Desktop and Application Streaming

Tag: EUC

Use Session Tags to Simplify AppStream 2.0 Permissions

Customers use Amazon AppStream 2.0 to centrally manage applications and stream them to their end users. Organizations have multiple stacks associated with different fleets to separate workloads based on underlying resources, applications, or different user permissions. In this blog post I show you how to use session tags in the SAML assertion to be used […]

How to report Amazon AppStream 2.0 home folder use with Amazon Athena

Customers ask how to analyze Amazon AppStream 2.0 home folder usage so they can track related spend, manage usage, and administer AppStream 2.0 home folders. Customers have questions like: “How much data is User1 using in AppStream 2.0 home folders?” “What are the top 10 largest files being stored and who owns them?” This blog […]

Enabling Identity Federation with Shibboleth and Amazon AppStream 2.0

Shibboleth is an open-source project that provides single sign-on capabilities and identity federation solution used by research and education communities worldwide. If you are already using Shibboleth IdP, this post shows you how to configure it for Security Assertion Markup Language 2.0 (SAML 2.0) identity federation with Amazon AppStream 2.0. Overview The AppStream 2.0 SAML […]

Cross-account resources and Amazon AppStream 2.0

Some of our customers using Amazon AppStream 2.0 leverage multi-account setups to separate their AppStream 2.0 resources. For these customers, there are many reasons they choose to separate their AppStream 2.0 resources into multiple accounts. However, the most common reasons our customers do this, is for resource and billing isolation and enhanced security. For example, […]

Using Microsoft AppLocker to manage application experience on Amazon AppStream 2.0

Customers are using Amazon AppStream 2.0 with application control software and policies to manage the streaming of desktop applications to their end users. Customers use the application control software and policies with the clipboard, file transfer, local print permissions, and VPC security groups to provide the right level of integration, control resource access, and manage […]

Network Separation and Data Sanitization using Amazon WorkSpaces, Amazon AppStream 2.0, and Amazon Macie

Data security and privacy are the top priorities of most organizations. Most of the data leakage happens not at the data center, but outside it. Most common reasons of data theft are unpatched desktops, malware attacks, and accidental data sharing. Network separation is a common way to secure desktop environments. Most organizations achieve this by […]