security Groups, and NACLs
VPC
Rou t er
2. Th e f ir st r u le evalu at ed t h at applies t o t h e
t r af f ic t ype get s im m ediat ely applied an d
execu t ed r egar dless of t h e r u les t h at com e
af t er (h ave a h igh er rule #).
Net w or k Access Con t r ol List (NACL)
Pu blic Su bn et Pr ivat e Su bn et
Secu r it y Gr ou p Secu r it y Gr ou p
Back Next
VPC Subnets, Security Groups, and NACLs
VPC
Rou t er
Pu blic Su bn et Pr ivat e Su bn et
Secu r it y Gr ou p Secu r it y Gr ou p
Back Next
VPC Subnets, Security Groups, and NACLs
VPC
Rou t er
Pu blic Su bn et Pr ivat e Su bn et
Secu r it y Gr ou p Secu r it y Gr ou p
Back Next
VPC Subnets, Security Groups, and NACLs
HTTP I n t er n et
FTP
I n t er n et
Gat ew ay (I GW)
VPC
RT w / I GW RT w / o I GW
FTP - DENY
HTTP - ALLOW
NACL
Pu blic Su bn et Pr ivat e Su bn et
Secu r it y Gr ou p Secu r it y Gr ou p
Back Next
AWS Networking
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Topic 1:
1: Net
Networking
w or k in g101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
Over
2: Con
Overview
cept u al
Conceptual
view ofof VPCs
VPCs
Virt ual Privat e Cloud (VPC)
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
Topic 4: I n t er n et
Sect ion 5.6 t opics include:
Topic
Gat ew4:ays
Internet
an d Rou t e - Just t he FAQs
Gateways and Route
Tables - Wrap It Up!
Tables
Topic 5: VPC Su bn et s,
Topicr it5:yVPC
Secu Subnets,
Gr ou ps, an d
Security Groups, and
NACLs
NACLs
Topic 6: VPCs:
Topic 6: Ju st t hJust
e FAQs
the
an d Wr
FAQs apWrap
and I t Up!It Up!
Back Next
Back t o M ain
AWS Networking
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Back Next
Back t o M ain
AWS Networking
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Topic 1:
1: Net
Networking
w or k in g101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
Over
2: Con
Overview
cept u al
Conceptual
view ofof VPCs
VPCs
Virt ual Privat e Cloud (VPC)
Topic 3: A Walk t h r ou gh
Topic 3: A Walkthrough of
of VPC Basics
VPC Basics
Topic 4: I n t er n et
Sect ion 5 t opics included:
Topic
Gat ew4:ays
Internet
an d Rou t e - Net working 101
Gateways and Route
Tables - Concept ual Overview of VPCs
Tables
- A Walkt hrough of VPC Basics
Topic 5: VPC Su bn et s, - Int ernet Gat eways and Rout e Tables
Topicr it5:yVPC
Secu Subnets,
Gr ou ps, an d
Security Groups, and
NACLs
- VPC Subnet s, Securit y Groups, and Net work Access Cont rol
NACLs List s (NACLs)
- Just t he FAQs
Topic 6: VPCs:
Topic 6: Ju st t hJust
e FAQs
the - Wrap It Up!
an d Wr
FAQs apWrap
and I t Up!It Up!
Back t o M ain
AWS Com pute Services
Course Navigation
Com pu t e 101
Topic 1:
1: Com
Com pu
pute
t e 101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic 2: Overview of
Com pute Services
Elast ic Com put e Cloud (EC2)
Topic 5: Connecting to an
EC2 Instance from
Term inal (Not Windows)
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Com pu t e 101
Topic 1:
Topic 1: Com
Com pu
pute
t e 101
101
Topic 2: Overview of
Com pute Services
Basic
Topic 3: Elastic Com pute
Com puter
Cloud (EC2) Instances Com ponents
Topic 4: Connecting to an
EC2 Instance from
Windows
Back t o M ain
AWS Com pute Services
Course Navigation
Over view of Com pu t e Ser vices
Topic 1:
1: Com
Com pu
pute
t e 101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
Com
2: Over view of
Overview of
Elast ic Com put e Cloud (EC2)
Compu t e Ser
pute vices
Services
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Over view of Com pu t e Ser vices
"Am azon Elastic Com pute Cloud (Am azon EC2) provides scalable
Topic 3: Elastic Com pute
Cloud (EC2) Instances com pu t in g capacit y in the Am azon Web Services (AWS) cloud. Using
Am azon EC2 elim inates your need to invest in hardware up front, so you
can develop and deploy applications faster. You can use Am azon EC2 to
Topic 4: Connecting to an
EC2 Instance from
lau n ch as m an y or as f ew vir t u al ser ver s as you n eed, configure
Windows security and networking, and m anage storage. Am azon EC2 enables
you to scale up or down to handle changes in requirem ents or spikes in
popularity, reducing your need to forecast traffic."
Topic 5: Connecting to an
EC2 Instance from
Term inal (Not Windows) NOTE: There are two types of AWS com pute services we will cover in
this course: EC2 and Lam bda. We will go over Lam bda in a later section.
Topic 6: Com pute: Just
the FAQs and Wrap It Up!
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Over view of Com pu t e Ser vices
Elast ic Com pu t e Clou d (EC2) EC2 Com pon en t s: A Con cept u al Un der st an din g
Section 6
Topic 1:
Topic 1: Com
Com pu
pute
t e 101
101
Topic
Topic 2:
2: Over view of
Overview of
Com
Compu t e Ser
pute vices
Services
EC2 Instance
Com ponents
Topic 3: Elastic Com pute
Cloud (EC2) Instances
Topic 5: Connecting to an
AM I s I n st an ce Type EBS
EC2 Instance from
Term inal (Not Windows) (Lin u x or Win dow s) (Pr ocessin g Pow er ) (Local St or age)
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Over view of Com pu t e Ser vices
Elast ic Com pu t e Clou d (EC2) EC2 I n st an ce Pu r ch asin g Opt ion s (M ost Com m on )
Section 6
On Dem an d
Topic 1:
Topic 1: Com
Com pu
pute
t e 101
101
On-dem and purchasing allows you to choose any in st an ce t ype you
Topic
Topic 2:
2: Over view of
Overview of like and provision/term inate it at any tim e (on dem and).
Com
Compu t e Ser
pute vices
Services
1. This is the m ost expen sive and m ost f lexible purchasing option.
Topic 3: Elastic Com pute 2. You are only charged when the instance is r u n n in g (and billed by the
Cloud (EC2) Instances hour).
3. You can provision/term inate an on-dem and instance at anytim e.
Topic 4: Connecting to an
EC2 Instance from Reser ved
Windows
Reserved purchasing allows you to purchase an instance for a set t im e
Topic 5: Connecting to an per iod of one (1) or three (3) years.
EC2 Instance from
Term inal (Not Windows) 1. This allows for a sign if ican t pr ice discou n t over using on dem and.
2. You can select to pay upfront, partial upfront, no upfront.
Topic 6: Com pute: Just 3. Once you buy a reserved instance, you own it for the selected tim e
the FAQs and Wrap It Up! period and are r espon sible f or t h e en t ir e pr ice ? regardless of how
often you use it.
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Over view of Com pu t e Ser vices
Elast ic Com pu t e Clou d (EC2) EC2 I n st an ce Pu r ch asin g Opt ion s (M ost Com m on )
Section 6
Spot
Topic 1:
Topic 1: Com
Com pu
pute
t e 101
101
Spot pricing is a way for you to "bid" on an instance type, and then only
Topic
Topic 2:
2: Over view of
Overview of pay for and use that instance when the spot price is equ al t o or below
Com
Compu t e Ser
pute vices
Services your "bid" price.
Topic 3: Elastic Com pute 1. This option allows Am azon to sell the use of u n u sed in st an ces, for
Cloud (EC2) Instances short am ounts of tim e, at a su bst an t ial discou n t .
2. Spot pr ices f lu ct u at e based on supply and dem and in the spot
Topic 4: Connecting to an m arketplace.
EC2 Instance from 3. You are ch ar ged by t h e m in u t e.
Windows 4. When you have an active bid, an instance is pr ovision ed f or you
w h en t h e spot pr ice is equ al t o or less t h an you r bid pr ice.
Topic 5: Connecting to an 5. A provisioned instance au t om at ically t er m in at es w h en t h e spot
EC2 Instance from pr ice is gr eat er t h an you r bid pr ice.
Term inal (Not Windows)
See a full list of instance purchasing options.
Topic 6: Com pute: Just
the FAQs and Wrap It Up!
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Over view of Com pu t e Ser vices
NOTE: Before any m ajor usage of EC2 instances, you should m ake sure
to review AWS's current pricing m odel to m ake sure you understand
how m uch you will be required to pay.
Back t o M ain
AWS Com pute Services
Course Navigation
Over view of Com pu t e Ser vices
Back t o M ain
AWS Com pute Services
Course Navigation
Elast ic Com pu t e Clou d (EC2) I n st an ces
Topic 1:
1: Com
Com pu
pute
t e 101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
Com
Compu
2: Over view of
Overview
t e Ser
pute vices
Services
of
Elast ic Com put e Cloud (EC2)
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e
Clou d (EC2)
Cloud (EC2) Instances
I n st an ces
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Elast ic Com pu t e Clou d (EC2) I n st an ces
Topic 1:
Topic 1: Com
Com pu
pute
t e 101
101
A preconfigured package required to launch an EC2 instance that
includes an oper at in g syst em , software packages, and other required
Topic
Topic 2:
2: Over view of
Overview of
Com settings
Compu t e Ser
pute vices
Services
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e
Clou d (EC2)
(EC2) Instances
I n st an ces AWS Def in it ion
Cloud
AMI
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Elast ic Com pu t e Clou d (EC2) I n st an ces
Topic 1:
Topic 1: Com
Com pu
pute
t e 101
101
1. Com m u n it y AM I s
- Free to use
Topic
Topic 2:
2: Over view of
Overview of
Com - Generally, with these AMIs, you just select the OS you want
Compu t e Ser
pute vices
Services
2. AWS M ar k et place AM I s
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e
Clou d (EC2)
(EC2) Instances
I n st an ces - Pay to use
Cloud
- Generally com es packaged with additional, licensed software
Topic 4: Connecting to an
3. M y AM I s
EC2 Instance from
Windows
- AMIs you create yourself
Topic 5: Connecting to an
EC2 Instance from
Term inal (Not Windows)
I n st an ce Type Opt ion s
1. General purpose
Topic 6: Com pute: Just
2. Com pute optim ized
the FAQs and Wrap It Up!
