Category Archives: Amazon Web Services

Amazon Web Services is a subsidiary of Amazon that provides on-demand cloud computing platforms to individuals, companies and governments, on a paid subscription basis.

AWS: EKS Pod Identities – a replacement for IRSA? Simplifying IAM access management
0 (0)

16 December 2023

Another very interesting new feature from the latest re:Invent is the EKS Pod Identities: a new ability to manage Pod access to AWS resources. The current state: IAM Roles for Service Accounts Before that, we used the IAM Roles for Service Accounts (IRSA) model, where in order to give a Pod access to, for example,… Read More: AWS: EKS Pod Identities – a replacement for IRSA? Simplifying… »

Loading

AWS: CloudWatch – Multi source query: collecting metrics from an external Prometheus
0 (0)

13 December 2023

Another interesting announcement from the last re:Invent is that CloudWatch has added the ability to collect metrics from external resources (see a very interesting report AWS re:Invent 2023 – Cloud operations for today, tomorrow, and beyond (COP227)). That is, we can now create graphs and/or alerts not only from the default metrics of CloudWatch itself,… Read More: AWS: CloudWatch – Multi source query: collecting metrics from an… »

Loading

AWS: Amazon Q – an overview, features, and first impressions
0 (0)

9 December 2023

We are living in very interesting times. So, let’s talk about Amazon Q, a new system from AWS that should help us, engineers and others, in our work. Amazon itself calls it an “AI-powered assistant,” but for us, as engineers, it’s just a chatbot that we can talk to get help solving some problems or… Read More: AWS: Amazon Q – an overview, features, and first impressions0… »

Loading

AWS Elastic Kubernetes Service: RBAC Authorization via AWS IAM and RBAC Groups
0 (0)

25 November 2023

We have two new projects in the Elastic Kubernetes Service (см. AWS Elastic Kubernetes Service: a cluster creation automation, part 1 – CloudFormation), each project lives in its own separate Namespace. In addition, there are two users, developers, who need to be given access to these two Namespaces, but only to Pods in them and… Read More: AWS Elastic Kubernetes Service: RBAC Authorization via AWS IAM and… »

Loading

Grafana Loki: collecting AWS LoadBalancer logs from S3 with Promtail Lambda
0 (0)

25 November 2023

Currently, we are able to collect our API Gateway logs from the CloudWatch Logs to Grafana Loki, see. Loki: collecting logs from CloudWatch Logs using Lambda Promtail. But in the process of migrating to Kubernetes, we have Application Load Balancers that can only write logs to S3, and we need to learn how to collect… Read More: Grafana Loki: collecting AWS LoadBalancer logs from S3 with Promtail… »

Loading

Karpenter: the Beta version – an overview of changes, and upgrade from v0.30.0 to v0.32.1
0 (0)

5 November 2023

So, Karpenter has made another big step towards the release, and in version 0.32 it has moved from Alpha to Beta. Let’s take a quick look at the changes – and they are quite significant – and then upgrade to EKS from Karpneter Terraform module and Karpenter Helm chart. The process of installing Karpenter was… Read More: Karpenter: the Beta version – an overview of changes, and… »

Loading

GitHub Actions: Docker build to AWS ECR and Helm chart deployment to AWS EKS
0 (0)

7 October 2023

So, we have a deployed Kubernetes cluster – see the Terraform: Creating EKS, Part 1 – VPCs, Subnets, and Endpoints series. And we have a GitHub Actions workflow to deploy it – see GitHub Actions: Deploying Dev/Prod environments with Terraform. It’s time to start deploying our backend to Kubernetes. Here we will use GitHub Actions… Read More: GitHub Actions: Docker build to AWS ECR and Helm chart… »

Loading

GitHub Actions: deploying Dev/Prod environments with Terraform
0 (0)

30 September 2023

Now that we have Terraform code ready to deploy an AWS Elastic Kubernetes Service cluster (see Terraform: Building EKS, part 1 – VPC, Subnets and Endpoints and subsequent parts), it’s time to think about automation, that is, creating pipelines in CI/CD that would create new environments for testing features, or deploy updates to the Dev/Prod… Read More: GitHub Actions: deploying Dev/Prod environments with Terraform0 (0) »

Loading

Terraform: building EKS, part 4 – installing controllers
0 (0)

16 September 2023

The last, fourth part, in which we will install the rest of the controllers and add a couple of useful little things. All the parts: Terraform: building EKS, part 1 – VPC, Subnets and Endpoints Terraform: building EKS, part 2 – an EKS cluster, WorkerNodes, and IAM Terraform: building EKS, part 3 – Karpenter installation… Read More: Terraform: building EKS, part 4 – installing controllers0 (0) »

Loading

Terraform: building EKS, part 3 – Karpenter installation
0 (0)

16 September 2023

This is the third part of deploying an AWS Elastic Kubernetes Service cluster with Terraform, in which we will add Karpenter to our cluster. I’ve decided to post this separately because it’s quite a long post. And in the next and final (hopefully!), the fourth part, we will add the rest – all kinds of… Read More: Terraform: building EKS, part 3 – Karpenter installation0 (0) »

Loading