AWS For Dummies - 2 - Virtualization

AWS For Dummies - 2 - Virtualization

In Last Article I spoke about Why AWS is easy to start with but hard to master. If you want to go deep its a ocean of Information.

I ask a common Question to people how they rate themselves in AWS in a scale of 7. 85% time the answer I hear is 6 or 5 to be safe. In reality when I ask that Question I am looking for a counter question "Which All Services "

No one , Mark it No one knows all AWS Services well. Its myriad of Technology . We can excel in 5 or 7 services at max but saying I am expert makes myself a fool and this is how most of the Interviews starts.

In this 2nd Edition of "Learn Amazon Web Services ( AWS ) in a Simple Way" I would talk about the Building Blocks of Any Cloud Services with some inclination to AWS.

Hypervisor

We Optimize things to save better. Resource Optimization is the key. That's why Cookies comes in smaller size so people can share without breaking it. So does Chips and many other thing, this is how the "Shared Economy" runs.

In nutshell in One Physical hardware Different instances runs but they are isolated from each other via a highly customized version of Xen hypervisor developed for AWS. The AWS firewall resides within the hypervisor layer, between the physical network interface and the instance’s virtual interface so each Instance feel like its their own abode.

The Xen hypervisor takes advantage of para-virtualization. The CPU provides four separate privilege modes (0-3) called rings. Ring 0 is the most privileged and 3 the least. Rather than executing in Ring 0 as most operating systems do, the guest OS runs in a lesser-privileged Ring 1 and applications in the least privileged Ring 3. This explicit virtualization of the physical resources leads to a clear separation between guest and hypervisor, resulting in additional security separation between the two.

Instance Isolation

All packets must pass through the hypervisor and related firewall, thus an instance cannot access or connect to other instances similar to that of separate physical hosts. The physical memory on the hypervisor is separated using similar mechanisms.

Contrary to earlier beliefs thats Cloud is not Secure, AWS has come a long way to show what can be achieved in Shared Economy model with Security Intact.

Now that You know how Cloud Instances are secured/isolated from each other, I would go ahead with Elasticity in my next Post.

Mahendra Prasath

Sr Manager -Software Development at Verizon

6 年

From next time onwards will ask which all services??

回复
Varatharajan A

Good Exp in handling customer escalations and Triaging Incidents and crisis. Supporting 24/7 Environment with good client handling experience of Global customers across EMEA/NA/APAC regions

6 年

Good explanation

回复

要查看或添加评论,请登录

Pritam Pal的更多文章

  • Who should use Google Kubernetes Engine (GKE) Autopilot

    Who should use Google Kubernetes Engine (GKE) Autopilot

    Yesterday I tried my first hands on Google Kubernetes Engine (GKE) Autopilot, which is a fully managed Kubernetes…

  • 365 "Day 1" @ AWS

    365 "Day 1" @ AWS

    Normally, I would have called this as 1st year work anniversary, but, It’s the 365th “Day 1” at Amazon. When I joined…

    5 条评论
  • Time Blocking: How You do it !

    Time Blocking: How You do it !

    I hate when I have a 30 mins or 1 hr gap between meetings. I found those time slots were way less effective then other…

  • AWS Limit Monitor

    AWS Limit Monitor

    Limits can be frustrating and now and then we encounter them in life. Be it Speed Limit or Credit Card spending limit.

  • Being Emotionally Intelligent

    Being Emotionally Intelligent

    The last 7 companies I worked for gave me some kind of exposure how people behave. Though in most of the interviews I…

    2 条评论
  • AWS "Savings Plan" -101

    AWS "Savings Plan" -101

    We know you love lots of Compute power and we love it too. At AWS Cloud we try to make it more and more affordable for…

  • How to Be a Rock Star at Work, With No Talent!

    How to Be a Rock Star at Work, With No Talent!

    Talent is overrated. That's Why often more important is your Image and how well you can capture the limelight.

    2 条评论
  • Opinionated Tooling

    Opinionated Tooling

    Several Universities make the claim that, when deciding where to put sidewalks, they first let students wear paths…

  • Hibernate on Cloud

    Hibernate on Cloud

    What Do You like the most in a Mac? I bet 90% will say the "Sleep" feature. With toddlers at home who are at time…

  • Apache Kafka in 5 Mins

    Apache Kafka in 5 Mins

    At some point of time in your career you must have used some kind of message broker. So there is P2P and there is…

    2 条评论

社区洞察

其他会员也浏览了