Open Guide to Amazon Web Services
11–20 of 133 posts
Re: Open Guide to Amazon Web Services
#12The "use IAM roles for EC2" recommendation is a bit sketchy. The current security zeitgeist, not just after Colin's post but also after DerbyCon and Black Hat, is that EC2 roles are dangerous and, when under attack, not very predictable.
Re: Open Guide to Amazon Web Services
#13Re: Open Guide to Amazon Web Services
#14The "use IAM roles for EC2" recommendation is a bit sketchy. The current security zeitgeist, not just after Colin's post but also after DerbyCon and Black Hat, is that EC2 roles are dangerous and, when under attack, not very predictable.
Do you have links to the DerbyCon and Black Hat talks? And could you clarify what "when under attack, not very predictable" means?
Re: Open Guide to Amazon Web Services
#15One of the biggest lessons I've learned is that you need occasional EBS-to-EBS backups. Anyone that had to recover from snapshots knows the painful reason why...
Why is it painful recovering from snapshots? (have just moved to AWS so have not experienced this yet)
it will take you an hour to do, and you'll be years wiser
this is probably the number one reason people experience extra extra downtime when suffering from rebuild from whatever issue... and EBS volumes in certain regions can and will experience silent deaths
Re: Open Guide to Amazon Web Services
#16Wow, the link to http://www.ec2instances.info/ alone is so helpful. I wish I'd had this set of resources a year ago when I spent weeks trying to understand AWS' own documentation.
Re: Open Guide to Amazon Web Services
#17Many of us have simple goals on AWS. The official AWS docs are thorough, but are too technical. There are blog posts about anything, they can be hard to find or get out of date.
I hope this open guide helps us all get our jobs done faster and easier!
Re: Open Guide to Amazon Web Services
#18The "use IAM roles for EC2" recommendation is a bit sketchy. The current security zeitgeist, not just after Colin's post but also after DerbyCon and Black Hat, is that EC2 roles are dangerous and, when under attack, not very predictable.
If you'd like to PR or discuss there it'd def help us cover this better.
Re: Open Guide to Amazon Web Services
#19Sadly, I could never get the company lawyers to approve contributions under a CC-BY-SA. Of course, I'm not 100% sure I could get them to approve contributions to any external repo due to liability concerns, etc.
Re: Open Guide to Amazon Web Services
#20This is great. I've been working on AWS for close to 10 years now and an open guide is something I both need and want to contribute to. Many of us have simple goals on AWS. The official AWS docs are thorough, but are too technical. There are blog posts about anything, they can be hard to find or get out of date. I hope this open guide helps us all get our jobs done faster and easier!