Escolar Documentos
Profissional Documentos
Cultura Documentos
Guilherme Hasse
AWS Partner Trainer
guilheh@amazon.com
Agenda de hoje
Seção 1 Seção 2
Primeiros passos com certificações AWS Conteúdo para prova
Dicas , Q&A
Como se registrar para prova
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. 2
AWS Certification
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. 3
Passo zero+
aws.training
aws.amazon.com/certification/
Sempre veja os documentos:
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. 6
AWS Certified Associate SAA-C01
Sobre o exame
Multiple-responses:
( • ) EdgeLocations
Respostas não respondidas = incorreto. ( ) Data Centers
Sem penalidades para incorretas. ( ) AWS Transceivers
( ) Cloud Content
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved.
( ) External DNS 7
AWS Certified Associate SAA-C01
Sobre o exame
• Conteúdo principal:
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved.
AWS Certified Associate SAA-C01
O que a prova pede
• Experiência:
• Serviços de computação, redes, armazenamento, BD’s
• Serviços de implantação e gerenciamento
• Projetos de arquitetura de sistemas distribuidos, econômicos, tolerantes a falhas, escaláveis
• Identificar e definir:
• Requisitos técnicos para aplicativos
• Quais serviços cumprem determinada função
• Aspectos de segurança e compliance
• Características básicas de implementação e operação
• Compreensão:
• Diferentes arquiteturas em AWS (HA,DR,FT)
• Infraestrutura global da AWS
• Tecnologias de rede e segurança
• Billing, account management, e modelos de precificação
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 9
AWS Certified Associate SAA-C01
Certifications Path
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 10
Question Navigation
Flags, Timer
Item Navigation
# State Flagged Item text
NDA Answered By Taking this exam, you agree to the AWS Certification Program Agreement governing our Certifica…
1 Answered You have a car that gets 25 miles to the gallon. The gas tank holds 12.5 gallons. You have already…
2 Answered The subscription to a magazine is $14 per year, which covers 12 issues. If you cancel your subscription…
3 Answered You are planning a drive of 300 km and want to arrive by 5:00 pm. If the speed limit is…
4 Answered A stone is dropped from a helicopter 5000 feet in the air. If gravity is 32.2. ft/s2, when will the…
5 Answered How many 1 gallon buckets of paint will be needed to paint the walls of a room 10’ x 15’ if the…
6 Unanswered A jar of pickles is 16 cm tall and 12 cm in diameter. If the inside of a refrigerator is .5 m x .75m x …
7 Answered Johnny must be 4 feet tall to ride the roller coaster. Johnny is 6 years old and 3 feet 6 inches tall…
8 Answered A loop of spring is wrapped tightly around the earth. If the string is lengthened by 6 cm, how…
9 Answered John has 3 more apples than Sue. Sue gas twice as many apples as Danielle. How many…
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. 11
Estratégias Gerais
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 13
Adicionar 30min
Países não nativos na língua inglesa têm direito a adicionar 30min ao tempo de prova.
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 14
Adicionar 30min
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 15
Recursos para estudo
Treinamentos Online
1- AWS Technical Professional (Digital) aws.training
2- AWS Business Professional (Digital)
3- Exam Readiness: AWS Certified Solutions
Architect – Associate (Digital)
Whitepapers da AWS
Architecting for the Cloud: AWS Best Practices
Disaster Recovery on AWS
AWS Security Best Practices
Docs da AWS
EC2, EBS, S3, VPC, ELB, RDS, Route53, SQS…
AWS support plans
LABS em aws.qwiklabs.com
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Recursos para estudo
Disponível em aws.training
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 17
Recursos para estudo
Treinamentos Presenciais
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 18
Seção 2
Conteúdo para prova
Dicas , Q&A
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 19
Seção 2 – Conteúdo para prova
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 20
AWS Highly Available Global Infrastructure
21 64 160
Geographic Availability Edge
Regions Zones Locations
Region
Interconnected using
high-speed private links
AWS Availability Zone (AZ)
AZ
AZ
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. 21
AWS Cloud Hierarchy
Route 53 – DNS
CloudFront , IAM
Buckets S3
Região AMI Images
EBS Snapshots
Instances EC2/RDS
AZ Volumes EBS
Containers
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 23
Armazenamento Persistente e Efêmero
Window Svr
SSD HDD
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 24
Elastic Block Store
Diferentes tipos
Encriptação
Snapshots
Capacidade Provisionada
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Elastic Block Store
Volume Size 1 GiB - 16 TiB 4 GiB - 16 TiB 500 GiB - 16 TiB 500 GiB - 16 TiB
Max. IOPS/Volume 16.000 64.000 500 250
Max. Throughput/Volume 250 MiB/s 1.000 MiB/s 500 MiB/s 250 MiB/s
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Material de Estudo
FAQ – EBS
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Sample Exam Question
• Dica: fique atento a cross-AZ access quando for criar mount target em somente 1 AZ
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 30
EFS Solution
Ready to download!
