The Cloud Pod is your one-stop-shop for all things Public, Hybrid, Multi-cloud, and private cloud. Cloud providers continue to accelerate with new features, capabilities, and changes to their APIs. Let Justin, Jonathan, Ryan and Peter help navigate you through this changing cloud landscape via our weekly podcast.
Welcome to episode 364 of The Cloud Pod, where the forecast is always cloudy! Ryan is out trying to find Hotel California, but Justin, Matt, and Jonathan are in the studio today, and they’ve got a lot of news and some great convo – from privacy in the digital age to Nova models (and a lot of employees) getting the ax, there’s a ton of stuff to cover this week, so let’s get started!
Titles we almost went with this week* Windows Tattletale ID Has No Off Switch * Amazon’s Nova Models Enter Witness Protection Program * Your PC Has a Secret Name, and Windows Won’t Erase It * CloudWatch Watches Your ALB Like a Hawk * One Log Group to Trace Them All * Duress Code Wipes Phone, Activist Wipes Out Legally * Project Perception Sees Vulnerabilities Before You Even Blink * Azure DDoS Protection Trades Autopilot for Manual Control * Kernel Panic Optional, CVE Overload Mandatory * OpenAI’s Keypad: Key Confusion for 230 Dollars * China DIYs Its Way Around DUV Export Bans * OpenAI Hugged some serious Face * Google must pay the EU $1 Billion… that’s a lot of Crepes * Amazon apparently doesn’t believe in their AGI
A big thanks to this week’s sponsors:
We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our Slack channel for more info.
Follow Up 01:10 Linux kernel team publishes 432 CVEs in two days
01:46 Justin – “Everyone is doing a lot of patching these days.”
04:42 I tried out OpenAI’s new AI keypad — which will be fun for some coders and slightly mystifying to everyone else
06:28 Justin – “I’m glad it wasn’t just our mocking it preemptively; everyone else agrees it’s a novelty.”
General News 07:39 Hugging Face Says IT Turned to Chinese AI in OpenAI Hack
09:22 Justin – “I wonder, when you talk about like you losing control of an AI agent, that seems like a f failure in your control environment.”
15:32 Google hit with $Google hit with $1 billion in fines as EU braces for Trump battle
20:36 ASML Shares Slide After Information Report on China Producing DUV Tool
22:55 Jonathan – “I wish there weren’t export controls. There’s clearly not enough capacity to make silicon at the moment.”
AI Is Going Great – or How ML Makes Money 24:37 Introducing OpenAI Presence
26:51 Introducing Claude Opus 5
27:48 Justin – “I think we’ve now reached the point where the improvements are more iterative. They’re more in the harnesses around the foundational model, like how they do ingestion of data, how they parse the data into the model, how they do lookups of the data… Opus Five, like the one I was like, wow, this is really just not that impressive of an upgrade.”
30:46 Our position on open-weights models
32:28 Justin – “I’m glad you clarified your position, but I still think your position is BS.”
AWS41:22 AWS Network Load Balancer now supports Listener Rules for custom traffic routing
41:38 Justin – “The features we’ve been asking for forever, I’m going to credit the AI. It’s a quality of life improvement I can’t see anyone doing without AI.”
43:18 Amazon CloudWatch Logs now supports Application Load Balancer logs
46:06 Accelerating AWS Network Firewall troubleshooting with AWS DevOps Agent
48:16 Amazon lays off some employees in its AGI unit
Con’t Amazon Rethinks Its AI Strategy and Winds Down Many in-House Models
49:59 Jonathan – “In a way I think that Amazon did themselves a disservice by not releasing an open-weight model; because if Amazon released a fairly decent competitor to something like Llama, I’m much more likely to have used that locally and then used it in the cloud for deployments than anything else.”
GCP53:00 What’s new in Managed Agents in Gemini API
Azure59:25 Public Preview: Standard service endpoint
1:00:27 Jonathan- “It must be so hard for Microsoft to write these press releases and make them sound like something new without giving any clue what it actually is or that everyone else has had this for years.”
1:01:51 Public Preview: Azure DDoS Protection custom policy
1:04:08 Introducing Azure Front Door edge actions – Bringing secure, programmable logic to the edge
1:04:45 Matt – “This is another one that burned me when I was trying to design on Azure. I was doing a simple, like, return the IP address, and instead of just doing a simple function at the edge or Lambda at the edge, I had to write a whole thing that passed traffic to a static, like it was a whole thing. It amazes me how long it took them to catch up here.”
1:05:32 Public Preview: Advanced platform metrics in Azure Monitor
1:07:30 Generally Available: Resource placement in Azure Kubernetes Fleet Manager
1:08:38 Jonathan – “If I was an Azure user I’d be happy with something like this, because I can still have deployments that are separate in multiple regions, but I only actually have one deployment that I have to manage. It just fans out and deploys it in those multiple regions, which is kinda nice. Instead of having to do four separate deployments, I just do one and then it manages the updates across the other clusters. So yeah, it’s actually not a bad feature.”
1:09:19 Rethinking security for the age of AI
Cloud Journey 1:10:53 Agentic AI ROI: A Framework for Executive Leaders
After Show1:21:49 Microsoft Confirms Windows Has a Global Device ID You Can’t Turn Off
1:23:07 Activist charged with felony after giving border agent “duress code” that
wiped his phone:
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 364 of The Cloud Pod, where the forecast is always cloudy! Justin and Matt are in the studio this week to bring you all the latest in cloud and AI news, including (surprise) astronomical AWS bills, Kimi K3 and what it means for Enterprise AI, and lots of security news! All that and so much more, so let’s get started!
Titles we almost went with this week* Cache Rules Everything Around NFS Now * Lambda Says BYOB, Bring Your Own Bucket * Henrico’s Power Struggle: Data Centers 37, Schools 0 * Cloud Run Fails Over Faster Than Your Excuses * 570 Patches, One Registry Hive Nightmare * GuardDuty Gets a Detective Agent, No Trench Coat Required * Kimi K3 Aims to Moonwalk Past Opus 4.8 * Terraform Gets Policy Muscle, Ditches the Rego Diet * CloudWatch Watches Your AI Coders Code * Watt A Way To Treat A School District * Your Cloud Bill… 1 BILLION DOLLARS * Not a way I want to wake up rogue cloud bills * Skype is EOL … wait I thought I died 3 times already * Our newest superhero CODEMENDER!!
A big thanks to this week’s sponsors:
We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our Slack channel for more info.
General News 00:49 Amazon fixing bug that billed some AWS customers billions of dollars
01:29 Justin – “Amazon doesn’t bill you in the middle of the month, so it’s a pretty low risk that you were gonna get billed or invoice directly on that date, unless you happen to already be overdue on a payment and you were happening to update your credit card at the same time. I don’t think that’s really a big risk for this particular scenario.”
05:04 County With 37 Data Centers Asks Schools to ‘Conserve Electricity’
08:20 Justin – “Don’t take power away from school kids. And… it sounds like in a lot of the newer municipalities where they’re agreeing to put these data centers in, they’re saying we’re not pushing rate increases down onto the general population; that if rate increases are required because you’re using so much power, you’re gonna pay for it, which I think is the right way to handle that.”
AI Is Going Great – or How ML Makes Money 09:54 GPT-Red: Unlocking Self-Improvement for Robustness
11:15 Justin – “The ability to attack and attack from multiple vectors and chain attacks is only increasing dramatically at this point.”
12:19 OpenAI’s first branded hardware is… a light-up keyboard?
15:55 Moonshot’s upcoming Kimi 3 is expected to close the gap with Anthropic’s Opus 4.8
17:00 Justin – “The overall stock market has not been favorable to this this week because again, there’s a lot of companies investing a lot of capital, and these cheaper models put that business model at risk. And so the market is appropriately reacting this week. But I’m definitely excited to get my hands on Kimmy K3.”
18:51 Kimi K3 Tech Blog: Open Frontier Intelligence
20:24 Introducing the ChatGPT for small business program
Security 22:08 Windows 0-day drops the same day Microsoft releases record number of patches
22:40 Justin – “570 security patches is a LOT of security patches, and I can definitely thank AI for all of those patches.”
Cloud Tools27:07 1Password for Claude: Give Claude access without giving up your credentials
27:24 Justin – “It exists – I can’t make it work.”
28:39 Introducing tfpolicy: A declarative policy workflow built for Terraform
29:58 Justin – “I suspect that Sentinel is going to go away – or at least be heavily deprecated in favor of this method.”
AWS32:27 AWS Lambda announces self-managed code storage
33:50 Matt – “I’ve done a lot of development, when Terraform first came out, I would have my Lambda built into my Terraform. I would just do a Terraform Ply every time, which would just zip up the folder and shove it into Lambda. So I’ve never hit that limit.”
35:01 Amazon MQ now supports configurable storage for RabbitMQ brokers
35:23 Justin – “We talked about RabbitMQ last week, and I said, yeah, I don’t care about that. And apparently Amazon still does enough care and cares enough to still build features for it. So there you go.”
36:19 Amazon CloudWatch Logs announces intelligent tiering for storage
37:18 Amazon Cognito now supports importing users with password hashes
38:09 Justin – “Thank God. This was such an annoyance.”
39:38 AWS Control Tower Account Factory for Terraform now re-applies customizations when accounts move between OUs
40:03 Justin – “Thank you. This was dumb.”
41:06 AWS Sustainability service now includes water withdrawals data
42:50 Amazon S3 removes 30-day minimum for transitions to S3 Standard-IA and
S3 One Zone-IA
43:48 Matt – “It’s a great quality of life improvement. I’ve definitely inadvertently set things to these and then deleted them or moved them and then got hit with a fee… I’ll take the win and move on in life.”
45:20 Amazon CloudWatch announces coding agent insights
46:46 Justin – “The token maxxing era was glorious for moments – and now it’s over.”
46:56 Selectively log network activity events by identity in AWS CloudTrail
47:41 Matt – “It’s great that you can actually start to select what you need. There was so much noise in there, and finding stuff was like a needle in the haystack, even once you followed all their guides and pumped it to Athena and then to your S3. You had Athena, and we went down that whole path and then tried to search it, but still finding the denial in there…”
49:16 Introducing the Amazon GuardDuty investigation agent: on-demand AI-powered threat assessment
50:09 Matt – “This sounds pretty cool. I’d be interested in what it’s going to cost in the long term because it always worries me with that, but I think it can have a lot of value.”
51:15 Amazon SES introduces pricing plans
GCP54:09 NotebookLM is now Gemini Notebook
54:41 Justin – “This is just this is a no-brainer. Like, yes, you take Notebook, you turn that into more of a CoWork type solution on top of Gemini Enterprise, you rebrand it, and now everyone thinks it’s all one product; which Google desperately needs brand marketing help on this stuff.”
56:14 Cloud Run multi-region services enhanced for high availability
58:07 3.6 Flash, 3.5 Flash-Lite, and 3.5 Flash Cyber
59:19 Justin – “If you’re into the flash model… you don’t need to use the Gemini Pro models very often. Although, like image generation, I use the more pro image models typically, because they listen to me better than the flash ones do. But nice to see these are getting updated once again.”
1:00:00 Now in preview: Find and fix software vulnerabilities with CodeMender
Azure1:01:49 Microsoft expands Azure AI and HPC infrastructure with AMD
1:02:17 Matt – “Their naming convention makes sense if you understand and you have the translator for it.”
1:03:01 Reminder: Skype for Business 2015 and 2019 ESU Program Ends in
October 2026
1:03:39 Justin – “I thought it died like three times already.”
Emerging Clouds1:04:48 Upcoming GPU Pricing Updates
1:05:25 Justin – “This is just the reality of the continuing pressure on the compute market… unfortunately it’s happening to DigitalOcean, but it’s also happening everywhere.”
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 363 of The Cloud Pod, where the weather is always cloudy! Justin, Matt, and Ryan are in the studio this week to bring you all the latest in cloud and AI news, including Amazon SQS turning 20, Grok solving a Rubik’s cube, and Cloudflare’s new “spot the bot” tool, which harnesses checks notes monitoring mouse movements? Ok… It’s been a busy week in the cloud, so let’s get started!
Titles we almost went with this week* AI Speed Dating: Grok Wins, Cube Loses * Grok, GPT, and Claude Walk Into a Rubik’s Cube * One Gateway to Rule All the Claude Credentials * AWS Puts a Bouncer on the Claude Code Party * Claude Solves the Cube, GPT Just Sees Dark Faces * Cloudflare Catches Bots by Their Shaky Hands * GuardDuty Sniffs Out Bedrock Bandits at Last
A big thanks to this week’s sponsors:
We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our Slack channel for more info.
General News 01:36 Former GitHub CEO Unveils Distributed Git Network Built for AI Coding Agents
03:31 Justin – “Get fired for having all these issues, and then solve the problem anyway.
06:03 Satya Nadella on X: “https://t.co/xv6csf1SbV”
07:26 Justin – “I get what he’s saying, but I also, you are selling one of the largest LM models that’s literally sucking up all this knowledge and doing exactly what you just complained about. So what’s your solution, Satya? That’s what I want to know.”
AI Is Going Great – or How ML Makes Money 10:59 We made Grok 4.5, GPT-5.5, and Claude build the same apps
12:29 Ryan – “…this is one of those things I think that when you’re using multiple models in your development or playing around, you always have this thought: it’d be interesting to see what, given the same problem, and see what the differences are. And so it’s nice to see that someone actually did it.”
15:48 Redesigning Claude Code on desktop for parallel agents
AWS20:50 Introducing Claude apps gateway for AWS
22:04 Ryan – “Hey Anthropic, maybe this should just be in your product? Ever thought of that?”
24:22 AWS Builder Center Now Offers Free Sandbox Environments:
25:09 Ryan – “It’s only what, a decade after GoogleBot Quick Labs that they’re bringing this back? A little behind on this one.”
26:59 OAuth support for the AWS MCP Server
30:49 Building secure AI agents at scale: Introducing Loom for AWS
31:54 Justin – “This is when Amazon gives you a sort of nice thing, but batteries not included.”
33:50 Amazon SQS turns 20: Two decades of reliable messaging at scale
35:16 Ryan – “I love SQS. It’s one of those foundational services that, when in Amazon, I use in every application seemingly that I design just because it’s so easy to sort of build either a state machine off of Lambda or some containerized event-based coordination across multiple components. Great. I love this.”
40:51 AWS Security Hub now provides AI inventory for organization-wide visibility of AI assets
44:24 Introducing Amazon GuardDuty AI Protection for AWS AI workloads
45:09 Ryan – “I always laugh that they have to – in every single blog post – they have to explain the difference between Security Hub and Guard Duty because it’s sort of like the same thing. But you know, it’s just what Amazon does. They have Guard Duty for the detections, and they have config, and they have all these different things that feed into Security Hub as your sim kind of, you know, so it’s sort of funny.”
GCP49:07 New ways to keep Google Cloud certs current
53:48 Google Cloud Run sandboxes are in public preview
55:00 Ryan – “This is crazy cool. I love this. If you have an agent execution inside your own cloud container, it has access to everything. And it’s so easy to do prompt injection, you know, and if you don’t catch that in your application, the user on the other side of that application using the app could just get all of that system information directly. And so this is a way to sort of secure against that, which is fantastic.”
55:54 Introducing k8s-aibom on GKE for automated AI bills of materials
57:09 Ryan – “I look forward to having to roll this out immediately to address shadow AI.”
Azure58:54 Azure Monitor Observability Agent goes autonomous (preview)
1:01:07 Accelerate modern Linux workloads with Azure Files
1:02:01 Justin – “I really, really had hope that we were we were on this trajectory that would end up with there, you know, being no SIFs or NFS file shares ever again, like or necessary, and now it’s all coming back with like such a vengeance. It’s so crazy, ’cause it’s like we were so close to everything’s gonna be optic storage, and now AI screwed it all up for everybody.”
1:03:24 Tokenomics | The new AI currency & your options explained
1:03:57 Justin – “Also, a big thing that impacts your token costs – caching.”
Emerging Clouds1:06:42 Improving Smart Tiered Cache for Public Cloud Regions
1:07:47 Ryan – “This is neat, like if you’re running a globally distributed app, this has always been sort of an issue. Like trying to manage your multi-regions and your availability and blue-green deployments even.”
1:08:40 Introducing Precursor: detecting agentic behavior with continuous client-side signals
1:09:36 Justin – “If you are a CloudPod host, and you add this to your thing and you break our bot, I’m just gonna stop covering you.”
After Show 1:08:40 RFC 10008: The HTTP QUERY Method | RFC Editor
Welcome to episode 362 of The Cloud Pod, where the weather is always cloudy! Justin, Jonathan, and Matt are in the studio, and this week we’ve got slightly less AI, but much more data news – a trend Jonathan is sure will continue. Join us as we explore Kubernetes updates, the end of Amazon Mechanical Turk, and the last of the physical media for game consoles, plus more. There’s a lot to cover, so let’s get started!
Titles we almost went with this week* Going Cold Turk-ey * Kubernetes Rollbacks Let You Ctrl-Z Your Cluster * Answer Engine Optimization Is the New SEO Game * Turk-ing Point: Amazon Pulls the Plug * Stop Chasing Ephemeral IPs in Your EKS Cluster * Firewall Rules That Know Your Pods by Name * CloudWatch Pipelines Finally Speaks Fluent OpenTelemetry * Sony Discs You, Keeps Your Money Forever * EKS Upgrades Finally Get an Undo Button * Azure Embraces Chaos, Calls It Studio Time * Mechanical Turk Turns Off The Lights For Good * There Was Never Anyone Inside the Box * KV Cache Me If You Can on GKE * AWS Security Hub Says Hello to Azure, Finally * Amazon Cancels the Internet’s Oldest Side Hustle * Amazon Prime’s Next Delivery: A Pink Slip for the Turk * Business as Usual – Azure announces Chaos Studio? * Hello sunshine, my old Azure
A big thanks to this week’s sponsors:
We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our Slack channel for more info.
Follow Up 01:36 Amazon’s Mechanical Turk to stop accepting new customers – and not Even AI can save it
02:14 Justin – “If you ever actually used the service, you’ll know that both the Turks interface that you actually did work, and the setting up the jobs was terrible anyway. It was always very difficult to use, and they never made it easier over the years. So I don’t know if they’ve ever really been investing in it heavily. But it’s definitely been around for a long time.”
AI Is Going Great – or How ML Makes Money 04:11 New analytics and cost controls are available for Claude Enterprise
05:08 Justin – “You could put it in Datadog or in CloudZero or, you know, Cloudability, but you could also just have Claude write you a dashboard.”
06:50 Claude Cowork on web and mobile: hand off work anywhere
07:15 How people are using Claude Cowork
08:39 Jonathan – “I like the back and forth between mobile. I think one of my pain points has been starting on desktop, not necessarily with Cowork, just in general; it could be just a regular chat, as long as it’s got access to local tools. And then you sort of walk away from the computer, you go somewhere, and then it says, Hey, I finished this thing and you send it a new message, and all of a sudden it switches the tool context to the mobile device instead of the desktop, where it has access to all the files that it was working on. And so now you’re kind of in this weird limbo until you get back to your PC.”
AWS11:08 Upgrade Amazon EKS clusters with confidence using Kubernetes version rollbacks
14:45 Amazon CloudWatch pipelines now support processing and enriching OpenTelemetry metrics
15:22 Justin – “They could have just fixed the issue where you can’t add additional metadata to the tagging. That would have been a solution for this too. But okay, OTEL. Let’s do it that way.”
19:53 Amazon ECS now provides real-time deployment observability in the AWS Management Console
23:07 Enforce zero data retention on Amazon Bedrock with Bedrock Projects and service control policies
24:00 Jonathan – “I feel like the past couple of years have been AI stories just dominating; I think data stories are going to be dominating the next couple of years. It’s going to be about access to data, sharing data. That’s my prediction.”
25:00 AWS Security Hub extends unified security management to Microsoft Azure
25:46 Justin – “Congrats, Amazon, for joining the rest of us.”
GCP26:45 Boost Performance and Lower Costs with AlloyDB AI Functions
29:15 Matthew – “I just don’t like the idea that my database is running AI queries for me.”
32:48 Scaling LLM Inference: Multi-Node KV Cache Offloading with GKE & Managed Lustre
Azure33:57 Microsoft Frontier Company: AI engineering that amplifies and protects your intelligence
34:59 Jonathan – “The cynic in me thinks that they’re doing this as a separate company so that in eighteen months when AI can replace those forward-facing engineers, they can lay them all off without it damaging Microsoft’s own reputation as an employer. This has gotta be a this has gotta be a really short-term thing. This has gotta be information gathering.”
37:21 Proving application resilience on Azure with Chaos Studio
39:09 Jonathan – “Microsoft is dead to me.”
42:53 Microsoft Entra Backup and Recovery is now generally available
43:29 Jonathan – “How did they not have this before?”
44:16 Microsoft’s new Azure Linux 4.0 is here, and it could replace Windows Server in the enterprise
44:54 Justin – “At the end of the day, is this thing gonna replace Windows Server? Probably not. ZDNet seems to think it will, but I don’t think so. And the only thing I’m gonna use this for is probably to go into my WLM on my Windows box when I rarely need Window an Ubuntu prompt on my Windows box.”
Emerging Clouds48:19 Your site, your rules: new AI traffic options for all customers
48:48 Content Independence Day, one year on: building the business model for the agentic Internet
49:07 Making AI search smarter
49:25 Announcing the Monetization Gateway: charge for any resource behind Cloudflare via x402
After Show 51:28 Sony announces end of PlayStation discs, parts of digital store in the sameday – Ars Technica
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 361 of The Cloud Pod, where the weather is always cloudy! It’s a full house tonight – Justin, Ryan, Jonathan (and eventually) Matt are all in the studio this week to bring you the latest in cloud and AI news, including a greenlight for Mythos, an ACME product that doesn’t involve an anvil, and a couple of new models from Anthropic and OpenAI. There’s a lot to cover, so let’s get into it!
Titles we almost went with this week* Azure EU Capacity Is Full. Please Try Another Continent * OpenAI Names Models After Planets, Charges Like a Rocket * Gemini Spark Now Watches Stocks While You Touch Grass * Three Tiers Walk Into a Bar, Sol Picks Up the Tab * Anthropic Drops Sonnet 5 and Bugs Fix Themselves Now * Your Mac Has a New AI Overlord Named Spark * CloudFormation Finally Stops Waiting Around Like Your CI Pipeline * AI Agents Finally Get Their Own Office Space * No Room at the Cloud Inn for EU Workloads
A big thanks to this week’s sponsors:
We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our Slack channel for more info.
Follow Up 02:02 U.S. government gives Anthropic green light for limited re-release of Mythos 5
02:34 Anthropic test found vulnerabilities in classified US systems in hours
03:53 Justin – “This is purely a federal concern. This is a bunch of people who own FedRAMP environments in the government who all of a sudden are like ‘I all of a sudden have a lot more vulnerabilities that I can’t fix quickly – this causes me problems’… so now you ban the tool, and now when it comes back you can control who has access and mitigate your risk.”
AI Is Going Great – or How ML Makes Money 11:34 Previewing GPT-5.6 Sol: a next-generation model
12:57 Ryan – “So they’ve sort of handicapped it, and that’s why it’s ok? That’s interesting…”
14:40 Introducing Claude Sonnet 5
Security 18:05 The New MCP Specification: What Security Teams Must Prepare For
19:43 Ryan – “I don’t think anyone should offer a public MCP server. It should just be single-use.”
Cloud Tools23:08 Boundary 1.0 releases RDP session recording and improved management
24:44 Ryan – “I’ve long been pushing for privilege access management in terms of not having standing permissions and having sort of just-in-time approval flows and that kind of stuff, which is usually in the Privilege Access Management tools. And it’s a natural progression to me to move that to include agent identities as well.”
AWS29:14 Amazon EC2 announces AMI Watermarks for improved AMI governance
30:16 Ryan – “The biggest advantage of this is that you can do organizational rules based on the data instead of the text files. But yeah, we absolutely, in every image pipeline that we’ve built collectively, we absolutely had this.”
32:52 AWS WAF adds support for Amazon Bedrock AgentCore Gateway
33:44 Ryan – “I got sort of horrified by this, like, wait, moving agentic applications to production where AI endpoints are publicly exposed? Don’t do that. Don’t do that. Why would you do that?”
35:16 AWS Service Availability Updates
40:30 Automate public TLS certificate issuance with ACME support in AWS Certificate Manager
41:40 Jonathan – “I love this. This is immediately relevant to me. As of yesterday, I tried to use an ACM at an NLB to route some traffic. I was like, no, this isn’t gonna work; because I needed something else to work. I pivoted to this cargo container and let’s encrypt, and this is just a nightmare. But then you only get five certificates a week, and that sucks for a dev cycle.”
44:58 Accelerate your infrastructure deployments by up to 4x with AWS CloudFormation Express mode
45:20 Justin – “Maybe we should fix the deletion problem?”
50:37 Announcing general availability of Amazon WorkSpaces for AI agents
51:35 Ryan – “Did they name this YOLO as a service?”
GCP1:16:37 Backup and DR service adds cross-region backups
55:51 Securing agentic AI: What’s new in VPC Service Controls
57:02 Ryan – “I kind of like this, but it’s also kind of silly – the ability to specify your MCP attribute when you’re already defining a policy that lists the API method. So l I guess it allows you to say MCP tool is read-only and then API method star.”
59:27 Nano Banana 2 Lite and Gemini Omni Flash available
59:40 Justin – “If you remember my prior experience with Gemini Omni cost me a lot of money; this new one is only 10 cents per second of video output, so I won’t break my credit card the next time I want to use it.”
1:00:34 Gemini Spark updates: macOS launch, connected apps and more
1:01:28 Ryan – “And it’s a standalone tool. And so it’s completely separate from the existing sort of Gemini Enterprise platform and whatever Gemini shorthand they’re using for Vertex AI these days, so it will have all the same problems as something that can arbitrarily execute on your computer. Sweet!”
Azure1:02:09 EU Azure Regions Capacity – June 2026 | Aidan Finn, IT Pro
1:03:22 Justin – “How do we say Russia without saying Russia?”
1:04:57 Public Preview: Application Gateway for Containers
Cloud Journey 1:06:34 Two pizzas and a prototype: How agentic AI is rewiring Amazon’s teams
and upending its traditions
A return to two-pizza culture | All Things Distributed
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 360 of The Cloud Pod, where the weather is always cloudy! Justin, Matt, and Jonathan (for a bit, anyway) are in the studio this week bringing you all the latest in cloud and AI news, including a bunch of analytics, some upgrades courtesy of AI agents, and some news from Kafka. There’s a lot to cover, so let’s get started!
Titles we almost went with this week* MSK Agent Skills Make Kafka Migration Less Kafkaesque * One Token Pool to Rule All Claude Tools * STRIDE Into Security Without Leaving Your IDE * Your Code Must Be This Stable to Enter Production * ChatGPT Gets a Budget So Karen Can’t Break the Bank * One Platform to Train Them All and in Darkness Deploy Them * Who Let the Agents Out? Snowflake Knows * Kafka Whisperer Now Comes With an AI Upgrade * Stop Reading Docs, Let MSK AI Do the Kafka Math * Your AI Wrote That Pull Request, Own It * Claude. Tag, you’re it! * See, there are more features that we can add to s3
A big thanks to this week’s sponsors:
We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our Slack channel for more info.
AI Is Going Great – or How ML Makes Money 03:45 Claude Design now stays on brand for daily work
05:07 Matt – “…when I’ve used it – just playing around with it, it produced really nice things. I just used half my session tokens real fast with iterations and things like that. So I would be careful using it, but it does great front-end design.”
Data+AI Summit – Top Announcements 07:31 Introducing Lakehouse//RT: Real-Time Performance on a Unified Lakehouse
07:39 Introducing Genie ZeroOps: Put your data and AI operations on autopilot
07:49 Introducing OpenSharing: the Next Evolution of Delta Sharing for the Agentic Era
07:58 Lakeflow: A new era of agentic data engineering
08:07 Introducing Genie One, Genie Agents, and Genie Ontology
08:33 Unifying Data and Governance in the Agentic Era: What’s New with Azure Databricks
08:42 Announcing Lakebase Search: agent-native retrieval built into Lakebase Postgres
08:51 AI governance at Data + AI Summit 2026: What’s new with Unity AI Gateway
08:56 Agent Bricks: Data + AI Summit 2026
What’s new with Unity Catalog at Data + AI Summit 2026
Agentic AI Platform & Developer Tools
Real-Time Data & Lakehouse Architecture
lakebase\_vector and lakebase\_text), enabling agents to treat search as a live operational database with instant indexing of the latest writes.Governance, Security & Compliance
Agentic Operations & Data Sharing
Agentic Marketing, Apps & BI
Ecosystem, Partners & Customer Stories
14:58 New usage analytics and updated spend controls for enterprises
15:06 Justin – “…you might think that’s very FinOps-y of them, and you’d be right; because they worked with Aptio to basically build out this capability along with Anthropic and others in the focus groups from FinOps.”
17:06 Agent identity: a new access model for autonomous, team-wide AI
18:22 Justin – “It’s a little bit clunky right now, mostly tied to limitations I think of how bots interact with Slack, but I see the potential.”
Security 20:08 Temporary Cloudflare Accounts for AI agents
Cloud Tools22:59 Introducing the Cloudflare One stack: agent-powered deployment
23:48 Justin – “This announcement also just taught me that Cloudflare has a Zscalar and Netscope competitor, which I did not know.”
AWS28:21 Amazon S3 annotations: attach rich, queryable context directly to your objects
29:57 Justin – “This is a pretty handy improvement. I’d kinda got to the point where I thought S3 had all the features it coud possible have, and they just keep surprising me.”
31:15 Introducing AWS Continuum for security at machine speed
32:01 Matt – “This is extremely nice. It reminds me a lot of what GitHub did with their security feature where they’re trying to help you prioritize…So actually prioritizing vulnerabilities, because if you have a large code base, it’s going to happen. Prioritization is the real key here.”
37:35 AWS Security Agent adds threat modeling, Kiro power and Claude Code plugin, and more
38:29 Justin -” It is not terribly priced for what it does; these are tools you’re spending a lot of money on, like threat modeling. Overall, I was not too scared off by the pricing on this one.”
40:24 AWS DevOps Agent adds release management capabilities to assess code changes before production (preview)
47:04 Introducing Amazon Bedrock Managed Knowledge Base for faster, more accurate enterprise AI applications
48:26 Justin – “They’ve been on a journey with this one, trying to get something good.”
49:42 Amazon CloudWatch Synthetics now supports multi-location canaries
52:11 Run isolated sandboxes with full lifecycle control: AWS Lambda introduces MicroVMs
53:28 Matt- “This is one of those things it sounds really cool, but I don’t have a good use case to play with it yet.”
55:13 Amazon MSK now offers AI Agent Skills to help developers operate MSK efficiently and accelerate migrations to MSK
56:16 Justin – “I welcome this new feature. It’s great.”
1:01:29 Amazon CloudWatch Logs supports managed syslog ingestion
1:01:43 Justin – “Another feature built, I imagine, by AI, because this is something I’ve asked for for years. I’ve basically just come to the conclusion that everything I’ve wanted for years that doesn’t have enough revenue… is just being written by AI Agents over there.”
GCP1:03:07 Google AI Studio’s Interactions API for Gemini models and agents
1:04:20 Justin – “Well, that’s nice that Google didn’t kill the legacy one.”
1:05:15 Query logs and traces with SQL in Observability Analytics
Azure1:25:32 What’s new with Microsoft in open source and Kubernetes at Open Source Summit and KubeCon India
1:08:07 Matt – “A lot of these are just nice quality of life. Being able to provision your namespace in ARM, especially when you’re redeploying across multiple environments, is a nice quality-of-life improvement.”
1:09:15 Rethinking cloud operations with agentic observability
Cloud Journey 1:11:01 Running an AI-native engineering org
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 359 of The Cloud Pod, where the weather is always cloudy! Justin and Ryan are in the studio this week to bring you all the latest in cloud and AI news, including AI governance, FinOps’ final conference, and even an earnings story courtesy of Oracle. These and so much more – so let’s get started!
Titles we almost went with this week* You Shall Not Pass Unless Your Network Policy Says So * One CLI Wizard to Rule All AWS Agents * AWS WAF Turns AI Crawlers Into Cash Cows * No More Delete and Pray for AWS Cost Reports * Stop Rolling Your Own Certificate Rotation AWS Did It * Tux Gets a Security Checkup, Microsoft Antivirus Style * Coal Plant to Cloud Plant Google’s Billion Dollar Glow Up * FinOps Grows Up and Gets an AI Spending Problem * Tokenomics Foundation Wants to Bill AI by the Word * Sweet Home Alabama Now Runs on Google Cloud Infrastructure
A big thanks to this week’s sponsors:
We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our Slack channel for more info.
General News02:53 Microsoft restricts Claude Fable for employees over data retention concerns
04:23 Statement on the US government directive to suspend access to Fable 5 and Mythos 5
05:36 Justin – “…the government sounds like they overreacted as they like to do in this era, and Anthropic doesn’t agree, and they’re going back and forth, and hopefully they get it back. That’s the goal.”
08:51 A frontier without an ecosystem is not stable
09:59 Ryan – “AI is not particularly useful unless you give it access to data, and you can’t give a frontier model access to data, right? You can train it on data and build your own model, but you need some sort of mechanism or platform to set up the rag, to set up any kind of localization or customer state, you know, grounding; like you can’t just put it in there.”
20:07 FinOps X 2026 Day 1 Keynote: The Wild West of AI, Token Economics and the Evolving Role of FinOps
23:10 FinOps X 2026 Day 2 Keynote: From Alerts to Agents
24:41 Justin – “I also don’t know that tokens are going to last forever. It’s lasted longer than I thought it was going to, but I think there’s a lot of pressure for people to explain tokens and how they’re measured, and once you try to do that, it’s very difficult.”
AI Is Going Great – or How ML Makes Money 25:53 OpenAI to acquire Ona
26:43 Justin – “I’d guess this is nice that there’s a third party involved that if OpenAI ever wants to build something on top of all these data centers they’re building for Stargate, this is nice for them. But all the cloud providers are basically giving you this, too. So it’s sort of interesting.”
29:26 Results from first Anthropic Public Record
32:52 Ryan – “I think that trying to make sure that you have a broader exposure to how people are feeling and how people are using it is important, because I think that – especially when you start talking about regulation – you don’t want to regulate it for one type of person or one industry.”
37:53 Kimi K2.7 Code: Open-Source Agentic Coding Model
39:06 Justin – “Kimi 2.6 is one of my favorite open source models for coding, and I use it all the time.”
41:43 Anthropic “pauses” token-based billing for its Claude Agent SDK
23:34 Ryan – “I imagine there are real business problems behind these; capacity and end costs, I’m sure, are a factor. I don’t think it’s all just trying to squeeze every last dollar out of consumers, but I’m not really a big fan of this pricing model.”
Cloud Tools44:12 Route public traffic to private applications with Cloudflare
46:16 Ryan – “I’m a big fan of having gateway access to SSH endpoints for managing jump hosts and bastion, and having stuff that’s quickly stood up and taken down so that you can build inside environments, which is neat.”
AWS47:04 Try the new console experience in Amazon Bedrock, optimized for Anthropic- and OpenAI-compatible APIs
48:07 Justin – “I will tell you that the Bedrock Console – today – is terrible. It is not great.”
52:10 AWS Cost and Usage Report 2.0 now supports table configurations update
52:53 Ryan – “Man, where were all these cost usage optimizations when I had to generate all the reports?”
54:11 Amazon OpenSearch Service launches MCP Apps for agentic observability
54:32 Ryan – “The open search API, if it’s anything like the Elastic Search API, is cumbersome to use. I find it very difficult to sort of query Elastic Search natively. And then you add all that sort of reliability and performance problems we’ve had with log ingestion and that kind of stuff – which still makes me a little twitchy. Enough time has passed where I can sort of talk about it openly now. So I kind of liked the idea of having MCP front that and having an easy way to query that data, where I can just have AI do it for me… which is great.”
56:00 Evaluate AI agents systematically with Agent-EvalKit
58:13 AWS announces AWS Workload Credentials Provider
59:15 Ryan – “It’s great when you’re using ACM natively with Amazon, you know, and the load balancer, and it’s just sort of handled.”
1:00:00 AWS DevOps Agent expands with custom SRE agents and MCP/A2A protocols
1:00:52 Ryan – “Agents like this can be expensive too because there’s a lot of data… so as long as these things can remain affordable, it’s great.”
42:46 Amazon CloudWatch Query Studio is now generally available
1:03:04 Justin – “…this is a cool feature. I’m glad it exists, but please stop calling everything a studio.”
1:03:41 AWS launches Cost Explorer historical data retention for accounts in billing groups
1:04:47 Ryan – “For the 12 people that need this, they’re gonna love it.”
1:06:01 Introducing the Kiro merch store
1:08:14 AWS WAF adds AI traffic monetization capability to help content owners charge AI bots for content access
1:09:28 Ryan – “I understand a news media site – all of that content – you’re going to pay for all of the hosting and all the hits and there’s going to be zero benefit, you’re not going to have any eyes on your page. It’s someone just getting an answer on some other tool, right? So I really do understand it. And they’re already struggling for money. So it does sort of make sense to me that they would need to do something like that. And I think the alternative to this is just blocking that traffic.”
1:14:26 AWS Sign-in now supports resource-based policies and resource control policies
1:15:21 Ryan – “…for SCPs, that’s where the security really wanted just these big overall ban hammers, right? Resource control is something that, I think it brings it a little bit more down to like the cloud team or someone who’s kind of more in line with the runtime, because it allows you to do contextual access based off of resource, right? Instead of granting all of the permissions to any resource, this allows you to specify the resources specifically.“
GCP1:16:37 Introducing DiffusionGemma
1:19:18 Choosing your surface: Antigravity 2.0, Antigravity CLI, Antigravity IDE, or Antigravity SDK
1:19:29 Justin – “Basically, it’s anti-gravity with the IDE, which is what they started with. And then they came out with a CLI. And now they’ve got an SDK and Anti-Gravity 2.0 as the as the desktop app all available to you now.”
1:20:53 Google expands Alabama data center campus, funds community efforts
1:22:22 Justin – “…sustainability now becomes how do we make people not mad at us?”
1:22:34 Brazos liquid cooling system for air-cooled data centers
1:24:22 Ryan – “Back when I was building data centers, like it was one of those things, everal data centers that we had were half empty, right? Because we didn’t have the power density. And so it’s l millions of square feet of just empty space with a little like rack mount sticking out of the floor… so I like seeing these kinds of announcements”
Azure1:25:32 Stop wasting time and use Custom Extensions for PIM approvals
1:26:58 Ryan – “I think we’re going to see a lot more of this as everyone is trying to deal with Agentic identity.”
1:27:14 AI 200 – Azure Container Apps Express: Blazing-Fast Deployments Without the Overhead
1:27:55 Justin – “This sounds like a good way to waste a lot of money…”
1:29:25 Introducing scheduled antivirus scans on Microsoft Defender Linux
Oracle1:32:43 Oracle Announces Record Q4 and FY 2026 Results Driven by Cloud Infrastructure & Cloud Applications
1:33:59 Justin – “They’re spending a lot of money on AI, so I hope it works out for everybody…”
Cloud Journey 1:32:43 Running an AI-native engineering org
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 358 of The Cloud Pod, where the weather is always cloudy!
Justin, Matt, and Ryan (who, rumour has it, was working on an Eagles music podcast) are in the studio this week to bring you all the latest in AI and cloud news (and begging for a AI spend limit increase), including anthropic wanting everyone – except themselves – to slow down AI development, GitHub’s insane number of commits, and even an announcement from CoreWeave, plus so much more. Let’s get started!
Titles we almost went with this week* Stop Configuring Domains One by One Like a Peasant * SSH Into Your AI Agent Like It’s 1999 * Your AWS Bill Finally Has an AI Babysitter * Stop Blaming Engineering, the AI Will Do It Now * GPU Queue Anxiety Meet Your Serverless Spark Therapist * One Wildcard Certificate to Rule All Subdomains * One PTU Reservation to Rule All Regions * Twelve Billion Parameters Walk Into a Laptop * Squeezing Gemma 4 Until the Bits Cry * Azure Cobalt 200 VMs Are Really Arm-ed and Dangerous * AI has gone all Fables and Myth * Arm-ed she blows: but probably not to a region near you * Dash to change your password as Dashlane gets owned * Siri AI shows just how slow Gemini is * AI Announces going public, and then spreads Myths about AI development
A big thanks to this week’s sponsors:
There are many cloud cost management tools out there, but only Archera provides insured commitments. It sounds fancy, but it’s really simple. Archera gives you the cost savings of a 1 or 3-year AWS Savings Plan with a commitment as short as 30 days. If you do not use all the cloud resources you have committed to, Archera will literally cover the difference. Other cost management tools may say they offer “insured commitments”, but remember to ask: Will you actually give me my rebate? Because Archera will.
Check out thecloudpod.net/archera to schedule a demo today.
General News01:27 How GitHub plans to win developers back
03:0 Ryan – “I’d actually like to see AI coding take this up a little bit, because I think it is a ridiculous sort of growth that I don’t think is sustainable, and so much of vibe-coded garbage is really bloated…But there are definitely functionality things that it can do a lot more efficiently, and doesn’t.”
AI Is Going Great – or How ML Makes Money 07:44 The Interoperable Lakehouse: Agency Over Your Data
09:25 Snowflake CoCo: AI Coding Agent for the Modern Data Stack
09:59 Snowflake CoWork: The Personal Work Agent for Every Knowledge Worker
10:29 Justin – “I assume Anthropic will be suing them any moment for trademark infringement, but nice to see that you’re getting some smartness for the data friends who desperately need all the DevOps help they can get. So I appreciate they’re getting these tools.”
16:00 Anthropic urges global pause in AI development
16:41 Ryan – “This has been what people have been sort of warning for ages with AI development, and this isn’t anything new. I’m surprised by the timing of it because it doesn’t make sense to me that they’re doing this now, but this is a huge concern. And I know just from trying to secure workloads in my day job, you try to put human and loop flows in place, but you know, people don’t really want to be in the loop. The whole advantage of using AI is the advantage the velocity gains. So having a human that does all the approval is problematic.”
20:04 Claude Fable 5 and Claude Mythos 5
23:34 Matt – “I would also say you gotta get the foundation of your house set up. So if you are patching, it’s not that you’re patching, it’s how you’re patching… I don’t want somebody, to use a very simple example, I have fifty EC2 instances or VMs, and to do patching, I can’t have somebody log into fifty VMs. That’s not sustainable, and that’s not gonna work. Ryan in security here will check the box saying you are doing patching, but I’ve wasted three people’s days on this. But if you build it out so that each thing is an auto scaling group and everything else, which is where you’re going with the CICD stuff, and you build that proper workflow out, then patching is just release the new image.”
Security 29:46 Dashlane explains how attackers managed to download encrypted password vaults
30:55 Ryan – “And right now, it’s the strength of that master password. But with quantum encryption, it’s going to be able to break through the algorithm generally.”
Cloud Tools36:30 Hashicorp: rethinking infrastructure access in the age of agentic AI
37:52 Ryan – “I’m so annoyed by this because they’re like, this is rethinking an age of agentic AI. No, this is what we should do for all authentication, not just AI. It doesn’t treat anything about AI. It doesn’t identify AI agents. And it’s just setting up a user within HashiCorp boundary and then assigning that user to an agentic AI, just like a human. So this doesn’t actually address anything agentic. And these things should be patterns we need to be moving to in general.”
AWS42:46 Improve your application resilience with Amazon Cognito multi-Region replication
43:54 Matt – “… it’s just a nice quality of life improvement to actually get this out.”
45:36 Customize federated sign-in with new Amazon Cognito Lambda trigger
47:26 AWS Step Functions adds AgentCore-powered agentic reasoning step
48:25 Ryan – “You know I lust over state machines, so I find it funny because this is all I think about when I’m putting an agent workflow together. This would be so much easier in a state machine. And so now they’ve done it. I will absolutely use this so much, because it’s something I already kind of do with lambda functions. It’s just now that I won’t have to define the logic as specifically. It’ll just be like four pages of markdown in my lab.”
51:29 Amazon Bedrock AgentCore Runtime introduces interactive shells for terminal access into agent sessions
52:46 Matt – “Somebody needed it to debug some environment variable or working directory, and they were like, we could just quickly do this thing because it’s running ECS under the hood. We’ll just literally change the CLI call from AWS ECS exec to AWS Agent Core exec, and we’ve added a whole new feature, guys.”
53:12 AWS Cost Explorer launches intelligent cost explanations powered by Amazon Q
54:10 Matt – “That will forever be my goal in life – understand what’s an EC2 other.”
54:20 AWS FinOps Agent is now available in preview
55:02 Justin – “This is kind of nice. I don’t know if it’s a full-featured solution for everybody, but it’s definitely something that’s gonna help you get started.”
GCP56:52 Introducing Gemma 4 12B
57:36 Gemma 4 with quantization-aware training
58:17 Ryan – “These are things we need Jonathan for.”
58:45 Gemini models for Apple developers
1:00:01 Ryan – “I love the Apple Google partnership on this. You know, I’m really happy that Apple didn’t decide to develop its own frontier model and just muddy that space.”
Azure1:03:27 New Azure Cobalt 200 VMs deliver 50% performance improvement, fully optimized for modern agentic AI workloads
1:04:44 Matt – “It’s great that they added this; I feel like they’re finally getting into the game of ARM. Getting capacity for them might require some twisting of your account team’s arm, especially if you want them at any scale. But the other problem is, which I still find comical, is that you can’t run Windows Server on ARM.”
1:06:58 Foundry IQ: Build smarter agents faster with unified knowledge and serverless retrieval
1:10:26 Generally Available: Azure Database for PostgreSQL – Flexible Server: DuckDB extension
1:10:50 Justin – “I remember when there were companies that made nothing but columnar databases. Now you just get it as an extension on top of PostgreSQL. Kind of impressive. I bet those companies aren’t doing well these days.”
51:03 Global PTU Reservations Are Now Region-Agnostic
1:12:02 Justin – “Good! Glad you learned what the word ‘global’ means.”
1:15:30 Generally Available: Azure API Management Premium v2 and Standard v2 now support wildcard custom hostnames
Emerging Clouds 1:22:25 Full Stack Observability for AI | CoreWeave Solution Brief
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 357 of The Cloud Pod, where the weather is always cloudy! Justin and Matt are in the studio this week to bring you all the latest in cloud and AI news! Is AI costing more than the people it replaced? Are CEO’s suffering from AI psychosis? Is Opus 4.8 better than 4.7? We answer all of these questions and more this week – so let’s get started!
Titles we almost went with this week* Valkey Stops Forgetting Your Data Like Your Ex * AI Coding Tools Cost More Than the Coders They Replace * Microsoft Discovers AI Budgets Burn Faster Than Enthusiasm * Executives Caught Hallucinating About AI Productivity Gains * ABBA Said ” Dancing Queen”, but Google Said Data Center * AI Now Tells Your AWS Apps How Fragile They Really Are * Stop Playing VM Whack-a-Mole With Maintenance Windows * Chaos Engineering for Apps Too Scared to Change * AWS Rewires the Data Center With One Weird Optical Trick * IAM the One Spending All Your Bedrock Money * SQL Server Licenses Finally Pack Their Own Bags * When AI Hype Meets Productivity Research, It Hurts * CEOs Gone Wild: Demos Versus Deployment Reality * Serverless Search Finally Learned to Nap Between Requests * ElastiCache Finally Remembers Things After a Reboot * Valkey Gets Durable So Your Data Stops Ghosting You * Zero Data Loss Without Losing Your Microseconds Too * Microsoft Build 2026 Scout AI and Quantum Dreams
A big thanks to this week’s sponsors:
There are many cloud cost management tools out there, but only Archera provides insured commitments. It sounds fancy, but it’s really simple. Archera gives you the cost savings of a 1 or 3-year AWS Savings Plan with a commitment as short as 30 days. If you do not use all the cloud resources you have committed to, Archera will literally cover the difference. Other cost management tools may say they offer “insured commitments”, but remember to ask: Will you actually give me my rebate? Because Archera will.
Check out thecloudpod.net/archera to schedule a demo today.
General News 01:45 Microsoft data suggests using AI is more expensive than hiring people:
03:09 Justin – “This is going to be interesting to see what happens in the FinOps space, as we start getting more maturity in that area, and we start seeing open models become a bigger deal and customers looking at different options beyond the foundational models.”
06:13 Tech CEOs are apparently suffering from AI psychosis
08:30 Matt – “You still need a human in the loop on a lot of things.”
AI Is Going Great – or How ML Makes Money 09:40 Introducing Always-On pricing: automatic savings for Databricks Lakebase
11:33 Justin – “…the reality is that a lot of the things that you pay for are the automation and deploying the server and updating the things. And so if you’re not running those code paths, and you’re not running those architectures, then the company’s also saving money, which is why they can turn some of that savings over to you.”
12:00 Introducing Claude Opus 4.8
12:40 Introducing dynamic workflows
13:38 Matt – “I feel like every week, Anthropic is just on a roll. I switched over to it; I feel like I saw some improvement, but not that much. You read the internet, and everyone was complaining about 4.7 and 4.6, but I would kind of like to see them update some of the older models, too – Sonnet and Haiku.”
16:40 Anthropic raises $65B in Series H funding at $965B post-money valuation
Cloud Tools19:27 Announcing no-code application fault injection
20:29 Justin – “This is a nice enhancement to the Gremlin platform if you are trying to do chaos engineering, although AI does a pretty good job at causing chaos engineering too.”
AWS22:03 Introducing the next generation of Amazon OpenSearch Serverless for building your agentic AI applications
23:42 Matt – “I feel like the ability of these systems to actually scale down to zero was minimal, even Aurora never truly scaled down to zero…So this type of scale up the capability, especially with it going faster, is just going to be really good – potentially for production workloads too.”
24:14 AWS Shield Advanced introduces DDoS attack flow logs
24:29 Justin – “Thank you? You only took a hundred years to get us this quality of life improvement.”
25:06 Amazon Thinks the Future of Data Centers Depends on a Technical Problem It Just Solved
26:26 Justin – “You know, in a situation where every customer has their own VPCs, you know, the reality is the network has to constantly morph and evolve, and so, it’s good to see they’ve done this. And I’m glad to see that this is solving a big problem for them – fully powered by the fact that they have ASICs that can custom do this work.”
