Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
ヤプリにおけるAWS Control Towerの活用 / Using AWS Contro...
Search
MotokiHabuchi
October 04, 2022
Technology
0
940
ヤプリにおけるAWS Control Towerの活用 / Using AWS ControlTower in Yappli
Yappli Tech Conference 2022の発表資料です。
MotokiHabuchi
October 04, 2022
Tweet
Share
More Decks by MotokiHabuchi
See All by MotokiHabuchi
コード化できていなかったヤプリをTerraform文化に変えていった話
motokihabuchi
2
840
Fargateでサクっとバッチ処理実行してみる/quick-batch-processing-in-Fargate.
motokihabuchi
0
70
re:Inventラスベガスはこうやって楽しむんや / lasvegas-tanoshimu2019
motokihabuchi
0
1.1k
re:Inventはこうやって楽しむんや / reinvent-wa-ko-yatte-tanoshimunnya
motokihabuchi
0
860
ヤプリの完全にモダンとは言いづらいけど、そこそこ攻めてるインフラ環境をもっと良くしたいエンジニアを募集しています。 / Yappli's infrastructure environment
motokihabuchi
0
2.3k
【AWS re:Invent報告会 by Yappli】で、結局re:Inventって何なの? / What is re: Invent?
motokihabuchi
0
1.5k
【YappliMeetup#3】Fargateでサクッと作る開発環境 / Make development environment with Fargate
motokihabuchi
0
450
【JAWS-UGさいたま】20170610_CFnでALBとWAFを連携
motokihabuchi
0
390
Other Decks in Technology
See All in Technology
Node-RED × MCP 勉強会 vol.1
1ftseabass
PRO
0
180
MySQL5.6から8.4へ 戦いの記録
kyoshidaxx
1
300
B2C&B2B&社内向けサービスを抱える開発組織におけるサービス価値を最大化するイニシアチブ管理
belongadmin
0
130
ハッカソン by 生成AIハッカソンvol.05
1ftseabass
PRO
0
140
5min GuardDuty Extended Threat Detection EKS
takakuni
0
180
Delegating the chores of authenticating users to Keycloak
ahus1
0
130
SpringBoot x TestContainerで実現するポータブル自動結合テスト
demaecan
0
120
作曲家がボカロを使うようにPdMはAIを使え
itotaxi
0
390
Beyond Kaniko: Navigating Unprivileged Container Image Creation
f30
0
110
Lambda Web Adapterについて自分なりに理解してみた
smt7174
5
140
WordPressから ヘッドレスCMSへ! Storyblokへの移行プロセス
nyata
0
340
Geminiとv0による高速プロトタイピング
shinya337
0
200
Featured
See All Featured
Site-Speed That Sticks
csswizardry
10
670
The Illustrated Children's Guide to Kubernetes
chrisshort
48
50k
Writing Fast Ruby
sferik
628
62k
What’s in a name? Adding method to the madness
productmarketing
PRO
23
3.5k
実際に使うSQLの書き方 徹底解説 / pgcon21j-tutorial
soudai
PRO
181
53k
How to Create Impact in a Changing Tech Landscape [PerfNow 2023]
tammyeverts
53
2.8k
Raft: Consensus for Rubyists
vanstee
140
7k
Templates, Plugins, & Blocks: Oh My! Creating the theme that thinks of everything
marktimemedia
31
2.4k
XXLCSS - How to scale CSS and keep your sanity
sugarenia
248
1.3M
Making the Leap to Tech Lead
cromwellryan
134
9.4k
Mobile First: as difficult as doing things right
swwweet
223
9.7k
No one is an island. Learnings from fostering a developers community.
thoeni
21
3.3k
Transcript
AWS Control Tower SESSION 04
@modokkin 2018 Youtube 🙇 https://www.youtube.com/c/timesyappliradio
INDEX 01 02 03 04 05 AWS AWS Control Tower
AWS Control Tower AWS Control Tower
01 AWS
AWS CloudTrail AWS AWS Con fi g AWS AWS Organizations
AWS IAM Identity Center (AWS Single Sign-On )
AWS Production Staging Production Account Develop AWS CloudTrail AWS Con
fi g
Production Staging Production Account Develop Develop Account AWS CloudTrail AWS
Con fi g AWS CloudTrail AWS Con fi g
Production Staging Production Corporate AWS CloudTrail AWS Con fi g
Develop Corporate Develop AWS CloudTrail AWS Con fi g AWS CloudTrail AWS Con fi g
Production Staging Production etc. Develop Develop Corporate Corporate
AWS Organizations Workloads OU Production OU SCP Staging OU Develop
OU SCP SCP Security OU SCP SCP Exceptions OU SCP
AWS IAM Identity Center (AWS Single Sign-On ) IAM User
IAM AWS IAM Identity Center okta
AWS IAM Identity Center IAM AWS Organizations ( OU SCP
) SCP( ) 1 AWS Config
AWS
02 AWS Control Tower
AWS : https://aws.amazon.com/jp/controltower/
Guardrails( ) AWS Control Tower Amazon S 3
SSH DB
Landing Zone ( ) • AWS ( ) AWS Control
Tower H
AWS CloudTrail AWS Con fi g AWS Organizations AWS ControlTower
03 AWS Control Tower
1 . AWS 2 . 3. AWS 4 . AWS
Control Tower 5 . 6 . Control Tower Workshops https://controltower.aws-management.tools/ja/
( ) AWS Control Tower 🤗
AWS Control Tower
04 AWS Control Tower
• https://docs.aws.amazon.com/ja_jp/controltower/latest/userguide/accounts.html AWS Organizations
AWS CloudTrail Amazon S3 🆕 KMS
None
築
05
AWS IAM MFA Amazon S3
Slack AWS Chat Bot Amazon CloudWatch
Okta 築 • AWS Control Tower AWS IAM Identity Center(AWS
SSO) • Okta Okta Okta AWS IAM Identity Center 築
None
AWS Control Tower AWS AWS Control Tower
AWS
None
AWS Control Tower Yappli Tech Blog https://tech.yappli.io/entry/ yapplitechconf2022-sre
🙇