< ciso
brief />
Tag Banner

All news with #aws tag

2926 articles · page 87 of 147

AWS expands R6id and R6gd RDS instances to more regions

🚀 Amazon Web Services has made R6id memory-optimized database instances generally available for Amazon RDS running PostgreSQL, MySQL, and MariaDB in the Tel Aviv region. R6gd instances are now supported for the same engines in Asia Pacific (Osaka) and EU regions (Spain, Zurich). Graviton2-based instances can deliver up to 40% better performance than R5 equivalents, while R6gd adds local NVMe block storage and R6id offers 58% more TB per vCPU and approximately 15% improved price-performance versus R5d. Instances can be launched via the RDS console or AWS CLI; consult the RDS/Aurora documentation for engine-version support and the pricing page for regional costs.
read more →

Amazon Connect Cases Adds Tag-Based Granular Access Control

🔒 Amazon Connect Cases now supports tag-based access control, enabling administrators to attach tags to case templates and restrict which users can view or manage cases based on security profiles. For example, teams can tag fraud cases and limit view/edit rights to users assigned to a fraud security profile. This capability strengthens enforcement of internal controls and data access policies, simplifies segmentation of sensitive workflows, and reduces the risk of unauthorized access across supported AWS regions.
read more →

Amazon Lightsail adds Node.js, LAMP, and Ruby on Rails

🚀 Amazon Lightsail now offers Node.js, LAMP, and Ruby on Rails blueprints that enforce IMDSv2 by default and support IPv6-only instances. With a few clicks you can create a preconfigured VPS sized by bundle that includes the operating system, storage, and a monthly data transfer allowance. These blueprints are available in all AWS Regions where Lightsail is offered, simplifying quick web app deployments.
read more →

Amazon Lightsail Adds Node.js, LAMP, and Rails Blueprints

🔔 Amazon Lightsail now offers new Node.js, LAMP, and Ruby on Rails blueprints that enforce IMDSv2 by default and support IPv6-only instances. With a few clicks you can create a Lightsail VPS of your preferred size with the selected stack preinstalled; bundles include an operating system, storage, and a monthly data transfer allowance. The new blueprints are available in all AWS Regions where Lightsail is offered.
read more →

AWS IAM Identity Center Adds Native IPv6 Dual-Stack Support

🛡️ AWS IAM Identity Center now supports native IPv6 via new dual-stack endpoints that accept both IPv4 and IPv6 clients, enabling direct IPv6 access without network address translation. Administrators should update external IdP configurations (ACS and SCIM URLs), adjust firewalls and gateways, and share the dual-stack app URL with users. You can monitor adoption through CloudTrail by inspecting clientProvidedHostHeader to distinguish IPv4-only and dual-stack usage.
read more →

AWS CloudHSM: Updated PCI PIN Compliance Package Available

🔒 AWS announced successful completion of the PCI PIN audit for AWS CloudHSM. The attestation, conducted by Coalfire, validated CloudHSM on FIPS 140-3 Level 3 hardware with zero findings. The compliance package includes a PCI PIN Attestation of Compliance and a PCI PIN Responsibility Summary to clarify customer obligations. Customers can retrieve reports via AWS Artifact and may consider AWS Payment Cryptography as a managed alternative for PIN operations such as translation.
read more →

Amazon Managed Grafana Now in AWS GovCloud (US) Regions

🔒 Amazon Managed Grafana is now available in both AWS GovCloud (US-West) and AWS GovCloud (US-East) Regions, allowing government customers and regulated industries to securely visualize and analyze operational telemetry at scale. The fully managed service, based on open-source Grafana, supports all features in GovCloud except Enterprise plugins. To get started, customers can create workspaces via the AWS Console and consult the Amazon Managed Grafana user guide for region-specific guidance.
read more →

Amazon WorkSpaces Core Introduces Monthly Billing Option

🔁 AWS now offers a monthly flat-rate billing option for Amazon WorkSpaces Core managed instances in addition to existing hourly pay-as-you-go pricing. Monthly billing is optimized for predictable, always-on VDI desktops while hourly remains better for variable usage, and customers can mix both models within a single deployment. VDI partners such as Citrix, Workspot, Dizzion, and Leostream can use the WorkSpaces API to enable the monthly option when instances are created; hourly utility charges are also being consolidated on WorkSpaces bills without changing effective on-demand rates.
read more →

AWS Transfer Family Adds FSx for NetApp ONTAP Access

🔒 AWS Transfer Family now enables access to Amazon FSx for NetApp ONTAP file systems over SFTP, FTPS, and FTP by routing transfers through S3 Access Points. This complements native NFS/SMB access so you can preserve existing internal workflows while offering industry-standard secure transfer protocols to partners and users. Access control is enforced using IAM policies and S3 Access Point configurations, and the capability is available in select AWS Regions.
read more →

AWS Payment Cryptography Achieves PCI PIN Compliance

🔒 AWS announced that AWS Payment Cryptography successfully completed the PCI PIN audit and received an Attestation of Compliance with zero findings. The updated compliance package includes the PCI PIN AOC and a PCI PIN Responsibility Summary that clarifies shared responsibilities for developing and operating secure PIN-handling environments. The attestation confirms use of PCI PTS HSM-certified, fully managed hardware and PCI PIN-compliant key management; reports validated by the QSA Coalfire are available through AWS Artifact.
read more →