27:55 Amazon RDS for SQL Server supports Bring Your Own Media
28:03 Justin – “You could always bring your own media to install SQL Server. This is really about bringing your own licensing.”
30:21 Amazon ElastiCache for Valkey now supports durability
31:12 Matt – “I understand the use cases, but I still say you’re using cache wrong.”
32:11 AWS Cost and Usage Report 2.0 now supports Athena and Redshift integration
33:17 Justin – “I built this pipeline a couple of times, and use the new the newer format because it’s much better. But this is actually even better because they’ve kind of automated some of the other sharp edges of dealing with the current, like the pricing lists and that stuff, and the automatic index updates for Athena. So this is a nice quality of life improvement.”
GCP34:20 Introducing Google AI Threat Defense to help you outpace the adversary
35:41 Matt – “Here’s my wallet, just set it on fire.”
37:44 Vibe-coded AI Studio apps with Firestore, Firebase, Cloud SQL
40:22 Justin – “I think this is an answer to Vercel, right? A lot of developers right now are doing POCs and building apps on top of Vercel because of how easy it is, and how much they don’t have to do. And so I feel like this is a direct response to that, in many ways.”
40:39 Nano Banana 2 and Nano Banana Pro available for everyone
43:20 AlloyDB Hot Standby: Faster Failovers & Consistent Performance
43:48 Justin – “This is nice if you need high performance from AlloyDB.”
45:21 AlloyDB Remote MCP Server GA: Secure AI Agent Access to Your Data
45:40 Justin – “…managed MCPs are definitely all the rage right now. All the cloud providers are dropping them. I like this one, though, that’s kind of interesting. I don’t know that this should be your primary interface to a DB performance scale, but if you need an interface for an admin or for a user to do more ad hoc querying, this is way better than giving them a select star against the database.”
48:15 GKE standby buffers speed up autoscaling for less spend
49:45 Blue, yellow and green: Google invests in its first data center in Sweden.
50:24 Matt – “ I really like the fact that they’re using the air to cool it down, but then not just venting it out the other side, but venting it to homes and kind of getting that double whammy.”
Azure51:03 Generally Available: Application Gateway for Containers – Service Mesh integration with Istio
51:40 Matt – “If I remember correctly from the beta of it, the biggest annoyance of this is that you can’t go from a current app gateway to an app gateway for containers. They’re different resources inside of Azure, so the fun part about this is you actually need to move and relaunch. And even though you tell customers to never whitelist your IP address on your app gateway, there’s definitely always one customer out there that does and then opens a SEV1 ticket. So great feature. Kinda wish the application gateway was all under one bigger umbrella, but I have other issues with the application gateway.”
52:24 Microsoft Build 2026: The 7 biggest announcements
Con’t Microsoft launches Scout, an OpenClaw-inspired personal assistant
53:57 Matt – “It’s nice to see them actually get a new model out there, because it’s been it’s been a while and getting something out there that people can use – and honestly them internally getting off of OpenAI, you know… I’m sure for a long time they were using OpenAI and paying somewhere for it. So if they can run it all under their own model, probably gonna be better off in the long run as a business.”
58:10 AI alone won’t change your business. The system running it will.
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Keep the Raccoons Out: Service Mesh, MCP, and Securing Agentic Workloads
With William Morgan, CEO of Buoyant and creator of Linkerd
Linkerd just turned 10, so we brought on the person who built it and coined the term “service mesh” in the first place. William Morgan joins Jonathan and Justin to talk about where service mesh came from, where it’s going, and the very specific kind of chaos that agentic AI is about to unleash on anyone who owns a Kubernetes cluster. The short version: lock your doors, because the raccoons are coming.
“Our job is basically to make Linkerd as boring as possible.”
William traces Linkerd’s origins back to Twitter’s infrastructure work between 2010 and 2014, when a Ruby on Rails monolith turned into a sprawling distributed system — the same problems we have today, just a different decade. As the fifth project ever to join the CNCF, Linkerd has had a front-row seat to the ecosystem’s evolution, and William explains why his actual goal these days is to make it as boring as humanly possible: the kind of dependable infrastructure layer you can trust to still be around in another 90 years. That’s also why he’s not adding AI to Linkerd — an infrastructure layer has to be fast, lightweight, and predictable, and generative AI is the opposite of all three.
“At some point your agentic workload is going to figure out how to delete the production database. And it’s going to try it.”
The heart of the conversation is what the AI wave means for the platform teams who own the clusters. Developers just got an army of AI assistants, and that has real consequences for CI/CD, code quality, and blast radius. William digs into the boundary problem — agentic workloads are untrusted but need access to your most important systems — and why zero trust has suddenly stopped being optional now that the code hitting your database no longer clears peer review and a security committee. Along the way they get into cache-aware routing that can take a 13-second inference call down to one, the still-unsolved mess of agentic identity, and why we keep anthropomorphizing these tools and letting our guard down.
“If you don’t use Linkerd, your data system will be overrun by raccoons.”
Finally, they turn to MCP — building a catalog of MCP servers, detecting tool calls, and adding DLP-style protection in front of the services an agent never sees. But William’s real point is that MCP is something of a red herring for a much older problem: uncontrolled access to your APIs. Whatever protocol you use, once an unconstrained workload is loose in your environment, you need an immune system to keep it in check.
Links and resources:
The Cloud Pod
Visit thecloudpod.net to subscribe, join our Slack, or sign up for the weekly newsletter. Thanks to William for joining us, and thanks for listening.
Welcome to episode 356 of The Cloud Pod, where the weather is always cloudy! Justin and Ryan are in the studio this week and ready to bring you all the latest in cloud and AI news, including the Pope coming out against AI, AWS introducing a new local zone, and GitHub having yet another crappy week. There’s a lot of news, so let’s get started!
Titles we almost went with this week* Istanbul Not Constantinople, But Definitely an AWS Local Zone * 218 Billion Parameters Walk Into a Single GPU * Postgres Walks Into a DynamoDB Bar * NSA Slides Into Anthropic’s DMs With 9 Billion Reasons * Spy Agencies Want Claude But Can They Afford the Terms * Pre-Shared Keys Were So Last Decade Azure * When the Church and Anthropic Agree on AI Ethics * Microsoft Finally Joins the Linux Party. It Crashed * Iran Wants Cable Fees, and That’s No Phishing * When the Church, the Spies, and Iran All Come for Big Tech * I was gonna record a podcast until I got a migraine
A big thanks to this week’s sponsors:
There are many cloud cost management tools out there, but only Archera provides insured commitments. It sounds fancy, but it’s really simple. Archera gives you the cost savings of a 1 or 3-year AWS Savings Plan with a commitment as short as 30 days. If you do not use all the cloud resources you have committed to, Archera will literally cover the difference. Other cost management tools may say they offer “insured commitments”, but remember to ask: Will you actually give me my rebate? Because Archera will.
Check out thecloudpod.net/archera to schedule a demo today.
General News 03:31 Pope Leo, Anthropic Co-Founder Warn of AI Power Concentration, Labor Displacement
04:41 Justin –
Welcome to episode 354 of The Cloud Pod, where the weather is always cloudy! This week was sort of a tire fire for the cloud, with US-East-1 losing power, TanStack Supply chain being hit with an impressively creative attack, and Linux getting hit with a second vulnerability in as many weeks. But it’s not all bad news – Microsoft finally figured out we don’t want (or need) Copilot in EVERYTHING, and Anthropic introduced dreaming via Claude managed agents. There’s even more where that came from, plus an aftershow, so let’s get started!
Titles we almost went with this week* IAM Not Messing Around With AI Agent Security * Redis Who? Valkey 9.0 Crashes the Cache Party * US-EAST-1 Loses Power Again, Architects Say Told You So * HTTP 402 Payment Required Now Actually Required for Bedrock Agents * ElastiCache Finds Your Data With Vectors and Vibes * Stop Squinting at Logs and Let AI Do It * GKE Nodes Finally Stop Taking the Scenic Route * AWS MCP Server Goes GA So Your AI Stops Lying * AI Agents Now Snitching on Your Sloppy Security Code * TanStack Supply Chain Worm Trusted SLSA and Lied * I wonder if Claude is dreaming about how bad my code is * US-EAST-1 Loses Power Again, The CloudPod Say Told You So * Will my credit card company accept my agent bought it as a fraud reason? * Extended RDS and Cloud SQL is a TAX without representation * Boston SQL Party – Throw your Extended RDS overboard * Everyday is a bad day for Cyber Security * Azure Scale Sets Finally Let Your VMs Grow Up * From 200 to 1000 VMs Without Starting Over * Availability Sets Pack Their Bags for Scale Sets
A big thanks to this week’s sponsors:
There are many cloud cost management tools out there, but only Archera provides insured commitments. It sounds fancy, but it’s really simple. Archera gives you the cost savings of a 1 or 3-year AWS Savings Plan with a commitment as short as 30 days. If you do not use all the cloud resources you have committed to, Archera will literally cover the difference. Other cost management tools may say they offer “insured commitments”, but remember to ask: Will you actually give me my rebate? Because Archera will.
Check out thecloudpod.net/archera to schedule a demo today.
Follow Up01:26 Microsoft Cuts Copilot Bloat
Welcome to episode 353 of The Cloud Pod, where the weather is always cloudy! Justin, Ryan, and Matt are in the studio this week and ready to bring you all the latest news, including earnings from the big 3, a new agreement between the DOW and Google (Don’t be Evil), AI Agents, and more OpenClaw news (that your security team may not appreciate). Plus, DataCenters may not be great for the environment. Who knew?
There’s a lot to cover, so let’s get started!
Titles we almost went with this week* Who Let the Bots Out? AI Governance Has No Answer * Microsoft Loses Its OpenAI Monopoly But Keeps the Parking Spot * AWS But Make It Forklifts and Freight * Bezos Built a Money Printer That Prints Data Centers * GPT-5.5 Instant Arrives Faster Than Your Last Existential Crisis * When Your AI Coding Tool Ghosts You for Seven Weeks * No More Goldfish Brain for Your AI Agents * Amazon Quick Connects Everything Except Your Work-Life Balance * AWS WAF Now Knows Which AI Is Crawling Your Stuff * Stop Pushing Broken Code to Staging Like a Caveman * Your AI Agent Called It Needs Automated Therapy * OpenAI Moves In, and AWS Didn’t Even Change the Locks * AI Interviews Candidates So Recruiters Can Nap * Foundry Gives AI Agents Long-Term Memory and a Diary * Cloud Earnings are Up… but some day the Capex Bell will Toll for the AI Reckoning * Who Let the Bots Out? AWS WAF now shows you
A big thanks to this week’s sponsors:
There are many cloud cost management tools out there, but only Archera provides insured commitments. It sounds fancy, but it’s really simple. Archera gives you the cost savings of a 1 or 3-year AWS Savings Plan with a commitment as short as 30 days. If you do not use all the cloud resources you have committed to, Archera will literally cover the difference. Other cost management tools may say they offer “insured commitments”, but remember to ask: Will you actually give me my rebate? Because Archera will.
Check out thecloudpod.net/archera to schedule a demo today.
We also wanted to tell you about something coming to the US for the first time — WeAreDevelopers World Congress!
They’ve been doing this in Europe for years, 15,000-plus attendees in Berlin, it’s one of the biggest developer events over there. Coté from Software Defined Talk is actually speaking at their Berlin event this summer, so we’ve got some firsthand context here. In September, they’re launching the North America edition. San José, September 23 to 25. 500-plus speakers, 18 tracks — cloud, infrastructure, DevOps, security, AI, data engineering, all of it. Speakers from Datadog, Honeycomb, Sentry, Google, LinkedIn, and Stack Overflow. Olivier Pomel, Christine Yen, Milin Desai, Kelsey Hightower – plus workshops and masterclasses, not just talks. These are people who know how to do a developer conference at scale. wearedevelopers.us, code DEVPOD26 for 15% off. Group rates on top of that for 4 or more.
Follow UpIt’s Earnings Time!
01:23 Microsoft (MSFT) Q3 earnings report 2026
Welcome to episode 352 of The Cloud Pod, where the weather is always cloudy! Justin, Matt, and Ryan are safely back from Vegas (Ryan and Justin, anyway), and they have all the news and announcements from Google Next. Plus, we have Ryan’s take on Phish, news from Cloudflare, and a shoe company making a pivot. There’s a lot to cover, so let’s get started!
Titles we almost went with this week Redact Yourself Before You Wreck Yourself OpenAI *Anthropic * Fork Yeah Cloudflare Artifacts Is Here * Git Happens at Scale on Cloudflare * Bucket List Item Checked Lambda Mounts S3 File Systems * Terraform Your Agents Before They Terraform You * Cloud Run Gets GPUs and Finally Hits the Gym * Spanner Goes Rogue, Leaves the Cloud Behind * Knowledge Catalog Knows What Your Agents Did Last Query * One Control Plane to Rule a Million Chips * No More Incognito Windows for Your AWS Identity Crisis * Your Agent Can Now Write Files Without Burning Everything Down * Spend Caps Finally Tell Runaway AI Jobs to Chill * RIP Vertex, long live the agent * Agents all the way down * Google Next: This is the dawning of the Age of Agentic * Allbirds Proves AI Hype Needs No Infrastructure
A big thanks to this week’s sponsors:
There are a lot of cloud cost management tools out there, but only Archera provides insured commitments. It sounds fancy, but it’s really simple. Archera gives you the cost savings of a 1 or 3-year AWS Savings Plan with a commitment as short as 30 days. If you do not use all the cloud resources you have committed to, Archera will literally cover the difference. Other cost management tools may say they offer “insured commitments”, but remember to ask: Will you actually give me my rebate? Because Archera will.
Check out thecloudpod.net/archera to schedule a demo today.
We also wanted to tell you about something coming to the US for the first time — WeAreDevelopers World Congress!
They’ve been doing this in Europe for years, 15,000-plus attendees in Berlin, it’s one of the biggest developer events over there. Coté from Software Defined Talk is actually speaking at their Berlin event this summer, so we’ve got some firsthand context here. In September, they’re launching the North America edition. San José, September 23 to 25. 500-plus speakers, 18 tracks — cloud, infrastructure, DevOps, security, AI, data engineering, all of it. Speakers from Datadog, Honeycomb, Sentry, Google, LinkedIn, and Stack Overflow. Olivier Pomel, Christine Yen, Milin Desai, Kelsey Hightower – plus workshops and masterclasses, not just talks. These are people who know how to do a developer conference at scale. wearedevelopers.us, code DEVPOD26 for 15% off. Group rates on top of that for 4 or more.
General News 06:12 Amazon invest up to $25 billion in Anthropic part of AI infrastructure
Welcome to episode 351 of The Cloud Pod, where the weather is always cloudy! Justin, Matt, and Ryan are in the studio today and ready to bring you the latest in cloud and AI news. And it’s that time of year again – we’re coming up quickly on Google Next, place your AI money bets, so we’ve got our yearly predictions for what’s coming from Vegas, as well as more news about Mythos, Amazon finally becoming a utility, and even an aftershow where we discuss the computing power of Artemis. It’s a great show, so let’s get started!
Titles we almost went with this week* Three StorageClasses Walk Into an AI Workload * Deprecated Models Don’t Die, They Just Fail Your API Calls * SQL Walks Into a Graph Bar and Stays * Too Many Agents Spoil the Workflow * One Registry to Rule All Your Rogue AI Agents * Eight CPUs Walk Into Space, Only One Comes Back * Stop Retyping the Same Gemini Prompt Like a Caveman * Claude Code Routines Let AI Work While You Sleep * AWS Builds a Yellow Pages for Your AI Agents * GPT Finally Stops Refusing to Talk About Hacking * None of the hosts is ready for Next * We are once again trying to look into our next next next crystal ball and failing * Google is gonna announce AI, it’s just mandatory now * Las Vegas is calling, our Livers are crying
A big thanks to this week’s sponsors:
There are a lot of cloud cost management tools out there, but only Archera provides insured commitments. It sounds fancy, but it’s really simple. Archera gives you the cost savings of a 1 or 3-year AWS Savings Plan with a commitment as short as 30 days. If you do not use all the cloud resources you have committed to, Archera will literally cover the difference. Other cost management tools may say they offer “insured commitments”, but remember to ask: Will you actually give me my rebate? Because Archera will.
Check out thecloudpod.net/archera to schedule a demo today.
We also wanted to tell you about something coming to the US for the first time — WeAreDevelopers World Congress!
They’ve been doing this in Europe for years, 15,000-plus attendees in Berlin, it’s one of the biggest developer events over there. Coté from Software Defined Talk is actually speaking at their Berlin event this summer, so we’ve got some firsthand context here. In September, they’re launching the North America edition. San José, September 23 to 25. 500-plus speakers, 18 tracks — cloud, infrastructure, DevOps, security, AI, data engineering, all of it. Speakers from Datadog, Honeycomb, Sentry, Google, LinkedIn, and Stack Overflow. Olivier Pomel, Christine Yen, Milin Desai, Kelsey Hightower – plus workshops and masterclasses, not just talks. These are people who know how to do a developer conference at scale. wearedevelopers.us, code DEVPOD26 for 15% off. Group rates on top of that for 4 or more.
Follow Up01:47 AI Cybersecurity After Mythos: The Jagged Frontier
Welcome to episode 350 of The Cloud Pod, where the weather is always cloudy! Justin, Jonathan, and Matt are this week’s hosts, and they’ve scoured the clouds for all the latest news and announcements, including that Mythos drop. Is it the AI apocalypse that everyone is claiming? We’ve also got news from DigitalOcean, an email from Space, Claude and even some Guardrails. There’s a lot to cover, so let’s get started!
Titles we almost went with this week
A big thanks to this week’s sponsor:
There are a lot of cloud cost management tools out there, but only Archera provides insured commitments. It sounds fancy, but it’s really simple. Archera gives you the cost savings of a 1 or 3-year AWS Savings Plan with a commitment as short as 30 days. If you do not use all the cloud resources you have committed to, Archera will literally cover the difference. Other cost management tools may say they offer “insured commitments”, but remember to ask: Will you actually give me my rebate? Because Archera will.
Check out thecloudpod.net/archera to schedule a demo today.
Follow Up00:45 Ground control to Microsoft: Artemis 2 astronauts deal with Outlook hiccup in deep space
Welcome to episode 349 of The Cloud Pod, where the weather is always cloudy! Justin and Jonathan managed to make it into the studio this week, and they brought a guest! Dave Garaway jas joined us, and brought some on-the-ground knowledge from GTC, plus a slew of supply chain attacks, Gmail username changes and Claude’s code debacle. We’ve got all this and more – so let’s get started!
Titles we almost went with this week* AWS Console Gets a Makeover Nobody Asked For * From Eight Hours to 22 Seconds, Hackers Got Fast * AWS Spring Cleaning Hits Nine Services Hard * Trivy Pursuit Turns Into a 500K Credential Heist * Skip the Consultant, AWS Security Now Hacks Itself * AWS Pen Testing Agent Pokes Your Cloud Around the Clock * Your Cringey Gmail Address Gets a Second Chance * Stop Babysitting Servers, Let Google Handle MCP * AI Agent Untangles Your Kubernetes Networking Spaghetti * One Bad Actor Poisons a Hundred Million Downloads * Lambda Finally Hits the Gym with 32 GB * From GPU Hype to Production Inference Without the Hyperscaler Headache
Follow Up01:28 Hegseth, Trump had no authority to order Anthropic to be blacklisted, judge says
02:35 Jonathan – “I’m guessing Anthropic is super busy with all the people coming to them for deals right now, because it seems to me that Anthropic is getting all the business customers and OpenAI are getting the personal customers.”
04:08 Delve Announces Changes and New Customer Support Measures
Welcome to episode 348 of The Cloud Pod, where the weather is always cloudy! Justin, Ryan, and Matt are in the studio this week to bring you all the latest news in AI and Cloud, inclduing Strykers troubles, AWS’ birthday, Bedrock Agents, and Claude Code – plus so much more. Let’s get started!
Titles we almost went with this week* SOC 2 It to Me Delve Fires Back * Shell Yeah Bedrock Agents Just Got Command Line Powers * When Your SOC 2 Report Is Just Fan Fiction * uv, Ruff, and ty Walk Into an OpenAI Acquisition * Hash Field Expiration Is Here, and It’s No Redis Herring * Stop Paying Full Price for Tokens You Already Bought * Fake It Till You Audit It * Cache Me If You Can CNCF Sandbox Edition * Microsoft Learns Consent Matters in Copilot Rollout * Microsoft’s Stinky Cloud Gets Federal Seal of Approval * When Your Audit Trail Leads to a Blog Fight * Ping Your AI Agent on Discord Like a Millennial * Twenty Years of AWS and the Bill Never Stops * The LLM hack that feels a lot like Node Shift Left Package issues * Claude Code Auto Mode Lets AI Work Unsupervised * Stop Babysitting Your AI Claude Code Goes Solo * Auto Mode Gives Claude Code the Keys to the Car * Java comes to the coffee shop with AI
General News 01:21 Customer Updates: Stryker Network Disruption
Welcome to episode 347 of The Cloud Pod, where the forecast is always cloudy! Justin, Jonathan, and Ryan are in the studio recording today, and thankfully, Jonathan hasn’t replaced us all with Skynet – yet. This week, we’re discussing how old our tools (and us) are (hint: it’s really old), whether or not the SaasApocalypse is upon us, and whether or not the business or AI is responsible for the latest round of layoffs.
Titles we almost went with this week* S3 Bucket Names Finally Stop Being a Global Hunger Games * One Million Tokens Walk Into a Context Window * SLO Down and Smell the Reliability Metrics * CloudWatch Finally Watches Your Whole Cloud Organization * S3 Turns 20 and Still Buckets the Competition * Azure SRE Agent Goes GA So You Don’t Have To * Twenty Years of S3 and No Signs of Object Permanence * One Rule to Monitor Them All Across AWS * One Flag to Secure Them All on Cloud Run * SaaSpocalypse Now Atlassian Layoffs Hit the Jira * No More Bucket Name Bingo with S3 Regional Namespaces * A Picture Is Worth a Thousand Claude Tokens * One Command to Rule Your Autonomous AI Agents * AI Fixes Your Incidents Before Your Boss Notices * The CloudPod is only recording this week “Because of AI” * Amazon begs users to leave Simple DB with another migration tool
Follow Up00:54 Microsoft’s brief in Anthropic case shows new alliance and willingness to challenge Trump administration
Welcome to episode 346 of The Cloud Pod, where the forecast is always cloudy! Hold on to your butts, because Justin, Ryan, and Matt are in the studio today, and they’re ready to bring you all the latest in Cloud and AI news, including the usual: Meta buying social networks, Amazon responding to outages, and OpenAI giving up another version of GPT. Let’s get into it!
Titles we almost went with this week* ✍️ Cloudflare Spent $1100 to Rewrite Next.js in a Week * 🪈 One Pipe to Rule All Your OpenTelemetry Data * ☑️ Check Yourself Before Google Wrecks Your Cloud Config * 🎫 Copilot Takes Jira Tickets So You Don't Have To * 🧑✈️ GitHub Copilot Agent Joins Your Jira Workflow Uninvited * 👉 When AI Agents Network, Meta Swipes Right on Moltbook * 🎛️ Sixty Controls Walk Into a Terraform Repository * 🪪 One Security Console to Rule All Your Clouds * 🔒 AI Ate My Lock-In, and I Feel Fine * ⛅ Oracle Sees $90 Billion Future Cloudy With a Chance of GPUs * 💻 Your API Has Trust Issues, and We Can Prove It * 🏃 Stop Running Three Pipelines Like a Telemetry Hoarder * 🦕 From Database Dinosaur to AI Cash Cow * ☠️ Meta: Target acquired; must kill Moltbook * 🔫 Meta saw Moltbook and said, “WE MUST OWN IT AND KILL.”
Follow Up00:51 Where things stand with the Department of War
AI Is Going Great - Or How ML Makes Money 01:21 Introducing GPT-5.4
Welcome to episode 345 of The Cloud Pod, where the forecast is always cloudy! Justin, Ryan, and Matt are in the studio this week and are ready to bring you all the latest in cloud and AI news, including what’s going on between Anthropic, the DOD, and OpenAI, what the war means for Middle East data centers (Spoiler – I hope you have a good Disaster Recovery plan), and Transit Gateway pricing changes that are enough to make a grown man cry. And don’t bother waiting: Matt has completely forgotten almost two years of “bye everybody” and now claims full amnesia as to what his outtro is. Oh well. Let’s get into today’s show.
Titles we almost went with this week Claude Learned to Use a Computer Better Than Your Dad OpenAI * Amazon and OpenAI’s $138 Billion AI Bromance * When Two AZs Go Dark the Cloud Gets Crispy * Fifty Billion Reasons AWS Loves OpenAI Now *Anthropic * Azure Still Wins Even When AWS Thinks It Did * Fire, Water, and a Multi-AZ Assumption Goes Up in Smoke * Claude Refuses to Go Full Skynet for the Pentagon * GPT-5.3 Instant Finally Stops Lecturing You * No Killer Robots Without Human Approval Please * Terraform Finally Sees Your Forgotten Cloud Resources * Stage Before You Rage Deploy Azure Firewall * CrowdStrike to Zscaler AWS Wants Your Security Tab * One Hub to Rule Your API Sprawl * Transit Gateway Attachments Just Got Surprisingly Expensive * Azure Container Registry Finally Has Room for Your AI Hoarding * Bedrock Gets a Roommate OpenAI Moves In * Azure Firewall Gets a Safety on the Trigger * Stop Writing Scripts, Just Import the Dang Infrastructure * Audit Your APIs Before March 2026 Bites You * Damn it… my excuse not to DR is gone * I’m Epically Furious about DR
AI Is Going Great – Or How ML Makes Money 03:34 Anthropic acquires Vercept to advance Claude’s computer use capabilities
Welcome to episode 344 of The Cloud Pod, where the forecast is always cloudy! Justin is out of the office at a World of Warcraft Tournament (not really), and Ryan is pursuing his lifelong dream of becoming a roadie for The Eagles (maybe?), so it’s Jonathan and Matt holding down the fort this week, and they’ve got a ton of cloud news for you! From security to AI assistants, we’ve got all the news you need. Let’s get started!
Titles we almost went with this week* Zero Bus, All Gas, No Kafka Brakes * AI Coding Bot Bites the Hand That Runs It * When Your Robot Developer Goes Rogue on AWS * Kubernetes VPA Finally Stops Evicting Your Database Pods * Google Trains 100 Million People, Still No One Reads the Docs * MCP Walks Into a Bar Not Enterprise Ready Yet * No More Pod Evictions Kubernetes 1.35 Scales In Place * No Keys No Drama Just IAM and Cloud SQL * One Agent to Rule Them All in Kubernetes * IAM Tired of Writing Policies Manually * When Your AI Coding Tool Has Delete Permissions * One Dashboard to Rule All Your GPU Clusters * Serverless Reservations Prove Nothing Is Truly Free Range * Kiro Takes the Wheel on AWS IAM Policies * Stop Blaming Backups for Your Bad Architecture * AI Agent Goes Rogue, Takes AWS Down With It * Everything is Bigger in Texas Except the Water Usage * OpenAI launches the college basketball of Inference. Pro service – low cost
General News 1:05 Code Mode: give agents an entire API in 1,000 tokens
01:41 Jonathan- “It’s good. I’m not sure I could imagine 2 ½ thousand MCP tool definitions in a context window and still actually use it for anything.”
AI Is Going Great – Or How ML Makes Money 03:58 OpenClaw creator Peter Steinberger joins OpenAI
Welcome to episode 343 of The Cloud Pod, where the forecast is always cloudy! Justin, Ryan, and Matt are in the studio this week bringing you all the latest in Cloud and AI news, including some of the smaller clouds like Cloudflare and Crusoe Cloud, as well as announcements from the big guys like Google’s Gemini DeepThink, Anthropic’s big pay day, and Microsoft’s Notepad problem. We’ve got all this plus Matt screwing up his outro AGAIN, so let’s get started!
Titles we almost went with this week* Chrome’s WebMCP Protocol: Teaching AI Agents to Stop Doom-Scrolling the DOM and Actually Get Work Done * Claude Enterprise Self-Service: Because Sometimes You Just Want to Buy AI Without Small Talk * AWS EC2 Goes Inception Mode: Now You Can Virtualize Your Virtualization Without Going Broke * Amazon EC2 Nested Virtualization: Because Your Virtual Machine Was Lonely and Needed Its Own Virtual Machine * CloudWatch Alarm Mute Rules: Because Your Deployment Doesn’t Need a Standing Ovation at 3 AM * Anthropic’s $380 Billion Valuation Proves AI Funding Has Gone Claude Nine * AWS EC2 Nested Virtualization Finally Escapes the Expensive Hardware Jail * Cloudflare Teaches AI Agents the Magic Words: Accept text/markdown and Save 13,000 Tokens * Crusoe Cloud’s MCP Server: Teaching AI Assistants to Stop Asking for the Manager and Just Fix Your Infrastructure * Azure’s New Agentic Copilot: Because Manually Clicking Through Dashboards Was So 2023 * Chrome’s WebMCP Gives AI Agents a GPS for Websites Because Apparently They’ve Been Lost in the HTML This Whole Time * Anthropic Cuts Out the Middleman: Claude Enterprise Now Available Without the Enterprise Sales Dance * AWS Gives CloudWatch the Silent Treatment: New Mute Rules Let Alarms Sleep Through Maintenance Windows * AWS CloudWatch Hits Snooze: Mute Rules End On-Call Nightmares * AWS Gives CloudWatch the Silent Treatment
General News 00:45 Bloat Risk? Microsoft’s Notepad Upgrade Also Introduced a Vulnerability | PCMag
Welcome to episode 342 of The Cloud Pod, where the forecast is always cloudy! Justin, Ryan, and Matt are in the studio today to bring you all the latest in cloud and AI news this week. How do you feel about ads? How do you feel about ads while using AI? We’ve got options! We’ve got a round-up of tech Super Bowl ads, AI ads, Earnings reports (who frankly need the ad revenue), and a plethora of Opus 4.6 announcements, plus more. Let’s get started!
Titles we almost went with this week* ChatGPT Goes Full Mad Men: Your AI Assistant Now Comes With Commercial Breaks * Heroku’s New Feature: No New Features * AWS Gives EC2 Instances a Storage Growth Spurt: 22.8TB of Local NVMe Now Available * Identity Crisis Averted: IAM Identity Center Learns to Replicate Itself * JSON Schema Enforcement: Because Your LLM Needs Structure in Its Life * From Zero to Admin in 480 Seconds: A Serbian Speedrun Story * From Proof of Concept to Proof of Claw: DigitalOcean Tames AI Agent Infrastructure * Azure’s Growth Hits the Clouds: Microsoft’s 39% Increase Still Not Enough for Wall Street * One Lake to Rule Them All: Microsoft and Snowflake Finally Stop Fighting Over Your Data * Free Lunch Officially Over: ChatGPT Learns That Servers Cost Money * Claude Won’t Sell You Anything (Except Maybe Peace of Mind) * IAM Identity Center Goes Multi-Regional: Because One Region to Rule Them All Wasn’t Enough * Databricks Takes the Base Out of Database with Lakebase GA * I’m a Chrome Tab hoarder
General News 01:30 Superbowl Ads of Note
16:35 Justin -If you ever want to knowif there’s a bubble, spending dumb money on the Super Bowl on an ad that makes no sense is probably your number one clue.”
16:53 It’s Earnings Time!
Microsoft (MSFT) Q2 earnings report 2026
Welcome to episode 341 of The Cloud Pod, where the forecast is always cloudy! Matt & Ryan are picking up Justin’s slack this week while he’s traveling for work, but don’t worry, because they have plenty of news! We’re talking about those mass layoffs over at AWS, a major security breach over at Notepad++, and some new slight of hand over at Elon’s companies. There’s a lot to cover, so let’s get into it!
Titles we almost went with this week Finally, a Chatbot That Actually Knows Where Your Data Lives *Anthropic * Microsoft Adds Security Analyzer to MSSQL Extension: Because Bobby Tables Jokes Are Only Funny Until They Happen to You * From Sequential Sadness to Parallel Paradise: GKE Node Pools Get Concurrent * From Vibe Coding to Production: AWS MCP Server Gets SOPs * One Prompt to Deploy Them All: AWS MCP Server Automates Infrastructure * AWS Layoffs: Scaling Down Instead of Scaling Out * Mutual TLS: Because CloudFront and Your Origin Need Couples Therapy * Claude Team Plan: Now With More Seats and Less Bills * From Snowflake to Snowball: Rolling Data and Dev Into One Platform * From Notepad++ to Notepad Pwned: A Six-Month Hosting Horror Story * EventBridge Payload Capacity Gets a 4x Upgrade: No More Event Splitting Headaches * CloudFront Finally Learns to Check ID Before Knocking on Origin’s Door
General News 01:30 SpaceX acquires xAI, plans to launch a massive satellite constellation to power it – Ars Technica
Welcome to episode 340 of The Cloud Pod, where the forecast is always cloudy! It’s a full house (eventually) with Justin, Jonathan, Ryan, and Matt all on board for today’s episode. We’ve got a lot of announcements, from Gemini for Gov (no more CamoGPT!) to Route 52 and Claude. Let’s get started!
Titles we almost went with this week* Claude’s Pricing Tiers: Free, Pro, and Maximum Overdrive * GitHub Copilot Learns Database Schema: Finally an AI That Understands Your Joins * SSMS Gets a Copilot: Your T-SQL Now Writes Itself While You Grab Coffee * Too Many Cooks in the Cloud Kitchen: How 32 GPUs Outcooked the Big Tech Industrial Kitchens * Uncle Sam Gets a Gemini Twin: Google’s AI Goes Federal * Route 53 Gets Domain of Its Own: .ai Joins the Party * Thai One On: Google Cloud Plants Its Flag in Bangkok * NAT So Fast: Azure’s Gateway Gets a V2 Glow-Up * Beware Azure’s SQL Assistant doesn’t smoke your joints.
AI Is Going Great, Or How ML Makes Money 30:10 Announcing BlackIce: A Containerized Red Teaming Toolkit for AI Security Testing | Databricks Blog
04:30 Ryan – “It’s very difficult to feel confident in your AI security practice or patterns. I feel like it’s just bleeding edge, and I
Welcome to episode 339 of The Cloud Pod, where the forecast is always cloudy! Justin and Matt are in the studio today to bring you all the latest in cloud and AI announcements, including more personnel shifts (and it doesn’t seem like it was very friendly), a new way to get much needed copper, and Azure marketplace advertising 4,000 different models. What’s the real story? Let’s get into it and find out!
Titles we almost went with this week US-EAST-1: Still the Least Reliable Friend You Keep Inviting to Parties *OpenAI * 0⃣ From Zero to Inference: BigQuery Makes Open Models a Two-SQL Problem * AWS Goes Full Brandenburg Gate: Sovereign Cloud Opens for Business * Seven Ate Nine: AWS Skips G7 and Goes Straight to G7e Instances * From Crawling to Calling: Cloudflare Buys Human Native to Fix AI’s Data Problem * Finally, an AI That Actually Listens to Your War Room Panic * Tag, You’re Governed: AWS Automation Takes the Wheel * Cloudflare Reaches for the Stars: Astro Framework Acquisition Lands * Gemini Gets Personal: Google AI Finally Reads Your Email (With Permission) * AWS Strikes Ore: Amazon Cuts Out the Middleman in Copper Supply Chain * When Your Region Goes Down More Often Than Your Kubernetes Cluster * ChatGPT Go: OpenAI’s New Middle Child Gets $8 Allowance * Cloudflare’s Space-Age Acquisition: Astro Gets Jetsons-Level Upgrade * Rosie the Robot Fired: Cloudflare Brings Astro Framework Into the Family * It took 5 years, and now we have ads in our AI. * AI now with Ads * EU says hands off my data
General News 00:50 Heather’s data is not unreliable
01:11 Astro is joining Cloudflare
Welcome to episode 338 of The Cloud Pod, where the forecast is always cloudy! Justin, Ryan, Matt, and Jonathan are in the studio today to bring you all the latest in cloud and AI news, including a bit of a buying spree (inlcuding whole power companies) Veo 3.1, Cowork, and more – today in the cloud!
Titles we almost went with this week* Snowflake’s Ironic Timing: Buying Downtime Prevention Tool While Experiencing Downtime * Flexera Buys ProsperOps and Chaos Genius, Promises Less Chaos and More Prosperity * Flexera Goes Shopping: Two FinOps Acquisitions to Prosper and Reduce Chaos * Token of Appreciation: Gemini CLI Now Tracks Every Penny of Your AI Spend * Snowflake Buys Observe to Stop Its Own Services from Melting Down * Google’s Veo 3.1 Goes Vertical: Finally Understanding How People Actually Hold Their Phones * Alphabet’s New Power Move: Buying the Company That Literally Powers Data Centers * Dashboard Confessional: Gemini CLI Gets Transparent About Its Usage * Microsoft’s New Agent Works 24/7 and Never Asks for a Raise * From Robot Vacuums That Climb Stairs to TVs You Can’t Feel: CES Gets Weird * Agent Shopping: When Your AI Has Better Taste Than You Do * The cloudpod hosts do not like any stories this week * AWS took a nap on announcements this week * Claude is my new co-worker * Wake up, AWS, and give us some fun news * The $200 Assistant: Is Cowork the End of Workplace Admins? * Azure has more interesting announcements than AWS oh noooo * If you can’t beat them in AI, just acquire everyone * Notebook LM turns the Data Tables on you
AI Is Going Great – Or How ML Makes Money 01:11 Anthropic launches Cowork, a Claude Code-like for general computing – Ars Technica
Welcome to episode 337 of The Cloud Pod, where the forecast is always cloudy! Justin, Matt, and Ryan have hit the recording studio to bring you all the latest in cloud and AI news, from acquisitions and price hikes to new tools that Ryan somehow loves but also hates? We don’t understand either… but let’s get started!
Titles we almost went with this week* Prompt Engineering Our Way Into Trouble * The Demo Worked Yesterday, We Swear * It Scales Horizontally, Trust Us * Responsible AI But Terrible Copy (Marketing Edition)
General News 00:58 Watch ‘The Thinking Game’ documentary for free on YouTube
01:54 Justin – “If you’re not into technology, don’t care about any of that, and don’t care about AI and how they built all the AI models that are now powering the world of LLMs we have, you will not like this documentary.”
04:22 ServiceNow to buy Armis in $7.7 billion security deal • The Register
Welcome to episode 335 of The Cloud Pod, where the forecast is always cloudy! Welcome to the first show of 2026, and it’s a full house, too! Justin, Jonathan, Ryan, and Matt are all here to reflect on 2025, plus bring you their predictions for 2026.
Let’s get started!
Titles we almost went with this week SQL Me Maybe: AlloyDB Gets Chatty With Your Database OpenAI * SELECT * FROM natural_language WHERE accuracy LIKE ‘100%’ *Anthropic * etcd You Were Worried About Database Limits: CloudWatch Has Your Back * CSV You Later: Looker Adds Drag-and-Drop Data Uploads * AWS Spots an Opportunity to Manage Your Container Costs * EKS Network Policies: No More IP Address Whack-a-Mole * AWS Security Hub Splits: It’s Not You, It’s CSPM * Spot On: ECS Finally Manages Your Cheapest Compute * TOON Squad: DigitalOcean’s New Format Makes JSON Look Bloated * The Price is Wrong: AWS Breaks Two Decades of Downward Pricing Tradition * Show Your Work: Why AI-Generated Code Without Tests is Just Expensive Spam * No More Agent Orange: Google Simplifies VM Extension Deployment * AWS Discovers Prices Can Go Both Ways, Raises GPU Costs 15 Percent * Sovereignty Washing: When Your European Cloud Still Answers to Uncle Sam * Agent Builder Gets a Memory Upgrade: Google’s AI Finally Remembers Where It Put Its Keys * Ctrl+F for the Future: A year-end Scorecard & Next-Gen Bets * AI Agents, GPU Prices, and The best of the Cloud Pod 2025 * Beyond the Hype: The Cloud Pods Definitive 2025 Year in Review * Apocalypse Now… What? Our 2026 Forecast
Follow Up 01:27 RYAN’S PREDICTIONS
PredictionStatusNotesQuick LLM models for individuals ACCURATEMeta-Llama-3.1-8B-Instruct, GLM-4-9B-0414, and Qwen2.5-VL-7B-Instruct—each chosen for an outstanding balance of performance and computational efficiency, making them ideal for edge AI deployment. A new AI inference application called Inferencer allows even modest Apple Mac computers to run the largest open-source LLMs.AI at the edge natively (Lambda-esque) ACCURATEAkamai launched a new Inference Cloud product for edge AI using Nvidia’s Blackwell 6000 GPUs in 17 cities. AWS IoT Greengrass with Lambda functions for edge logic. “Edge AI allows for instant decision-making where it matters most—close to the data source.”Cloud native security mesh multi-cloud UNCLEARService mesh technologies continue to evolve (Istio, Linkerd), but I didn’t find a breakthrough “app-to-app at the edge” security mesh product announcement in 2025. This one needs more specific evidence.Ryan Score: 2/3
02:25 MATTHEW’S PREDICTIONS
PredictionStatusNotesFOCUS adopted by Snowflake or Databricks ACCURATEFOCUS version 1.2 was ratified on May 29, 2025. Three new providers announced support: Alibaba Cloud, Databricks, and Grafana. Databricks officially adopted FOCUS!AI security/ethical standard (SOC or ISO) ACCURATEISO 42001 is the first international standard outlining requirements for AI governance. Major companies achieving certification in 2025: Automation Anywhere is among the first 100 companies worldwide to earn ISO/IEC 42001:2023 certification. Anthropic also achieved ISO 42001 certification.Amazon deprecates 5+ services (WorkMail bonus) ACCURATE (no bonus)19 services are mothballed, four are being sunset, and one is end of its supported life. Deprecated services include CodeCommit, Cloud9, S3 Select, CloudSearch, SimpleDB, Forecast, Data Pipeline, QLDB, Snowball Edge, and more. WorkMail NOT deprecated – WorkDocs was (April 2025), but WorkMail remains active.Matthew Score: 3/3
03:22 JONATHAN’S PREDICTIONS
PredictionStatusNotesCompany claims AGI achieved ACC
Welcome to episode 335 of The Cloud Pod, where the forecast is always cloudy! This pre-Christmas week, Ryan and Justin have hit the studio to bring you the final show of 2025. We’ve got lots of AI images, EKS Network Policies, Gemini 3, and even some Disney drama.
Let’s get into it!
Titles we almost went with this week From Roomba to Tomb-ba: How the Robot Vacuum Pioneer Got Cleaned Out *OpenAI * From Napkin Sketch to Production: Google’s App Design Center Goes GA * Terraform Gets a Canvas: Google Paints Infrastructure Design with AI * Mickey Mouse Takes Off the Gloves: Disney vs Google AI Showdown * From Data Silos to Data Solos: Google Conducts the Integration Orchestra * No More Thread Dread: AWS Brings AI to JVM Performance Troubleshooting * MCP: More Corporate Plumbing Than You Think * GPT-5.2 Beats Humans at Work Tasks, Still Can’t Get You Out of Monday Meetings * Kerberos More Like Kerbero-Less: Microsoft Axes Ancient Encryption Standard * OpenAI Teaches GPT-5.2 to PowerPoint: Death by Bullet Points Now AI-Generated * MCP: Like USB-C, But Everyone’s Keeping Theirs in the Drawer * Flash Gordon: Google’s Gemini 3 Gets a Speed Boost Without the Sacrifice * Tag, You’re It: AWS Finally Knows Who to Bill * Snowflake Gets a GPT-5.2 Upgrade: Now With More Intelligence Per Query * OpenAI and Snowflake: Making Data Warehouses Smarter Than Your Average Analyst * GPT-5.2 Moves Into the Snowflake: No Melting Required
AI Is Going Great, or How ML Makes Money 01:06 Meta’s multibillion-dollar AI strategy overhaul creates culture clash:
Welcome to episode 334 of The Cloud Pod, where the forecast is always cloudy! This week, we’re bringing you a jam-packed recap of re:Invent! We’ve got all the news, from keynotes to announcements. Whether you were there live or catching up on all the news, Justin, Matt, and Ryan are here to break it all down. Let’s get started!
Titles we almost went with this week* EKS Gets Chatty: Natural Language Replaces Command Line Nightmares * Harvest Now, Decrypt Later: Why Your RSA Keys Need a Quantum Makeover Before 2026 * NAT So Fast: AWS Helps You Find Gateways Doing Absolutely Nothing * AWS Finally Admits You Have Too Many Log Buckets * AWS Finally Lets You Log In Like a Normal Human * Lambda Gets a Memory: Checkpoint Your Way to Multi-Step Workflows * Step Functions at Home: Lambda Durable Functions Let You Write Workflows in Actual Code * No More Bucket List: S3 Public Access Gets Organization-Wide Lockdown * AWS Hits Ctrl-Z on CodeCommit Deprecation * AWS Puts a Cap on CloudFront: Unlimited Traffic, Limited Anxiety * AWS Tells SQL Server to Take a Thread Off: Optimize CPU Cuts Costs by 55% * Amazon Bedrock Gets a Bouncer: AgentCore Identity Checks IDs at the Door * AI Brings on the Developer Renaissance
Follow Up 01:27 re:Invent
02:59 re:Invent predictions
Jonathan
Ryan
Justin
Welcome to episode 333 of The Cloud Pod, where the forecast is always cloudy! Justin, Ryan, and Matt are taking a quick break from re:Invent festivities. They bring you the latest and greatest in Cloud and AI news. This week, we discuss Norad and Anthropic teaming up to bring you Christmas cheer. Wait, is that right? Huh. We also have undersea cables, some Turkish region delight, and a LOT of Opus 4.5 news. Let’s get into it!
Titles we almost went with this week* Boring Error Pages Not Found * Claude Goes Native in Snowflake: Finally, AI That Stays Where Your Data Lives * Cross-Cloud Romance: AWS and Google Make It Official with Interconnect * Google Gemini Puts OpenAI in Code Red: The Tables Have Turned * Azure NAT Gateway V2: Now With More Zones Than a Parking Lot * From ChatGPT to Chat-Uh-Oh: OpenAI Sounds the Alarm as Gemini Steals 200 Million Users * Scheduled Actions: Because Your VMs Need a Work-Life Balance Too * Finally, Your 500 Errors Can Look as Good as Your Homepage * Foundry Model Router: Because Choosing Between 47 AI Models is Nobody’s Idea of Fun * Google Takes the Scenic Route: New Cable Avoids the Sunda Strait Traffic Jam * Azure Application Gateway Gets Its TCP/IP Diploma * Google Cloud Gets Its Türkiye Dinner: 2 Billion Dollar Cloud Feast Coming Soon * Microsoft Foundry: Turning AI Chaos into Compliance Gold
AI Is Going Great, or How ML Makes Money 02:59 Nano Banana Pro available for enterprise
Welcome to episode 332 of The Cloud Pod – where the forecast is always cloudy! It’s Thanksgiving week, which can only mean one thing: AWS Re:Invent predictions! In this special episode, Justin, Jonathan, Ryan, and Matt engage in the annual tradition of drafting their best guesses for what AWS will announce at the biggest cloud conference of the year. Justin is the reigning champion (probably because he actually reads the show notes), but with a reverse snake draft order determined by dice roll, anything could happen. Will Werner announce his retirement? Is Cognito finally getting a much-needed overhaul? And just how many times will “AI” be uttered on stage? Grab your turkey and let’s get predicting!
Titles we almost went with this week:* Roll For Initiative: The Re:Invent Prediction Draft * Justin’s Winning Streak: A Study in Actually Doing Your Homework * Serverless GPUs and Broken Dreams: Our Re:Invent Wishlist * Shooting in the Dark: AWS Predictions Edition * We’re Never Good at This, But Here We Go Again * Vegas Odds: What Happens at Re:Invent, Gets Predicted Wrong
AWS Re:Invent Predictions 2025The annual prediction draft is here! Draft order was determined by dice roll: Jonathan first, followed by Ryan, Justin, and Matt in last position. As always, it’s a reverse order format, with points awarded for each correct prediction announced during the Tuesday, Wednesday, and Thursday keynotes.
Jonathan’s Predictions1. Serverless GPU Support – An extension to Lambda or a different service that provides on-demand serverless GPU/inference capability. Likely with requirements for pre-warmed provisioned instances. 2. Agentic Platform for Continuous AI Agents – A service that allows agents to run continuously with goals or instructions, performing actions periodically or on-demand in the real world. Think: running agents on a schedule that can check conditions and take automated actions. 3. Werner Vogels Retirement Announcement – Werner will announce that this is his last Re:Invent keynote and that he is retiring.
Ryan’s Predictions1. New Trainium 3 Chips, Inferentia, and Graviton Chips – New generation of AWS custom silicon across training, inference, and general compute. 2. Expanded Model Availability in Bedrock – AWS will significantly expand the number of models available in Bedrock, potentially via partnerships or integrations with additional providers. 3. Major Refresh to AWS Organizations – UI-based or functionality refresh providing better visibility into SCPs, OU mappings, and stack sets across organizations.
Justin’s Predictions1. New Nova Model with Multi-modal Support – Launch of Nova Premier or Nova Sonic with multi-modal capabilities, bringing Amazon’s foundational model to the next level. 2. OpenAI Partnership Announcement – AWS and OpenAI will announce a strategic partnership, potentially bringing OpenAI models to Bedrock (likely announced on stage). 3. Advanced Agentic AI Capabilities for Security Hub – Enhanced features for Security Hub adding Agentic AI to help automate SOC team operations.
Matt’s Predictions1. Model Router for Bedrock – A service to route LLM queries to different AI models, simplifying the process of testing and selecting models for different use cases. 2. Well-Architected Framework Expansion – New lenses or significant updates to the Well-Architected Framework beyond the existing Generative AI and Sustainability lenses. 3. End User Authentication That Doesn’t Suck – A new or significantly revamped end-user authentication service (essentially Cognito 2.0) that actually works well for client portals.
Tiebreaker: How Many Times Will “AI” or “Artificial Intelligence” Be Said On Stage?If we end in a tie (or nobody gets any predictions correct, which is historically possible), we go to the tiebreaker!
