Book Image

AWS for System Administrators

By : Prashant Lakhera
Book Image

AWS for System Administrators

By: Prashant Lakhera

Overview of this book

Amazon Web Services (AWS) is one of the most popular and efficient cloud platforms for administering and deploying your applications to make them resilient and robust. AWS for System Administrators will help you to learn several advanced cloud administration concepts for deploying, managing, and operating highly available systems on AWS. Starting with the fundamentals of identity and access management (IAM) for securing your environment, this book will gradually take you through AWS networking and monitoring tools. As you make your way through the chapters, you’ll get to grips with VPC, EC2, load balancer, Auto Scaling, RDS database, and data management. The book will also show you how to initiate AWS automated backups and store and keep track of log files. Later, you’ll work with AWS APIs and understand how to use them along with CloudFormation, Python Boto3 Script, and Terraform to automate infrastructure. By the end of this AWS book, you’ll be ready to build your two-tier startup with all the necessary infrastructure, monitoring, and logging components in place.
Table of Contents (18 chapters)
1
Section 1: AWS Services and Tools
4
Section 2: Building the Infrastructure
7
Section 3: Adding Scalability and Elasticity to the Infrastructure
11
Section 4: The Monitoring, Metrics, and Backup Layers

Chapter 12: AWS Tips and Tricks

In the final chapter of this book, we will look at 10 tips and tricks to get the most out of Amazon Web Services (AWS). We will start with the networking side of the infrastructure and learn about some common virtual private cloud (VPC) limitations and which subnet to choose while building a VPC. We will then move on to one common issue: the difference between a dedicated instance and a dedicated host, and which one to select under which conditions. Then, we will look at a fairly new feature in the Identity and Access Management (IAM) permission boundary and how it restricts access.

Then, we will move to the monitoring side and look at the custom CloudWatch metrics and how they are useful. We will also look at the importance of tagging. We will then look at safety measures and how to prevent the accidental deletion of your Elastic Compute Cloud (EC2) and Elastic Block Store (EBS) volumes. We will also look at a critical question in our daily system...