3. GPU optim ized
4. Mem ory optim ized
5. Storage optim ized
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Elast ic Com pu t e Clou d (EC2) I n st an ces
Topic 1:
Topic 1: Com
Com pu
pute
t e 101
101
AM I Com pon en t s M y Lin u x EC2 I n st an ce
Topic
Topic 2:
2: Over view of
Overview of
1. Root volu m e t em plat e 1. Root volu m e t em plat e
Com
Compu t e Ser
pute vices
Services
- Operating system - Am azon Linux
- Application software - Apache web server
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e 2. Lau n ch per m ission s 2. Lau n ch per m ission s
Clou d (EC2)
Cloud (EC2) Instances
I n st an ces 3. Block device m appin g 3. Block device m appin g
- EBS (hard drive m apping) - EBS m apping to volum e
Topic 4: Connecting to an
EC2 Instance from
Windows
Topic 5: Connecting to an
EC2 Instance from
Term inal (Not Windows)
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Elast ic Com pu t e Clou d (EC2) I n st an ces
Topic 1:
Topic 1: Com
Com pu
pute
t e 101
101
M y Lin u x EC2 I n st an ce
Topic
Topic 2:
2: Over view of
Overview of
1. Root volu m e t em plat e
Com
Compu t e Ser
pute vices
Services
- Operating system
- Application software
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e 2. Lau n ch per m ission s
Clou d (EC2)
Cloud (EC2) Instances
I n st an ces 3. Block device m appin g
- EBS (hard drive m apping) Cr eat e an AM I
Topic 4: Connecting to an
EC2 Instance from
AMI of the "My Linux
Windows
EC2 Instance"
Topic 5: Connecting to an
Quickly create addit ion al
EC2 Instance from in st an ces using the AMI.
Term inal (Not Windows)
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Elast ic Com pu t e Clou d (EC2) I n st an ces
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Elast ic Com pu t e Clou d (EC2) I n st an ces
Topic
Topic 2:
2: Over view of
Overview of - Type: Subcategory for each fam ily type
Com
Compu t e Ser
pute vices
Services
- vCPUs: The num ber of virtual CPUs the instance type uses
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e
Clou d (EC2)
Cloud (EC2) Instances
I n st an ces - M em or y (GiB): The am ount of RAM the instance type uses
Topic 4: Connecting to an - I n st an ce st or age (GB): The local instance storage volum e (your
EC2 Instance from hard drive)
Windows
- EBS-opt im ized available: Indicates if EBS-optim ized is an option for
Topic 5: Connecting to an the instance type
EC2 Instance from
Term inal (Not Windows) - Net w or k per f or m an ce: Network perform ance rating based on its
data transfer rate (bandwidth capability)
Topic 6: Com pute: Just
the FAQs and Wrap It Up!
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Elast ic Com pu t e Clou d (EC2) I n st an ces
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e AWS Def in it ion
Clou d (EC2)
Cloud (EC2) Instances
I n st an ces
"Am azon Elastic Block Store (Am azon EBS) provides block-level storage
Topic 4: Connecting to an volum es for use with EC2 instances. EBS volum es are h igh ly available
EC2 Instance from an d r eliable st or age volu m es t h at can be at t ach ed t o an y r u n n in g
Windows in st an ce t h at is in t h e sam e Availabilit y Zon e. EBS volum es that are
attached to an EC2 instance are exposed as st or age volu m es t h at
Topic 5: Connecting to an per sist in depen den t ly f r om t h e lif e of t h e in st an ce."
EC2 Instance from
Term inal (Not Windows)
St or age
Am azon
EBS
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Elast ic Com pu t e Clou d (EC2) I n st an ces
Topic 1:
Topic 1: Com
Com pu
pute
t e 101
101 1. Ever y EC2 in st an ce M UST h ave a root volu m e, w h ich m ay or m ay n ot be EBS.
2. By def au lt , EBS root volu m es ar e set t o be delet ed w h en t h e in st an ce is t er m in at ed.
Topic
Topic 2:
2: Over view of
Overview of How ever, you can ch oose t o h ave EBS volu m es per sist af t er t er m in at ion .
Com
Compu t e Ser
pute vices
Services
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e
Clou d (EC2)
Cloud (EC2) Instances
I n st an ces
EBS
Topic 4: Connecting to an Am azon EC2 (Root Volu m e)
EC2 Instance from
Windows
3. Du r in g t h e cr eat ion of an EC2 in st an ce (or an yt im e af t er w ar ds), you can add addit ion al
EBS volu m es t o t h e in st an ce.
Topic 5: Connecting to an 4. An y addit ion al volu m e can be at t ach ed or det ach ed f r om t h e in st an ce at an y t im e, an d
EC2 Instance from is NOT delet ed (t h e def au lt ) w h en t h e in st an ce is t er m in at ed.
Term inal (Not Windows)
EBS
(Root Volu m e)
Am azon EC2
EBS
(Addit ion al Volu m es)
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Elast ic Com pu t e Clou d (EC2) I n st an ces
Topic 1:
Topic 1: Com
Com pu
pute
t e 101
101
Security groups are very sim ilar to NACLs, in that they allow or den y
t r af f ic. However, security groups are found on the in st an ce level (as
Topic
Topic 2:
2: Over view of
Overview of
Com opposed to the subnet level). In addition, the way allow / den y r u les
Compu t e Ser
pute vices
Services
w or k ar e dif f er en t f r om NACLs.
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e
Clou d (EC2)
Cloud (EC2) Instances
I n st an ces
AWS Def in it ion
Topic 4: Connecting to an
"A security group acts as a vir t u al f ir ew all t h at con t r ols t h e t r af f ic f or
EC2 Instance from
Windows
on e or m or e in st an ces. When you lau n ch an in st an ce, you associat e
on e or m or e secu r it y gr ou ps w it h t h e in st an ce. You add rules to each
security group that allow traffic to or from its associated instances. You
Topic 5: Connecting to an
can m odify the rules for a security group at any tim e; the new rules are
EC2 Instance from
Term inal (Not Windows)
autom atically applied to all instances that are associated with the
security group. When we decide whether to allow traffic to reach an
instance, we evaluate all the rules from all the security groups that are
Topic 6: Com pute: Just
associated with the instance."
the FAQs and Wrap It Up!
Secu r it y Gr ou ps
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Elast ic Com pu t e Clou d (EC2) I n st an ces
Topic 1:
Topic 1: Com
Com pu
pute
t e 101
101
VPC
Topic
Topic 2:
2: Over view of
Overview of
Com
Compu t e Ser
pute vices
Services
NACLs
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e
Clou d (EC2)
Cloud (EC2) Instances
I n st an ces
Public Subnet
Topic 4: Connecting to an
EC2 Instance from
Windows
Topic 5: Connecting to an
I n bou n d Ou t bou n d
EC2 Instance from Ru les Ru les
Term inal (Not Windows)
Su bn et 1 (Pu blic)
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Elast ic Com pu t e Clou d (EC2) I n st an ces
Topic 1:
Topic 1: Com
Com pu
pute
t e 101
101
VPC
Topic
Topic 2:
2: Over view of
Overview of
Com
Compu t e Ser
pute vices
Services
NACLs
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e
Clou d (EC2)
Cloud (EC2) Instances
I n st an ces
Public Subnet
Topic 4: Connecting to an
EC2 Instance from
I n bou n d an d Ou t bou n d
Windows
Ru les Rules
1. All t r af f ic is den ied u n less t h er e is
Topic 5: Connecting to an
an explicit ALLOW r u le f or it .
EC2 Instance from
Term inal (Not Windows)
2. Th er e ar e n o DENY r u les ? on ly
ALLOW r u les.
Topic 6: Com pute: Just
the FAQs and Wrap It Up!
Su bn et 1 (Pu blic)
Back Next
Back t o M ain
NACLs and Security Groups
HTTP I n t er n et
FTP
I n t er n et
Gat ew ay (I GW)
VPC
RT w / I GW RT w / o I GW
FTP - DENY
HTTP - ALLOW
NACL
Pu blic Su bn et Pr ivat e Su bn et
HTTP - Allow ed HTTP - Not Allow ed
Back Next
AWS Com pute Services
Course Navigation
Con n ect in g t o an EC2 I n st an ce f r om Win dow s
Topic 1:
1: Com
Com pu
pute
t e 101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
Com
Compu
2: Over view of
Overview
t e Ser
pute vices
Services
of
Elast ic Com put e Cloud (EC2)
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e
Clou d (EC2)
Cloud (EC2) Instances
I n st an ces
Topic 5: Connecting to an
EC2 Instance from
Term inal (Not Windows)
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Con n ect in g t o an EC2 I n st an ce f r om Win dow s
Topic I n t er n et
Topic 2:
2: Over view of
Overview of
Com
Compu t e Ser
pute vices
Services
Availabilit y Zon e
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e
VPC
Clou d (EC2)
Cloud (EC2) Instances
I n st an ces
I GW
Topic 4: Connecting
Topic 4: Con n ect in gtot oan
an
EC2EC2 I n st anfrom
Instance ce f r om
Win dow s
Windows
Secu r it y Gr ou p
I n st an ce
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Con n ect in g t o an EC2 I n st an ce f r om Ter m in al (Not Win dow s)
Topic 1:
1: Com
Com pu
pute
t e 101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
Com
Compu
2: Over view of
Overview
t e Ser
pute vices
Services
of
Elast ic Com put e Cloud (EC2)
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e
Clou d (EC2)
Cloud (EC2) Instances
I n st an ces
Topic
Topic 5:
5: Con n ect in g to
Connecting t oan
an
EC2EC2 I n st anfrom
Instance ce f r om
Ter
Termm in al (Not
inal (Not Windows)
Win dow s)
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Con n ect in g t o an EC2 I n st an ce f r om Ter m in al (Not Win dow s)
Topic I n t er n et
Topic 2:
2: Over view of
Overview of
Com
Compu t e Ser
pute vices
Services
Availabilit y Zon e
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e
Clou d (EC2)
(EC2) Instances
I n st an ces
VPC
Cloud
I GW
Topic 4: Connecting
Topic 4: Con n ect in gtot oan
an
EC2EC2 I n st anfrom
Instance ce f r om
Win dow s
Windows
Topic
Topic 5:
5: Con n ect in g to
Connecting t oan
an Rou t e Table
EC2EC2 I n st anfrom
Instance ce f r om
Ter
Termm in al (Not
inal (Not Windows)
Win dow s)
NACL
Secu r it y Gr ou p
I n st an ce
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Topic 1:
1: Com
Com pu
pute
t e 101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
Com
Compu
2: Over view of
Overview
t e Ser
pute vices
Services
of
Elast ic Com put e Cloud (EC2)
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e
Clou d (EC2)
Cloud (EC2) Instances
I n st an ces
Topic
Topic 5:
5: Con n ect in g to
Connecting t oan
an
EC2EC2 I n st anfrom
Instance ce f r om
Ter
Termm in al (Not
inal (Not Windows)
Win dow s)
Topic 6: Com
Topic 6: Ju st pute:
t h e FAQs
Just
an dFAQs
the Wr apand
I t Up!
Wrap It Up!