HostGuessMatt200Justin160Ryan99Jonathan1Honorable MentionsIdeas that didn’t make the cut but might just surprise us:
Jonathan:
Ryan:
Matt:
Justin:
Quick Hits From the Episode 00:02 – Is it really Re:Invent already? The existential crisis begins. * 01:44 – Jonathan reveals why Justin always wins: “Because you read the notes.” * 02:54 – Matt hasn’t been to a Re:Invent session since Image Builder launched… eight years ago. * 05:03 – Jonathan comes in hot with serverless GPU support prediction. * 06:57 – The inference vs. training cost debate – where’s the real ROI? * 09:30 – Matt’s picks get systematically destroyed by earlier drafters. * 14:09 – The OpenAI partnership prediction causes draft chaos. * 16:24 – Jonathan drops the Werner retirement bombshell. * 19:12 – Justin’s Security Hub prediction: “Please automate the SOC teams.” * 19:46 – Everyone hates Cognito. Matt’s prediction resonates with the universe. * 21:47 – Tiebreaker time: Jonathan goes with 1 out of pure spite. * 24:08* – Honorable mentions include mathematical AI verification and a marketplace for AI work.
Re:Invent Tips (From People Who Aren’t Going)Since none of us are attending this year, here’s what we remember from the good old days:
ClosingAnd that is the week in the cloud! We’re taking Thanksgiving week off, so there won’t be an episode during Re:Invent. We’ll record late that week and have a dedicated Re:Invent recap episode the following week. If you’re heading to Las Vegas, have a great time and let us know how it goes!
Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 331 of The Cloud Pod, where the forecast is always cloudy! Jonathan, Ryan, Matt, and Justin (for a little bit, anyway) are in the studio today to bring you all the latest in cloud and AI news. This week, we’re looking at our Ignite predictions (that side gig as internet psychics isn’t looking too good) undersea cables (our fave!), plus datacenters and more. Plus Claude and Azure make a 30 billion dollar deal! Take a break from turkey and avoiding politics, and let’s take a trip into the clouds!
Titles we almost went with this week* GPT-5.1 Gets a Shell Tool Because Apparently We Haven’t Learned Anything From Sci-Fi Movies * The Great Ingress Egress: NGINX Controller Waves Goodbye After Years of Volunteer Burnout * Queue the Applause: Lambda SQS Mapping Gets a Serious Speed Boost * SELECT * FROM future WHERE SQL meets AI without the prompt drama * MFA or GTFO: Microsoft’s 99.6% Phishing-Resistant Authentication Achievement * JWT Another Thing ALB Can Do: OAuth Validation Moves to the Load Balancer * Google’s Emerging Threats Center: Because Manually Checking 12 Months of Logs Sounds Terrible * EventBridge Gets a Drag-and-Drop Makeover: No More Schema Drama * Permission Denied: How Granting Access Took Down the Internet
Follow Up 00:51 Ignite Predictions – The Results
Matt (Who is in charge of sound effects, so be aware)
Justin
Jonathan
How many times will they say Copilot:
The word “Copilot” is mentioned 46 to 71 times in the video.
Jonathan 45
Justin: 35
Matt: 40
General News05:13 Cloudflare outage on November 18, 2025
06:41 Justin – “Definitely a bad outage, but I appreciate that they owned it, and owned it hard… especially considering they were front page news.”
AI Is Going Great, or How ML Makes Money 07:27 Introducing GPT-5.1 for developers | OpenAI
9:31 Ryan – “I didn’t really like GPT-5, so I don’t have high expectations, but as these things enhance, I’ve found using different models for different use cases has some advantages, so maybe I’ll find the case for this one.”
11:31 Piloting group chats in ChatGPT | OpenAI
12:41 Jonathan – “I’d rather actually have group chats enabled if kids are going to use it because at least you have witnesses to the conversation at that point.”
16:38 Gemini 3: Introducing the latest Gemini AI model from Google
18:24 Ryan – “I look forward to trying this. My initial attempts with Gemini 2.5 did not go well, but I found a sort of sweet spot in using it for planning and documentation. It’s still much better at coding than any other model that I’ve used. So cool, I look forward to using this.”
19:14 Microsoft, NVIDIA, and Anthropic announce strategic partnerships – The Official Microsoft Blog
21:57 Jonathan – “I’m wondering what Anthropic’s plan is – what they’re working on in the background – because they have just taken a huge amount of capacity from AWS and their new data center in Northern Indiana, and now another 30 billion in Azure Compute? I guess they’re still building models every day… that’s a lot of money flying around.”
Cloud Tools 23:17 Ingress NGINX Retirement: What You Need to Know | Kubernetes Contributors
24:39 Justin – “I’m actually surprised NGINX didn’t want to pick this up; it seems like an obvious move for F5 to pick up and maintain the Ingress NGINX controller. But what do I know?”
25:46 Replicate is joining Cloudflare
27:09 Ryan – “Cloudflare has been doing kind of amazing things at the edge, which is kind of neat. We’ve had serverless and functions for a while, and definitely options out there that provide much better performance. It’s kind of neat. They’re well-positioned to do that.”
28:02 KubeCon NA 2025 Recap: The Dawn of the AI Native Era | Blog
29:51 Justin – “Everyone has moved on from Kubernetes as the hotness; now it’s all AI, so what are people working on in the AI space?”
AWS 30:27 AWS Lambda enhances event processing with provisioned mode for SQS event-source mapping
31:36 Ryan – “Where was this 5 years ago when we were maintaining a logging platform? This would have been very nice!”
33:30 Amazon EventBridge introduces enhanced visual rule builder
34:46 Matt – “I definitely – back in the day – had lots of fun with EventBridge, and trying to make sure I got the schemas right for every frame when you’re trying to trigger one thing from another. So not having to deal with that mess is exponentially better. You know, at this point, though, I feel like I would just tell AI to tell me what the scheme was and solve the problem that way.”
35:43 Application loadbalancer support client credential flow with JWT verification
38:40 Jonathan – “Maybe this is kind of a sign that Cognito is not gaining the popularity they wanted. Because effectively, you could re-spin this announcement as Auth0 and Okta are now first-class citizens when it comes to authentication through API Gateway and ALB.”
GCP39:10 How Protective ReRoute improves network resilience | Google Cloud Blog
40:57 Ryan – “I was trying to think how I would even implement something like this in guest mode because it breaks my head. It seems pretty cool, and I’m sure that from an underlying technology at the infrastructure level, from the Google network, it sounds pretty neat. But it’s also the coordination of that failover seems very complex. And I would worry.”
41:54 Introducing the Emerging Threats Center in Google Security Operations | Google Cloud Blog
44:40 Jonathan – “I see this as very much a CrowdStrike-type AI solution for Google Cloud, in a way. Looking at the data, you’re identifying emerging threats, which is what CrowdStrike’s sales point really is, and then implementing controls to help quench that.”
47:56 Introducing Dhivaru and two new connectivity hubs | Google Cloud Blog
49:38 Matthew – “I had to look up one connectivity hub, which is literally just a small little data center that just kind of handles basic networking and storage – and nothing fancy, which is interesting that they’re putting the two connectivity hubs. They’re dropping these hubs where all their cables terminate. So they are able to cache stuff at each location, which is always interesting.”
Azure51:46 Infinite scale: The architecture behind the Azure AI superfactory – The Official Microsoft Blog
55:25 Private Preview: Azure HorizonDB
57:35 Jonathan – “So it sounds like they’ve pretty much built what Amazon did with the Aurora, separating the storage from the compute to let them scale independently.”
59:10 Public Preview: Microsoft Defender for Cloud + GitHub Advanced Security
1:00:35 Matthew – “It seems like it has a lot of potential, but without the pricing and Windows for Defender as a CPM, I feel like – for me – it lacks some features, when I’ve tried to use it. They’re going in the right direction; I don’t think they’re there at the end product yet.”
1:03:05 Public Preview: Smart Tier account level tiering (Azure Blob Storage and ADLS
1:05:18 Jonathan – “So they’ve always had the tiering, but now they’re providing an easy button for you based on access patterns.”
1:13:04 From idea to deployment: The complete lifecycle of AI on display at Ignite
2025 – The Official Microsoft Blog
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 329 of The Cloud Pod, where the forecast is always cloudy (and if you’re in California, rainy too!) Justin and Matt have taken a break from Ark building activities to bring you this week’s episode, packed with all the latest in cloud and AI news, including undersea cables (our favorite!) FinOps, Ignite predictions, and so much more! Grab your umbrellas and let’s get started! Titles we almost went with this week* Fastnet and Furious: AWS Lays 320 Terabits of Cable Across the Atlantic * No More kubectl apply –pray: AWS Backup Takes the Stress Out of EKS Recovery * AWS Gets Swift with Lambda: No Taylor Version Required * Breaking Up Is Hard to Do: Microsoft Splits Teams from Office * FinOps and Behold: Google Automates Your Cloud Budget Nightmares * AMD Turin Around GCP’s Price-Performance with N4D VMs * Azure Gets Territorial: Your Data Stays Put Whether It Likes It or Not * AWS Finally Answers “Is It Available in My Region?” Before You Build It * Getting to the Bare Metal of Things: Google’s Axion Goes Commando * Azure Ultra Disk Gets Ultra Serious About Latency * Container Size Matters: Azure Expands ACI to 240 GB Memory * Google Containerises Chaos: Agent Sandbox Keeps Your AI from Going Rogue * AWS Prints Money While Amazon Prints Pink Slips: Q3 Earnings Beat
Follow Up 02:08 Microsoft sidesteps hefty EU fine with Teams unbundling deal
General News 08:30 It’s Earnings Time! (Warning: turn down your volume)
Amazon’s stock soars on earnings, revenue beat, spending guidance
06:14 Justin – “There’s a lot of investors starting to question some of the dollars being spent on (AI). It’s feeling very .com boom-y. Let’s not do that again.”
06:46 Alphabet stock jumps 4% after strong earnings results, boost in AI spend
08:03 Matt – “The 15 % of revenue for Google search year over year feels like a massive growth, but I still don’t really understand how they track that. It’s not like there’s 15 % more people using Google than before, but that’s the piece I don’t really understand still.”
08:27 Microsoft (MSFT) Q1 2026 earnings report
09:27 Azure Front Door RCA
14:23 PREDICTIONS FOR IGNITE
Matt
Justin
Jonathan (who isn’t here)
How many times will they say Copilot:
Honorable Claude:
23:00 Matt – “
Cloud Tools 26:47 Apptio expands its FinOps tools for cloud cost control – SiliconANGLE
33:03 Matt – “I’ve set these up in my pipelines before… It’s always nice to see, and it’s good if you’re launching net new, but for general PR, it’s just more noise. It kind of needed these tools.”
AWS 28:44 AWS rolls out Fastnet subsea cable connecting the U.S. and Ireland
29:24 Matt – “The speed of this is ridiculous. 320 plus terabytes per second – that is a lot of data to go at once!”
30:20 Introducing AWS Capabilities by Region for easier Regional planning and faster global deployments | AWS News Blog
30:36 Justin – “Thank you. I’ve wanted this for a long time. You put it in a really weird UI choice, but I do appreciate that it’s there.”
32:10 Secure EKS clusters with the new support for Amazon EKS in AWS Backup | AWS News Blog
33:07 Matt – “It’s the namespace level that they can deploy or backup and restore to that, to me, is great. I could see this being a SaaS company that runs their application in Kubernetes, and they have a namespace per customer, and having that ability to have that single customer backed up and be able to restore that is fantastic. So while it sounds like a minor release, if you’re in the Kubernetes ecosystem, it will just make your life better.”
33:53 Jupyter Deploy: Create a JupyterLab application with real-time collaboration in the cloud in minutes | AWS Open Source Blog
34:51 Justin – “A lot of people, especially in their AI workloads, they don’t want to use SageMaker for that necessarily; they want their own deployment of a cluster. And so there was just some undifferentiated heavy lifting that was happening, and so I think this helps address some of that.”
GCP35:09 Agentic AI on Kubernetes and GKE | Google Cloud Blog
36:49 Matt – “Anything that can make these environments, especially if they are ephemeral, scale up and down better so you’re not burning time and capacity on your GPUs – that are not cheap – is definitely useful. So it’d be a nice little money saver along the way.”
37:09 Ironwood TPUs and new Axion-based VMs for your AI workloads | Google Cloud Blog
38:57 Automate financial governance policies using Workload Manager | Google Cloud Blog
40:06 Matt – “Having that very quick, rapid response to know that something changed and you need to go look at it before you get a 10 million dollar bill is critical.”
Azure41:50 Generally Available: Azure MCP Server
42:50 Matt – “So I like the idea of this, and I like it for troubleshooting and stuff like this, but the idea of using it to provision resources terrifies me. Maybe in development environments, ‘Hey, I’m setting up a three-tier web application, spin me up what I need.’ But if you’re doing this for a company, I really worry about speaking in natural language, and consistently getting the same result to spin up resources.”
45:50 A new era and new features in Azure Ultra Disk
47:38 Matt – “There wasn’t any encryption at the host level? Clearly I make bad life choices being in Azure, but not THAT bad of choices.”
48:21 Announcing General Availability of Larger Container Sizes on Azure Container Instances | Microsoft Community Hub
49:40 Generally Available: Geo/Object Priority Replication for Azure Blob
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 329 of The Cloud Pod, where the forecast is always cloudy! Matt, Jonathan, and special guest Elise are in the studio to bring you all the latest in AI and cloud news, including – you guessed it – more outages, and more OpenAI team-ups. We’ve also got GPUs, K8 news, and Cursor updates. Let’s get started! Titles we almost went with this week* Azure Front Door: Please Use the Side Entrance – el -jb * Azure and NVIDIA: A Match Made in GPU Heaven – mk * Azure Goes Down Under the Weight of Its Own Configuration – el * GitHub Turns Your Copilot Subscription Into an All-You-Can-Eat Agent Buffet – mk, el * Microsoft Goes Full Blackwell: No Regrets, Just GPUs * Jules Verne Would Be Proud: Google’s CLI Goes 20,000 Bugs Under the Codebase * RAG to Riches: AWS Makes Retrieval Augmented Generation Turnkey * Kubectl Gets a Gemini Twin: Google Teaches AI to Speak Kubernetes * I’m Not a Robot: Azure WAF Finally Learns to Ask the Important Questions * OpenAI Puts 38 Billion Eggs in Amazon’s Basket: Multi-Cloud Gets Complicated * The Root Cause They’ll Never Root Out: Why Attrition Stays Off the RCA * Google’s New Extension Lets You Deploy Kubernetes by Just Asking Nicely * Cursor 2.0: Now With More Agents Than a Hollywood Talent Agency
Follow Up 04:46 Massive Azure outage is over, but problems linger – here’s what happened | ZDNET
07:06 Matt – “The fact that you’re plus one week and still can’t actually make changes or even do simple things like purge a cache makes me think this is a lot bigger on the backend than they let on at the beginning.”
AI Is Going Great – Or How ML Makes Money08:30 AWS and OpenAI announce multi-year strategic partnership | OpenAI
09:53 Elise – “It sort of feels like OpenAI has a strategic partnership with everyone right now, so I’m sure this will help them, just like everything else that they have done will help them. We’re banking a lot on OpenAI being very successful.”
17:11 Google removes Gemma models from AI Studio after GOP senators complaint – Ars Technica
23:00 Matt – “That’s everything on the internet, though. When Wikipedia first came out and you started using it, we were told you can’t reference Wikipedia, because who knows what was put on there…you can’t blindly trust.”
Cloud Tools 26:53 Introducing Agent HQ: Any agent, any way you work – The GitHub Blog
27:20 Jonathan- “I’m like the different interfaces; they all bring something a little different.”
31:55 Cursor introduces its coding model alongside multi-agent interface – Ars :Technica
33:03 Elise- “Cursor had an agent built, and I thought it was ok, but it was wrong a lot. The 2.0 agent seems fabulous, comparatively, and a lot faster.”
AWS 43:25 The Model Context Protocol (MCP) Proxy for AWS is now generally available
44:10 Matt – “This is a nice little tool to help with production…and easier stepping stone than having to build all this stuff yourself.”
47:07 Amazon ECS now supports built-in Linear and Canary deployments
48:45 Jonathan – “I always wonder why they haven’t built these things previously, and I guess it was possible through CodeDeploy, but if it was possible through CodeDeploy, then why add it to ECS now? I feel like we kind of get this weird sprawl.”
50:35 Amazon Route 53 Resolver now supports AWS PrivateLink
51:04 Jonathan – “Good for anyone who wanted this!”
54:05 Mountpoint for Amazon S3 and Mountpoint for Amazon S3 CSI driver add monitoring capability
GCP58:31 New Log Analytics query builder simplifies writing SQL code | Google Cloud Blog
1:00:01 Jonathan- “I think this is where everything is going. Why spend half an hour crafting a perfect SQL query…when you can have it figure it all out for you.”
1:01:12 GKE and Gemini CLI work better together | Google Cloud Blog
1:02:10 Matt – “Anything to make Kubernetes easier to manage, I’m on board for it.”
1:05:06 Master multi-tasking with the Jules extension for Gemini CLI | Google Cloud Blog
1:06:16 Jonathan – “Google obviously listens to their customers because it was only half an hour ago when I said something like this would be pretty useful.”
1:11:36 Announcing GA of Cost Anomaly Detection | Google Cloud Blog
1:14:01 Elise – “I just wonder, there’s so many third-party companies that specialize in this kind of thing. So I wonder if they realized that they could just do a little bit better.”
Azure1:16:37 Building the future together: Microsoft and NVIDIA announce AI advancements at GTC DC | Microsoft Azure Blog
1:21:53 Jonathan – “That’s a really good salesy number to quote, though, 1.2 million tokens a second – that’s great, but that’s not an individual user. One individual user will not get 1.2 million tokens a second out of any model. That is, at full capacity with as many users running inference as possible on that cluster. The total generation output might be 1.2 million tokens a second, which is still phenomenal, but as far as the actual user experience, you know, if you were a business that wanted really fast inference, you’re not going to get 1.2 million tokens a second.”
1:23:26 Public Preview: Azure Functions zero-downtime deployments with rolling Updates in Flex Consumption
1:24:42 Matt – “It’s a nice quality of life feature that they’re adding to everything. It’s in preview, though, so don’t deploy production workloads leveraging this.”
1:25:06 The Azure PAYG API Shift: What’s Actually Changing (and Why It Matters)
1:27:12 Matt – “A year or two ago, we did an analysis at my day job, and we were trying to figure out the savings plan’s amount if we buy X amount, how much do we need to buy everything along those lines. And we definitely ran into like throttling issues, and it was just bombing out on us at a few points, and a lot of weird loops we had to do because the format just didn’t make sense with moderate stuff. It’s a great way. I would suggest you move not because they’re trying to get rid of it, but because it will make your life better.”
1:28:05 Generally Available: Azure WAF CAPTCHA Challenge for Azure Front Door
1:31:04 Public Preview: Instant Access Snapshots for Azure Premium SSD v2 and Ultra Disk Storage
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 328 of The Cloud Pod, where the forecast is always cloudy! Justin, Ryan, and Matt are on board today to bring you all the latest news in cloud and AI, including secret regions (this one has the aliens), ongoing discussions between Microsoft and OpenAI, and updates to Nova, SQL, and OneLake -and even the latest installment of Cloud Journeys. Let’s get started! Titles we almost went with this week* CloudWatch’s New Feature: Because Nobody Likes Writing Incident Reports at 3 AM * DNS: Did Not Survive – The Great US-EAST-1 Outage of 2025 * 404 DevOps Not Found: The AWS Automation Adventure mk * When Your DevOps Team Gets Replaced by AI and Then Everything Crashes * Database Migrations Get the ChatGPT Treatment: Just Vibe Your Schema Changes * AWS DevOps Team Gets the AI Treatment: 40% Fewer Humans, 100% More Questions * Breaking Up is Hard to Compute: Microsoft and OpenAI Redefine Their Relationship * AWS Goes Full Scope: Now Tracking Your Cloud’s Carbon from Cradle to Gate * Platform Engineering: When Your Golden Path Leads to a Dead End * DynamoDB’s DNS Disaster: How a Race Condition Raced Through AWS * AI Takes Over AWS DevOps Jobs, Servers Take Unscheduled Vacation * PostgreSQL Scaling Gets a 30-Second Makeover While AWS Takes a Coffee Break * The Domino Effect: When DynamoDB Drops, Everything Drops * RAG to Riches: Amazon Nova Learns to Cite Its Sources * AWS Finally Tells You When Your EC2 Instance Can’t Keep Up With Your Storage Ambitions * AWS Nova Gets Grounded: No More Hallucinating About Reality * One API to Rule Them All: OneLake’s Storage Compatibility Play * OpenAI gets to pay Alimony * Database schema deployments are totally a vibe * AWS will tell you how not green you are today, now in 3 scopes
General News 02:00 DDoS in September | Fastly
AI Is Going Great – Or How ML Makes Money04:41 Google AI Studio updates: More control, less friction
05:39 Justin – “So, there are still API keys – they made it sound like there wasn’t, but there is. You just don’t have to manage them until you’ve consumed your free tier.”
09:35 OpenAI takes aim at Microsoft 365 Copilot • The Register
11:05 Ryan – “And it’s a huge problem. It’s been a huge problem that people have been trying to solve for a long time.”
14:23 The next chapter of the Microsoft–OpenAI partnership – The Official Microsoft Blog
Con’t The next chapter of the Microsoft–OpenAI partnership | OpenAI
15:59 Justin – “Once AGI is achieved is an interesting choice… I wonder how Microsoft believes that’s gonna happen very soon, and OpenAI doesn’t, that’s why they’re willing to agree on that term; it’s interesting. Again, it has to be independently verified by a partner, so OpenAI can’t just come out and say, ‘we’ve created AGI,’ then, into a legal dispute – it has to be agreed upon by others. So that’s all very interesting.”
17:45 Build more accurate AI applications with Amazon Nova Web Grounding | AWS News Blog
18:36 Justin – “This is the first time I’ve heard anything about Nova in months, so, good to know?”
Cloud Tools 19:34 Introducing-ai-powered-database-migration-authoring
20:44 Ryan – “Given how hard this is for humans to do, I look forward to AI doing this better.”
AWS 21:38 Amazon Allegedly Replaced 40% of AWS DevOps With AI Days Before Crash
22:19 Justin – “In general, Amazon has been doing a lot of layoffs. There’s been a lot of brain drain. I don’t know that they’ve automated 40% of the DevOps staff with AI systems…so this one seems a little rumor-y and speculative, but I did find it fun that people were trying to blame AI for Amazon’s woes last week.”
24:41 Summary of the Amazon DynamoDB Service Disruption in Northern Virginia (US-EAST-1) Region
26:31 Matt – “It’s a good write-up to show that look, even these large cloud providers that have these massive systems and have redundancy upon redundancy upon redundancy – it’s all software under the hood. Software will eventually have a bug in it. And this just happens to be a really bad bug that took down half the internet.”
28:30 Amazon CloudWatch introduces interactive incident reporting
31:00 Customer Carbon Footprint Tool Expands: Additional emissions categories including Scope 3 are now available | AWS News Blog
32:45 Matt – “This is a difficult problem to solve. Once you have scope three, it’s all your indirect costs. So, I think if I remember correctly, scope one is your actual server, scope two is power, and then scope three is all the things that have to get included to generate your power and your servers, which includes shipping, et cetera. So getting all that, it’s not an easy task to do. Even when I look at the numbers, I don’t know what these mean half the time when I have to look at them. I’m like, we’re going down. That seems positive.”
33:59 AWS Secret-West Region is now available
Agent Coulson – “Welcome to level 7.”
38:24 AWS Transfer Family now supports changing identity provider type on a server
39:26 Ryan – “Any kind of configuration change that requires you to destroy and recreate isn’t fun. I do believe that we should architect for such things and be able to redirect things with DNS traffic (which never goes wrong), never causes anyone any problems. But, it is terrible when that happens, because even when it works, you’re sort of nervously doing it the entire time.”
40:24 New Amazon CloudWatch metrics to monitor EC2 instances exceeding I/O performance
41:20 Matt – “This would have solved a lot of headaches when GP3 came out…”
GCP
43:53 A practical guide to Google Cloud’s Parameter Manager | Google Cloud Blog
44:22 Justin – “ I’m a very heavy user of parameter store on AWS. I love it, and you should all use it for any of your dynamic configuration, especially if you’re moving containers between environments. This is the bee’s knees in my opinion.”
49:39 Cross-Site Interconnect, now GA, simplifies L2 connectivity | Google Cloud Blog
50:57 Ryan – “I mean, I like this just because of the heavy use of infrastructure as code availability. Some of these deep-down network services across the clouds don’t really provide that; it’s all just sort of click ops or a support case. So this is kind of neat. And I do like that you can dynamically configure this and stand it up / turn it down pretty quickly.”
53:12 Introducing Bigtable tiered storage | Google Cloud Blog
54:31 Ryan – “To illustrate that I’m still a cloud guy at heart, whenever I’m in an application and I’m loading data and I go back – like I want to see a year’s data – and it takes that extra 30 seconds to load, I actually get happy, because I know what they’re doing on the backend.”
56:05 Now Shipping A4X Max, Vertex AI Training and more | Google Cloud Blog
57:41 Justin – “That’s a lot of cool hardware stuff that I do not understand.”
Azure58:38 NVIDIA GB300 NVL72: Next-generation AI infrastructure at scale | Microsoft Azure Blog
59:55 Ryan – “Companies looking for scale – companies with a boatload of money.”
1:00:23 Generally Available: Near-zero downtime scaling for HA-enabled Azure Database for PostgreSQL servers
1:01:16 Matt – “They’ve had this for forever on Azure SQL, which is their Microsoft SQL platform, so it doesn’t surprise me. It surprised me more that this was already a two-to-10-minute window to scale. Seems crazy for a production HA service.”
1:02:10 OneLake APIs: Bring your apps and build new ones with familiar Blob and ADLS APIs | Microsoft Fabric Blog | Microsoft Fabric
Cloud Journey 1:03:47 8 platform engineering anti-patterns | InfoWorld
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 327 of The Cloud Pod, where the forecast is always cloudy! Justin, Matt, and Ryan are here to bring you all the latest news (and a few rants) in the worlds of Cloud and AI. I’m sure all our readers are aware of the AWS outage last week, as it was in all the news everywhere. But we’ve also got some new AI models (including Sora in case you’re low on really crappy videos the youths might like), plus EKS, Kubernetes, Vertex AI, and more. Let’s get started! Titles we almost went with this week* Oracle and Azure Walk Into a Cloud Bar: Nobody Gets ETL’d * When DNS Goes Down, So Does Your Monday: AWS Takes Half the Internet on a Coffee Break * 404 Cloud Not Found: AWS Proves Even the Internet’s Phone Book Can Get Lost * DNS: Definitely Not Staffed – How AWS Lost Its Way When It Lost Its People * When Larry Met Satya: A Cloud Love Story * Azure Finally Answers ‘Dude, Where’s My Data?’ with Storage Discovery * Breaking: Microsoft Discovers AI Training Uses More Power Than a Small Country * 404 Engineers Not Found – AWS Learns the Hard Way That People Are Its Most Critical Infrastructure * Azure Storage Discovery: Finding Your Data Needles in the Cloud Haystack * EKS Auto Mode: Because Even Your Clusters Deserve Cruise Control * Azure Gets Reel: Microsoft Adds Video Generation to AI Foundry * The Great Token Heist: Vertex AI Steals 90% Off Your Gemini Bills * Cache Me If You Can: Vertex AI’s Token-Saving Feature * IaC Just Got a Manager – And It’s Not Your Boss * From Musk to Microsoft: Grok 4 Makes the Great Cloud Migration * No Harness.. You are not going to make IACM happen * Microsoft Drafts a Solution to Container Creation Chaos * PowerShell to the People: Azure Simplifies the Great Gateway Migration * IP There Yet? Azure’s Scripts Keep Your Address While You Upgrade
Follow Up00:53 Glacier Deprecation Email
General News 02:24 F5 discloses major security breach linked to nation-state hackers – GeekWire
03:12 Justin – “A little concerning on this one, mostly because F5 is EVERYWHERE.”
AI is Going Great – Or How ML Makes Money 04:55 Claude Code gets a web version—but it’s the new sandboxing that really matters – Ars Technica
05:51 Ryan – “I haven’t had a chance to play with the web version, but I am interested in it just because I found the terminal interface limiting, but I also feel like a lot of the value is in that local sort of execution and not in the sandbox. A lot of the tasks I do are internal and require access to either company resources or private networks, or the kind of thing where you’re not going to get that from a publicly hosted sandbox environment.”
08:36 Open Source: Containerization Assist MCP Server
09:47 Matt – “The piece I did like about this is that it integrated in as an optional feature, kind of the trivia and the security thing. So it’s not just setting it up, but they integrated the next steps of security code scanning. It’s not Microsoft saying, you know, hey, it’s standard … they are building security in, hopefully.”
Cloud Tools 33:09 IaC is Great, But Have You Met IaCM?
13:04 Justin – “So let me boil this down for you. We created our own Terraform Enterprise or Terraform Cloud, but we can’t use that name because it’s copyrighted. So we’re going to try to create a new thing and pretend we invented this – and then try to sell it to you as our new Terraform or OpenTofu replacement for your management tier.”
HugOps Corner – Previously Known as AWS 41:08 AWS outage hits major apps and services, resurfacing old questions about
cloud redundancy – GeekWire
17:53 Ryan – “If it’s a DNS resolution issue that’s causing a global outage, that’s not exactly straightforward. It’s not just a bug, you know, or a function returning the wrong value, or that you’re looking at global propagation, you’re looking at clients in different places, resolving different things, at the base parts of the internet for functionality. And so it does take a pretty experienced engineer to sort of have that in their heads conceptually in to order to troubleshoot. I wonder if that’s really the cause, where they’re not able to recover as fast. But I also feel like cloud computing has come a long way, and the impact was very widely felt because a lot more people are using AWS as their hosting provider than I think have been in the past. A little bit of everything, I think.”
AWS outage was not due to a cyberattack — but shows potential for ‘far worse’ damage – GeekWire
Today is when Amazon’s brain drain finally caught up with AWS • The Register
-And that’s an end to Hugops. Moving on to the rest of AWS-
23:58 Monitor, analyze, and manage capacity usage from a single interface with \Amazon EC2 Capacity Manager | AWS News Blog
25:45 Ryan – “This is kind of nice to have it built in and just have it be plug and play – especially when it’s at no cost.”
26:21 New Amazon EKS Auto Mode features for enhanced security, network control, and performance | Containers
27:33 Ryan – “This just highlights how terrible it was before.”
29:33 Amazon EC2 now supports Optimize CPUs for license-included instances
30:20 Justin – “This is a little weird to me, because I thought this already existed.”
31:46 AWS Systems Manager Patch Manager launches security updates notification for Windows
30:20 Ryan – “It sounds like just a quality of life improvement, but it’s something that should be so basic, but isn’t there, right? Which is like Windows patch management is cobbled together and not really managed well, and so you could have a patch available, but the only way to find out that it was available previously to this was to actually go ahead and patch it and then see if it did something. And so now, at least you have a signal on that; you can apply your patches in a way that’s not going to take down your entire service if a patch goes wrong. So this is very nice. I think for people using the Systems Manager patch management, they’re going to be very happy with this.”
35:26 Introducing CLI Agent Orchestrator: Transforming Developer CLI Tools into a Multi-Agent Powerhouse | AWS Open Source Blog
37:46 Amazon ECS now publishes AWS CloudTrail data events for insight into API activities
39:33 Ryan – “This is definitely something I would use sparingly because the UCS API is agent API chatting. So this seems like it would be very expensive, very fast.”
GCP41:22 G4 VMs powered by NVIDIA RTX 6000 Blackwell GPUs are GA | Google Cloud Blog
43:03 Dataproc 2.3 on Google Compute Engine | Google Cloud Blog
44:14 Ryan – “But on the contrary, like FedRAMP has such tight SLAs for vulnerability management that you don’t have to carry this risk or request an exception because of Google not patching Flink as fast as you would like them to. At least this puts the control at the end user, where they can say, well, I’m not going to use it.”
44:45 BigQuery Studio gets improved console interface | Google Cloud Blog
46:00 Ryan – “Although I’m a little nervous about having all the BigQuery resources across an organization available on a single console, just because it sounds like a permissions nightmare.”
47:10 Manage your prompts using Vertex SDK | Google Cloud Blog
47:43 Justin – “If your prompt has sensitive data in it, I have questions already.”
49:05 Gemini Code Assist in GitHub for Enterprises | Google Cloud Blog
51:08 Ryan – “It’s just sort of the ability to sort of do organizational-wide things is super powerful for these tools, and I’m just sort of surprised that GitHub allows that. It seems like they would have to develop API hooks and externalize that.”
53:19 Vertex AI context caching | Google Cloud Blog
54:18 Ryan – “This is awesome. If you have a workload where you’re gonna have very similar queries or prompts and have it return similar data, this is definitely nicer than having to regenerate that every time. They’ve been moving more and more towards this. And I like to see it sort of more at a platform level now, whereas you could sort of implement this – in a weird way – directly in a model, like in a notebook or something. This is more of a ‘turn it on and it works’.”
55:30 Cloud Armor named Strong Performer in Forrester WAVE, new features launched
56:59 Ryan – “These are some pretty advanced features for a cloud platform provided WAF. It’s pretty cool.”
Azure58:44 Generally Available: Observed capacity metric in Azure Firewall
Generally Available: Prescaling in Azure Firewall
1:01:35 Public Preview: Environmental sustainability features in Azure API Management
1:02:44 Matt – “So APIMs are one, stupidly expensive. If you have to be on the premier tier, it’s like $2,700 a month. And then if you want HA, you have to have two of them. So whatever they’re doing to the hood is stupidly expensive. If you ever had to deal with the SharePoint, they definitely use them because I’ve hit the same error codes as we provide to customers. On the second side, when you do scale them, you can scale them to be multi-region APIMs in the paired region concept, so in theory, what you can do based on this is route a cheaper or more environmentally efficient one, you could route to your paired region and then have the traffic coming that way.”
1:06:09 Unlock insights about your data using Azure Storage Discovery
1:08:35 Ryan – “Well, I’ll tell you when I was looking for this report, I had a lot of natural language – and I was shouting it at my computer.”
1:09:52 Sora 2 in Azure AI Foundry: Create videos with responsible AI | Microsoft Azure Blog
1:10:12 Grok 4 is now available in Microsoft Azure AI Foundry | Microsoft Azure Blog
1:11:04 Generally Available: Enhanced cloning and Public IP retention scripts for Azure Application Gateway migration
Oracle 1:14:59 Oracle Expands AI Agent Studio for Fusion Applications with New Marketplace, LLMs, and Vast Partner Network
1:15:45 Ryan – “They’re partnering with these giant firms that will come in with armies of engineers who will build you a thing – and hopefully document it before running away.”
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 326 of The Cloud Pod, where the forecast is always cloudy! Justin and Ryan are your guides to all things cloud and AI this week! We’ve got news from SonicWall (and it’s not great), a host of goodbyes to say over at AWS, Oracle (finally) joins the dark side, and even Slurm – and you don’t even need to ride on a creepy river to experience it. Let’s get started! Titles we almost went with this week* SonicWall’s Cloud Backup Service: From 5% to Oh No, That’s Everyone * AWS Spring Cleaning: 19 Services Get the Boot * The Great AWS Service Purge of 2025 * Maintenance Mode: Where Good Services Go to Die * GitHub Gets Assimilated: Resistance to Azure Migration is Futile * Salesforce to Ransomware Gang: You Can’t Always Get What You Want * Kansas City Gets the Need for Speed with 100G Direct Connect. Peter, what are you up too * Gemini Takes the Wheel: Google’s AI Learns to Click and Type * Oracle Discovers the Dark Side (Finally Has Cookies) * Azure Goes Full Blackwell: 4,600 Reasons to Upgrade Your GPU Game * DataStax to the Future: AWS Hires Database CEO for Security Role * The Clone Wars: EBS Strikes Back with Instant Volume Copies * Slurm Dunk: AWS Brings HPC Scheduling to Kubernetes * The Great Cluster Convergence: When Slurm Met EKS * Codex sent me a DM that I’ll ignore too on Slack
General News 01:24 SonicWall: Firewall configs stolen for all cloud backup customers
02:36 Justin – “You know, providing your own encryption keys is also good; not allowing your SaaS vendor to have the encryption key is a positive thing to do. There’s all kinds of ways to protect your data in the cloud when you’re leveraging a SaaS service.”
04:43 Take this rob and shove it! Salesforce issues stern retort to ransomware extort
06:31 Ryan – “I do also really like Salesforce’s response, just because I feel like the ransomware has gotten a little out of hand, and I think a lot of companies are quiet quietly sort of paying these ransoms, which has only made the attacks just skyrocket. So making a big public show of saying we’re not going to pay for this is, is a good idea.”
AI is Going Great – Or How ML Makes Money 07:06 Introducing AgentKit
09:03 Codex Now Generally Available
09:48 Ryan – “I don’t know why, but something about having it available in Slack to boss it around sort of rubs me the wrong way. I feel like it’s the poor new college grad joining the team – it’s just delegated all the crap jobs.”
10:14 Introducing the Gemini 2.5 Computer Use model
11:48 Ryan – “I think this is the type of thing that really is going to get AI to be as big as the Agentic model in general; having it be able to understand click and UIs and operate on people’s behalf. It’s going to open up just a ton of use cases for it.”
AWS12:35 AWS Service Availability Change Announcement
13:53 Ryan – “It’s interesting, because I was a heavy user of CodeGuru and CodeCatalyst for a while, so the announcement I got as a customer was a lot less friendly than maintenance mode. It was like, your stuff’s going to end. So I don’t know if it’s true across all these services, but I know with at least those two. I did not get one for Glacier – because I also have a ton of stuff in Glacier, because I’m cheap.”
17:01 AWS Direct Connect announces 100G expansion in Kansas City, MO
18:07 AWS IAM Identity Center now supports customer-managed KMS keys for encryption at rest | AWS News Blog
18:52 Justin – “Encrypt setup can disrupt Identity Center operations, like revoking your encryption key, might be bad for your access to your cloud. So be careful with this one.”
19:28 New general-purpose Amazon EC2 M8a instances are now available | AWS News Blog
20:01 Ryan – “That’s a big one! I still don’t have a use case for it.”
20:09 Announcing Amazon Quick Suite: your agentic teammate for answering questions and taking action | AWS News Blog
22:13 Justin – “This is a confusing product. It’s doing a lot of things, probably kind of poorly.”
23:13 AWS Strengthens AI Security by Hiring Ex-DataStax CEO As New VP – Business Insider
26:03 Justin – “Also, DataStax was bought by IBM – and everyone knows that anything bought by IBM will be killed mercilessly.”
26:50 Amazon Bedrock AgentCore is now generally available
28:17 Ryan – “This really to me, seems like a full app, you know, like this is a core component instead of doing development; you’re just taking AI agents, putting them together, and giving them tasks. Then, the eight-hour runtime is crazy. It feels like it’s getting warmer in here just reading that.”
28:49 AWS’ Custom Chip Now Powers Most of Its Key AI Cloud Service — The Information
29:39 Ryan – “Explains all the Oracle and Azure Nvidia announcements.”
30:16 Introducing Amazon EBS Volume Clones: Create instant copies of your EBS volumes | AWS News Blog
32:06 Running Slurm on Amazon EKS with Slinky | Containers
GCP33:09 Introducing Gemini Enterprise | Google Cloud Blog
35:01 Justin – “I think both Azure and Amazon have similar problems; they are rushing so fast to make products, that they’re creating the same products over and over again, just with slightly different limitations or use cases.”
36:05 Introducing LLM-Evalkit | Google Cloud Blog
37:09 Ryan – “Reading through this announcement, it’s solving a problem I had – but I didn’t know I had.”
38:17 Announcing enhancements to Google Cloud NetApp Volumes | Google Cloud Blog
40:30 Justin – “I have a specific workload that needs storage, that’s shared across boxes, and iSCSI is a great option for that, in addition to other methods you could use that I’m currently using, which have some sharp edges. So I’m definitely going to do some price calculation models. This might be good, because Google has multi-writer files, like EBS-type solutions, but does not have the performance that I need quite yet.”
Azure41:08 GitHub Will Prioritize Migrating to Azure Over Feature Development – The New Stack
43:17 Ryan – “I just hope the service stays up; it’s so disruptive to my day job when GitHub has issues.”
43:33 Microsoft 365 services fall over in North America • The Register
44:17 Introducing Microsoft Agent Framework | Microsoft Azure Blog
44:48 Justin – “We continue to be in a world of confusion around Agentic and out of control of Agentic things.”
45:54 NVIDIA GB300 NVL72: Next-generation AI infrastructure at scale | Microsoft Azure Blog
47:24 Ryan – “Pricing isn’t disclosed because it’s the GDP of a small country.”
48:05 Generally Available: CLI command for migration from Availability Sets and basic load balancer on AKS
49:01 Ryan – “This is why you drag your feet on getting off of everything.”
Oracle49:12 Announcing Dark Mode For The OCI Console
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 325 of The Cloud Pod, where the forecast is always cloudy! Justin is on vacation this week, so it’s up to Ryan and Matthew to bring you all the latest news in cloud and AI, and they definitely deliver! This week we have an AWS invoice undo button, Sora 2, and quite a bit of news DigitalOcean – plus so much more. Let’s get started! Titles we almost went with this week* AWS Shoots for the Cloud with NBA Partnership * Nothing But Net: AWS Scores Big with Basketball AI Deal * From Courtside to Cloud-side: AWS Dunks on Sports Analytics * PostgreSQL Gets a Gemini Twin for Natural Language Queries * Fuzzy Logic: When Your Database Finally Speaks Your Language * CLI and Let AI: Google’s Natural Language Database Assistant * Satya’s Org Chart Shuffle: Now with More AI Synergy * Microsoft Reorgs Again: This Time It’s Personal (and Commercial) * Ctrl+Alt+Delete: Microsoft Reboots Its Sales Machine * Sora 2: The Sequel Nobody Asked For But Everyone Will Use * OpenAI Puts the “You” in YouTube (AI Edition) * Sam Altman Stars in His Own AI-Generated Reality Show * Grok and Roll: Microsoft’s New AI Model Rocks Azure * To Grok or Not to Grok: That is the Question * Grok Around the Clock: Azure’s 24/7 Reasoning Machine * Spark Joy: Google Lights Up ML Inference for Data Pipelines * DigitalOcean’s Storage Trinity: Hot, Cold, and Backed Up * NFS: Not For Suckers (Network File Storage) * The Goldilocks Storage Strategy: Not Too Hot, Not Too Cold, Just Right * NAT Gonna Cost You: DigitalOcean’s Gateway to Savings * BYOIP: Bring Your Own IP (But Leave Your Billing Worries Behind) * The Great Invoice Escape: No More Support Tickets Required Ctrl+Z for Your AWS Bills: The Undo Button Finance Teams Needed * Image Builder Finally Learns When to Stop Trying * Pipeline Dreams: Now With Built-in Reality Checks * EC2 Image Builder Gets a Failure Intervention Feature * MCP: Model Context Protocol or Marvel Cinematic Protocol?
AI is Going Great – Or How ML Makes Money 00:45 OpenAI’s Sora 2 lets users insert themselves into AI videos with sound – Ars Technica
02:04 Matt – “So, before, when you could sort of trust social media videos, now you can’t anymore.”
03:25 Jules introduces new tools and API for developers
04:41 Matt – “We’re just adding to the tools; then we need to figure out which one is gong to be actually useful for you.”
05:17 OpenAI Doubles Down on Chip Diversity With AMD, Nvidia Deals –Business Insider
06:51 Ryan – “I’m stuck on this article sort of gigawatts of power as a unit of measurement for GPU. Like, that’s hilarious to me. we’re just, there’s not this many, not this many GPUs, but like this much in power of GPUs.”
AWS07:55 AWS to Become the Official Cloud and Cloud AI Partner of the NBA, WNBA, NBA G League, Basketball Africa League and NBA Take-Two Media
10:51 Ryan – “I do like the AI analytics for sports, like AWS is already in the NFL and F! Racings and it’s sort of a neat add-on when they integrate it.”
12:45 AWS Introduces self-service invoice correction feature
17:53 EC2 Image Builder now provides enhanced capabilities for managingimage pipelines
16:22 Matt – “I just like this because it automatically disables the pipeline, and I feel like this is more for all those old things that you forgot about that are running that just keep triggering daily that break at one point – or you hope break, so you actually don’t keep spending the money on them. That’s a pretty nice feature, in my opinion, there where it just stops it from running forever.”
18:26 Open Source Model Context Protocol (MCP) Server now available for AmazonBedrock AgentCore
20:50 Ryan- “This is one of those things where I’m a team of one right now doing a whole bunch of snowflake development of internal services, and so I’m like, what’s this for? I don’t understand the problem. But I can imagine that this is something that’s really useful more when you’re spreading out against teams so that you can get unification on some of these things, because if you have a team of people all developing separate agents that are, in theory, somehow going to work together…so I think this is maybe a step in that direction.”
22:02 Amazon ECS now supports one-click event capture and event history querying in the AWS Management Console
23:14 Jonathan – “It’s a great click ops feature.”
24:04 AWS Knowledge MCP Server now generally available
25:46 Jonathan – “It’s the rate limiting; it’s putting realistic in controls in place, whereas before they would just scrap everything.”
28:48 Automatic quota management is now generally available for AWS Service Quotas
32:06 Amazon RDS for Db2 launches support for native database backups
GCP34:19 Gemini CLI for PostgreSQL in action | Google Cloud Blog
35:35 Matt – “I really like the potentially increasing people, because they don’t have context switch. It’s like it’s a feature.”
39:01 Google announces new $4 billion investment in Arkansas
40:25 Ryan – “So per some live research, Walmart is using both Azure and Google as their own private data center infrastructure.”
Azure43:36 Accelerating our commercial growth
45:47 Matt – “Yeah, I think it’s just the AI. Even our account team changed their name a bunch; they al have AI in their name now.”
46:31 Grok 4 is now available in Microsoft Azure AI Foundry | Microsoft Azure Blog
48:18 Ryan – “I like competition generally, and so it’s good to see another competitor model developer, but it is it like they’re adding features that are one model behind Anthopic and OpenAI.”
49:06 Microsoft to allow consumer Copilot in corporate environs • The Register
50:44 Ryan – “I think this is nutso.”
53:00 Fabric Mirroring for Azure SQL Managed Instance (Generally Available) | Microsoft Fabric Blog | Microsoft Fabric
54:55 Ryan – “Because Microsoft SQL server is so memory intensive for performance, being able to do large queries across, you know, datasets has always been difficult with that…So I can see why this is very handy if you’re Microsoft SQL on Azure. And then the fact that they’re giving you so much for free is the incentive there. They know what they’re doing.”
56:35 Generally Available: Azure Firewall Updates – IP Group limit increased to 600 per Firewall Policy
57:50 Matt – “Azure Firewall isn’t cheap, but it’s also your but it’s also your IDS and IPS, so if you’re comparing it to Apollo Alto or any of these other massive ones, the Premiere version is not cheap, but it does give you a lot of those security things.”
Other Clouds58:54 Announcing cost-efficient storage with Network file storage, cold storage, and usage-based backups | DigitalOcean
1:01:24 Matt – “At lot of these companies don’t need the scale, the flexibility and everything else that AWS, GCP, and Azure provide…this is probably all they need.”
1:02:36Build Smarter Agents with Image Generation, Auto-Indexing, VPC Security, and new AI Tools on DigitalOcean Gradient AI Platform | DigitalOcean
1:04:14 Matt – “Theyre really learning about their audience, and they’re going to build specific to what their customer needs… and they’ve determined that their customers need these image generation AI features. They’re not always the fastest, but they always get there.”
1:05:11 Announcing per-sec billing, new Droplet plans, BYOIP, and NAT gateway preview to reduce scaling costs | DigitalOcean
1:09:31 Introducing Snowflake Managed MCP Servers for Secure, Governed Data Agents
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 323 of The Cloud Pod, where the forecast is always cloudy! Justin, Matt and Ryan are in the studio tonight to bring you all the latest in cloud and AI news! This week we have a close call from Entra, some DeepSeek news, Firestore, and even an acquisition! Make sure to stay tuned for the aftershow – and Matt obviously falling asleep on the job. Let’s get started! Titles we almost went with this week* When One Key Opens Every Door: Microsoft’s Close Call with Cloud Catastrophe * Bedrock Goes Qwen-tum: Alibaba’s Models Join the AWS Party * DeepSeek and You Shall Find V3.1 in Bedrock * GPUs of Unusual Size? I Don’t Think They Exist (Narrator: They Do) * Kubernetes Without the Kubernightmares * Firestore and Forget: AI Takes the Wheel SCPs Get Their Full License: IAM Language Edition * Do What I Meant, Not What I Prompted * Atlassian Pays a Billion to DX the Developer Experience * Entra at Your Own Risk: The Azure Identity Crisis That Almost Was * Oracle Intelligence: The AI Nobody Asked For * Wisconsin Gets Cheesy with AI: Microsoft’s Dairy State Datacenter * Azure Opens the Data Floodgates (But Only in Europe) * PostgreSQL Gets a Security Blanket and Won’t Share Its TEEs * Microsoft’s New Cooling System Has Veins Like a Leaf and Runs Hotter Than Your Gaming PC * Azure Gets Cold Feet About Hot Chips, Decides to Go With the Flow
AI Is Going Great – Or How ML Makes Money 00:58 Google and Kaggle launch AI Agents Intensive course
Cloud Tools 03:21 Atlassian acquires DX, a developer productivity platform, for $1B
04:30 Justin – “I use DX, I actually really like DX, some I’m hoping Atlassian doesn’t F it up.”
AWS06:51 Qwen models are now available in Amazon Bedrock | AWS News Blog
07:22 DeepSeek-V3.1 model now available in Amazon Bedrock | AWS News Blog
08:00 Justin – “I’m still skeptical about DeepSeek; because it sounded like it was derivative of ChatGPT, so I don’t really know what you’re getting out of it, other than it’s something cheaper.”
08:34 Amazon RDS for MySQL announces Innovation Release 9.4 in Amazon RDS Database Preview Environment
09:45 Ryan – “My experience with database upgrades is the opposite. No matter how much preview is offered in time and enticement, you’ll still have to kick everyone off the older version kicking and screaming.”
11:50 AWS Organizations supports full IAM policy language for service control policies (SCPs)
12:43 Ryan – “They actually had the stones to say zero friction and SCP in the same article, huh?”
14:11 Amazon Q Developer CLI announces support for remote MCP servers
15:18 Justin – “I think having it centralized is ideal, especially from a security and access control perspective. It’s a bit of a problem when these MCPS are running on everyone’s laptops – because that means they may not be consistent, they may not all follow all the same permissions models you need them to, or different access rights…so there’s lots of reasons why you’d like to have a remote MCP.”
