AWSoME ๐Ÿซง

AWSoME ๐Ÿซง

  • ๋ถ„๋ฅ˜ ์ „์ฒด๋ณด๊ธฐ (53)
    • AWS (26)
      • troubleshooting (9)
    • TIL (7)
      • Windows (4)
      • Linux (3)
    • ETC (11)
      • Algorithm (1)
      • Programming (4)
  • ๋ฐฉ๋ช…๋ก
RSS ํ”ผ๋“œ
๋กœ๊ทธ์ธ
๋กœ๊ทธ์•„์›ƒ ๊ธ€์“ฐ๊ธฐ ๊ด€๋ฆฌ

AWSoME ๐Ÿซง

์ปจํ…์ธ  ๊ฒ€์ƒ‰

ํƒœ๊ทธ

ํ…Œ๋ผํผ์œผ๋กœ ์‹œ์ž‘ํ•˜๋Š” IaC IP-based rds scheduler Windows 2019 Split-Horizon DNS AWS FSx IP-based routing aws datasync Amazon Route53 python AWS Config Split-view DNS copy data between s3 s3 storage AWS EC2 Split View DNS AWS RDS AWS Cloud9 Split DNS

์ตœ๊ทผ๊ธ€

๋Œ“๊ธ€

๊ณต์ง€์‚ฌํ•ญ

์•„์นด์ด๋ธŒ

  • [Amazon Route53] ๋™์ผํ•œ ๋„๋ฉ”์ธ์— ๋Œ€ํ•ด ์™ธ๋ถ€/๋‚ด๋ถ€ ์•ก์„ธ์Šค ๋ถ„๋ฆฌ๋ฅผ ์œ„ํ•œ Split DNS ์ ์šฉํ•˜๊ธฐ

    ๊ฐœ์š” As-is DNS : AWS Route53์„ ์ด์šฉํ•˜์—ฌ โ€œexample.comโ€์ด๋ผ๋Š” public hosted zone ์„œ๋น„์Šค ์ค‘. ๋„คํŠธ์›Œํฌ : On-Premise์™€ AWS๋Š” Direct Connect๋กœ ์—ฐ๊ฒฐ๋˜์–ด ๋ฌธ์ œ ์—†์ด ํ†ต์‹  ์ค‘. Problem On-Premise์—์„œ ์ ‘๊ทผํ•˜๋Š” ๋‚ด๋ถ€ ์ง์› ๋ฐ ํผ๋ธ”๋ฆญ์˜ ์™ธ๋ถ€ ์ง์›์ด ๊ณตํ†ต์œผ๋กœ ์ ‘์†ํ•˜๋Š” ์›น ์„œ๋ฒ„๊ฐ€ ์กด์žฌ. public hosted zone์—์„œ ๋ ˆ์ฝ”๋“œ๊ฐ€ ๋“ฑ๋ก๋˜์–ด, ๋‚ด๋ถ€ ์ง์›์€ direct conenct๋กœ ์—ฐ๊ฒฐ๋˜์–ด ์žˆ์Œ์—๋„ ๋ถˆ๊ตฌํ•˜๊ณ  ์ธํ„ฐ๋„ท์„ ํ†ตํ•ด ์™ธ๋ถ€๋ง์„ ๋‚˜๊ฐ”๋‹ค๊ฐ€ AWS๋กœ ๋“ค์–ด์˜ด. ๋ถˆํ•„์š”ํ•œ ๋„คํŠธ์›Œํฌ ์˜ค๋ฒ„ํ—ค๋“œ ๋ฐœ์ƒ. To-Be ์™ธ๋ถ€ ์ง์›์€ ํผ๋ธ”๋ฆญ์—์„œ๋„ ๋ฌธ์ œ ์—†์ด ์›น ์„œ๋ฒ„์— ์ ‘์†ํ•˜๋˜, ๋‚ด๋ถ€ ์ง์›์€ ๋‚ด๋ถ€๋ง์„ ์ด์šฉํ•˜์—ฌ Direct Connect๋ฅผ ํ†ตํ•ด ์›น ์„œ๋ฒ„์— ์ ‘์†..

  • [AWS Config] AWS Config Remediation์„ ํ™œ์šฉํ•˜์—ฌ ์ผ์ • ๊ธฐ๊ฐ„ ๋ฏธ์‚ฌ์šฉ AWS IAM User์—๊ฒŒ Notification ๋ฉ”์ผ ๋ฐœ์†ก ์ž๋™ํ™”ํ•˜๊ธฐ

    โ˜„๏ธ To-Be Architecture ์•„ํ‚คํ…์ฒ˜์˜ ์ „์ฒด Flow๋Š” ๊ฐ„๋‹จํ•˜๋‹ค. โ‘  ์ผ์ • ๊ธฐ๊ฐ„ ์‚ฌ์šฉํ•˜์ง€ ์•Š์€ ์•”ํ˜ธ ๋˜๋Š” access key๋ฅผ ๊ฐ€์ง€๊ณ  ์žˆ๋Š” IAM user ์ถ”์ถœ ( AWS Config ) โ‘ก IAM user์— ๋Œ€ํ•œ Email ๋ฐœ์†ก ( AWS SES ) โ‘ ์— ๋Œ€ํ•œ โ‘ก์˜ ๋™์ž‘์„ ์ž๋™ํ™”ํ•˜๊ธฐ ์œ„ํ•ด AWS Config์˜ Remediation ๊ธฐ๋Šฅ๊ณผ AWS Systems Manager์˜ Automation์„ ์ด์šฉํ•œ๋‹ค. ์œ„ ์•„ํ‚คํ…์ฒ˜๋ฅผ ๊ตฌ์„ฑํ•˜๋Š” ์ ˆ์ฐจ๋Š” ์•„๋ž˜์™€ ๊ฐ™์€ ์ˆœ์„œ๋กœ ์ง„ํ–‰ํ•˜์˜€๋‹ค. AWS Config ๊ทœ์น™ ์„ค์ • Amazon SES ์‚ฌ์ „ ์„ค์ • SES๋กœ ์ด๋ฉ”์ผ์„ ๋ฐœ์†กํ•˜๊ธฐ ์œ„ํ•œ AWS SSM Document ์Šคํฌ๋ฆฝํŠธ ์ž‘์„ฑ 1์—์„œ ์„ค์ •ํ•œ Config ๊ทœ์น™์— 3์˜ Document๋ฅผ ์—ฐ๊ฒฐํ•˜๋Š” Config Remedi..

  • [AWS Health] AWS Health ์ด๋ฒคํŠธ๋ฅผ ์ž๋™์œผ๋กœ Airtable์— ์ €์žฅํ•˜๊ธฐ(+Amazon EventBridge, AWS Lambda)

    AWS Health Dashboard๋ž€? AWS ์„œ๋น„์Šค๋‚˜ AWS ๊ณ„์ •์— ์˜ํ–ฅ์„ ์ฃผ๋Š” ์ด๋ฒคํŠธ๋ฅผ ์•Œ๋ ค์ค€๋‹ค. AWS Health Dashboard๋Š” ๋ชจ๋“  AWS ๊ณ ๊ฐ์ด ์ดˆ๊ธฐ ์„ค์ • ๋ฐ ๋น„์šฉ ์—†์ด ์ด์šฉํ•  ์ˆ˜ ์žˆ๋‹ค. Account health/Organization health๋Š” PHD(Personal Health Dashboard)๋ผ๊ณ ๋„ ํ•œ๋‹ค. Service Health Dashboard์—์„œ๋Š” ์ผ๋ฐ˜์ ์ธ AWS ์„œ๋น„์Šค ์ƒํƒœ๋ฅผ ํ™•์ธํ•  ์ˆ˜ ์žˆ๊ณ , Personal Health Dashboard์—์„œ๋Š” ๊ตฌ์„ฑ๋œ ํŠน์ • AWS ํ™˜๊ฒฝ์— ๋Œ€ํ•ด ๋ถ„๋ช…ํ•œ ์•Œ๋ฆผ์„ ๋ฏธ๋ฆฌ ์ œ๊ณตํ•œ๋‹ค. โ˜„๏ธ To-Be Architecture AWS Health์—์„œ ์•Œ๋ ค์ฃผ๋Š” ์•Œ๋ฆผ์„ ๋†“์น˜์ง€ ์•Š๋„๋ก Amazon EventBridge, AWS Lambda๋ฅผ ํ†ตํ•ด ์ด๋ฒคํŠธ..

  • [AWS ECS] Fargate ์‹œ์ž‘ ์œ ํ˜•์˜ Amazon ECS์— ์„œ๋ฒ„๋ฆฌ์Šค ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ๋ฐฐํฌํ•˜๊ธฐ

    โ˜„๏ธ To-Be Architecture Fargate Type์˜ Amazon ECS๋ฅผ ์ด์šฉํ•˜์—ฌ ์„œ๋ฒ„๋ฆฌ์Šค ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์„ ๋ฐฐํฌํ•ด ๋ณด์ž. ์•„๋ž˜์™€ ๊ฐ™์€ ์ˆœ์„œ๋กœ ์ง„ํ–‰ํ•˜์˜€์Šต๋‹ˆ๋‹ค. ECR์— Docker Image ์—…๋กœ๋“œ โ†’ ECS Cluster ์ƒ์„ฑ โ†’ ECS Task Definition ์ƒ์„ฑ โ†’ ALB ์ƒ์„ฑ โ†’ ECS Service ์ƒ์„ฑ(Task ๋ฐฐํฌ) 0. Amazon ECS(Elastic Container Service)๋ž€? ์ปจํ…Œ์ด๋„ˆํ™”๋œ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์˜ ์™„์ „๊ด€๋ฆฌํ˜• ์ปจํ…Œ์ด๋„ˆ ์˜ค์ผ€์ŠคํŠธ๋ ˆ์ด์…˜ ์„œ๋น„์Šค. ECS ๊ตฌ์„ฑ ์š”์†Œ ECS Task Definition: Docker ์ปจํ…Œ์ด๋„ˆ๋ฅผ ์‹คํ–‰ํ•˜๊ธฐ ์œ„ํ•œ ์„ค์ •๊ฐ’. ECS Task: Task Definition์„ ์ด์šฉํ•˜์—ฌ ๋ฐฐํฌ๋œ Container Set. ECS Service: EC..

  • [AWS] aws ๊ณ„์ • ํ•ด์ง€ ์ „, aws-nuke๋กœ ๊ฐ„ํŽธํ•˜๊ฒŒ ์ž์› ์ผ๊ด„ ์‚ญ์ œํ•˜๊ธฐ

    โ˜„๏ธ ๊ฐœ์š” ์šด์˜ํ•˜๋Š” ์„œ๋น„์Šค๊ฐ€ ์ข…๋ฃŒ๋˜์–ด AWS ๊ณ„์ •์„ ํ•ด์ง€ํ•˜๊ธฐ ์ „ ํ•ด๋‹น AWS ๊ณ„์ •์— ์žˆ๋Š” ๋ชจ๋“  ๋ฆฌ์†Œ์Šค๋ฅผ ์‚ญ์ œํ•˜๋Š” ์ž‘์—…์ด ํ•„์š”ํ–ˆ๋‹ค. AWS ๊ณ„์ • ๋‚ด ์กด์žฌํ•˜๋Š” ํ•œ ์‹œ์Šคํ…œ์„ ์ข…๋ฃŒํ•˜๋ ค ํ•˜๋ฉด EC2 ๋ฐ RDS ์‚ญ์ œ๋ฟ๋งŒ ์•„๋‹ˆ๋ผ ์Šค๋ƒ…์ƒท, ๋ณผ๋ฅจ, ์—ฐ๊ฒฐ๋œ ๋ณด์•ˆ ๊ทธ๋ฃน, ๋“ฑ๋“ฑ ํ•จ๊ป˜ ์‚ญ์ œ๋ฅผ ๊ณ ๋ คํ•ด์•ผํ•  ์ž์›๋“ค์ด ๋งŽ๋‹ค. ๊ณ„์ •์— ์ƒ์„ฑ๋œ ๋ฆฌ์†Œ์Šค๋ฅผ ํ•œ ๋ˆˆ์— ํŒŒ์•…ํ•˜๊ธฐ ์‰ฝ์ง€ ์•Š๊ธฐ ๋•Œ๋ฌธ์— ๋ˆ„๋ฝ๋˜๋Š” ์ž์›๋“ค๋„ ์ƒ๊ธด๋‹ค. ๋ฟ๋งŒ ์•„๋‹ˆ๋ผ ์„ ํ›„๊ด€๊ณ„๊ฐ€ ์žˆ๊ธฐ ๋•Œ๋ฌธ์— ์ˆœ์„œ๋ฅผ ๊ณ ๋ คํ•ด์„œ ์‚ญ์ œํ•ด์•ผ ํ•˜๋Š” ์ž์›๋“ค๋„ ์กด์žฌํ•˜๊ธฐ ๋•Œ๋ฌธ์— ๊ฝค ๋ฒˆ๊ฑฐ๋กœ์šด ์ž‘์—…์ด๋‹ค. IaC๋ฅผ ํ†ตํ•ด ๋งŒ๋“ค์–ด์ง„ ์•„ํ‚คํ…์ฒ˜๋ผ๋ฉด destroy ๋ช…๋ น์–ด ๋ฐ ์Šคํƒ ์‚ญ์ œ ๋“ฑ์œผ๋กœ ๋ฆฌ์†Œ์Šค ์‚ญ์ œ๋ฅผ ํ•  ์ˆ˜๋„ ์žˆ๊ฒ ์ง€๋งŒ, ํ”„๋กœ๋น„์ €๋‹ ์ดํ›„ ๊ณ„์†ํ•ด์„œ sync๋ฅผ ๋งž์ถ”์–ด ์šด์˜ํ•˜๊ณ  ์žˆ์—ˆ๋˜ ๊ฒŒ ์•„๋‹ˆ๋ผ๋ฉด ๋ˆ„๋ฝ๋˜๋Š” ์ž์›๋“ค๋„ ์กด์žฌํ•  ๊ฒƒ์ด๋‹ค..

