2025-01-01ãã1ã¶æéã®è¨äºä¸è¦§
2025å¹´ã¯12åã«æ¸¡ã£ã¦CrowdStrikeã®ä¸»ã«å©ç¨è ã®ç«å ´ã§å½¹ã«ç«ã¤æ å ±ããä¼ãããé£è¼ãã¹ã¿ã¼ããã¾ãã ãã¼ãã¯ãCrowdStrikeå¾¹åºè§£èª¬ãã§ãã ä»åã¯FalconConsoleã®ããã·ã¥ãã¼ãã¨ã¢ã©ã¼ãç»é¢ã«ã¤ãã¦ãç´¹ä»ãã¾ãã
ç®æ¬¡ ç®æ¬¡ ã¯ããã« ã©ããªäººã«èªãã§ã»ããã ãªãã»ãã¥ãªãã£ã¨ã³ã¹ã管çã大äºãªã®ãï¼ ã»ãã¥ãªãã£è¨å® MFAï¼å¤è¦ç´ èªè¨¼ï¼ã®æå¹å IAMã¦ã¼ã¶ã¼ã®ä½æã¨è¨å® ã³ã¹ã管çè¨å® äºç®è¨å®ã¨ã¢ã©ã¼ãã®æ´»ç¨ ç¡ææ ã®ç¢ºèªã¨éç¥æ¹æ³ ç¡ææ ã®ç¢ºèª AWS ç¡æâ¦
ãã©ã¤ãã¼ãã§ãã¾ãEã¡ã¼ã«ã使ããªãæ¹ã«åãã¦ãAWSã®æéãæ¯æ¥LINEã«éç¥ããããã«ãã¾ããã
ã¯ããã« 1/26ï¼æ¥ï¼ã«SRE Kaigi 2025ã«åå ãã¦ãã¾ããï¼ 2025.srekaigi.net ã¨ã¦ãæ´»æ°ã«ããµãã¦ãã¦æ¥½ãããå¦ã³ããã£ãã®ã§åå¿é²ãå ¼ãã¦ã¬ãã¼ããããã¨æãã¾ãã ã¤ãã³ãæ¦è¦ SRE Kaigi 2025ã®ã³ã³ã»ãããå¼ç¨ããã¨ã SRE Kaigi 2025ã¯ããMoâ¦
IAMã®ãæå°æ¨©éã®ååãã大äºãªã®ã¯ç¥ã£ã¦ãã¦ãããã¼ãã«ãé«ãæãã¾ãããï¼ãããªIAMã®æå°æ¨©éå®ç¾ããæè»½ã«å§ããããæ©è½ãçºè¦ããã®ã§ãç´¹ä»ãã¾ãã
ã¯ããã« SRE Kaigi 2025ã¨ã¯ï¼ åå ãã¦ã¿ãææ³ åå ã®ã¢ããã¼ã·ã§ã³ ã©ããªä¼ç»ããã¼ã¹åºå±ããã£ãã ã»ãã·ã§ã³ã®ææ³ ç¹ã«æ°ã«ãªã£ãã»ãã·ã§ã³ã«ã¤ã㦠Platform Engineeringãããã°SREã¯ãããªã!? æ°æä»£ã®SREã«æ±ããããå½¹å²ã¨ã¯ ããªãã®èå³â¦
ã¯ããã« ã©ããªã²ã¨ã«èªãã§æ¬²ãã ãªã¶ã¼ããã¤ã³ã¹ã¿ã³ã¹ï¼RIï¼ã¨ã¯ æé æéã®æ¯æãæ¹æ³ EC2 RIã®ã¿ã¤ã ã¹ã³ã¼ãã«ã¤ã㦠å²å¼ã«ã¤ãã¦ è³¼å ¥æé èºããç®æ ãããã« ãç¥ãã ã¯ããã« ããã«ã¡ã¯ãã¯ã©ã¦ãäºæ¥é¨ã®å±±ä¸ã§ãã 以åAWSã®Savings Plâ¦
ã¯ããã« â 2025/1/28追è¨â ãSRE Kaigi 2025ãã¤ãã³ãæ¦è¦ åå ã®åæ© åå ã¬ã ç¾å°å°çï¼ï¼ ã»ãã·ã§ã³ãç±ãã£ãï¼ å±å°ãç±ãã£ãï¼ ãã¼ã¹ãããã åå ããã»ãã·ã§ã³ ã¾ã¨ã å¦ã³ã¨ææ³ ãããã« ã¯ããã« ããã«ã¡ã¯ãACSäºæ¥é¨ã®å°åã§ãã SRE Kaâ¦
ã¯ããã« ããã«ã¡ã¯ãACSäºæ¥é¨ äºå´ã§ãã ååã®ãSoftware Catalogãã«å¼ãç¶ããä»åã Backstage ã®åºæ¬æ©è½ã®ï¼ã¤ãSoftware Template ããç´¹ä»ãããã¨æãã¾ãã techblog.ap-com.co.jp Software Template Software Templateæ©è½ã®åºæ¬çãªæ©è½ã¯ãâ¦
ã¯ããã« Backstageã¨ã¯ï¼ ãã®ããã°ã®ã´ã¼ã« åææ¡ä»¶ ç°å¢æ§ç¯ ã³ãã³ãã©ã¤ã³ã§å©ç¨å¯è½ãªGNUã©ã¤ã¯ãªãã«ãç°å¢ Node.js Active LTS ãªãªã¼ã¹ã®ã¤ã³ã¹ãã¼ã« nvm ã¨ã¯ Node.js Active LTS ãªãªã¼ã¹ã¨ã¯ ãæé ãnvm & Node 20 ã®ã¤ã³ã¹ãã¼ã« Yarn ã«ã¤â¦
ã¯ããã« Athenaãã¼ãã«ã®è¨å® 1. CUR2.0ã®è¨å® 2. Athenaãã¼ãã«ã®ä½æ 3. OpenCostç¨ã®Athenaãã¼ãã«ä½æ OpenCostã®æ§ç¯ 1. ã¯ã©ã¹ã¿ã¸ã®æ¥ç¶ 2. Prometheusã®è¨å® 3. OpenCostç¨ã®IAMãã¼ã«ã®ä½æ 4. OpenCostã®ã¤ã³ã¹ãã¼ã« 3. ã³ã¹ããã¼ã¿åå¾ã®ç¢ºâ¦
ã¯ããã« å¼ç¤¾ã®çµç¹ ç§ã®ãã¼ã ã¨ãç§ã®çµç¹ã®èã ãããã« ã¯ããã« ããã«ã¡ã¯ï¼ ACSäºæ¥é¨Cloud Infrastractureãã¼ã ã§Engineering Managerããã¦ããè°·åã§ãã å¼ç¤¾ã¨ã¼ãã¼ã³ãã¥ãã±ã¼ã·ã§ã³ãºã¯ãSIerã¨ãã¦SREæ¯æ´ãPlatform Engineeringæ¯æ´ãªâ¦
ã¯ããã« ããã«ã¡ã¯ãACSäºæ¥é¨ äºå´ã§ãã ç§ãã¡ã¯ ãªã¼ãã³ã½ã¼ã¹ã®Internal Developer Portal ã§ããBackstageãããã¼ã¸ãã»ãµã¼ãã¹ã¨ãã¦æä¾ãã¦ãã¾ãã www.ap-com.co.jp 2024å¹´ããæ¬¡ç¬¬ã« Internal Developer Portalããã³Backstage ãæ³¨ç®ããâ¦
CUR2.0ã¯ã¬ã¬ã·ã¼CURã¨éã£ã¦ãAthenaçµ±åãèªåã§è¡ãå¿ è¦ãããã¾ããè¨å®æ¹æ³ã«ã¤ãã¦ãç´¹ä»ãã¾ãã
ç®æ¬¡ ç®æ¬¡ ã¯ããã« åé¨åã®ç¥èã¬ãã« å¦ç¿æé å¦ç¿ã®æµã åé¨ ã«ãã¼ç¯å² åå¼·ã«ãªã£ããã¨ã¾ãã¯è¦å´ããã㨠åè ãããã« ã¯ããã« GDAIäºæ¥é¨Lakehouseé¨ã®ã¡ã¤ã§ãã æ¬è¨äºã§ã¯ Professional Scrum Master I (PSM I) 試é¨ã®å¦ç¿å 容ãç´¹ä»ãããâ¦
ç®æ¬¡ ç®æ¬¡ ã¯ããã« æ¬è¨äºã®å¯¾è±¡è ãªã¼ã¸ã§ã³ã¨ã¯ å¯ç¨æ§ãã¡ã¤ã³ã¨ã¯ åèæ å ± ã¾ã¨ã ãããã« ã¯ããã« ããã«ã¡ã¯ãæ ªå¼ä¼ç¤¾ã¨ã¼ãã¼ã³ãã¥ãã±ã¼ã·ã§ã³ãºã®æ¾å°¾ã§ãã ä»åã¯Oracle Cloud Infrastructureï¼ä»¥ä¸ãOCIï¼ã®âãªã¼ã¸ã§ã³âã¨âå¯ç¨æ§ãã¡ã¤â¦
ã¯ããã« ããã«ã¡ã¯ãã¨ã¼ãã¼ã³ãã¥ãã±ã¼ã·ã§ã³ãº ã¯ã©ã¦ãäºæ¥é¨ã®é«éã§ãã å æ¥ãAWSã®ããã¸ã¡ã³ãã³ã³ã½ã¼ã«ã§ãã«ãã»ãã·ã§ã³ãµãã¼ãæ©è½ã追å ããã¾ããã ãã«ãã»ãã·ã§ã³ããµãã¼ãããããã¨ã«ãããç°ãªãã¢ã«ã¦ã³ãéã®ç®¡ç使¥ãæ ¼æ®µã«â¦
ã¯ããã« ããã«ã¡ã¯ï¼ã¯ã©ã¦ãäºæ¥é¨ã®ä¸æ ¹ã§ãã FinOpsã®ä¸ç°ã§ãCUR2.0ã®è¨å®ã¨Athenaã§ã®åææ¹æ³ã調æ»ãã¾ããã è¨å®æ¹æ³ãç°¡åã«ãç´¹ä»ãã¾ãã CUR 2.0ã®è¨å® ãè«æ±ã¨ã³ã¹ã管çããããããã¼ã¿ã¨ã¯ã¹ãã¼ããã®ç»é¢ã«é·ç§»ããã使ããæ¼ä¸ãâ¦
PlaTT ã§RBACï¼Permissionï¼ããµãã¼ã ããã«ã¡ã¯ãACSäºæ¥é¨äºå´ã§ããå¼ç¤¾ãã2024å¹´å¤ã«Managed BackstageãPlaTTããçºè¡¨ããã¦ããã ãã¾ããã techblog.ap-com.co.jp ããã¦ãã®ãã³ PlaTT ã«Permissionæ©è½ãå°å ¥ãããã¾ããã https://www.ap-comâ¦
ã¯ããã« Resource Explorerã¨ã¯ å ·ä½çãªä½¿ãæ¹ è¨å®æ¹æ³ 1. Resource Exploreræå¹å 2. 常é§ãªã½ã¼ã¹ã«ã¿ã°ä»ã 3. ããã©ã«ãã®ãªã½ã¼ã¹ã«ã¿ã°ä»ã 4. ã¯ã¨ãªã®ä½æ 5. ãã¥ã¼ã®ä½æ 6. åä½ç¢ºèª 注æç¹ çµããã« ã¯ããã« ããã«ã¡ã¯ï¼ã¯ã©ã¦ãäºæ¥é¨ã®â¦
ç®æ¬¡ ç®æ¬¡ ã¯ããã« åé¨åã®ç¥èã¬ãã« å¦ç¿æé å¦ç¿ã®æµã åé¨ åè ãããã« ãããã« ã¯ããã« ããã«ã¡ã¯ãã¨ã¼ãã¼ã³ãã¥ãã±ã¼ã·ã§ã³ãºã®æ¾å°¾ã§ãã æ¬è¨äºã§ã¯AWS Certified Data Engineer Associateï¼DEA-C01ï¼è©¦é¨ã®å¦ç¿å 容ãç´¹ä»ãããã¨æãâ¦
