Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
Amazon CloudFront with AWS Certificate Manager
Search
Amimoto - Flexible Cloud WordPress Hosting
May 02, 2016
How-to & DIY
230
0
Share
Amazon CloudFront with AWS Certificate Manager
# High speed content delivery using CDN.
# Automated SSL certificate management.
Amimoto - Flexible Cloud WordPress Hosting
May 02, 2016
More Decks by Amimoto - Flexible Cloud WordPress Hosting
See All by Amimoto - Flexible Cloud WordPress Hosting
[日本語] AMIMOTO-AMI Lineup
amimoto
0
180
EdgeCase - A speaker series by J2 Design
amimoto
0
370
Progress the system operation drastically with Cloud Automator — AMIMOTO side—
amimoto
0
210
[東京]Cloud_Automatorで攻めのシステム運用 AMIMOTO スタック編
amimoto
0
910
AMIMOTO Design Pattern + Server-less Architecture
amimoto
0
530
WooCommerce with Elasticsearch
amimoto
1
490
[日本語] WooCommerce with Elasticsearch
amimoto
0
270
WordPress with CloudFront + AMAZON RDS + S3
amimoto
1
720
[日本語]Amazon CloudFront with AWS Certificate Manager
amimoto
2
4.6k
Other Decks in How-to & DIY
See All in How-to & DIY
「変えること」「変わること」を楽しむ力で"敵わない存在"と向き合う
subroh0508
2
1.6k
スマートハウスの蓄電性能の効率化を実現してみた~電気自動車編~
runrunsan
0
480
JAWS-UG 山梨 第10回 勉強会 Community Update
awsjcpm
0
1.1k
EXPO 2025 大屋根リングをぐるっと周回! 【GPSマルチユニット×ソラカメ実験】
scbc1167
0
120
JAWS-UG/AWSコミュニティ -JAWS-UGくまもと#16
awsjcpm
1
210
JAWS-UG/AWSコミュニティ アップデート (JAWS-UG函館支部)
awsjcpm
3
150
サイボウズには100名以上の社員が出演する"夏フェス"があるって本当?
oguemon
1
720
How to make the Groovebox
asonas
2
2.2k
とある地方技術勉強会に集うエンジニアたちのこれまでとこれから
pharaohkj
1
160
フィールドエンジニア at 多摩川 / Field Engineer at Tamagawa
aokiplayer
0
200
M5StickS3触ってXiaoZhiAI触ってみた #にぼし香 #iotlt
n0bisuke2
0
240
人を補助するAI ~AIとの壁打ちがきっかけになる~ #共創AIミートアップ
ishikiemo
2
580
Featured
See All Featured
Rebuilding a faster, lazier Slack
samanthasiow
85
9.5k
How to Get Subject Matter Experts Bought In and Actively Contributing to SEO & PR Initiatives.