  • [AWS] Amazon Cognito ์ด์šฉํ•˜์—ฌ Amazon API Gateway์— ์ธ์ฆ(Authentication) ์ถ”๊ฐ€ํ•˜๊ธฐ

    Amazon Cognito? Amazon Cognito user pools User pool์ด ์ œ๊ณตํ•˜๋Š” ๊ฒƒ Sign-up and sign-in services. A built-in, customizable web UI to sign in users. Social sign-in with Facebook, Google, Login with Amazon, and Sign in with Apple, as well as sign-in with SAML identity providers from your user pool. User directory management and user profiles. Security features such as multi-factor authentication (MFA), ch..

  • [AWS SSM] Systems Manager์—์„œ EC2 ์ธ์‹ ๋ถˆ๊ฐ€๋Šฅ ๋ฐ Session Manager๋ฅผ ์ด์šฉํ•˜์—ฌ EC2 ์ธ์Šคํ„ด์Šค ์—ฐ๊ฒฐ ์‹คํŒจ(Windows AMI)

    โ˜„๏ธ ๋ฌธ์ œ AWS Systems Manager(์ดํ•˜ SSM)์—์„œ ์‹ ๊ทœ๋กœ ์ƒ์„ฑํ•œ EC2๋ฅผ ์ธ์‹ํ•˜์ง€ ๋ชปํ•จ. (SSM > Fleet Manager & Run command์—์„œ EC2 ๋ชฉ๋ก์— ํ•ด๋‹น ์ธ์Šคํ„ด์Šค ์กด์žฌํ•˜์ง€ ์•Š์Œ) โ‡’ AWS EC2 ์ฝ˜์†”์—์„œ ํ•ด๋‹น EC2 ์ธ์Šคํ„ด์Šค์— session manger๋กœ ์—ฐ๊ฒฐ์ด ๋ถˆ๊ฐ€๋Šฅ. ๐ŸŒŽ ํ™˜๊ฒฝ OS : Windows 2019(AWS EC2) ๐Ÿ”ซ ํ•ด๊ฒฐ ๋ฐฉ๋ฒ• 1. AWS SSM Agent ํ™•์ธ 1-1. ์ธ์Šคํ„ด์Šค ๋‚ด AWS Systems Agent(amazon-ssm-agent)๊ฐ€ ์„ค์น˜ ๋ฐ ์‹คํ–‰ ์ค‘์ธ์ง€ ํ™•์ธ. ์„ค์น˜๋˜์–ด ์žˆ๋‹ค๋ฉด amazon-agent๊ฐ€ ์ตœ์‹  ๋ฒ„์ „์ธ์ง€ ํ™•์ธ ๋ฐ ์—…๋ฐ์ดํŠธ ์„ค์น˜๋˜์–ด ์žˆ์ง€ ์•Š๋‹ค๋ฉด ssm ์—์ด์ „ํŠธ ์„ค์น˜ ๋ฐ ๊ตฌ์„ฑ Windows Powershell์—์„œ ์•„๋ž˜ ๋ช…๋ น์–ด๋กœ๋„ ..