Object ID 001
Object ID 025 ID 001 ID 025 ID 150
Object ID 150
Object ID 400 Archive retrieval job
….
Expedited: 1~5min
ID 400
Standard: 3~5hs
Bulk: 5~12hs
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved. 33
Material de Estudo
Web Server
X X Email Service
X
Email Server
Web Server
X
Email Service
X
Email Server
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Desacoplamento para Escalabilidade
Amazon
Web Server Logging Service DynamoDB
Logging Service
© 2019 Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Push-based vs Pull-based
SNS SQS
Notificação Mensageria
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 37
Push Based - SNS
Message Filtering
dwell time = Tpub. - Tpush Message Fanout
SNS VPC endpoint
Message Delivery Status
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 38
Pull Based - SQS
Dead-letter queue
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 39
SQS Queues
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 40
Material de Estudo
Alta Disponibilidade
Tolerância a Falhas
• Capacidade de um sistema permanecer em funcionamento mesmo quando alguns dos componentes usados para
construir o sistema falham.
• Refere-se à redundância interna dos componentes de uma solução.
• Pode haver queda no desempenho quando os componentes do sistema falharem.
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 44
Como desenvolver arquiteturas com HA na AWS
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 45
CloudFormation
AWS CloudFormation
Create/delete AWS
resources
Create/delete
Template Stack
- Basic definition of - Collection of AWS
resources to create resources
- JSON text file
Domain 2: Arquiteturas de Alto Desempenho
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 47
Amazon EBS Volume Types
Amazon S3
To upload your data (photos, videos, documents):
1. Create a bucket in one of the AWS Regions.
2. Upload any number of objects to the bucket.
Bucket
http://bucket.s3.amazonaws.com
Virtual hosted-based URLs
[bucket name]
http://bucket.s3-aws-region.amazonaws.com
Object
Preview2.mp4 https://s3-ap-northeast-1.amazonaws.com/[bucket name]/Preview2.mp4
Tokyo Region
(ap-northeast-1) Key
Key Amazon S3 Features
Free of charge
• Transfer in to Amazon S3
• Transfer out from Amazon S3 to Amazon CloudFront or the same region
Durable
“Hot” Data 99.999999999%
Active and/or
Temporary Data
$0.023/GB per month > 0K ≥ 0 Days
S3 Available
S3: 99.99%
$0.0125/GB per month ≥ 128K ≥ 30 Days S3-IA: 99.9%
“Warm” Data
Infrequently
L
Accessed Data $0.01/GB retrieval if
S3-IA Performant
e Low Latency
High Throughput
“Warm” Data
$0.0125/GB per month ≥ 128K ≥ 30 Days c
Infrequently
Accessed Data $0.01/GB retrieval y Scalable
S3-IA-1Zone c Elastic capacity
No preset limits
l
e
“Cold” Data $0.004/GB per month > 0K ≥ 90 Days
Archive and
Compliance Data
$0.01/GB retrieval > 5% 3 – 5 Hrs
Glacier
Amazon Databases
• Relational Databases
• Self Managed Service
• Rotinas automatizadas
Amazon
Amazon • Seguro, escalável, simples de usar Aurora
RDS • Baixo custo, pague por uso
Amazon Aurora
Availability Availability
Zone A Zone B
Cross-Region Read Replicas
Choose cross-region read replicas for faster disaster recovery and enhanced data locality
Memcached Redis
Multithreading Support for data structures
Memcached Redis
Pub/Sub - Yes
Lua scripting - Yes
Geospatial support
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. - Yes 61
Vertical Scaling vs. Horizontal Scaling
Small Xlarge
EC2 Auto Scaling
• Crescimento horizontal de instâncias CPU utilization triggers the alarm: capacity is doubled until
• Provisiona e Deprovisiona CPU utilization drops below 60% or max capacity is reached.
• Min. = 2, Max. = 12
• Políticas de crescimento
• CPU, Memory, Volumes, etc.. Auto Scaling group
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Como Auto Scaling funciona?
Traffic
Health Checks
Sticky Sessions
Association with Auto Scaling group and
Auto Scaling ELB Health Check
EC2 EC2
Availability Availability
Zone A Zone B
Application Load Balancer:
How It Works
67
Load Balancer Comparison
68
Instance Metadata & User Data
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 71
Service Specific Security
Firewall rules (sec.group, NACL) AWS builds security into every layer of the AWS
infrastructure and also into each of the services
Administrative Security - IAM available on the infrastructure.
…
RDS Application Load Amazon Amazon
Balancer S3 DynamoDB
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
72
Platform Security Services
AWS
MFA token
CloudFormation
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Support & Services
Technical Account
Manager (TAM)
Enterprise
Business B
E
AWS N
Developer
Service E
Levels F
Basic I
T
AWS Support Plans S
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 74
Shared Responsibility Model
https://aws.amazon.com/pt/compliance/shared-responsibility-model/
Depende do tipo de serviço contratado. Compare um managed service (RDS) vs Instância EC2.
Customer Data
Responsible For
Security “IN” The Operating System, Network, and Firewall Configuration
Cloud
Client-Side Data Encryption and Server-Side Encryption (File System Network Traffic Protection
Data Integrity Authentication and Data) (Encryption/Integrity/Identity)
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 75
Shared Responsibility Model is not Static
At the moment of creation of the instance it is defined which key-pair will be used to access the instance.
“A key pair consists of a public key that AWS stores, and AWS
a private key file that you store.”
Private Key
Public Key
Administrator RDP – Remote Desktop
TCP port 3389
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 77
AWS Identity & Access Management
https://aws.amazon.com/iam/
AWS Principals
Assigned Assigned
IAM Policy
IAM User
IAM Group
Assigned
Assumed Assumed
AWS Resources
IAM User IAM Roles
Amazon VPC
Internet Customer
Network
Internet Virtual
gateway private
gateway
R
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 84
Security Groups vs. Network ACL
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 88
Composição de custos _ EC2
AZ-1 AZ-2
In/out Free In/out $0.01/GB
Reg. X
Amazon EC2 Amazon EC2 Amazon EC2
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 89
Composição de custos _ EC2
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 90
Amazon EC2 – Opções de compra
https://aws.amazon.com/pt/ec2/pricing/
Composição de custos _ S3
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 92
Arquiteturas Serverless
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 94
Domain 5: Arquiteturas de Excelência Operacional
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 95
AWS Services Supporting
Operational Excellence
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 98
AWS CloudWatch - Alarms
1. SNS Notification
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 99
AWS CloudTrail
Security analysis.
Tracking of resource changes.
Problems solution.
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 100
AWS Config
Resources Inventory.
Amazon
AWS Config
Amazon
EC2 EBS
Amazon AWS
VPC CloudTrail
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 101
Ferramentas para Migração
• Offline transfer
Snowball • Size: 50TB, 80TB, 100TB.
• Time to transfer in low bandwidth uplinks.
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 102
AWS Certified Associate SAA-C01
To-Do
Realize o Exam Readiness online – AWS Certified Solutions Architect – Associate (Digital).
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Perguntas e Respostas
DÚVIDAS ?
© 2019, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 104
Boa sorte!
Guilherme Hasse
guilheh@amazon.com
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. 105