AWS Completes 2025 C5 Type 2 Attestation with 183 Services

🔒 Amazon Web Services (AWS) announced completion of the 2025 C5 Type 2 attestation cycle covering 183 services, reaffirming its alignment with the German BSI-backed C5 security criteria. Independent auditors assessed AWS for the period from October 1, 2024, through September 30, 2025, and the report documents both basic and additional C5 criteria. AWS added five services to the C5 scope and lists nine Europe and Asia Pacific regions in scope. Customers can retrieve the full attestation via AWS Artifact.
read more →

AWS Expands and Recertifies GSMA SAS-SM Coverage Globally

🔒 AWS has expanded GSMA Security Accreditation Scheme for Subscription Management (GSMA SAS-SM) certification to four additional Regions — US West (Oregon), Europe (Frankfurt), Asia Pacific (Tokyo), and Asia Pacific (Singapore) — and recertified US East (Ohio) and Europe (Paris). All Region certifications cover Data Centre Operations and Management (DCOM) and were validated by GSMA-selected independent auditors, with compliance valid through October 2026. The certification helps ISVs and startups inherit controls to build compliant eSIM and subscription management services, enabling faster time to market and geo-redundant deployments.
read more →

Amazon Route 53 Domains Adds Support for Ten New TLDs

🌐 Amazon Route 53 Domains now supports registration and management of ten new top-level domains, including .ai, .shop, .bot and others. Customers can register these TLDs via the Route 53 console, AWS CLI, or SDKs and use integrated DNS management and automatic renewal to administer domains alongside existing hosted zones. The expansion gives businesses and individuals more industry- and region-specific naming options directly within AWS. See the Route 53 product and pricing pages for additional details and costs.
read more →

Centralized vs Decentralized Secrets Management on AWS

🔐 This post compares centralized and decentralized approaches to secrets management across four lifecycle domains: creation, storage, rotation, and monitoring. It explains how platform engineering and golden paths can centralize creation to enforce naming, tagging, and least-privilege checks while acknowledging the resource cost and maintenance burden. The article contrasts centralized storage (simplified monitoring but higher cross-account complexity and KMS costs) with storing secrets in workload accounts (better isolation, delegated ownership). Finally, it recommends centralizing auditing and observability while allowing hybrid architectures that balance control, speed, and operational scale.
read more →

EC2 Auto Scaling: group deletion protection and IAM control

🔒 EC2 Auto Scaling introduces the condition key autoscaling:ForceDelete and group-level deletion protection to reduce accidental Auto Scaling group (ASG) deletions. Use the new autoscaling:ForceDelete condition in IAM policies to control whether the ForceDelete parameter can be used with DeleteAutoScalingGroup. Set deletion protection on ASGs at creation or update to add layered safeguards for critical workloads. Available in all AWS Regions and AWS GovCloud (US).
read more →

Amazon EVS Adds Support for Multiple NSX Tier-0 Gateways

🌐 Amazon EVS now supports deploying multiple VMware NSX Tier-0 Gateways inside an SDDC, enabling enhanced network segmentation and more flexible routing. Multiple Tier‑0 gateways distribute traffic across NSX Edge Clusters to improve performance and scale. Customers can isolate workloads, maintain separate security policies, and conduct upgrades or testing with minimal production impact.
read more →

Amazon EC2 M4 Max Mac Instances Now Generally Available

🚀 Amazon Web Services announced general availability of Amazon EC2 M4 Max Mac instances, powered by the latest Mac Studio hardware. These next‑generation Mac instances deliver up to 25% better application build performance versus Amazon EC2 M1 Ultra Mac and target demanding build and test workloads for Apple platforms. They run on Apple M4 Max silicon (16‑core CPU, 40‑core GPU, 16‑core Neural Engine, 128 GB unified memory), use the AWS Nitro System, and offer up to 10 Gbps network and 8 Gbps EBS bandwidth; availability begins in US East (N. Virginia) and US West (Oregon).
read more →

Amazon RDS for Oracle Adds Multi-Tenant Replica Support

🔁 Amazon RDS for Oracle now supports database replicas for instances configured in Oracle multi-tenant (CDB/PDB) environments. You can create replicas in mounted or read-only modes via the AWS Management Console, CLI, or SDK, with Amazon RDS managing asynchronous physical replication using Oracle Data Guard. Replicas can scale read workloads, be promoted for disaster recovery, or be configured as cross-Region copies; licensing requirements differ by mode and should be reviewed before deployment.
read more →

Amazon Connect Adds Conditional Logic and Live Updates

🚀 Managers can now build dynamic, adaptive guided experiences with Amazon Connect Step-by-Step Guides. Conditional interface logic lets supervisors show or hide fields, change default values, and adjust which inputs are required based on prior responses to create scenario-specific workflows. Guides can also auto-refresh data from Connect resources such as flow modules at configurable intervals so agents work with current information. The feature is available across multiple AWS regions.
read more →

Amazon Neptune Analytics Generally Available in New Regions

🚀 Amazon Neptune Analytics is now generally available in additional AWS regions, including US West (N. California), Asia Pacific (Seoul, Osaka, Hong Kong), Europe (Paris, Stockholm), and South America (São Paulo). The serverless Amazon Neptune graph database scales automatically and supports advanced graph analytics and fully managed GraphRAG capabilities. Neptune models data as a graph to capture context that improves accuracy and explainability for AI applications, and integrates with Amazon Bedrock, Strands AI Agents SDK, and common agentic memory tools. Create and manage Neptune Analytics graphs via the AWS Management Console or AWS CLI; refer to the Neptune pricing page and AWS Region Table for pricing and availability.
read more →