Book Image

AWS for System Administrators

By : Prashant Lakhera
Book Image

AWS for System Administrators

By: Prashant Lakhera

Overview of this book

Amazon Web Services (AWS) is one of the most popular and efficient cloud platforms for administering and deploying your applications to make them resilient and robust. AWS for System Administrators will help you to learn several advanced cloud administration concepts for deploying, managing, and operating highly available systems on AWS. Starting with the fundamentals of identity and access management (IAM) for securing your environment, this book will gradually take you through AWS networking and monitoring tools. As you make your way through the chapters, you’ll get to grips with VPC, EC2, load balancer, Auto Scaling, RDS database, and data management. The book will also show you how to initiate AWS automated backups and store and keep track of log files. Later, you’ll work with AWS APIs and understand how to use them along with CloudFormation, Python Boto3 Script, and Terraform to automate infrastructure. By the end of this AWS book, you’ll be ready to build your two-tier startup with all the necessary infrastructure, monitoring, and logging components in place.
Table of Contents (18 chapters)
1
Section 1: AWS Services and Tools
4
Section 2: Building the Infrastructure
7
Section 3: Adding Scalability and Elasticity to the Infrastructure
11
Section 4: The Monitoring, Metrics, and Backup Layers

Chapter 3: Creating a Data Center in the Cloud Using VPC

In the previous chapter, you learned how to tighten security with the help of IAM policies and how to use IAM roles to assign temporary credentials to role sessions so that you no longer need to embed them inside your application. IAM provides security at the authentication level, that is, who is allowed or denied, and the authorization level is what that authenticated user or role is allowed to do. In the next level of defense, we need to secure our network so that only the users from the trusted network can access our service, and that is where VPC comes into the picture.

AWS Virtual Private Cloud (VPC) is your data center in the cloud. In VPC, you can define your own private network, which resembles a network in a traditional data center but with the advantage of using AWS's scalable infrastructure. Some of the benefits of using AWS VPC are as follows:

  • Simple: Creating VPC is pretty quick and straightforward...