Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
情シス担当がAWS導入して苦しんだ話 / aws-migration
Search
Sponsored
·
Ship Features Fearlessly
Turn features on and off without deploys. Used by thousands of Ruby developers.
→
Daisaku Yamamoto
July 28, 2016
Technology
0
310
情シス担当がAWS導入して苦しんだ話 / aws-migration
インフラ勉強会 #1 での発表資料。
Daisaku Yamamoto
July 28, 2016
Tweet
Share
More Decks by Daisaku Yamamoto
See All by Daisaku Yamamoto
俺たちの情シス@大阪#1_情シスとしての課題や悩み/ore-jyo1
dai0916
0
790
情シスへの申請・問い合わせ管理を Redmine で効率化する / redmine-operation
dai0916
0
580
情シス担当の試行錯誤と未来への展望 / ismg-cafe-kobe-1
dai0916
0
250
esaに餌を与えてドキュメントドリブンを加速させたい話 / document-driven-for-esa
dai0916
1
2.3k
Other Decks in Technology
See All in Technology
データマネジメント戦略Night - 4社のリアルを語る会
ktatsuya
1
410
AI時代のIssue駆動開発のススメ
moongift
PRO
0
270
AIエージェント時代に必要な オペレーションマネージャーのロールとは
kentarofujii
0
160
AIエージェント×GitHubで実現するQAナレッジの資産化と業務活用 / QA Knowledge as Assets with AI Agents & GitHub
tknw_hitsuji
0
260
SSoT(Single Source of Truth)で「壊して再生」する設計
kawauso
2
380
スケーリングを封じられたEC2を救いたい
senseofunity129
0
110
ADK + Gemini Enterprise で 外部 API 連携エージェント作るなら OAuth の仕組みを理解しておこう
kaz1437
0
220
「捨てる」を設計する
kubell_hr
0
410
脳が溶けた話 / Melted Brain
keisuke69
1
1.1k
Phase05_ClaudeCode入門
overflowinc
0
2.4k
LLMに何を任せ、何を任せないか
cap120
10
5.9k
私がよく使うMCPサーバー3選と社内で安全に活用する方法
kintotechdev
0
130
Featured
See All Featured
What does AI have to do with Human Rights?
axbom
PRO
1
2.1k
The Psychology of Web Performance [Beyond Tellerrand 2023]
tammyeverts
49
3.3k
Paper Plane (Part 1)
katiecoart
PRO
0
6k
Self-Hosted WebAssembly Runtime for Runtime-Neutral Checkpoint/Restore in Edge–Cloud Continuum
chikuwait
0
420
Joys of Absence: A Defence of Solitary Play
codingconduct
1
320
Understanding Cognitive Biases in Performance Measurement
bluesmoon
32
2.8k
Amusing Abliteration
ianozsvald
0
140
Odyssey Design
rkendrick25
PRO
2
560
[RailsConf 2023 Opening Keynote] The Magic of Rails
eileencodes
31
10k
svc-hook: hooking system calls on ARM64 by binary rewriting
retrage
2
180
Speed Design
sergeychernyshev
33
1.6k
The agentic SEO stack - context over prompts
schlessera
0
720
Transcript
ਆށσδλϧɾϥϘ Πϯϑϥษڧձ #1 γε୲͕ AWSಋೖͯۤ͠͠Μͩ 2016/07/28 גࣜձࣾ ਆށσδλϧɾϥϘ ࢁຊ
େ࡞ Daisaku Yamamoto
Company
i/ B C u C e E T C ONQ
O Q e C e m M e C L m e C b oWs m b oC Q FS O T C MI t i d d -- AC a d t & &C W i t e u em W r W d W u do d do u - × W d b oW u C t / s B CE T E T W d W sm u C C i Q R Q O L u a d Q u P E um o R ues P C I C e C W - C o C m C r s
Who?
• ໊લ ࢁຊ େ࡞ʢDaisaku Yamamotoʣ • ॴଐ גࣜձࣾਆށσδλϧɾϥϘ ։ൃཧ෦ ใγεςϜνʔϜ
ˍ SIRTʢSecurity Incident Response Teamʣ • ΠϯϑϥΤϯδχΞ Server (Linux, Windows, etc) Network Security AWS • ڵຯ Infrastructure as Code Immutable Infrastructure Docker WEB (Ruby on Rails, Node.js, Ruby, Javascript, Python) kintone Agility!!!