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Back Next
Back t o M ain
AWS Com pute Services
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Topic 1:
1: Com
Com pu
pute
t e 101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
Com
Compu
2: Over view of
Overview
t e Ser
pute vices
Services
of
Elast ic Com put e Cloud (EC2)
Topic 3: Elastic
Topic 3: Elast icCom
Compute
pu t e
Clou d (EC2)
Cloud (EC2) Instances
I n st an ces
Topic 4: Connecting
Topic 4: Con n ect in gtot oan Sect ion 6 t opics included:
an
EC2EC2 I n st anfrom
Instance ce f r om
Win dow s
Windows
- Com put e 101
- Overview of Com put e Services
Topic
Topic 5:
5: Con n ect in g to
Connecting t oan - Elast ic Com put e Cloud (EC2) Inst ances
an
EC2EC2 I n st anfrom
Instance ce f r om - Connect ing t o an EC2 Inst ance from Windows
Ter
Termm in al (Not
inal (Not Windows)
Win dow s)
- Connect ing t o an EC2 Inst ance from Term inal (Not
Windows)
Topic 6: Com
Topic 6: Ju st pute:
t h e FAQs
Just - Just t he FAQs and Wrap It Up!
an dFAQs
the Wr apand
I t Up!
Wrap It Up!
Back Next
Back t o M ain
AWS Storage
Course Navigation
St or age 101
Topic 1:
1: St
Storage
or age 101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic 2: Overview of AWS AWS St orage Services
Storage Services
Topic 3: S3 Storage
Classes
Sect ion 7.1 t opics include:
Topic 4: Storage Gateway - St orage Basics
Back Next
Back t o M ain
AWS Storage
Course Navigation
St or age 101
Topic 1:
Topic 1: St
Storage
or age 101
101
Topic 3: S3 Storage
Classes
Storage Array
Topic 4: Storage Gateway
Back Next
Back t o M ain
AWS Storage
Course Navigation
St or age 101
Topic 1:
Topic 1: St
Storage
or age 101
101
Topic 3: S3 Storage
Classes
Storage Array
Topic 4: Storage Gateway
Back Next
Back t o M ain
AWS Storage
Course Navigation
St or age 101
Topic 1:
Topic 1: St
Storage
or age 101
101
Bulk Storage
Topic 2: Overview of AWS
Storage Services Think of bulk storage as a giant hard drive where you can
upload alm ost any type of data. The data is accessed using an
application service. There is no access to the underlying storage
Topic 3: S3 Storage
Classes
operating system . Exam ples of cloud bulk storage services
include Dropbox, Google Drive, and Am azon S3.
Back Next
Back t o M ain
AWS Storage
Course Navigation
St or age 101
Topic 1:
Topic 1: St
Storage
or age 101
101 Block Storage
Think of block storage as the storage used with a com puter. The
Topic 2: Overview of AWS com puter would see a volum e where the operating system and
Storage Services applications can be installed (e.g., the C:\ drive on a Windows
com puter).
Topic 3: S3 Storage
Am azon EBS is block st or age t h at at t ach es t o
Classes
an EC2 in st an ce.
Back t o M ain
AWS Storage
Course Navigation
Over view of AWS St or age Ser vices
Topic 1:
1: St
Storage
or age 101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
AWS
2: Over view of
Overview
St orServices
of AWS
age Ser vices
AWS St orage Services
Storage
Topic 3: S3 Storage
Classes
Sect ion 7.2 t opics include:
Topic 4: Storage Gateway - Overview of Sim ple St orage Service
Back Next
Back t o M ain
AWS Storage
Course Navigation
Over view of AWS St or age Ser vices
AWS St or age Ser vices Wh at I s Sim ple St or age Ser vice (S3)?
Section 7
Sim plif ied Def in it ion
Topic 1:
Topic 1: St
Storage
or age 101
101
An online, bulk storage service you can access from alm ost any device.
Topic
Topic 2:
2: Over view of
Overview of AWS
AWS St orServices
age Ser vices AWS Def in it ion
Storage
"Am azon S3 has a sim ple web services interface that you can use to
Topic 3: S3 Storage
st or e an d r et r ieve an y am ou n t of dat a, at an y t im e, f r om an yw h er e
Classes
on t h e w eb. It gives any user access to the sam e highly scalable,
reliable, fast, inexpensive data storage infrastructure that Am azon uses
Topic 4: Storage Gateway to run its own global network of websites. The service aim s to m axim ize
benefits of scale and to pass those benefits on to users."
Topic 5: Just the FAQs and
Wrap It up! NOTE: AWS has m ultiple storage services. We previously discussed
Am azon EBS storage in the com pute section. In this section, we will
discuss Am azon S3 and the associated storage classes.
Back Next
Back t o M ain
AWS Storage
Course Navigation
Over view of AWS St or age Ser vices
Com pon en t s an d St r u ct u r e
AWS St or age Ser vices
Section 7
Basics:
1. S3 = Sim ple Storage Service
Topic 1:
Topic 1: St
Storage
or age 101
101 2. It is AWS?s prim ary storage service. Bucket
3. You can store any type of file in S3.
Topic
Topic 2:
2: Over view of
Overview of AWS
AWS St orServices
age Ser vices Bu ck et s:
Storage
1. Root-level ?folders? you create in S3 are referred to as bu ck et s.
S3
Topic 3: S3 Storage
Folder
Classes 2. Any ?subfolder ? you create in a bucket is referred to as a f older .
2. Best pr act ice is to select the region that is physically closest t o you (to
r edu ce t r an sf er lat en cy).
OR
Back Next
Back t o M ain
AWS Storage
Course Navigation
Over view of AWS St or age Ser vices
Topic 1:
Topic 1: St
Storage
or age 101
101
Region (e.g., us-east-1)
Topic
Topic 2:
2: Over view of
Overview of AWS
AWS St orServices
Storage age Ser vices
S3
Topic 3: S3 Storage
Classes
Object
My Spreadsheet
Object
My Presentation
Back Next
Back t o M ain
AWS Storage
Course Navigation
Over view of AWS St or age Ser vices
Cr eat in g an S3 Bu ck et :
AWS St or age Ser vices
Section 7 1. Choose a bucket nam e:
- Bu ck et n am es m u st f ollow a set of r u les:
- Bucket nam es m ust be unique across all of AWS.
Topic 1:
Topic 1: St
Storage
or age 101
101
- Bucket nam es m ust be 3 to 63 characters in length.
- Bucket nam es can only contain lowercase letters, num bers, and
Topic
Topic 2:
2: Over view of
Overview of AWS
hyphens.
AWS St orServices
Storage age Ser vices
- Bucket nam es m ust not be form atted as an IP address (e.g.,
192.168.5.4).
Topic 3: S3 Storage 2. Select a region.
Classes
3. Block/allow public access.
4. Set storage class.
Topic 4: Storage Gateway
NOTE: There are m ore ?advanced? rules that allow for som e varying
form ats, which can be found here:
Topic 5: Just the FAQs and
h t t p:/ / docs.aw s.am azon .com / Am azon S3/ lat est / dev/ Bu ck et Rest r ict ion s.h t m l
Wrap It up!
Cr eat in g a Folder in a Bu ck et :
1. Navigate into a bucket.
2. Click on ?Create Folder.?
3. Give the folder a nam e.
4. Select ?Upload.?
5. Select a file to upload.
6. Click ?Start Upload.?
Back t o M ain
AWS Storage
Course Navigation
S3 St or age Classes
Topic 1:
1: St
Storage
or age 101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
AWS
2: Over view of
Overview
St orServices
of AWS
age Ser vices
AWS St orage Services
Storage
Topic 3: S3 St or age
Topic 3: S3 Storage
Classes
Classes
Sect ion 7.3 t opics include:
Topic 4: Storage Gateway - St orage Classes
- Durabilit y and Availabilit y
Topic 5: Just the FAQs and - Ot her S3 Feat ures
Wrap It up!
Back Next
Back t o M ain
AWS Storage
Course Navigation
S3 St or age Classes
Topic
Topic 2:
2: Over view of
Overview of AWS Available storage classes include:
AWS St orServices
Storage age Ser vices - Standard
- Standard-IA (Infrequent Access)
Topic 3: S3 St or age
Topic 3: S3 Storage - One Zone-IA (Infrequent Access)
Classes
Classes - Intelligent-Tiering
- Glacier
- Glacier Deep Archive
Topic 4: Storage Gateway
Each storage class has varying attributes that dictate things like:
Topic 5: Just the FAQs and
Wrap It up! - Storage cost
- Object availability
- Object durability
- Frequency of access (to the object)
You can change the storage class of an object at any tim e (for the most
part).
Back Next
Back t o M ain
AWS Storage
Course Navigation
S3 St or age Classes
Intelligent-Tiering:
1. Designed to optim ize costs by autom atically m oving data to the m ost
cost-effective tier based on your usage
2. 99.999999999% object durability (?11 nines?)
3. 99.90% object availability
4. Pricing depends on the assigned storage class
Back Next
Back t o M ain
AWS Storage
Course Navigation
S3 St or age Classes
Back Next
Back t o M ain
AWS Storage
Course Navigation
S3 St or age Classes
Object Du r abilit y an d Availabilit y
AWS St or age Ser vices
Section 7
Object Durability:
1. The percent (%) over a one-year tim e period that a file stored in S3 will
Topic 1:
Topic 1: St
Storage
or age 101
101 not be lost
Topic
Topic 2:
2: Over view of
Overview of AWS
AWS St orServices
Storage age Ser vices For object durability of 99.999999999% (11 nines), that m eans there is
a 0.000000001% chance of a file in S3 being lost in a year.
Topic 3: S3 St or age
Topic 3: S3 Storage
Classes
Classes OR
If you have 10,000 files stored in S3 (at 11 nines durability), then you can
Topic 4: Storage Gateway
expect to lose one file in 10 m illion years.
Object Availability:
1. The percent (%) over a one-year tim e period that a file stored in S3 will
be accessible
For object availability of 99.99%, that m eans there is a 0.01% chance you
won't be able to access a file stored in S3 in a year.
OR
For every 10,000 hours, you can expect a total of one hour for which a
file m ay not be available to access.
Back Next
Back t o M ain
AWS Storage
Course Navigation
S3 St or age Classes
Object Versioning:
Topic 4: Storage Gateway - Autom atically keep m ultiple versions of an object (when enabled).
Back Next
Back t o M ain
AWS Storage
Course Navigation
St or age Gat ew ay
Topic 1:
1: St
Storage
or age 101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
AWS
2: Over view of
Overview
St orServices
of AWS
age Ser vices
AWS St orage Services
Storage
Topic 3: S3 St or age
Topic 3: S3 Storage
Classes
Classes
Back Next
Back t o M ain
AWS Storage
Course Navigation
St or age Gat ew ay
Topic 5: Just the FAQs and "AWS Storage Gateway is a hybrid storage service that enables your
Wrap It up! on-prem ises applications to seam lessly use AWS cloud storage. You can
use the service for backup and archiving, disaster recovery, cloud data
processing, storage tiering, and m igration. The service helps you reduce
and sim plify your data center and branch or rem ote office storage
infrastructure. Your applications connect to the service through a virtual
m achine or hardware gateway appliance using standard storage
protocols, such as NFS, SMB, and iSCSI. The gateway connects to AWS
storage services, such as Am azon S3, Am azon S3 Glacier, Am azon S3
Glacier Deep Archive, Am azon EBS, and AWS Backup, providing storage
for f iles, volu m es, snapshots, and vir t u al t apes in AWS. The service
includes a highly optim ized data transfer m echanism , with bandwidth
m anagem ent, autom ated network resilience, and efficient data transfer,
along with a local cache for low-latency on-prem ises access to your
m ost active data.