livdayseo
0
120
GraphQLの誤解/rethinking-graphql
sonatard
75
12k
Keith and Marios Guide to Fast Websites
keithpitt
413
23k
Data-driven link building: lessons from a $708K investment (BrightonSEO talk)
szymonslowik
1
1.1k
Technical Leadership for Architectural Decision Making
baasie
3
370
Organizational Design Perspectives: An Ontology of Organizational Design Elements
kimpetersen
PRO
1
690
Deep Space Network (abreviated)
tonyrice
0
150
Templates, Plugins, & Blocks: Oh My! Creating the theme that thinks of everything
marktimemedia
31
2.8k
The Organizational Zoo: Understanding Human Behavior Agility Through Metaphoric Constructive Conversations (based on the works of Arthur Shelley, Ph.D)
kimpetersen
PRO
0
330
<Decoding/> the Language of Devs - We Love SEO 2024
nikkihalliwell
1
210
The Pragmatic Product Professional
lauravandoore
37
7.3k
Transcript
Amazon CloudFront with AWS Certificate Manager @Amimoto_Ami amimoto-ami.com
Architecture
Amazon CloudFront AWS Certificate Manager w )JHITQFFEDPOUFOUEFMJWFSZ VTJOH$%/ w "VUPNBUFE44-DFSUJpDBUF
NBOBHFNFOU $BOCFNBEF
Get SSL certification Workflow Preparations
Preparation
ɾadministrator@your_domain ɾhostmaster@your_domain ɾpostmaster@your_domain ɾwebmaster@your_domain ɾadmin@your_domain 7BMJEBUJPOFNBJMBEESFTT
If you have validation e-mail address and receive mails to
it, no setting are required any more. 7BMJEBUJPOFNBJMBEESFTT
If you have no validation e-mail address, follow these steps
to receive mails through AWS SES. 7BMJEBUJPOFNBJMBEESFTT
Set up Amazon SES Workflow Create S3 bucket Preparation
Set up Amazon SES Workflow Create S3 bucket Preparation
Amazon S3 w "NB[PO4JNQMF4UPSBHF4FSWJDF w &BTZUPVTFPCKFDUTUPSBHFTFSWJDF w 8F`MMVTFJUGPSTUPSFNFTTBHFT4&4 "NB[PO4
Add bucket policy Workflow Create S3 bucket
Add bucket policy Workflow Create S3 bucket
None
Click [Create Bucket]
Input Bucket Name and Region then click [Create]
Add bucket policy Workflow Create S3 bucket
Click [Add bucket policy] in Permissions section in Properties
Edit Bucket Policy then [Save]
Bucket Policy https://docs.aws.amazon.com/ses/latest/DeveloperGuide/ receiving-email-permissions.html
Set up Amazon SES Workflow Create S3 bucket Preparation
Amazon SES w "NB[PO4JNQMF&NBJM4FSWJDF w 4FOESFDFJWFFNBJMTFSWJDF w 8F`MMVTFJUGPS$MPVE'SPOU FNBJMWFSJpDBUJPO "NB[PO4&4
Testing e-mail Workflow Create a Receipt Rule
None
Email Receiving — [Rule Sets] — [Create a Receipt Rule]
Click [Add Recipient] after fill in e-mail address to Recipient
Set displayed records to your DNS server. If your DNS
is Route53, simply click [Use Route 53].
After clicking [Use Route 53], some checkbox will appear. Check
them all then [Create Record Sets]. (only for Route 53 user)
Select created S3 bucket click [Next]
Fill in the [Rule name] then click [Next Step]
Setting confirmation. After confirmation, click [Create Rule Set]
Status turns to Enabled when you completed DNS configuration and
its verification.
Testing e-mail Workflow Create a Receipt Rule
Send test mail to created e-mail address from your favourite
mail client software.
If you find a file except AMAZON_SES_SETUP_NOTIFICATION file in S3
bucket, settings are working correct.
Get SSL certification
CloudFront Workflow Certificate Manager
CloudFront Workflow Certificate Manager
AWS Certificate Manager • SSL certification provided by AWS •
Available for CloudFront and ELB • No additional fee • Automatically renewal "84$FSUJpDBUF.BOBHFS
None
Click [Get started]
Input your domain name to [Domain name] field then click
[Review and request]
After confirmation, click [Confirm and request]
Click [Continue]
You’ll see list of certificate status of domains
Open the verification URL with your browser in the mail
in S3 bucket
Open verification URL with your browser, then click [I
Approve]
Success! Congratulations! You finally get SSL certification
Also you can check certificate request status on AWS console.
CloudFront Workflow Certificate Manager
Amazon CloudFront • AWS managed CDN service • Low latency
and reduce server loads • Supports failover if a failure "NB[PO$MPVE'SPOU
None
Choose the distribution you wants to add SSL in Distributions
Click [Edit] in General tab
Select created SSL certification in Custom SSL Certificate
You can see that SSL certificate is set to your
domain. It takes a little while.
http://amimoto-ami.com/slack/ Feel free to contact us:
@Amimoto_Ami amimoto-ami.com THANK YOU! Amazon CloudFront + AWS Certificate Manager