15:54 Accelerate AI agent development with the Nova Act IDE extension
17:39 Ryan – “I get why this is more than just a model, right? This is a specific workflow for development, and there’s clearly extensions and features in here that are above and beyond what’s in Kiro and Q, presumably, but they’d have to be really good.”
GCP18:07 New GCE and GKE dashboards strengthen security posture
18:58 Ryan – “I got to play around with this and it’s really cool. I love getting that security information front and center for developers and the people actually using the platform. You know, as, as a security professional, we have all this information that’s devoid of context, and, if you’re lucky, you know enough to build a detection and be able to query a workflow. It’s going to just fire off a ticket that no one’s going to look at. And so this is, I think, putting it right in the console, I think that some people – not everyone – will take the initiative and be like, this is very red. I should make it not so red.”
20:53 Firestore support and custom tools in MCP Toolbox
21:46 Ryan – “As someone who never wants to write SQL queries ever again, I love these types of things. This is exactly how I want to interact with a database.”
23:17 How are developers using AI? Inside Google’s 2025 DORA report
Azure31:25 Microsoft’s Entra ID vulnerabilities could have been catastrophic
32:52 Matt – “We had a problem. We fixed the problem. Buy more stuff from us so you don’t have any problems in the future.”
36:56 Inside the world’s most powerful AI datacenter – The Official Microsoft Blog
40:17 Introducing new update policy for Azure SQL Managed Instance | Microsoft Community Hub
41:54 Matt – “This is different, because Azure is complicated – because Azure. You have Azure SQL, which is RDS, it’s fully managed. You have Azure Managed Instances, or Azure SQL managed instances, which is SQL on a server. You have access to the server, but they give you extra visibility and everything else into the SQL on that box, and can do the upgrades and stuff.”
43:19 Fast, Secure Kubernetes with AKS Automatic | Microsoft Azure Blog
44:38 Ryan – “Yeah, in my day job I’m doing a whole bunch of vulnerability reporting on the container structure. I’m like, half of these containers are just the Kubernetes infrastructure! It’s crazy.”
45:19 Generally Available: AKS Automatic
PLUS
AKS Automatic with Azure Linux | Microsoft Community Hub
45:45 Public Preview: Databricks One in Azure Databricks
46:42 Justin – “So if you didn’t want this, you are going to get it forced on you at some point.
47:15 Public Preview: Azure HBv5-series VMs
49:56 Public Preview: Azure Functions .NET 10 support
51:00 Ryan – “I’m just happy to see .NET running in serverless workloads.”
Show note editor Heather adds “This is a NO time of the day research thing.”
53:30 Generally Available: High Scale mode for Azure Monitor – Container Insights
54:17 Matt – “The same thing as CloudWatch, it’s so expensive to take logs into any of these platforms, but you gotta get them somewhere. So you kind of just are stuck paying for it.”
54:49 Generally Available: Confidential computing for Azure Database for PostgreSQL flexible server
57:11 Announcing the Azure Database Migration Service Hub Experience | Microsoft Community Hub
57:57 Ryan – “It’s a great play by Azure. They have a huge advantage in this space and I think there is a desire by a lot of companies to get out of legacy deployments, so it’s smart. Hurry up with the features.”
58:19 Public Preview: Azure Managed Service for Prometheus now includes native Grafana dashboards within the Azure portal
58:54 Justin – “I look forward to the arguments between ‘well the Azure monitoring says this, but the Grafana monitoring says this’ and it’s in the same dashboard.”
1:00:01 Generally Available: At-cost data transfer between Azure and an external endpoint
1:01:11 Generally Available: Introducing the new Network Security Hub experience
1:01:51 Matt – “From my preliminary research, it’s just a nice gooey update that they’ve done to kind of make it be a little bit cleaner. It looks like it’s easier to manage some of these things just with Terraform across the way, but, you know, they’re trying to make this be better for companies at a larger scale.”
1:02:32 Fabric September 2025 Feature Summary | Microsoft Fabric Blog | Microsoft Fabric
1:03:30 Justin – “I appreciate all this Fabric stuff; Fabric is Azure’s Q.”
1:04:09 Microsoft tames intense chip heat with liquid cooling veins, designed by AI and inspired by biology – GeekWire
1:05:13 Ryan- “Necessity is the mother of all innovation, right? And so this is not only as trying to offset carbon credits, but it’s also all the demand for AI and more compute – and less space and less power and water. So I think it’s neat to see innovations come out of that, and the way they make the sound just makes it seem like sci-fi, which is cool.”
1:06:18 Generally Available: Application Gateway upgrades with no performance impact
1:07:10 Matt – “About two years ago they added the feature called Mac Surge, which is when you have a scale set, you add a node and then you delete it. So here, they are adding their app gateways; so essentially if you have 10, you would go to 11 and then you would remove one of the original ones. And they essentially are just leveraging that as part of the app gateways… But if you’re also auto scaling, which if you have the app that can handle that, you don’t control your nodes. So you would just lose capacity at one point. So it’s one of those quality of life improvements.
Oracle1:08:27 Oracle Sets The Standard In Enterprise Ai
1:09:42 Justin – “The best thing about this article is they basically imply that they invented AI.”
After Show1:21:40 Prompt Engineering Is Requirements Engineering – O’Reilly
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 324 of The Cloud Pod, where the forecast is always cloudy! Justin, Ryan, and Jonathan are your hosts, bringing you all the latest news and announcements in Cloud and AI. This week we have some exec changes over at Oracle, a LOT of announcements about Sonnet 4.5, and even some marketplace updates over at Azure! Let’s get started. Titles we almost went with this week* Oracle’s Executive Shuffle: Promoting from Within While Chasing from Behind * Copilot Takes the Wheel on Your Legacy Code Highway * Queue Up for GPUs: Google’s Take-a-Number Approach to AI Computing * License to Bill: Google’s 400% Markup Grievance * Autopilot Engages: GKE Goes Full Self-Driving Mode * SQL Server Finally Gets a Lake House Instead of a Server Room * Microsoft Gives Office Apps Their Own AI Interns * Claude and Present Danger: The AI That Codes for 30 Hours Straight * The Claude Father Part 4.5: An Offer Your Code Can’t Refuse * CUD You Believe It? Google Makes Discounts Actually Flexible * ECS Goes Full IPv6: No IPv4s Given * Breaking News: AWS Finally Lets You Hit the Emergency Stop Button * One Marketplace to Rule Them All * BigQuery Gets a Crystal Ball and a Chatty Friend * Azure’s September to Remember: When Certificates and Allocators Attack * Shall I Compare Thee to a Sonnet? 4.5 Ways Anthropic Just Leveled Up * AWS provides a big red button
Follow Up 01:26 The global harms of restrictive cloud licensing, one year later | Google Cloud Blog
03:32 Jonathan – “I’d feel happier about these complaints Google were making if they actually reciprocated the deals they make for their customers in the EU in the US.”
AI is Going Great – Or How ML Makes Money 05:14 Vibe working: Introducing Agent Mode and Office Agent in Microsoft 365 Copilot | Microsoft 365 Blog
17:27 Justin – “There’s web apps for all of them. They’re not as good as Google web apps, but they pretend to be.”
08:14 Introducing Claude Sonnet 4.5 \ Anthropic
12:02 Ryan – “I’ve been using Sonnet 4 pretty much exclusively for coding, just because the results I’ve been getting on everything else is really hit or miss. But I definitely won’t let it go off, because it WILL go off on some tangents.”
16:22 Claude Sonnet 4.5 Is Here | Databricks Blog
16:31 Announcing Anthropic Claude Sonnet 4.5 on Snowflake Cortex AI
16:41 Announcing SQL Server connector from Lakeflow Connect, now Generally Available | Databricks Blog
17:35 Ryan – “This has been a challenge for awhile; getting data out of these transactional databases so that you can run large reporting jobs on them. So I like any sort of “easy button” that moves you out of that ecosystem.”
AWS17:53 Introducing Claude Sonnet 4.5 in Amazon Bedrock: Anthropic’s most intelligent model, best for coding and complex agents | AWS News Blog
18:06 Justin – “I was mad because it wasn’t working, and then I remembered, “oh yeah…in Bedrock you have to go enable the new model one by one. So if you’re trying to use Bedrock and it’s not working, remember to update your model access.”
18:21 Amazon ECS announces IPv6-only support | Containers
18:57 Amazon EC2 Auto Scaling now supports Internet Protocol Version 6 (IPv6)
19:47 Matt- “It is amazing how fast that IPv4 cost does add up in your account, especially if you have load balancers, multiple subnets, and you’re running multiple ECS containers and public subnets for some reason.”
20:36 Amazon EC2 Allowed AMIs setting adds new parameters for enhanced AMI governance
25:07 Jonathan – “Just wait six months, they’ll all have the same features anyway.”
26:00 Amazon EC2 Auto Scaling now supports forced cancellation of instance refreshes
26:38 Justin – “I was like, this isn’t really that big of an issue, and then I remembered well, I’ve had a really big autoscaling group, and this could be a really big problem. If you have like 5 webservers, you probably don’t care. But if you have hundreds? This could be a big lifesaver for you.”
29:00 Announcing Amazon ECS Managed Instances for containerized applications | AWS News Blog
30:12 Justin – “I love Fargate, but I don’t like paying for Fargate. That’s why I run our Cloud Pod website on an EC2 instance because it’s way cheaper. So for three cents more a gig versus going to Fargate, this is probably where I would land if I didn’t really want to manage the host.”
33:11 Announcing AWS Outposts third-party storage integration with Dell and HPE | AWS News Blog
34:37 Jonathan – “It’s more that you can not have AWS provide the storage layer, but you can have them still support S3 and EBS and those other things on top of this third party storage subsystem.”
GCP36:35 Introducing Flex-start VMs for the Compute Engine Instance API. | Google Cloud Blog
37:32 Ryan – “I love this. This is great. You’re still going to see a whole bunch of data scientists spamming the workbooks trying to get this to run, but I do think that from a pure capacity standpoint this is the right answer to some of these things, just because a lot of these jobs are very long running and it’s not really instant results.”
39:52 GKE Autopilot now available to all qualifying clusters | Google Cloud Blog
37:32 Ryan – “So now you can have not only dedicated compute, but preemptible and now autopilot capacity all in the single cluster. Kind of cool.”
41:58 Gemini CLI extensions for Google Data Cloud | Google Cloud Blog
43:28 Announcing Claude Sonnet 4.5 on Vertex AI | Google Cloud Blog
43:51 Adopt new VM series with GKE compute classes, Flexible CUDs | Google Cloud Blog
44:08 Justin – “So this is a solution to a problem that Google has because they’;re terrible at capacity planning. Perfect.”
45:35 AI-based forecasting and analytics in BigQuery via MCP and ADK | Google Cloud Blog
46:38 Ryan – “…this is really neat. And then the fact that it does show you the logic all the way through, which I think is super important. You can ask natural-line questions, and it just comes back with a whole bunch of analysis, and then what happens if that doesn’t work consistently? How do you debug that? This is basically building it, which is how I learned anyway, so it works really well when it’s spitting out the actual config for me instead of just telling me what the results are.”
Azure49:06 Announcing migration and modernization agentic AI tools | Microsoft Azure Blog
50:12 Ryan – “Get these things migrated. Because you can’t run them on these ancient frameworks that are full of vulnerabilities.”
54:32 Introducing Microsoft Marketplace — Thousands of solutions. Millions of customers. One Marketplace. – The Official Microsoft Blog
55:23 Justin – “I guess it’s nice to have one marketplace to rule them all, but 3,000 AI apps sounds like a lot of AI slop.”
56:59 Public Preview: Soft Delete feature in Azure Compute Gallery
57:21 Matt – “So essentially it’s an easy way to do upgrades versus the way AWS – and you have to press (and by press I mean type your cancel API command) to stop the rolling upgrade of the system…this also prevents the same issue that we’ve all run into where I’ve stopped sharing this across accounts and we just broke production somewhere.”
58:48 Switzerland Azure Outage
Oracle1:01:54 Oracle Corporation Announces Promotion Of Clay Magouyrk And Mike Scilia 2025 09 22
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 322 of The Cloud Pod, where the forecast is always cloudy! We have BIG NEWS – Jonathan is back! He’s joined in the studio by Justin and Ryan to bring you all the latest in cloud and AI news, including ongoing drama in the Microsoft/OpenAI drama, saying goodbye to data transfer fees (in the EU), M4 Power, and more. Let’s get started! Titles we almost went with this week* EU Later, Egress Fees: Google’s Brexit from Data Transfer Charges * The Keys to the Cosmos: Azure Unlocks Customer Control * Breaking Up is Hard to Do: Google Splits LLM Inference for Better Performance * OpenAI and Microsoft: From Exclusive to It’s Complicated * Google’s New Model Has Trust Issues (And That’s a Good Thing) * Mac to the Future: AWS Brings M4 Power to the Cloud * Oracle’s Cloud Nine: Stock Soars on Half-Trillion Dollar Dreams * ChatGPT: From Chat Bot to Hat Bot (Everyone’s Wearing Different Professional Hats) * Five Billion Reasons to Love British AI * NVMe Gonna Give You Up: AWS Delivers the Storage Metrics You’ve Been Missing * Tea and AI: OpenAI Crosses the Pond * The Norway Bug Strikes Back: A New YAML Hope
A big thanks to this week’s sponsor:
We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our Slack channel for more info.
AI Is Going Great – Or How ML Makes Money 01:33 Microsoft and OpenAI make a deal: Reading between the lines of their secretive new agreement – GeekWire
ALSO:
OpenAI and Microsoft sign preliminary deal to revise partnership terms – Ars Technica
02:59 Justin – “I’m not convinced that we can get to true AGI with the way that we’re building these models. I think there’s things that could lead us to breakthroughs that would get us to AGI, but the transformer model, and the way we do this, and predictive text, is not AGI. As good as you can be at predicting things, doesn’t mean you can have conscious thought.”
07:45 Introducing Upgrades to Codex
10:14 Jonathan – “I think Codex is probably better at some classes of coding. I think it’s great at React; you want to build a UI, use Codex and use OpenAI stuff. You want to build a backend app written in C or Python or something else? I’d use Claude Code. There seem to be different focuses.”
13:24 How people are using ChatGPT
14:51 Jonathan – “I wish it was more detailed; like how many people are talking to it like it’s a person? How many people are doing nonsense (like on) Reddit?”
17:42 Introducing Stargate UK
18:19 Justin – “I mean, we already have a GPU shortage, so to now make a regionalized need for AI is going to further strain the GPU capacity issues, and so I should probably buy some Nvidia stuff.”
AWS19:37 Announcing Amazon EC2 M4 and M4 Pro Mac instances | AWS News Blog
22:00 Accelerate serverless testing with LocalStack integration in VS Code IDE | AWS News Blog
23:05 Ryan – “It’s interesting; it’s one of those things where I’ve been able to deal with the complexity, so didn’t realize the size of the gap, but I can see how a developer, without infrastructure knowledge, might struggle a little bit.”
26:38 Amazon EC2 supports detailed performance stats on all NVMe local volumes
New EFA metrics for improved observability of AWS networking
27:37 Jonathan – “That’s cool, it’s great that it’s local and it’s not through CloudWatch at .50 cents a metric per however long.”
28:19 Now generally available: Amazon EC2 R8gn instances
29:18 Jonathan – “That’s what you need for VLM clustering across multiple machines. That’s fantastic.”
29:55 Introducing AWS CDK Refactor (Preview)
30:56 Ryan – “It’s interesting, I want to see – because how it works is key, right? Because in Terraform, you can do this, it’s just clunky and hard. And so I’m hoping that this is a little smoother. I don’t use CDK enough to really know how it structures.”
31:36 AWS launches CloudTrail MCP Server for enhanced security analysis
32:23 Ryan – “This is fantastic, just because it’s so tricky to sort of structure queries in whatever SQL language to get the data you want. And being able to phrase things in natural language has really made security operations just completely simpler.”
GCP36:35 New for the U.K. and EU: No-cost, multicloud Data Transfer Essentials | Google Cloud Blog
41:13 Kubernetes 1.34 is available on GKE! | Google Open Source Blog
42:57 Jonathan- “I like to think of it as fixing a problem with JSON, rather than fixing a problem with YAML, because what it looks like is JSON, but now you can have comments – inline comments, like you could always do with YAML.”
45:22 AI Inference recipe using NVIDIA Dynamo with AI Hypercomputer | Google Cloud Blog
46:52 Jonathan – “It’s just like any app, any monolith, where different parts of the monolith get used at different rates, or have different resource requirements. Do you scale the entire monolith up and then have wasted CPU or RAM on some of them? Or do you break it up into different components and optimize for each particular task? And that’s all they’re doing. It’s a pretty good idea.”
47:56 Data Science Agent now supports BigQuery ML, DataFrames, and Spark | Google Cloud Blog
48:52 Ryan – “This kind of makes me wonder what the data science agent did before this announcement…”
50:18 Introducing DNS Armor to mitigate domain name system risks | Google Cloud Blog
51:16 Ryan – “This is cool. This is one of the harder problems to solve in security is just that there’s so many services where you have to populate DNS entries and then to route traffic to them. And then it can basically be abandoned over time in bit rot. And so then, it can be snatched up by someone else and then abused; this will help you detect that scenario.”
53:13 Announcing Agent Payments Protocol (AP2) | Google Cloud Blog
54:26 Jonathan – “This may be the path to the micro payments thing that people have been trying to get off the ground for years. You run a blog or something, and something like this could actually get you the half cent per view that would cover the cost of the server or something.”
55:56 C4A Axion processors for AlloyDB now GA | Google Cloud Blog
58:04 OpenTelemetry now in Google Cloud Observability | Google Cloud Blog
1:00:41 Our new Waltham Cross data center is part of our two-year, £5 billion investment to help power the UK’s AI economy.
1:01:31 Justin – “The Deep Mind AI research is the most obvious reason why they did this.”
1:02:22 Announcing the new Practical Guide to Data Science on Google Cloud | Google Cloud Blog
1:04:29 Google releases VaultGemma, its first privacy-preserving LLM – Ars Technica
1:05:36 Justin – “You want to train a model based off of sensitive data, and then you want to offer the output of that model through a chatbot or whatever it is publicly. And it’s terrifying, as a security professional, because you don’t know what data is going to be spit out, and you can’t predict it, and it’s very hard to analyze within the model what’s in there… And so if solutions like this, where you can sort of have mathematical guarantees – or at least something you can point at, that would go a long way in making those workloads a reality, which is fantastic.”
Azure1:08:20 Generally Available: Azure Cosmos DB for MongoDB (vCore) encryption with customer-managed key
1:09:31 Ryan – “I do like these models, but I do think it should be used sparingly – because I don’t think there’s a whole lot of advantage of bringing your own key… because you can revoke the key and then Azure can’t edit your data, and it feels like an unwarranted layer of protection.”
1:14:57 Introducing Logic Apps MCP servers (Public Preview) | Microsoft Community Hub
1:16:04 Ryan – “For me, the real value in this is that central catalog. The minute MCP was out there, people were standing up their own MCP servers and building their own agents, and then it was duplicative, and so you’ve got every team basically running their own server doing the exact same thing. And now you get the efficiency of centralizing that through a catalog. Also, you don’t have to redo all the work that’s involved with that. There’s efficiency there as well.”
1:17:13 Accelerating AI and databases with Azure Container Storage, now 7 times faster and open source | Microsoft Azure Blog
1:19:17 Microsoft leads shift beyond data unification to organization, delivering next-gen AI readiness with new Microsoft Fabric capabilities
1:20:35 Justin – “The fabric stuff is interesting because it’s basically just a ton of stuff, like Power BI and the Data Lake and stuff, shoved into one unified platform, which is nice, and it makes it easier to do data processes. So I don’t expect it to be a major cost increase for customers who are already using fabric.”
Oracle1:21:40 Oracle’s stock makes biggest single-day gain in 26 years on huge cloud revenue projections – SiliconANGLE
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
The Cloud Pod is in Tears Trying to Understand Azure Tiers Welcome to episode 321 of The Cloud Pod, where the forecast is always cloudy! Justin, Ryan, and Matt are all on hand to bring you the latest in cloud and AI news, including increased metrics data (because who doesn’t love more data), some issues over at Cloudflare, and even bigger issues at Builder.ai – plus so much more. Let’s get started! Titles we almost went with this week* Lost in Translation: Google Helps IPv6 Find Its Way to IPv4 * BigQuery’s Soft Landing for Hard Problems * CloudWatch Gets a Two-Week Memory Upgrade * VM Glow-Up: From Gen1 Zero to Gen2 Hero * Azure Gets Contextual: API Management Learns to Speak AI * The Cloud Pod: Now Broadcasting from 20,000 Leagues Under the Sea * LoRA LoRA on the Wall, Who’s the Finest Model of Them All * Azure Says MFA or the Highway for Resource Management * Two-Factor or Two-Furious: Azure’s Security Ultimatum * Agent 007: License to Build * CUD You Believe It? Google’s Discounts Get More Flexible * WAF’s New Deal: Free Logs with Every Million Requests Served * SOC It To Me: Google’s AI Security Workshop Tour * MFA mandatory in Azure, now you too can hate/hate MS Authenticator * AWS AMIs no longer the Tribbles of cloud computing * ECS Exec; Justin’s prediction from 2018 finally comes true
General News00:56 FinOps Weekly Summit 2025
01:53 Ignite Registration Opens
02:45 Addressing the unauthorized issuance of multiple TLS certificates for 1.1.1.1
02:58 Matt – “I really like how in this they say we messed up, but also you should go review everyone that you don’t trust, and only keep ours, because we ARE trusted, and look what we just found and how we fixed it.”
AI Is Going Great – Or How ML Makes Money 06:02 How Builder.ai Collapsed Amid Silicon Valley’s Biggest Boom – The New York Times
07:30 Ryan – “I’ve definitely seen this before, and you know, this sort of model of that’s like ‘we’ve got machine learning, we got this, and now it’s with AI too’. It’s the same sort of thing – fake it till you make it only goes so far.”
09:31 The Visual Studio August Update is here – smarter AI, better debugging, and more control – Visual Studio Blog
10:50 Ryan – “I’ve been using Copilot almost exclusively for a little while in VS Code, just because it’s better than some of the add-ons. There’s a couple of other integrations you can use with AWS Q and Gemini, and you can sort of tack them on, but Copilot, you can use multiple languages, and it has just built-in hooks into the client itself. So I don’t know if it’s a matter of it’s the first one I use, so I’m biased or what, but I really like it.”
AWS11:37 AWS adds the ability to centrally manage access to AWS Regions and AWS Local Zones
14:42 Amazon CloudWatch now supports querying metrics data up to two weeks old
15:35 Ryan – “ 3 hours is nowhere near enough. So many workloads are cyclical across a day, or we’ll even have different traffic patterns across a week, so it’s kind of crazy to me – 3 hours. I never used CloudWatch Metrics and now I understand why.”
16:46 Amazon CloudWatch query alarms now support monitoring metrics individually
17:34 Ryan – “I can’t believe this took so long.”
18:09 Announcing general availability of Organizational Notification Configurations for AWS User Notifications
21:15 Justin – “The theme of the Amazon section today is just everything Ryan and I asked for ten years ago, in general.”
20:27 Amazon EC2 announces AMI Usage to better monitor the use of AMIs
22:21 ECS Exec is now available in the AWS Management Console
23:10 Justin – “You can get to EC2 through SSM, and then you could access ECS tasks from there. But now you can just go right from the console, which is kind of nice.”
26:55 AWS IAM launches new VPC endpoint condition keys for network perimeter controls
27:39 Ryan – “It’s a good thing to have. It’s definitely on a lot of control frameworks, so it’s nice to have that easier button to check that compliance box.”
28:50 AWS WAF now includes free WAF Vended Logs based on request volume
31:27 AWS Config now supports resource tags for IAM Policies
32:32 Ryan – “Taking away all that Lamda spackle…making that no longer necessary? That’s fantastic.”
GCP33:23 Connect IPv6-only workloads to IPv4 with DNS64 and NAT64 | Google Cloud Blog
34:50 BigQuery Managed Disaster Recovery adds soft failover | Google Cloud Blog
35:36 Ryan – “There’s nothing worse than trying to DR for a giant data set, especially if you have big data querying or job-based things that you’re fronting into your application with those insights. It just can be so nightmarish.”
36:26 Expanded coverage for Compute Flex CUDs | Google Cloud Blog
37:18 Justin – “So, you have to remember there’s CUD and there’s Flex CUDs. So Flex CUDs were only on certain instance types, and it’s more like a savings plan, where the CUD is more like an RI. You get a better discount with a non-flex CUD. So if your workload is pretty static, then a CUD is actually a better use case. But then, when you do want to upgrade, you’re kind of hosed. So this ability allows you to move between the different versions without losing that CUD benefit.”
39:33 Introducing the Agentic SOC Workshops for security professionals | Google Cloud Blog
40:44 Announcing Dataproc multi-tenant clusters | Google Cloud Blog
41:21 Ryan – “Like two months ago, they announced serverless Dataproc, and I thought that that would basically mean you wouldn’t need this anymore? Because this means you’re going to host a giant Dataproc cluster and just pay for it all the time in order to use this.”
42:16 Now available: Rust SDK for Google Cloud | Google Cloud Blog
43:41 Justin – “Good to see more Rusts happening, hopefully to replace legacy C++ apps that are not thread safe.”
Azure45:22 Generally Available: Upgrade existing Azure Gen1 VMs to Gen2-Trusted launch
45:25 Matt – “So unlike Windows, Azure sometimes takes a scorched Earth technique – kind of like Apple does – when they release a lot of features and it takes them a while to get that migration path in there, and I kind of think some of it is because they want that time to test it out and get the scale.”
46:25 Generally Available: Gateway-level metrics and native autoscaling for Azure API Management v2 tiers
46:54 Matt – “The Premier Tier – it’s an arm and a leg, so be careful what you’re doing, and by default it’s not HA. It adds up real fast.”
47:42 Announcing gpt-realtime on Azure AI Foundry: | Microsoft Community Hub
48:56 The Responses API in Azure AI Foundry is now generally available | Microsoft Community Hub
49:34 Ryan – “I like these things, but I’ve been burnt by the 365 Graph API so many times…I would use it, but I don’t trust it.”
50:19 Azure mandatory multifactor authentication: Phase 2 starting in October 2025 | Microsoft Azure Blog
50:53 Justin – “It went so well – the first phase of this – I can’t imagine Phase 2 is going to go any better than the first phase did.”
52:16 Agent Factory: From prototype to production—developer tools and rapid agent development | Microsoft Azure Blog
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 320 of The Cloud Pod, where the forecast is always cloudy! Justin, Matt, and Ryan are coming to you from Justin’s echo chamber and bringing all the latest in AI and Cloud news, including updates to Google’s Anti-trust case, AWS Cost MCP, new regions, updates to EKS, Veo, and Claude, and more! Let’s get into it. Titles we almost went with this week:* Breaking Bad Bottlenecks: AWS Cooks Up Faster Container Pulls * The Bucket List: Finding Your Lost Storage Dollars * State of Denial: Terraform Finally Stops Saving Your Passwords * Three Stages of Azure Grief: Development, Preview, and Launch * Ground Control to Major Cloud: Microsoft Launches Planetary Computer Pro * Veo Vidi Vici: Google Conquers Video Editing * Red Alert: AWS Makes Production Accounts Actually Look Dangerous * Amazon EKS Discovers the F5 Key * Chaos Theory Meets ChatGPT: When Your Reliability Data Gets an AI Therapist * Breaking Bad (Services): How AI Helps You Find What’s Already Broken * Breaking Up is Hard to Cloud: Gemini Moves Back In * Intel Inside Your Secrets: TDX Takes Over Google Cloud * Lord of the Regions: The Return of the Kiwi * All Blacks and All Stacks: AWS Goes Full Kiwi * Azure Forecast: 100% Chance of Budget Alert Storms * Google Keeps Its Cloud Together: A $2.5T Near Miss * Shell We Dance? AWS Makes CLI Scripting Less Painful * AWS Finally Admits Nobody Remembers All Those CLI Commands * Cache Me If You Claude * Your AWS Console gets its Colors, just don’t choose red shirts * Amazon Q walks into a bar, Tells MCP to order it a beer.. The Bartender sighs and mutters “at least chatgpt just hallucinates its beer” * Ryan’s shitty scripts now as a AWS CLI Library
A big thanks to this week’s sponsor:
We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our Slack channel for more info.
General News00:57 Google Dodges A 2.5t Breakup
AI Is Going Great – Or How ML Makes Money 02:16 Introducing GPT-Realtime
02:58 Matt – “More AI scam calling coming your way.”
Cloud Tools04:14 Terraform provider for Google Cloud 7.0 is now GA
05:19 Ryan – “I like the ephemeral resources; I think it’s a neat model for handling sensitive information and stuff you don’t want to store. It’s kind of a neat process.”
06:50 How to get fast, easy insights with the Gremlin MCP Server
07:38 Ryan – “It’s amazing they limited this to read-only commands, the API. I don’t know why they did that…it’s kind of neat to see the interaction model with different services.”
AWS09:21 Introducing Seekable OCI Parallel Pull mode for Amazon EKS | Containers
10:24 Justin – “I personally don’t use all the CPU memory or the network of most of my container instances. So yes, that’s a willing trade-off I’m willing to make.”
13:13 AWS Management Console now supports assigning a color to an AWS account for easier identification
14:57 Matt – “I use it for Chrome and that’s always where I’ve identified different users depending on where it was, I kind of like it where it’s something that can be set.”
17:07 AWS Transfer Family introduces Terraform support for deploying SFTP connectors
18:57 Ryan – “You know you’re getting deep into enterprise orchestration in terms of your customer base when you’re doing stuff like this, because this is ROUGH. “
19:20 Amazon EKS introduces on-demand insights refresh
20:41 Amazon Q Developer now supports MCP admin control
21:33 Ryan – “This future is going to be a little weird, you know, as we sort it out. You think about like chatbots and being able to sort of create infrastructure there and then, kind of bypassing a lot of the permissions and stuff. This is kind of the same problem, but magnified a lot more. And so like, it’s going to be interesting to see how companies adapt.”
22:48 Introducing Amazon EC2 I8ge instances
PLUS
New general-purpose Amazon EC2 M8i and M8i Flex instances are now available | AWS News Blog
29:30 Now Open — AWS Asia Pacific (New Zealand) Region | AWS News Blog
30:54 Announcing a new open source project for scenario-focused AWS CLI scripts
31:56 Ryan – “I will definitely give it a look. It’s kind of strange, because most of the contributions right now are very specific to tutorials, like trying to learn a new Amazon service, and there’s very little documentation on what error handling and advanced sorts of logic are built into these scripts. All of the documentation is just directing you at Q and say, Hey Q, build me a thing that looks like that.”
33:15 Simplified Cache Management for Anthropic’s Claude models in Amazon Bedrock
34:07 Ryan – “I’m just really glad I don’t have to create any applications that need to be this focused on token usage. It sounds painful.”
GCP35:02 Google Workspace announces new gen AI features and a no-cost option for Vids
36:34 Gemini is now available anywhere | Google Cloud Blog
38:18 Justin – “I 100% expect this is going to be very expensive. I mean, connected and managed Kubernetes for containers and VMs on a one-year half-depth ruggedized server is $415 per node per month with a five-year commitment.”
39:41 Container-optimized compute delivers autoscaling for Autopilot | Google Cloud Blog
40:38 Ryan – “Imagine my surprise when I found out that using GKE autopilot didn’t handle node-level cold start. It was so confusing, so I was like, wait, what? Because you’ve been able to do that on EKS for so long. I was confused. Why do I need to care about node provisioning and size when I have zero access or really other interactions at that node level using autopilot? So it is kind of strange, but glad to see they fixed it.”
41:23 From clicks to clusters: Confidential Computing expands with Intel TDX |Google Cloud Blog
43:07 Eventarc Advanced orchestrates complex microservices environments | Google Cloud Blog
44:20 Ryan – “So OpenAI is going for real-time inference, and Google is going to be event-based. It seems like two very different directions. I like the event-driven architecture; it’s something I continue to use in most of the apps that I’m developing and creating. I think that having the ability to do something at a larger scale and coordinating across an entire business is pretty handy.”
Azure45:22 Agent Factory: Top 5 agent observability best practices for reliable AI | Microsoft Azure Blog
47:31 Matt – “It just feels like we’re saying it’s this revolutionary thing, but really it’s something we have to approach from a slightly different angle. It’s the difference between, hey, we have an API and now we have a UI, and users can do things slightly differently… It’s just the evolution of a tool.”
49:04 Generally Available: Azure App Service – New Premium v4 Offering
52:47 Public Preview: Microsoft Planetary Computer Pro
53:55 Matt – “I just want to play with the satellites.”
54:24 Microsoft cloud customers hit by messed-up migration • The Register
56:26 Generally Available: Azure Ultra Disk Price Reduction
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 319 of The Cloud Pod, where the forecast is always cloudy! Justin, Matt, and Ryan are in the studio to bring you all the latest in cloud and AI news. AWS Cost MCP makes exploring your finops data as simple as english text. We’ve got a sunnier view for junior devs, a Microsoft open source development, tokens, and it’s even Kubernetes’ birthday – let’s get into it! Titles we almost went with this week:* From Linux Hater to Open Source Darling: A Microsoft Love Story * 20,000 Lines of Code and a Dream: Microsoft’s Open Source Glow-Up * Ctrl+Alt+Delete Your Assumptions: Microsoft Goes Full Penguin * Token and Esteem: Amazon Bedrock Gets a Counter * CSI: Cloud Scene Investigation * The Great SQL Migration: How AI Became the Universal Translator * Token and Ye Shall Receive: Bedrock’s New Counting Feature * The Count of Monte Token: A Bedrock Tale – mk * Ctrl+Z for Your Database: Now with Built-in Lag Time * IP Freely: GKE Takes the Pain Out of Address Management * AWS CEO: AI Can’t Replace Junior Devs Because Someone Has to Fix the AI’s Code * Better Late Than Never: RDS PostgreSQL Gets Time Travel * The SQL Whisperer: Teaching AI to Speak Database * DigitalOcean Goes Full Chatbot: Your Infrastructure Now Speaks Human * Musk vs Cook: The App Store Wars Episode AI * Firestore Goes Mongo: A Database Love Story * GKE Turns 10: Now With More Candles and Less Complexity * Prime Day Infrastructure: Now With 87,000 AI Chips and a Robot Army * AWS Scales to Quadrillion Requests: Your Black Friday Traffic Looks Cute * AWS billing now speaks human, thanks to MCPs * The Bastion Holds: Azure’s New Gateway to Kubernetes Kingdoms * The Surge Before the Merge: Azure’s New Upgrade Strategy * CNI Overlay: Because Your Pods Deserve Their Own ZIP Code
AI Is Going Great – or How ML Makes Money 00:46 Musk’s xAI sues Apple, OpenAI alleging scheme that harmed X, Grok
01:55 Justin – “There’s always a potential for conflict of interest when you have a partnership like this, but also the app store – there’s a ton of companies that track downloads and track usage of these things, and I don’t know that they have hard evidence here, other than this is just a way to keep Apple distracted while they make Grok better.”
04:14 AWS CEO says AI replacing junior staff is ‘dumbest idea’ • The Register
05:25 Ryan – “I do really think the industry is using AI wrong, and I think that the layoffs are a sign of that. And it’s really easy to say ‘oh, well our mid to senior developer staff can now do all these junior tasks, so let’s replace them,’ but I don’t think that’s a sustainable model.”
AWS11:14 Count Tokens API is now supported for Anthropic’s Claude models now in Amazon Bedrock
12:10 Justin – “Now, I appreciate the idea of allowing better budget forecasting, but budget forecasting does not move with the scale of AI, so there is no way that you’re getting an accurate forecast unless you have very specific prompts that you’re going to reuse a LOT of times.”
13:39 Announcing the AWS Billing and Cost Management MCP server
14:33 Justin – “All I want to know is, can I ask the MCP to tell me what the hell EC2 Other is?”
16:07 Amazon RDS for Db2 now supports read replicas
11:26 Amazon RDS for PostgreSQL now supports delayed read replicas
18:39 Justin – “The chances of me being able to realize that I screwed up that badly within 15 minutes before this replicated is probably pretty slim.”
23:07 AWS services scale to new heights for Prime Day 2025: key and milestones | AWS News Blog
28:22 Justin – “What I don’t want our listeners to take away from this is ‘Hey, I should install Fizz and use it on Black Friday!’ If you haven’t had a culture of that chaos testing and the resiliency and redundancy built into your engineering culture for more than a year…do not do that.”
GCP36:25 Choose the right Google AI developer tool for your workflow | Google Cloud Blog
37:40 Ryan – “The Gemini App – a lot of the documentation that is accompanying the app – is very likely to lead you astray, in terms of whether this is something that can handle a production deployment referencing that API endpoint.”
40:13 Gemini 2.5 Flash Image on Vertex AI | Google Cloud Blog
41:49 Justin – “I had complained about how expensive Veo was; now you can make three videos a day with Veo in Geimini Pro.”
43:07 Gemini Cloud Assist investigations performs root-cause analysis | Google Cloud Blog
46:23 Automate SQL translation: Databricks to BigQuery with Gemini | Google Cloud Blo
47:13 Justin – “I find it interesting that they call out that their product is not as good as Databricks by saying ‘we’ll help you build all the things that you need for equivalents!’ And likes, that’s helpful. Thanks, Google.”
48:28 Measuring the environmental impact of AI inference | Google Cloud Blog
50:09 Justin – “I do appreciate that they’re trying something here.”
52:44 From silos to synergy: New Compliance Manager, now in preview | Google Cloud Blog
54:01 Ryan – “The automated evidence gathering is spectacular on these tools. And it’s really what’s needed – even from a security engineer standpoint – being able to view those frameworks to see the compliance metrics, and how you’re actually performing across those things, and what’s actually impactful is super important too.”
59:50 GKE Auto-IPAM simplifies IP address management | Google Cloud Blog
1:00:58 Ryan – “I think it was just last week that Google announced that you could add IP_Space to existing clusters.”
1:02:47 Firestore with MongoDB compatibility is now GA | Google Cloud Blog
1:04:42 GKE gets new pricing and capabilities on 10th birthday | Google Cloud Blog
Azure1:09:17 From 20,000 lines of Linux code to global scale: Microsoft’s open-source journey | Microsoft Azure Blog
1:11:15 Matt – “I’m confused by that fourth thing, because they fully backed Redis when they changed the licensing and were the only cloud that did, but we focus on open source first…”
1:15:02 DocumentDB joins the Linux Foundation – Microsoft Open Source Blog
56:01 Justin – “Now the question is, can I take these DocumentDB extensions and put them on Cloud SQL from Google without having to use Firestore? That’s the real question.”
1:17:31 Public Preview: Azure Bastion now supports connectivity to private AKS clusters via tunneling
1:18:36 Matt – “Azure Bastion is actually pretty good. We use it at my day job, and it’s really not bad.”
1:23:37 Generally Available: Application Gateway adds MaxSurge support for zero-capacity-impact upgrades
1:24:53 Matt – “It’s amazing this wasn’t there and native, and why is this something you have to think about? It’s supposed to be a managed service. I have to tell it the number of nodes, tell it to do these things…it just feels like a very clunky managed service. And you still have to bring your own certificate.”
1:26:00 Generally Available: Azure Migrate now supports migration to disks with Zone-Redundant Storage (ZRS) redundancy
1:28:40 Matt – “This is more for backup. So if you’re running a file server in one region, in one zone, and that zone goes down, your data is still in the other zone – so you spin up a server and attach it.”
Other Clouds 1:31:45 DigitalOcean MCP Server is now available | DigitalOcean
Cloud Journey1:00:42 A guide to platform engineering | Google Cloud Blog
We had homework to watch the full video — We tried but it was so boring.
The blog post is good. Video is a recording of a conference talk…but man. We promise to find more interesting topics for the next Cloud Journey installation.
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 318 of The Cloud Pod, where the forecast is always cloudy! We’re going on an adventure! Justin and Ryan have formed a fellowship of the cloud, and they’re bringing you all the latest and greatest news from Valinor to Helm’s Deep, and Azure to AWS to GCP. We’ve water issues, some Magic Quadrants, and Aurora updates…but sadly no potatoes. Let’s get into it! Titles we almost went with this week:* You’ve Got No Mail: AOL Finally Hangs Up on Dial-Up * Ctrl+Alt+Delete Climate Change * H2-Oh No: Your Gmail is Thirsty * The Price is Vibe: Kiro’s New Request-Based Model * Spec-tacular Pricing: Kiro Leaves the Waitlist Behind * SHA-zam! GitHub Actions Gets Its Security Cape * Breaking Bad Actions: GitHub’s Supply Chain Intervention * Graph Your Way to Infrastructure Happiness * The Tables Have Turned: S3 Gets Its Iceberg Moment * Subnet Where It Hurts: GKE Finally Gets IP Address Relief * All Your Database Are Belong to Database Center * From Droplets to Dollars: DigitalOcean’s AI Pivot Pays Off * DigitalOcean Rides the AI Wave to Record Earnings * Agent Smith Would Be Proud: Microsoft’s Multi-Agent Matrix * Aurora Borealis: A Decade of Database Enlightenment * Fifteen Shades of Cloud: AWS’s Unbroken Streak * The Fast and the Failover-ious: Aurora Edition * Gone in Single-Digit Seconds: AWS’s Speedy Database Recovery * Agent 007: License to Secure Your AI
A big thanks to this week’s sponsor:
We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our Slack channel for more info.
General News 01:02 AOL is finally shutting down its dial-up internet service | AP News
02:30 British government asks people to delete old emails to reduce data centres’ water use
03:01 Ryan – “It’s going to make it worse! Data at rest doesn’t use a whole lot of resources. Deleting anything from a file system is expensive from a CPU perspective, and it’s going to cause the temperature to go up – therefore, more cooling…”
01:17 Data centres to be expanded across UK as concerns mount
07:12 Justin – “Power and cooling are definitely a problem… There is pressure on using water in data centers to cool them. That is a valid concern – especially with a hundred new data centers coming online, as well as powering. How do you power all those hungry, hungry GPUs?”
Cloud Tools 08:30 GitHub Actions policy now supports blocking and SHA pinning actions – GitHub Changelog
09:41 Ryan – “This is something that’s been really relevant to my day job; I’ve been arguing for months now to NOT expand permissions to cloud and other integrations for GitHub actions, because I’m not a fan of the security actions.”
AWS11:26 Kiro Pricing Plans Are Now Live – Kiro
13:19 Ryan – “I think it’s great, but I’m kind of put off by the free plan not including anything, and then the 14-day limit for new users. I just feel like that’s too constricting, and it will keep me from trying it.”
13:47 Amazon Athena now supports CREATE TABLE AS SELECT with Amazon S3 Tables
14:28 Ryan – “It’s the partitioning of data in your table on the fly. That’s the part where this is super valuable.”
16:44 Celebrating 10 years of Amazon Aurora innovation | AWS News Blog
19:21 AWS named as a Leader in 2025 Gartner Magic Quadrant for Strategic Cloud Platform Services for 15 years in a row | AWS News Blog
27:45 Amazon Web Services (AWS) Advanced Go Driver is generally available
27:43 Best performance and fastest memory with the new Amazon EC2 R8i and R8i-flex instances | AWS News Blog
30:58 Ryan – “I feel like AWS is just trolling us wth instance announcements now. I feel like there’s a new one – and I don’t know the difference. They’re just different words.”
GCP32:20 Multi-subnet support for GKE clusters increases scalability | Google Cloud Blog
30:58 Justin – “I always like when a feature comes out right when I need it.”
34:45 Database Center expands coverage | Google Cloud Blog
35:33 Justin – “I’m glad to have this. I’m also glad that it can notify me that someone created a SQL cluster, rather than me being surprised by the bill, so that I do appreciate!”
36:54 Introducing Cloud HSM as an encryption key service for Workspace CSE | Google Cloud Blog
35:33 Justin – “It’s really going to be the CSE side, so it’s actually encrypting on my client. So my Gmail client actually will have a key that is being accessed from this HSM to encrypt the mail at my browser, before it gets sent.”
39:05 Security Summit 2025: Enabling defenders and securing AI innovation | Google Cloud Blog
35:33 Ryan – “A lot of good features; I’ve been waiting for these announcements…I’m really happy to see these, and there’s a whole bunch I didn’t know about that they announced that I’m super excited about.”
42:26 Rightsizing LLM Serving on vLLM for GPUs and TPUs | Google Cloud Blog
FYI – the link is broken. I tried to find an alternate version, but couldn’t. You’re just going to have to rely on Justin and Ryan’s summary. I apologize in advance. -Heather
Azure45:38 Announcing MSGraph Provider Public Preview and the Microsoft Terraform VSCode Extension | Microsoft Community Hub
46:42 Ryan – “So I understand why you hate this, because you hate all the services that are behind the Graph API, but there’s a single API point if you want to do anything in Teams. It’s the same API point if you want to query Entra ID for membership in a list of groups. It’s a graph API endpoint for anything in the docs or the mail space.. It’s all just the same API. Because it’s a single API that way, the structure can get real weird real fast… so this is kind of neat. I’m hoping it makes things easier.”
48:07 Agent Factory: The new era of agentic AI—common use cases and design patterns | Microsoft Azure Blog
49:46 OneLake costs simplified: lowering capacity utilization when accessing OneLake | Microsoft Fabric Blog | Microsoft Fabric
51:12 Introducing Azure Linux with OS Guard: Secure, Immutable, and Open-Source Container Host
46:42 Ryan – “This is interesting, because according to the blog post, it takes a sort of different approach than what we’ve seen in the past with core OS and Bottlerocket and stuff – where they’re trying to reduce what’s in that limit so much that you can’t have anything that vulnerable that can be exploited in it. And this uses a lot more of the protected VMs, where it uses the sort of encrypted memory objects. And so this is sort of a new take on securing container-wise workloads at the compute level.”
53:45 Microsoft is a Leader in the 2025 Gartner® Magic Quadrant for Container Management | Microsoft Azure Blog
Oracle54:57 Oracle To Offer Google Gemini Models To Customers 2025 08 14
56:01 Ryan – “What a weird thing.”
Other Clouds 56:42 DigitalOcean stock jumps nearly 29% as earnings and revenue top expectations – SiliconANGLE
58:14 Introducing SQL Stored Procedures in Databricks | Databricks Blog
59:28 Ryan – “Database people are gonna do data things.”
Cloud Journey1:00:42 A guide to platform engineering | Google Cloud Blog
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 317 of The Cloud Pod, where the forecast is always cloudy! Justin, Matt, and an out-of-breath (from outrunning bears) Ryan are back in the studio to bring you another episode of everyone’s favorite cloud and AI news wrap-up. This week we’ve got GTP-5, Oracle’s newly minted AI conference, hallucinations (not the good kind), and even a Cloud Journey follow-up. Let’s get into it! Titles we almost went with this week:* Oracle Intelligence: Mission Las Vegas * AI World: Oracle’s Excellent Adventure * AI Gets a Reality Check: Amazon’s New Math Teacher for Hallucinating Models * Jules Verne’s 20,000 Lines Under the C * GPT-5: The Empire Strikes Back at Computing Costs * 5⃣Five Alive: OpenAI’s Latest Language Model Drops * GPT-5 is Alive! (And Ready for Your API Calls) * From Kanban to Kan’t-Ban: Alienate Your User Base in One Update * No More Console Hopping: ECS Logs Stay Put * Following the Paper Trail: ECS Logs Go Live * The Pull Request Whisperer * Five’s Company: DigitalOcean Joins the GPT Party * WireGuard Your Kubernetes: The Mesh-iah Has Arrived * EKS-tending Your Reach: When Your Nodes Need a VPN Alternative * Buttercup Blooms: DARPA’s Prize-Winning AI Security Tool Goes Public * From DARPA to Docker: How Buttercup Brings AI Bug-Hunting to Your Laptop * Agent 007: License to Query * Compliance Manager: Because Nobody Dreams of Filling Out Federal Paperwork * Do Compliance Managers dream of Public Sector sheep? * Blob’s Your Uncle: Finding Lost Data in the Cloud * Wassette: Teaching Your AI Assistant to Go Shopping for Tools * Monitor, Monitor on the Wall, Who’s the Most Secure of All? * Better Late Than IPv-Never * VPC Logs: Now with 100% Less Manual Labor * CloudWatch Catches All the Flows in Your Organization * The Organization-Wide Net: No VPC Left Behind * SQS Goes Super Size: Would You Like to Quadruple That? * One MiB to Rule Them All: SQS’s Payload Growth Spurt * Microsoft Finally Merges with Its $7.5 Billion Side Piece * From Hub to Spoke: GitHub Loses Its Independence * Cloud Run Forest Run: Google’s AI Workshop Marathon * From Zero to AI Hero: Google’s Production Pipeline Workshop * The Fast and the Serverless: Cloud Run Drift
A big thanks to this week’s sponsor:
We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our Slack channel for more info.
General News 01:17 GitHub will be folded into Microsoft proper as CEO steps down – Ars Technica
03:01 Matt – “God knows how long a decision is going to take to get made.”
AI Is Going Great – or How ML Makes Its Money 05:10 Jules, Google’s asynchronous AI coding agent, is out of public beta
06:30 Ryan – “I think it’s a perfect example of like where GitHub might go, right? Because this already integrates with GitHub, so you can communicate with the AI in issues or point at certain issues, or use it in comments. And it’s synchronous, so it’s just running in the background. It’s not a chat or an interactive agent conversation. You’re sort of like giving it directions and sending it off.”
08:11 Introducing GPT-5
09:38 Introducing GPT-5 for Developers
11:09 Ryan – “I’m kind of afraid of AGI, and I’m putting my head in the sand about it right now.”
12:29 Announcing OpenAI GPT-5 on Snowflake Cortex AI
12:35 Apple brings OpenAI’s GPT-5 to iOS and macOS – Ars Technica
12:50 Now Live: GPT-5 on the DigitalOcean Gradient AI Platform | DigitalOcean
13:39 Matt – “It’s going to be a question, in a month, of ‘why don’t you have GPT-5, where is it in your roadmap?’ More than anything.”
14:15 ChatGPT users hate GPT-5’s “overworked secretary” energy, miss their GPT-4o buddy – Ars Technica
15:00 The GPT-5 rollout has been a big mess – Ars Technica
16:51 Matt – “Could go the Microsoft or AWS route and never depricate anything until you can 100% guarantee no one is using it anymore.”