͓͢͠Δ͜ͱ • AWS ಋೖͷ͖͔͚ͬ • AWS ಋೖͯ͠Έͯ • Ͳ͏ͬͯҠߦ͔ͨ͠ •
ۤ͠Μͩͱ͜Ζ • ࠓޙͷల
AWS ಋೖͰ ʮۤ͠Μͩʯ
ಋೖͷ͖͔͚ͬ
VMαʔόӡ༻ͷ
ಋೖͷ͖͔͚ͬ VMαʔόӡ༻ͷ • VMϗεταʔόͷϦιʔεރׇ ʢϓϥΠϕʔτΫϥυʣ ˠ ήετVM400΄Ͳ • όοΫΞοϓӡ༻ഁ •
BCPରࡦ͕ෆे
ະདྷͷࢿ
ಋೖͷ͖͔͚ͬ ະདྷͷࢿ • ࣾجװαʔόٺԽʹΑΔߋվ ˠ อकΕମαʔόͷҰ৽ • ӡ༻͕͠ΜͲ͍ཧHWΛͳ͍ͨ͘͠ ˠ αΠδϯάɺαʔόߪೖɺϥοΩϯάɺέʔϒϦϯάɺ
ɹ ωοτϫʔΫػثઃఆɺిݯཧʢUPSʣɺ ɹ োൃੜ࣌ରԠɺഇغɾɾɾɾ • ΫϥυΛ࠷దʹར༻ͨ͠ϏδωεΛՃ͍ͤͨ͞ ˠ ࣗࣾϦιʔε͔ΒऔΓΉ͜ͱͰϊϋੵ ɹ ৽ͨͳՁ
AWS ಋೖͯ͠Έͯ
ຊʹ͍Ζ͍Ζָʢͤʣʹʂ
ಋೖͯ͠ಘͨͷ • Agilityɾɾɾӡ༻্ • AvailabilityɾɾՄ༻ੑ্ • SecurityɾɾɾηΩϡϦςΟϨϕϧ্ • Immutable Infrastructureɾɾɾ͍ࣺͯͷΠϯϑϥ
• Infrastructure as CodeɾɾɾߏΛίʔυཧ
None
Ͳ͏ͬͯҠߦ͔ͨ͠
Ҡߦରཧ • ήετVMͷ༻్Λཧ ෦ʢҊ݅ʣཧ͔ɺγεཧ͔ • redmineαʔόʢ50ʣ͔Β • VMϗετͷอकΕ͕͍ۙͷ͔Β
ҠߦܭըཱҊ • 201510݄ࠒΑΓ։࢝ • Ҡߦతཧ • ΦϯϓϨͱͷίετൺֱ ݮՁঈ٫ɺUPSɺిݯɺόοΫΞοϓɾɾ • Ҡߦํ๏
VM Import/Export • AWSڥઃܭ ΞΧϯτཧํ๏ɺωοτϫʔΫʢVPCʣɺηΩϡϦςΟάϧʔϓɺNAT • ޮԽ σϑΥϧτ IAM ϙϦγʔɺCloudFormation
VM Import/Export
VM Import/Export ͷ લఏ݅
લఏ݅ɾɾɾ
ݱঢ়ߏ
ݱঢ় AWS ߏʢγεཧʣ
ۤ͠Μͩͱ͜Ζ
ΞΧϯτཧʢׂʣํ๏
1 ΞΧϯτ͔ɺׂ͔ • ίετཧΛͲ͏͢Δ͔ ˠ ՝ۚ AWS ΞΧϯτ୯Ґ • 1
ΞΧϯτͰෳ VPC, αϒωοτׂ ˠ λάͰ͚ΒΕΔ͕͚ͭΒΕͳ͍ͷ͋Δ • ෦୯ҐɺҊ݅୯ҐͰΞΧϯτׂ ˠ ෦ΞΧϯτͱҊ݅ΞΧϯτΛίϯιϦ
Direct Connect Ͱͷ ωοτϫʔΫઃܭ
ࣾ NW αϒωοτͷґଘؔ • ηΩϡϦςΟ্ɺࣾωοτϫʔΫ ׂ͝ͱʹαϒωοτΛׂ ʢγεɺཧ෦ɺҰൠΫϥΠΞϯτʣ • ࣾωοτϫʔΫઃܭ࣌ʹ AWS
ଆͱͷ ௨৴Λߟྀ͍ͯ͠ͳ͔ͬͨʢΘ͔Βͳ͔ͬͨʣ • αϒωοτɺCIDR ୯ҐͰͷཧ͕ෳࡶ
ηΩϡϦςΟઃܭ
None
ηΩϡϦςΟάϧʔϓͷ੍ݶ • ENI ͨΓͷάϧʔϓ 5 • ηΩϡϦςΟάϧʔϓͨΓɺΠϯόϯυɺ ΞτόϯυϧʔϧͦΕͧΕ 50 "84αϙʔτʹ͍߹ΘͤΔͱ૿ݮͰ͖·͢
ηΩϡϦςΟάϧʔϓͷ੍ݶ • άϧʔϐϯάΛͲ͏͢Δ͔ ˠ ൚༻తάϧʔϓͱݸผάϧʔϓΛ࡞ ɹʢଓݩ੍ݶɺαʔϏεɺׂ୯ҐͳͲʣ ex.) ɹγεηάϝϯτάϧʔϓʢISMG-sgʣ
ɹཧ෦άϧʔϓʢKanri-sgʣ ɹҰൠΫϥΠΞϯτάϧʔϓʢClient-sgʣ ɹΦϑγϣΞάϧʔϓʢOffshore-sgʣ ɹWeb άϧʔϓʢWeb-sgʣ ɹɾɾɾ
ࠓޙͷల
ࠓޙͷల • redmine αʔόͷίετݮࢪࡦ ˠ docker ԽʢECSʣ • ίʔϙϨʔταΠτͷ੩తԽ ˠ
S3 Static Web Hosting • αʔόʔϨεΞʔΩςΫνϟ ˠ API Gateway + Lambda, Lambda Scheduled Event