AWS Partner Network (APN) Blog

Category: Best Practices

Best Practices from IBM and AWS for Optimizing SaaS Solutions for Sustainability

IBM and Amazon are both signatories of The Climate Pledge, a commitment to reach net-zero carbon emissions by 2040—10 years ahead of The Paris Agreement. Learn how SaaS providers can optimize applications by implementing best practice recommendations from AWS, and review a few examples from IBM to optimize SaaS applications for sustainability and track the results via dashboard. Every action you take contributes to your organization’s broader sustainability goals.

Next-Gen-MSPs-APN-Blog-120822

Next-Generation Cloud Managed Services: A Full Lifecycle Support Engagement

The growth of cloud and managed services presents Managed Service Providers (MSPs) with a unique opportunity to grow their business. In this era of change, MSPs must look beyond traditional cloud operations and infrastructure. By expanding your services and building an in-house CCoE, and with guidance from the AWS Managed Service Provider Program, you can evolve your MSP business from the outdated, traditional framework into one that is truly next-generation.

SaaS-Auth0-API-Gateway-thumbnail

Building a Secure SaaS Application with Amazon API Gateway and Auth0 by Okta

Most applications require a form of identity service to manage, authenticate, and authorize users. In SaaS applications, multi-tenancy adds specific challenges to this task. To meet these needs, SaaS builders must consider integrating with an identity service provider. AWS services such as Amazon Cognito or AWS Partner services like Auth0 provide deep expertise in the field and allow you to focus on your SaaS application’s value proposition while relying on a secure, feature-rich identity provider.

Enabling Tiering and Throttling in a Multi-Tenant Amazon EKS SaaS Solution Using Amazon API Gateway

Every SaaS architecture must introduce mechanisms and policies that prevent noisy neighbor conditions. Getting these policies right is essential to building a robust SaaS solution that delivers a consistent experience to customers. This post looks at the different strategies that can be used to introduce the throttles (transaction rate) and quotas (transaction volume) that manage each tenant’s activity, exploring the various AWS services that can be used to bring these concepts to life.

Partner-Accreditations-First-Step-thumbnail

AWS Partner Accreditations: The First Step for Partners Learning About the AWS Cloud

AWS Partner Accreditations are AWS Partner Network (APN) partner-exclusive courses that provide foundational cloud knowledge and skills. Offered directly through AWS in an on-demand or live, instructor-led format, earning an accreditation requires a low time commitment, with a short test given directly afterward. After passing the test, you’ll receive a digital badge from AWS for display on your resume or social media profiles.

Sensitive-Data-FTR-SaaS-1

Mitigating Sensitive Data-Related Risks via Foundational Technical Review (FTR) for SaaS Solutions

Most SaaS solutions which undergo an AWS Foundational Technical Review (FTR) ingest, manage, and store sensitive data. The FTR is a review based on the AWS Well-Architected Framework and enables AWS Partners to identify and remediate risks in their solutions. Learn how to manage and secure sensitive data within their SaaS solutions with a focus on addressing requirements related to PII or PHI requirements in the Foundational Technical Review.

Understand and Optimize AWS Data Transfer Charges for Splunk Cloud on AWS Ingestion

Data transfer cost is a key component to consider when selecting your strategy to get data into Splunk Cloud on AWS. Customers using Splunk Cloud on AWS for their security, operational, and observability use cases may manage large volumes of data. Having a thorough understanding of AWS data transfer charges can help them optimize their architectures and costs. This post discusses the data transfer costs for five of the most common Splunk use cases.

VMware-Cloud-AWS-WAF-Web-Servers-thumbnail

Provide Enhanced Security for Web Servers in VMware Cloud on AWS Using AWS WAF

As you consider migrating to VMware Cloud on AWS or have already done so, you could have the requirement to protect web servers residing in a vSphere environment on the AWS global infrastructure. To provide one aspect of security for these workloads, you can leverage the AWS WAF, a web application firewall that helps protect your apps or APIs against common web exploits and bots. AWS WAF provides scanning of designated HTTP/HTTPS traffic to protect against various attacks.

SaaS-Multi-Tenant-OpenSearch-thumbnail

Storing Multi-Tenant SaaS Data with Amazon OpenSearch Service

Amazon OpenSearch Service is frequently used by SaaS providers to address a broad range of use cases. The use of Amazon OpenSearch Service in a multi-tenant environment, however, introduces a collection of new considerations that will influence how you partition, isolate, deploy, and manage your solution. Explore the strategies and patterns that are used to address these common issues, and look at the specific models used to represent and isolate each tenant’s data with Amazon OpenSearch Service constructs.

Securely-Using-External-ID-thumbnail

Securely Using External ID for Accessing AWS Accounts Owned by Others

It’s often required for a partner solution running on Amazon Web Services to access AWS accounts owned by their customers (third-party AWS accounts). This kind of access is known as cross-account access. In such scenarios, a cross-account AWS Identity and Access Management (IAM) role with external ID should be used. Explore the best practices for using external ID to avoid the confused deputy problem it is designed to solve.