Daten-Tiering von Amazon ElastiCache für Redis ist jetzt in der AWS-Region „Europa (Stockholm)“ verfügbar

Sie können jetzt das Daten-Tiering für Amazon ElastiCache für Redis als kostengünstige Möglichkeit zur Skalierung Ihrer Cluster auf bis zu Hunderte von Terabyte an Kapazität in der Region „Europa (Stockholm)“ nutzen. Das Daten-Tiering bietet eine neue Preis-Leistungs-Option für Redis-Workloads, indem zusätzlich zur Speicherung der Daten im Speicher kostengünstige Solid State Drives (SSDs) in jedem Clusterknoten verwendet werden. Es ist ideal für Workloads, die regelmäßig auf bis zu 20 % ihres gesamten Datenbestands zugreifen, und für Anwendungen, die zusätzliche Latenzzeiten beim Zugriff auf SSD-Daten tolerieren können.
Quelle: aws.amazon.com

Amazon Kendra veröffentlicht Microsoft Exchange Connector zum Ermöglichen der Suche in E-Mail-Nachrichten

Amazon Kendra ist ein intelligenter Suchservice, der auf Machine Learning basiert und mit dem Unternehmen ihren Kunden und Mitarbeitern bei Bedarf notwendige Informationen zur Verfügung stellen können. Ab heute können AWS-Kunden den Microsoft (MS) Exchange Connector von Amazon Kendra verwenden, um Dokumente aus MS Exchange zu indexieren und zu durchsuchen.
Quelle: aws.amazon.com

AWS Config unterstützt 22 neue Ressourcentypen

AWS Config unterstützt jetzt 22 weitere Ressourcentypen für Services wie Amazon MQ, AWS AppConfig, AWS Cloud9, Amazon EventBridge, Amazon Fraud Detector, AWS IoT, AWS IoT Analytics, Amazon Lightsail (Virtual Server), AWS Elemental MediaPackage, Amazon Route 53 Recovery Readiness, AWS Resilience Hub und AWS Transfer.
Quelle: aws.amazon.com

How Confidential Space and multi-party computation can help manage digital assets more securely and efficiently

Managing digital asset transactions and their often-competing requirements to be secure and timely can be daunting. Human errors can lead to millions in assets being instantly lost, especially when managing your own encryption keys. This is where multi-party computation (MPC) can help reduce risk stemming from single points of compromise and facilitate instant, policy-compliant transactions. MPC has proven valuable to help secure digital asset transactions because it can simplify the user experience, and it can create operational efficiencies, while users retain control over their private keys. Google Cloud customers can implement MPC solutions with our new Confidential Space, which we introduced at Google Cloud Next in October. MPC enabled by Confidential Space can offer many benefits to safely manage and instantly transact digital assets:Digital assets can be held online without requiring cold storage.You can use an institutional-grade custody solution without having to give up control of your private keys.  Distributed parties can participate in a signing process that is both auditable and policy-compliant.All parties can produce their signatures while not exposing secret material to other parties, including the MPC platform operator.An individual private key represents a single point of failure in the digital asset custody and signing process. In an MPC-compliant model, an individual private key is replaced with distributed key shares. Each key shareholder collaborates to sign a transaction, and all actions performed by all parties are logged for offline auditing. No key holder exposes their key share to another key holder or to the platform operator. Unlike multi-signature, a single private key is not assembled or stored anywhere.Figure 1 – Multi-Party Computation for transacting digital assets.An attacker coming from outside the organization would need to compromise multiple parties across multiple distributed operating environments in order to get access to a key that can sign a transaction. MPC is resistant to insider attacks against the platform operator or key holder because no single key can sign a transaction and the operator can not access the key. Since multiple parties must come together to approve and sign each transaction, MPC-based digital asset custody solutions can better facilitate governance. The solutions provide the ability to create and enforce policies that control who must approve transactions. This prevents a single malicious insider from stealing assets, including the party that owns the workload or a workload operator. Because Confidential Space is built on our Confidential Computing platform, it leverages remote attestation and AMD’s Secure Encrypted Virtualization (SEV). This allows us to offer a more secure environment, fast performance, and seamless workload portability. This foundation can enable the MPC operator and co-signer workloads to run in a Trusted Execution Environment (TEE). Co-signers can have control over how their keys are used and which workloads are authorized to act on them. Finally, with the hardened version of Container-Optimized OS (COS), Confidential Space blocks the workload operator from influencing the signing workload.Deploying MPC on Confidential Space provides the following differentiated benefits:Isolation: Ensures that external parties cannot interfere with the execution of the transaction signing process.Confidentiality: Ensures that the MPC platform operator has no ability to access the key material.Verifiable attestations: Allows co-signers to verify the identity and integrity of the MPC operator’s workload before providing a signature.“MPC solutions will become increasingly essential as blockchains continue to support more critical infrastructure within the global financial system,” said Jack Zampolin, CEO of Strangelove Labs.“As a core developer building and hosting critical infrastructure in the rapidly growing Cosmos ecosystem, MPC-compliant systems are an important focus area for Strangelove. We are excited to expand our relationship with Google Cloud by building out key management integrations with our highly available threshold signer, Horcrux.”In 2022 the Web3 community celebrated the Ethereum merge, one of several engineering advancements that can encourage applications of MPC. For example, MPC could be used for the efficient management of Ethereum validator keys. To learn more about MPC and Web3 with Google Cloud, please reach out to your account team. If you’d like to try Confidential Space, you can take it for a spin today.We’d like to thank Atul Luykx and Ross Nicoll, software engineers, and Nelly Porter and Rene Kolga, product managers, for their contributions to this post.
Quelle: Google Cloud Platform

