Amazon WorkSpaces Secure Browser now supports WebAuthn redirection for local Chromium browsers

Amazon WorkSpaces Secure Browser now supports Web Authentication (WebAuthn) redirection, allowing users to authenticate to websites using their local FIDO2 security keys, biometric authenticators, and platform authenticators while browsing in their WorkSpaces Secure Browser session. This feature is compatible with Chromium-based browser on users’ local devices, such as Google Chrome 136 (or later) or Microsoft Edge 137 (or later). It is not supported on non-Chromium-based browsers such as Safari or Firefox. WebAuthn redirection helps users enjoy seamless and secure authentication on websites within their WorkSpaces Secure Browser sessions. This feature supports FIDO2 security keys, passkeys, and platform authenticators like Windows Hello or Touch ID. To enable the feature, administrators must activate WebAuthn redirection in Secure browser’s portal settings and configure the local browsers using the WebAuthenticationRemoteDesktopAllowedOrigins policy. This configuration allows WebAuthn tokens to be securely transmitted from a user’s local device to websites within a Secure Browser session, ensuring that users can authenticate securely without compromising the security benefits of the remote browsing environment. This feature is available at no additional cost in all regions where Amazon WorkSpaces Secure Browser is available, including US East (N. Virginia), US West (Oregon), Canada (Central), Europe (Frankfurt, London, Ireland), and Asia Pacific (Tokyo, Mumbai, Sydney, Singapore) To get started and enable WebAuthn redirection, visit the Amazon WorkSpaces Secure Browser console. For more information, see the WebAuthn redirection section in the Amazon WorkSpaces Secure Browser’s documentation.
Quelle: aws.amazon.com

NVIDIA Nemotron 3 Nano now available on Amazon Bedrock

Amazon Bedrock now supports NVIDIA Nemotron 3 Nano 30B A3B model, NVIDIA’s latest breakthrough in efficient language modeling that delivers high reasoning performance, native tool calling support, and extended context processing with 256k token context window. This model employs an efficient hybrid Mixture-of-Experts (MoE) architecture to ensure higher throughput than its predecessors for agentic and coding workloads, while maintaining the reasoning depth of a larger model. With explicit reasoning controls and higher accuracy enabled by advanced reinforcement learning techniques and multi-environment post-training at scale, this model is ideal for enterprises, startups, and individual developers building multi-agent workflows, developer productivity tools, processes automation, and for scientific and mathematical reasoning analysis, amongst others. NVIDIA Nemotron 3 Nano on Amazon Bedrock is powered by Project Mantle, a new distributed inference engine for large-scale machine learning model serving on Amazon Bedrock. Project Mantle simplifies and expedites onboarding of new models onto Amazon Bedrock, provides highly performant and reliable serverless inference with sophisticated quality of service controls, unlocks higher default customer quotas with automated capacity management and unified pools, and provides out-of-the-box compatibility with OpenAI API specifications.
NVIDIA Nemotron 3 Nano is available today on Amazon Bedrock in US East (N. Virginia), US East (Ohio), US West (Oregon), Asia Pacific (Tokyo), Asia Pacific (Mumbai), South America (Sao Paulo), Europe (London), and Europe (Milan) AWS Regions, and supports both unified and OpenAI API-compatible service endpoints on Amazon Bedrock. To learn more and get started, visit Amazon Bedrock console or the service documentation here. To get started with Amazon Bedrock OpenAI API-compatible service endpoints, visit documentation here.
Quelle: aws.amazon.com

Amazon GameLift Streams launches Gen6-based stream classes and enhanced autoscaling for better performance and pricing

Today, Amazon GameLift Streams launched two new capabilities to optimize performance and cost: Gen6 stream classes and enhanced autoscaling with warm buffer. The new Gen6 stream classes provide a wider range of price performance options, while autoscaling enables customers to dynamically manage capacity scaling.  The seven new Gen6 stream classes available today are based on EC2 G6 instances powered by NVIDIA L4 Tensor Core GPUs, which provide up to 2x higher performance over Gen4 stream classes. The pro and ultra stream class deliver improved performance for graphics-intensive AAA games, while the medium and small stream class offer cost-efficient options for casual games. The gen6n_small stream class is available at $0.16/hour in us-east-2.  The enhanced autoscaling capabilities provide automatic capacity management that scales provisioned capacity dynamically with demand, helping customers optimize utilization and stream start time for new players. Developers can use the new capacity controls (minimum, maximum, and target-idle capacity) to precisely manage their scaling needs.  New Gen6 stream classes are available in five AWS Regions: US West (Oregon), US East (Ohio), US East (N. Virginia), Europe (Frankfurt), and Asia Pacific (Tokyo). Improved autoscaling is available in all AWS Regions where Amazon GameLift Streams is offered. To learn more and get started, visit: AWS Docs: Gen6n based stream classes; Enhanced Autoscaling – Capacity configuration options; API Reference Guide: Create Stream group with gen6n based stream class; Capacity configuration option for stream groups
Quelle: aws.amazon.com

