Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
ヤプリにおけるAWS Control Towerの活用 / Using AWS Contro...
Search
MotokiHabuchi
October 04, 2022
Technology
0
720
ヤプリにおけるAWS Control Towerの活用 / Using AWS ControlTower in Yappli
Yappli Tech Conference 2022の発表資料です。
MotokiHabuchi
October 04, 2022
Tweet
Share
More Decks by MotokiHabuchi
See All by MotokiHabuchi
コード化できていなかったヤプリをTerraform文化に変えていった話
motokihabuchi
2
710
Fargateでサクっとバッチ処理実行してみる/quick-batch-processing-in-Fargate.
motokihabuchi
0
63
re:Inventラスベガスはこうやって楽しむんや / lasvegas-tanoshimu2019
motokihabuchi
0
1.1k
re:Inventはこうやって楽しむんや / reinvent-wa-ko-yatte-tanoshimunnya
motokihabuchi
0
710
ヤプリの完全にモダンとは言いづらいけど、そこそこ攻めてるインフラ環境をもっと良くしたいエンジニアを募集しています。 / Yappli's infrastructure environment
motokihabuchi
0
2.1k
【AWS re:Invent報告会 by Yappli】で、結局re:Inventって何なの? / What is re: Invent?
motokihabuchi
0
1.3k
【YappliMeetup#3】Fargateでサクッと作る開発環境 / Make development environment with Fargate
motokihabuchi
0
420
【JAWS-UGさいたま】20170610_CFnでALBとWAFを連携
motokihabuchi
0
370
Other Decks in Technology
See All in Technology
宇宙ベンチャーにおける最近の情シス取り組みについて
axelmizu
0
110
alecthomas/kong はいいぞ / kamakura.go#7
fujiwara3
1
300
KubeCon NA 2024 Recap / Running WebAssembly (Wasm) Workloads Side-by-Side with Container Workloads
z63d
1
240
LINEヤフーのフロントエンド組織・体制の紹介【24年12月】
lycorp_recruit_jp
0
530
【re:Invent 2024 アプデ】 Prompt Routing の紹介
champ
0
140
サイボウズフロントエンドエキスパートチームについて / FrontendExpert Team
cybozuinsideout
PRO
5
38k
KnowledgeBaseDocuments APIでベクトルインデックス管理を自動化する
iidaxs
1
250
10分で学ぶKubernetesコンテナセキュリティ/10min-k8s-container-sec
mochizuki875
3
320
AIのコンプラは何故しんどい?
shujisado
1
190
開発生産性向上! 育成を「改善」と捉えるエンジニア育成戦略
shoota
1
230
なぜCodeceptJSを選んだか
goataka
0
160
Storage Browser for Amazon S3
miu_crescent
1
130
Featured
See All Featured
RailsConf & Balkan Ruby 2019: The Past, Present, and Future of Rails at GitHub
eileencodes
132
33k
Responsive Adventures: Dirty Tricks From The Dark Corners of Front-End
smashingmag
251
21k
Large-scale JavaScript Application Architecture
addyosmani
510
110k
Practical Orchestrator
shlominoach
186
10k
What’s in a name? Adding method to the madness
productmarketing
PRO
22
3.2k
Intergalactic Javascript Robots from Outer Space
tanoku
270
27k
The Straight Up "How To Draw Better" Workshop
denniskardys
232
140k
Building Applications with DynamoDB
mza
91
6.1k
"I'm Feeling Lucky" - Building Great Search Experiences for Today's Users (#IAC19)
danielanewman
226
22k
Keith and Marios Guide to Fast Websites
keithpitt
410
22k
The Illustrated Children's Guide to Kubernetes
chrisshort
48
48k
Music & Morning Musume
bryan
46
6.2k
Transcript
AWS Control Tower SESSION 04
@modokkin 2018 Youtube 🙇 https://www.youtube.com/c/timesyappliradio
INDEX 01 02 03 04 05 AWS AWS Control Tower
AWS Control Tower AWS Control Tower
01 AWS
AWS CloudTrail AWS AWS Con fi g AWS AWS Organizations
AWS IAM Identity Center (AWS Single Sign-On )
AWS Production Staging Production Account Develop AWS CloudTrail AWS Con
fi g
Production Staging Production Account Develop Develop Account AWS CloudTrail AWS
Con fi g AWS CloudTrail AWS Con fi g
Production Staging Production Corporate AWS CloudTrail AWS Con fi g
Develop Corporate Develop AWS CloudTrail AWS Con fi g AWS CloudTrail AWS Con fi g
Production Staging Production etc. Develop Develop Corporate Corporate
AWS Organizations Workloads OU Production OU SCP Staging OU Develop
OU SCP SCP Security OU SCP SCP Exceptions OU SCP
AWS IAM Identity Center (AWS Single Sign-On ) IAM User
IAM AWS IAM Identity Center okta
AWS IAM Identity Center IAM AWS Organizations ( OU SCP
) SCP( ) 1 AWS Config
AWS
02 AWS Control Tower
AWS : https://aws.amazon.com/jp/controltower/
Guardrails( ) AWS Control Tower Amazon S 3
SSH DB
Landing Zone ( ) • AWS ( ) AWS Control
Tower H
AWS CloudTrail AWS Con fi g AWS Organizations AWS ControlTower
03 AWS Control Tower
1 . AWS 2 . 3. AWS 4 . AWS
Control Tower 5 . 6 . Control Tower Workshops https://controltower.aws-management.tools/ja/
( ) AWS Control Tower 🤗
AWS Control Tower
04 AWS Control Tower
• https://docs.aws.amazon.com/ja_jp/controltower/latest/userguide/accounts.html AWS Organizations
AWS CloudTrail Amazon S3 🆕 KMS
None
築
05
AWS IAM MFA Amazon S3
Slack AWS Chat Bot Amazon CloudWatch
Okta 築 • AWS Control Tower AWS IAM Identity Center(AWS
SSO) • Okta Okta Okta AWS IAM Identity Center 築
None
AWS Control Tower AWS AWS Control Tower
AWS
None
AWS Control Tower Yappli Tech Blog https://tech.yappli.io/entry/ yapplitechconf2022-sre
🙇