Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
情シス担当がAWS導入して苦しんだ話 / aws-migration
Search
Daisaku Yamamoto
July 28, 2016
Technology
0
310
情シス担当がAWS導入して苦しんだ話 / aws-migration
インフラ勉強会 #1 での発表資料。
Daisaku Yamamoto
July 28, 2016
Tweet
Share
More Decks by Daisaku Yamamoto
See All by Daisaku Yamamoto
俺たちの情シス@大阪#1_情シスとしての課題や悩み/ore-jyo1
dai0916
0
790
情シスへの申請・問い合わせ管理を Redmine で効率化する / redmine-operation
dai0916
0
570
情シス担当の試行錯誤と未来への展望 / ismg-cafe-kobe-1
dai0916
0
240
esaに餌を与えてドキュメントドリブンを加速させたい話 / document-driven-for-esa
dai0916
1
2.3k
Other Decks in Technology
See All in Technology
データ民主化のための LLM 活用状況と課題紹介(IVRy の場合)
wxyzzz
2
670
15 years with Rails and DDD (AI Edition)
andrzejkrzywda
0
180
予期せぬコストの急増を障害のように扱う――「コスト版ポストモーテム」の導入とその後の改善
muziyoshiz
1
1.6k
Bill One 開発エンジニア 紹介資料
sansan33
PRO
4
17k
~Everything as Codeを諦めない~ 後からCDK
mu7889yoon
3
270
Ruby版 JSXのRuxが気になる
sansantech
PRO
0
110
仕様書駆動AI開発の実践: Issue→Skill→PRテンプレで 再現性を作る
knishioka
2
590
FinTech SREのAWSサービス活用/Leveraging AWS Services in FinTech SRE
maaaato
0
120
GSIが複数キー対応したことで、俺達はいったい何が嬉しいのか?
smt7174
3
140
月間数億レコードのアクセスログ基盤を無停止・低コストでAWS移行せよ!アプリケーションエンジニアのSREチャレンジ💪
miyamu
0
810
toCプロダクトにおけるAI機能開発のしくじりと学び / ai-product-failures-and-learnings
rince
6
5.5k
サイボウズ 開発本部採用ピッチ / Cybozu Engineer Recruit
cybozuinsideout
PRO
10
73k
Featured
See All Featured
What Being in a Rock Band Can Teach Us About Real World SEO
427marketing
0
170
Fireside Chat
paigeccino
41
3.8k
AI: The stuff that nobody shows you
jnunemaker
PRO
2
240
AI Search: Implications for SEO and How to Move Forward - #ShenzhenSEOConference
aleyda
1
1.1k
Music & Morning Musume
bryan
47
7.1k
Design of three-dimensional binary manipulators for pick-and-place task avoiding obstacles (IECON2024)
konakalab
0
350
Creating an realtime collaboration tool: Agile Flush - .NET Oxford
marcduiker
35
2.4k
We Are The Robots
honzajavorek
0
160
Pawsitive SEO: Lessons from My Dog (and Many Mistakes) on Thriving as a Consultant in the Age of AI
davidcarrasco
0
62
Noah Learner - AI + Me: how we built a GSC Bulk Export data pipeline
techseoconnect
PRO
0
100
Easily Structure & Communicate Ideas using Wireframe
afnizarnur
194
17k
The untapped power of vector embeddings
frankvandijk
1
1.6k
Transcript
ਆށσδλϧɾϥϘ Πϯϑϥษڧձ #1 γε୲͕ AWSಋೖͯۤ͠͠Μͩ 2016/07/28 גࣜձࣾ ਆށσδλϧɾϥϘ ࢁຊ
େ࡞ Daisaku Yamamoto
Company
i/ B C u C e E T C ONQ
O Q e C e m M e C L m e C b oWs m b oC Q FS O T C MI t i d d -- AC a d t & &C W i t e u em W r W d W u do d do u - × W d b oW u C t / s B CE T E T W d W sm u C C i Q R Q O L u a d Q u P E um o R ues P C I C e C W - C o C m C r s
Who?
• ໊લ ࢁຊ େ࡞ʢDaisaku Yamamotoʣ • ॴଐ גࣜձࣾਆށσδλϧɾϥϘ ։ൃཧ෦ ใγεςϜνʔϜ
ˍ SIRTʢSecurity Incident Response Teamʣ • ΠϯϑϥΤϯδχΞ Server (Linux, Windows, etc) Network Security AWS • ڵຯ Infrastructure as Code Immutable Infrastructure Docker WEB (Ruby on Rails, Node.js, Ruby, Javascript, Python) kintone Agility!!!