ç®æ¬¡ ç®æ¬¡ ã¯ããã« æ¬è¨äºã®å¯¾è±¡è ã¢ã¤ãã³ãã£ãã£ã»ãã¡ã¤ã³ã¨ã¯ ã¡ãªãã ã¦ã¼ã¶ç®¡çã®ç¬ç«å ãã¡ãªãã ã¦ã¼ã¶ç®¡çãè¤éåãã ã¦ã¼ã¹ã±ã¼ã¹ ã¦ã¼ã¶ã®ç®¡çè ã管çåä½ãåããã èªè¨¼æ¹å¼ãã¨ã«åããã åèæ å ± ã¾ã¨ã ãããã« ã¯ããã« ããã«â¦
ç®æ¬¡ ç®æ¬¡ ã¯ããã« æ¬è¨äºã®å¯¾è±¡è ããã³ã·ã¨ã¯ ã³ã³ãã¼ãã¡ã³ãã¨ã¯ ã³ã³ãã¼ãã¡ã³ãã®é層å ã³ã³ãã¼ãã³ããåããã¡ãªãã ã¾ã¨ã ãããã« ã¯ããã« ããã«ã¡ã¯ãæ ªå¼ä¼ç¤¾ã¨ã¼ãã¼ã³ãã¥ãã±ã¼ã·ã§ã³ãºã®æ¾å°¾ã§ãã ä»åã¯OCIç¹æã®èãæ¹ã§ãããâ¦
ç®æ¬¡ ç®æ¬¡ ã¯ããã« æ¬è¨äºã®å¯¾è±¡è IPã¬ãã¥ãã¼ã·ã§ã³ã¨ã¯ä½ã§ããï¼ ãªãIPã¬ãã¥ãã¼ã·ã§ã³ãéè¦ï¼ ã¡ã¼ã«ã®éä¿¡å IPã¢ãã¬ã¹ã£ã¦ã©ãã§ããï¼ IPã¬ãã¥ãã¼ã·ã§ã³ã®ç¢ºèªãµã¤ã ã¾ã¨ã ãããã« ã¯ããã« ããã«ã¡ã¯ãæ ªå¼ä¼ç¤¾ã¨ã¼ãã¼ã³ãã¥ãã±ã¼ã·ã§â¦
ã¯ããã« æ¬è¨äºã«ã¤ã㦠IAM Roles for Service Accounts(IRSA)ã¨ã¯ï¼ ãªãå¿ è¦ãªã®ãï¼ EKS Pod Identityã«ã¤ã㦠ãªãä»çµã¿ãç¥ãå¿ è¦ãããã®ã ä»çµã¿è§£èª¬ å ¨ä½å ç»å ´äººç© ä»çµã¿ã®è©³ç´° â IAM OIDCãããã¤ãã¼ã®ä½æ â¡IAMãã¼ã«ã®ä½æ â¢ãµã¼ãã¹ã¢ã«â¦
ã¿ãªããããã«ã¡ã¯ãACSäºæ¥é¨ã®äºå´ã§ãã 2024å¹´12æã«å ¬éãããAzure Bicep v0.32ã§ã便å©ãªé¢æ°ãã²ã¨ã¤è¿½å ããã¾ãããããã deployer() ã§ãã learn.microsoft.com é常Bicepã§Azure Resourceããããã¤ããéã¯ãä½æã»æ´æ°æ¨©éãæã£ã¦ããã¨æâ¦
ã¯ããã« æ°å¹´ããã¾ãã¦ããã§ã¨ããããã¾ããACSäºæ¥é¨ äºå´ã§ãã 2025å¹´æåã®æç¨¿ããBackstageãé¢é£æ å ±ããå±ããã¾ãã Backstageã¨ã¯ ã¾ãæåã«ãBackstageãã¨ã¯ããæ¯ãè¿ãã¾ããããå®ã¯æ¬ããã°ã§æåã«åãä¸ããã®ã2023å¹´ã®3æã§ããã â¦
æ©ã¿ãè¦è¦åããæ¹æ³ã¨ãã¦ãChatGPTã¨ã®å¯¾è©±ãéãã¦å ·ä½çãªè§£æ±ºæ¡ã模索ããä½é¨ãç´¹ä»ãã¾ããæ¶ç©ºã®ã¦ãã¼ã¯ãªäººçç¸è«ã顿ã«ãSWOTåæãã¯ããã¨ãããã¼ã«ãæ´»ç¨ããæ©ã¿ãæ´çããªããç¾å®çã§å»ºè¨çãªè§£æ±ºçãå°ãã¾ããã