Back Next
Back t o M ain
AWS Storage
Course Navigation
St or age Gat ew ay
St or age Gat ew ay Deploym en t Types
AWS St or age Ser vices
Section 7
File Gat ew ay
Data is uploaded to S3 for use with object-based workloads. S3 file storage can
Topic 1:
Topic 1: St
Storage
or age 101
101 also be used for storage tiering to allow for data storage on the m ost cost-effective
storage class.
Topic
Topic 2:
2: Over view of
Overview of AWS
AWS St orServices
age Ser vices Volu m e Gat ew ay
Storage
Volum es are created in the AWS cloud. The applications in the custom er data
center can access these volum es. There are two types: stored volum es and cached
Topic 3: S3 St or age
Topic 3: S3 Storage volum es. With st or ed volu m es, all data is stored at the custom er location (data
Classes
Classes center) and periodically backed up to AWS using snapshots. Cach ed volu m es store
the data in the AWS cloud, and the data is cached in the custom er 's data center for
Topic 4: St or age
fast access.
Gat ew ay
Topic 4: Storage Gateway
Tape Gat ew ay
Cost-effective, long-term , off-site data archiving. A virtual tape library (VTL)
Topic 5: Just the FAQs and
interfaces with the custom er 's existing tape backup software.
Wrap It up!
Back t o M ain
AWS Storage
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Topic 1:
1: St
Storage
or age 101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
AWS
2: Over view of
Overview
St orServices
of AWS
age Ser vices
AWS St orage Services
Storage
Topic 3: S3 St or age
Topic 3: S3 Storage
Classes
Classes
Back Next
Back t o M ain
AWS Storage
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Back Next
Back t o M ain
AWS Storage
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Topic 1:
1: St
Storage
or age 101
Topic 101
AWS Cert ified Cloud Pract it ioner:
Topic
Topic 2:
AWS
2: Over view of
Overview
St orServices
of AWS
age Ser vices
AWS St orage Services
Storage
Topic 3: S3 St or age
Topic 3: S3 Storage
Classes
Classes
Topic 4: St or age
Gat ew ay
Topic 4: Storage Gateway Sect ion 7 t opics included:
- St orage 101
Topic 5: Ju st t h e FAQs - Overview of AWS St orage Services
Topic 5: Just the FAQs and
an d Wr ap I t Up!
Wrap It up! - S3 St orage Classes
- St orage Gat eway
- Just t he FAQs and Wrap It Up!
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Elast ic Load Balan cin g (ELB)
ELB an d Au t o Scalin g
Section 8
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
Balancing (ELB) AWS Cert ified Cloud Pract it ioner:
ELB and Aut o Scaling
Topic 2: Auto Scaling
Topic 3: Just the FAQs and Sect ion 8.1 t opics include:
Wrap It Up!
- What Is Elast ic Load Balancing?
- Benefit s of Elast ic Load Balancing
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Elast ic Load Balan cin g (ELB)
Elastic Load
Balancing (ELB)
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Elast ic Load Balan cin g (ELB)
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
Balancing (ELB)
Elastic Load
Balancing (ELB)
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Elast ic Load Balan cin g (ELB)
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
Balancing (ELB)
Elastic Load
Balancing (ELB)
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Elast ic Load Balan cin g (ELB)
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
Balancing (ELB)
Elastic Load
Balancing (ELB)
User 4 User 6
Or if a server crashes,
the ELB will re-route all
users to the working
User 2 server(s).
Web Server 1 Web Server 2
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Elast ic Load Balan cin g (ELB)
Topic
Topic 1:
1: Elast ic Load
Elastic Load Elastic Load Balancing is a foundational com ponent of h igh
Balan cin g (ELB)
Balancing (ELB) availabilit y an d f au lt t oler an ce.
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Au t o Scalin g
ELB an d Au t o Scalin g
Section 8
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
Balancing (ELB) AWS Cert ified Cloud Pract it ioner:
Topic 2: Au t o Scalin g
ELB and Aut o Scaling
Topic 2: Auto Scaling
Topic 3: Just the FAQs and Sect ion 8.2 t opics include:
Wrap It Up!
- What Is Aut o Scaling?
- Benefit s of Aut o Scaling
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Au t o Scalin g
ELB an d Au t o Scalin g
Wh at I s Au t o Scalin g?
Section 8
Sim plif ied Def in it ion
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
(ELB) Auto Scaling autom ates the process of adding (scalin g u p) or rem oving
Balancing
(scalin g dow n ) EC2 instances based on t r af f ic dem an d for your
Topic 2: Au t o Scalin g application.
Topic 2: Auto Scaling
Auto Scaling
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Au t o Scalin g
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
Balancing (ELB)
Topic 2: Au t o Scalin g
Topic 2: Auto Scaling
User 1 User 2 User 3 User 4 User 5 User 6
Elastic Load
Balancing (ELB)
M ax capacit y M ax capacit y
of 3 u ser s of 3 u ser s
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Au t o Scalin g
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
Balancing (ELB)
Topic 2: Au t o Scalin g
Topic 2: Auto Scaling
Elastic Load
Balancing (ELB)
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Au t o Scalin g
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
Balancing (ELB)
Topic 2: Au t o Scalin g
Topic 2: Auto Scaling
User s User s User s User s
Topic 3: Just the FAQs and
Wrap It Up! We also w an t t o access you r
w ebsit e!
Elastic Load
Balancing (ELB)
User 4 User 6
Or if a server crashes,
the ELB will re-route all
users to the working
User 2 server(s).
Web Server 1 Web Server 2
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Au t o Scalin g
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
Balancing (ELB)
Topic 2: Au t o Scalin g
Topic 2: Auto Scaling
User s
Elastic Load
Balancing (ELB)
User 4 User 6
User s
The EC2 instances will
overload, possibly
crash, and run
User 2 extrem ely slow.
Web Server 1 Web Server 2
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Au t o Scalin g
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
Balancing (ELB)
Topic 2: Au t o Scalin g
Topic 2: Auto Scaling
Au t o Scalin g
M ax capacit y M ax capacit y M ax capacit y
of 3 u ser s of 3 u ser s of 3 u ser s
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Au t o Scalin g
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
Balancing (ELB)
Topic 2: Au t o Scalin g
Topic 2: Auto Scaling
User 5 User 2 User 7 User 8
Au t o Scalin g
M ax capacit y M ax capacit y
of 3 u ser s of 3 u ser s
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Au t o Scalin g
Topic
Topic 1:
1: Elast ic Load
Elastic Load Au t o Scalin g builds on the benefits of Elast ic Load Balan cin g
Balan cin g (ELB)
Balancing (ELB) while adding the benefits of scalabilit y and elast icit y.
Topic 2: Au t o Scalin g
Topic 2: Auto Scaling
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
ELB an d Au t o Scalin g
Section 8
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
Balancing (ELB) AWS Cert ified Cloud Pract it ioner:
Topic 2: Au t o Scalin g
ELB and Aut o Scaling
Topic 2: Auto Scaling
Topic
Topic 3:
3: Ju st the
Just t h e FAQs
FAQsand
an d WrItap
Wrap Up!I t Up!
Sect ion 8.3 t opics include:
- Just t he FAQs
- Wrap It Up!
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
ELB an d Au t o Scalin g
Ju st t h e FAQs
Section 8
- Elastic Load Balancing (ELB) evenly distributes traffic between EC2
instances that are associated with it.
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
(ELB)
- ELB can distribute traffic across m ultiple instances across m ultiple
Balancing
Availability Zones, which increases application fault tolerance.
Topic 2: Au t o Scalin g - ELB can detect unhealthy instances and redirect traffic to healthy
Topic 2: Auto Scaling
instances.
- Auto Scaling autom ates the process of scaling up (adding) or scaling
Topic
Topic 3:
3: Ju st the
Just t h e FAQs
FAQsand
down (rem oving) EC2 instances based on traffic dem ands.
an d WrItap
Wrap Up!I t Up!
- Auto Scaling adds scalability and elasticity to ELB.
Back Next
Back t o M ain
Elasticity and Scaling EC2
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
ELB an d Au t o Scalin g
Section 8
Topic
Topic 1:
1: Elast ic Load
Elastic Load
Balan cin g (ELB)
Balancing (ELB) AWS Cert ified Cloud Pract it ioner:
Topic 2: Au t o Scalin g
Elast icit y and Scaling EC2
Topic 2: Auto Scaling
Topic
Topic 3:
3: Ju st the
Just t h e FAQs
FAQsand
an d WrItap
Wrap Up!I t Up!
Back Next
Back t o M ain
Content Delivery and Dom ain Nam e System (DNS)
Course Navigation
Rou t e 53
Topic 1: Route 53
Topic 1: Rou t e 53 AWS Cert ified Cloud Pract it ioner:
CloudFront and DNS
Topic 2: CloudFront
Topic 3: Just the FAQs and Sect ion 9.1 t opics include:
Wrap It Up!
- What Is Rout e 53?
- DNS Review
- Rout e 53 Feat ures and Benefit s
Back Next
Back t o M ain
Content Delivery and Dom ain Nam e System (DNS)
Course Navigation
Rou t e 53
Dom ain Nam e Syst em (DNS) ser vice: Am azon Route 53 translates
friendly dom ains nam es like www.example.com into IP addresses like
192.0.2.1. Am azon Route 53 responds to DNS queries using a global
network of authoritative DNS servers, which reduces latency.
Healt h ch eck in g: Am azon Route 53 sends autom ated requests over the
internet to your application to verify that it 's reachable, available, and
functional.
You can use any combination of these functions. For example, you can use
Amazon Route 53 as both your registrar and your DNSservice, or you can use
Amazon Route 53 as the DNSservice for a domain that you registered with
another domain registrar."
