AWS Cloud Operations Blog

Category: HAQM VPC

Monitor AWS Transit Gateway Flow Logs centrally using HAQM Managed Grafana

Monitor AWS Transit Gateway Flow Logs centrally using HAQM Managed Grafana

As organizations continue to expand their cloud infrastructure by connecting multiple HAQM Virtual Private Clouds (HAQM VPC) across accounts and regions, the complexity of managing their network environment increases. AWS Transit Gateway has emerged as a powerful solution to simplify this complexity by providing a centralized hub for secure communication between HAQM VPCs, on-premises systems, and […]

Planning Migrations to successfully incorporate Generative AI

The recent rise of generative artificial intelligence (generative AI) solutions presents challenges to migrations that are in flight and to migrations that are just beginning. The business problem is that generative AI complicates cloud migrations by introducing additional risks related to data isolation, data sharing, and service costs. For example, the US Space Force has […]

Securing Elastic IP addresses from accidental release

Have you wondered what are the best practices in safeguarding your infrastructure from unintended release of Elastic IP addresses? In this blog, we are providing a few proactive self-service solutions to streamline IP handling and obtaining a robust environment for critical applications. Before diving into the solution, let us revisit some key concepts of AWS […]

Announcing inbound network access control in HAQM Managed Grafana

Many customers that use HAQM Managed Grafana have a need to restrict the Grafana workspace public access and enable fine-grained control to allow which traffic sources can reach the Grafana workspace. Today, we are announcing HAQM Managed Grafana’s new feature that supports inbound network access control. This enables you to secure Grafana workspaces using VPC […]

HAQM Managed Service for Prometheus now offers VPC endpoint policy support

Today, HAQM Managed Service for Prometheus announces support for HAQM Virtual Private Cloud (HAQM VPC) endpoint policies. With VPC endpoint policy support, customers can now further control access to HAQM Managed Service for Prometheus through restricting user access or allowable actions. HAQM Managed Service for Prometheus is a fully managed Prometheus-compatible monitoring service that monitors and alarms on […]

How to enable VPC Flow Logs automatically using AWS Config rules

This post discusses an automated process for enabling HAQM Virtual Private Cloud (HAQM VPC) Flow Logs using AWS Config rule remediation. Customers use HAQM VPC Flow logs to capture information about the IP traffic going to and from network interfaces in an HAQM VPC. You can deploy this solution with the help of AWS Control […]

Automate time series network visualizations for AWS PrivateLink using HAQM CloudWatch Contributor Insights

AWS PrivateLink is a highly available, scalable technology that lets you connect your HAQM Virtual Private Cloud (VPC) to supported AWS services without requiring public internet traversal. It also lets you privately connect to services hosted by other AWS accounts (VPC endpoint services) and supported AWS Marketplace partner services. HAQM CloudWatch Contributor Insights is a […]

How to fix SSH issues on EC2 Linux instances using AWS Systems Manager

In a previous blog post, we provided a walkthrough of how to fix unreachable HAQM EC2 Windows instances using the EC2Rescue for Windows tool. In this blog post, I will walk you through how to utilize EC2Rescue for Linux to fix unreachable Linux instances. This Knowledge Center Article describes how EC2Rescue for Linux can be used to […]

Target-a-group-of-HAQM-EC2-On-Demand-Capacity-Reservations

Target a group of HAQM EC2 On-Demand Capacity Reservations

On-Demand Capacity Reservations enable you to reserve capacity for HAQM Elastic Compute Cloud(HAQM EC2) instances in an Availability Zone for any duration. You can use AWS Resource Groups to organize AWS resources into logical collections of applications, projects or environments. Last year, we introduced the ability to target EC2 capacity reservations in a resource group by using […]

Self-service VPCs in AWS Control Tower using AWS Service Catalog

One of the first tasks my customers do when creating a new AWS account is to create the right network integration for their enterprise. Typically, this means implementing an HAQM Virtual Private Cloud (VPC) across a multi-account framework that was provisioned with AWS Control Tower. When these are provisioned in a self-service model, we see […]