Book Image

Building Serverless Applications with Python

Book Image

Building Serverless Applications with Python

Overview of this book

Serverless architectures allow you to build and run applications and services without having to manage the infrastructure. Many companies have adopted this architecture to save cost and improve scalability. This book will help you design serverless architectures for your applications with AWS and Python. The book is divided into three modules. The first module explains the fundamentals of serverless architecture and how AWS lambda functions work. In the next module, you will learn to build, release, and deploy your application to production. You will also learn to log and test your application. In the third module, we will take you through advanced topics such as building a serverless API for your application. You will also learn to troubleshoot and monitor your app and master AWS lambda programming concepts with API references. Moving on, you will also learn how to scale up serverless applications and handle distributed serverless systems in production. By the end of the book, you will be equipped with the knowledge required to build scalable and cost-efficient Python applications with a serverless framework.
Table of Contents (11 chapters)

Security in AWS Lambda

We have learned how to build and configure serverless functions in AWS Lambda. We have learned how to scale them up using third-party tools. We have also had a close look at how microservices work and how to ensure security in them, while ensuring resilience and speed.

In this chapter, we will understand security in the AWS environment, keeping in mind our Lambda functions. We will understand how services, such as AWS VPCs, security groups, and subnets work, with respect to Lambda functions.

This chapter covers the following topics:

  • Understanding AWS VPCs
  • Understanding subnets in VPCs
  • Securing Lambda inside private subnets
  • Controlling access to Lambda functions
  • Using STS inside Lambda for secure session-based execution