Azure Native New Relic Service: Full stack observability in minutes

Digital transformation across organizations has led to workloads shifting to multicloud and hybrid-cloud environments. Modern organizations are increasingly adopting cloud-native technologies including containers, microservices, serverless, and more.

With the growing complexity of distributed applications deployed on a cloud-native landscape, can organizations survive without the right observability in place?

It would be like flying an airplane blindfolded.

Businesses are in acute need of observability capabilities like Application Performance Management (APM), infrastructure monitoring, logs management, error tracing, and more to monitor, optimize, and troubleshoot their applications and infrastructure.

At the same time, organizations continue to prefer using software and services which they are familiar with and trust. To meet customers where they are, Microsoft partners closely with market-leading software as a service (SaaS) offerings and enables their use as part of the overall customer solution on our globally trusted cloud platform—Microsoft Azure.

Partnering with New Relic

New Relic, a leader in Gartner Magic Quadrant for 10 consecutive years in Application Performance Management and Observability, is one such partner on Azure.

"Observability is essential in today's modern, multicloud world. Whether our customers are running applications on data centers, embracing the public cloud, or running things at the edge, they need observability to take a look across all those systems. Today's news brings together more than a decade of innovation between New Relic and Microsoft, to bring the power of full stack observability to Microsoft developers, so they can accelerate enterprise cloud migration and multi-cloud initiatives.” —Bill Staples, New Relic CEO

Modern cloud-native environments warrant that organizations adopt a data-driven approach for their incident and threat response. When failures occur, identification, understanding, and resolution of the root cause of the issue is extremely time-critical for development teams.

Currently, to leverage New Relic for observability, you go through a complex multistep process to set up credentials, event hubs, and custom code, thus impacting your productivity and efficiency. To alleviate this challenge, we partnered with New Relic to create a seamlessly integrated solution on Azure that’s now available on the Azure marketplace.

Azure Native New Relic Service makes it effortless for developers and IT administrators to monitor their cloud applications. With this new offering, you can:

Create a New Relic account in the cloud with just a few clicks. Azure Native New Relic Service is a fully managed offering that enables easy onboarding and removes the need to set up and operate monitoring for your infrastructure.
Seamlessly ship logs and metrics to New Relic. Integrated right within the create experience, and also a part of the configuration, you can set up auto discovery of resources within an Azure subscription to monitor logs and metrics. You no longer need to go through the tedious process of setting up event hubs and writing custom code.
Bulk install New Relic Agent on virtual machines (VMs) and App Services through a single click. This then ships logs and metrics from your host infrastructure and processes to New Relic.
Get unified billing for all the resources you consume on Azure including New Relic, from the Azure marketplace.

"Application performance monitoring and full stack observability are mission critical for cloud transformation of enterprises of all sizes. With the Azure Native New Relic Service, Microsoft and New Relic have together, enabled a thoughtfully integrated, seamless, first-class experience for these enterprises everywhere. In just a few clicks, developers and admins can now effortlessly set up and monitor their cloud applications leveraging the power of New Relic on Azure.” —Balan Subramanian, Partner Director of Product Management, Azure Developer Experiences

Get started with Azure Native New Relic Service:

Let’s now look at how you can set up and configure Azure Native New Relic Service.

Subscribe to the Azure Native New Relic Service: You can easily find and subscribe to the offering in the Azure marketplace:

Create a New Relic resource on Azure: Once the New Relic offer is subscribed, you can easily create a New Relic resource in a few simple steps from the Azure portal. Using this, you can configure and manage your New Relic accounts within the Azure portal.

Configure Metrics and Logs Monitoring: Configure which Azure resources send metrics and logs to New Relic using simple include/exclude resource tag rules.

Install New Relic Agent on VMs: Once the New Relic resource is created, you can manage bulk install and uninstall of New Relic agent on multiple Linux or Windows VMs with a single click.

Install New Relic Agent on App Services: Similarly, you can install New Relic agent on multiple Windows App Services in one go.

Besides creating a New Relic resource, you can also link with existing New Relic accounts for monitoring resources across multiple Azure subscriptions. Not only that, you can also set up multiple resources under a single organization to unify billing and user management. To learn more, refer to the Azure Native New Relic Service documentation.

Learn more about Azure Native New Relic Service

Subscribe to the preview of Azure Native New Relic Service available in the Azure Marketplace.
Learn more about the New Relic integration with Azure.

Quelle: Azure