AWS re:Invent 2021 - Customizing and scaling your AWS Control Tower environment

แชร์
ฝัง
  • เผยแพร่เมื่อ 6 ก.ค. 2024
  • AWS Control Tower provides the easiest way to set up and govern a secure, multi-account AWS environment. Users can further customize their AWS Control Tower landing zones with the Customizations for AWS Control Tower (CfCT) solution. In this session, discover best practices for deploying a scalable CfCT pipeline that allows you to test your customizations in a lower environment before promoting them to a production landing zone. Learn about some of the most common CfCT customizations you should consider for your landing zone, including identity and network management and governance.
    Learn more about re:Invent 2021 at bit.ly/3IvOLtK
    Subscribe:
    More AWS videos bit.ly/2O3zS75
    More AWS events videos bit.ly/316g9t4
    ABOUT AWS
    Amazon Web Services (AWS) hosts events, both online and in-person, bringing the cloud computing community together to connect, collaborate, and learn from AWS experts.
    AWS is the world’s most comprehensive and broadly adopted cloud platform, offering over 200 fully featured services from data centers globally. Millions of customers-including the fastest-growing startups, largest enterprises, and leading government agencies-are using AWS to lower costs, become more agile, and innovate faster.
    #AWS #AmazonWebServices #CloudComputing
  • วิทยาศาสตร์และเทคโนโลยี

ความคิดเห็น • 9

  • @BrianWhigham
    @BrianWhigham ปีที่แล้ว +4

    On one hand, I appreciate the extensibility. On the other, I fear that a complex vending process would be fragile, rigid, confusing to maintain, and eventually abandoned out of frustration or lack of understanding.

  • @patrickznk
    @patrickznk 4 หลายเดือนก่อน

    Regarding the single manifest pattern discussed around the 44-minute mark, it remains the case, to my knowledge, that it's still not possible to retrieve account IDs from the SSM Parameter Store. However, there is also the option to specify multiple account names as deployment_targets. For example, you could include the account names for both the test and production organizations. The CfCT pipeline would then attempt to convert these names into account IDs and compile them into a list. The stack sets are then applied to this list, allowing the CfCT pipeline to execute without any errors. Consequently, a single manifest can be used across two AWS organizations.

  • @petetyo92
    @petetyo92 2 ปีที่แล้ว +2

    Can we get a copy of the all the customization code? I'm mainly interested in the deployment of Audit manger.

  • @medavis
    @medavis ปีที่แล้ว +3

    Where's the manifest file that is being used to manage multiple organizations? @45:44 Remek says, "let's look at the manifest file our team uses to manage multiple organizations", and then transitions right into the account vending solution... lol?

  • @fringefringe7282
    @fringefringe7282 2 ปีที่แล้ว

    49:05 "next step, wlasnie, next step" :)

  • @owenzmortgage8273
    @owenzmortgage8273 ปีที่แล้ว

    What English he is talking about, police? He said Police multiple time? He cant even pronounce policy. Go to a college which speaks English is necessary

    • @vamshikrishna6085
      @vamshikrishna6085 9 หลายเดือนก่อน +2

      You might speak a better English than him, but clearly he has very good command on what he does, so his video is featured by AWS in their official documentation and you clearly should focus on knowledge he is sharing than criticizing someone on pronunciation. SHAME ON YOU !

    • @AFPinerosG
      @AFPinerosG 8 หลายเดือนก่อน

      @@vamshikrishna6085 It's valid criticism. He clearly knows what he's talking about, but he's having a hard time expressing complex ideas that are important for this complex topic.

  • @hardlyconfused3541
    @hardlyconfused3541 2 หลายเดือนก่อน

    A good example of bad explanation. You simple fail to tell me in a few words what problem it is trying solve.