Cloud Tools17:18 Buttercup is now open-source! -The Trail of Bits Blog
19:19 Ryan – “I do like anything that’s going to go and detect the vulnerabilities and then also try to fix them on behalf of developers. I haven’t used any of these tools, and it’s an interesting fit with the existing pipelines. It’s pretty cool though.”
AWS 19:58 Amazon Aurora Serverless v2 now offers up to 30% performance improvement
21:28 Justin – “I almost went down the blue-green path, but when you do blue-green, it’s not just a temporary thing; you end up running it forever – which I don’t want to do because I don’t have that kind of money to burn. But this is not easy to get on to; I wish they would just give you a button.”
23:14 Minimize AI hallucinations and deliver up to 99% verification accuracy with Automated Reasoning checks: Now available | AWS News Blog
24:44 Ryan – “It is kind of crazy the idea that the reasoning checks are just using mathematical logic.”
26:04 Amazon ECS console now supports real-time log analytics via Amazon CloudWatch Logs Live Tail
27:44 Matt – “I wish this was here years ago when I did my first ECS deployments.”
27:57 AWS Lambda now supports GitHub Actions to simplify function deployment
29:03 Ryan – “I love this with every bone in my body. This is an easy button for development, where I can’t think of the amount of bad scripting I’ve done… trying to build pipelines to do what I want. This is definitely something that will make that a lot easier.”
30:36 Amazon DynamoDB adds support for Console-to-Code
31:17 Ryan – “I promise you that CloudFormation takes that YAML and converts it to JSON before execution.”
36:41 Simplify network connectivity using Tailscale with Amazon EKS Hybrid Nodes | Containers
38:49 Ryan – “If everything is using a mesh peer-to-peer communication network, great. But if you’re doing this on top of VPC, that’s on top of transit gateway, that already has a Direct Connect gateway, and you’re just doing it to bypass your network infrastructure, boo! Don’t do that.”
41:21 Amazon CloudWatch introduces organization-wide VPC flow logs enablement
GCP44:50 Gemini CLI GitHub Actions: AI coding made for collaboration
45:54 Ryan – “I like that this is also directly competing with Jules – it’s very similar – without all the polish. In fact, now I’m worried that I was confusing features between the two of them when we were talking about Jules earlier.”
46:41 New agents and AI foundations for data teams | Google Cloud Blog
47:07 Ryan – “I’m going to throw a party. Those people have been screwing up the data in my Data Lakes for how long? This is awesome. Now it will be screwed up, but it will be done by a computer.”
48:50 AI First Colab Notebooks in BigQuery and Vertex AI | Google Cloud Blog
50:27 Accelerate FedRAMP Authorization with Google Cloud Compliance Manager | Google Cloud Blog
53:29 Justin – “It’s basically the government saying, it’s too hard to get FedRAMP, we want to level the playing field, and so they’ve changed the rules, but made them more confusing – because they haven’t actually provided clarifications for most of them. And so it’s a promise of better, but no reality of it yet.”
49:10 Introducing Enhanced Backups for Cloud SQL | Google Cloud Blog
58:18 Introducing Looker MCP Server | Google Cloud Blog
58:10 Justin – “Not having to write Looker reports to get my data
Is super nice. But also, if Looker is getting more and more capabilities, so that I can – potentially from a different system – reach out to Looker and tell it to create a report with the pretty dashboards I love as an executive, all is right in the world.”
59:15 Accelerate AI with Cloud Run: Sign up now for a developer workshop near
you! | Google Cloud Blog
1:01:14 Matt – “Who needs security on MCPs? It’s so new, no one is going to know how to break into it.”
Azure1:02:17 OpenAI’s open‑source model: gpt‑oss on Azure AI Foundry and Windows AI Foundry | Microsoft Azure Blog
1:02:27 Introducing Azure Storage Discovery: Transform data management with storage insights | Microsoft Azure Blog
1:03:24 Ryan – “I think this is a feature they had to develop in self-defense, because the way they organize the blob storage with those storage accounts. Because coming from another cloud, it’s completely undecipherable.”
1:07:24 General Availability of Azure Monitor Network Security Perimeter Features | Microsoft Community Hub
1:08:07 Ryan – “If you think about your API endpoints, there is security rules for that. So they’re touting logs and the log out analytics here because those aren’t natively available directly within your VPC network and your subscription. So they’re just accessible via a platform service. And so now, you can basically put rules around accessing that platform service, which won’t confuse anyone at all.”
1:10:50 General Availability of Auxiliary Logs and Reduced Pricing | Microsoft Community Hub
1:12:02 Ryan – “You’re legally required to have it, that’s why! It’s your firewall logs, your SQL server transaction logs – that you are obligated ot maintain – and that’s exactly what this is for. It’s a routing layer in your existing logging infrastructure, and it just routes these to a low-cost, different sort of query method.”
1:13:16 Announcing General Availability of App Service Inbound IPv6 Support | Microsoft Community Hub
Oracle1:15:00 Oracle Announces Oracle AI World 2025 08 06
Cloud Journey1:17:18 Beyond IAM access keys: Modern authentication approaches for AWS | AWS Security Blog
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 316 of The Cloud Pod, where the forecast is always cloudy! This week we’ve got earnings (with sound effects, obviously) as well as news from DeepSeek, DocumentDB, DigitalOcean, and a bunch of GPU news. Justin and Matt are here to lead you through all of it, so let’s get started! Titles we almost went with this week:* Lake Sentinel: The Security Data Monster Nobody Asked For * Certificate Authority Issues: When Your Free Lunch Gets a Security Audit * Slash and Learn: Gemini Gets Command-ing * DigitalOcean Drops Anchor in AI Waters with Gradient Platform * The Three Stages of Azure Grief: Development, Preview, and Launch * E for Enormous: Azure’s New VM Sizes Are Anything But Virtual * SRE You Later: Azure’s AI Agent Takes Over Your On-Call Duties * Site Reliability Engineer? More Like AI Reliability Engineer * Azure Disks Get Elastic Waistbands * Agent Smith Would Be Proud: Google’s Multi-Agent Matrix Gets Real * C4 Yourself: Google Explodes Into GA with Intel’s Latest Silicon * The Cost is Right: GCP Edition * Penny for Your Cloud Thoughts: Google’s Budget-Friendly Update * DocumentDB Goes on a Diet: Now Available in Serverless Size * MongoDB Compatibility Gets the AWS Serverless Treatment * No Server? No Problem: DocumentDB Joins the Serverless Party * Stream Big or Go Home: Lambda’s 10x Payload Boost * Lambda Response Streaming: Because Size Matters * GPT Goes Open Source Shopping * GPT’s Open Source Awakening * When Your Antivirus Needs an Antivirus: Enter Project Ire * The Opus Among Us: Anthropic’s Coding Assistant Gets an Upgrade * Serverless is becoming serverful in streaming responses
General News 02:08 It’s Earnings Time! (INSERT AWESOME SOUND EFFECTS HERE)
02:16 Alphabet beats earnings expectations, raises spending forecast
03:55 Justin – “I don’t know what it takes to actually run one of these large models at like ultimate scale that like a ChatGPT needs or Anthropic, but I have to imagine it’s just thousands and thousands of GPUs just working nonstop.”
04:31 Microsoft (MSFT) Q4 earnings report 2025
06:33 Amazon earnings key takeaways: AI, cloud growth, tariffs
08:08 Justin – “They’re not there yet. And they, they haven’t been there for a while, which is the concerning part. And I don’t know, you know – I haven’t really heard much about Nova since they launched. They talk a lot about their Anthropic partnership, which makes sense. But I don’t feel like they have the swagger in AI that the others do.”
AI Is Going Great – or How ML Makes Its Money 11:23 Gemini 2.5: Deep Think is now rolling out
13:02 Justin – “…these deep thinking models are the most fun to play with, because you know, you don’t need it right away, but you want to go plan out a weekend in Paris, or I want you to, uh, go compare these three companies products based on public data and Reddit posts and things like that. And it goes, it does all this research, then it comes back with suggestions. That’s kind of fun. The more in depth it is, the better it is in my opinion.So the deep thinking stuff is kind of the coolest, like heavy duty research stuff.”
14:17 Introducing Gpt OSS
15:30 Matt – “I’m still stuck on the 16 gigabytes of memory on your video card. I still remember, I bought my video first video card, it had 256 megabytes. It was a high end video card. And now I’m like, God, these things got so much bigger and faster. Okay, I’m officially old.”
16:43 Project Ire autonomously identifies malware at scale – Microsoft Research
19:15 Justin – “I can think of all the things that can make us more efficient at and more productive with, and it’s like wow, that’s a great use case… it just takes away all of the noise.”
27:22 Claude Opus 4.1 \ Anthropic
AWS29:09 Announcing general availability of Amazon EC2 G6f instances with fractional GPUs – AWS
30:15 Matt – “The fractional GPUs is an interesting concept; most people probably don’t need a massive GPU… so of you’re just doing one off things or you need it for a specific project, then you can get that small usage. “
31:07 Amazon DocumentDB Serverless is now available | AWS News Blog
33:04 Justin – “I mean, the one thing about the DCU model – and I see it a bunch of places, because I’ve been doing a lot more serverless with Valkey, and this DCU model comes up a lot. I actually just moved the CloudPod database to serverless Aurora for MySQL. And so I’ve been getting a little more exposed to the whole, whatever that one’s called; something like DCU as well. And it’s a little bit opaque. I definitely don’t love it as a model, but it is so much cheaper.”
35:18 Introducing Amazon Application Recovery Controller Region switch: A multi-Region application recovery service | AWS News Blog
36:23 Matt – “I like the note here: ‘to facilitate the best possible outcomes, we recommend you regularly test your recovery plans and maintain appropriate service quotas in your standby region’ because the amount of times I’ve seen people try to do DR testing and then they his a service quota limit is comical at this point.”
38:42 AWS Lambda response streaming now supports 200 MB response payloads – AWS
GCP40:26 Gemini CLI: Custom slash commands | Google Cloud Blog
37:18 Matt – “I still like the VS Code plugin, and making it interact more that way. I find that a little bit better from the little bit I’ve played with Claude Code, but recently I’ve been talking to people who say Claude Code has gotten better since the initial release so I have to go back and play with it and see.”
42:40 Agent2Agent protocol (A2A) is getting an upgrade | Google Cloud Blog
44:18 Justin – “Agent to Agent is basically how you make MCP to MCP work in the cloud.”
44:38 C4 VMs based on Intel 6th Gen Xeon Granite Rapids now GA | Google Cloud Blog
46:24 Announcing Cloud Hub Optimization and Cost Explorer for developers | Google Cloud Blog
47:26 Justin – “And if you’ve ever used the Google Cloud Optimization Hub and Cost Explorer previously, you’d know they’re hot garbage. So this was a very appreciated announcement at Google Next.”
Azure49:10 Introducing Microsoft Sentinel data lake | Microsoft Community Hub
51:40 Matt – “Kusto is their proprietary time series database. So all of Azure metrics. And you can even pay for teh service and leverage it yourself as Azure data explorer.”
38:01 Announcing General Availability of Azure E128 & E192 Sizes in the Esv6 and Edsv6-series VM Families | Microsoft Community Hub
56:12 Announcing a flexible, predictable billing model for Azure SRE Agent | Microsoft Community Hub
57:25 Matt – “I really want to play with this. I’m a little terrified of what the cost is gong to be.”
59:02 Generally Available: Live Resize for Premium SSD v2 and Ultra NVMe Disks
1:00:03 Justin – “I’m just mad this didn’t exist until today.”
1:01:20 Generally Available: Agentless multi-disk crash consistent backup for Azure VMs
1:01:56 Justin – “I’ll tell you – if you are running this on SQL Server or Oracle; things like asset compliance are very, very important and you need to test the crap out of this, because my experience has been that if you are not quiescing the data to the disk, it doesnt matter if you snapshotted all the partitions together – you are still going to have a bad time.”
Other Clouds 1:04:18 Introducing Gradient: DigitalOcean’s Unified AI Cloud | DigitalOcean
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
Welcome to episode 315 of The Cloud Pod, where the forecast is always cloudy! Your hosts, Justin and Matt, are here to bring you the latest in cloud and AI news, including news about AI from the White House, the newest hacker exploits, and news from CloudWatch, CrowdStrike, and GKE – plus so much more. Let’s get into it! Titles we almost went with this week:* SharePoint and Tell: Government Secrets at Risk * Zero-Day Hero: How Hackers Found SharePoint’s Achilles’ Heel * Amazon Q Gets an F in Security Class * Spark Joy: GitHub’s Marie Kondo Approach to App Development * No Code? No Problem! GitHub Lights a Spark Under App Creation * GKE Turns 10: Still Not Old Enough to Deploy Itself * A Decade of Containers: Pokémon GO Caught Them All * Kubernetes Engine Hits Double Digits, Still Can’t Count Past 9 Pods * Account Names: The Missing Link in AWS Cost Optimization * Flash Gordon Saves Your VMs from the Azure-verse * The Flash: Fastest VM Monitor in the Multiverse * Ctrl+AI+Delete: Rebooting America’s Artificial Intelligence Strategy * The AImerican Dream: White House Plots Path to Silicon Supremacy * CrowdStrike’s Year of Living Resiliently * Kernel Panic at the Disco: A Recovery Story * The Search is Over (But Your Copilot License Isn’t) * Ground Control to Major Tom: You’re Fired * GPU Booking.com: Reserve Your Neural Network’s Next Vacation * Calendar Man Strikes Again: This Time He’s Scheduling Your TPUs * AirBnB for AI: Short-Term Rentals for Your Machine Learning Models * Claude’s World Tour: Now Playing in Every Region * Going Global: Claude Gets Its Passport Stamped on Vertex AI * SQS Finally Learns to Share: No More Queue Hogging * The Noisy Neighbor Gets Shushed: Amazon’s Fair Play for Queues * CloudWatch Gets Its AI Degree in Observability * Teaching Old Logs New Tricks: CloudWatch Goes GenAI * The Agent Whisperer: CloudWatch’s New AI Monitoring Powers * NotebookLM Gets Its PowerPoint License * Slides, Camera, AI-ction: NotebookLM Goes Visual * The SSL-ippery Slope: Azure’s Managed Certs Go Public or Go Home * Breaking Bad Certificates: DigiCert’s New Rules Leave Some Apps High and Dry * Firewall Rules: Now with a Rough Draft Feature * Azure’s New Policy: Think Before You Deploy
General News 00:50 Hackers exploiting a SharePoint zero-day are seen targeting government agencies | TechCrunch
01:59 Justin – “If you’re still running SharePoint on-prem, my condolences.”
AI Is Going Great – or How ML Makes Its Money 05:25 The White House AI Action Plan: a new chapter in U.S. AI policy
07:24 Justin – “I use AI every day now, and I love it, and it’s great – and I also know how bad it is at certain tasks, so to think they’re using AI to fix the tax code or to write legislation freaks me out a little bit.”
09:53 Trump’s ‘anti-woke AI’ order could reshape how US tech companies train their models | TechCrunch
Copy editor Heather note: I’m currently getting a PhD in public history. I’m taking an entire semester class on bias and viewpoint in historical writing, and spoiler alert: there’s no such thing as truly neutral or objective truth, because at the end of the day, someone (or some LLM) will be deciding what information is “neutral” and what is “woke,” and that very decision is by definition a bias.
We’re definitely interested in our listeners’ thoughts on this one. Let us know on social media or on our Slack channel, and let’s discuss!
15:33 NASA’s AI Satellite Just Made a Decision Without Humans — in 90 Seconds
17:02 Matt – “It’s showing these real-life edge cases of, not just edge computing, but now, leveraging AI and ML models on the edge to solve real-world problems.”
Cloud Tools 21:29 GitHub Next | GitHub Spark
22:32 Justin – “It’s an interesting use case; the idea of creating a bunch of these small little building blocks and you can stitch them together into these tool chains. It’s a very interesting approach.”
AWS 23:11 Hacker Plants Computer ‘Wiping’ Commands in Amazon’s AI Coding Agent
24:46 Matt – “If you’re not doing proper peer review for pull requests – which I understand is tedious and painful – but if you’re not doing it, you’re always going ot be susceptible to these things. “
26:31 Cost Optimization Hub now supports account names in optimization opportunities – AWS
28:25 Amazon EC2 now supports skipping the operating system shutdown when Stopping or terminating instances – AWS
30:18 Justin – “I know there’s been many times where I, like, trying to do a service refresh, right where you just want to replace servers and you’re waiting patiently… so I guess it’s nice for that. And there are certain times, maybe when the operating system has actually crashed, where you just need it to die. I thought they had something like this before-ish, but I guess not.”
31:38 Building resilient multi-tenant systems with Amazon SQS fair queues | AWS Compute Blog
19:59 Ryan – “I’m glad to have it; I’m not going to complain about this feature, but it does feel like, apparently, there are new tricks that SQS can learn.”
34:37 Launching Amazon CloudWatch generative AI observability (Preview) | AWS Cloud Operations Blog
37:18 Matt – “It’s one of those things useful until you’re in the middle of an outage and everyone is complaining that something’s down, and then you’re like ooh, I can see exactly where the world is on fire and this is what caused it.”
GCP38:01 10 years of GKE ebook | Google Cloud Blog
41:29 Dynamic Workload Scheduler Calendar mode reserves GPUs and TPUs | Google Cloud Blog
43:41 Justin – “I’m disappointed there’s no calendar view. The screenshots they showed – I can see how I create it. I see the reservation period I’m asking for. And then at the end, there’s a list of all your reservations. Just a list. It’s not even a calendar. Come on, Google, get this together. But yeah, in general, this is a great feature.”
44:46 BigQuery meets Google ADK & MCP | Google Cloud Blog
45:49 Matt – “I mean, anything with BigQuery and making it easier to use feels like it makes my life easier.”
46:24 Global endpoint for Claude models generally available on Vertex AI | Google Cloud Blog
47:03 Matt – “This is a great feature, but you have to be very careful with any data sovereignty laws that you have.”
51:10 NotebookLM updates: Video Overviews, Studio upgrades
52:23 Justin – “Meaning that everyone who is rushing off to replace us with a podcast can now replace us with a video, dynamically generated PowerPoint slides, and then they put you right to sleep. Or you could just listen to us, you choose.”
Azure53:11 Project Flash update: Advancing Azure Virtual Machine availability monitoring | Microsoft Azure Blog
54:29 Matt – “I think that a lot of these things are very cool, but I also feel like this is a lot more for stateless systems, and I try very hard to not have stateless VMs – as much as I can – in my life.”
56:38 Announcing Microsoft 365 Copilot Search General Availability: A new era of search with Copilot | Microsoft Community Hub
58:51 Important Changes to App Service Managed Certificates: Is Your Certificate Affected? | Microsoft Community Hub
1:03:42 Draft and deploy – Azure Firewall policy changes [Preview] | Microsoft Community Hub
1:05:24 Justin – “It’s also weird that it’s limited to not include the classic rules or the firewall manager.”
Cloud Journey 1:06:52 Beyond IAM access keys: Modern authentication approaches for AWS | AWS Security Blog
01:15:52 Reflecting on Building Resilience by Design | CrowdStrike
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod, where you can join our newsletter, Slack team, send feedback, or ask questions at theCloudPod.net or tweet at us with the hashtag #theCloudPod
For this special edition of TCP Talks, Justin Brodley is joined by four distinguished guests from the FinOps Foundation following the recent FinOps X conference in San Diego. Rob Martin, Mike Fuller, Graham Murphy, and the TCP team dive deep into the evolution of FinOps from pure cloud cost management to the broader “Cloud Plus” world, the rapid adoption of Focus 1.2, and how AI is transforming both what we manage and how we manage it.
About Our GuestsRob Martin has been with the FinOps Foundation for four years, currently focusing on the AI working group, ITAM initiatives, and the rapidly growing public sector adoption. His experience spans training development and strategic initiatives that have helped shape the foundation’s direction during a period of explosive growth.
Mike Fuller is one of the founding members of the FinOps Foundation and co-author of the Cloud FinOps book. As a member of the Focus project steering committee, he’s been instrumental in developing the specification that’s standardizing cloud billing data across the industry.
Graham Murphy serves as Director of SaaS P&L for Technology One in Brisbane. With 8-9 years in FinOps and recently nominated as both a FinOps Ambassador and Focus Ambassador, Graham brings a practitioner’s perspective from the APAC region and insights on implementing Focus in a SaaS environment.
Conference Growth and EvolutionThe 2025 FinOps X conference in San Diego marked a significant milestone with approximately 2,000 attendees—a substantial increase from the previous year. Despite the larger venue, the conference maintained its intimate feel, allowing for meaningful connections and knowledge sharing.
2:49 Graham: “AI definitely grew a lot this year. A lot more talk about how you go about managing AI, how FinOps is going to drive better value out of your AI investments. And also just a lot of people trying to understand where to start.”
The conference format evolved with more senior leadership participation, including executives from PepsiCo, Ticketmaster, and Nubank sharing their FinOps journeys. The quality of presentations notably improved, with practitioners willing to share deeper insights into their mature FinOps programs.
The Cloud Plus RevolutionA dominant theme throughout the conference was the expansion beyond traditional cloud cost management into what the foundation calls “Cloud Plus”—encompassing SaaS, data center, licensing, and AI costs.
4:31 Mike: “We saw that sort of echoed quite well across many of the breakout sessions by practitioners exactly how they’re sort of incorporating other costs into the conversation of their practices.”
6:56 Rob: “Ticketmaster said something that I loved, which was that they were ‘happily hybrid’… we understand that we’ve got all these different modalities that we’re going to use to deliver value—SaaS models and data center models and cloud models.”
This shift represents a fundamental change in how organizations view FinOps, moving from a cloud-specific practice to a comprehensive IT financial management approach.
Welcome to episode 314 of The Cloud Pod, where your hosts, Matt and Ryan, are holding down the fort in Justin’s absence and bringing what’s left of our audience (those of you still here after the last time they were left in charge) the latest and greatest in cloud and tech news. We’ve got undersea cables, vector storage, and even some hobos – but not the kind on trains. Plus, AWS S3 gets its Vector Victor. Let’s get started! Titles we almost went with this week:* S3 Gets Direction: AWS Points to Vector Storage * Vector? I Hardly Know Her! S3’s New AI Storage Play * S3 Finds Its Magnitude and Direction * Claude Goes to Wall Street * Anthropic’s Bull Run Into Financial Services * AI Assistant Gets Its Series 7 License * Nova Scotia: AWS Brings Regional Flavor to AI Models * The Fine-Tuning of the Shrew: Teaching Nova Models New Tricks * Nova-caine: Numbing the Pain of Model Customization * AgentCore Blimey: AWS Gives AI Agents Their License to Scale * The Agent Infrastructure: Mission Deployable * From Zero to Agent Hero: AWS Tackles the Production Problem * SageMaker Gets Its Data Act Together * From Catalog to QuickSight: A Data Love Story * The Great Data Unification of 2024 * AWS Free Tier Gets a $200 Makeover * EKS-treme Makeover: Cluster Edition * #⃣100K Nodes Walk Into a Cluster… * S3 Gets Direction: Amazon Points to Vector Storage * Amazon S3: Now with 90% Less Vector Bills and 100% More Dimensions
Follow Up01:03 SoftBank and OpenAI’s $500 Billion AI Project Struggles to Get Off Ground
02:31 Matthew – “…everyone’s like, how hard can it be to build a data center? But it’s city zoning, power consumption, grid improveme
Welcome to episode 313 of The Cloud Pod, where your hosts, Matt, Ryan, and Justin, are here to bring you all the latest in Cloud and AI news. This week we’ve got an installation of Cloud Journey featuring Gartner and chaos AND an aftershow! We’ve got acquisition news, new tools, an undersea cable, and even a little chaos, all right now in the cloud. Let’s get into it!
Titles we almost went with this week:* From Vibe Check to Production Spec * Node More Mr. Nice Guy: AWS Locks Down Access Until You Ask Nicely * Grok’s New Feature: Ask Elon First * The AI That Phones Home to Dad * Musk-See TV: When Your Chatbot Needs Parental Guidance * Oracle’s Federal Discount: 75% Off for Six Months (Terms and Conditions Apply) * GameDay: Not Just for Sports Anymore * Bob the Builder Center: Can We Fix AWS? Yes We Can! * Bucket List: Google Cloud Storage Finally Lets You Pack Up and Move * The Great Bucket Migration: No Forwarding Address Required * Compose Yourself: Cloud Run Gets Docker-mented * Survey Says: Your Team Needs a Performance Check-Up * From Florida With Love: Google’s New Cable Has a License to Transmit * Sol Train: Google Lays Track Across the Atlantic * Finding the Right Gradient for Your AI Journey * Google Cracks the Code on AWS’s Cloud Castle * Breaking Cloud: Google’s Data Analytics Cook Up Market Share * From Chat to Churn: The Great GPT Subscription Exodus * AWS Finally Filters Out the Pricing Noise * The Price is Right: AWS Edition Gets New Search Features * Four Filters and a Pricing API Walk Into a Cloud * Fee-fi-fo-fum who has a flash reasoning model
Follow Up02:01 Cognition to buy AI startup Windsurf days after Google poached CEO
AI Is Going Great – Or How ML Makes Money 04:40
For this special edition of TCP Talks, Justin Brodley and Matthew Kohn are joined by Chris Opat, SVP of Cloud Operations at Backblaze, to discuss how the cloud storage innovator is reshaping the industry landscape. From their origins as a consumer backup company to becoming a major player in enterprise cloud storage, Chris shares insights on AI workloads, the true cost of egress fees, and why your data doesn’t have to live in a walled garden.
About BackblazeBackblaze started in 2007 with a simple mission: make storage so affordable it’s almost free. The company gained early notoriety for their DIY approach to storage infrastructure, with founders literally bending metal in apartments and conducting “gorilla storage purchasing” raids at Bay Area Best Buys and Fry’s Electronics to build their custom red storage pods. This scrappy, cost-conscious DNA remains central to the company’s identity today.
In September 2015, Backblaze made their enterprise pivot with the launch of B2 Cloud Storage, entering the market at one-quarter the cost of Amazon S3. By December of that launch year, they had already attracted over 30,000 users. Today, Backblaze (NASDAQ: BLZE) manages approximately 4.7 exabytes of data across 310,000+ drives, serving over 500,000 customers in 175 countries.
What sets Backblaze apart isn’t just their pricing—it’s their philosophy. While hyperscalers have built complex storage tiers with Byzantine billing structures, Backblaze offers one tier of hot storage with transparent, predictable pricing. Their recent push into AI workloads with B2 Overdrive demonstrates their ability to evolve with market demands while maintaining their core value proposition.
About Chris OpatChris Opat joined Backblaze as SVP of Cloud Operations in 2023, bringing over 25 years of experience in building teams and technology at startup and scale-up companies. Before Backblaze, he served as SVP of Platform Engineering and Operations at StackPath, specializing in edge technology and content delivery.
His background includes extensive work with private equity portfolio companies, where he honed his skills in rapid transformation and growth. Chris describes himself as someone who thrives in “David vs. Goliath” scenarios, making Backblaze—with its mission to challenge the hyperscaler incumbents—a perfect fit. His passion for building exceptional technical teams and pushing technological boundaries aligns perfectly with Backblaze’s innovative culture.
Interview HighlightsThe David vs. Goliath Mentality3:15 Chris: “Nothing makes me happier than to watch a customer choose us over the incumbent competitors and have an exceptionally good experience. It’s easy to work for the incumbents and kind of win all the time. It feels so much better when you do it as the upstart that people don’t see coming.”
Chris emphasized how Backblaze offers a fundamentally different partner experience compared to hyperscalers. While AWS, Azure, and Google Cloud may provide excellent services, they often lack the personal touch and flexibility that smaller customers need. At Backblaze, customers can directly influence product strategy and speak with decision-makers who shape the company’s direction.
Welcome to episode 312 of The Cloud Pod, where your hosts, Matt, Ryan, and Justin, are here to bring you all the latest in Cloud and AI news. We’ve got security news, updates from PostgreSQL, Azure firewall and BlobNFS, plus TWO Cloud Journey stories for you!
Thanks for joining us this week in the cloud!
Titles we almost went with this week:* Git Happens: Why Your Database Pipeline Keeps Breaking * PostgreSQL and Chill: Azure’s New Storage Options for Database Romance * NVMe, Myself, and PostgreSQL * Canvas and Effect: AWS Paints a New Picture for E-commerce * Oracle’s $30 Billion Stargate: The AI Infrastructure Wars Begin * Larry’s Last Laugh: Oracle Lands OpenAI’s Mega Deal * AI Will See You Now (Couch Not Included) * Purview and Present Danger: Microsoft’s AI Security SDK Goes Live * The Purview from Up Here: Microsoft’s Bird’s Eye View on AI Data Security * Building Bridges: Azure’s Two-Way Street to Active Directory * Domain Names: Not Just for Browsers Anymore * FUSE or Lose: Azure’s BlobNFS Gets a Speed Boost * When Larry Met Andy: An Exadata Love Story * Bing There, Done That: Azure’s New Research Assistant * The Search is Over: Azure AI Foundry Finds Its Research Groove * Memory Lane: Where AI Agents Go to Remember Things * Elephants Never Forget, and Now Neither Do Google’s Agents * Z3 or Not Z3: That is the Storage Question * Local SSD Hero: A New Hope for I/O Intensive Workloads * Azure’s Certificate of Insecurity * KeyVault’s Keys Left Under the Doormat * When Your Cloud Provider Accidentally CCs the Hackers
AI Is Going Great – Or How ML Makes Money 03:09 RYAN DOES A THING FOR SECURING AI WORKLOADS
05:32 Ryan – “I was impressed because there’s how we’re thinking about AI is still evolving, and how we’re protecting it’s gonna be changing rapidly, and having real-world examples really helped really flesh out how their AI services are, how they’re integrated into a security ecosystem. It was pretty impressive. And it’s something that’s near and dear. I’ve been working and trying to roll out Google agent spaces and different AI workloads and trying to get involved and make sure that we, just getting visibility into all the different ones. And that was, it was really helpful to sort of think about it in those contexts.”
10:13 OpenAI secures $30bn cloud deal with Oracle
Welcome to episode 311 of Two Old Men Yelling at Cloud – aka The Cloud Pod, featuring Matt and Ryan who absolutely, definitely did NOT record an aftershow.
This week, they’re talking about Cloudflare’s new Pay Per Crawler, a new open-source Terraform provider from mkdev, and lots of fabric news that Ryan doesn’t understand – plus so much more. Let’s get into it!
Titles we almost went with this week:(Show Editor note: There are more show titles than emojis. I give up.)
Follow Up00:47 Microsoft changes Windows in attempt to prevent next CrowdStrike-style catastrophe – Ars Technica
Welcome to episode 310 of The Cloud Pod – where the forecast is always cloudy! Matt, Ryan and Justin are here to bring you all the latest and greatest in cloud and AI news.
Literally.
All of it.
This week we have announcements from re:Inforce, Manual Testing, GuardDuty, Government AI (what could go wrong?) Gemini 2.5 and, in a flash from the past, MS-DOS Editor. All this and more, this week in the cloud!
Titles we almost went with this week:* ACM Finally Lets Its Certificates Leave the Nest * Breaking Free: AWS Certificates Get Their Export Papers * Certificate Manager Learns to Share Its Private Keys * Skynet’s Origin Story: We Bullied It Into Existence * Claude and Present Danger: When AI Fights Back * Breaking Up is Hard to GPU * EKS Marks the Spot for GuardDuty’s New Detection Powers * Kubernetes Security: GuardDuty Connects the Dots * Hub, Hub, Hooray for Unified Security * Security Hub 2: Electric Boogaloo * All Your Security Findings Are Belong to One Dashboard * GuardDuty’s EKS-cellent Adventure in Attack Detection * Shield Me From My Own Bad Decisions * AWS Plays Network Security Whack-a-Mole * Your VPC Called – It Wants Better Security Groups * Permission Impossible: Your Express App Will Self-Authorize in 5 Minutes * Breaking the Glass: AWS Backup Gets a Multi-Party System * Gemini 2.5: Now With More Flash and Less Cash * AI Goes to Washington * GPT-4: Government Property Taxpayer-funded * DDoS and Don’ts: A 45-Second Horror Story * Google’s AI Models Get a Flash-y Upgrade (Lite on the Wallet) * Flash Gordon Called – He Wants His Speed Back * From Flash to Flash-Lite: Google’s AI Diet Plan * Looker’s Pipeline Dreams Come True * MS-DOS Editor: The Reboot Nobody Asked For But Everyone Needed * Control-Alt-Delete Your Expectations: Microsoft Brings DOS to Linux * Microsoft’s Text Editor Time Machine Now Runs on Your Toaster * Copilot Gets Its Agent License * Visual Studio’s AI Agent: Now Taking Orders * The Bridge Over Troubled Prompts * Azure’s Managed Compute Gets More Coherent * Bring Your Own GPU Party: Cohere Models Join the Azure Bash * Function Telemetry Gets Open Sourced (Kind Of) * Azure Functions: Now Speaking Everyone’s Language (Except Java) * Bucket List: AWS Makes S3 Policy Monitoring a Breeze * The Policy Police: Keeping Your S3 Buckets in Check * CDK Gets Its Own Town Hall (Infrastructure Not Included) * Breaking: AWS Discovers Zoom, Plans to Use It Twice Per Quarter * AWS and 1Password: A Secret Love Affair * Keeping Secrets Has Never Been This Public * Nano Nano: AWS Brings Alien-Level Time Precision to EC2 * Time Flies When You’re Having Nanoseconds * WorkSpaces Core: Now With More Cores to Work With * Mount Compute-ier: AWS Builds AI Training Peak * Making it Rain(ier): AWS Showers Anthropic with 5x More Compute * Cache Me If You Can: Google’s Plugin Play * CSI: Cloud Services Investigation
General News 01:09 Defending the Internet: How Cloudflare blocked a monumental 7.3 Tbps DDoS attack
Welcome to episode 308 of The Cloud Pod – where the forecast is always cloudy! Justin and Matt are on hand and ready to bring you an action packed episode. Unfortunately, this one is also lullaby free. Apologies. This week we’re talking about Databricks and Lakebridge, Cedar Analysis, Amazon Q, Google’s little hiccup, and updates to SQL – plus so much more! Thanks for joining us.
Titles we almost went with this week:* KV Phone Home: When Your Key-Value Store Goes AWOL * When Your Coreless Service Finds Its Core Problem * Oracle’s Vanity Fair: Pretty URLs for Pretty Penny * From Warehouse to Lakehouse: Your Free Ticket to Cloud Town * 1⃣Databricks Uno: Because One is the Loneliest Number * Free as in Beer, Smart as in Data Science * Cedar Analysis: Because Your Authorization Policies Wood Never Lie * Cedar Analysis: Teaching Old Policies New Proofs * Amazon Q Finally Learns to Talk to Other Apps * Tomorrow: Visual Studio’s Predictive Edit Revolution * The Ghost of Edits Future: AI Haunts Your Code Before You Write It * IAM What IAM: Google’s Identity Crisis Breaks the Internet * Permission Denied: The Day Google Forgot Who Everyone Was * 403 Forbidden: When Google’s Bouncer Called in Sick * AWS Brings the Heat to Fusion Research * Larry’s Cloud Nine: Oracle Stock Soars on Forecast Raise * OCI You Later: Oracle Bets Big on Cloud Growth * Oracle’s Crystal Ball Shows 40% Cloud Growth Ahead * Meta Scales Up Its AI Ambitions with $14 Billion Investment * From FAIR to Scale: Meta’s $14 Billion AI Makeover * Congratulations Databricks one, you are now the new low code solution. * AWS burns power to figure out how power works
AI Is Going Great – Or How ML Makes Money 02:12 Zuckerberg makes Meta’s biggest bet on AI, $14 billion Scale AI deal
Welcome to episode 308 of The Cloud Pod – where the forecast is always cloudy! Justin, Matt and Ryan are in the house today to tell us all about the latest and greatest from FinOps and SnowFlake conferences, plus updates from Security Command Center, OpenAI, and even a new AWS Region. All this and more, today in the cloud!
Titles we almost went with this week:* I Left My Wallet at FinOps X, But Found Savings at Snowflake Summit * Snowflake City Lights, FinOps by the Sea * The Two Summits: A Tale of FinOps and Snowflakes * Crunchy on the Outside, Snowflake on the Inside * AWS Taipei: Because Sometimes You Need Your Data Closer Than Your Night Market * AWS Plants Its Flag in Taipei: The 37th Time’s the Charm * AWS Slashes GPU Prices Faster Than a CUDA Kernel * Two Writers Walk Into a Database… And Both Succeed * AWS Network Firewall: Now With Windows! * The VPN Connection That Keeps Its Secrets * Transform and Roll Out: Pub/Sub’s New Single Message Feature * SAP Happens: Google’s New M4 VMs Handle It Better * Total Recall: Google’s 6TB Memory Machines * The M4trix Has You (And Your In-Memory Databases) * DeepSeek and You Shall Find… on Google Cloud * Four Score and Seven Vulnerabilities Ago – mk * The Fantastic Four Security Features * MCP: Model Context Protocol or Master Control Program from Tron? * No SQL? No Problem! AI Takes the Wheel * Injection Rejection: How Azure Keeps Your Prompts Clean
General News 05:09 FinOps X 2025 Cloud Announcements: AI Agents and Increased FOCUS Support
Welcome to episode 307 of The Cloud Pod – where the forecast is always cloudy! Who else is at a conference? Justin is coming to us this week from sunny San Diego where he’s attending FinOps – so we have that news to look forward to for next week. Matt and Ryan are also on hand today to share the latest news from Kubernetes, Salesforce acquisitions, and the strange case of Azure making AWS more cost effective.
Titles we almost went with this week:* The Great Redis Escape: One Year Later, Valkey is Living Its Best Life * Cache Me If You Can: How Valkey Outran Redis’s License Policies * Tier Today, Gone Tomorrow: AWS’s New Storage Class That Moves Your Data So * You Don’t * Hey AI, Deploy My App: AWS Makes It Actually Work * AWS Finally Calculates What You’ll Actually Pay * The Price is Right: AWS Edition * From List Price to Real Price: AWS Gets Transparent * Red Hat and AWS Sitting in a Tree, R-H-E-L-I-N-G * Dockerfile? More Like Dockefile-It-For-Me with Amazon’s New MCP Server * Elementary, My Dear Watson: Amazon Q Becomes Sherlock Holmes for AWS * CUD You Believe It? Red Hat Gets the Discount Treatment * Committed Relationship Status: It’s Complicated (But 20% Cheaper) * RHEL Yeah! Google Drops Prices on Enterprise Linux * Disk Today, Gone Tomorrow: Azure’s Vanishing OS Storage * ATL1: Where GPUs Meet Sweet Tea and Southern Hospitality * AWS Launches Operation Cloud Sovereignty * The Great Firewall of Europe: AWS Edition * Amazon Builds a GDPR Fortress in Germany
General News 01:46 What Salesforce’s $8B acquisition of Informatica means for enterprise data and AI | VentureBeat
Welcome to episode 306 of The Cloud Pod – where the forecast is always cloudy!
This week, we have a bunch of announcements concerning the newest offering from Anthropic – Claude Sonnet 4 and Opus 4, plus container security, Azure MySQL Maintenance, Vertex AI, and Mistral AI. Plus, we’ve got a Cloud Journey installment AND an aftershow – so get comfy and get ready for a trip to the clouds!
Titles we almost went with this week:* ECS Failures Now Have 4x the Excuses * Nailing Down Your Container Security, One Patch at a Time * HashiCorp’s New Recipe: Terraform, AI, and a Pinch of MCP * Teaching an Old DNS New IPv6 Tricks * Dash-ing through the Klusters, in an AWS Console * Google’s Generative AI Playground Gets a Glow-Up * Vertex AI Studio: Now with 200% More Darkness! Like our souls * Claude Opus 4 Strikes a Chord on Google Cloud * Sovereign-teed to Please: Google Cloud’s Royal Treatment * Google’s Cloud Kingdom Expands its Borders * Shall I Compare Thee to a Summer’s AI? Anthropic Drops Sonne(t) 4 Knowledge on Vertex * Mistral AI Chats Up a Storm on Google Cloud * Google Cloud’s Vertex AI Gets a Dose of Mistral Magic * .NET Aspire on Azure: The App Service Strikes Back * Default Outbound Access Retires, Decides Florida Isn’t for Everyone
AI Is Going Great – or How ML Makes Money 01:52 Introducing Claude 4
Welcome to episode 305 of The Cloud Pod – where the forecast is always cloudy! How did you do on your Microsoft Build Predictions? As badly as us? Plus we’ve got news on AWS service changes, a lifecycle catch up page for all those services that bought the farm, tons of Gemini news (seriously, like a lot) and even some AI for .NET.
Welcome to the cloud pod- and thanks for joining us!
Titles we almost went with this week:* Google’s Jules: An AI Gem for Cloud Devs * Autonomous Agents of Code: Jules’ Excellent Adventure in the Google Cloud * Gemini 2.5 Shoots for the Stars with Cosmic-Sized AI Upgrades * Resistance is Futile: OpenAI Assimilates Your Codebase * AWS Transformers: Rise of the Agentic AI * Teaching an old .NET dog new Linux tricks * CodeBuild Puts Docker Builds in Hyperdrive * Inspector Gadget’s New Trick: Mapping Container Vulnerabilities * Yo Dawg, I Heard You Like Scanning Containers… * Google Cranks AI to 11 with New Ultra Plan * I, For One, Welcome Our New AI Ultra Overlords * The Inference Engine That Could: llm-d Chugs Ahead with Kubernetes-Native * Scaling * Scaling Inference to Infinity and Beyond with Google Cloud’s llm-d * Google Cloud and Spring AI: A Match Made in Java-n * The Fast and the Serverless: Cloud Run Drifts into AI Studio Territory * SQL Server 2025: A Vector Victor, Not a Scalar Failure * AI will solve my life problems of having money in my pocket * I used to scan all the containers but now I will just scan yours
AI Is Going Great – or How ML Makes Money 01:50 Jules: Google’s autonomous AI coding agent
02:56 Ryan – “More and more, as new tools get released, it’s just going to change the way anything gets written… it’s getting more and more capable.”
05:45 Introducing Flow: Google’s AI filmmaking tool designed for Veo
Welcome to episode 304 of The Cloud Pod – where the forecast is always cloudy! Justin, Ryan and Matt are in the house tonight to bring you all the latest and greatest in Cloud and AI news, including AWS new Chilean region, the ongoing tug of war between Open AI and Microsoft, and even some K8 updates – plus an aftershow. Let’s get started!
Titles we almost went with this week:* Open AI gets a COO delivered * Things get Chile with new regions * Observability and AI, I Q-uestion the logic * Cloud Pod tries to Microsoft Build predictions * K8 resizes pods on the fly * Microsoft strongly reinforces the AI Foundry * The Cloud Pod renegotiates the hosts’ contracts … we now have to pay the Cloud Pod to be on it
Follow Up 01:53 DOJ’s extreme proposals will hurt consumers and America’s tech leadership
AI – Or How ML Makes Money 09:20 OpenAI Expands Leadership with Fidji Simo
OpenAI Hires Instacart CEO Simo For Major Leadership Role
Welcome to episode 303 of The Cloud Pod – where the forecast is always cloudy! Justin, Ryan and exhausted dad Matt are here (and mostly awake) ready to bring the latest in cloud news! This week we’ve got more news from Nova, updates to Claude, earnings news, and a mini funeral for Skype – plus a new helping of Cloud Journey!
Titles we almost went with this week:* Claude researches so Ryan can nap * The best AI for Nova Corps, Amazon Nova Premiere JB * If you can’t beat them, change the licensing terms and make them fork, and then * reverse course… and profit * Q has invaded your IDE!! * Skype bites the dust
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our Slack channel for more info. Follow Up 02:50 Sycophancy in GPT-4o: What happened and what we’re doing about it
04:43 Deep Research on Microsoft Hotpatching:
07:06 Justin – “I’m not going to give them any credit on this one. I appreciate that they created hotpatching, but I don’t like what you want to charge me for it.”
General NewsIt’s Earnings time – cue the sound effects!
08:03 Alphabet’s Q1 earnings shattered analyst expectations, sending the stock soaring. GoogleR
Welcome to episode 302 of The Cloud Pod – where the forecast is always cloudy! This week Justin and Ryan are on hand to bring you all the latest in Cloud (and AI news.) We’ve got hotpatching, Project Greenland, and a rollback of GPT-4.o, which sort of makes us sad – and our egos are definitely less stroked. Plus Saas, containers, and outposts – all of this and more. Thanks for joining us in the cloud!
Titles we almost went with this week:* The Cloud Pod was never accused of being sycophantic * 2nd Gen outposts!?! I didn’t even know anyone was using Gen 1 * AWS Outposts 2nd Gen… not with AI (GASP) * If you’re doing SaaS wrong, Google & AWS have your back this week with new Features * Patching, so hot right now * Larger container sizes for Azure…. You don’t say * AWS Green reporting detects hotspots… surprisingly close to Maryland….. * Visual pipeline for Opensearch… I want to like this… but I just can’t
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our Slack channel for more info. General News 01:37 Sharing new DORA research for gen AI in software development
045:06 Ryan – “Those are really good approaches, but really difficult to implement in practice. You know, in my day job, watching the company struggle to get a handle on AI from all the different angles you need to, from data protection, legal liability
Welcome to episode 300 of The Cloud Pod – where the forecast is always cloudy! According to the title, this week’s show is taking place inside of a Dr. Suess book, but don’t despair – we’re not going to make you eat green eggs and ham, but we WILL give you the low down on all things Vegas. Well, Google’s Next event which recently took place in Vegas anyway. Did you make any Next predictions?
Titles we almost went with this week:* This is the CLOUDPOD Episode 300 * Tonight we dine in the Cloud * The Next Chapter * Now in Preview: Episode 300
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. GCPPre-Next
02:35 Google shakes up Gemini leadership, Google Labs head taking the reins
04:35 Filestore instance replication now available
05:16 Multi-Cluster Orchestrator for cross-region Kubernetes workloads
06:26 GKE at 65,000 nodes: Evaluating performance for simulated mixed AI workloads
09:15 How we built th
Welcome to episode 299 of The Cloud Pod – where the forecast is always cloudy! Google Next is quickly approaching, and you know what that means – it’s time for predictions! Who will win this year’s Crystal Ball award? Only time and the main stage will tell. Join Matthew, Justin, and Ryan as they break down their thoughts on what groundbreaking (and less groundbreaking) announcements are in store for us.
Titles we almost went with this week:* OpenAI and Anthropic join forces? * Its 2025, and AWS is still trying to make Jumbo packets happen * Beanstalk and Ruby’s Updates!! They’re Alive!!! * Google Colossus or how to expect a colossal cloud outage someday. * The Cloud Pod gives an ode to Peter
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. AI Is Going Great – Or How ML Makes All Its Money 02:27 OpenAI adopts rival Anthropic’s standard for connecting AI models to data
MCP: What It Is and Why It Matters – by Addy Osmani
Meet MCP: Your LLM’s Super-Helpful Assistant!
Welcome to episode 298 of The Cloud Pod – where the forecast is always cloudy! Justin, Matthew and Ryan are in the house (and still very much missing Jonathan) to bring you a jam packed show this week, with news from Beijing to Virginia! Did you know Virginia was in the US? Amazon definitely wants you to know that.
We’ve got updates from BigQuery Git Support and their new collab tools, plus all the AI updates you were hoping you’d miss. Tune in now!
Titles we almost went with this week:* The Cloud Pod now Recorded from Planet Earth * Wait Java still exists? * When will java just be coffee and not software * Cloudflare Makes AI beat Mazes * Replacing native mobile things with mobile web apps won’t fix your problems AWS * Turn your security over to the bots * The Cloud Pod is lost in the AI labyrinth * AI security agents to secure the AI… wait recursion * Durable + Stateless.. I don’t know if you know what those words means * Click ops expands to our phones yay! * The Cloud Pod is now a data analyst * Gitops come to bigquery
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. AI Is Going Great – Or How ML Makes All Its Money 00:46 Manus, a New AI Agent From China is Going Viral—And Raising Big Questions
Welcome to episode 297 of The Cloud Pod – where the forecast is always cloudy! Justin, Ryan, and Matthew have beaten the black lung and are in the studio – ready to bring you all the latest and greatest in cloud and AI news! We’ve got Wiz buyouts (that security, it’s so hot right now!) Gemma 3, Glue 5 (but not 3 or 4) and Gemini Robots – plus looking forward to AI Skills Fest and Google Next, all this week on The Cloud Pod.
Titles we almost went with this week:* Google! Yer a WIZ—Ard * Google Announces Network Security Integration… and that must include WIZ * Gemini Robots…. What could go wrong * AI Data Studios … So Hot Right Now * I want 32 Billion dollars * Azure Follow AWS in bad life choices – mk * Wait Glue is more than v2 * What happened to Glue 3 and 4? * 5th Try and AWS Glue still sucks
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. Follow Up 01:05 Microsoft quantum computing claim still lacks evidence: physicists are dubious
02:09 Justin – “No one’s really buying Microsoft actually created a new topological qubit. There’s some doubt… basically they said that what they showed, which is a microscopic H-shaped aluminum wire on top of indium arsenide – a superconductor at ultra-cold temperatures, and the devices are designed to harness majoranas, previously undiscovered quasi-particles that are essential for topological qubits to work, and the goals for majoranas to appear at the four tips of the H-shaped wire emerging from reflective-behavior electrons, and these majorans in theory could be used to perform quantum computing that are resistant to information loss, but no proof, no evidence, and they think Microsoft’s full of it.”
General News 04:12 Google + Wiz: Strengthening Multicloud Security
Welcome to episode 296 of The Cloud Pod – where the forecast is always cloudy! Today is a twofer – Justin and Ryan are in the house to make sure you don’t miss out on any of today’s important cloud and AI news. From AI Protection, to Google Next, to Amazon Q Developer, we’ve got it all, this week on TCP!
Titles we almost went with this week:* Amazon Step Functions, walks step by step into my IDE * Deepseek seeks the truth of “is it serverless or servers”? * Well Architected Reviews by AI… What will my solutions architects do now? * The cloud pod hosts steps over the Azure EU Data Boundary * BYOIP to ALBs… only years too late for everyone.
