Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
ヤプリにおけるAWS Control Towerの活用 / Using AWS Contro...
Search
habuchin
October 04, 2022
Technology
0
1k
ヤプリにおけるAWS Control Towerの活用 / Using AWS ControlTower in Yappli
Yappli Tech Conference 2022の発表資料です。
habuchin
October 04, 2022
Tweet
Share
More Decks by habuchin
See All by habuchin
開発コンテナを活用し、並列で同じサービスを複数パターン構築 / Leveraging Development Containers for Parallel Deployment of Service Patterns
motokihabuchi
0
270
コード化できていなかったヤプリをTerraform文化に変えていった話
motokihabuchi
2
940
Fargateでサクっとバッチ処理実行してみる/quick-batch-processing-in-Fargate.
motokihabuchi
0
73
re:Inventラスベガスはこうやって楽しむんや / lasvegas-tanoshimu2019
motokihabuchi
0
1.2k
re:Inventはこうやって楽しむんや / reinvent-wa-ko-yatte-tanoshimunnya
motokihabuchi
0
940
ヤプリの完全にモダンとは言いづらいけど、そこそこ攻めてるインフラ環境をもっと良くしたいエンジニアを募集しています。 / Yappli's infrastructure environment
motokihabuchi
0
2.4k
【AWS re:Invent報告会 by Yappli】で、結局re:Inventって何なの? / What is re: Invent?
motokihabuchi
0
1.6k
【YappliMeetup#3】Fargateでサクッと作る開発環境 / Make development environment with Fargate
motokihabuchi
0
450
【JAWS-UGさいたま】20170610_CFnでALBとWAFを連携
motokihabuchi
0
400
Other Decks in Technology
See All in Technology
やる気のない自分との向き合い方/How to Deal with Your Unmotivated Self
sanogemaru
0
510
業務効率化をさらに加速させる、ノーコードツールとStep Functionsのハイブリッド化
smt7174
2
140
"プロポーザルってなんか怖そう"という境界を超えてみた@TSUDOI by giftee Tech #1
shilo113
0
200
生成AI時代のセキュアコーディングとDevSecOps
yuriemori
0
100
速習AGENTS.md:5分で精度を上げる "3ブロック" テンプレ
ismk
6
1.6k
Simplifying Cloud Native app testing across environments with Dapr and Microcks
salaboy
0
160
Findy Team+ QAチーム これからのチャレンジ!
findy_eventslides
0
210
Node.js 2025: What's new and what's next
ruyadorno
0
340
All About Sansan – for New Global Engineers
sansan33
PRO
1
1.2k
カンファレンスに託児サポートがあるということ / Having Childcare Support at Conferences
nobu09
1
580
難しいセキュリティ用語をわかりやすくしてみた
yuta3110
0
120
ガバメントクラウドの概要と自治体事例(名古屋市)
techniczna
3
240
Featured
See All Featured
jQuery: Nuts, Bolts and Bling
dougneiner
65
7.9k
個人開発の失敗を避けるイケてる考え方 / tips for indie hackers
panda_program
115
20k
[Rails World 2023 - Day 1 Closing Keynote] - The Magic of Rails
eileencodes
37
2.6k
Building a Modern Day E-commerce SEO Strategy
aleyda
44
7.8k
How to Think Like a Performance Engineer
csswizardry
27
2k
Context Engineering - Making Every Token Count
addyosmani
6
260
Let's Do A Bunch of Simple Stuff to Make Websites Faster
chriscoyier
508
140k
The Web Performance Landscape in 2024 [PerfNow 2024]
tammyeverts
9
870
Understanding Cognitive Biases in Performance Measurement
bluesmoon
31
2.7k
Balancing Empowerment & Direction
lara
4
690
Music & Morning Musume
bryan
46
6.8k
Building a Scalable Design System with Sketch
lauravandoore
463
33k
Transcript
AWS Control Tower SESSION 04
@modokkin 2018 Youtube 🙇 https://www.youtube.com/c/timesyappliradio
INDEX 01 02 03 04 05 AWS AWS Control Tower
AWS Control Tower AWS Control Tower
01 AWS
AWS CloudTrail AWS AWS Con fi g AWS AWS Organizations
AWS IAM Identity Center (AWS Single Sign-On )
AWS Production Staging Production Account Develop AWS CloudTrail AWS Con
fi g
Production Staging Production Account Develop Develop Account AWS CloudTrail AWS
Con fi g AWS CloudTrail AWS Con fi g
Production Staging Production Corporate AWS CloudTrail AWS Con fi g
Develop Corporate Develop AWS CloudTrail AWS Con fi g AWS CloudTrail AWS Con fi g
Production Staging Production etc. Develop Develop Corporate Corporate
AWS Organizations Workloads OU Production OU SCP Staging OU Develop
OU SCP SCP Security OU SCP SCP Exceptions OU SCP
AWS IAM Identity Center (AWS Single Sign-On ) IAM User
IAM AWS IAM Identity Center okta
AWS IAM Identity Center IAM AWS Organizations ( OU SCP
) SCP( ) 1 AWS Config
AWS
02 AWS Control Tower
AWS : https://aws.amazon.com/jp/controltower/
Guardrails( ) AWS Control Tower Amazon S 3
SSH DB
Landing Zone ( ) • AWS ( ) AWS Control
Tower H
AWS CloudTrail AWS Con fi g AWS Organizations AWS ControlTower
03 AWS Control Tower
1 . AWS 2 . 3. AWS 4 . AWS
Control Tower 5 . 6 . Control Tower Workshops https://controltower.aws-management.tools/ja/
( ) AWS Control Tower 🤗
AWS Control Tower
04 AWS Control Tower
• https://docs.aws.amazon.com/ja_jp/controltower/latest/userguide/accounts.html AWS Organizations
AWS CloudTrail Amazon S3 🆕 KMS
None
築
05
AWS IAM MFA Amazon S3
Slack AWS Chat Bot Amazon CloudWatch
Okta 築 • AWS Control Tower AWS IAM Identity Center(AWS
SSO) • Okta Okta Okta AWS IAM Identity Center 築
None
AWS Control Tower AWS AWS Control Tower
AWS
None
AWS Control Tower Yappli Tech Blog https://tech.yappli.io/entry/ yapplitechconf2022-sre
🙇