͓͢͠Δ͜ͱ • AWS ಋೖͷ͖͔͚ͬ • AWS ಋೖͯ͠Έͯ • Ͳ͏ͬͯҠߦ͔ͨ͠ •
ۤ͠Μͩͱ͜Ζ • ࠓޙͷల
AWS ಋೖͰ ʮۤ͠Μͩʯ
ಋೖͷ͖͔͚ͬ
VMαʔόӡ༻ͷ
ಋೖͷ͖͔͚ͬ VMαʔόӡ༻ͷ • VMϗεταʔόͷϦιʔεރׇ ʢϓϥΠϕʔτΫϥυʣ ˠ ήετVM400΄Ͳ • όοΫΞοϓӡ༻ഁ •
BCPରࡦ͕ෆे
ະདྷͷࢿ
ಋೖͷ͖͔͚ͬ ະདྷͷࢿ • ࣾجװαʔόٺԽʹΑΔߋվ ˠ อकΕମαʔόͷҰ৽ • ӡ༻͕͠ΜͲ͍ཧHWΛͳ͍ͨ͘͠ ˠ αΠδϯάɺαʔόߪೖɺϥοΩϯάɺέʔϒϦϯάɺ
ɹ ωοτϫʔΫػثઃఆɺిݯཧʢUPSʣɺ ɹ োൃੜ࣌ରԠɺഇغɾɾɾɾ • ΫϥυΛ࠷దʹར༻ͨ͠ϏδωεΛՃ͍ͤͨ͞ ˠ ࣗࣾϦιʔε͔ΒऔΓΉ͜ͱͰϊϋੵ ɹ ৽ͨͳՁ
AWS ಋೖͯ͠Έͯ
ຊʹ͍Ζ͍Ζָʢͤʣʹʂ
ಋೖͯ͠ಘͨͷ • Agilityɾɾɾӡ༻্ • AvailabilityɾɾՄ༻ੑ্ • SecurityɾɾɾηΩϡϦςΟϨϕϧ্ • Immutable Infrastructureɾɾɾ͍ࣺͯͷΠϯϑϥ
• Infrastructure as CodeɾɾɾߏΛίʔυཧ
None
Ͳ͏ͬͯҠߦ͔ͨ͠
Ҡߦରཧ • ήετVMͷ༻్Λཧ ෦ʢҊ݅ʣཧ͔ɺγεཧ͔ • redmineαʔόʢ50ʣ͔Β • VMϗετͷอकΕ͕͍ۙͷ͔Β
ҠߦܭըཱҊ • 201510݄ࠒΑΓ։࢝ • Ҡߦతཧ • ΦϯϓϨͱͷίετൺֱ ݮՁঈ٫ɺUPSɺిݯɺόοΫΞοϓɾɾ • Ҡߦํ๏
VM Import/Export • AWSڥઃܭ ΞΧϯτཧํ๏ɺωοτϫʔΫʢVPCʣɺηΩϡϦςΟάϧʔϓɺNAT • ޮԽ σϑΥϧτ IAM ϙϦγʔɺCloudFormation
VM Import/Export
VM Import/Export ͷ લఏ݅
લఏ݅ɾɾɾ
ݱঢ়ߏ
ݱঢ় AWS ߏʢγεཧʣ
ۤ͠Μͩͱ͜Ζ
ΞΧϯτཧʢׂʣํ๏
1 ΞΧϯτ͔ɺׂ͔ • ίετཧΛͲ͏͢Δ͔ ˠ ՝ۚ AWS ΞΧϯτ୯Ґ • 1
ΞΧϯτͰෳ VPC, αϒωοτׂ ˠ λάͰ͚ΒΕΔ͕͚ͭΒΕͳ͍ͷ͋Δ • ෦୯ҐɺҊ݅୯ҐͰΞΧϯτׂ ˠ ෦ΞΧϯτͱҊ݅ΞΧϯτΛίϯιϦ
Direct Connect Ͱͷ ωοτϫʔΫઃܭ
ࣾ NW αϒωοτͷґଘؔ • ηΩϡϦςΟ্ɺࣾωοτϫʔΫ ׂ͝ͱʹαϒωοτΛׂ ʢγεɺཧ෦ɺҰൠΫϥΠΞϯτʣ • ࣾωοτϫʔΫઃܭ࣌ʹ AWS
ଆͱͷ ௨৴Λߟྀ͍ͯ͠ͳ͔ͬͨʢΘ͔Βͳ͔ͬͨʣ • αϒωοτɺCIDR ୯ҐͰͷཧ͕ෳࡶ
ηΩϡϦςΟઃܭ
None
ηΩϡϦςΟάϧʔϓͷ੍ݶ • ENI ͨΓͷάϧʔϓ 5 • ηΩϡϦςΟάϧʔϓͨΓɺΠϯόϯυɺ ΞτόϯυϧʔϧͦΕͧΕ 50 "84αϙʔτʹ͍߹ΘͤΔͱ૿ݮͰ͖·͢
ηΩϡϦςΟάϧʔϓͷ੍ݶ • άϧʔϐϯάΛͲ͏͢Δ͔ ˠ ൚༻తάϧʔϓͱݸผάϧʔϓΛ࡞ ɹʢଓݩ੍ݶɺαʔϏεɺׂ୯ҐͳͲʣ ex.) ɹγεηάϝϯτάϧʔϓʢISMG-sgʣ
ɹཧ෦άϧʔϓʢKanri-sgʣ ɹҰൠΫϥΠΞϯτάϧʔϓʢClient-sgʣ ɹΦϑγϣΞάϧʔϓʢOffshore-sgʣ ɹWeb άϧʔϓʢWeb-sgʣ ɹɾɾɾ
ࠓޙͷల
ࠓޙͷల • redmine αʔόͷίετݮࢪࡦ ˠ docker ԽʢECSʣ • ίʔϙϨʔταΠτͷ੩తԽ ˠ
S3 Static Web Hosting • αʔόʔϨεΞʔΩςΫνϟ ˠ API Gateway + Lambda, Lambda Scheduled Event