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. General News 01:02 HashiCorp and Red Hat, better together
01:48 Justin – “That’s a lot of promise for Ansible there, that I’m not sure it completely lives up to…”
07:09
Welcome to episode 295 of The Cloud Pod – where the forecast is always cloudy!
Welp, it’s sayonara to Skype – and time to finally make the move to Teams. Hashi has officially moved to IBM, GPT 4.5 is out and people have…thoughts. Plus, Google has the career coach you need to make all your dreams come true.*
*Assuming those dreams are reasonable in a volatile economy.
Titles we almost went with this week:* Someday we’ll find it, the rainbow connection, the lovers, the cloud dreamers, and Me * Dreamer, you know you are a dreamer * You may say I’m a cloud dreamer, but I’m not the only one * May the skype shut down * Q can tell me that my python skills are bad * How many free code assistance does Ryan need to be a good developer: ALL OF THEM * Oops honey I spent 1M dollars on oracle * Latest Cloud Pod Reviews: “It’s a Lemon”
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. General News 01:04 On May 5, Microsoft’s Skype will shut down for good
03:37 Matthew – “I think there’s a lot of people and, you know, at least people I know in other countries to still use Skype, like pretty heavily for like cross country communications, things along those lines. So I think a lot of that is that there probably is still a good amount of people using it. And this is just, Hey, they’re trying to make it nicely. So how, you know, nice and clean cut over for people versus, you know, the Apple method of it just doesn’t work anymore. Good luck.”
04:41 HashiCorp officially joins the IBM family
Welcome to episode 294 of The Cloud Pod – where the forecast is always cloudy!Ilya Boy, do we have a news packed week for you! Sutskever raised $30B without a product, Mira Murati launched her own AI lab, and Claude 3.7 now thinks before it speaks. Meanwhile, Microsoft casually invented new matter for quantum computing, Google built an AI scientist, and AWS killed Chime (RIP). At this rate, AI is either going to save the world or speedrun becoming Ultron. Let’s all find out together – today on The Cloud Pod!
Titles we almost went with this week:* Ding – Chime is Dead * Does your container really need 192 cores * Quantum is the new AI * AI is now IN the robots
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. AI Is Going Great – Or How ML Makes All It’s Money 02:41 Ilya Sutskever’s Startup in Talks to Raise Financing at $30 Billion Valuation
03:22 Ryan – “It’s so nuts to me that they can raise that much without – really just an idea. Doesn’t have to have any proof or POC…”
07:07 Murati Joins Crowded AI Startup Sector
08:02 Claude 3.7 Sonnet and Claude Code
Welcome to episode 293 of The Cloud Pod – where the forecast is always cloudy! This week we’ve got a lot of new and, surprise, a new installment of Cloud Journey AND and aftershow – so make sure to stay tuned for that! We’ve got undersea cables, Go 1.24, Wasm, Anthropic and more.
Titles we almost went with this week:* Lets Go! * Under Sea cables make AI go BRRRRRR * The CloudPod says it will grow the listeners by 10x by 2027
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info.
General News01:30 Go 1.24 is released!
04:46 Unlocking global AI potential with next-generation subsea infrastructure
-->
Welcome to episode 292 of The Cloud Pod – where the forecast is always cloudy! This week Justin and Jonathan are a dynamic duo, bringing you all the latest in news – and sound effects – because it’s earnings time! Plus we’ve got new from VS Code, Azure Data Studio, CodeBuild and more.
Titles we almost went with this week:* The Cloud Pod Renames Cloud Earnings to ‘The Gulf of Capex’ * Sorry Elon, OpenAI Doesn’t Want Your Pocket Change * MacOS gets into the Fastlane for Oil Changes
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. General NewsIt’s earnings time!
01:29 Alphabet is planning to spend big on AI again this year, sending shares down
02:09 Jonathan – “I’m guessing ad revenue is gonna be down again, Q1, Q2 because I think a lot of ad revenue is driven by the election season. So that’s not looking too good for them.”
03:13 Microsoft GAAP EPS of $3.23 beats by $0.13, revenue of $69.6B beats by $790M
04:02 Justin- “Also international expansion still, I think a big area too, particularly for Azure and Google and even Amazon. Like they’re all announcing more and more regions, more expansion of data centers, lots of laws that are going to pass for data sovereignty that they have to deal with. there’s, there’s spend everywhere.”
04:23
Welcome to episode 291 of The Cloud Pod – where the forecast is always cloudy! Justin, Jonathan, and Ryan have battled through the various plagues and have come together to bring you all the latest in cloud news, including Kro, DeepSeek, and CoPilot.
Titles we almost went with this week:* In Shocking News China Steals US IP * The Cloud Pod is Now Supported in Gov Cloud * Microsoft Goes Open Source No SQL… and Hell Hasn’t Frozen Over * Zombie Buckets Receive How Much Traffic?!? * AWS, GCP and Azure eat KRO * Github Copilot for Free, so You Can Win at Coding Interviews * Customized Best Practices… I don’t think you know what best practices are * TheCloudPod Leverages Deep Understanding to Make a Nuanced Decision on adopting Copilot
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. Follow Up01:23 Is DeepSeek really sending data to China? Let’s decode
02:21 Jonathan – “They’re collecting some weird data. I get collecting conversational data, because that is the business they’re in, but they’re also doing some weird stuff, like they fingerprint users by looking at the patterns of the way that they type. Not just what they type, but how they type, like the timing between hitting different letters – things like that.”
8:06 OpenAI Believes DeepSeek Was Developed Using OpenAI Models
Welcome to episode 290 of The Cloud Pod – where the forecast is always cloudy! It’s a full house this week – and a good thing too, since there’s a lot of news! Justin, Jonathan, Ryan, and Matthew are all in the house to bring you news on DeepSeek, OpenVox, CloudWatch, and more.
Titles we almost went with this week:* The cloud pod wonders if azure is still hung over from new years * Stratoshark sends the Cloud pod to the stratosphere * Cutting-Edge Chinese “Reasoning” Model Rivals OpenAI… and it’s FREE?! * Wireshark turns 27, Cloud Pod Hosts feel old * Operator: DeepSeek is here to kill OpenAI * Time for a deepthink on buying all that Nvidia stock * AWS Token Service finally goes cloud native * The CloudPod wonders if OpenAI’s Operator can order its own $200 subscription
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. AI IS Going Great – Or How ML Makes All Its Money01:29 Introducing the GenAI Platform: Simplifying AI Development for All
02:23 Jonathan – “Inference cost is really the big driver there. So once you once you build something that’s that’s done, but it’s nice to see somebody focusing on delivering it as a service rather than, you know, a $50 an hour compute for training models. This is right where they need to be.”
04:21 OpenAI: Introducing Operator
Welcome to episode 289 of The Cloud Pod – where the forecast is always cloudy! Justin, Ryan, and Matt are here this week to bring you a riveting podcast on EU regulations! Are you asleep yet? No? Ok great. We promise it will be a good show – despite the title.
Titles we almost went with this week:* Stargate: We’re not saying its Aliens, but its $500 Billion * AWS: Now with extra sessions * EC2 Flex: Bigger, Badder and Probably still expensive * SNS FIFO: So fast, it’ll give you whiplash * Azure: Now with added Legalese (Thanks, EU) * OpenAI’s Stargate: From Chatbots to Interdimensional Travel (maybe) * GCP’s Biochar Initiative: Turning Waste into… Well, Less Waste (hopefully) * AWS Console Multiple Sessions: So you can prove you dropped those databases from multiple accounts * Amazon still adds new features to SNS and the cloud pod is impressed * AWS tries to kill chrome profiles
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. AI IS Going Great – Or How ML Makes All Its Money01:47 Announcing The Stargate Project
Welcome to episode 288 of The Cloud Pod – where the forecast is always cloudy! Justin, Ryan, and Jonathan are your hosts as we make our way through this week’s cloud and AI news, including back to Vertex AI, Project Digits, Notebook LM, and some major improvements to AI image generation.
Titles we almost went with this week:* Digits… I’ll show you 5 digits… * The only digit the AWS local zone in New York shows me is the middle one * Keep one eye open near Mercedes with Agentic AI
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. General News01:59 Nvidia announces $3,000 personal AI supercomputer called Digits
09:25 Jonathan – ““The Blackwell is pretty recent, it’s the one that had a lot of problems with yield. And I kind of suspect that they’re sort
Welcome to episode 287 of The Cloud Pod – where the forecast is always cloudy! 2025 is already shaping up to be another year of “unprecedented” times, but have no fear, Justin, Ryan, Jonathan, and Matthew are all in the house and (mostly) recovered from the holidays – and just in time to bring you all the latest new year news in the cloud world.
Titles we almost went with this week:* Everyone is investing in AI… but you could invest in the cloud pod * Oracle Exadata X11M: Burn a big pile of money * The cloud pod has better security than Microsoft – mk * The new and improved Cloud Pod 4.0 * Cloud Nine… Figures (or $80 billion) * $60 Billion and Counting: The Ai Arms Race * Oracle Exadata X11M: For When You Absolutely, Positively, Have to Burn Money * The Cloud Pod rebrands to The Cloud AI so we can get 11B in funding
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. General News2:42 Oracle’s rampant cloud growth wasn’t enough for Wall Street, and its stock slides after-hours
04:09 Justin – “…now in January, their stock is, up a dollar 11 today, but, looking at the month, they haven’t really recovered from earnings quite yet. So we’ll see how they do as they continue through the year. But, yeah, I mean, tech in general is down. I mean, everything’s down. Everyone’s waiting for the election to, election, the, the soaring in and the new administration to come in as we’re past that.”
04:34 HashiCorp 2024 year in review
Welcome to episode 286 of The Cloud Pod – where the forecast is always cloudy! Welcome to the final show of 2024! We thank you for joining us on our cloud journey over the past year. During this last show of the year, we look back on all the tech that changed our jobs and lives, and make predictions for an AI filled 2025. Join Justin, Jonathan, Ryan, and Matthew as they look forward to even more discussions about undersea cables. Happy New Year!
Titles we almost went with this week:* We thought 2024 would never end * I can sum up 2024 – AI AI AI AI and uhh AI * AI has taken over the Cloud Pod – we are not really here * 2024 the year we hoped AI would replace us… close but not yet
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. General News00:31 2024 Predictions Look BackMatt
02:07 Matthew – “How is it simpler and easier? I think that there are more ways to run it. The general public has an easier way to access it. And they are simpler as Justin said that they are becoming easier and more efficient and better to use for the average user. So I know that I talked to many people that I work with now and just in general and people that are not in tech, which I feel like a year ago.”
Jonathan
02:07 Jonathan – “Well, there is a religion called the First Church of Artificial Intelligence, but it’s been around for longer than this year. I think it’s like five, six years old at this point. So that’s kind of cheating.
Ryan
02:07 Ryan – “I mean, agentic AI is something that’s been rolled out in a lot of companies. I know in my day job, it’s been rolled out. I hope to see this get even stronger and more obvious just because I think that, you know, the days of searching through thousands of documents or the one, you know, unmaintained team page that someone built three years ago when they were new are over. And so I’d like to see this continue.
Justin
13:26 Justin – “I feel partially vindicated that I was sort of right, just I thought we didn’t be in the trough a little faster, but maybe it’s coming still. I don’t know. they’re innovating pretty quickly. I don’t think they’ll get there, but definitely environmental is going to become a big, big conversation around AI.”
17:02 Favorite Story of 2024Did you r
Welcome to episode 285 of the Explain it to me Like I’m 5 Podcast, formerly known as The Cloud Pod – where the forecast is always cloudy! We’ve got a lot of news this week, including the last of our coverage from re:Invent, ChatGTP Pro, FPGA, and even some major staffing turnovers.
Titles we almost went with this week:* Throw $200 dollars in a fire with ChatGPT Pro * Jeff Barr is wrapped up by Agentic AI * The Tribble with Trilliums * The Wind in the Quantum Willows * Rise of the dead instances FPGA and PowerPC * Jeff Barr is replaced by Nova * The Cloud Pod: Return of the dead instances types * After 6 year Jeff Barr hands over the reigns to the CloudPod * For our 6th birthday Jeff barr Retires * For our 6th birthday jeff barr delegates announcements to the cloud pod * 6 years of meaningless PR drivel * 6 years of cloud news and we still don’t know what Quantum computing is
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. General NewsHAPPY 6th BIRTHDAY!
2:00 HashiCorp at re:Invent 2024: Security Lifecycle Management with AWS
03:10 Matthew – “This qualifies under the category of things that I feel like we talked about so long ago, I just already assumed was GA. I’m surprised that it wasn’t.”
03:34 HashiCorp at re:Invent 2024: Infrastructure Lifecycle Management with AWS
Welcome to episode 284 of The Cloud Pod – where the forecast is always cloudy! Everybody is in the house this week, and it’s a good thing because since we’ve last recorded re:Invent happened, and we have a LOT to talk about. So let’s jump right in!
Titles we almost went with this week:* Amazon Steals from Azure…. We Are Doomed * The Cloud Pod Can Now Throw Away a lot of Code * The Cloud Pod Controls the Future * The Cloud Pod Observes More Insights * We Are Simplicity * X None of the Above * Stop Trying to Make Bedrock & Q Happen * My Head Went SuperNova over all the Q Announcements * These are Not the Gadgets Bond Needed, Q!
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. AWS 08:12 It’s the re:Invent recap!
Did you make any announcement predictions? Let’s see how our hosts’ predictions stacked up to reality.
Matt – 1
Ryan (AI) – 1
Jonathan – 0
Justin – 2
Honorable Mentions:
Jonathan:
Deeper integration between serverless and container services
New region
Enhanced Observability with AI driven debugging tool
Justin:
Multicloud management – in a bigger way (Anthos competitor)
Agentic AI toolings
New ARM graviton chip
How many will AI or Artificial Intelligence be said: 45
Justin – 35
Jonathan – 72
Pre:Invent
There were over 180 announcements, and yes – we have them all listed here for you. You’re welcome.
17:12 Time-based snapshot copy for Amazon EBS
Announcing future-dated Amazon EC2 On-Demand Capacity Reservations
Welcome to episode 283 of The Cloud Pod, where the forecast is always cloudy! Break out your crystal balls and shuffle those tarot decks, because it’s Re:Invent prediction time! Sorry we missed you all last week – the plague has been strong with us. But Justin and Jonathan are BACK, and we’ve got a ton of news, so buckle in and let’s get started!
Titles we almost went with this week:* Not My Snowcones! * Lambda at 10: Still Better Than Windows Containers
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. General News 01:27 The voice of America Online’s “You’ve got mail” has died at age 74
AWS 03:04 It’s Time for RE:Invent Predictions!
Matt
Ryan (AI)
Jonathan
Justin
Honorable Mentions
Jonathan:
Deeper integration between serverless and container services
New Region
Enhanced Observability with AI driven debugging tool
Justin:
Multi Cloud management – in a bigger way (Anthos competitor)
Agentic AI toolings
New AR
Welcome to episode 282 of The Cloud Pod, where the forecast is always cloudy! This week Justin, Ryan, and Matthew are happy to be joining you in the clouds versus watching election information. This week we’re talking nuclear energy, AI Search tools, and all things Pre:Invent. Welcome, and thanks for joining us!
Titles we almost went with this week:* The Cloud Pod Would Much Rather Record This Show Than Watch the Election Results * IBM Comes for Your AI Dollars * AWS Goes Limitless with the PostgreSQL Possibilities * It is Upon Us the Pre-Invent Period and AWS Does Not Disappoint * Amazon Loses Its Nuclear Superhero
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. Follow Up01:13 Energy regulators scrutinizing data center use reject Amazon bid
3:21 Justin – “It’s sort of sad because I kind like the idea of nuclear power to solve a bunch of problems, but it has to be done in the right way for sure.”
General News 04:12 IT’S EARNINGS TIME!
04:22 IBM revenue misses, but execs say AI will drive future growth
Welcome to episode 281 of The Cloud Pod, where the forecast is always cloudy! Justin and Ryan are your hosts as we search the clouds for all the latest news and info. This week we’re talking about ECS turning 10 (yes, we were there when it was announced, and yes, we’re old,) some more drama from the CrowdStrike fiasco, lots of updates to GitHub, plus more. Join us!
Titles we almost went with this week:* Github Universe full of ECS containers * Github Universe lives up to the Universal expectations
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. Follow Up01:09 Dr. Matt Woods ended up at PWC as chief innovation officer
General News 01:44 TSA silent on CrowdStrike’s claim Delta skipped required security update
3:48 Ryan – “It’s a tool that needs to evolve very quickly to emerging threats. And while the change that was pushed through shouldn’t have gone through that particular workflow, and that’s a mistake, I do think that that should
Welcome to episode 280 of The Cloud Pod, where the forecast is always cloudy! This week Justin, Jonathan, Ryan, and Matthew are your hosts as we travel through the latest in cloud news. This week we’re talking more about nuclear power, some additional major employee shakeups, Claude releases, plus saying RIP to CloudWatch Evidently and hello to Azure Cobalt VMs.
Titles we almost went with this week:* The cloud providers are colluding on Nuclear Power * I fear our AWS AI nightmare might get worse without Dr. Matt Wood. * I’m a glow with excitement about nuclear cloud power * Plainly no one else knew what “CloudWatch Evidently” did either * We sing a Claude Sonnet about Nuclear Power * Evidently, The Cloud Pod was always right * Amazon goes nuclear while their AI VP goes AWOL
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info.AI Is Going Great – Or How ML Makes All It’s Money 00:53 Introducing computer use, a new Claude 3.5 Sonnet, and Claude 3.5 Haiku
3:06 Jonathan – “If you can take pictures of the screen, then it can identify where buttons and things are without having to know the name of the o
Welcome to episode 279 of The Cloud Pod, where the forecast is always cloudy! This week Justin, Jonathan and Matthew are your guide through the Cloud. We’re talking about everything from BigQuery to Google Nuclear power plans, and everything in between! Welcome to episode 279!
Titles we almost went with this week:* AWS SKYNET (Q) now controls the supply chain * AWS Supply Chain: Where skynet meets your shopping list * Digital Ocean follows Azure with the Premium everything * EKS mounts S3 * GCP now a nuclear * Big query don’t hit that iceberg * Big Query Yells: “ICEBERG AHEAD” * The Cloud Pod: Now with 50% more meltdown protection * The Cloud Pod radiates excitement over Google’s nuclear deal
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. Follow Up00:46 OpenAI’s Newest Possible Threat: Ex-CTO Murati
2:00 Jonathan – “I kind wonder what will these other startups bring that’s different than what OpenAI are doing or Anthropic or anybody else. mean, they’re all going to be taking the same training data sets because that’s what’s available. It’s not like they’re going to invent some data from somewhere else and have an edge. I mean, I guess they could do different things like be mindful about licensing.”
General News4:41 Introducing New 48vCPU and 60vCPU Optimized Premium Droplets on DigitalOcean
6:02 Justin – “I’ve been watching the CloudPod hosting bil
Welcome to episode 278 of The Cloud Pod, where the forecast is always cloudy! When Justin’s away, the guys will… maybe get a show recorded? This week, we’re talking OpenAI, another service scheduled for the grave over at AWS, saying goodbye to pesky IPv4 fees, Azure FXv2 VMs, Valkey 8.0 and so much more! Thanks for joining us, here in the cloud!
Titles we almost went with this week:* Another One Bites the Dust * Peak AI reached: OpenAI Now Puts Print Statements in Code to Help You Debug
A big thanks to this week’s sponsor: ArcheraThere are a lot of cloud cost management tools out there. But only Archera provides cloud commitment insurance. It sounds fancy but it’s really simple. Archera gives you the cost savings of a 1 or 3 year AWS Savings Plan with a commitment as short as 30 days. If you don’t use all the cloud resources you’ve committed to, they will literally put money back in your bank account to cover the difference. Other cost management tools may say they offer “commitment insurance”, but remember to ask: will you actually give me my money back? Archera will. Click this link to check them out
AI Is Going Great – Or How ML Makes All It’s Money00:59 Introducing vision to the fine-tuning API.
03:53 Jonathan – “I mean, I think it’s useful for things like quality assurance in manufacturing, for example. You know, could, you could tune it on what your nuts and bolts are supposed to look like and what a good bolt looks like and what a bad bolt looks like coming out of the factory. You just stream the video directly to, to an AI, AI like th
Welcome to episode 277 of The Cloud Pod, where the forecast is always cloudy! Justin, Ryan, and Matthew are your hosts this week for a news packed show. This week we dive into the latest in cloud computing with announcements from Google’s new AI search tools, Meta’s open-sourced AI models, and Microsoft Copilot’s expanded capabilities. We’ve also got Oracle releases, and some non-liquid Java on the agenda (but also the liquid kind, too) and Class E IP addresses. Plus, be sure to stay tuned for the aftershow!
Titles we almost went with this week:Which cloud provider does not have llama 3.2
Vmware says we will happily help you support your old Microsoft OS’s for $$$$
Class E is the best kind of IP Space
Microsoft says trust AI, and so does Skynet
3.2 Llama’s walked into an AI bar…
Google gets cranky about MS Licensing, join the club
Write Your Prompts, Optimize them with Vertex Prompts Analyzer, rinse repeat into a
vortex of optimization
Oracle releases Java 23, Cloud Pod Uses Amazon Corretto 23 instead
Oracle releases Java 23, Cloud Pod still says run! MK
A big thanks to this week’s sponsor: ArcheraThere are a lot of cloud cost management tools out there. But only Archera provides cloud commitment insurance. It sounds fancy but it’s really simple. Archera gives you the cost savings of a 1 or 3 year AWS Savings Plan with a commitment as short as 30 days. If you don’t use all the cloud resources you’ve committed to, they will literally put money back in your bank account to cover the difference. Other cost management tools may say they offer “commitment insurance”, but remember to ask: will you actually give me my money back? Archera will. Click this link to check them outhttps://shortclick.link/uthdi1
AI Is Going Great – Or How ML Makes All It’s Money01:06 OpenAI CTO Mira Murati, 2 other execs announce they’re leaving
02:26 Ryan
Welcome to episode 276 of The Cloud Pod, where the forecast is always cloudy! This week, our hosts Justin, Matthew, and Jonathan do a speedrun of OpenWorld news, talk about energy needs and the totally not controversial decision to reopen 3 Mile Island, a “managed” exodus from cloud, and Kubernetes news. As well as Amazon’s RTO we are calling “Elastic Commute”. All this and more, right now on The Cloud Pod.
Titles we almost went with this week:* The Cloud Pod Hosts don’t own enough pants for five days a week * IBM thinks it can contain the cost of K8s * Microsoft loves nuclear energy * The Cloudpod tries to give Oracle some love and still does not care * The cloud pod goes nuclear on k8s costs * Can IBM contain the costs of Kubernetes and Nuclear Power? * Google takes on take over while microsoft takes on nuclear * AWS Launches ‘Managed Exodus’: Streamline Your Talent Drain * Introducing Amazon WorkForce Alienation: Scale Your Employee Discontent to the Cloud * Amazon SageMaker Studio Lab: Now with Real-Time Resignation Prediction
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. General News01:08 IBM acquires Kubernetes cost optimization startup Kubecost
02:26 Jsutin- “…so KubeCost lives inside of Kubernetes, and basically has the ability to see how much CPU, how much memory they’re using, then calculate basically the price of the EC2 broken down into the different pods and services.”
AI Is Going Great – Or How ML Makes All It’s Money05:03
Welcome to episode 275 of The Cloud Pod, where the forecast is always cloudy! Justin, Matthew and Ryan are awake and ready to bring you all the latest and greatest in cloud news, including SQream, a new partnership between OCI and AWS (yes, really) Azure Linux, and a lot of updates over at AWS. Get comfy and we’ll see you all in the cloud!
Titles we almost went with this week:* I SQream, You SQream, The CloudPod SQreams for AI Ice Cream * AWS East gets Stability, but only for AI. * AWS has some Lofty Goals * Claude Learns BigQuery * Azure now Securely Checks the Prompts from the cloud pod * Azure find out about Linux
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. AWS00:28 Stability AI’s best image generating models now in Amazon Bedrock
02:46 Justin – “I do notice more and more that, you get it, you get the typical product shot on Amazon, but then like they’ll insert the product into different backgrounds and scenes. Like, it’s a, it’s a lamp and all of a sudden it’s on a thing and they’re like, Hmm, that doesn’t look like a real photo though. It looks like AI. So you do notice it more and more.”
04:13 AWS Network Load Balancer now supports configurable TCP idle timeout AWS Gateway Load Balancer now supports configurable TCP idle timeout
04:53 Ryan – “Yeah, we’ve all worked at that company with that one ancient app that, you know, couldn’t handle retries.
05:44 AWS Fault Injection Service introduces additional safety control
06:22 Ryan – “ …in my head I immediately went to like, something bad happened that caused this feature to exist. Like, I feel bad for whoever that was. Because you know it wasn’t good.”
07:14 Use Apache Spark on Amazon EMR Serverless directly from Amazon Sagemaker Studio
07:40 Ryan – “Yeah, is it the query that’s terrible or the underlying data? The world may never know. Or both. It’s both.”
07:57 Bedrock Agents on Sonnet 3.5
08:32 Justin – “It’s just an AI bot you put onto your Slack team that, you know, answers questions based on data you’ve fed it basically. Yeah. Agents is really just a chat interface to an AI of some kind that you’ve fed data to.”
08:58 Amazon WorkSpaces Pools now allows you to bring your Windows 10 or 11 licenses
09:28 Ryan – “I doubt they’re talking about a single user. I think it’s like if you’re an IT department, you have to manage both..”
10:45 Amazon ECS now supports AWS Graviton-based Spot compute with AWS
Fargate
11:13 Ryan – “All this means is that they finally got their inventory up on Graviton hardware in the data centers where they can start allowing it to work.”
12:33 AWS GenAI Lofts
14:36 Justin – “I think it’s nice to be able to go someplace and get, you know, A) talk to people who are trying to do the same thing you’re trying to do. And number two, if they don’t know, then you can ask the expert who’s there and you can, then he can get the answer for you. Because they’re the experts and they have access to the product managers and different things.
15:31 Amazon MSK enhances cross-cluster replication with support for identical topic names
15:56 Ryan – “I’m sure people have just been working around this with application config, based on where the workload is hosted.”
17:22 Amazon SageMaker HyperPod introduces Amazon EKS support
18:00 Ryan – “Historically these, types of jobs haven’t been really designed with resilience, right? It’s like, it could have a failure and then you have to restart a job or a series of jobs. going to take hours to complete. So it is kind of nice to see this…but it is kind of funny.”
GCP18:41 Google named a leader in the Forrester Wave: AI/ML Platforms, Q3 2024
20:20 Justin – “Apparently Google is the best positioned hyperscaler for AI. Take that Azure.”
20:55 Matthew – “Okay, so C3AI, I haven’t actually done any research, but their stock symbol is just AI. I think they win… just hands down they win. Like game over, everyone else should just not be on the leaderboard.”
22:00 BigQuery and Anthropic’s Claude: A powerful combination for data-driven insights
20:27 Justin – “If Jonathan were here – and not sleeping / napping – he would tell you that cloud’s pretty darn good. And so, this is actually pretty nice to get an alternative that’s pretty decent to Gemini, to give you some additional BigQuery options for your summarization and advanced logging analytics. Apparently.”
23:50 Cut through the noise with new log scopes for Cloud Observability
24:35 Ryan – “ …that second one is the one I’m most interested in just because it’s, you know, for all kinds of reasons, we’ve separated workloads out and put them into different projects and for blast radius and security concerns and all those things, but it becomes much more challenging to sort of correlate a transaction through many, many different services spread out through multiple projects. And so there’s sort of two ways you tackle that. One is just re-consolidate all the logs together, and that can get expensive and generate this condition where you’re sorting through a whole bunch of noise. Or it’s like you just look it up everywhere and you manually construct it back together, which just doesn’t work and no one does. That’s what we used to do when all the logs were on server hard disks. So this is really neat to be able to tag them all together, really, and then search on them from that tag, which I think is pretty neat.”
25:59 Introducing backup vaults for cyber resilience and simplified Compute
Engine backups
26:26 Ryan – “Yeah, I mean, the backup policy is specifically when VMs are created is definitely something that, you know, I would like to see more features in that direction.”
Azure28:31 Azure CLI docker container base Linux image is now Azure Linux
30:05 Justin – “…it’s a supply chain problem. It’s – how do you tell the government that you’re sure that nothing in your, you know, in your Linux operating system is compromised by a third party nation state? The answer is, well, we own all of the source and we build our own version of Linux from that source and we review it all. And that’s how you solve this problem.”
33:45 General availability of Prompt Shields in Azure AI Content Safety and Azure
OpenAI Service
34:15 GA release of Protected Material Detection in Azure AI Content Safety and
Azure OpenAI Service
34:33 Ryan – “I mean, it’s not really for its accuracy. It’s about the mitigation of risk when you get sued. Like, you can say, well, I tried, I turned all the checkboxes… I do think these kinds of features… will be in every product eventually.”
37:02 M-Series announcements – GA of Mv3 High Memory and details on Mv3
Very High Memory virtual machines
Oracle39:00 Breaking boundaries in ML development: SQream on OCI
40:46 Ryan – “I also think that every one of their claims is complete nonsense. I, cause it’s Oracle and it’s like, there’s no way.”
42:11 Oracle and Amazon Web Services Announce Strategic Partnership
44:47 Matthew- “Half of these features already existed between just RDS Oracle and AWS I feel like, and the other half just use are a good way to kill all your EDP pricing – EDP that you have to finish by the end of the year.”
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloudPod
Welcome to episode 274 of The Cloud Pod, where the forecast is always cloudy! Justin, Ryan and Matthew are your hosts this week as we explore the world of SnapShots, Maia, Open Source, and VMware – just to name a few of the topics. And stay tuned for an installment of our continuing Cloud Journey Series to explore ways to decrease tech debt, all this week on The Cloud Pod.
Titles we almost went with this week:* The Cloud Pod in Parallel Cluster * The Cloud Pod cringes at managing 1000 aws accounts * The Cloud Pod welcomes Imagen 3 with less Wokeness * The Cloud Pod wants to be instantly snapshotted * The Cloud pod hates tech debt
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. General News00:32 Elasticsearch is Open Source, Again
03:03 Ryan – “ I have a hard time thinking that this has nothing to do with performance and you know, there was quite the reputation hit when they changed the license before and Since you can do open search now, which is truly open search open source. I imagine there’s a lot of people that are sort of adopting that instead.”
AI Is Going Great – Or How ML Makes All It’s Money 06:28 Nvidia H100 now available on DigitalOcean Kubernetes (EA)
06:51 Ryan – “I wonder how many people are actually because of the capacity constraints are having to utilize multiple clouds for this. Like it’s kind of crazy if you think about, you know, people using capacity across DigitalOcean, GCP, Azure, and AWS trying to get model training done, but it’s possible.”
AWS08:06 How AWS powered Prime Day 2024 for record-breaking sales
13:47 Matthew – “ I would love to be at a company where I’m running something at this scale. I feel like, you know, they’re like, cool, come have us do it. But the amount of companies that run stuff at this insane scale is going to be in the single digits.”
16:48 Announcing AWS Parallel Computing Service to run HPC workloads at virtually any scale AWS Parallel Computing Service is Now Generally Available, Designed to Accelerate Scientific Discovery
18:31 Exclusive: Inside the mind of AWS CEO Matt Garman and how he aims to shape the future of cloud and AI
21:15 Justin – “Well, I feel like we’re reaching the point when AI has already been shoved in at the low hanging fruit for things. We were like, cool. You know, EBS is AI. Cool. That doesn’t really help me. And I don’t really care about it. I feel like now you’re starting to hit those higher level services. You’ve done the building blocks and now hopefully they can start to piece things together to be useful AI versus just everyone raising their hands and say, I have AI and things, you know, and I think that’s what’s going to be interesting a to those higher level services the same way they’ve done with S3 & EC2?”
23:55 Amazon EC2 status checks now support the reachability health of attached EBS volumes
24:37 Justin – “And this one’s like, I get it. It’s nice that this is there. It seems straightforward that you’d want to know that your EBS volume is attached. But really the reason why people typically don’t like an EBS volume is because of its performance, not because of its attachment status. So they do their own set of custom checks typically on the EBS volume to make sure it’s getting the expected IO throughput, which I do not believe is part of this particular status check.”
29:16 Organizational Units in AWS Control Tower can now contain up to 1,000 accounts
30:07 Justin – “Every time I see things that support this number of accounts, I’m like, okay, it’s great. When everybody wants to say the base costs for there is a base cost for an AWS account by the time you implement. That trail and guard duty and config and all those, and you have to enable some of those services here. And I’m like, okay, the base costs are just writing. Those are going to be a lot, but then again, if you have a thousand accounts, you probably don’t care about a single, a couple hundred dollars.”
GCP31:33 Get started with the new generally available features of Gemini in BigQuery
32:44 Ryan – “Yeah, I mean, that’s the cool thing about BigQuery and Gemini is that they’ve just built it right into the console.”
34:07 New in Gemini: Custom Gems & improved image generation with Imagen 3
35:00 Matthew – “Yeah, it’s kind of cool. I was wondering if I could get all of those pre -made gems at the same time. Like I’m going to do a brainstorming session with a career coach and the coding partner and the brainstormer. then like the career guides, like you should really think about getting a new job. I like to use SQL server on Kubernetes and it’s like, yeah, I think you should update your resume. That’s what that should see.”
39:11 Instant snapshots: protect Compute Engine workloads from errors and corruption
40:22 Justin – “Ryan, I’d like you to get this set up on all of our operating system drives for CrowdStrike as soon as possible.”
44:29 Google Cloud launches Memorystore for Valkey, a 100% open-source key-value service
45:12 Justin – “I haven’t heard much about Valkey since they forked. I assume people are adopting it, but I didn’t hear much about Open Tofu for quite a while. Then everyone started talking about Open Tofu, so I assume it’s one of those things. As the cloud providers get support for it, I do think Valkey was already supported on AWS ElastiCache, and I think Microsoft was supporting it earlier as well. So I think Google is kind of late to the party on supporting Valkey, but we’ll see.”
45:46 A radically simpler way to plan and manage block storage performance
46:18 Justin – “I mean, it’s just basically taking a pool of IOPS and you’re allocating it to different disks dynamically through ML or AI, similar to what you’re doing for the capacity of your disk. It makes it nice, I appreciate it. I don’t know that I use it, but I like that it’s there.”
Azure47:07 Inside Maia 100: Revolutionizing AI Workloads with Microsoft’s Custom AI Accelerator
49:05 Ryan – “I’m just, not sure whether or not like I’m just too far gone into the managed services part where I don’t really want this level of detail anymore. Like just, do the thing I’m paying to do the thing and all the type of processor with this type of chip and you know, these types of things are irrelevant, but also like maybe, maybe in that space, if you’re deep in it, you need that performance. It’s really hard to say.”
50:29 Introducing Simplified Subscription Limits for SQL Database and Synapse Analytics Dedicated SQL Pool
51:23 Matthew – “They went from one metric, which was their original metric of a weird combination of memory and CPU and maximum storage allocation to the newer one. Which is supposed to simplify it.”
54:21 Check out what’s new in Azure VMware Solution
55:04 Matthew – “Can I translate this? How to burn a;; your capital and piss off your CFO in 15 minutes or less.”
Cloud Journey Series55:52 4 ways to pay down tech debt by ruthlessly removing stuff from your architecture
58:39 Justin- “I was thinking about this is a great pitch for Google because I don’t think I could do this on AWS because all the data storage is separate for every product because of their isolation model. Where on GCP I can do these things because they have one data layer.”
1:00:08 Ryan – “I’m sort of like… the trick of this is the replacing it, right? This is still identification of tech debt. I actually don’t know if that’s really the problem to be solved. I think the problem is like, how do you prioritize and change these? And I thought that, you know, the article, it sort of references offhand, but you know, the reality is you have to be constantly making changes.”
1:03:23 Matthew – “Yeah; most of the time you don’t need that extra performance that you’re squeezing out of it, but adding complexity – and honestly, most likely the cause of many underlying outages whether you want to believe it or not.”
1:04:54 Ryan – “ It’s a common fallacy that you want to develop everything as a microservice so that you can manage them and update them separately. But really, if you only have a single customer of that API or your microservice, it shouldn’t be separate. And so it’s really about understanding the contracts and ins and outs and who needs to use the service.”
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloudPod
Welcome to episode 273 of The Cloud Pod, where the forecast is always cloudy! Hold onto your butts – this week your hosts Justin, Ryan, Matthew and (eventually) Jonathan are bringing you two weeks worth of cloud and AI news. We’ve got Karpenter, Kubernetes, and Secrets, plus news from OpenAI, MFA changes that are going to be super fun for Matthew, and Azure Phi. Get comfy – it’s going to be a doozy!
Titles we almost went with this week:* The Cloud Pod Teaches Azure-normalized Camel Casing * The Cloud Pod Travels to Malaysia * Azure Detaches Itself From its Own Scale Sets * The Cloud Pod Conditionally Writes Show Notes * You got MFA! * The Cloud Pod Delays Deleting Itself * The Cloud Pod is Now the Cloud Pod Podcast!
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. General News01:37 Terraform AzureRM provider 4.0 adds provider-defined functions
03:50 Justin – “Okay, so it doesn’t have anything really to do with Terraform. It has to do with Azure and enabling and disabling resource types that they can monkey with, basically, with configuration code.”
06:12 Rackspace Goes All In – Again – On OpenStack
07:35 Ryan – “I think there should be something like OpenStack for, you know, being able to run your own hardware and, know, still get a lot of the benefits of compute in a cloud ecosystem, hardware that you control and ecosystems that maybe you don’t want being managed by a third party vendor. So happy to see OpenStack continue to gain support even though I haven’t touched it in years.”
AWS08:39 Announcing Karpenter 1.0
09:28 Ryan – “See, this is how I know Kubernetes is too complex. I feel like every other week there’s some sort of announcement of some other project that controls like the allocation of resources or the scaling of resources or the something something of pods. And I’m just like, okay, cool.”
11:26 Add macOS to your continuous integration pipelines with AWS CodeBuild
09:28 Justin- “You’re not spin up, so the key thing is that you don’t wanna spin up additional Mac OS’s every time you wanna do this because then you’re paying for every one of those for 24 hours. So because you have a reserved fleet, you’re using the same Mac OS that’s in the fleet and you don’t have to worry about auto scaling it up and down.”
15:00 Announcing general availability of Amazon EC2 G6e instances
15:56 Ryan – “My initial reaction was like, got to figure out like a modern workload where I care about these types of specs on these specific servers. And then I remember I provide cloud platforms to the rest of the business and I go, no, this is going to be expensive. How am I going to justify all this… pass.”
16:56 Now open — AWS Asia Pacific (Malaysia) Region
15:56 Justin – “The forecast models all die at 2038. We didn’t really understand why. We just assumed that’s when the jobs run out. No, no, that’s a different problem.”
19:52 CloudFormation simplifies resource discovery and template review in the IaC Generator
20:20 Ryan- “This is how I do all of my deployment architectures. Now I just deploy everything and then I generate the picture, screenshot that and then document. Ta -da!”
21:19 Amazon DocumentDB (with MongoDB Compatibility) Global Clusters introduces Failover
22:25 Ryan – “I mean, anytime you can do this type of like a DR and failover at the data layer, I’m, I’m in love with, because it’s so difficult to orchestrate on your own. And so that’s a huge value from using a cloud provider. Like I would like to just click some boxes and make, and it will just work. Awesome.“
22:46 Amazon S3 now supports conditional writes
23:28 Justin – “…either you would have to do an API call to verify if the file was there before, which you’re not paying for, and then you can do your write, or you get to do this. And if you have all your apps trying to do this all at the same time, the milliseconds of latency can kill you on this type of thing. So having the ability is very nice.”
25:10 AWS Lambda now supports function-level configuration for recursive loop detection
25:44 Justin – “I remember when they first added this several years ago, we were like, this is amazing. Thank God they finally did this. But then I forgot about the support part that you had to reach out to support if you didn’t want your attention to your cursive pattern. And I, if I was going to go down that path, I’d just say, don’t – I’ve done something wrong. But, apparently if I think I’m actually right – which is a problem, I think I’m right all the time – it can now cost myself some money. So do be careful with this feature. It’s a gun that can shoot you in the foot very quickly.”
GCP27:58 Looker opens semantic layer via new SQL Interface and connectors for Tableau & others
29:48 Ryan- “…these types of connectors and stuff offer great amount of flexibility because these BI tools are so complex that people sort of develop their favorite and don’t want to use another one.”
31:10 C4 VMs now GA: Unmatched performance and control for your enterprise workloads
32:42 Matthew – “…the specs on this is outstanding. Like the 20 gigabytes of networking, like they really put a lot into this and it really feels like it’s going to be a good workhorse for people in the future.”
33:19 Containers & Kubernetes Your infrastructure resources, your way, with new GKE custom compute class API
34:51 Ryan – “Kubernetes is really complicated, huh?”
38:50 Matthew – “I do want to point out that they had to say in this article – because this article has absolutely nothing to do with AI in any way shape or form, but it includes AI workloads because for some reason it wouldn’t have been known. and I actually checked the article because I saw it in the note or show notes, but I literally had to go into the article to be like why is that commentary necessary? Did somebody miss their AI quota for the day so they just threw it in?”
40:21 Introducing delayed destruction for Secret Manager, a new way to protect
your secrets
41:13 Ryan – “I mean, this is a good feature. AWS has it by default from the, from the rollout where there’s, takes seven days for a secret to actually go away and you can restore it up until then. The monitoring is the bigger one for me, like being able to configure a notification without trying to like, you know, scout through all the API logs for the delete secret API method. So this is nice. I like that.”
44:09 Run your AI inference applications on Cloud Run with NVIDIA GPUs
44:33 Ryan – “No, I mean, this is a great example of how to use serverless in the right way, right? These scales down, you’re doing lightweight transactions on those inference jobs. And then you’re not running dedicated hardware or maintaining an environment, which, you know, basically means that you keep warm.”
45:08 Cloud Functions is now Cloud Run functions — event-driven programming in one unified serverless platform
46:56 Justin – “Yeah, I started to wonder why you would just use Cloud Run. Unless you’re getting some automation with Cloud Run functions that I’m not familiar enough with. But the fact that you get all the Cloud Run benefits with Cloud Functions, and if I get some advantage using functions, I guess it’s a win.”
47:57 What’s New in Assured Workloads: Enable updates and new control packages
48:36 Justin – “Which means AI is coming to the government.”
50:22 Try the new Managed Service for Apache Kafka and take cluster management off your todo list
51:13 Justin – “There was no mention about region support, which is really what I need out of this service, versus in region support. But if they can make this multi -region over time, I’m sort of in on this one.”
52:57 Announcing Terraform Google Provider 6.0.0: More Flexibility, Better Control
Azure55:19 Elevate your AI deployments more efficiently with new deployment and cost management solutions for Azure OpenAI Service including self-service Provisioned
56:22 Matthew – “These are, while they sound crazy, extremely useful because as soon as like, was it 4.0 came out, we had to go like. Boy them because otherwise we were worried we were locked out of the region. So even though we weren’t using them yet, our accounting was like, make sure you deploy them as soon as you see the announcement that may or may not be coming out in a very, in the next couple of days and, and do the units that you’re going to need for production, even though you, didn’t know what we needed yet.”
58:32 Announcing General Availability of Attach & Detach of Virtual Machines on Virtual Machine Scale Sets
59:10 Matthew – “And this is only for flexible, so if you’re not using flexible, which has other issues already with it, like and you are you have to be in a fault counts, you actually have more than capacity than you need. So there’s very specific ways that you can leverage this.”
1:04:29 Announcing mandatory multi-factor authentication for Azure sign-in
1:06:18 Matthew – “Or you just run your worker nodes inside and use the, whatever they call it, service principal to, which is like an IAM role to handle the authentication for you, which definitely works great with Atlantis.”
1:06:47 Boost your AI with Azure’s new Phi model, streamlined RAG, and custom generative AI models
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloudPod
Welcome to episode 272 of The Cloud Pod! This week, Matthew and Justin are bringing you all the latest in cloud and AI news, including new updates to the ongoing Crowdstrike drama, JSON schemas, AWS vaults, and IPv6 addresses – even some hacking opportunities! All this and more, this week in the cloud.
Titles we almost went with this week:* The cloud pod is now logically air-gapped * The Cloud Pod has continuous snark * The Cloud Pod points the finger at delta * AI now with JSON SCHEMAS!!!
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. Follow Up00:35 Crowdstrike RCA
02:31 Justin – “…the one thing I would say is this would be a perfect RCA if it included a timeline, but it lacks, it lacks a timeline view.”
12:06 Justin – “…their mitigations don’t have any dates on them of when they’re going to be done or implemented, which, in addition to a timeline, it would be nice to see in this process.”
15:46 Microsoft joins CrowdStrike in pushing IT outage recovery responsibility
back to Delta
16:43 Justin – “The struggle with, you know, offering to send someone on site to help you is, you know, you, you can’t vet them that quickly. And so you also have an obligation to your shareholders. You have obligations to your security controls and your SOC and ISO and all the things that you’re doing, you know, to, to allow some strangers into your network and then give them access required to fix this issue, which in some cases required you to provide local encryption keys, and local administrator passwords, like you’re, you’re basically saying, you know, here’s the keys. Cause we’re in a, you know, everything’s in crisis and we’re going to throw security out the window to allow these people to come in and touch my environment to get us back up and running. I could see, I can see the argument both ways.”
AI Is Going Great – Or How ML Makes All It’s Money 20:16 Anthropic Offers $15,000 to Break New AI Safety System
21:14 Announcing the Generative AI World Cup: A Global Hackathon by
Databricks
22:13 Matthew – “I think hackathons are fun. Good ways to learn things, good ways to get people interested. The only thing I question here is why are students not eligible?”
AWS24:22 AWS announces private IPv6 addressing for VPCs and subnets
25:02 Matthew – “I love that they’re actually making IPv6 be simple to deploy, you know, the same way as the 10.8 and, you know, what is it, 192 & 168 and the other subnets that are private. I just don’t have a strong desire to deal with IPv6 nuances still in life. So I don’t foresee myself deploying this, but if you are a bleeding edge company, and or you want lots and lots of instances and or nick cards in the same subnet, you know, the same thing, go for it. It’s a great feature they’re adding.”
26:21 Amazon EFS now supports up to 30 GiB/s (a 50% increase) of read
throughput
26:48 Matthew – “Better speed, always better. Faster speed, always better.”
27:19 Amazon CloudWatch Internet Monitor enhances dashboard and traffic
suggestions
28:53 Announcing the general availability of AWS Backup logically air-gapped
vault
30:07 Matthew – “I love that it’s actually managed for you end to end. I’m surprised that day one, I I looked, it wasn’t available in GovCloud because so many government restrictions require these things.”
GCP30:43 Query your data inCloud SQL Studio is GA for MySQL, PostgreSQL, and
SQL Server | Google Cloud Blog seconds with Cloud SQL Studio
32:17 Justin – “Just doing = a quick little Google here, and people say you can, you can do it with things like Athena with like the JDBC drivers. That’s just not as clean in my opinion.”
34:58 Real-time in no time: Introducing BigQuery continuous queries for
up-to-the-minute insights
37:37 Justin – “ I mean, it wasn’t like that into working with this type of thing as ksql, which is a Kafka SQL. And so basically as eventing kind of goes through that matches your query results through KSQL, you can pull it out immediately basically into tables and into other real time insights. So it makes sense that this would be something you’d want to build natively into BigQuery, especially considering the use cases that you have on that big data. So yeah, I’m glad to see this.”
Azure38:06 Announcing a new OpenAI feature for developers on Azure
38:56 Justin – “I appreciate chat GPT being able to give me a structurally correct JSON schema that I’ve defined with my data set. That allows me to move it quickly to other systems that might need that data for input from JSON.”
New Azure Data Box capabilities to accelerate your offline data migration
41:58 Matthew – “I do like here the data encryption of multiple blob access tiers in a single order. It’s been a long time since I used the Snowball. And I’ve always wanted to play with the Snow Cone. I just never did. But at one point, you can only dump it into EBS. And then from there, they added S3. And it was always like one account, like one location. And then especially when you’re moving data, especially if this is capable of doing up to petabytes.”
43:22 Unlocking the future of innovation: the Microsoft AI Tour
45:24 Public Preview: Customer Managed Planned Failover for Azure Storage
46:03 Matthew – “I am excited for this, partially because I have to do a yearly. DR test. And this was something that last year we did, we had to have it copy all the data and then convert it back and then flip it back. it just hopefully gets rid of some of the monotony of the DR process.”
OCI48:46 Oracle Strengthens Saudi Arabia’s AI Economy with Opening of Second
Public Cloud Region
49:40 Matthew – “They’ve shipped another truck to Saudi Arabia.”
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloudPod
Welcome to episode 271 of the Cloud Pod Podcast – where the forecast is always cloudy! Justin, Jonathan and Matthew are your hosts today as we discuss the latest news in cloud and AI, including earnings reports, Google’s legal trouble, and SQL updates. We even take a minute to give some side eye to AWS’s deprioritization techniques. Spoiler alert: 0 out of 5 stars for keeping customers informed.
Titles we almost went with this week:* No Google, you can’t own Park Place, Boardwalk, the railroads and the utilities * Amazons Titan Image Generator is no titan of photography * BigTable graduates to SQL support * TikTok/Instagram, Azure Reliability and Temu bring down the big three clouds’ earnings * Span your Mind to Graphs & Vectors * DOJ rules The Cloud Pod should be your default news source * The CloudPod – now with SQL support * AWS Deprioritizes 7 Services, Cloud Pod Hosts Prioritize Therapy
A big thanks to this week’s sponsor:We’re sponsorless! Want to get your brand, company, or service in front of a very enthusiastic group of cloud news seekers? You’ve come to the right place! Send us an email or hit us up on our slack channel for more info. Follow Up00:45 Amazon decision to deprioritize 7 cloud services caught customers and
even some salespeople by surprise
01:33 Justin – “Yeah, they kind of took a leap out of the Hitchhiker’s Guide to the Galaxy book and put the planning commission in the filing cabinet downstairs with the broken light.”
General News It’s Earnings Time!
07:35 Alphabet meets earnings expectations but misses on YouTube ad revenue
08:23 Matthew – “Amazing how much YouTube was down, you know, and how it negatively affected everything altogether. I’m also always fascinated by how much revenue they make from YouTube advertising.”
08:58 Microsoft shares dip as cloud miss overshadows better-than-expected revenue and earnings
09:28 Jonathan – “That’s interesting. 29 % for Azure, but I expected 31, but 29 % for Google was just fine.”
