Issue #48
Monday · December 06, 2021
π₯ AWS security blogs
- AWS attained MTCS Level 3 certification under the new SS584:2020 standard β Weβre excited to announce the completion of the Multi-Tier Cloud Security (MTCS) Level 3 certification under the new SS584:2020 standard in November 2021 for three Amazon Web Services (AWS) Regions: Singapore, Korea, and United States, excluding AWS GovCloud (US) Regions. The new standard, released in October 2020, includes more stringent β¦
- How to automate AWS Managed Microsoft AD scaling based on utilization metrics β AWS Directory Service for Microsoft Active Directory (AWS Managed Microsoft AD), provides a fully managed service for Microsoft Active Directory (AD) in the AWS cloud. When you create your directory, AWS deploys two domain controllers in separate Availability Zones that are exclusively yours for high availability. For use cases requiring β¦
- AWS Security Profiles: Jenny Brinkley, Director, AWS Security β In the week leading up to AWS re:Invent 2021, weβll share conversations weβve had with people at AWS who will be presenting, and get a sneak peek at their work. How long have you been at AWS, and what do you do in your current role? Iβve been at AWS β¦
π Reddit threads on r/aws
- The keynote drinking game.... β Take a drink every time you hear "Digital transformation". I'll see you in the ER when we all get alcohol poisoning!
- AWS Cloud Development Kit (AWS CDK) v2 is now generally available
- Did the announcements this year in Re:Invent seem underwhelming? β Usually every year I hear price cuts, really big features, and etc for developers, but it seems like this year things were just much smaller overall. I hope this isn't a trend year to year. I was expecting to hear about aurora serverless v2, AWS AppRunner new features, extra serverless β¦
- Introducing AWS re:Post, a new, community-driven, questions-and-answers service
- Top Announcements of AWS re:Invent 2021 (Live Blog - updated daily)
π Newsletters
π Top Links from Security Folks
- GitHub - SummitRoute/csp_security_mistakes: Cloud service provider security mistakes β Cloud service provider security mistakes. Contribute to SummitRoute/csp_security_mistakes development by creating an account on GitHub.
- AWS re:Inforce β Cloud security, identity, and compliance learning
π r/netsec
π "AWS Security" on Google News
π§ IAM permission changes
- iotfleetwise: 43 new actions, 6 new resources, 2 new conditions β 43 new actions: AssociateVehicle (associate the given vehicle to a fleet), CreateCampaign (create a campaign), CreateDecoderManifest (create a decoder manifest for an existing model), CreateFleet (create a fleet), CreateModelManifest (create a model manifest definition), CreateSignalCatalog (create a signal catalog), CreateVehicle (create a vehicle), DeleteCampaign (delete a campaign), DeleteDecoderManifest (delete the β¦
- dataexchange: 1 new action β 1 new action: SendApiAsset (send a request to an api asset)
- refactor-spaces: 23 new actions, 4 new resources, 8 new conditions β 23 new actions: CreateApplication (create an application within an environment), CreateEnvironment (create an environment), CreateRoute (create a route within an application), CreateService (create a service within an application), DeleteApplication (delete an application from an environment), DeleteEnvironment (delete an environment), DeleteResourcePolicy (delete a resource policy), DeleteRoute (delete a route from an β¦
πͺ API changes
- AWS Amplify UI Builder - 14 new methods β This release introduces the actions and data types for the new Amplify UI Builder API. The Amplify UI Builder API provides a programmatic interface for creating and configuring user interface (UI) component libraries and themes for use in Amplify applications.
- AWS Network Manager - 33 new 4 updated methods β This release adds API support for AWS Cloud WAN.
- AWS Resource Access Manager - 3 updated methods β This release adds the ability to use the new ResourceRegionScope parameter on List operations that return lists of resources or resource types. This new parameter filters the results by letting you differentiate between global or regional resource types.
- Amazon DevOps Guru - 14 updated methods β DevOps Guru now provides detailed, database-specific analyses of performance issues and recommends corrective actions for Amazon Aurora database instances with Performance Insights turned on. You can also use AWS tags to choose which resources to analyze and define your applications.