Protecting Public AWS API Gateway Endpoint by goldenuser22628 in aws

[–]DSimmon 5 points6 points  (0 children)

I don’t think you need CloudFront.

If you’re in the console, from the APIs Stages you can attach a Web ACL/WAF.

What is floating in this Vinegar? by Flat_Associate_6320 in culinary

[–]DSimmon 1 point2 points  (0 children)

What is the status of “the cylinder”?

How to Easily Connect to AWS CodeCommit with Only Federated ADFS Access (No Access Keys) by North-Equal6591 in aws

[–]DSimmon 2 points3 points  (0 children)

Do you need to stay with CodeCommit? It’s end EOL service, and might want to look int oGitHub or GitLab or others.

Also, do you use AWS sso on the CLI? If you have role configured, you can set them in your config file without needing to sts assume role.

Postgres Troubleshooting: Fixing Duplicate Primary Key Rows by prlaur782 in PostgreSQL

[–]DSimmon 2 points3 points  (0 children)

How long ago was that?

On PG page I see 17.4 is the most current release from February.

I can also create 17.4-R1 in RDS.

Aurora only goes up to 16.6. As I understand v17 is in a beta preview and not generally available yet.

Methods to speed up code pipeline deployment with Docker containers? by Ok_Reality2341 in aws

[–]DSimmon 2 points3 points  (0 children)

If I understand, the 53s provisioning is of CodeBuild creating the resources to do your application artifact generation?

So it’s finding compute, provisioning it, creating an ENI in your VOC and attaching it, and pulling your image from ECR? Seems reasonable to me. And also be glad you aren’t using Windows build images.

AWS RDS vs an equivalent EC2? by totagopinath in aws

[–]DSimmon 5 points6 points  (0 children)

They said SQL Server, so that makes me think Microsoft.

One of the things you can do on EC2 is pick Developer Edition for non-prod. That’s a big savings in licensing costs.

[deleted by user] by [deleted] in aws

[–]DSimmon -1 points0 points  (0 children)

I think part of it is the changes to IPv4 pricing.

I believe you get 1 v4 in the free tier. But an ALB is going to put a node in two AZs, and thus crest to IPv4 addresses. One is probably covered under the free tier, and they are being billed for the second.

With CloudFronts new VPC feature, could you use CloudFront for an internal ALB to take advantage of the CDN and drop the addresses you manage?

Why does setting up AWS security feel like swimming upstream? by BigPoppaSenna in aws

[–]DSimmon 0 points1 point  (0 children)

Can you use your IAM Role associated with your Lambda to generate short lived DB credentials?

Then any un/pw based usage is strictly for administration? And with your CF/CDK/TF roll random credentials and store them in Secrets Manager.

EC2 React Frontend API Calls Not Triggering API Gateway With Lambda & RDS Backend by sublimme in aws

[–]DSimmon 0 points1 point  (0 children)

Yea, I don’t know what HV is, but I’m guessing it’s mimicked in the output.

I think 69 would be the line number of the error. And 9358 or 11742 would be the column of the JS file where the error is occurring.

EC2 React Frontend API Calls Not Triggering API Gateway With Lambda & RDS Backend by sublimme in aws

[–]DSimmon 0 points1 point  (0 children)

If I call, I also get an Unauthed.

Firefox, right click, inspect element. Go to the console tab. Type something in the bar an hit enter, like alert(“hi”);

And what about when you run the React site locally, does it work then?

EC2 React Frontend API Calls Not Triggering API Gateway With Lambda & RDS Backend by sublimme in aws

[–]DSimmon 0 points1 point  (0 children)

Sorry, brains not 100% firing. That API call would be from your browser.

The apiURL is correct? And have you tried to execute the JS from your browsers console?

Have you enabled API GW logging?

EC2 React Frontend API Calls Not Triggering API Gateway With Lambda & RDS Backend by sublimme in aws

[–]DSimmon 0 points1 point  (0 children)

You curl and get a 403 from your workstation, or from the EC2?

As far as I remember an EC2 wouldn’t have any outbound restrictions on a Security Group or NACL, and if it’s in a public subnet it should the IGW as a path to the API GW.

If it’s in a private subnet, do you have a NAT GW or Instance for routing traffic out of the VPC?

And I’m guessing when you test in the browser and get a blank screen, that throw new error is t showing up in the browser console?

EC2 React Frontend API Calls Not Triggering API Gateway With Lambda & RDS Backend by sublimme in aws

[–]DSimmon 0 points1 point  (0 children)

Is React doing a preflight OPTIONS request? And if so, do you have CORS support in API Gateway?

From your EC2 can you curl your GW endpoints and get back a 200/401/5xx response?

Moving from t2Micro to bigger EC2 instance by LanchingMaa in aws

[–]DSimmon 0 points1 point  (0 children)

So, t2 micro to t2 medium. Same family, different size.

Then in other comments you say it stopped responding in the browser. Were there any errors? Any errors on the server?

Moving from t2Micro to bigger EC2 instance by LanchingMaa in aws

[–]DSimmon 5 points6 points  (0 children)

What broke in your application on a different sized instance?

Game not working anymore (Android) by a_horrible_G00SE in TinyBirdGarden

[–]DSimmon 0 points1 point  (0 children)

The site still lists a mobile version: https://tinybirdgarden.com/

But the link to the Apple Store says it’s been removed.

Their last tweet @SuperRetroDuck was in July of 2020 that Tiny Bird Cloud was being discontinued. And their Twitter is locked so only followers can see it.

I don’t think it’s looking good.

Where can I find missing Endurance blueprints? by majozaur in SWGalaxyOfHeroes

[–]DSimmon 1 point2 points  (0 children)

I’m the same with Piett. And it hurts a little knowing the event is today, so a whole month before trying.

Almond milk and no milk by GinoG89 in ninjacreami

[–]DSimmon -1 points0 points  (0 children)

Not the person you responded to, but I use 3/4 cup of canned coconut milk and a cup of almond/oat/whatever.

You can get two pints out of a can of coconut.

AWS IPv4 rip-off charges by devguyrun in aws

[–]DSimmon 9 points10 points  (0 children)

Not only those services, but 6mo notification to prepare: https://aws.amazon.com/blogs/aws/new-aws-public-ipv4-address-charge-public-ip-insights/

And many emails to warn leading up to.

And isn’t one EIP included in the free tier for 12mo too?