09:44 Amazon shares slide on revenue miss, disappointing guidance for third quarter
12:31 Jonathan – “I was actually talking to somebody yesterday about buying from kind of like the Chinese resellers, even on Amazon. And their customer service is actually very good because they value your reviews so much that if you’ve got the slightest problem in your email and say, I’ve got an issue with this thing, I bought it three months ago, it’s not covered by Amazon’s return anymore, it stopped working. They’re like, here, have a new one, what’s your address? We’ll get it shipped out right away. No hassles whatsoever.”
AI Is Going Great – Or How ML Makes All Its Money 13:11 Securely Deploy Custom Apps and Models with Snowpark Container Services, Now Generally Available
13:41 Justin – “But it’s interesting, because at some point I could see how Snowflake would potentially take something like this and saying, well, we’re now going to arbitrage against the cloud providers to get better pricing. Because if I now run in the containers and I’m an abstraction layer, I now have pressure to push on the cloud providers. Or do they build their own data centers at some point in the future and then start undercutting other vendors?”
AWS15:22 Diving into OCI Image and Distribution 1.1 Support in Amazon ECR
13:41 Justin – “I mean, being able to push these other artifacts next to it is really key, especially as everyone needs to build these S -bombs out for all their software as a service that they have. And the attestations are always all useful. So keeping everything kind of in sync with the artifact and being able to say, in this version, we had this. And keeping everything in one place, I think, will streamline a lot of pain that people have to deal with right now.”
17:15 Amazon Titan Image Generator v2 is now available in Amazon Bedrock
Titan Image Generator V2
Gemini
We are working to improve Gemini’s ability to generate images of people. We expect this feature to return soon and will notify you in release updates when it does. STILL BROKEN.
ChatGPT
Even after getting Gemini to improve the prompt, no luck drawing.
ChatGPT attempt #2
Three podcast hosts sit at a table in a cozy recording studio, surrounded by professional microphones and scattered notes. Their expressions clearly convey frustration as they discuss their 1000th AI story, longing for the days when they focused on new instance types and network routing. The first host is a bald male with a goatee, the second is a balding male with a goatee, and the third is a male with a normal haircut and no facial hair. The studio is filled with various tech gadgets and equipment, creating an atmosphere that reflects their weariness with AI topics.
Titan Image generator new prompt
22:01 Justin – “There’s a couple of things that were interesting. Number one is Titan is definitely creating images. It’s trying to recreate photos, which was sort of missed on me when I first wrote through the article and I didn’t realize as I was playing with it. And – it’s got a lot to be desired in general, I think. But yeah, this is a little bit of fun for you guys to check out.”
Looking for the “Real or AI” subreddit? We’ve got you covered – find it here.
GCP25:11 Now GA: Compute Engine C3 bare-metal and X4 instances
25:52 Jonathan- “Awesome. Generally available. That means you can now ask your account rep if you can have someone that can say no in any region you choose.”
27:18 Unlock the potential of your data: Build reliable and intelligent applications with Spanner editions
28:38 Jonathan- “As far as native cloud services go, Spanner is so much easier to use through Terraform. they sort of built their own standard for the GraphQri language they used, an open standard.which is nice GQL, because Neo4j doesn’t support GQL yet, and I think they’re still working on it. But that’s really nice, because now I can pivot to something else, if it sucks.”
30:35 Cloud SQL Enterprise Plus delivers enhanced performance, availability and disaster recovery for SQL Server
31:29 Matthew – “Your CFO will hate you if you launch 128 vCPU equal. That’s all I have to say.”
33:09 Bigtable transforms the developer experience with SQL support
34:12 Simplifying VM deployments on Google Cloud Marketplace with a Terraform-based UI
34:26 Jonathan – “What could go wrong?
36:55 ‘Google is a monopolist’: Tech giant loses antitrust suit over search business in huge victory for DOJ
37:46 Jonathan – “The weird thing is, it’s common practice to pay for your product to be front and center. You just walk into a grocery store and those things aren’t placed randomly by employees. They’re carefully mapped out. Kellogg’s pay for their things to be on certain shelves, certain height above the floor, eye level for adults, eye level for kids. There’s a huge market in charging people for product placement. And I don’t see having Google search being the default search on iPhone any different than any other kind of product placement.”
Azure44:32 Embrace the future of container native storage with Azure Container Storage
45:21 Matthew – “It’s a nice solid add -on I feel like that you can now actually have the ephemeral disk. Where, now, no different than EBS back containers and all that stuff. So I’m a little surprised it wasn’t there to start off, but you now have it.”
OCI47:38 Announcing tunnel inspection for OCI Network Firewall
47:51 Matthew – “I miss just fun cloud announcements like this. Like it’s a good solid feature that they are adding to the cloud to make a compliance slash security person happy. Like this is sometimes what I just miss, just straight core cloud features that we don’t get all the time anymore.”
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloudPod
Welcome to episode 269 of the Cloud Pod Podcast – where the forecast is always cloudy! Justin, Matthew and Ryan are your hosts this week as we talk about – you guessed it – the Crowdstrike update that broke, well, everything! We’re also looking at Databricks, Google potentially buying Wiz, NY Summit news, and more!
Titles we almost went with this week:* You can’t take Justin down; but a 23-hour flight to India (or Crowdstrike updates) can * Google wants Wiz, and Crowdstrike Strikes all * Crowdstrike, does anyone know the Graviton of this situation? * We are called to this summit to talk AWS AI Supremacy * Crowdstrike, Wiz and Chat GPT 4o Mini… oh my * An Impatient Wiz builds his own data centers not impacted by Crowdstrike
A big thanks to this week’s sponsor:We’re sponsorless! Want to reach a dedicated audience of cloud engineers? Send us an email or hit us up on our Slack Channel and let’s chat! General News00:58 You Guessed It – Crowdstrike
Microsoft, CrowdStrike outage disrupts travel and business worldwide
Our Statement on Today’s Outage (listener note: paywall article)
04:50 Justin – “It’s really an Achilles heel of the cloud. I mean, to fix this, you need to be able to boot a server into safe mode or into recovery mode and then remove this file manually, which requires that you have console access, which, you know, Amazon just added a couple of years ago.”
07:45 Matthew – “It’s always fun when you’re like, okay, everyone sit down, no stupid ideas. Like these crazy ideas that you have, like end up being the ones that work, but you would never realistically have the opportunity to try them because you know, one, how often and God, I hope in your day job, you’re not actively logging into the serial port for fun or how to automate your deployments. Just sounds like you’re doing something horribly wrong at that point.”
15:20 Justin – “I saw that article this morning about the EU might be the reason why Microsoft doesn’t protect the kernel more. I think that’s a cop out. Basically the EU saying we want fair and equal competition. And basically what Mac did or Apple did was they basically created a custom API that basically does what CrowdStrike needs to do in the kernel and provides that to serve to CrowdStrike and other vendors. They’re all on equal footing. They all get access to the same API. They can all implement the same features, but Mac controls it at the API.”
22:09 Google Has Been in Talks to Acquire Wiz for $23 Billion
(listener note: paywall article)
22:58 Ryan – “I still haven’t played firsthand with whiz and I hear nothing but good things. And so I’m very conflicted on this because where Whiz is , I wonder if it’s going to be more exposed and Google products like Mandiant has become, or is it going to be sort of behind the scenes integration? And so I don’t know. We’ll see. I think that’s a, I’m just curious in how all the things shakes down.”
AI Is Going Great – Or, How ML Makes All It’s Money23:32 Announcing the General Availability of Serverless Compute for Notebooks, Workflows and Delta Live Tables
AWS24:42 Monitor data events in Amazon S3 Express One Zone with AWS CloudTrail
27:23 AWS Graviton4-based Amazon EC2 R8g instances: best price performance in Amazon EC2
28:10 Ryan – “You know, because it’s only indirectly related to AI. That’s why I didn’t make the summit.”
30:28 Amazon SageMaker introduces a new generative AI inference optimization capability
31:32 Announcing the next generation of Amazon FSx for NetApp ONTAP file systems
Amazon FSx for NetApp ONTAP now supports NVMe-over-TCP for simpler, lower-latency shared block storage
Amazon FSx for NetApp ONTAP now allows you to read data during backup restores
33:55 Justin – “Yeah, so NVMe over TCP is not iSCSI, just to be clear. But it’s basically iSCSI. It’s basically in kernel. It’s much more performant than iSCSI is, and it is the new hotness to replace iSCSI. But it is not technically iSCSI. Don’t correct us.”
35:36 Amazon ECS now enforces software version consistency for containerized applications
36:24 Ryan – “Well, the interesting part about this is because I actually really like this change because it is using sort of mathematically guaranteeing the workload is what you’ve set the workload is. But it’s funny because it is going to be a mixed bag; because the ability to tag an image with a shared tag that you refresh and change the image out from underneath has been something that’s been used and pretty much called out as an anti-pattern, and pretty much been called out as an anti pattern using environment specific labels or latest or. And so it’s sort of this weird thing and I’ve used this to get myself out of binds for sure. Actually specifically in ECS like using latest to update stuff as part of the underlying platform.”
37:57 Top Announcements of the AWS Summit in New York, 2024
AWS Summit recently took place in New York City – and there’s A LOT of announcements. Like, a lot.
Listener Poll: Do you genuinely think Amazon is leading at this level? Does this feel genuine to you? Let us know your thoughts by tagging us @thecloudpod or hit us up on our Slack Channel and let us know.
40:55 Vector search for Amazon MemoryDB is now generally available
36:24 Ryan – “This sounds expensive, but I think it’s cool as hell, Vector search in general is just a new paradigm.”
42:29 Build enterprise-grade applications with natural language using AWS App Studio
43:37 Justin – “It’s no code. It’s dumb no code, but yeah.”
43:36 Amazon Q Apps, now generally available, enables users to build their own generative AI apps
45:00 Customize Amazon Q Developer (in your IDE) with your private code base
45:10 Announcing IDE workspace context awareness in Q Developer chat
45:50 Ryan – “I think Dr. Matt would probably, you know, think about his slide instead of doing bar charts, maybe, maybe do a little time -based chart because these are, you know, features that chat GPT was announcing like 18 months ago, two years ago.”
46:46 Agents for Amazon Bedrock now support memory retention and code interpretation
47:23 Justin – “But we have a sandbox that code can’t get out of the sandbox. That’s what CrowdStrike said too.”
48:23 Guardrails for Amazon Bedrock can now detect hallucinations and safeguard apps built using custom or third-party FMs
49:27 Ryan – “I’m surprised that Bedrock can do this. I mean, it feels like no, detect hallucinations based off of the third party models. That seems crazy to me. And it just highlights how little I know about how these models work and how a platform like Bedrock operates. in my head, it’s just, you ask the model question, you get an answer back. so guardrails, clearly there’s more information being exchanged at a different level with which they can detect hallucinations.”
52:31 Knowledge Bases for Amazon Bedrock now supports additional data connectors (in preview)
53:07 Introducing Amazon Q Developer in SageMaker Studio to streamline ML workflows
53:39 Ryan – “Going to be need to be one hell of an AI bot if it’s going to get me to successfully run a Spark.”
GCP54:31 New Cloud SQL upgrade tool for MySQL & PostgreSQL major versions and Enterprise Plus
56:39 Flexible committed-use discounts are now even more flexible
47:23 Matthew – “I love when single things support multiple so I don’t have to think about it. It’s like, how much money do you want? Divide by four so I can give you a little bit so I can refresh as needed once a quarter. And here you go. Now I don’t need to manage 16 different things.”
59:01 Modern SecOps Masterclass: Now Available on Coursera
59:18 Ryan- “I’m sure the content won’t be heavily towards Security Command Center and the enterprise offering solutions.”
1:00:16 Discover a brand new catalog experience in Dataplex, now generally available
1:01:01 Ryan- “I really like that this is supporting both data on GCP and off GCP. Cause that’s the reality is, you know, almost always that you have data in multiple places. And if you’re trying to catalog everything so that you have a place to search and understand where your data is and sensitivity and the metadata around it. If you have three different versions of that catalog, it doesn’t, it’s worse than just having one.”
1:01:33 Introducing Spanner dual-region configurations that help maintain high availability and data residency
1:02:38 Matthew – “I mean, with the data resilience, with the data regional requirements, like something like this is slowly going to be required more and more. It’s interesting that, you know, before you only got four nines with it, but also at one point compliance always wins in keeping the data in the correct country. It keeps you out of, know, compliance hell, you know, it’s kind of important. So, you know, it’s nice to be able to get that extra nine.”
AzureOH look Azure woke up…. Oh it’s AI.
1:03:52 OpenAI’s fastest model, GPT-4o mini is now available on Azure AI
1:05:12 Matthew – “So unlike AWS, Azure used to be careful that this is not available in many of the regions, which definitely makes Azure a little bit harder at times, but you get less press announcements.”
1:05:28 Latest advancements in Premium SSD v2 and Ultra Azure Managed Disks
1:06:25 Matthew – “A lot of these just feel like good quality of life improvements that they really needed to get out there. Like the incremental snapshot support, know, PB2 also, know, UltraDicts go to decent large sizes. like, you probably don’t really need to be snapping the whole drive if you’re just handling little bits and pieces of change.”
OCI1:07:18 Oracle Loses Out to Musk’s Impatience
1:07:54 Ryan – “Yeah, what my money is totally on the fact that this is, bet you that it’s going to take them longer to get this set up than whatever date they’re looking at for Oracle.”
1:09:16 Oracle Announces Exadata Exascale, World’s Only Intelligent Data Architecture for the Cloud
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloudPod
Welcome to episode 268 of the Cloud Pod Podcast – where the forecast is always cloudy! Justin says he’s in India, but we know he’s really been replaced by Skynet. Jonathan, Matthew, and Ryan are here in his stead to bring all the latest cloud news, including PGO for optimization, a Linux vulnerability, CloudFront’s new managed policies, and even a frank discussion about whether or not the AI Hype train has officially left the station. Sit back and enjoy!
Titles we almost went with this week:* OpenSSH sings “Oops I did it again” * All aboard, the AI hype train is leaving the station * Caching In on CloudFront’s New Managed Policies * Get your Go Apps a personal trainer this summer with PGO * Was Japan actually using floppy disks or were they 3.5 * Azure is on summer break * Singapore will soon just be datacenters
A big thanks to this week’s sponsor:We’re sponsorless! Want to reach a dedicated audience of cloud engineers? Send us an email or hit us up on our Slack Channel and let’s chat! General News00:56 Japan declares victory in effort to end government use of floppy disks
02:36 Jonathan – “Yeah, I remember a couple of years ago they started talking about this modernization they were doing and people started to panic because Japan’s the largest purchaser of floppy disks anymore, or three and a half inch disks anyway. And so I ended up buying some because I’ve still got a USB floppy drive and some machines that have floppy disks. And I wanted just to stock up on some for the future, just in case the price went through the roof if Japan finally cut them and they have.”
05:16 regreSSHion: Remote Unauthenticated Code Execution Vulnerability in OpenSSH server
07:36 Jonathan – “Yeah. Qolus have a proof of concept or working hack, which they’re not releasing yet to give people time to patch, but it’d be super interesting to come back and look at it and see how it works and test it and play with it.”
AI Is Going Great – Or, How ML Makes All It’s Money9:20 AI’s moment of disillusionment
11:49 Matthew – “You know it was the hype. It still is the hype. But it’s going to find its place. You know, despite us replacing Justin this week with AI, you know we figured out how to use it in different ways, and you know it’s not going to just overnight replace everyone in the world doing their job and fall into a matrix type.”
20:34 Declare your AIndependence: block AI bots, scrapers and crawlers with a single click
24:46 Ryan – “And this is the first time I’m hearing about ByteSpider, which just, you know, like is ByteDance trying to piss off the United States government? They’re already sort of on edge. Like, this is kind of crazy.”
AWS25:12 AWS Lambda introduces new controls to make it easier to search, filter, and aggregate Lambda function logs
27:05 Ryan – “Makes you wonder what big government customer demanded this…’
30:36 Amazon S3 Access Grants now integrate with open source Python frameworks
33:29 Amazon CloudFront announces managed cache policies for web applications
34:42 Matthew – “I like that they’re kind of setting up these easy defaults for people to select. Because before even these managed cash policies, you had to go through like hundreds of different settings and figure it out yourself like what you wanted for these. So these easy buttons just help people select the right policy, kind of move on.”
GCP36:18 Boost performance of Go applications with profile-guided optimization
38:44 Jonathan – “But how cool would it be to do this literally at runtime in production, just have this constantly collecting metrics from a running application and going back and then rebuilding it for the next release, or even automate that release process so it’s always running.”
40:04 Share your streaming data with Pub/Sub topics in Analytics Hub
AzureJust kidding. There’s no Azure news. But we do have some interesting articles for you to peruse at your leisure.
10 ways to impact business velocity through Azure OpenAI Service
Build your own copilot with Microsoft Azure AI Studio
Plans on Microsoft Learn: Your online blueprint for building AI and Azure skills
OCI47:12 Oracle opens second cloud region in Singapore
49:54 Ryan – “I just realized that we were talking about an OCI region announcement. So this is just, you know, a couple of servers in the back of a semi truck driving around anyway.”
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 265 of the Cloud Pod Podcast – where the forecast is always cloudy! It’s a full house this week – Matthew, Jonathan, Ryan and Justin are all here to bring you the latest in cloud news – including FOCUS features in AWS Billing, Magic Quadrants, and AWS Metis. Plus, we have an Andoid vs. Apple showdown in the Aftershow, so be sure to stay tuned for that!
Titles we almost went with this week:* Tech reports show Gartner leads in the BS quadrant * Oracle adds cloud and legal expenses to their FinOps hub * AWS Metis: Great chatbot, or Greek tragedy waiting to happen? * The cloud pod rocks Cargo Pants * A sonnet is written for FOCUSing on spend
A big thanks to this week’s sponsor:We’re sponsorless! Want to reach a dedicated audience of cloud engineers? Send us an email, or hit us up on our Slack Channel and let’s chat! General News01:40 Finops X
08:22 Justin – “The shift left of FinOps was a big topic. You know, how do we get visibility? How do we show people what things are going to cost? How do we make sure that, you know, people are aware of what they’re doing? And so I think, you know, it’s just a recognition that is important and just as important as security is your cost. And in some ways security is part of your cost story. Because if you bankrupt your company, that’s a pretty bad security situation.”
10:17 Introducing Managed OpenSearch: Gain Control of Your Cloud with Powerful Log Analysis
12:11 Ryan – “It’s the important ones where everything revolves around it and so no one touches it. And so they end up getting the worst spaghetti code and it’s old and tacked on. It always is…It took me three months to understand that code reverse engineering, how it works. And now I’ve got it pretty down. So like when it breaks, I could fix it, but I wouldn’t try to refactor it at all.”
AWS13:57 AWS CodeArtifact adds support for Rust packages with Cargo
14:16 Ryan – “I’m a fan of never running a software repository again. And so it’s the support of these new features and functions that allows that managed service sort of usage. So I think it’s fantastic.”
18:10 Anthropic’s Claude 3.5 Sonnet model now available in Amazon Bedrock: Even more intelligence than Claude 3 Opus at one-fifth the cost
18:48 Jonathan – “I played with it, and it wrote some code around first time. First time. Yep. I just, I skimmed through it like, yep, that looks good. Copy paste – works first time. It’s awesome. I also had it generate… so that was, that was the LDAP group management stuff. I had it, I had it right. And then I also had it write a browser based game, Tic Tac Toe in HTML and JavaScript … and it just spat that out like it’s done it a thousand times, which it probably has. But that worked fine. I wanted to tweak it – like its AI that it was playing tic -tac -toe with, so it may be a new version. And then I played it. It was like, no going back twice. Did I win? Yeah, I did.”
20:30 Announcing the general availability of fully managed MLflow on Amazon SageMaker
21:37 Jonathan – “It’s interesting because MLflow for years has been a competitor to SageMaker. In the US, people have just deployed that and used it to manage running experiments and building models and the workflows around that. And so for them to bring it in like this is, it’s both interesting and kind of cool to have it as a managed service now. But no longer a competitor anymore.”
22:46 Rightsizing Recommendations for Amazon RDS MySQL and RDS PostgreSQL in AWS Compute Optimizer
23:30 Ryan – “I was really happy to see that they included the IOPS provisioning in this optimization, just because so many database engineers, they live by that one outage because of drive performance and all the SQL engines say you need to have this and all these things, and then it just sits idle and it’s so much cost. So this is pretty great to see because I think this is one area I know that in most places I’ve worked where there’s a heavy over provisioning.”
26:28 AWS Billing and Cost Management now provides Data Exports for FOCUS 1.0 (Preview)
AWS Billing and Cost Management now provides Data Exports for Cost Optimization Hub
27:38 Report: Amazon developing AI chatbot that would compete with ChatGPT and others
GCP29:57 GKE under the hood: What’s new with Cluster Autoscaler
31:02 Ryan – “Very cool. I mean, I still see dummy workloads for pod scaling and kind of hackery in order to address this issue with some of my spiky workloads. And so the more they add these improvements, the more we can sort of stop supporting all this stuff. Good. Awesome.”
31:52 Google is a Leader in the 2024 Gartner® Magic Quadrant for Analytics and Business Intelligence Platforms
33:24 Jonathan – “What does Copilot have to do with this thing?
33:28 Justin – “Because you want co -pilot in all your analytics, so you can ask it to make pretty reports of AI and natural language!”
35:42 Google is a Leader in the 2024 Gartner® Magic Quadrant for Data Science and Machine Learning Platforms
36:42 Matthew – “I just like how SageMaker is like a positive there for AWS. And I’m like, SageMaker has been there for like 10 years, I feel like now. Like it’s been there for a long time. And like before nobody used it and now everyone’s like, ooh, SageMaker. And I’m like, it’s been there for a long time.”
37:19 Leveling up FinOps: 5 cost management innovations from FinOps X 2024
38:08 Justin – “Yeah, that modeling for CUDs was probably the highlight of the announcements from the vendors. You know, just the ability to do things like a lot of different windows. Like Amazon has some look back, so it’s like 30 or 90 days. They have a bunch of different carved out periods. And then yeah, being able to say like, look, this weekend where that outage happened and we spun up a bajillion Kubernetes clusters that kept failing or, you know, Hey, a black Friday event or, you know, those are the things that’s nice to be able to just eliminate that and say, that’s just a data anomaly. Don’t count that into my, my cut analysis as I go through it.”
38:47 Announcing Anthropic’s Claude 3.5 Sonnet on Vertex AI, providing more choice for enterprises
38:58 Jonathan – “I didn’t check Bedrock, but on Vertex, you pay differently for the input tokens and the output tokens, but effectively since you want it to be generating stuff, because it’s GNI, $15 per million tokens, which is quite pricey. Like the smaller model, the Haiku model, is only $1 .25 per million tokens, so just to put it in perspective.”
39:47 Simplify historical data tracking in BigQuery with Datastream’s append-only CDC
41:38 Jonathan – “Well, Google only takes cash, not souls.”
Azure41:53 Finops X announcements
43:40 Matthew – “Azure really doesn’t like to announce the things that they’re doing, I feel like… Well, or it’s like it’s in private preview, then preview and then public preview and then then something else. Then there’s G. So by the time you get there, you’re like, I’m not interested because I’m not going to use it until it’s G aid or production workloads. So it’s like. That’s it.”
Oracle45:24 More Finops!
46:55 Jonathan – “Well, budgets are so invisible to most people* in the organization now, I think. And so if they’re building tooling, which makes it put in front of people and shows you what the budget is and shows you where you are on track or not on track, it’s just a useful tool. It’s a nice perspective.”
*Except Justin
After Show35:23 After Show: Apple WWDC 2024: the 13 biggest announcements
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 265 of the Cloud Pod Podcast – where the forecast is always cloudy! Justin and Matthew are with you this week, and even though it’s a light news week, you’re definitely going to want to stick around. We’re looking forward to FinOps, talking about updates to Consul, WIF coming to Vault 1.17, and giving an intro to Databricks LakeFlow. Because we needed another lake product. Be sure to stick around for this week’s Cloud Journey series too.
Titles we almost went with this week:* The CloudPod lets the DataLake flow * Amazon attempts an international incident in Taiwan * What’s your Vector Mysql?
A big thanks to this week’s sponsor:We’re sponsorless! Want to reach a dedicated audience of cloud engineers? Send us an email, or hit us up on our Slack Channel and let’s chat! General News01:40 Consul 1.19 improves Kubernetes workflows, snapshot support, and Nomad integration
01:37 Matthew- “What I was surprised about, which I did not know, was that console API gateway can now be deployed on Nomad. Was it not able to be deployed before? Just feels weird… you know, consoles should be able to be deployed on nomad compared to that. You know, it’s all the same company, but sometimes team A doesn’t always talk to team B.”
03:21 Vault 1.17 brings WIF, EST support for PKI, and more
05:00 Justin – “As I was reading through it, I was like, yeah, if someone gets access to your account and can delete your KMS keys, then they could seal your vault and then you’re totally hosed. Yeah, it was definitely something I had not really considered at all. Even the console feature where they talked about the ability to do the backup to multiple systems.”
07:09 Introducing an Enhanced & Redefined Tanzu CloudHealth User Experience
08:44 Justin – “Now I’m mostly impressed with this press release because they said all of that without actually using the words AI or artificial intelligence anywhere. Yes, they did have 10 intelligent assists and it is LM enabled, but someone in marketing should be fired for not specifically having the AI keyword that any investor of Broadcom would of course want to see in this press release.”
AI is Going Great – Or How ML Makes All Its Money 10:42 Introducing Databricks LakeFlow: A unified, intelligent solution for data engineering
11:20 Matthew – “So about five years ago, you walked around any of these tech conferences and all you saw was cloud health, cloud spend, cloud whatever, something cloud. And I feel like the new thing is Lake whatever, Lake flow. I’m like, how am I ever gonna find this in the future? And I’m like, I wanna look this up. it’s that one with Lake in its name.”
13:16 Open Sourcing Unity Catalog
14:52 Justin – “You can get started with this today. If you’re a Databricks customer, you already have access. And if you’re not, good luck figuring out how to integrate it.”
AWS16:03 In the Works – AWS Region in Taiwan
AWS to Launch an Infrastructure Region in Taiwan
17:27 Introducing Maven, Python, and NuGet support in Amazon CodeCatalyst package repositories
18:16 Justin – “So CodeArtifact is a build and release automation service that provides a centralized artifact repository, access management, and CI -CD integration. CodeArtifact can automatically fetch software packages from public package repositories on demand, allowing teams to access the latest versions of application dependencies. CodeCatalyst is a unified service that helps development teams build, deliver, and scale applications on AWS.”
GCP19:39 What’s new with Cloud SQL for MySQL: Vector search, Gemini support, and more
21:42 Matthew – “I always worry when you put more and more things embedded in the SQL databases, you kind of slowly build more and more of a single point of failure within your application, you know, because then your SQL database becomes computer resource constrained more and more. And with SQL scaling horizontally is a little bit harder, is a lot harder than, you know, scaling vertically. So you just normally end up scaling vertically and then you become less and less cloud native.”
23:33 Join the latest Google Cloud Security Talks on the intersection of AI and cybersecurity
25:15 Bringing file system optimizations to Cloud Storage with a hierarchical namespace
26:50 Matthew – “I mean, it’s a great feature, you know, just kind of getting rid of all the day to day stuff. More one of those things that it just feels like they’re really just announcing a rename feature, but then they’ve kind of set it up so you can only use this API call if you’ve set it up in a very specific way. So I’m kind of more concerned that it’s like, Okay, they’ve optimized it – they’ve over optimized in one way and then can it cause performance issues on the other they don’t talk about. So I’ll be kind of curious to see how this actually works and if there’s other issues.”
Azure28:45 Empowering every scientist with AI-augmented scientific discovery
Oracle30:45 Oracle Announces Fiscal 2024 Fourth Quarter and Fiscal Full Year Financial Results
31:44 Oracle Access Governance introduces next-gen access dashboard and more integrations
32:34 Justin – “It’s sort of weird the, you know, the Oracle Access Government utilizes internal email delivery service notifications. Like, what else would it have leveraged? I would hope you’re using internal email delivery services to deliver email to me.”
Cloud Journey Series35:23 Free to be SRE, with this systems engineering syllabus
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 264 of the Cloud Pod Podcast – where the forecast is always cloudy! Justin, Jonathan, Ryan (and eventually) Matthew are all on hand this week – and announcement noise this week it’s the return of the Cloud Journey Series! There’s also a lot of news from Re:inforce, a ground-breaking partnership between Oracle and Google Cloud, and updates to GKE. The guys also look ahead to Finops ‘24.
Titles we almost went with this week:* First, AI came for Writers/Artists, then it came for Developers, and now it comes for Security… What’s Next? * Amazon Reinforces my Lack of Interest in Attending – JPB rl * Object Storage Malware protection, everyone, please copy it! * Amazon is the last man out in Oracle next-gen partnerships * Dear Google, A partnership with Oracle is not Groundbreaking when Azure already did it * AWS Announces some “We finally got around to it feature updates” * Protect your S3 buckets from themselves with Amazon Guard Duty * The CloudPod and AI play Guess Who? with IAM Access Analyzer.
A big thanks to this week’s sponsor:We’re sponsorless! Want to reach a dedicated audience of cloud engineers? Send us an email, or hit us up on our Slack Channel and let’s chat! AWS 01:04 Simplify risk and compliance assessments with the new common control library in AWS Audit Manager
01:37 Ryan – “It’s the dream! Automated evidence generation. And now with the context of known frameworks. Yeah; because that’s always the challenge, you know, are the last step of the translation – this is the control. Hey, we need all these controls to do this level of compliance.”
04:36 Centrally manage member account root email addresses across your AWS Organization
05:50 Jonathan – “At least they separated the AWS logins from the Amazon .com logins so you couldn’t have somebody ordering pairs of shoes on your AWS bill.”
08:33 Amazon EC2 instance type finder capability is generally available in AWS Console
09:25 Ryan – “Jonathan and I were scheming in our cynical ways before the show, trying to figure out what’s the angle here? And I’m like, of course Amazon’s going to steer you to the largest, most expensive instance. And Jonathan’s like, no, no, it’s much more insidious.”
15:43 Amazon ECS on AWS Fargate now allows you to encrypt ephemeral storage with customer-managed KMS keys
15:48 Ryan – “Fantastic, except for I don’t want to manage my own keys unless my customers absolutely make me.”
Re:Inforce
16:22 AWS Audit Manager extends generative AI best practices framework to Amazon SageMaker
18:10 Simplify AWS CloudTrail log analysis with natural language query generation in CloudTrail Lake (preview)
09:25 Ryan – “I mean, that said, having spent countless hours generating Athena queries and indexing, you know, this, I love this feature because this is really where I think generative AI is as helpful as that sort of last translation layer.”
21:05 Introducing Amazon GuardDuty Malware Protection for Amazon S3
22:37 Jonathan – “It’s not terrible. But the kind of kicker about this though is that the types of organizations that would want to pay for something like that are the types of organizations that would want client -side encryption or something else which would completely prevent GuardDuty from scanning any of the objects that got uploaded.”
23:52 IAM Access Analyzer Update: Extending custom policy checks & guided revocation
24:43 Justin- “And I’m really disappointed that they didn’t announce AI for IAM.
Because if any place I would want IAM with AI, it would be, or AI would be with IAM. If I could get the letters right.”
26:08 AWS adds passkey multi-factor authentication (MFA) for root and IAM users
Passkeys enhance security and usability as AWS expands MFA requirements
27:54 Justin – “It’s interesting. It’s really old technology, which is really funny. I mean, it’s like GVG things where the website provides you with something which is encoded or encrypted with your public key and you have to decrypt it and send it back again. And that’s been around for decades. It’s just funny that it’s only just getting to be adopted by the mainstream, like the dark web websites have been using this kind of technology for logins forever.”
29:59 AWS Cloud WAN introduces Service Insertion to simplify security inspection at global scale
31:27 Matthew – “Yeah, so they probably use something like a gateway load balancer and then from there out, because then the whole point of the gateway load balancer is really for like ISVs to leverage to solve that problem that you’re talking about.”
31:43 Amazon CloudWatch Application Signals for application monitoring (APM) is generally available
GCP33:15 Introducing GKE Compliance: Maintain clusters and workloads against industry standards
34:48 Boost developer productivity with new pipeline validation capabilities in Dataflow
36:30 Justin – “I’m just imagining every Jenkins pipeline or every CIC pipeline I’ve done where it’s like, okay, I built a pipeline. Now, how many commits does it take for me to get the pipeline to run?”
38:07 Move from always-on privileges to on-demand access with new Privileged Access Manager
38:36 Ryan – “I think that this is something that will change the way we structure permissions. It’s a great compromise from the old Windows style where you had your two accounts, you know, where you had everyone shared the same password between the two accounts, but you know, you had two so it was separate. It’s cool.”
42:45 Oracle and Google Cloud Announce a Groundbreaking Multi Cloud Partnership
47:11 Justin – “Honestly, Amazon would be in the best interest of their customers. If they say they’re customer focused and obsessed – would offer a database service from Oracle that they manage and care for, it would be a better, better experience.”
Azure48:25 Announcing Advanced Container Networking Services for your Azure Kubernetes Service clusters
49:31 Ryan – “I mean, this speaks to the root of why I don’t like Kubernetes in general, which is like, I like workloads where you’re delegating responsibility boundaries and isolating things. And this type of networking in suite is because you’re hosting multiple workloads and multiple different business entities and all kinds of things on your Kubernetes clusters. And so you need this visibility.”
Oracle51:29 Announcing FOCUS support for OCI cost reports to make multi cloud FinOps easier
Any listeners going to FInops? Do you want stickers? Of course you do! Find Justin at Finops on the show floor!
52:53 Behind the scenes: Touchless cloud region build
Cloud Journey Series56:10 5 myths about platform engineering: what it is and what it isn’t PLUS
5 more myths about platform engineering: how it’s built, what it does, and what it doesn’t
ClosingAnd that is the week in the cloud! Visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 263 of the Cloud Pod Podcast – where the forecast is always cloudy! This week we’re diving into the world of Snowflake, including announcements from their latest conference and details about their recent breach. Seriously – MFA is important! Plus we look at updates to Terraform, Claude 3, and OCI pushing the IOPS limits and much more. Join us!
Titles we almost went with this week:* Snowflake Announces State-of-the-Art way for hackers to Talk to your Data * Ticketmaster gets a snow job – MFA matters! * The CloudPod wouldn’t use Oracle even for a million IOPS * Azure finally wakes up to hibernation support JJB * No one ever called a Bastion Host Premium until Today – JPB MK * I look forward to connecting Kinesis to Pub Sub to Event Hub in the most rube * goldberg eventing architecture ever * Hashicorp shows you the way * 10 ways to say I want you Matt (I’m not bias with the name) * Can we just hibernate ourselves on AI announcements * Sus is how i feel about the new Susscanner from AWS * OCI has enough power to run Oracle databases with 1 MIllion IOPS * OCI wants 1 Million IOPS (dr evil voice) * Monday, Tuesday, Hashidays…
General News Terraform AWS Cloud Control API provider is now generally available
00:53 New Vault and Boundary offerings advance Security Lifecycle Management at HashiDays 2024
01:35 Justin – “I’m pretty sure when you want to switch from the CC version to the HL version, it’s gonna destroy everything you did and blow it away. But maybe they’ll now think about a way to migrate things.”
5:09 HCP Waypoint to add actions, enhances golden pattern capabilities, and more
07:18 Cloudflare acquires BastionZero to extend Zero Trust access to IT infrastructure
AI Is Going Great (Or How ML Makes All It’s Money)08:54 Snowflake Clients Targeted With Credential Attacks
10:08 Justin – “I’ve dealt with it before. I think we all have. That’s not an uncommon pattern, because no one wants to integrate your demo accounts with single sign -on and things that they should. And so that’ll burn people all the time.”
13:08 Snowflake Announces State-of-the-Art AI to Talk to your Data, Securely Customize LLMs and Streamline Model
15:16 Jonathan – “I’m surprised that we’ve gone into document analysis when you’re already hosted on cloud search, you already provide those as services. It’s a weird market to go after.”
User poll: Have you noticed an increase in keynote announcements that are in beta or private preview? Let us know on X or our Slack channel.
19:01 Simplified End-to-End Development for Production-Ready Data Pipelines, Applications, and ML Models
20:05 Snowflake Massively Expands Types of Applications That Can Be Built, Deployed and Distributed on Snowflake
21:56 Justin – “The Snowflake Native app framework was kind of cool. I was doing a little bit of research on it after I read the article because I hadn’t heard of it. But basically, if you think about applications and selling on Marketplace where you want to build infrastructure on a customer’s own accounts or things, this basically allows you to build those applications and be managed through your control. There’s basically a control plane for those. So you can basically deploy Snowflake components into other cloud accounts and projects that aren’t owned by them, but they are still managed by Snowflake remotely with this capability.”
AWS22:57 @awscloud 10 things you need to know about Matt Garman, the incoming CEO of AWS
28:39 Jonathan – “Yeah, I wonder what leadership development advice I’ll offer to kids who have very different prospects of jobs when they’re older, given what AI is doing to the world.”
29:13 AWS analytics services streamline user access to data, permissions setting, and auditing
29:47 Jonathan – “That’s pretty cool. I thought that’s how SSO was supposed to work in general though. If you SSO’d into Tableau and Octa was the provider of that, then you would, and you redirected to Redshift for example, you would automatically be logged in. Isn’t that the point of checking the box that says stop pestering me to log in? I don’t know.”
31:51 Build More Sustainable AWS Workloads with the Sustainability Scanner
25:28 Matthew – “I think this is nice that people are hopefully are starting to think about sustainability day one, like security and moving all this. And I say this as I vomit a little bit my mouth to the left a little bit more. But also at one point when you throw every single tool in front of a developer, all they’re going to do is just get mad at the tools. So you should make sure that if you are implementing this, it is at the right time in your actual software development lifecycle. Otherwise, it’s another thing to ignore.”
GCP34:36 Anthropic’s Claude 3 Opus and tool use are generally available on Vertex AI
34:55 Jonathan – “I have used Opus, I subscribe through Anthropics website to Opus, $20 a month. And I wanted it for a very specific use case. I had some large documents, which were medical reports actually. And I also had some legal documents and some California education board guidelines and things. Anyway, I ingested all those things into Claude and asked it to write me some very interesting emails and kind of legal arguments. And it was fantastic. And I obviously read through what it said and verified everything that it said was good. And I was incredibly impressed by the size of the context window and the amount of context it can keep in mind. That’s a questionable word to use when answering questions. It was super impressive.”
37:54 Easily stream data from AWS Kinesis to Google Cloud with Pub/Sub import topics
38:34 Jonathan – “This kind of screams we’ve got a new product coming and we want to take data from other clouds.”
41:48 Introducing Google Cloud NetApp Volumes Flex volumes, auto-tiering, and more
Azure44:08 Azure Virtual Network Manager’s virtual network verifier is now in public preview
45:38 General Availability: VM Hibernation for General Purpose VMs
45:55 Jonathan – “It’s even better for spinning up machines quickly.”
46:25 Enhance your security capabilities with Azure Bastion Premium
47:44 Matthew- “So the normal one for Azure Bastions, 29 cents per hour per instance. I believe you have to have two of them. So really it’s 58 cents an hour. This one is 45 cents an hour time too, so 90 cents. So it’s not a massive increase. It’s, I think it’s a couple hundred dollars a month, but I think it’s actually a really nice increase.”
50:53 Microsoft and Broadcom to support license portability for VMware Cloud Foundation on Azure VMware Solution
Oracle52:03 Shatter the Million IOPS Barrier in the Cloud with OCI Block Storage
53:45 Justin – “I did go look this up because I knew you were going to ask this question. The previous 800 ,000 IOPS was achieved with 24 of the ultra -high performance disks. So they added more, and that’s how they got here.”
ClosingAnd that is the week in the cloud! Go check out our sponsor, Sonrai and get your 14 day free trial. Also visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
And to close this week’s show – can we just reiterate – MFA. Please and thank you.
Welcome to episode 262 of the Cloud Pod podcast – where the forecast is always cloudy! Justin, and Ryan are your hosts this week, and there’s a ton of news to get through! We look at updates to .NET and Kubernetes, the future of email, new instances that promise to cause economic woes, and – hold onto your butts – a new deep sea cable! Let’s get started!
Titles we almost went with this week:* What is a vagrant when you move it into your cloud * I only Aspire not to use/support .NET * AI Is the Gateway drug to Cloudflare * Let me tell you about the future with MAIL ROUTING * AWS invents impressive ways to burn money with the U7i instances * Google Only wishes they could delete our podcast with an expiring subscription * AKS Automatic — impressive new attack weapon or an impressive way to make Ops Cry?
A big thanks to this week’s sponsor:Big thanks to Sonrai Security for sponsoring today’s podcast! Check out Sonrai Securities’ new Cloud Permission Firewall. Just for our listeners, enjoy a 14 day trial at https://sonrai.co/cloudpod General News 00:53 Vagrant Cloud is moving to HCP
01:53 Justin – “I really think Vagrant would be a key pillar of the IBM future strategy for HashiCorp? Nope, I sure did not. I mean, I figured they’d probably just keep it open source and people would keep developing on it, but I didn’t really expect much. So, you know, to at least get this and an improved search experience is kind of nice because the old Vagrant cloud website, it was definitely a little stale. So I can have improved search and a new UI is always nice.”
AI Is Going Great (Or How ML Makes All It’s Money)02:43 Snowflake Announces Agreement to Acquire TruEra AI Observability Platform to Bring LLM and ML Observability to the AI Data Cloud
04:02 Ryan – “Yeah, this is a gap, right? Like, and I think we’ll, we’re in that uncomfortable phase of new technology, where it’s sort of rushing, like there’s AI, but there’s the management of AI. And, you know, how to sort of operate it at scale. And so there’ll be a couple different tasks and solutions. I feel like this is one. Hopefully, yeah, observability is a little funny, because it’s sort of like, I get it. But maybe another word.”
05:06 AI Gateway is generally available: a unified interface for managing and scaling your generative AI workloads
06:46 Ryan – “…it’s funny, because I think they’re largely a very similar offering with Yeah, a little bit of difference in terms of the validity of the responses. But I do, you know, like, it is going to be fun to watch all the all these areas sort of fill in because this is, this is really nice for, for those companies who are trying to productionize AI and realizing like, this is ridiculously expensive if you’re routing everything back to your model and, and so like having your cache is gonna be super key and that’s cool.”
AWS09:05 Optimized for low-latency workloads, Mistral Small now available in Amazon Bedrock
09:44 Justin – “So I’ve been playing around with them more and more because he got me LM Studio and I just like playing with them. So I downloaded one, I was downloading the Microsoft ones for their newer model the other day and I was playing with that one and the reality is I very quickly realized I can’t see a difference between most of the models. I am not sophisticated enough to understand what the differences are between these things.”
13:11 PostgreSQL 17 Beta 1 is now available in Amazon RDS Database Preview Environment
14:42 Amazon EKS and Amazon EKS Distro now support Kubernetes version 1.30
15:16 Ryan – “Yeah, that’s that’s not going to be fun for some Kubernetes operators, but probably not to a lot of the Kubernetes users… Yeah, all their automation is now not going to work.”
16:07 Mail Manager – Amazon SES introduces new email routing and archiving features
19:58 Jutsin – “Yeah, I’m just thinking of the compliance benefit of being able to directly write these emails to S3 to then be able to have security scan them for compliance or DLP use case. Like there’s so many use cases that this allows for you to do. That’s really kind of cool.”
20:23 Amazon Security Lake now supports logs from AWS WAF
22:23 Amazon EC2 high-memory U7i Instances for large in-memory databases
If you’re a company that uses these instances – and you’re hiring- we have a couple of guys who would LOVE to chat with you. Hit us up!
23:59 AWS Weekly Roundup – LlamaIndex support for Amazon Neptune, force AWS CloudFormation stack deletion, and more (May 27, 2024)
25:28 Ryan – “…this last one, there’s a lot of words that I don’t understand put together, but hopefully we can part, we’re gonna go through it, Ryan. The Llama index support for Amazon Neptune is now available. You can now build a graph retrieval augmented generation or graph rag. I didn’t know this was a thing. I knew what rag is, I knew what graph database was, but apparently you put together it’s a graph rag. Application by combining knowledge graphs stored in Amazon Neptune and the Llama index, which is apparently a popular open source framework for building applications with large language models, such as those available to you in Bedrock, of course. Apparently that can make magic happen. So, if you’ve been waiting for this, you can now do it.”
GCP26:31 More FedRAMP High authorized services are now available in Assured Workloads
Google Cloud Achieves FedRAMP High Authorization on 100+ Additional Services
29:47 Justin – “Yeah, I mean, I would much rather do it this way and then deal with the small extra things on the configuration or additional audit logging capabilities you need to do. And the reality is that a lot of these fast companies are selling to megabanks and other very heavily scrutinized organizations that care a lot about security of their customers’ data, customers like Apple, et cetera. So these vendors are under a lot of scrutiny for lots of reasons.”
31:13 Sharing details on a recent incident impacting one of our customers
35:07 Justin – “Well, as all errors tend to be, they’re all human error. So it’s just, I’m glad Google stood up a blog post really taking ownership of this and said, hey, this was on us. We’re taking responsibility. And it won’t happen to you. And here’s why it won’t happen to you. And here’s what we’re doing to prevent this from happening in the future, which makes me feel more confident. I think they needed to get something out maybe a little sooner. Like, hey, this is true. This had happened. We were helping the customer. We’ll get back to you.”
36:51 Improving connectivity and accelerating economic growth across Africa with new investments
37:46 Justin – “Yeah, pretty heavily invested in by China actually because of how untapped it is by the rest of the market, but you know, I think having more competition there and being able to get access to data and to network services and anything to make it better going to Australia with multiple paths is also a win because, yeah, there for a long time was not a lot of options.”
38:50 Cloud SQL: Rapid prototyping of AI-powered apps with Vertex AI
Azure42:03 General Availability of .NET Aspire: Simplifying .NET Cloud-Native Development
44:11 Ryan – “This is interesting because when I first read the title, I thought it was more of like a, you know, features into a .NET framework, but this is more like CDK or programmatic resources for .NET, which is kind of cool, actually. As much as I wanted to make fun of it before, like this is a gap.”
46:17 Microsoft Copilot in Azure extends capabilities to Azure SQL Database (Public Preview)
47:14 Ryan – “…soon will be saying, you know, like we always say, like, it doesn’t have a SQL interface. That’s how you know it’s real, it’ll be like, does it have like natural language processing of a SQL interface? Because it, you know, like I can’t form a query to save my life.”
49:43 AKS at Build: Enhancing security, reliability, and ease of use for developers and platform teams
50:45 Ryan – “Finally, I’ve been waiting for these management features of Kubernetes for years now, because it’s so difficult to operate Kubernetes at scale. And you’re seeing this now with GKE for Enterprise, I think it’s called now, what was Anthos, and now AKS Automatic, which I love the name.”
ClosingAnd that is the week in the cloud! Go check out our sponsor, Sonrai and get your 14 day free trial. Also visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 261 of the Cloud Pod podcast – where the forecast is always cloudy! Justin, Matthew, and Ryan are your hosts this week, and there’s a ton of news to cover, including a slew of Azure and Oracle stories! This week the guys cover some new cost management strategies from FinOps, some Kubernetes updates, MS Build, and even fancy schmancy CoPilot PCs!
Titles we almost went with this week:* Azure woke up and announced things * AWS stops taking your IPv4 Money * Well now everything has copilot
A big thanks to this week’s sponsor:Big thanks to Sonrai Security for sponsoring today’s podcast! Check out Sonrai Securities’ new Cloud Permission Firewall. Just for our listeners, enjoy a 14 day trial at https://sonrai.co/cloudpod AWS 00:57 AWS plans to invest €7.8B into the AWS European Sovereign Cloud, set to launch by the end of 2025
03:23 Ryan – “Yeah. It just seems so anti what they’re trying to set up with the sovereign region to begin with, right? Like, I guess copying data is fine in, but not out. Like it’s sort of, it’s like GovCloud, right? It’s completely separate. So strange.”
05:06 Application Load Balancer launches IPv6-only support for Internet clients
05:25 Ryan – “So the trick is for internal, the reason why we’re starting to see this more and more is that because you can address these huge spaces in IPv6, they’re not doing the equivalent of RFC 1918 address space. So that’s why these things become super important because they’ll configure an internal sort of networking path that’s only IPv6, but then you can’t use like a managed load balancer or something like that because there’s no IP space.”
08:37 Amazon WorkSpaces Web is now called Amazon WorkSpaces Secure Browser
11:13 Challenges of AI in Cloud Computing with Justin Brodley
GCP 12:49 Cost Management Elevate your FinOps strategy: Optimize with FinOps hub, now GA
13:28 Ryan – “I don’t know how many times I’ve worked with teams to, to work, bring down their costs. And then, you know, there’s another major initiative and they’re like, how much penny pinching do you expect me to do? Right. And then versus other teams who barely make any effort and are applying the same things. And so the ability to sort of call out teams and, and see that savings is amazing.
15:10 Announcing general availability of Ray on Vertex AI
17:18 Justin – “I’m not a huge fan of, like, I think we’re reaching the end of the transformer model era. Like, they’re gonna keep getting bigger and more contacts and more tokens. And then there’s gonna be a point where the return on these investments is gonna depreciate very quickly. And I think then we’re all gonna be like, well, what’s after transformer? Because that only did one thing and now we need more things. So, we’ll see how that works out over time.”
17:46 Google is named a Visionary in its first 2024 Gartner® Magic Quadrant for SIEM
20:31 100 things we announced at I/O 2024
Azure21:58 The availability of Azure compute reservations will continue until further notice
23:04 Matthew – “It’s just like a AWS is where it’s more savings if you choose the exact instance types or virtual machine types, but they do have the savings plans, which does go across virtual machines and their app services. If you’re in a certain level, like a P three or above, I think. So like there’s, there’s some nuances there.”
23:41 Public preview: Change from serverless to provisioned capacity mode
24:54 Introducing Copilot+ PCs
25:54 Public preview: Kubernetes version 1.30 support in AKS
Generally Available: Azure Functions can now run on Azure Container Apps
28:50 Matthew – “So it’s all tied to the app service world. So this is taking the app functions and launching them directly in the app in the Azure container app service instead. So you’re able to essentially run a Lambda now in two different places, depending on what other infrastructure you have set up. So if you’re already leveraging app service plans and you have managed app service plans, so think like you have told AWS, I need X number of CPU and servers to run all my Lambda functions. You can now also run them in just the container form instead. So think your ECS or EKS cluster.”