  • [Amazon Athena] Athena Partition Projection์„ ์ด์šฉํ•˜์—ฌ ์ฟผ๋ฆฌ ์„ฑ๋Šฅ ๋†’์ด๊ธฐ

    ๊ฐœ์š”Athena๋ฅผ ์ด์šฉํ•˜์—ฌ S3 Bucket์— ์žˆ๋Š” ๋ฐ์ดํ„ฐ๋ฅผ ๊ฒ€์ƒ‰ํ•œ๋‹ค. S3 ๋ฒ„ํ‚ท์—๋Š” ์‹ค์‹œ๊ฐ„์œผ๋กœ ๋ฐ์ดํ„ฐ๊ฐ€ ์ €์žฅ๋˜๊ณ  ์žˆ์œผ๋ฉฐ, Athena์—์„œ ์ฟผ๋ฆฌ ํ–ˆ์„ ๋•Œ ๋” ๋น ๋ฅธ ๊ฒ€์ƒ‰ ๊ฒฐ๊ณผ๋ฅผ ์–ป๊ธฐ ์œ„ํ•ด ๋ฐ์ดํ„ฐ ํŒŒํ‹ฐ์…”๋‹์ด ํ•„์š”ํ•˜๋‹ค. Athena Partition projection์„ ์ด์šฉํ•ด ๋ณด์ž.ย ย ๋“ค์–ด๊ฐ€๊ธฐ ์ „ํŒŒํ‹ฐ์…”๋‹์ด๋ž€?ํฐ Table์ด๋‚˜ ์ธ๋ฑ์Šค๋ฅผ ๊ด€๋ฆฌํ•˜๊ธฐ ์‰ฌ์šด ๋‹จ์œ„๋กœ ๋ถ„๋ฆฌํ•˜๋Š” ๋ฐฉ๋ฒ•์„ ์˜๋ฏธํ•œ๋‹ค. ๋ฐ์ดํ„ฐ๋ฅผ ๋ถ„ํ• ํ•˜๋ฉด ๊ฐ ์ฟผ๋ฆฌ๊ฐ€ ์Šค์บ”ํ•˜๋Š” ๋ฐ์ดํ„ฐ์˜ ์–‘์„ ์ œํ•œํ•˜์—ฌ ์„ฑ๋Šฅ์„ ํ–ฅ์ƒํ•˜๊ณ  ๋น„์šฉ์„ ์ ˆ๊ฐํ•  ์ˆ˜ ์žˆ๋‹ค. ํŒŒํ‹ฐ์…”๋‹์— ๋Œ€ํ•œ ์ƒ์„ธ ๋‚ด์šฉ์€ ์—ฌ๊ธฐ ์ฐธ์กฐ.ย Amazon Athena๋ž€?Amazon S3์— ์žˆ๋Š” ๋ฐ์ดํ„ฐ๋ฅผ ์ง์ ‘ ๊ฐ„ํŽธํ•˜๊ฒŒ ๋ถ„์„ํ•  ์ˆ˜ ์žˆ๋Š” ๋Œ€ํ™”ํ˜• ์ฟผ๋ฆฌ ์„œ๋น„์Šค. ๋ฐ์ดํ„ฐ๋ฅผ ํฌ๋งทํ•˜๊ฑฐ๋‚˜ ์ธํ”„๋ผ ๋˜๋Š” ํด๋Ÿฌ์Šคํ„ฐ๋ฅผ ๊ด€๋ฆฌํ•  ํ•„์š”๊ฐ€ ์—†๋‹ค. ๋ฐ์ดํ„ฐ์— ๋Œ€..

ํ‹ฐ์Šคํ† ๋ฆฌ
ยฉ 2018 TISTORY. All rights reserved.

ํ‹ฐ์Šคํ† ๋ฆฌํˆด๋ฐ”