Containers
Implement SPIFFE/SPIRE authorization on Amazon EKS
In this post, we show you how to implement SPIFFE/SPIRE on Amazon EKS to establish secure service-to-service communication using a nested architecture. You’ll learn how to deploy SPIRE across multiple Amazon EKS clusters, configure workload attestation, and implement fine-grained authorization policies that scale with your infrastructure.
Deploying Model Context Protocol (MCP) servers on Amazon ECS
In this post, we will walk you through a three-tier MCP application deployed entirely on Amazon ECS, using Service Connect for service-to-service communication and Express Mode for automated load balancing, to show how to take an MCP-based workload from concept to production.
Navigating enterprise networking challenges with Amazon EKS Auto Mode
This post covers how EKS Auto Mode handles VPC CNI optimization, pod density scaling, network security implementation, and hybrid connectivity.
Building intelligent knowledge graphs for Amazon EKS operations using AWS DevOps Agent
In this post, we demonstrate how AWS DevOps Agent works—from alert generation to identifying the affected EKS cluster, building knowledge graphs, and troubleshooting application or infrastructure issues, ultimately reducing MTTI and MTTR for your Kubernetes operations.
Building PCI DSS-Compliant Architectures on Amazon EKS
In this post, we explore key considerations, best practices, and architectural decisions hosting applications on EKS in shared tenancy environments while maintaining PCI DSS compliance. Please note this information is for reference purposes only and does not constitute legal or compliance advice—customers remain responsible for making their own independent assessment, and AWS products or services are provided ‘as is’ without warranties, representations, or conditions of any kind.
Session policies for Amazon EKS Pod Identity
In this post, we demonstrate how to use session policies to dynamically scope down IAM permissions for your Kubernetes pods without creating additional IAM roles, and discuss important considerations when adopting this feature.
Deploy production generative AI at the edge using Amazon EKS Hybrid Nodes with NVIDIA DGX
This post demonstrates a real-world example of integrating EKS Hybrid Nodes with NVIDIA DGX Spark, a compact and energy-efficient GPU platform optimized for edge AI deployment. In this post we walk you through deploying a large language model (LLM) for low-latency generative AI inference on-premises, setting up node monitoring and GPU observability with centralized management through Amazon EKS.
AWS at KubeCon EU 2026: Open Source Leadership Meets Production Innovation
In this post, we explore how AWS continuously innovates with Kubernetes and how you can experience these these firsthand at KubeCon + CloudNativeCon Europe 2026.
Automated deployments with GitHub Actions for Amazon ECS Express Mode
In this post, we will walk you through building an automated deployment pipeline using GitHub Actions. You will create a workflow that triggers on code changes, builds Docker images, pushes them to Amazon ECR, and deploys to Amazon ECS Express Mode using IAM roles for secure authentication. By the end, you will have a continuous integration and continuous delivery (CI/CD) workflow that automatically deploys your application when you push code.
Announcing the end-of-support for the AWS Copilot CLI
We are announcing that AWS Copilot CLI will reach end of support on June 12, 2026. Copilot simplified building, releasing, and operating production-ready containerized applications on Amazon Elastic Container Service (ECS) or AWS App Runner by providing a command-line interface (CLI) tool. While AWS Copilot CLI will continue to be available as an open-source project on GitHub, it will no longer receive new features or security updates from AWS.









