Upgrade to Pro — share decks privately, control downloads, hide ads and more …

[JAWS-UG 栃木 #2]AWS FISはドSなのか?システムに試練を与えて強くする!

[JAWS-UG 栃木 #2]AWS FISはドSなのか?システムに試練を与えて強くする!

Avatar for sh_fk2

sh_fk2

May 24, 2025
Tweet

More Decks by sh_fk2

Other Decks in Technology

Transcript

  1. 今回のターゲット AWS Cloud Virtual private cloud (VPC) Front End Task

    Amazon Aurora (Writer) Internet gateway Private subnet Public subnet Private subnet Fargate Back End Task Fargate Availability Zone Back End Task Front End Task Amazon Aurora (Reader) ALB ALB
  2. 2025/4/15 AWS障害 特定AZ、EC2の電源遮断 影響を受けた (15 サービス) AWS CodeCommit AWS Lambda

    AWS NAT Gateway AWS Network Firewall AWS Systems Manager AWS Transit Gateway AWS VPCE PrivateLink Amazon CloudWatch Amazon Elastic Container Service Amazon Elastic Load Balancing Amazon Location Service Amazon Redshift Amazon Relational Database Service Amazon Simple Storage Service Amazon WorkSpaces
  3. 追加試練(ECS) ESC on EC2 :EC2障害でAZ障害が再現可能 ECS on Fargate :AZ障害が難しい ECS単体のアクション

    stop-task → 同じAZで再度起動... task-network-blackhole-port (ssm-agentサイドカー必要) → タスク起動したまま...