Am azon Route 53
Back Next
Back t o M ain
Content Delivery and Dom ain Nam e System (DNS)
Course Navigation
Rou t e 53
Topic 2: CloudFront
I w an t t o go t o
lin u xacadem y.com
Gen er al Visit or
t o a Websit e
Back Next
Back t o M ain
Content Delivery and Dom ain Nam e System (DNS)
Course Navigation
Rou t e 53
Topic 2: CloudFront
DNSServer:
Back Next
Back t o M ain
Content Delivery and Dom ain Nam e System (DNS)
Course Navigation
Rou t e 53
Topic 2: CloudFront
DNSServer:
Back Next
Back t o M ain
Content Delivery and Dom ain Nam e System (DNS)
Course Navigation
Rou t e 53
Topic 1: Route 53 I n t er n et
Topic 1: Rou t e 53
DNS
Ser ver
Topic 2: CloudFront
VPC
Elastic
Load
Balancing
(ELB)
NACL NACL
Pu blic Su bn et Pu blic Su bn et
Au t o Scalin g Gr ou p
Secu r it y Gr ou p Secu r it y Gr ou p
Back Next
Back t o M ain
Content Delivery and Dom ain Nam e System (DNS)
Course Navigation
Clou dFr on t
Topic 1: Route 53
Topic 1: Rou t e 53 AWS Cert ified Cloud Pract it ioner:
Topic
CloudFront and DNS
Topic 2:
2: Clou dFr on t
CloudFront
Topic 3: Just the FAQs and Sect ion 9.2 t opics include:
Wrap It Up!
- What Is CloudFront ?
- CloudFront Feat ures and Benefit s
Back Next
Back t o M ain
Content Delivery and Dom ain Nam e System (DNS)
Course Navigation
Clou dFr on t
Am azon
CloudFront
Back Next
Back t o M ain
Content Delivery and Dom ain Nam e System (DNS)
Course Navigation
Clou dFr on t
Topic 1: Route 53
Topic 1: Rou t e 53 Web Br ow ser (h t t p) I n t er n et
Cu st om er s
Topic
Topic 2:
2: Clou dFr on t
CloudFront
CloudFront "Origin"
ELB
S3
EC2
Back Next
Back t o M ain
Content Delivery and Dom ain Nam e System (DNS)
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Topic 1: Route 53
Topic 1: Rou t e 53 AWS Cert ified Cloud Pract it ioner:
Topic
CloudFront and DNS
Topic 2:
2: Clou dFr on t
CloudFront
Topic
Topic 3:
3: Ju st the
Just t h e FAQs
FAQsand
an d WrItap
Wrap Up!I t Up!
Sect ion 9.3 t opics include:
- Just t he FAQs
- Wrap It Up!
Back Next
Back t o M ain
Content Delivery and Dom ain Nam e System (DNS)
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Topic 1: Route 53
Topic 1: Rou t e 53 1. Dom ain registration
2. Dom ain Nam e System (DNS) service
3. Traffic flow (send users to the best endpoint)
Topic
Topic 2:
2: Clou dFr on t
CloudFront 4. Health checking
5. DNS failover (autom atically change dom ain endpoint if system fails)
Topic
Topic 3:
3: Ju st the
Just t h e FAQs
FAQsand 6. Integrates with ELB, S3, and CloudFront as endpoints
an d WrItap
Wrap Up!I t Up!
Clou dFr on t
1. Cache content at edge locations for fast distribution to custom ers
2. Built-in distributed denial of service (DDoS) attack protection
3. Integrates with m any AWS services (S3, EC2, ELB, Route 53, Lam bda)
Back Next
Back t o M ain
Content Delivery and Dom ain Nam e System (DNS)
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Topic 1: Route 53
Topic 1: Rou t e 53 AWS Cert ified Cloud Pract it ioner:
Topic
Elast icit y and Scaling EC2
Topic 2:
2: Clou dFr on t
CloudFront
Topic
Topic 3:
3: Ju st the
Just t h e FAQs
FAQsand
an d WrItap
Wrap Up!I t Up!
Back Next
Back t o M ain
Monitoring, Logging, and Notifications
Course Navigation
Clou dWat ch M on it or in g, M et r ics, an d Logs
M on it or in g an d Loggin g
Section 10
Topic 1:
Topic 1: Clou
CloudWatch
dWat ch
(Monitoring,
(M on it or in g, Metrics,
M et r ics,and
AWS Cert ified Cloud Pract it ioner:
Logs)
an d Logs)
Monit oring and Logging
Topic 2: CloudTrail
Back Next
Back t o M ain
Monitoring, Logging, and Notifications
Course Navigation
Clou dWat ch M on it or in g, M et r ics, an d Logs
M on it or in g an d Loggin g
Wh at I s Clou dWat ch ?
Section 10
Sim plif ied Def in it ion
Topic 1:
Topic 1: Clou
CloudWatch
dWat ch
(Monitoring,
(M on it or in g, Metrics,
M et r ics,and
CloudWatch is a service that allows you to m on it or various elem ents of
Logs)
an d Logs) your AWS account.
Am azon CloudWatch
Back Next
Back t o M ain
Monitoring, Logging, and Notifications
Course Navigation
Clou dWat ch M on it or in g, M et r ics, an d Logs
M on it or in g an d Loggin g
Clou dWat ch M on it or in g Basics
Section 10
Topic 1:
1: Clou
CloudWatch
Use the
Topic dWat ch
(Monitoring,
(M on it or in g, Metrics,
M et r ics,and Dashboard to view
Logs)
an d Logs) m etrics that you
select.
Topic 2: CloudTrail
Am azon
CloudWatch
EC2 S3 Billin g
- CPU u t ilizat ion - Nu m ber of object s Wh at abou t m y
- St at u s ch eck s - Bu ck et size m on t h ly bill?
- Disk r ead/ w r it es
Back Next
Back t o M ain
Monitoring, Logging, and Notifications
Course Navigation
Clou dWat ch M on it or in g, M et r ics, an d Logs
Topic 1:
Topic 1: Clou
CloudWatch
dWat ch
(Monitoring,
(M on it or in g, Metrics,
M et r ics,and You can view the
Logs)
an d Logs) alarm s in CloudWatch
or have the alarm
trigger an action (like
Topic 2: CloudTrail
an SNS m essage).
Am azon
CloudWatch
EC2 S3 Billin g
Threshold set: Threshold set: Threshold set:
CPU u t ilizat ion > Cu r r en t m on t h ly
Nu m ber of
80% billin g > $500
object s in a
bu ck et > 100
Back Next
Back t o M ain
Monitoring, Logging, and Notifications
Course Navigation
Clou dWat ch M on it or in g, M et r ics, an d Logs
1. Monitor m etrics for alm ost all your AWS resources (e.g., EC2
Topic 1:
Topic 1: Clou
CloudWatch
dWat ch instances).
(Monitoring,
(M on it or in g, Metrics,
M et r ics,and 2. Create and m onitor custom m etrics.
Logs)
an d Logs)
3. Create custom dashboards for easy viewing of m etrics.
4. Monitor and store logs.
Topic 2: CloudTrail
5. Set alarm s and events (and trigger actions based on them ).
Back t o M ain
Monitoring, Logging, and Notifications
Course Navigation
Clou dTr ail
M on it or in g an d Loggin g
Section 10
Topic 1:
Topic 1: Clou
CloudWatch
dWat ch
(Monitoring,
(M on it or in g, Metrics,
M et r ics,and
AWS Cert ified Cloud Pract it ioner:
Logs)
an d Logs)
Monit oring and Logging
Topic 2: CloudTrail
Topic 2: Clou dTr ail
Back Next
Back t o M ain
Monitoring, Logging, and Notifications
Course Navigation
Clou dTr ail
M on it or in g an d Loggin g
Wh at I s Clou dTr ail?
Section 10
Sim plif ied Def in it ion
CloudTrail allows you to m onitor all actions taken by IAM users (i.e.
Topic 1:
Topic 1: Clou
CloudWatch
dWat ch
(Monitoring,
(M on it or in g, Metrics,
M et r ics,and services accessed and actions taken - such as logging who deleted an
Logs)
an d Logs) S3 object).
AWS
CloudTrail
Back Next
Back t o M ain
Monitoring, Logging, and Notifications
Course Navigation
Clou dTr ail
Topic 1:
Topic 1: Clou
CloudWatch
dWat ch Logs are saved
(Monitoring,
(M on it or in g, Metrics,
M et r ics,and into an S3 bucket
Logs)
an d Logs)
in a gzip archive.
Topic 2: CloudTrail
Topic 2: Clou dTr ail
AWS
CloudTrail
EC2 S3
M at t sh u t dow n t h e Jam es m odif ied
EC2 I n st an ce.
bu ck et per m ission s
an d gr an t ed pu blic
access.
Back t o M ain
Notification Services
Course Navigation
Sim ple Not if icat ion Ser vice
M on it or in g an d Loggin g
Section 10
Topic 1:
Topic 1: Clou
CloudWatch
dWat ch
(Monitoring,
(M on it or in g, Metrics,
M et r ics,and
AWS Cert ified Cloud Pract it ioner:
Logs)
an d Logs)
Not ificat ion Services
Topic 2:
Topic 2: Clou
CloudTrail
dTr ail
Topic
Topic 1:
1: Sim ple
Not if icat ion Service
Notification Ser vice(SNS)
Back Next
Back t o M ain
Notification Services
Course Navigation
Sim ple Not if icat ion Ser vice
M on it or in g an d Loggin g
Wh at I s Sim ple Not if icat ion Ser vice?
Section 10
Sim plif ied Def in it ion
Topic 1:
Topic 1: Clou
CloudWatch
dWat ch
(Monitoring,
(M on it or in g, Metrics,
M et r ics,and
An AWS service that allows you to au t om at e t h e sen din g of em ail or
Logs)
an d Logs) t ext m essage n ot if icat ion s, based on even t s that happen in your AWS
account
Topic 2:
Topic 2: Clou
CloudTrail
dTr ail
AWS Def in it ion
Back Next
Back t o M ain
Notification Services
Course Navigation
Sim ple Not if icat ion Ser vice
Topic 2:
Topic 2: Clou
CloudTrail
dTr ail
CloudWatch
Am azon triggersa CWalarm Syst em
CloudWatch Alarm Adm in
M essage
The CWalarm
Text
triggersa text
message to the
system admin with
Am azon Sim ple
info about the
Notification
crashed instance
Service
Back Next
Back t o M ain
Notification Services
Course Navigation
Sim ple Not if icat ion Ser vice
Pu blish er s
The
hum an/alarm /event
that gives SNS the
m essage that needs
to be sent
Back Next
Back t o M ain
Notification Services
Course Navigation
Sim ple Not if icat ion Ser vice
Topic
Topic 1:
1: Sim ple
Not if icat ion Service
Notification Ser vice(SNS)
Back t o M ain
Notification Services
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
M on it or in g an d Loggin g
Section 10
Topic 1:
Topic 1: Clou
CloudWatch
dWat ch
(Monitoring,
(M on it or in g, Metrics,
M et r ics,and
AWS Cert ified Cloud Pract it ioner:
Logs)
an d Logs)
Not ificat ion Services
Topic 2: Clou
Topic CloudTrail
dTr ail
Not if icat ion Ser vices Sect ion 11.2 t opics include:
Section 11
- Just t he FAQs
- Wrap It Up!
Topic 1: Sim ple
Topic 1: Sim ple
Not if icat ion Ser vice
Notification Service (SNS)
(SNS)
Topic
Topic 2:
2: Ju st the
Just t h e FAQs
FAQsand
an d WrItap
Wrap Up!I t Up!
