AWS CloudTrail Simplifies Data Events Configuration

The AWS CloudTrail console now allows you to separately add data events and management events logging options, making it easy to customize your CloudTrail configuration. With data events logging, you can record all API actions on Amazon S3 Objects and receive detailed information such as the S3 object level API activity, AWS account of the caller, IAM user role of the caller, time of the API call, IP address of the API, and other details. With management events logging, you can record operations that occur on your AWS accounts and resources, such as administrative actions to create, delete, and modify EC2 instances or IAM activities.
Quelle: aws.amazon.com

Ubuntu version of AWS Deep Learning AMI Now Available

You can now easily run deep learning in the cloud at any scale on Ubuntu version 14.04 using the Deep Learning AMI hosted on the AWS Marketplace. In addition to the Amazon Linux version, the 64-bit AMI offers an Ubuntu image designed to provide a stable, secure, and high performance execution environment for deep learning applications running on Amazon EC2. It includes popular deep learning frameworks such as MXNet, Caffe, Tensorflow, Theano, Keras, CNTK, and Torch, as well as packages that enable easy integration with AWS, including launch configuration tools and many popular AWS libraries and tools. It also includes the Anaconda Data Science Platform for Python2 and Python3. The AWS Deep Learning AMI is provided at no additional cost beyond the Amazon EC2 hours used.
To learn more, read the details in the blog post and begin using the Deep Learning AMI for Ubuntu on the AWS Marketplace, today!
Quelle: aws.amazon.com

Amazon Redshift now supports encrypting unloaded data using Amazon S3 server-side encryption with AWS KMS keys

The Amazon Redshift UNLOAD command now supports Amazon S3 server-side encryption using an AWS KMS key. The UNLOAD command unloads the results of a query to one or more files on Amazon S3. You can let Amazon Redshift automatically encrypt your data files using Amazon S3 server-side encryption, or you can specify a symmetric encryption key that you manage. With this release, you can use Amazon S3 server-side encryption with a key managed by AWS KMS. In addition, the COPY command loads Amazon S3 server-side encrypted data files without requiring you to provide the key. For more information, see COPY and UNLOAD in the Amazon Redshift Database Developer Guide.
Quelle: aws.amazon.com

Attach an IAM role to your existing Amazon EC2 instance

You can now attach or replace an AWS Identity and Access Management (IAM) role to your existing Amazon EC2 instance. IAM roles enable your applications running on EC2 to use temporary security credentials that AWS creates, distributes, and rotates automatically. Using temporary credentials reduces the risk of long-term key compromise. To enable IAM roles for your existing EC2 instances, follow the example described in the AWS Security Blog post.
Quelle: aws.amazon.com

AWS Server Migration Service is now available in new regions

AWS Server Migration Service (SMS) is now available to customers in the AWS US West (Oregon), US East (Ohio), Asia Pacific (Tokyo), Asia Pacific (Seoul), and Asia Pacific (Mumbai) regions. AWS Server Migration Service (SMS) is an agentless service which makes it easier and faster for you to migrate thousands of on-premises workloads to AWS. AWS SMS allows you to automate, schedule, and track incremental replications of live server volumes, making it easier for you to coordinate large-scale server migrations. 
Quelle: aws.amazon.com

AWS Service Catalog Introduces Support for YAML-formatted AWS CloudFormation Templates

You can now create Service Catalog Products using YAML-formatted AWS CloudFormation templates (YAML Version 1.1) in addition to JSON-formatted templates. This allows template creators to choose the format they feel most comfortable working in to describe AWS infrastructure. YAML-formatted CloudFormation templates follow the same anatomy as existing JSON-formatted templates.
Quelle: aws.amazon.com

Amazon WorkSpaces now supports interforest trusts with AWS Microsoft AD for easier user and directory management

Amazon WorkSpaces now allows you to integrate with your on-premises Microsoft Active Directory using an interforest trust with the AWS Directory Service for Microsoft Active Directory (Enterprise Edition), also called AWS Microsoft AD. By establishing a single interforest trust relationship, you can assign Amazon WorkSpaces for users in any of your on-premises domains. AWS Microsoft AD automatically discovers and routes authentication requests to the correct domain controller, which means that your users can use their existing Microsoft Active Directory credentials to log in to their WorkSpaces, without having to specify their domain name.
Quelle: aws.amazon.com