#AWS

136 posts

ECS and Fargate — Deploying Containers
15 min read

ECS and Fargate — Deploying Containers

Putting containers on AWS, all in one place. We cover how ECS works (vs EKS), its four building blocks — Cluster · Service · Task · Task Definition — the difference between the EC2 launch type and Fargate, the split between Execution Role and Task Role, ALB · VPC wiring, and everything from your first deployment to Auto Scaling and cost.

EventBridge / SQS / SNS
11 min read

EventBridge / SQS / SNS

AWS's messaging infrastructure, all in one place. We cover the difference between the three tools, SNS topic / SQS queue / EventBridge bus·rule, the fan-out pattern, FIFO vs Standard, DLQs and idempotency, Visibility Timeout, and how they tie into Lambda / ECS.

Getting Started with AWS — Accounts · Regions · AZs
12 min read

Getting Started with AWS — Accounts · Regions · AZs

The map you need in your head before you put anything on AWS. The rise of the cloud and AWS, accounts and the root user, Regions and Availability Zones (AZs), the difference between global and regional services, and the first setup right after sign-up.

IaC — Terraform Intro
12 min read

IaC — Terraform Intro

Why IaC, the shape of Terraform's provider / resource / state, team collaboration with an S3 + DynamoDB backend, environment separation with modules, and the flow of codifying the previous chapters' infrastructure step by step.

IAM — Users, Groups, Roles, Policies
11 min read

IAM — Users, Groups, Roles, Policies

Sort out IAM's four elements — users · groups · roles · policies — that decide who you work as on AWS, all in one go. Covers JSON policy syntax, the essence of AssumeRole, and permission-design patterns that hold up even in a small team.

Infra skeleton — deploying FastAPI/Django on ECS Fargate
14 min read

Infra skeleton — deploying FastAPI/Django on ECS Fargate

The flow of pushing a container image to ECR, writing a Task Definition, and bringing it up as an ECS Fargate Service behind an ALB. The chapter where you put a small blog API into a production environment for the first time.

Lambda Basics
12 min read

Lambda Basics

The first button of AWS serverless. We cover Lambda's role (vs ECS / EC2), the runtime / handler / event / context model, synchronous / asynchronous / stream invocation, concurrency and cold starts, Reserved / Provisioned Concurrency, memory · time limits, logging and Layers, and cost.

Lambda in Depth — Cold Starts · SnapStart · Packaging · Observability
8 min read

Lambda in Depth — Cold Starts · SnapStart · Packaging · Observability

Adds a production-operations lens on top of Chapter 17's Lambda basics. Covers cold starts and SnapStart · Provisioned Concurrency, packaging with Layers and container images (one full FastAPI cycle), Lambda Powertools-based observability, combining with Step Functions, and the Lambda vs Fargate cost trade-off.

Monitoring — CloudWatch Alarms and X-Ray
11 min read

Monitoring — CloudWatch Alarms and X-Ray

Operational CloudWatch Logs Insights queries, the core metrics and alarm thresholds for ECS / RDS / ALB, SNS → Slack notifications, and capturing a slow request with X-Ray distributed tracing. Turning on the eyes of operations.

RDS — managed DB, backups, parameter groups
11 min read

RDS — managed DB, backups, parameter groups

AWS's managed relational DB service, RDS. A comparison with a DB on EC2, automated backups and snapshots and PITR, Multi-AZ, parameter / option groups, and the operational flow of minor vs major upgrades.

RDS integration and migration operations
13 min read

RDS integration and migration operations

RDS Postgres Multi-AZ inside the VPC, Security Group design, injecting the password via Secrets Manager, the operational flow of Alembic / Django migrations, and a blue/green-compatible migration pattern, all in one place.

Route 53 — domains and DNS
10 min read

Route 53 — domains and DNS

AWS's managed DNS, Route 53. Domain registration and Hosted Zones, the difference between A / AAAA / CNAME / Alias records, and the Simple / Failover / Latency / Geolocation routing policies.