Back Next
Back t o M ain
Notification Services
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
M on it or in g an d Loggin g
Ju st t h e FAQs
Section 10
Clou dWat ch
Topic 1:
Topic 1: Clou
CloudWatch
dWat ch - CloudWatch allows you to m onitor various elem ents of an AWS
(Monitoring,
(M on it or in g, Metrics,
M et r ics,and
account.
Logs)
an d Logs)
- CloudWatch alarm s send notifications or autom atically m ake
changes to resources based on rules that you define.
Topic 2: Clou
Topic CloudTrail
dTr ail
- CloudWatch m onitors m etrics for alm ost all AWS resources.
- CloudWatch can create and m onitor custom m etrics.
- SNS allows you to autom ate the sending of em ail or text m essage
notifications based on events that happen in your AWS account.
- CloudWatch and other AWS services can trigger SNS notifications.
- SNS topics are how you label and group the endpoints that you
send m essages to.
- Subscriptions are the endpoints that a topic sends m essages to
(e.g., the em ail address or phone num ber for the system adm in).
- Publishers give SNS the m essage that needs to be sent.
Back Next
Back t o M ain
Notification Services
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
M on it or in g an d Loggin g
Section 10
Topic 1:
Topic 1: Clou
CloudWatch
dWat ch
(Monitoring,
(M on it or in g, Metrics,
M et r ics,and
AWS Cert ified Cloud Pract it ioner:
Logs)
an d Logs)
Not ificat ion Services
Topic 2: Clou
Topic CloudTrail
dTr ail
Topic
Topic 2:
2: Ju st the
Just t h e FAQs
FAQsand
an d WrItap
Wrap Up!I t Up!
Back t o M ain
Database Services
Course Navigation
Relat ion al Dat abase Ser vice (RDS) an d Dyn am oDB
SQL an d NoSQL
Section 12
Topic 1:
1: Relat
Relational
Topic
Database
Dat
ion al
abase Service
Ser vice (RDS)
(RDS)
AWS Cert ified Cloud Pract it ioner:
and Dynamam oDB
an d Dyn oDB
SQL and NoSQL
Topic 2: ElastiCache and
Redshift
Sect ion 12.1 t opics include:
- What Is RDS and Dynam oDB?
Topic 3: Just the FAQs and
Wrap It Up! - To SQL or t o NoSQL
- RDS/ Dynam oDB Benefit s and Use Cases
Back Next
Back t o M ain
Database Services
Course Navigation
Relat ion al Dat abase Ser vice (RDS) an d Dyn am oDB
Back Next
Back t o M ain
Database Services
Course Navigation
Relat ion al Dat abase Ser vice (RDS) an d Dyn am oDB
"Am azon Relational Database Service (Am azon RDS) is a web service
that m akes it easier to set up, operate, and scale a relational database
in the cloud. It provides cost-efficient, re-sizable capacity while autom ating
tim e-consum ing adm inistration tasks such as hardware provisioning,
database setup, patching, and backups. It frees you to focus on your
applications so you can give them the fast perform ance, high
availability, security and com patibility they need.
Am azon RDS
Back Next
Back t o M ain
Database Services
Course Navigation
Relat ion al Dat abase Ser vice (RDS) an d Dyn am oDB
SQL an d NoSQL
Wh at I s Dyn am oDB?
Section 12
Sim plif ied Def in it ion
Topic 1:
Topic 1: Relat
Relational
ion al
Database Dynam oDB is a NoSQL dat abase ser vice. Unlike RDS, Dynam oDB does
Dat abase Service
Ser vice (RDS)
(RDS)
and
an Dynam
d Dyn am oDB
oDB
n ot provide other NoSQL software options.
Topic 2: ElastiCache and Dyn am oDB can r eplace (or is ver y sim ilar t o):
Redshift 1. MongoDB
2. Cassandra DB
3. Oracle NoSQL
Topic 3: Just the FAQs and
Wrap It Up!
AWS Def in it ion
"Am azon Dynam oDB is a fast and flexible NoSQL database service for all
applications that need consistent, single-digit millisecond latency at any
scale. It is a fully m anaged cloud database and supports both docum ent
and key-value store m odels. Its flexible data m odel, reliable
perform ance, and autom atic scaling of throughput capacity m akes it a
great fit for m obile, web, gam ing, ad tech, IoT, and m any other
applications."
Am azon
Dynam oDB
Back Next
Back t o M ain
Database Services
Course Navigation
Relat ion al Dat abase Ser vice (RDS) an d Dyn am oDB
Back Next
Back t o M ain
Database Services
Course Navigation
Relat ion al Dat abase Ser vice (RDS) an d Dyn am oDB
RDS:
Topic 1:
Topic 1: Relat
Relational
ion al 1. For when you need a SQL database option
Database
Dat abase Service
Ser vice (RDS)
(RDS) 2. Easy to set up, highly available, fault-tolerant, and scalable
and
an Dynam
d Dyn am oDB
oDB 3. Used when data is clearly defined
4. Com m on use cases include online stores and banking system s
Topic 2: ElastiCache and
Redshift
Back t o M ain
Database Services
Course Navigation
Elast iCach e an d Redsh if t
SQL an d NoSQL
Section 12
Topic 1:
1: Relat
Relational
Topic
Database
Dat
ion al
abase Service
Ser vice (RDS)
(RDS)
AWS Cert ified Cloud Pract it ioner:
and Dynamam oDB
an d Dyn oDB
SQL and NoSQL
Topic 2:
Topic 2: Elast
ElastiCache
iCach eand
an d
Redshift
Redsh if t
Sect ion 12.2 t opics include:
- What Is Elast iCache?
Topic 3: Just the FAQs and
Wrap It Up! - What Is Redshift ?
Back Next
Back t o M ain
Database Services
Course Navigation
Elast iCach e an d Redsh if t
SQL an d NoSQL
Wh at I s Elast iCach e?
Section 12
Sim plif ied Def in it ion
Topic 1:
Topic 1: Relat
Relational
ion al
Database ElastiCache is a data caching service used to help im prove
Dat abase Service
Ser vice (RDS)
(RDS)
and
an Dynam
d Dyn am oDB
oDB
speed/perform ance of web applications running on AWS.
Topic 2:
2: Elast
ElastiCache AWS Def in it ion
Topic iCach eand
an d
Redshift
Redsh if t
"Am azon ElastiCache is a web service that m akes it easy to deploy,
operate, and scale an in-m em ory data store or cache in the cloud. The
Topic 3: Just the FAQs and
Wrap It Up!
service im proves the perform ance of web applications by allowing you
to retrieve inform ation from fast, m anaged, secure in-m em ory data
stores, instead of relying entirely on slower disk-based databases.
Am azon ElastiCache supports two open-source in-m em ory engines."
Redis: A fast, open source, in-m em ory data store and cache
Memcached: A widely adopted m em ory object caching system
Am azon
ElastiCache
Back Next
Back t o M ain
Database Services
Course Navigation
Elast iCach e an d Redsh if t
Topic 2:
Topic 2: Elast
ElastiCache
iCach eand
an d AWS Def in it ion
Redshift
Redsh if t
"Am azon Redshift is a fast, fully managed data warehouse that m akes it
Topic 3: Just the FAQs and sim ple and cost-effective to analyze all your data using standard SQL
Wrap It Up! and your existing Business Intelligence (BI) tools. It allows you to run
complex analytic queries against petabytes of structured data, using
sophisticated query optim ization, colum nar storage on
high-perform ance local disks, and m assively parallel query execution."
Am azon
Redshift
Back t o M ain
Database Services
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
SQL an d NoSQL
Section 12
Topic 1:
1: Relat
Relational
Topic
Database
Dat
ion al
abase Service
Ser vice (RDS)
(RDS)
AWS Cert ified Cloud Pract it ioner:
and Dynamam oDB
an d Dyn oDB
SQL and NoSQL
Topic 2:
Topic 2: Elast
ElastiCache
iCach eand
an d
Redshift
Redsh if t
Topic 3:
Topic 3: Ju
Just
st the
t h eFAQs
FAQsand Sect ion 12.3 t opics include:
Wrap It Up!
an d Wr ap it Up! - Just t he FAQs
- Wrap It Up!
Back Next
Back t o M ain
Database Services
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
SQL an d NoSQL
Ju st t h e FAQs
Section 12 RDS
- RDS stands for Relational Database Service (RDS).
- RDS is a SQL database service.
Topic 1:
Topic 1: Relat
Relational
ion al - SQL options include Am azon Aurora, MySQL, MariaDB, PostgreSQL,
Database
Dat abase Service
Ser vice (RDS)
(RDS)
and Dynam Oracle, and Microsoft SQL Server
an d Dyn am oDB
oDB
- RDS stores related data in tables using colum ns and rows.
Topic 2:
2: Elast
ElastiCache - RDS is typically used for very structured data, such as a contact list.
Topic iCach eand
an d
Redshift
Redsh if t
Dyn am oDB
- Dynam oDB is a NoSQL database service.
Topic 3:
Topic 3: Ju
Just
st the
t h eFAQs
FAQsand - Dynam oDB can replace (or is sim ilar to) MongoDB, Cassandra DB,
Wrap It Up!
an d Wr ap it Up! and Oracle NoSQL.
- Supports docum ent and key-value store m odels
- Dynam oDB is a great fit for m obile, web, gam ing, ad tech, and IoT.
- Designed for applications that need consistent, single-digit
m illisecond latency at any scale.
- Dynam oDB stores related data in JSON-like, nam e-value docum ents
- Typically used for non-structured data, such as cataloging
docum ents
Redsh if t
- Redshift is a fully m anaged data warehouse database service
designed to analyze data using standard SQL and Business
Intelligence (BI) tools.
Elast iCach e
- Am azon ElastiCache is a web service that m akes it easy to deploy,
operate, and scale an in-m em ory data store or cache in the cloud.
Back Next
Back t o M ain
Database Services
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
SQL an d NoSQL
Section 12
Topic 1:
1: Relat
Relational
Topic
Database
Dat
ion al
abase Service
Ser vice (RDS)
(RDS)
AWS Cert ified Cloud Pract it ioner:
and Dynamam oDB
an d Dyn oDB
SQL and NoSQL
Topic 2:
Topic 2: Elast
ElastiCache
iCach eand
an d
Redshift
Redsh if t
Topic 3:
Topic 3: Ju
Just
st the
t h eFAQs
FAQsand
Wrap It Up!
an d Wr ap it Up! Sect ion 12 t opics included:
- Relat ional Dat abase Service (RDS) and Dynam oDB
- Elast iCache and Redshift
- Just t he FAQs and Wrap It Up!
