Public “Office Hours” (2022-02-23)

Erik OstermanOffice Hours

2 min read

Here's the recording from our DevOps “Office Hours” session on 2022-02-23.

We hold public “Office Hours” every Wednesday at 11:30am PST to answer questions on all things DevOps/Terraform/Kubernetes/CICD related.

These “lunch & learn” style sessions are totally free and really just an opportunity to talk shop, ask questions and get answers.

Register here: cloudposse.com/office-hours

Basically, these sessions are an opportunity to get a free weekly consultation with Cloud Posse where you can literally “ask me anything” (AMA). Since we're all engineers, this also helps us better understand the challenges our users have so we can better focus on solving the real problems you have and address the problems/gaps in our tools.


[00:00:00​] Intro
[00:01:24​] Announcing the general availability of AWS Backup for Amazon S3
https://aws.amazon.com/about-aws/whats-new/2022/02/general-availability-aws-backup-amazon-s3/
[00:03:21​] AWS Firewall Manager now supports versioning for AWS WAF managed rule group
https://aws.amazon.com/about-aws/whats-new/2022/02/aws-firewall-manager-waf-rule-group/
[00:04:02​] AWS Launches Discourse Forum/Community for QuickSight
https://community.amazonquicksight.com/t/troubleshoot-analysis-titles-and-subtitles-failed-to-load-narrative-editor/1776
[00:05:20​] Introducing auto-adjusting budgets
https://aws.amazon.com/about-aws/whats-new/2022/02/auto-adjusting-budgets/
[00:06:31​] cloudposse/terraform-aws-s3-bucket adds AWS Provider v4 support
https://github.com/cloudposse/terraform-aws-s3-bucket/releases/tag/0.48.0
[00:07:30​] GitHub Opens Advisory Database to contributions
https://github.blog/2022-02-22-github-advisory-database-now-open-to-community-contributions/
[00:09:20​] Other
[00:10:19] Amazon EKS Release calendar
https://docs.aws.amazon.com/eks/latest/userguide/kubernetes-versions.html#kubernetes-release-calendar
[00:11:54] Waxing philosophical: DevOps sometimes feels like building sandcastles
[00:17:49​] Why is it a best-practice from a compliance/ops standpoint to put all s3 buckets into their own AWS project?
[00:24:57​] Is anyone using AWS SSM Session manager to enable devs to connect to a staging RDS instance, and NOT using ssh keys/connections managed through SSM?
[00:34:23​] How do you build the observability model at the app level?
[00:43:47​] I’m looking for examples to build a VPC without internet connection without losing connection to ECR, S3 and DynamoDB. Do you have any suggestions?
[00:52:16] Terraform wirenodes https://github.com/jbraswell/terraform-wireguard
[00:55:52​] Outro
Author Details
CEO
Erik Osterman is a technical evangelist and insanely passionate DevOps guru with over a decade of hands-on experience architecting systems for AWS. After leading major cloud initiatives at CBS Interactive as the Director of Cloud Architecture, he founded Cloud Posse, a DevOps Accelerator that helps high-growth Startups and Fortune 500 Companies own their infrastructure in record time by building it together with customers and showing them the ropes.