Amazon ECS Service Connect enhances observability with Envoy Access Logs

Amazon Elastic Container Service (Amazon ECS) Service Connect now supports Envoy access logs, providing deeper observability into request-level traffic patterns and service interactions. This new capability captures detailed per-request telemetry for end-to-end tracing, debugging, and compliance monitoring. Amazon ECS Service Connect makes it simple to build secure, resilient service-to-service communication across clusters, VPCs, and AWS accounts. It integrates service discovery and service mesh capabilities by automatically injecting AWS-managed Envoy proxies as sidecars that handle traffic routing, load balancing, and inter-service connectivity. Envoy Access logs capture detailed traffic metadata enabling request-level visibility into service communication patterns. This enables you to perform network diagnostics, troubleshoot issues efficiently, and maintain audit trails for compliance requirements. You can now configure access logs within ECS Service Connect by updating the ServiceConnectConfiguration to enable access logging. Query strings are redacted by default to protect sensitive data. Envoy access logs will output to the standard output (STDOUT) stream alongside application logs and flow through the existing ECS log pipeline without requiring additional infrastructure. This configuration supports all existing application protocols (HTTP, HTTP2, GRPC and TCP). This feature is available in AWS GovCloud (US-West) and AWS GovCloud (US-East) regions where Amazon ECS Service Connect is supported. To learn more, visit the Amazon ECS Developer Guide.
Quelle: aws.amazon.com

Amazon Kinesis Video Streams now supports IPv6 for WebRTC

Amazon Kinesis Video Streams (Amazon KVS) now supports Internet Protocol version 6 (IPv6) addressing for WebRTC. This release introduces dual-stack endpoint support, enabling developers to use both IPv4 and IPv6 addresses to stream video from millions of devices. The dual-stack support is designed to ensure that existing IPv4 implementations continue to work reliably while gaining IPv6 connectivity benefits. Moreover, the update simplifies transition to IPv6 addresses while eliminating the need for address translation equipment.
This feature is available in all commercial AWS Regions where Amazon KVS is offered, except Asia Pacific (Singapore) and China (Beijing, operated by Sinnet). For implementation details, refer to the Amazon KVS Developer Guide. 
Quelle: aws.amazon.com

AWS Deadline Cloud now supports direct job submission from the Deadline Cloud Monitor

AWS Deadline Cloud now lets you submit rendering jobs directly from the Deadline Cloud Monitor desktop application. This new feature makes it easier to submit renders for applications that don’t have built-in Deadline Cloud plugins or submission scripts, expanding compatibility with content creation tools and streamlining your rendering workflows. Previously, you needed the command line interface (CLI) to submit job bundles. With this update, you can submit job bundles directly from Deadline Cloud Monitor desktop interface, managing jobs from start to finish in one place. It is particularly useful for legacy applications, specialized rendering tools, or custom workflows that lack built-in Deadline Cloud integration. To access direct job submission, download the latest Deadline Cloud Monitor desktop application (version 1.1.7) in the AWS Console. To learn more about AWS Deadline Cloud job submission capabilities, see the AWS Deadline Cloud documentation.
Quelle: aws.amazon.com