Back t o M ain
Serverless Com pute
Course Navigation
Lam bda
Back Next
Back t o M ain
Serverless Com pute
Course Navigation
Lam bda
"AWS Lam bda is a com pute service that lets you run code without
provisioning or managing servers. AWS Lam bda executes your code only when
needed and scales automatically, from a few requests per day to thousands
per second. You pay only for the compute time you consume ? there is no
charge when your code is not running. With AWS Lam bda, you can run code
for virtually any type of application or back-end service ? all with zero
adm inistration. AWS Lam bda runs your code on a high-availability compute
infrastructure and performs all of the administration of the compute resources,
including server and operating system maintenance, capacity provisioning and
automatic scaling, and code monitoring and logging. All you need to do is
supply your code in one of the languages that AWS Lam bda supports
(currently Node.js, Java, C#, Ruby, Go, .NET Core, and Python)."
Back Next
Back t o M ain
Serverless Com pute
Course Navigation
Lam bda
Route 53
(DNS)
VPC
Elastic
Load
Balancing
(ELB)
NACL NACL
Pu blic Su bn et Pu blic Su bn et
Au t o Scalin g Gr ou p
Secu r it y Gr ou p Secu r it y Gr ou p
Back Next
Back t o M ain
Serverless Com pute
Course Navigation
Lam bda
AWS Cloud
AWS I n f r ast r u ct u r e
" Con t ain er "
Back Next
Back t o M ain
Serverless Com pute
Course Navigation
Lam bda
Pr im ar y Use Cases
1. Data processing
2. Real-tim e file processing
3. Real-tim e stream processing
4. Build serverless back-ends for web, m obile, IoT, and third-party API
requests
Back t o M ain
Security and Com pliance
Course Navigation
AWS Sh ar ed Respon sibilit y M odel
Secu r it y an d
Com plian ce Ser vices
Section 14
Topic 1:
1: AWS
AWS Sh Shared
Topic
Responsibility
Respon
ar ed
sibilit y Model
M odel
AWS Cert ified Cloud Pract it ioner:
Securit y and Com pliance Services
Topic 2: Security and
Com pliance on AWS
Back Next
Back t o M ain
Security and Com pliance
Course Navigation
AWS Sh ar ed Respon sibilit y M odel
Secu r it y an d Wh at I s t h e Sh ar ed Respon sibilit y M odel?
Com plian ce Ser vices
Section 14
Sim plif ied Def in it ion
Topic 1:
Topic 1: AWS
AWS Sh Shared
ar ed
Responsibility The Shared Responsibility Model defines what you (as an AWS account
Respon sibilit y Model
M odel
holder/user) and Am azon Web Services are responsible for when it
com es to security and com pliance.
Topic 2: Security and
Com pliance on AWS
AWS Def in it ion
Topic 3: AWS Key
Managem ent Service
"Security and compliance is a shared responsibility between AWSand the
customer. This shared m odel can help relieve custom ers' operational
burden as AWS operates, m anages, and controls the com ponents from
Topic 4: Just the FAQs and
the host operating system and virtualization layer down to the physical
Wrap It Up!
security of the facilities in which the service operates. The custom er
assum es responsibility and m anagem ent of the guest operating system
(including updates and security patches), other associated application
software as well as the configuration of the AWS provided security
group firewall." Image provided by AWS.
Back Next
Back t o M ain
Security and Com pliance
Course Navigation
AWS Sh ar ed Respon sibilit y M odel
Secu r it y an d Sh ar ed Respon sibilit y M odel ? EC2 Exam ple
Com plian ce Ser vices
Section 14
AWS is responsible for:
Topic 1:
Topic 1: AWS
AWS Sh Shared
ar ed 1. The setup and m aintenance of the physical hardware located at each
Responsibility
Respon sibilit y Model
M odel AWS data center
Topic 2: Security and 2. The physical security of data centers (locks, keys, security guards, etc.)
Com pliance on AWS
3. The setup and m aintenance of the host virtualization software
Topic 3: AWS Key
Managem ent Service
You are responsible for:
Topic 4: Just the FAQs and 1. Network-level security (NACLs, security groups)
Wrap It Up!
2. Operating system patches and updates
Note: This is not an all-inclusive list ? just the most prominent examples.
Back t o M ain
Security and Com pliance
Course Navigation
Secu r it y an d Com plian ce on AWS
Secu r it y an d
Com plian ce Ser vices
Section 14
Topic 1:
1: AWS
AWS Sh Shared
Topic
Responsibility
Respon
ar ed
sibilit y Model
M odel
AWS Cert ified Cloud Pract it ioner:
Securit y and Com pliance Services
Topic
Topic 2:
2: Secu r it y and
Security an d
Com
Complian ce on AWS
pliance AWS
Back Next
Back t o M ain
Security and Com pliance
Course Navigation
Secu r it y an d Com plian ce on AWS
Secu r it y an d DDoS an d Pen et r at ion Test in g
Com plian ce Ser vices
Section 14
AWScustomers are now welcome to carry out security assessments or penetration
Topic 1:
Topic 1: AWS
AWS Sh Shared
ar ed tests against some of their AWSinfrastructure without prior approval. This applies to
Responsibility
Respon sibilit y Model
M odel eight services:
Topic
Topic 2:
2: Secu r it y and
Security an d - Am azon EC2 instances, NAT Gateways, and Elastic Load Balancers
Com
Complian ce on AWS
pliance AWS
- Am azon RDS
- Am azon CloudFront
Topic 3: AWS Key - Am azon Aurora
Managem ent Service - Am azon API Gateways
- AWS Lam bda and Lam bda Edge functions
Topic 4: Just the FAQs and - Am azon Lightsail resources
Wrap It Up! - Am azon Elastic Beanstalk environm ents
Prohibited Activities
Back Next
Back t o M ain
Security and Com pliance
Course Navigation
Secu r it y an d Com plian ce on AWS
Secu r it y an d Clou dFr on t an d Rou t e 53 DDoS M it igat ion
Com plian ce Ser vices
Section 14
Topic 1:
Topic 1: AWS
AWS Sh Shared
ar ed
Responsibility
Respon sibilit y Model
M odel
AWS Cloud
Topic
Topic 2:
2: Secu r it y and
Security an d
Com
Complian ce on AWS
pliance AWS
Back Next
Back t o M ain
Security and Com pliance
Course Navigation
Secu r it y an d Com plian ce on AWS
Secu r it y an d Ot h er AWS Secu r it y-Relat ed Ser vices
Com plian ce Ser vices
Section 14
- AWS Or gan izat ion s allows for centralized m anagem ent of AWS
Topic 1:
Topic 1: AWS
AWS Sh Shared
ar ed accounts and billing, but it can also define policies that restrict, at
Responsibility
Respon sibilit y Model
M odel the account level, what services and actions m em ber accounts
m ay take.
Topic
Topic 2:
2: Secu r it y and
Security an d - Am azon Gu ar dDu t y is a threat detection service that provides a
Com
Complian ce on AWS
pliance AWS
way to continuously m onitor and protect AWS accounts and
workloads. GuardDuty uses threat intelligence feeds to detect
Topic 3: AWS Key threats to the environm ent. GuardDuty is designed to actively
Managem ent Service protect the environm ent from threats.
- Am azon I n spect or analyzes the VPC environm ent for potential
Topic 4: Just the FAQs and security issues. Inspector uses a defined tem plate and assesses
Wrap It Up! the environm ent. It provides the findings and recom m ends steps
to resolve any potential security issues found.
- AWS Sh ield provides m anaged DDoS protection. DDoS attacks
happen when m ultiple com prom ised system s attem pt to flood a
target with traffic. That target could be DNS, a web application, or
a network.
- AWS Web Applicat ion Fir ew all (WAF) m onitors web requests
forwarded by an ELB, CloudFront, or API Gateway. WAF can allow
or deny access to content based on specified conditions.
- AWS Ar t if act is a portal that provides access to AWS' com pliance
docum entation, such as paym ent card industry (PCI) and ISO
certifications, and System and Organization Control (SOC) reports.
Back t o M ain
Security and Com pliance
Course Navigation
AWS Key M an agem en t Ser vice
Secu r it y an d
Com plian ce Ser vices
Section 14
Topic 1:
1: AWS
AWS Sh Shared
Topic
Responsibility
Respon
ar ed
sibilit y Model
M odel
AWS Cert ified Cloud Pract it ioner:
Securit y and Com pliance Services
Topic
Topic 2:
2: Secu r it y and
Security an d
Com
Complian ce on AWS
pliance AWS
Back Next
Back t o M ain
Security and Com pliance
Course Navigation
AWS Key M an agem en t Ser vice
Secu r it y an d AWS Key M an agem en t Ser vice (KM S)
Com plian ce Ser vices
Section 14
AWS KMS enables encryption of data and provides centralized
Topic 1:
Topic 1: AWS
AWS Sh Shared
ar ed encryption key storage, m anagem ent, and auditing. The data m ay be
Responsibility
Respon sibilit y Model
M odel encrypted for use with applications or to encrypt data stored on AWS.
Topic
Topic 2:
2: Secu r it y and
Security an d Key f act s about KMS:
Com
Complian ce on AWS
pliance AWS
- Keys m ay be generated in KMS, in an AWS CloudHSM hardware
cluster, or you m ay im port keys from your own encryption key
Topic 3: AWS Key
Topic 3: AWS Key service.
M an agem en t Ser vice
Managem ent Service - Data is subm itted directly to KMS for encryption/decryption using
the m aster keys.
Topic 4: Just the FAQs and - KMS integrates with other AWS services, including:
Wrap It Up! - S3 and Glacier
- Storage Gateway
- EBS and RDS
- Dynam oDB
- SNS
- CloudTrail
For a com prehensive list of services that integrate with KMS visit the
KMS Service Integration page.
Back t o M ain
Security and Com pliance
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Secu r it y an d
Com plian ce Ser vices
Section 14
Topic 1:
1: AWS
AWS Sh Shared
Topic
Responsibility
Respon
ar ed
sibilit y Model
M odel
AWS Cert ified Cloud Pract it ioner:
Securit y and Com pliance Services
Topic
Topic 2:
2: Secu r it y and
Security an d
Com
Complian ce on AWS
pliance AWS
Back Next
Back t o M ain
Security and Com pliance
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Secu r it y an d Ju st t h e FAQs
Com plian ce Ser vices
Section 14 Sh ar ed Respon sibilit y M odel
- The Shared Responsibility Model outlines what AWS is responsible
Topic 1:
Topic 1: AWS
AWS Sh Shared
ar ed for (security of the cloud) and what the custom er is responsible for
Responsibility
Respon sibilit y Model
M odel (security in the cloud).
Topic
Topic 2:
2: Secu r it y and
Security an d
DDos an d Pen et r at ion Test in g
Com
Complian ce on AWS
pliance AWS
- Distributed denial of service (DDoS) attacks attem pt to flood and
overwhelm a server/services in an attem pt to cripple or crash the
Topic 3: AWS Key
Topic 3: AWS Key service.
M an agem en t Ser vice
Managem ent Service
- Services such as CloudFront and Route 53 m ay be used together to
expand the attack surface and m inim ize the im pact of a DDoS
Topic 4: Ju st t h e FAQs
Topic 4: Just the FAQs and attack.
an d Wr ap I t Up!
