AWS

I have a personal account, I don't remember the usernames or IAM, log in with root email option.

AWS resources are managed via: AWS Management Console (the Web UI), AWS CLI, SDKs, API and Cloud shell (web terminal emulator UI available inside AWS management console)
Users can generate their own Access keys (ID + secret)

exam guide, 50 questions, get 30 mins extension.
skillbuilder ofcial mock exam.
tutorialsdojo is partner

Cloud Principles and Concepts

Cloud Principles and Concepts

pricing

AWS has 3 pricing fundamentals, following the pay-as-you-go pricing model.
• Compute: • Pay for compute time
• Storage: • Pay for data stored in the Cloud
• Data transfer OUT of the Cloud:
Solves the expensive issue of traditional IT


For renting servers there is on demand, which is the most expensive, but you can also rent Reserved Instances (RI) for periods of 1 or 3 years you are obliged to pay for. You can pay nothing, partially or everything upfront for bigger discounts.

AWS Support: are a collection of Plans that provide various lvls of technical assistance and tools to manage your AWS environment.
Depending if your account is Developer, Business or Enterprise you get benefits like. faster response times, 24 hour support and technical account manager..

Services

Service icons are color coded:

Category Icon Color Example Services
Compute & Containers Orange EC2, Lambda, Fargate, EKS, Lightsail
Storage Green S3, EFS, EBS, Glacier
Database Blue RDS, DynamoDB, ElastiCache, Aurora
Networking & Content Delivery Purple VPC, CloudFront, Route 53, API Gateway
Security, Identity, & Compliance Red IAM, Secrets Manager, GuardDuty, KMS
Management & Governance Pink CloudWatch, CloudTrail, Systems Manager, CloudFormation
Analytics Dark Red / Maroon Athena, Redshift, EMR, Kinesis
Machine Learning Teal / Dark Green SageMaker, Rekognition, Lex
Application Integration Light Blue / Cyan SQS, SNS, Step Functions

Global services
AWS Identity and Access Management (IAM), AWS IAM Identity Center, AWS Organizations, Amazon Route 53, Amazon CloudFront, AWS Global Accelerator, AWS WAF, AWS Shield, AWS Firewall Manager
Most AWS services are region scoped.

Compute

AWS Compute Services Comparison

Choose EC2 if your app isn't containarized and ECS if you are using Docker, it handles the heavylifting of restarting failed containers and spreading them across different zones.

Storage

see Types of Storage

Database

Networking & Content Delivery


I created an Amazon family long to set up Alexa to use a device we bought long ago. But we never used it.
Recently my brother started buying a lot of Alexa and home devices and set up an Alexa Amazon Family with his account but I believe I can't join because I'm in my own Amazon Family.
I need help to delete my own Amazon Family and join my brother's

Application Integration

"Glue services". This services apply the principle of decoupling, they allow different software components to talk to each other without being tightly connected.
In a traditional tightly couple architecture, if service A wants to send a msg to service B, it must have a direct connection to it, if something goes wrong with either service it often leads to many errors. Tighly coupled systems often need to know things like where the service is located, if it's up, if it's currently busy, etc...
By placing services like SQS and SNS between services they no longer need to know everything about each other to function.

A common "golden" pattern is to put SNS in front of many SQS queues. This way you get both the broadcast capability of SNS with the combined reliability and buffering of SQS.

Machine Learning

Analytics

Security, Identity, & Compliance

observability

DDOS protection

AWS Shield Standard, AWS Shield Advanced (24/7 premium protection), WAF (firewall, filter requests based on rules), CloudFront and Route 53 (availability protection using global edge network), Auto Scaling

Advanced identity

pen testing

AWS customers are welcome to carry out security assessments or penetration tests against their AWS infrastructure without prior approval for 8 services:

Click to view the 8 permitted services

• Amazon EC2 instances, NAT Gateways, and Elastic Load Balancers
• Amazon RDS
• Amazon CloudFront
• Amazon Aurora
• Amazon API Gateways
• AWS Lambda and Lambda Edge functions
• Amazon Lightsail resources
• Amazon Elastic Beanstalk environments

Prohibited Activities - DNS zone walking via Amazon Route 53 Hosted Zones - Denial of Service (DoS), Distributed Denial of Service (DDoS), Simulated DoS, Simulated DDoS - Port flooding - Protocol flooding - Request flooding (login request flooding, AP| request flooding)
- For any other simulated events, contact aws-security-simulated-event@amazon.com ## Billing - Cost Explorer: display distribution of AWS spending - Cost and Usage Reports: billing info and history. - Pricing / TCO (Total Cost of Ownership) Calculator: to derive the cost of moving onpremise servers to AWS and the cost of services in general - Billing Conductor: service meant for AWS partners and large enterprises to customize billing data and generate alternative "pro forma" cost reports that align with internal chargeback or client billing logic. It's meant for partners to charge their clients.

Management & Governance

pink

Monitoring, Logs

Other Services and Distractor services

"distractors" because they are not core services, they are for very specific use cases. They may appear in the exam as wrong answers.
Quicksight, Cognito, AppStreams, Server Migration Service, etc...

network components

many services have fundamental networking components

Disaster recovery

from cheapest to most expensive

so if there is a disaster in us-east-1 that affects our instances with Route 53 we can just failover and redirect all traffic onto instances in another region like eu-west-2

Migrating

Cloud Migration Strategies - 7 Rs

AWS Migration Strategies and Services

Resulting data can be viewed in Migration Hub Service

Architecting & Ecosystem

Well Architected Framework

AWS Cloud Adoption Framework (CAF)

Right sizing: there are many instance types. you should match your instance types and size to your workload. You should always start small and scale up. You should constantly monitor your system and look for opportunities for sizing up or down.

Ecosystem: