NIT5082
Cloud Security
Session 3 : AWS Storage services
Acknowledgment:
Simplilearn (Link)
Amazon Web Services
Prepared By:
Dinesh Pandey
Dr. Khandakar Ahmed
VICTORIA UNIVERSITY - RTO Code 3113,
CRICOS Provider Code 00124K (Melbourne), 02475D (Sydney)
The material in this session is derived and modified
from Simplilearn and Amazon web services.
NIT5082 Cloud Security, Victoria University 2
Objective
• As you saw from the last session, AWS provides
many services.
• This week’s session will focus on two services
• AWS Storage Content Delivery
• The objective of this session is make you familiar
with some classical cloud services
**The material in this session is derived and modified from Simplilearn.
NIT5082 Cloud Security, © Dinesh & Khandakar 3
Week 2 Outline
• Storage and Content Delivery
• Six Amazon Data Storage Offers
• Elastic Block Storage of AWS
NIT5082 Cloud Security, © Dinesh & Khandakar 4
AWS- Amazon Data Storage
• Amazon Simple Storage Service (Amazon S3)
• Amazon Glacier
• Amazon Elastic File System (Amazon EFS)
• Amazon Storage Gateway
• Amazon Cloud Front
• Amazon Import/Export
NIT5082 Cloud Security, © Dinesh & Khandakar 5
AWS- Amazon Simple Storage Service
(Amazon S3)
• Amazon S3 provides safe and secure object storage
to developers
A file in the Amazon S3 parlance is referred to as on object
NIT5082 Cloud Security, © Dinesh & Khandakar 6
AWS- Amazon S3
• Object Representation
• Amazon even provides you with an
option to maintain custom metadata
NIT5082 Cloud Security, © Dinesh & Khandakar 7
AWS- Amazon S3 Bucket and Objects
• Amazon S3 enables you to store data in 3 easy
steps:
NIT5082 Cloud Security, © Dinesh & Khandakar 8
AWS- Amazon S3 Bucket and Objects
NIT5082 Cloud Security, © Dinesh & Khandakar 9
AWS- Creating an Amazon S3 Bucket
Click the link below to watch the video
[Link]
id=9c92b872-0172-4daa-9e73-ac5b005c12d5
NIT5082 Cloud Security, © Dinesh & Khandakar 10
AWS- Amazon S3 Process, Bucket
usage and its objectives
• We have permission to access AWS region, and use a bucket
and its objects.
• Low-priced reduced redundancy storage (RRS) helps duplicate
objects across a small number of locations in a region.
NIT5082 Cloud Security, © Dinesh & Khandakar 11
AWS- Amazon S3 storage class
• Offers 3 Storage Classes
• Amazon S3 offers configurable policies for handling data throughout its
development. Once the policy is set, the data would be migrated to the
most appropriate storage class and without any changes to the application.
NIT5082 Cloud Security, © Dinesh & Khandakar 12
AWS- Amazon Storage Service Pricing
• Server-side Encryption or AES-256 Standard can
be used to encrypt stored objects.
• Security breach while transacting data can be
avoided using SSL connections.
NIT5082 Cloud Security, © Dinesh & Khandakar 13
AWS- Amazon Glacier
• Its an economic storage solution to store data that
would remain forever but rarely accessed.
• AWS bills you only for the used data or storage, and
current least price for storing data in Amazon Glacier is
$0.007 per gigabyte per months.
NIT5082 Cloud Security, © Dinesh & Khandakar 14
AWS- Amazon Glacier
• Types of data that Amazon Glacier Support.
• Archiving off-site enterprise information
• Backing up media assets
• Storing research and scientific data
• Preserving digital data
• Replacing magnetic tapes
NIT5082 Cloud Security, © Dinesh & Khandakar 15
AWS- Amazon Elastic File System
(Amazon EFS)
• The Amazon EFS service enables storing Amazon
EC2 instances.
NIT5082 Cloud Security, © Dinesh & Khandakar 16
Demo - EFS
[Link]
NIT5082 Cloud Security, © Khandakar Ahmed 17
AWS- Amazon Elastic File System
(Amazon EFS)
• The Amazon EFS Benefits
• Amazon EFS helps you to be charged only for your data
usage or storage.
NIT5082 Cloud Security, © Dinesh & Khandakar 18
AWS- Amazon Storage Gateway
• Provides uninterrupted and secured connection
between cloud storage and datacentres (on
premise).
NIT5082 Cloud Security, © Dinesh & Khandakar 19
AWS- AWS Storage Gateway
• Amazon Storage Gateway is a scalable and
economical solution of your office IT and AWS
storage infrastructure.
• They offer:
NIT5082 Cloud Security, © Dinesh & Khandakar 20
AWS- AWS Storage Gateway
• The AWS Storage Gateway service is an ideal
choice to :
NIT5082 Cloud Security, © Dinesh & Khandakar 21
AWS- AWS Storage Gateway
• There are three configurations that AWS storage
gateway support:
• Gateway-Cached Volumes
NIT5082 Cloud Security, © Dinesh & Khandakar 22
AWS- AWS Storage Gateway
• Gateway-Stored Volumes
• Gateway VTL
NIT5082 Cloud Security, © Dinesh & Khandakar 23
AWS- AWS Import/ Export
• This service allows easy transfer of considerable
volumes of data from and to AWSA without using the
internet, but physical storage devices.
NIT5082 Cloud Security, © Dinesh & Khandakar 24
AWS- AWS Import/ Export
• Snowball
• It is a cost effective data transfer solution. Capable of
transferring up to 50 terabytes of data.
• Statistics says its 5 time cheaper than using
high speed internet connection.
NIT5082 Cloud Security, © Dinesh & Khandakar 25
AWS- AWS Import/ Export
• Snowball
• How to transfer data using Snowball??
NIT5082 Cloud Security, © Dinesh & Khandakar 26
AWS- AWS Import/ Export
• Snowball are Ideal for:
• Expensive network infrastructures upgrades.
• Huge backlog of data
• High speed internet connection is not available
According to AWS, if the data transfer time using a high
speed connection s approximately one week, then we
should go for Snowball.
NIT5082 Cloud Security, © Dinesh & Khandakar 27
AWS- AWS Import/ Export
• Disk:
• First service offered by the amazon to transfer data
using UPS or mail.
• Transfer data to and from on premises data centre
using Amazons internal high speed network.
• Ideal for transferring small amount of data
• Disk can import data to Amazon S3,EBS and Glacier.
• Disk can export data from Amazon S3 to on premise
data centres.
NIT5082 Cloud Security, © Dinesh & Khandakar 28
AWS- Elastic Block Storage (EBS) of
AWS
• Amazon EC2 Instance Storage is an ephemeral storage
offering instance data shorting.
• EBS is used mainly in stateless web hosts, transcoding,
caching, and High Performance Computing, or HPC.
NIT5082 Cloud Security, © Dinesh & Khandakar 29
AWS- Elastic Block Storage (EBS) of
AWS
• Two types of EBS constructions
NIT5082 Cloud Security, © Dinesh & Khandakar 30
AWS- Elastic Block Storage (EBS) of
AWS
• Two types of SSD constructions
• Provisioned IOPS and EBS Volume
NIT5082 Cloud Security, © Dinesh & Khandakar 31
Demo - EBS
[Link]
NIT5082 Cloud Security, © Khandakar Ahmed 32
AWS- Elastic Block Storage (EBS) of
AWS
• EBS Volume size and Snapshot
NIT5082 Cloud Security, © Dinesh & Khandakar 33
Acknowledgement
• I acknowledge that the content is carried from
different sources and are referenced. The work is
originally done by the authors. I summarize the
relevant and significant material from the
acknowledged references.
NIT5082 Cloud Security, © Khandakar Ahmed 34