Wrap It Up!
Ot h er AWS Secu r it y Ser vices
- AWS Artifact provides access to security and com pliance reports on
the AWS infrastructure.
- AWS Inspector proactively m onitors the infrastructure for
vulnerabilities and deviations from best practices.
- AWS Shield provides m anaged protection against DDoS attacks.
- AWS WAF (Web Application Firewall) works with services such as EC2
and ELB, m onitors web requests, and can filter traffic based on
specified conditions.
- Am azon GuardDut y is a t hreat det ect ion ser vice t hat provides a
w ay t o cont inuously m onit or and prot ect AWS account s.
- AWS Organizations can be used to restrict access to various services
from the account level.
- KMS is a service that m anages encryption key storage. KMS
integrates with several services, including S3 and Storage Gateway.
Back Next
Back t o M ain
Security and Com pliance
Course Navigation
Ju st t h e FAQs an d Wr ap I t Up!
Secu r it y an d
Com plian ce Ser vices
Section 14
Topic 1:
1: AWS
AWS Sh Shared
Topic
Responsibility
Respon
ar ed
sibilit y Model
M odel
AWS Cert ified Cloud Pract it ioner:
Topic
Securit y and Com pliance Services
Topic 2:
2: Secu r it y and
Security an d
Com
Complian ce on AWS
pliance AWS
Back t o M ain
Other AWS Services
Course Navigation
Addit ion al AWS Ser vices
Ot h er Not ew or t h y
AWS Ser vices
Section 15
Topic 1:
1: Addit
Additional
ion al AWS
Topic
Services
Ser vices
AWS
AWS Cert ified Cloud Pract it ioner:
Ot her Not ewort hy AWS Services
Back Next
Back t o M ain
Other AWS Services
Course Navigation
Addit ion al AWS Ser vices
Ot h er Not ew or t h y Dir ect Con n ect Exam ple
AWS Ser vices
Section 15
Topic 1:
Topic 1: Addit
Additional
ion al AWS
AWS
Services
Ser vices
Back Next
Back t o M ain
Other AWS Services
Course Navigation
Addit ion al AWS Ser vices
Ot h er Not ew or t h y AWS Qu ick St ar t Exam ple: Lin u x Bast ion Host
AWS Ser vices
Section 15
https://aws.am azon.com /quickstart/architecture/linux-bastion/
Topic 1:
Topic 1: Addit
Additional
ion al AWS
AWS
Services
Ser vices
Back Next
Back t o M ain
Other AWS Services
Course Navigation
Addit ion al AWS Ser vices
Ot h er Not ew or t h y AWS An alyt ics
AWS Ser vices
Section 15
Am azon At h en a
Topic 1:
Topic 1: Addit
Additional
ion al AWS
AWS
Services Athena is a serverless interactive query service used to analyze data in
Ser vices
Am azon S3 using standard SQL. Because Athena is serverless, there is
no infrastructure to m anage. Athena is billed only for queries that you
run.
Am azon EM R
AWS has other analytic services. Please visit the AWS An alyt ics page to
learn m ore.
Back Next
Back t o M ain
Other AWS Services
Course Navigation
Addit ion al AWS Ser vices
Ot h er Not ew or t h y Ot h er AWS Ser vices
AWS Ser vices
Section 15
Am azon Ligh t sail
Topic 1:
Topic 1: Addit
Additional
ion al AWS
AWS
Services Lightsail is a private virtual server (instance) aim ed at developers to
Ser vices
provide everything needed to launch a service or project quickly. There
are a num ber of "quick start " prepackaged setups to support a variety
of operating system s and solutions.
Device Farm provides physical devices that can be used to test and
troubleshoot applications on m obile devices, as well as help sim ulate
real-world custom er conditions.
Back t o M ain
AWS Billing and Support Services
Course Navigation
AWS Or gan izat ion s
Back Next
Back t o M ain
AWS Billing and Support Services
Course Navigation
AWS Or gan izat ion s
Wh at is
con solidat ed billin g?
Back Next
Back t o M ain
AWS Billing and Support Services
Course Navigation
AWS Or gan izat ion s
"AWS Organizations enables you to set up a single payment method for all the
Topic 3: AWS Billing and
Cost Tools
AWSaccounts in your organization through consolidated billing. With
consolidated billing, you can see a com bined view of charges incurred
by all your accounts, as well as take advantage of pricing benefits from
Topic 4: AWS Support
aggregated usage, such as volum e discounts for Am azon EC2 and
Plans and Trusted Advisor
Am azon S3."
Back t o M ain
AWS Billing and Support Services
Course Navigation
AWS Pr icin g M odel
Topic 1:
1: AWS
AWS
Topic
Organizations
Or gan izat ion s
AWS Cert ified Cloud Pract it ioner:
AWS Pricing, Billing, and Support Services
Topic
Topic 2:
2: AWS Pr icin g
Pricing
M odel
Model
Back Next
Back t o M ain
AWS Billing and Support Services
Course Navigation
AWS Pr icin g M odel
Back Next
Back t o M ain
AWS Billing and Support Services
Course Navigation
AWS Pr icin g M odel
Topic 1:
Topic 1: AWS
AWS 1. How much data you store:
Organizations
Or gan izat ion s - Applies to data at rest in S3
- Charged per GB stored
Topic
Topic 2:
2: AWS Pr icin g
Pricing - Price per GB varies based on region and storage class
M odel
Model
2. Request Pricing ? moving data in/out of S3:
- PUT, POST, LIST, GET request (API request)
Topic 3: AWS Billing and
- Lifecycle transition request
Cost Tools
- Data retrieval, data archive, data restore
Topic 4: AWS Support Elastic Cloud Compute (EC2): https://aws.am azon.com /ec2/pricing/
Plans and Trusted Advisor
You are charged per second (based on an hourly rate) for the am ount of tim e the
instance is in a "running" state (applies to On-dem and and Spot). Reserved
Topic 5: AWS Whitepapers
instances are in one- or three-year term s regardless of use. Hourly rates depend
and Docum entation
on options you select, such as:
NOTE: You are also charged for transferring data in/out of an instance.
Back t o M ain
AWS Billing and Support Services
Course Navigation
Billin g an d Cost Tools
Topic 1:
1: AWS
AWS
Topic
Organizations
Or gan izat ion s
AWS Cert ified Cloud Pract it ioner:
AWS Pricing, Billing, and Support Services
Topic
Topic 2:
2: AWS Pr icin g
Pricing
M odel
Model
Back Next
Back t o M ain
AWS Billing and Support Services
Course Navigation
Billin g an d Cost Tools
4. The TCO Calculator works by you inputting elem ents of your current
Topic 5: AWS Whitepapers
or theoretical on-prem ises data center and com paring those cost
and Docum entation
requirem ents to how m uch it would cost in AWS.
5. Elem ents can be added/m odified as you m ove through the process to
best estim ate the cost savings.
Back Next
Back t o M ain
AWS Billing and Support Services
Course Navigation
Billin g an d Cost Tools
Topic
AWS Sim ple Calcu lat or is being replaced by AWS Pr icin g Calcu lat or ,
Topic 2:
2: AWS Pr icin g
Pricing
M odel
Model which estim ates cost for AWS services based on use case. The new
calculator can be found here: https://calculator.aws/#/.
Topic 3: Billin g an d Cost
Topic 3: AWS Billing and
Tools
Cost Tools
The Pricing Calculator m ay be used to estim ate cost using various
workloads including on-dem and and reserved instances. Pricing
Calculator also helps you identify the cost-effective use case for your
Topic 4: AWS Support
instance. Service costs m ay also be com pared on a per-region basis.
Plans and Trusted Advisor
Back Next
Back t o M ain
AWS Billing and Support Services
Course Navigation
Billin g an d Cost Tools
Topic 3: Billin g an d Cost 3. Forecast how m uch you are likely to spend over the next three
Topic 3: AWS Billing and
Tools
Cost Tools
m onths.
5. Identify which services you use the m ost, as well as m etrics like
Topic 5: AWS Whitepapers
which Availability Zones have the m ost traffic or which linked AWS
and Docum entation
account is used the m ost.
Back Next
Back t o M ain
AWS Billing and Support Services
Course Navigation
AWS Su ppor t Plan s an d Tr u st ed Advisor
Topic 1:
1: AWS
AWS
Topic
Organizations
Or gan izat ion s
AWS Cert ified Cloud Pract it ioner:
AWS Pricing, Billing, and Support Services
Topic
Topic 2:
2: AWS Pr icin g
Pricing
M odel
Model
Back Next
Back t o M ain
AWS Billing and Support Services
Course Navigation
AWS Su ppor t Plan s an d Tr u st ed Advisor
Topic
Although you get AWS support with each plan, the basic incentive to
Topic 2:
2: AWS Pr icin g
Pricing
M odel
Model purchase a m ore expensive plan is the speed/availability in which you
are given support. Enterprise plan holders will receive the highest
Topic 3: Billin g an d Cost priority for access to custom er service and technical support.
Topic 3: AWS Billing and
Tools
Cost Tools
For example:
Topic 4: AWS Su ppor t
- Basic plan holders have no access to a cloud support
Plan s an
Topic d Tr uSupport
4: AWS st ed
Advisor
representative.
Plans and Trusted Advisor
- Developer plan holders get business hours access to a Cloud
Support Associate.
Topic 5: AWS Whitepapers
- Bu sin ess plan holders get 24/7 access to a Cloud Support Engineer.
and Docum entation
- En t er pr ise plan holders get 24/7 access to a Sr. Cloud Support
Engineer.
As part of all support plans, an AWS best practices and advisory service
is included called AWSTrusted Advisor.
Back Next
Back t o M ain
AWS Billing and Support Services
Course Navigation
AWS Su ppor t Plan s an d Tr u st ed Advisor
AWS Trusted Advisor has dif f er en t levels of su ppor t based on the type
of AWS su ppor t accou n t you have (Basic, Developer, Business, or
Enterprise).
Back Next
Back t o M ain
AWS Billing and Support Services
Course Navigation
AWS Su ppor t Plan s an d Tr u st ed Advisor
Back Next
Back t o M ain
AWS Billing and Support Services
Course Navigation
AWS Su ppor t Plan s an d Tr u st ed Advisor
Back Next
Back t o M ain
AWS Billing and Support Services
Course Navigation
AWS Wh it epaper s an d Docu m en t at ion
Topic 1:
1: AWS
AWS
Topic
Organizations
Or gan izat ion s
AWS Cert ified Cloud Pract it ioner:
AWS Pricing, Billing, and Support Services
Topic
Topic 2:
2: AWS Pr icin g
Pricing
M odel
Model
Back Next
Back t o M ain
AWS Billing and Support Services
Course Navigation
AWS Wh it epaper s an d Docu m en t at ion
If you need to know how to use a service and/or feature in AWS, this is
where you go to get the answer.
Back En d
Back t o M ain