AWS Partner Network (APN) Blog
Category: Learning Levels
Connecting Applications Securely to a MongoDB Atlas Data Plane with AWS PrivateLink
Customers want to guarantee private connectivity to MongoDB Atlas running on AWS. All dedicated clusters on MongoDB Atlas are deployed in their own VPC, so customers usually connect to a cluster via VPC peering or public IP access-listing. AWS PrivateLink allows you to securely access MongoDB Atlas clusters from your own VPC. In this post, follow step-by-step instructions to configure AWS PrivateLink for MongoDB Atlas, ensuring private connectivity to your data.
How to Implement Object-Based Authorization in Serverless Applications Using Amazon Cognito
When building a complex web service such as a serverless application, sooner or later you must deal with permission control. Amazon Cognito is a powerful authentication and authorization service managed by AWS and is often combined with Amazon API Gateway and AWS Lambda to build secure serverless web services. Through the blueprint of an AWS Lambda authorizer, learn how to implement object-based authorization in serverless applications on AWS.
Automated Cloud Network Threat Detection and Response with Blue Hexagon and AWS
VPC traffic mirroring and VPC ingress routing are powerful AWS networking primitives to monitor network traffic in your VPC at the packet-level. With Blue Hexagon’s next-gen Network Detection and Response (NG-NDR) security tool for AWS, which is powered by real-time deep learning, you can detect threats in network headers and payloads in less than a second. The additional AWS Security Hub integration enables you to trigger a rich action space of remediation and response.
Hosting Rapidly Scaling Video Applications on Amazon EKS Clusters
Synamedia helps service and content providers around the world deliver, protect, and monetize video content so they can win in the age of infinite entertainment. To replace its self-managed Kubernetes cluster running directly on Amazon EC2 instances, Synamedia selected Amazon Amazon EKS for its Infinite Platform product. Learn how EKS and other elastic technologies from AWS maintain a consistently responsive user experience despite frequent spikes of 5x the traffic in a matter of minutes.
How Provectus and GoCheck Kids Built ML Infrastructure for Improved Usability During Vision Screening
For businesses like GoCheck Kids, machine learning infrastructure is vital. The company has developed a next-generation, ML-driven pediatric vision screening platform that enables healthcare practitioners to screen for vision risks in children in a fast and easy way by utilizing GoCheck Kids’ smartphone app. Learn how GoCheck Kids teamed up with Provectus to build a secure, auditable, and reproducible ML infrastructure on AWS to ensure its solution is powered by highly accurate image classification model.
How Insider Learned to Scale a Production Grade Elasticsearch Cluster on AWS
Insider, an AWS Competency Partner, has been using Elasticsearch for a long time and is satisfied with its performance and features. They had a couple of issues when scaling up its usage, however, but they fixed them by making changes on configurations, architecture, and hardware. Follow along as Insider’s team realizes that fixing symptoms without understanding the root cause may lead to worse scenarios, and how they learned the hard way the importance of identifying the real issue as soon as possible.
Choosing the Right DNS Architecture for VMware Cloud on AWS
Domain Name System (DNS) is a critical component of any infrastructure as it provides the hostname to IP address resolution that applications rely on. VMware Cloud on AWS customers have many options to implement hybrid DNS solutions, ranging from self-hosted to fully managed native services from AWS. Learn about DNS architectures that use native AWS services as well as traditional Active Directory designs, as well as integration with Amazon Route 53 Private Hosted Zones and inbound endpoints.
Making Cloud Transformation Simpler and Faster with SnapStart
Knowing what customers have in their IT estate is important when beginning strategic transformation initiatives, consolidating data centers, migrating workloads, or modernizing data platforms. Explore the cloud migration journey of one of Insight’s clients to understand how they used SnapStart and various technologies to make the migration process more efficient. SnapStart helps organizations identify and map IT environments spanning cloud, edge, and both on-premises and off-premises data centers.
Maintaining Control of PII Hosted on AWS with Hold Your Own Key (HYOK) Security
One of the biggest challenges in moving to the cloud for organizations that collect and process personally identifiable information (PII) is the fundamental change to the trust model. SecuPi minimizes changes to the trust model and reduces the risk associated with digital transformations. Learn how SecuPi can help you collect and process sensitive or regulated PII and reduce barriers to cloud adoption while satisfying the trust model requirements of even the most conservative and risk-averse companies.
How to Integrate AWS Client VPN with Azure Active Directory
It’s well known that IT departments prefer authentication integration into existing IdPs such as Azure Active Directory to reduce operational overhead and the attack surface of IT systems. AWS announced federated authentication support for AWS Client VPN in May 2020, and this support requires integration with a SAML 2.0 provider, such as Azure Active Directory. Learn how to integrate AWS Client VPN with an Azure Active Directory to give remote users access to an AWS private VPCs..