AWS Partner Network (APN) Blog
Category: Advanced (300)
SaaS Identity and Routing with Istio Service Mesh and HAQM EKS
Many SaaS providers are leveraging HAQM EKS to build their solutions on AWS, as EKS provides builders with a range of different constructs that can be used to implement multi-tenant strategies. In this post, explore an architecture based on EKS that demonstrates a siloed SaaS deployment model, using Istio Service Mesh to manage request authentication and per-tenant routing. Istio is an open-source service mesh that many SaaS providers use for deploying their multi-tenant applications.
Using Snowflake to Access and Combine Multiple Datasets Hosted by the HAQM Sustainability Data Initiative
The zero-cost HAQM Sustainability Data Initiative (ASDI) seeks to accelerate sustainability research and innovation by minimizing the cost and time required to analyze large sustainability datasets. In this post, we’ll use Snowflake, a data cloud company, to work with two different ASDI datasets containing climate and air quality data. We’ll demonstrate how to access ASDI datasets, join them together by date, and ultimately form a merged result.
Using HAQM Comprehend Medical with the Snowflake Data Cloud
Healthcare customers use Snowflake to store all types of clinical data in a single source of truth. One method for gaining insights from this data is to use HAQM Comprehend Medical, which is a HIPAA-eligible natural language processing service that uses machine learning to extract health data from medical text. Learn how the Snowflake Data Cloud allows healthcare and life sciences organizations to centralize data in a single and secure location.
Implementing a Multi-Tenant MLaaS Build Environment with HAQM SageMaker Pipelines
Organizations hosting customer-specific machine learning models on AWS have unique isolation and performance requirements and require a solution that provides a scalable, high-performance, and feature-rich ML platform. Learn how HAQM SageMaker Pipelines helps you to pre-process data, build, train, tune, and register ML models in SaaS applications. We’ll focus on best practices for building tenant-specific ML models with particular focus on tenant isolation and cost attribution.
Hybrid and Multi-Region Kubernetes Orchestration Using Kublr
Kublr is a Kubernetes management platform which accelerates and controls the deployment, scaling, monitoring, and management of Kubernetes clusters. Learn how provisioning and managing Kubernetes clusters across multiple regions can be simplified with Kublr, ensuring quick deployment of a production-ready, operationally mature, multi-region, cloud-native container management platform-based Kubernetes.
Empirical Approach to Improving Performance and Reducing Costs with HAQM Athena
HAQM Athena is a serverless interactive query service that makes it easy to analyze data in HAQM S3 using standard SQL. Data stored in S3 can span gigabytes to petabytes, however, and querying such massive data poses unique challenges. Follow along as experts from AWS and Innovative Solutions present a use case-based approach to help evaluate these challenges and propose solutions to improve HAQM Athena query performance.
Automate Data Sharing with Informatica Axon Data Marketplace and AWS Lake Formation
A key goal of modern data strategy, whether a data mesh, data fabric, data lake, or data warehouse, is to deliver access to data when and where it’s needed. Learn how AWS and Informatica can combine and automate data governance for access within a data marketplace. This solution combines Information’s data governance architecture and the Informatica Intelligent Data Management Cloud (IDMC) which orchestrates and automates data access management with AWS Lake Formation.
Instant Cutover for High-Availability Legacy Workload Migration Using AWS Outposts, CloudEndure, and Stromasys
Numerous legacy workloads, still hosted on premises, are mission-critical and hardly interruptible. Their migration to AWS must happen quasi-transparently for their users. This post details how the combination of AWS Outposts and CloudEndure can be used to solve for this issue. We demonstrate this by migrating a Solaris machine making use of the Charon SSP emulator by Stromasys, running on standard HAQM EC2 instances and using CloudEndure.
Centralized Traffic Inspection with Gateway Load Balancer on AWS
SoftwareOne has a proven record of successful implementations of centralized inspection with AWS Transit Gateway and site-to-site VPN attachments for our customers. Vendor-provided firewalls remain an option, and the focus of this post is their integration with Gateway Load Balancer. Explore the decisions SoftwareOne took while migrating from centralized north-south inspection with Transit Gateway VPN attachments to centralized inspection with GWLB in front of the Palo Alto VM-Series Firewalls.
Integrating AWS Security Hub, IBM Netcool, and ServiceNow to Secure Large Client Deployments
Customers using cloud resources on AWS can safeguard sensitive IT systems and data by complying with the industry-recognized CIS AWS Foundations Benchmark, among other best practices defined by AWS security experts. This post explains how to get visibility of your cloud security posture when building secure multi-account, multi-region AWS deployments. Kyndryl is an IT infrastructure services provider that designs, builds, manages, and modernizes the information systems the world depends on every day.