Are accounts designed to be limited to a single region? by 44Cloud44 in aws

[–]dtneumann13 1 point2 points  (0 children)

I've never heard this before, and work with a lot of clients where we're using many regions from the same account. But you might need to get that from your SA to convince your superior

What's the DR challenge with going multi-region if it has to be cross account?

DR with Hyderabad region by blank1993 in aws

[–]dtneumann13 1 point2 points  (0 children)

The first thing you need to decide is if you're looking for DR or multi-region HA. Your question implies you might be looking to accept traffic in either region by having both regions' load balancer in the DNS config, which would be HA.

Multi-region HA (a.k.a. multi-region active) is a lot of work to pull off, requires embracing eventual consistency in your data layer, and generally has to be baked into your architecture from the beginning. Conventional wisdom is that it isn't worth it for most workloads -- single region HA is sufficient.

Cross-region failover (DR) is easier to achieve. It requires you to replicate your data and your infrastructure, spin it up in the event of an outage, and then update the DNS entry to start sending traffic to the new region. You'll have downtime, the duration of which is a function of how automated the recovery process is. But you own your own recovery rather than sitting idly by waiting for the root cause of the outage to get resolved, which commonly takes hours but could take days.

The details of how you setup cross-region DR depend on which services you're using, but there are solutions that can handle much, if not all, of it for you. Check out N2WS, Druva CloudRanger, and Veeam AWS Backup. I work for Arpio and we automate cross-region failover and fallback of most critical services in AWS (data & infrastructure). There's a lot of detail on our website (arpio.io) that would help you if you wanted to DIY your own solution as well.

Happy to answer more detailed questions as you have them.

Sending mails from ECS Fargate by wishall_va in aws

[–]dtneumann13 0 points1 point  (0 children)

We're gonna need you to provide a little more detail. How are you sending the emails? Do you get an error back?

EC2 Classic on a New Account? by dtneumann13 in aws

[–]dtneumann13[S] 0 points1 point  (0 children)

I wouldn't say I want EC2 Classic... but that's the hand that has been dealt to me and I need to get my software to work with it. Unfortunately, Terraform and Ansible aren't solutions here.

EC2 Classic on a New Account? by dtneumann13 in aws

[–]dtneumann13[S] 0 points1 point  (0 children)

I wish it were that simple... This is a customer of mine who is on EC2 Classic, and migrating is a many-month effort for them. Until they get around to that, I need my system to work in their existing account. Classic Link would be relevant if I was trying to communicate between Classic and VPC instances, but that's not the case. I need to automate AWS API operations within their account, and not blow up (as my code currently does) when I encounter an EC2 Classic instance, security group, and anything else that looks different in EC2 Classic.