AWS Wickr launches admin APIs for programmatic network management at scale

AWS Wickr now provides a suite of admin APIs that empower administrators to programmatically manage secure communication networks at scale. These APIs enable you to automate critical administrative workflows including user lifecycle management, network configuration, and security group administration. With user lifecycle management APIs, you can automatically create users and assign security groups when employees join, or deactivate accounts when they leave. Network configuration APIs allow you to quickly create or delete networks on demand as your organization scales or restructures, and push standardized retention and federation policies across departments. Security group administration APIs enable automatic user placement based on directory attributes such as job function or clearance level. By connecting Wickr administration directly into your identity management systems, policy management frameworks, and automation pipelines, you can now manage secure communications infrastructure across thousands of users alongside your other cloud service integrations.
AWS Wickr is a security-first messaging and collaboration service designed to help keep your communications secure, private, and compliant. AWS Wickr protects messaging, voice and video calling, file sharing, screen sharing, and location sharing with end-to-end encryption. Customers have full administrative control over data and users, including single sign-on (SSO) integration. Administrators can enforce policies that set password complexity and retention rules, configure ephemeral messaging options, or remotely delete credentials. You can log conversations to a private data store so you can retain messages and files sent to and from the organization to meet compliance requirements. The AWS Wickr Admin APIs are available today in all AWS regions where AWS Wickr is currently supported, including AWS GovCloud (US-West). You can leverage these APIs through AWS SDKs, the AWS Command Line Interface (AWS CLI), or direct REST API calls. To learn more, see:

AWS Wickr API Reference
AWS Wickr Product Page
AWS Wickr Administrator Guide

Quelle: aws.amazon.com

Oracle Database@AWS now supports sharing of AWS Marketplace entitlements across accounts

Today, Oracle Database@AWS announced ability to share AWS Marketplace entitlements across accounts within an AWS Organization. With this feature, customers can now accept an Oracle Database@AWS AWS Marketplace offer in one AWS account, and share that entitlement with additional accounts in their AWS Organization. This allows customers to consume Oracle Database@AWS services from multiple AWS accounts using a single AWS Marketplace entitlement purchased for their organization. Many Oracle Database@AWS customers use separate AWS accounts for their development and production environments, and for different business units within their organization. Customers want a single buyer agreement to use Oracle Database@AWS within their organization, and use the purchased AWS Marketplace entitlement across multiple business units, and across their development and production environments. With AWS Marketplace Managed Entitlements, customers can now share their Oracle Database@AWS entitlement with other accounts in their AWS Organization using AWS License Manager console or APIs. These accounts can accept and activate their shared AWS Marketplace entitlement from AWS License Manager, and then start consuming Oracle Database@AWS services using the shared entitlement. This feature is available in all AWS Regions where Oracle Database@AWS is offered. For information about managing entitlements on Oracle Database@AWS, see documentation. To learn more about Oracle Database@AWS, visit the Oracle Database@AWS product page. 
Quelle: aws.amazon.com

Zero-ETL for self-managed Database Sources now available in 7 new regions

AWS Glue now supports zero-ETL for self-managed database sources in seven additional regions. Using Glue zero-ETL, you can setup an integration to replicate data from Oracle, SQL Server, MySQL or PostgreSQL databases which are located on-premises or on AWS EC2 to Redshift with a simple experience that eliminates configuration complexity. AWS zero-ETL for self-managed database sources will automatically create an integration for an on-going replication of data from your on-premises or EC2 databases through a simple, no-code interface. You can now replicate data from Oracle, SQL Server, MySQL and PostgreSQL databases into Redshift. This feature further reduces users’ operational burden and saves weeks of engineering effort needed to design, build, and test data pipelines to ingest data from self-managed databases to Redshift. AWS Glue zero-ETL for self-managed database sources are available in the following additional AWS Regions: Asia Pacific (Hong Kong), Asia Pacific (Tokyo), Asia Pacific (Singapore), Asia Pacific (Sydney), Europe (London), South America (São Paulo), and US (Virginia) regions. To get started, sign into the AWS Management Console. For more information visit the AWS Glue page or review the AWS Glue zero-ETL documentation.
Quelle: aws.amazon.com

Amazon WorkSpaces Applications now supports Microsoft Windows Server 2025

Amazon WorkSpaces Applications now offers images powered by Microsoft Windows Server 2025, enabling customers to launch streaming instances with the latest features and enhancements from Microsoft’s newest server operating system. This update ensures your application streaming environment benefits from improved security, performance, and modern capabilities. With Windows Server 2025 support, you can deliver the Microsoft Windows 11 desktop experience to your end users, giving you greater flexibility in choosing the right operating system for your specific application and desktop streaming needs. Whether you’re running business-critical applications or providing remote access to specialized software, you now have expanded options to align your infrastructure decisions with your unique workload requirements and organizational standards. You can select from AWS-provided public images or create custom images tailored to your requirements using Image Builder. Support for Microsoft Windows Server 2025 is now generally available in all AWS Regions where Amazon WorkSpaces Applications is offered. To get started with Microsoft Windows Server 2025 images, visit the Amazon WorkSpaces Applications documentation. For pricing details, see the Amazon WorkSpaces Applications Pricing page.
Quelle: aws.amazon.com