29:50 Public Preview – Azure Compute Fleet
32:34 Justin – “I’ve used it on a couple other projects, where I needed to provide, you know, some really spot instances and it, you know, the challenge that if you are doing a lot with spot instances now on Amazon is if it’s a instance type that could potentially be used for model training, a spot market dries up really quickly for certain instance types. so you have to really deploy fleets now for spot to really be, have any level of reliability and uptime. And so, I’ve had to use it a couple of times now and it’s still problematic, I would say, but not as problematic as it was many years ago when we first tried it.”
35:37 What’s next: Microsoft Build continues the evolution and expansion of AI tools for developers
40:42 Expanding extensibility model to Pulumi in Azure Deployment Environments
41:23 Matthew – “ARM is CloudFormation, Bicep is CDK.”
46:00 GA Load Balancer in Azure API Management & GA Circuit Breaker in Azure API Management
Oracle47:55 Announcing IP Address Insights on Oracle Cloud Infrastructure
48:58 OCI network load balancer enhancements for backends support
49:46 Justin – “I would love to be able to use this on a cloud migration strategy. The dreams I have, like the day I can use it for that capability, like, I’m going to do a migration. I’m going to use the simple backend load balancer routing capability and some replication on the database. And we’re going to just do this overnight.”
50:55 Instance Security now available in Oracle Cloud Guard
ClosingAnd that is the week in the cloud! Go check out our sponsor, Sonrai and get your 14 day free trial. Also visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 260 of the Cloud Pod podcast – where the forecast is always cloudy! This week your hosts Justin, Matthew, and Jonathan and Ryan are talking about changes in leadership over at Amazon, GPT-4.o and its image generating capabilities, and the new voice of Skynet, Amazon Polly! It’s an action packed episode – and make sure to stay tuned for this week’s after show.
Titles we almost went with this week:* Who eats pumpkin pie in May * Bytes and Goodbyes: AWS CEO Logs Off * AWS lets you know that you are burning money sooner than before * High-Ho, High-Ho, It’s GPT-4-Ohhh * The CloudPod pans for nuggets in the AI Gold rush
A big thanks to this week’s sponsor:Big thanks to Sonrai Security for sponsoring today’s podcast! Check out Sonrai Securities’ new Cloud Permission Firewall. Just for our listeners, enjoy a 14 day trial at https://sonrai.co/cloudpod General News 00:40 Terraform Enterprise adds Podman support and workflow enhancements
01:18 Ryan – “This is for the small amount of customers running the enterprise either on -prem or in their cloud environment. It’s a pretty good option. Makes sense.”
01:42 Justin – “You know, the thing I was most interested in at this actually is that Red Hat Linux 7 is now end of life, which this is my first time in my entire 20 some odd career that I’ve never had to support Red Hat Linux in production because we use Ubuntu for some weird reason, which I actually appreciate because I always like Ubuntu best for my home projects, but I didn’t actually know Red Hat 7 was going away.”
AI Is Going Great (Or, How ML Makes All It’s Money) 03:58 Hello GPT-4o
08:20 Justin – “there’s so many opportunities for it to be abused. And then also with voicing, if you can start sending the voice to other people, then next thing you know, your mother is calling you desperately in need of money and asking you to wire her money because she ended up in Tahiti. And you’re like, how did you end up there? Don’t answer. I came here with your father and I need money. Weird stories are going to come out of this technology for sure.”
AWS – AWS CEO signs Off09:30 AWS CEO logs off after three years at the helm
10:44 Ryan – “I wish executive letters were truthful and honest in some way. Like, on one hand I hope it is just a matter of, of Adam saying, you know, this job’s hard and I only want to do it for a few years and move on. But I doubt it, just because it seems that it’s all performance based and, you know, probably not getting along or not making enough meaningful movements in the right areas.”
16:28 A new generative engine and three voices are now generally available on Amazon Polly
19:46 Jonathan – “Yeah… all I’m thinking is if Kindle doesn’t have this as an option to read any book as an audiobook within six months, I will eat my hat.”
20:55 Build RAG and agent-based generative AI applications with new Amazon Titan Text Premier model, available in Amazon Bedrock
21:44 Jonathan – “I mean, thanks Amazon for playing. I guess I see why Adams is no longer there, because the other guys just kick the crap out of you. that poly thing was pretty good, but everything else, small text LLMs are not pretty exciting right now.”
23:36 Build generative AI applications with Amazon Bedrock Studio (preview)
24:24 Matthew – “They’ve always tried to build these like web console studios for stuff. I’ve never seen them fully take off like cloud nine and let they release another one later on like the studio, these web portals that kind of act as your editors of sorts. And they all seem good, but I feel like most people I know never actually fully get, get all the way into them.”
28:20 AWS Cost Anomaly Detection reduces anomaly detection latency by up to 30%
29:32 AWS CISO tells The Reg: In the AI gold rush, folks are forgetting application security
31:06 Ryan – “Yeah, it’s a whole new world out there. And companies are racing for adoption, right? Because if you’re behind, it feels really behind because of how fast everything’s moving. And so it’s a tricky thing because it’s short -cutting security about it. But there’s also sort of like, we’re having to figure out what the right way to secure development processes for AI are, right? Like, how do you train against, you know, exploiting at the prompt level. How do you segregate data access that’s within the model training? And these are all new questions that we’re sort of in the early days of figuring out. And we’re having to do that while trying to reach into the market at record pace. And something bad is going to happen and reset this.”
33:53 Amazon S3 will no longer charge for several HTTP error codes
35:21 New compute-optimized (C7i-flex) Amazon EC2 Flex instances
36:47 Justin – “Yeah, so that’s the T, they don’t have it on the C7s, but they do on the Ts still. But you know, on the T side, even they got rid of the guaranteed CPU time, but you could basically click a box and you wouldn’t get burst credits anymore. Yeah, on the T3s. So this is kind of like a next evolution of it where, you know, it’s a workload that is more sporadic and you don’t need guaranteed throughput or capacity, but you do want it when you need it for short bursts.”
GCP39:31 What’s new with Active Assist: New Hub UI and four new recommendations
41:06 Ryan – “I like that one because I like this optimization overall. I laugh at anything that’s optimization because it’s a great way to build a report that no one’s going to read or act on. But you still have to do it because otherwise you’ll get no traction. But some of the other optimizations and insights that they’re building into this experience, I think, will be really powerful for cloud providers and practitioners.”
42:36 Kubernetes 1.30 is now available in GKE in record time
44:29 Announcing Trillium, the sixth generation of Google Cloud TPU
45:17 Justin – “I mean, I’m sure someone cares who’s building really large models like Coheer or OpenAI or, you know, people who build models probably care about these because like every second, you know, you save, the scale they’re trying to build these models in, you know, can result in days of savings and building a new model.”
47:01 Vertex AI at I/O: Bringing new Gemini and Gemma models to Google Cloud customers
50:01 Justin – “Imagen 3 reminded me of something about ChatGPT 4 .0. So one of the things that annoys me the most about taking text and generating images, is that if you give it text, it never produces the text correctly. So you’d be like, yeah, like it’ll, you’re like, Hey, I want you to draw me a Sherpa climbing Mount Everest and below it, I want you to write the word cloud sherpa, right? Cause you’re trying to make a sticker or something. And it will be like, ‘clud serpa’ Even though you spelled it exactly right, what you wanted, it is never correct. So in the new chat tpt 4 .0, one of the demos they showed you is actually where you gave it text input to have it generate into the image and it actually uses the proper text. It doesn’t modify it or change anything.”
Azure52:23 Bringing generative AI to Azure network security with new Microsoft Copilot integrations
55:38 Matthew – “That’s one of the big things they’re pushing is copilot helps all your tier one and tier two people really get, you know, solve all the problems that your tier three and four, you know, and that’s one of the things that they’re pushing is, Hey, this is something that will actually like help your tier ones get done more of the work. And that’s where they’re stating that copilot will actually help everything. Also, have you ever met a junior developer or really a senior developer that actually looks at logs? So like, yeah, sometimes you just have to tell people to look at logs.”
58:00 Announcing the General Availability of GPT-4 Turbo with Vision on Azure OpenAI Service
58:44 Introducing GPT-4o: OpenAI’s new flagship multimodal model now in preview on Azure
58:59 Matthew – “Well, it was in preview for a while. And then if you really look at this, turbo is really available, I think in like Sweden and East two and like maybe one other region with very limited quantities.”
59:43 Microsoft and LinkedIn release the 2024 Work Trend Index on the state of AI at work
1:01:11 Ryan- “No, I mean, there’s no doubt that it’s useful and there’s a whole bunch of really mundane things that this is going to get rid of. And I’m pretty stoked about that, right? Like I’m not too jazzed about, you know, everyone who’s an entry level position being sort of wiped out and, you know, they still don’t know what to do about like, you know, if you don’t have any entry level positions, how do you get to the next level? But, you know, at a certain point, like these things are, you know, like every automation enhancement.they replace a very fundamental part that’s easy to recreate and saves a lot of time. And I think it’s great. But yeah, shadow AI is going to be a big problem for a long time to come just because there’s a whole lot of legal ground that has to be developed to even know how to handle this.”
1:02:06 Public preview: Azure Application Gateway v2 Basic SKU
Oracle1:06:50 It’s here—Red Hat OpenShift on OCI!
1:07:31 Ryan – “What a strange announcement. Because it’s not quite a managed OpenShift service. It’s just we’ve proven we can run it on there. So it’s like, cool.”
1:08:40 Elon Musk’s xAI nears $10 bln deal to rent Oracle’s AI servers, The Information reports
1:09:17 Matthew – “Wasn’t there a news article where Elon like picked up a bunch of servers from AWS and like, just like V to C P to V them all back to on -prem and then like drove them from one data center to the other or something like that. Yeah. So it feels like why would he want to run it on the cloud if he thinks data centers make sense for everything.”
Aftershow 1:11:07 Bringing Project Starline out of the lab
ClosingAnd that is the week in the cloud! Go check out our sponsor, Sonrai and get your 14 day free trial. Also visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 259 of the Cloud Pod podcast – where the forecast is always cloudy! This week your hosts Justin, Matthew, and Jonathan and Ryan (yes, all 4!) are covering A LOT of information – you’re going to want to sit down for this one. This week’s agenda includes unnecessary Magic Quadrants, SecOps, Dataflux updates, CNAME chain struggles, and an intro into Phi-3 – plus so much more!
Titles we almost went with this week:* GKE Config Sync or the Auto Outage for K8 Feature * If only all my disasters could be managed * The Cloud Pod builds a Rag Doll * Understanding Dataflux has given me reflux * Oracle continuing the trend of adding AI to everything even databases * A new way to burn your money on the cloud which isn’t even your fault * Google Gets a Magic Quadrant Participation Trophy * We’re All Winners to Magic Quadrant * Don’t be a giant DNAME
A big thanks to this week’s sponsor:Big thanks to Sonrai Security for sponsoring today’s podcastCheck out Sonrai Securities’ new Cloud Permission Firewall. Just for our listeners, enjoy a 14 day trial at https://sonrai.co/cloudpod General News 00:33 Dropbox dropped the ball on security, hemorrhaging customer and third-party info
03:06 Jonathan- “It’s unfortunate that it was compromised. It was their acquisition, wasn’t it – ‘HelloSign’ that actually had the defect, not their main product at least.”
05:44 VMware Cloud on AWS – here today, here tomorrow
07:38 Justin – “So basically what was happening on Friday was that people were getting wind that Amazon was going to be able to resell VMware. And people were panicking about that. And yeah, right. So if you didn’t get that deal done before this happened, sorry, you’re now negotiating with Broadcom directly.”
AI Is Going Great (Or, How ML Makes All It’s Money) 08:14 Better See and Control Your Snowflake Spend with the Cost Management Interface, Now Generally Available
10:59 Jonathan – “Yeah, at least they have budgets though. They can enforce spending limits per account or group of people. So you can stop a row gap from going off and spending millions of dollars over a weekend doing things you shouldn’t be doing.”
AWS11:40 Stop the CNAME chain struggle: Simplified management with Route 53 Resolver DNS Firewall
14:15 Ryan – “I can’t imagine this not coming up during a beta test or early adopter test. Like this is a very common, you know, Amazon workload is, is going to see, you’d think they’d hit this day one with that testing. It’s crazy.”
15:55 Jonathan – “DNAMES, it’s a way of mapping subdomains into parts of other domains. So you could map…let me think of an example. You can map multiple subdomains into a different namespace, effectively.”
17:36 Amazon EC2 simplifies visibility into your active AMIs
17:49 Amazon EC2 now protects your AMIs from accidental deregistration
19:07 Build RAG applications with MongoDB Atlas, now available in Knowledge Bases for Amazon Bedrock
19:46 Jonathan – “I had a chat with the Mongo sales guy not that long ago about this actually. It’s pretty cool. I don’t, yeah, it’s definitely an OS2 feature. I don’t think, you know, it’s, it’s if you want a vectored engine, I don’t think MongoDB will be your first choice if you weren’t already using it, but it’s a great, it’s a great additional feature if you’ve already got it in the stack.”
20:12 Introducing file commit history in Amazon CodeCatalyst
21:11 AWS CodePipeline supports stage level manual and automated rollback
21:29 Justin – “Now, if only it was really that easy of just rolling back a stage like no big deal, like, oh yeah, I rolled back. That assumes, of course, a lot of assumptions about your application… If it’s a static web application, yes, 100 % accurate. If this is a DB deployment, 100 % inaccurate and do not do this without understanding the risks to your business.”
22:52 How an empty S3 bucket can make your AWS bill explode
JeffBarr Twitter
JeffBarr Twitter update #2
25:55 Ryan – “I was more impressed with Amazon’s reaction to this in terms of like, you know, like they haven’t fixed it. Apparently this is not a new issue. It’s been reported before, but just the amount of attention that’s got and how quickly there was a response. And then now, you know, a follow -up with, with an, you know, next coming week, sort of ETA, which is, I thought, was pretty impressive given the timescale that we’re talking about.”
GCP28:26 Auto-upgrades for Config Sync in GKE Enterprise now in preview
29:12 Ryan – “I wish, I mean, I still go back to like, I wish Kubernetes was simple enough where this wasn’t as big of a deal. Like it should be able to auto upgrade between versions and, and that shouldn’t break everything, but it does. It breaks everything. I’ve seen it. I don’t understand why it breaks everything when you update Kubernetes. It’s frustrating.”
29:49 Justin – “I mean, the problem is there’s so much complexity in Kubernetes and so much deprecation of old legacy APIs right now that I just don’t feel like the API is that stable. So breaking changes is just the nature of the beast.”
30:26 Google is a Leader in the 2024 Gartner® Magic Quadrant for Cloud AI Developer Services
32:28 Jonathan – “I wonder why Amazon lacked complete vision, honestly. I guess it depends, I mean, from what perspective are they reporting on this? Because, you know, in my mind, I think what Amazon has done is very smart. They have all the tools to use any model you want, and they didn’t pay a cent in building their own models. You know, Mesa paid for Llama, Anthropic paid for Claude. There’s a whole bunch of models you can use on Amazon. Plus, they do have the vision services to do with the natural language services, things like that. But they didn’t pay any money.”
37:13 Introducing Dataflux Dataset for Cloud Storage to accelerate PyTorch AI training
37:38 Maintain business continuity across regions with BigQuery managed disaster recovery
38:53 Matthew – “I like the ability to give Google more money with capacity reservations in your DR region so that when the first region fails and everyone goes and launches in the DR region, you still have your reservation capacity.”
39:29 Justin – “What I want is the cloud providers to provide transparency of like, what’s the spot market percentage in a given data center? Because if the spot market is, you know, equivalent of like 30 or 40% of the workload in that region, those people are all dead in DR. So we’re taking their capacity and I don’t think I’m too worried about it, but, you know, there’s some transparency that the cloud providers could provide, but then they’ll just sell you this guaranteed capacity at an upcharge.”
41:33 Introducing Google Threat Intelligence: Actionable threat intelligence at Google scale
42:29 Introducing Google Security Operations: Intel-driven, AI-powered SecOps
43:33 Justin – “I think anything we can help security people with is a win. So I don’t know all the threat intelligence, it sounds like threat noise in a lot of ways, because when you win with too many signals, it’s just all noise at some point, and yes, it could be valid, like your dark web monitoring, Ryan. But it also could just be noise, because I’m like, I don’t know who’s data got hacked to get my email address this time. It’s only the 15th this week, so who knows?”
Azure44:59 Azure Governance Update – Management Groups
45:37 Matthew – “Essentially in the past, when you have your organization structure, there was no top level. So if you wanted to apply a policy to everything, you had to apply to all the subfolders. This was one of those things that over time was just, Hey, best practices, you just set this up. And now this is just Microsoft saying, here you go. We’re setting it up for you.”
47:30 Azure Virtual Network Manager user-defined route (UDR) management now in public preview
48:50 Introducing Phi-3: Redefining what’s possible with SLMs
50:23 Jonathan – “As soon as you start training models to beat the benchmarks, they cheat, you know, and it doesn’t become meaningful anymore. I think asking a, you know, you see questions, plenty of questions online, like, you know, apart from Europe, which are the concerns that begin with an A? Like obviously Europe doesn’t begin with an A, but many models just gloss over that, ignore the error in the question and answer the questions the best they can. And so… I think things like that are the real tests to catch these models out. Also some funny stuff.”
51:36 Prioritizing security above all else
56:23 Matthew – “The product teams don’t always consider that. Product managers don’t always consider a feature. They need the next shiny thing out there. So where do they end up sitting and does the product team and does then Microsoft get dinged on their next quarterly earning of, hey, last time you released 50 features and this time you released 40 features. What happened? Oh, well, we were fixing all of our security holes. Well, it’s not really a good story either.”
General Availability: Microsoft Azure now available from new cloud region in Mexico
Oracle57:12 Announcing Oracle Database 23ai : General Availability
58:05 Jonathan – “AI for data, AI for developers and AI for more money.”
ClosingAnd that is the week in the cloud! Go check out our sponsor, Sonrai and get your 14 day free trial. Also visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 258 of the Cloud Pod podcast – where the forecast is always cloudy! This week your hosts Justin, Matthew, and Jonathan dig into all the latest earnings reports, talk about the 57 announcements made by AWS about Q, and discuss the IBM purchase of HashiCorp – plus even more news.
Make sure to stay for the aftershow, where the guys break down an article warning about the loss of training data for LLM’s.
Titles we almost went with this week:* Terraform hugs to Big Blue (Bear) * The CloudPod hosts again forgets to lower their headphone volume * AWS fixes an issue that has made Matt swear many times * Google gets mad at open-source * Azure has crickets * HashiCorp’s Nomadic Journey to the IBM Oasis * It’s Gonna be Maaay!
A big thanks to this week’s sponsor: Check out Sonrai Securities’ new Cloud Permission Firewall. Just for our listeners, enjoy a 14 day trial at https://sonrai.co/cloudpod General News 01:48 It’s Earnings TIme!
Alphabet (Google)
03:54 Justin – “Yeah, I mean, they’re doing pretty well… I think AI is helping them out tremendously in this regard. I believe it includes G Suite as well. But I mean, like I don’t know how much revenue that is comparatively, but your Google cloud is definitely the majority of it, I think at this point..”
04:20 Microsoft
05:37 Jonathan – “I wonder how many of those (Copilot subscribers) will go away though. I think a lot of people sign up for things just to check them out and maybe won’t renew them in the long term. I’d be curious.”
06:25 Amazon
07:43 Justin – “I mean, you’re basically paying for search placement. So when you search for, you know, binkies for your baby, you know, someone paid for an ad on that for their more expensive item. And then, you know, basically they’re giving you a bunch of listings that are more expensive than what Amazon would have sold to you directly. And you pay more and get a lesser quality product than you would have maybe gotten if you bought directly from Amazon. So I’m not, I’m not a huge fan of that model, but it’s making them a lot of money.”
09:38 HashiCorp joins IBM to accelerate multi-cloud automation
10:33 Jonathan – “So I have a take on it, which I haven’t seen anybody else mention yet. And given that IBM already bought Red Hat five years ago or something, and they have the OpenShift and OpenStack ecosystems, I actually think that Nomad, the least understood product in the suite probably, may be kind of a motivator for IBM to buy this. Because I think Nomad addresses some gaps in the container ecosystem of OpenShift, especially when you start to think about IBM’s sort of focus on hybrid cloud.”
17:22 On IBM acquiring HashiCorp
19:41 Good Tech Things: Why didn’t one of the big clouds buy Hashicorp?
21:54 Matthew – “I mean, the problem is since the tool is designed to support all the different vendors, it’s hard to have any one vendor buy them. And that’s kind of the problem is they were in this ground of they were trying to help everyone and therefore it’s hard for all of them to get help from all the cloud vendors.”
AWS 27:31 AWS supports dynamically removing and adding auto assigned public IPv4 address
31:16 Amazon Q Business, now generally available, helps boost workforce productivity with generative AI
Amazon Q Developer, now generally available, includes new capabilities to reimagine developer experience
AWS Announces General Availability of Amazon Q, the Most Capable Generative AI-Powered Assistant for Accelerating Software Development and Leveraging Companies’ Internal Data
32:55 Justin – “So that’s scary sounding to me, that employees are just creating apps with our data, and you’re just hoping it’s not gonna lie or do things… So it’s doing great, doing really good, super happy about Q. And I definitely would not trust it with my employee, my internal company data, I don’t think at this point.”
33:34 Matthew – “I was just gonna say, I feel like that’s the issue with all of them. It’s like, how much do you trust any of these providers with all your data and making sure that only the right people get access to the right subset of that data? So your finance guy doesn’t accidentally gain access to all of HR by asking the right questions. That’s kind of always meant to worry with a lot of these things – or just start making stuff up.”
Listener Note: Anyone out there have any real-world experience with Q? We’d love to hear it. Hit us up on our Slack channel, or send Justin an email. Justin@thecloudpod.net
GCP41:05 Introducing new ML model monitoring capabilities in BigQuery
41:40 Jonathan- “Those are some really useful features. And I think it’s going to just go over most people’s heads because they have no concept of what the benefits of these things actually are. So that really the whole point of monitoring the skew between training and the sort of production data sets is that as your customers start to do different things with your models, if the things they’re doing are no longer represented accurately by the training set, then you need to retrain.”
44:52 2024 DORA survey now live: share your thoughts on AI, DevEx, and platform engineering
47:02 Python, Flutter teams latest on the Google chopping block
47:49 Justin – “Google and many other companies are rapidly reassessing where their talent is, how much their talent costs, and where in the globe that talent is located. And so why sad? I don’t think it’s the end of the world, but definitely Google is not the same company it was five years ago.”
48:36 In-context observability with customizable dashboards everywhere on Google Cloud
21:25 Justin – “I’m super glad about this. Um, you know, cause this is my frustration with CloudWatch. You know, you go into RDS and you are looking at a database. You’re like, Oh, I want to see that chart differently. And you can’t really customize it inside of RDS. You have to go into cloud watch and then you make all your modifications and cloud watch. Um, but they’re not linked together. And so I liked it, this is a nice enhancement to be able to do that customization, right. And the service you need is tied to your user. And I think you also can publish these dashboards to others as well. So, you get kind of the best of both worlds.”
Aftershow50:41 Are We Running Out of Training Data?
54:08 Jonathan – “I think the prevalence of English content over content in other languages will definitely put the speakers of those languages at a disadvantage. I know that the quality of the model is very dependent on the amount of data it’s trained on.”
ClosingAnd that is the week in the cloud! Go check out our sponsor, Sonrai and get your 14 day free trial. Also visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 257 of the Cloud Pod podcast – where the forecast is always cloudy! This week your hosts Justin, Matthew, Ryan, and Jonathan are in the barnyard bringing you the latest news, which this week is really just Meta’s release of Llama 3. Seriously. That’s every announcement this week. Don’t say we didn’t warn you.
Titles we almost went with this week:* Meta Llama says no Drama * No Meta Prob-llama * Keep Calm and Llama on * Redis did not embrace the Llama MK * The bedrock of good AI is built on Llamas * The CloudPod announces support for Llama3 since everyone else was doing it * Llama3, better know as Llama Llama Llama * The Cloud Pod now known as the LLMPod * Cloud Pod is considering changing its name to LlamaPod * Unlike WinAMP nothing whips the llamas ass
A big thanks to this week’s sponsor:Check out Sonrai Securities‘ new Cloud Permission Firewall. Just for our listeners, enjoy a 14 day trial at www.sonrai.co/cloudpodFollow Up 01:27 Valkey is Rapidly Overtaking Redis
AI Is Going Great – Or How AI Makes All It’s Money 03:26 Introducing Meta Llama 3: The most capable openly available LLM to date
04:42 Jonathan – “Isn’t it funny how you go from an 8 billion parameter model to a 70 billion parameter model but nothing in between? Like you would have thought there would be some kind of like, some middle ground maybe? But, uh, but… No. But, um, I’ve been playing with the, um, 8 billion parameter model at home and it’s absolutely amazing. It blows everything else out of the water that I’ve tried. And it’s fast and it’s incredibly good.”
07:08 Building Enterprise GenAI Apps with Meta Llama 3 on Databricks
07:37 OpenAI’s commitment to child safety: adopting safety by design principles
An update on our child safety efforts and commitments
10:45 Introducing more enterprise-grade features for API customers
11:45 Matthew – “There have been some organizations I worked with in the past that literally just, you don’t have an internet route. You don’t have a zero zero zero out in your V net VPC, wherever it is. You know, you have to use private links for every single thing for every single service. And that’s the only way out to the internet. So it’s probably trying to target those large enterprises that are like it’s ok to spend a third of your bill on private links.”
12:24 Ryan – “I was sort of conflicted about the feature to allow an organization to have granular control and oversight of projects. And like on one hand as a platform provider by day, I’m like, that’s great. There’s teams that’ll use that. And on the other hand, as a user, I’m like, oh, that’s terrible.”
AWS13:44 Meta Llama 3 foundation models now available on AWS
14:22 Amazon Inspector agentless vulnerability assessments for Amazon EC2 are now Generally Available (GA)
15:35 Ryan – “…managing third party vulnerabilities as agents is nightmarish, right? With the license management and the registration and the deregistration as you’re auto scaling and having services like that, like this one where it’s built in, you’re likely already running the agent. If you’re in the Amazon ecosystem, then how nice would it be to just not have to do one other thing. It’s something that you don’t have to pay attention to. It’s the benefit of a managed service.”
17:24 Unify DNS management using Amazon Route 53 Profiles with multiple VPCs and AWS accounts
20:09 Jonathan – “It’s kind of weird. It’s this static configuration where once it’s in place, it’s in place. And so, I mean, I guess you’re monitoring it to make sure it doesn’t drift, but an hourly charge for that? Yeah, no, I’m not jazzed by the price model.”
21:25 Justin- “I do hope this one comes down in price. Yeah, the other way that we did this in a prior life was we just created subdomains. And then we delegated subdomains to each team’s route 53. Now we paid a lot of money, probably an extra hosted zones that we had to support. But again, I think a hosted zone’s only like 10 or 15 cents, 50 cents, yeah. So it’s not a month, yeah, not per hour.”
22:19 Lots of Bedrock News, Including – you guessed it – Llama 3
Amazon Bedrock Launches New Capabilities as Tens of Thousands of Customers Choose It as the Foundation to Build and Scale Secure Generative AI Applications
Meta’s Llama 3 models are now available in Amazon Bedrock
Guardrails for Amazon Bedrock now available with new safety filters and privacy controls
Agents for Amazon Bedrock: Introducing a simplified creation and configuration experience
Amazon Bedrock model evaluation is now generally available
Import custom models in Amazon Bedrock (preview)
Amazon Titan Image Generator and watermark detection API are now available in Amazon Bedrock
24:53 Amazon RDS Performance Insights provides execution plan for RDS SQL Server
21:25 Justin – “It’s also annoying that this isn’t just built into SQL Server, that it would keep history of stored SQL plans forever. So I do appreciate that Amazon has built this, but come on Microsoft, you can do better.
GCP26:18 Meta Llama 3 Available Today on Google Cloud Vertex AI
26:56 Direct VPC egress on Cloud Run is now generally available
27:31 Ryan – “Yeah, this is just one of those usability things when you get all excited to use Cloud Run and then you realize you can’t do anything with it because you have all this other configuration that you have to do. And that’s just to get to the internet. And then trying to get it into your other environment is this whole other peering nonsense, you know, like just awful. It just makes it difficult to adopt and, you know, like it, you didn’t get my attention in the first five minutes. I’m probably not going to use that solution.”
34:36 Introducing the Verified Peering Provider program, a simple alternative to Direct Peering
35:38 Ryan – “I want to love this, but then when you read deep into this, you realize that it’s just a site that lists all their existing providers, their locations, and their resiliency offerings. And then you still have to go through all the setup of creating Direct Connect and working with your providers.”
37:04 Jonathan – “So it’s the Angie’s List of Peering Providers.”
Azure37:28 CISA Review of the Summer 2023 Microsoft Exchange Online Intrusion
40:45 Jonathan – “I think it really emphasizes the need to separate production implementations of software and the development of the software. Having access to source code, it shouldn’t be the end of the world. But yeah, getting the access they did to the date they did is completely unacceptable.”
41:49 Justin – “Now in, in punching down on your competitor, Amazon decided to respond to this. And they posted a, you know, one of their quick little blog posts, basically saying, Amazon is aware of the recent cyber safety review board report regarding the 2023 Microsoft online exchange issue. We are not affected by the issue described in the report and no customer action is required…To learn more, please refer to our blog post…security is everyone’s job and distributing security expertise and ownership across AWS as a thing and scaling security through innovation. And it just feels dirty.”
44:12 Manufacturing for tomorrow: Microsoft announces new industrial AI innovations from the cloud to the factory floor
Small Cloud Providers45:38 Meta Llama 3 available on Cloudflare Workers AI
Aftershow46:31 Amazon Fresh kills “Just Walk Out” shopping tech—it never really worked
51:14 Justin- “Well, maybe it’ll come back someday in the future when people figure out technology. But yeah, I sort of this, you know, I still feel like we’re dangerously close to like a lot of FUD around gen AI happening and the trough of disillusionment happening very quickly and stories like this don’t help. And so, you know, it’s going to be interesting reckoning in the economy as all these companies have laid people off with saying AI is making them more efficient. And I’m like, is it? Or are you just hoping it’s going to be? And then are you going to be suffering in another year from now when things aren’t working in your organization?”
ClosingAnd that is the week in the cloud! Go check out our sponsor, Sonrai and get your 14 day free trial. Also visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 256 of the Cloud Pod podcast – where the forecast is always cloudy! This week your hosts, Justin and Matthew are here this week to catch you up on all the news you may have missed while Google Next was going on. We’ve got all the latest news on the custom silicon hot war that’s developing, some secret sync, drama between HashiCorp and OpenTofu, and one more Google Next recap – plus much more in today’s episode. Welcome to the Cloud!
Titles we almost went with this week:* I have a Google Next sized hangover * Claude’s Magnificent Opus now on AWS * US-EAST-1 Gets called Reliable; how insulting * The cloud pod flies on a g6
A big thanks to this week’s sponsor: Check out Sonrai Securities’ new Cloud Permission Firewall. Just for our listeners, enjoy a 14 day trial at www.sonrai.co/cloudpodGeneral News Today, we get caught up on the other Clouds from last week, and other news (besides Google, that is.) Buckle up.
04:11 OpenTofu Project Denies HashiCorp’s Allegations of Code Theft
06:32 Matthew – “It’s gonna be interesting to see, you know, general common ideas of where Terraform should go – are going to be coming on both of these platforms, and when you copy or if this is a good feature that Hashi Corp released and Open Tofu wants that feature – like you can’t just pull the codes. Do you rewrite it from scratch? Right, so then you rewrite it from scratch, but it does the same thing. So you’re kind of in that gray area where they’re going to look the same.”
8:50 Secrets sync now available on Vault Enterprise to manage secrets sprawl
10:28 Justin – “It also basically solves one of the big challenges for your multi-cloud, because you’d have to set a vault and replicate your vaults between all these different cloud providers. So you’d have them local and high late, you know, low latency to your app. Now by just leveraging the, you’re basically leveraging the cloud provider as a caching layer for your vault. And that can be, you can choose whatever cloud you want to put it into. And that can be your primary location for it, which is really handy.”
13:41 Intel details Gaudi 3 at Vision 2024 — new AI accelerator sampling to partners now, volume production in Q3
16:10 Matthew – “If we’re going to keep improving a lot of these LLMs and make them have more data that we’re building in on and not just, you know, and optimize in other ways, we got to start to make these things be more efficient.”
AWS16:39 CEO Andy Jassy’s 2023 Letter to Shareholders
17:54 What Amazon’s Shareholder Letter Didn’t Say
18:30 Matthew – “It doesn’t surprise me that, you know, the cloud providers… want you to make money and… they really do want you to leverage it in an effective way. Because otherwise you’re just going to leave. So I think that with the uncertain economy, this was more and more on people’s minds about cost savings and optimizations and everything.”
20:31 Announcing general availability of Amazon EC2 G6 instances
22:10 AWS KMS announces more flexible automatic key rotation
23:50 Tackle complex reasoning tasks with Mistral Large, now available on Amazon Bedrock
24:40 Irish power crunch could be prompting AWS to ration compute resources
25:40 Matthew – “25% of a whole country’s power is a lot. And this is one of their oldest regions. So I feel like we looked this up at one time on the show in real time; and this was one of the first European regions. So it doesn’t surprise me that it’s a little bit more resource constrained and whatnot, where some of the other ones that were probably built with higher specifications 10 years later, had a better idea what the clouds were doing than when they built it out for the first time.”
27:13 Anthropic’s Claude 3 Opus model is now available on Amazon Bedrock
28:29 Justin – “I do look forward to tooling coming out to help you figure out which model is the best for your workload, and help you kind of figure that out because otherwise it’s, you know, a lot of costs, a lot of expense trying to work out which models are the best ones for you and lots of test runs.”
28:46 Amazon CloudWatch Internet Weather Map – View and analyze internet health
31:47 US-EAST-1 region is not the cloudy crock it’s made out to be, claims AWS EC2 boss
GCP33:58 All 218 things we announced at Google Cloud Next ‘24 – a recap
37:35 Google Cloud offers new AI, cybersecurity, and data analytics training to unlock job opportunities
Azure38:36 Advancing science: Microsoft and Quantinuum demonstrate the most reliable logical qubits on record with an error rate 800x better than physical qubits
Small Cloud Providers40:22 Major data center power failure (again): Cloudflare Code Orange tested
28:29 Matthew- “Six months ago from being down for many hours and… having six minutes of automated downtime, you know, an automatic rollover six minutes. I probably clicked the button, got distracted by a shiny object and came back to it six minutes later and didn’t even think about that. So it’s amazing what they were able to get through in six months, you know, and I’m sure Bravo to every engineer, software dev dev ops, whoever was involved with doing all that. Cause that’s an impressive feat.”
ClosingAnd that is the week in the cloud! Go check out our sponsor, Sonrai and get your 14 day free trial. Also visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 255 of the Cloud Pod podcast – where the forecast is always cloudy! This week your hosts, Justin, Jonathan, Matthew and Ryan are here to tackle the aftermath of Google Next. Whether you were there or not, sit back, relax, and let the guys dissect each day’s keynote and the major announcements.
Titles we almost went with this week:* How About Some AI? * “The New Way to Cloud” is a Terrible TagLine (and is what happens when you let AI do your copy) * Welcome Google Cloud Next Where There is No Cloud, Just AI * Ok Google, did your phone go off? * For 100 dollars, guess how many AI stories Google Has This Week * From Search to Skynet: Google Cloud Next’s Descent into AI Madness * ‘Next’ Up from Google – AI! * Have Some Conference with Your AI
A big thanks to this week’s sponsor:We’ve got a new sponsor! Sonrai Security Check out Sonrai Securities’ new Cloud Permission Firewall. Just for our listeners, enjoy a 14 day trial at sonrai.co/cloudpodGCP – Google Next 2024We’re jumping right into GCP this week, so we can talk about all things Google Next.
01:44 FIrst impressions: Vegas > Moscone, so take that Vegas.
08:22 Thoughts on the Keynote Address
Note: Not enough space in the arena for keynotes; the arena holds approx. 12k; numbers released by Google say there were 30k in attendance.
19:45 Ryan – “I got access to an early sort of hands – on lab and it was a really powerful way to look at your data, because you can pipe so much data into the security tools, and it becomes a little bit daunting to go and figure out what’s going on and to proactively monitor and feel like you’re actually catching things, to make certain patterns. And so the ability to sort of use prompt to query data, and have it generate certain query codes within to generate reports or building lists was very powerful, very cool. And it made it a lot of fun. It was probably the most fun hands – on lab I’ve ever done; just by seeing, you know, it’s all dummy data, but it was a fun way to track things through for forensic analysis and to understand patterns and life cycle. Super impressed.”
If you’re not keeping track – that was 41 items announced in a 90 minute keynote. And even with all that – Justin and Ryan struck out on their predictions. Jonathan and Matthew are tied at 1 correct prediction each.
Justin
Jonathan
Matt
Ryan
Google Next Tie Breaker:
How many times will they say AI/LLM on stage? 111
Number of main stage announcements? 41
Congratulations to Matthew, who wins Google Next ‘24 Predictions.
24:32 Ryan – “So the one thing I will say is they pushed a lot of things that weren’t AI product related into the sessions themselves.S o one thing I learned this year that I’ll take forward to other conferences is the what’s new in blah sessions. So, you know, I wanted to go, I tried to get in the one for VPC networking and I wasn’t able to get in, but I did manage to get into like IAM and a couple others. So there were a lot of announcements for enhancements done directly in those.”
25:20 Justin – “So other day one announcements that did not make main stage are still also pretty nice. They have new computing and networking capabilities, including a new C4 and N4 general purpose VMs powered by the fifth generation Intel Xeon processor, as well as those enhancements to Google Cloud we talked about earlier. There were a bunch of database enhancements that didn’t get to the main stage, including AlloyDB AI, Firestore enhancements for flexible natural language support, as well as vector capabilities for Firestore as well.”
25:20 Jonathan – “Yeah, I hope AI just becomes one of those features that everything has and they don’t devote a whole keynote to it again because I think it was a little much. It was really hard, you know, sitting listening at home. It was honestly too fast paced, too many announcements for keynote in, you know, in 90 minutes and everything was just AI, AI, AI the whole time. And I kind of tuned out honestly, because yes, I mean, once you’ve seen one AI integration with a tool, you can kind of guess what all the others are going to look like. So, you know, either have a separate AI conference to focus on the tech, but perhaps not the use cases for it all the time. But I’m kind of hoping they’ll go back to actually talking about the rest of the ecosystem and the work they’re doing there as well.”
30:38 Day 2 – Developer Keynote
32:44 Jonathan – “ the TPU support for GKE should have been a bit more… I mean, I think they mentioned it in the keynote, didn’t they? But it didn’t seem to get much attention, but that’s really useful. I mean, that’s sort of commoditizing training, which it hasn’t been before.”
34:25 Finops Announcements
Need some links? We have some for ‘ya!
Welcome to Google Cloud Next ‘24
Day 1 at Next ’24 recap: AI agents for everyone
Day 2 at Next ’24 recap: building AI agents
Cloud FinOps news from Next ‘24 April 11, 2024
Run AI anywhere with Google Distributed Cloud innovations
Introducing Google Axion Processors, our new Arm-based CPUs
Make Google part of your security team anywhere you operate, with defenses supercharged by AI
What’s next for data analytics at Google Cloud Next ’24
What’s new and what’s next for Google Cloud databases
What’s new with Google Cloud Networking at Next ’24
What’s new in Google Cloud’s workload-optimized infrastructure
Powering Google Cloud with Gemini
What’s new with Google Cloud’s AI Hypercomputer architecture
Privacy-preserving data sharing now generally available with BigQuery data clean rooms
Ushering in a new era for app developers
Google Public Sector achieves Top Secret and Secret cloud authorization
Announcing Vertex AI Agent Builder: Helping developers easily build and deploy gen AI experiences
Introducing Chrome Enterprise Premium: The future of endpoint security
Google Cloud announces updates to Gemini, Imagen, Gemma and MLOps on Vertex AI
The container platform for the next decade of AI and beyond
Grounding generative AI in enterprise truth
Analyze images and videos in BigQuery using Gemini 1.0 Pro Vision
How Gemini in BigQuery accelerates data and analytics workflows with AI
Accelerate AI Inference with Google Cloud TPUs and GPUs
Gemini in Databases — supercharge database development and management
BigQuery is now your single, unified AI-ready data platform
Introducing Gemini in Looker to bring intelligent AI-powered BI to everyone
Get to know BigQuery data canvas: an AI-centric experience to reimagine data analytics
Celebrating 20 years of Bigtable with exciting announcements at Next
New Google Cloud Consulting programs designed to accelerate your cloud journey
Announcing Cloud Service Mesh – the evolution of service mesh for Google Cloud
Using Gemini Code Assist to build APIs, integrations, and automation flows
Introducing Shadow API detection for your Google Cloud environments
Natural language support in AlloyDB for building gen AI apps with real-time data
Introducing ScaNN vector indexing in AlloyDB, bringing 12 years of Google research to speed up vector search
Expanded Confidential Computing portfolio and introducing Confidential Accelerators for AI workloads
Gemma on Google Kubernetes Engine deep dive: New innovations to serve open generative AI models
Powering generative AI with cloud storage innovations at Next ’24
App Hub – Manage your application, forget the toil
Performance deep dive of Gemma on Google Cloud
Introducing ML Productivity Goodput: a metric to measure AI system efficiency Your scannable list of our top migration announcements from Next ‘24
Eating our own dogfood: Building an AI-driven business at Google Cloud Consulting
Turbocharge applications with Memorystore’s persistence and flexible node types
Private, secure, and seamless connectivity to Cloud SQL using Private Service Connect
What’s new with Firestore at Next ‘24
Announcing the general availability of Next Gen Firewall Enterprise
Migrate your SQL Server workloads to Cloud SQL with Database Migration Service, now in preview
Accelerating database modernization with Gemini in Database Migration Service
Introducing Isolator: Enabling secure multi-party collaboration with healthcare data
Announcing Delta Lake support for BigQueryBuild powerful gen AI applications with Firestore vector similarity search
ClosingAnd that is the week in the cloud! Go check out our sponsor, Sonrai and get your 14 day free trial. Also visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 254 of the Cloud Pod podcast – where the forecast is always cloudy! This week we’re talking about trust issues with some security updates over at Azure, forking drama at Redis, and making all of our probably terrible predictions for Google Next. Going to be in Vegas? Find one of us and get a sticker for your favorite cloud podcast! Follow us on Slack and Twitter to get info on finding your favorite host IRL. (Unless Jonathan is your favorite. We won’t be giving directions to his hot tub.)
Titles we almost went with this week:* The Cloud Pod Hosts Fail To Do Their Homework * The Cloud Pod Now Has a Deadline * This Is Why I Love Curl … EC2 Shop Endpoint is Awesome * AI & Elasticsearch… AI – But Not Like That * Preparing for Next Next Week
A big thanks to this week’s sponsor:We’ve got a new sponsor! Sonrai Security Check out Sonrai Securities’ new Cloud Permission Firewall. Just for our listeners, enjoy a 14 day trial at www.sonrai.co/cloudpodFollow Up02:15 AWS, Google, Oracle back Redis fork “Valkey” under the Linux Foundation
03:19 Redis vs. the trillion-dollar cabals
04:14 Ryan – “It’s funny because I always feel like the cloud contribution to these things is managed services around them, right? It’s not necessarily improvements to the core source code. It’s more management of that source code. Now there are definitely areas where they do make enhancements, but I’m not sure the vast majority makes sense to be included in an open source made for everyone product either.”
General News 07:01 What we know about the xz Utils backdoor that almost infected the world
09:54 Jonathan – Typical Microsoft engineer finding every reason but their own product to blame the latency. No, but that’s awesome though, that kind of attention to detail is amazing…This could have been disastrous. This is a huge save.”
14:49 Microsoft Unbundled Teams—Are Customers Better Off?
AI is Going Great – Or How ML Makes Money 22:59 Cohere Embeddings Now Available Through Elastic’s Inference API
23:38 Ryan – “To be honest, AI is the only way that you’re going to solve Elasticsearch ingest problem. So I’m kind of for this, because that’s what it would take if you’re trying to use Elasticsearch as, you know, and not being in complete control of the data input.”
24:50 Announcing DBRX: A new standard for efficient open source LLMs
25:37 Jonathan – “.pretty cool. I just wish I had the hardware to run it. It’s great being open source, but unless you’ve got massive GPUs or tons of RAM to do inference with a regular CPU, you’re kind of out of luck. But now I’m very keen on trying it.”
AWS26:36 Explore cloud security in the age of generative AI at AWS re:Inforce 2024
28:02 Amazon GuardDuty EC2 Runtime Monitoring is now generally available
28:36 Matthew – “It’s slowly becoming a anti-malware tool and going to replace some of these other tools that everyone has. It’s one less agent that you need on these boxes consuming more CPU, more memory, more everything. So, you know, it’s nice to see that they’re slowly expanding. But at what point does Amazon get yelled at that AWS is taking over too many markets like Microsoft and teams?”
29:37 Introducing AWS CodeConnections, formerly known as AWS CodeStar Connections
31:44 Amazon DynamoDB Import from S3 now supports up to 50,000 Amazon S3 objects in a single bulk import
28:22 Jonathan – “I honestly think it’s more about data migration between different services, data lakes, things like that.”
Do any of our listeners have any reasons you’d use this? Let us know!
33:18 AWS Cost Allocation Tags now support retroactive application
33:50 Justin – “On the surface it looks really awesome, but the devil is in the details on this one… Again, maybe this is the beginning of something more cool coming later, because there’s a lot of really great things they could be doing in cost management, but they’re just not yet.”
35:14 EC2 Shop API
36:05 Ryan – “This is fantastic. Even when you use it on the browser, it’s pretty sweet. It’s a rudimentary UI, which is fine, right? Because I really want to curl it. But the fact that you can query your search and be able to quickly get multiple different instance types and multiple regions and multiple configurations, pretty awesome.
38:46 Run Chef 11-18 recipes on Windows using AWS Systems Manager
38:27 Ryan – “I mean, Chef is probably the only Configure It management tool that I think is like actually works on Windows. So like, I’ll give them that. Like, you’re right, I made the assumption that the systems manager worked on both and I don’t have enough Windows workloads that I ever tested that theory.”
39:56 Introducing AWS Deadline Cloud: Set up a cloud-based render farm in minutes
41:05 Jonathan – “Deadline Cloud is like batch for EC2, in a way. I think it’s all about building pipelines and things and jobs. And then Deadline Cloud manages the underlying EC2 resources for you. So it’s kind of like a batch tool, I guess.”
GCP42:30 Google Cloud Backup and DR upgrade: VM protection made easier
43:43 GCP Next Predictions:
Next week is Google Next! So of course we are going to do our usual terrible job of predicting what Google may announce next week:
Google Next Guides
Google Next PredictionsJustin
Jonathan
Matt
Ryan
Google Next Tie Breaker:
How many times will they say AI/LLM on stage?
Ryan – 67
Matt – 142
Jonathan – 52
Justin – 78
Number of main stage announcements?
Matt – 25
Jonathan – 9
Justin – 1
Ryan – 2
Azure59:24 Announcing new tools in Azure AI to help you build more secure and trustworthy generative AI applications
1:00:44 Ryan – “I do think we’re going to see a lot more of these type of services or augments to the existing sort of AI studio products across the board, just because everyone’s having the same thoughts of like, oh, we haven’t put any protections or guardrails. What are we going to do? We put all of our data in this custom model. Maybe that wasn’t a good idea.”
1:02:39 Using Microsoft Azure Virtual Network Manager to enhance network security
1:04:23 Jonathan – “So this is a struggle for me on Azure, which is like, NSG’s act as like this dual layer of ACLs and security groups. And it’s always like a struggle for me because I want that more granular control that both give you, but NSG kind of fits both of them. And I haven’t fully found where I land, if I like it, if I don’t like it, kind of go down that route.”
Cloudflare1:05:13 Making state easy with D1 GA, Hyperdrive, Queues and Workers Analytics Engine updates
1:08:54 Jonathan – “I think this is what AWS could have done with the RDS proxy, actually, because they had a proxy which was designed to route to a DR region or another region in case a local region failed. They could equally have built caching for queries into something like that.”
1:09:10 Justin – “…Which I thought they were going to do. And then they never, they never really delivered on that feature beyond announcing it… there’s even less need for them to do it now. Because that’s part of the reason why you wanted that layer was to keep the Aurora serverless primed, so you weren’t getting like, oh, timeout. Oh no, hey, the proxy’s gonna hold the timeout long, and then we spin up the resource behind the time hood.”
AftershowBiggest Deepfake Fraud? Fake Zoom Meeting, CFO Cloned, $25 Million Stolen
ClosingAnd that is the week in the cloud! Go check out our sponsor, Sonrai and get your 14 day free trial. Also visit our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 253 of the Cloud Pod podcast – where the forecast is always cloudy! Justin, Ryan, and Jonathan are your hosts this week as we discuss data centers, OCI coming in hot (and potentially underwater?) in Kenya, stateful containers, and Oracle’s new globally distributed database (Oracle Autonomous Database) of many dollars. Sit back and enjoy the show!
Titles we almost went with this week:* The Cloud Pod: Transitioning to SSPL – Sharply Satirical Podcast Laughs! * The Data Centers of Loudoun County * The Forks of Redis were Speedb * AWS, I’d Like to Make a Return, Please * See…Stateful Containers Are a Thing * Azure Whispers Sweet Nothings to You * I’m a Hip OG-DAD * Legacy Vendor plus Legacy Vendor = Profit $$ * Wine Vendors >Legacy Vendors * I’m Not a Regular Dad, I’m an OG Dad
A big thanks to this week’s sponsor:We’re sponsorless this week! Interested in sponsoring us and having access to a specialized and targeted market? We’d love to talk to you. Send us an email or hit us up on our Slack Channel. Follow Up02:25 Microsoft Agreed to Pay Inflection $650 Million While Hiring Its Staff
03:22 Justin – “…that explains the mystery that we talked about last week for those who were paying attention.”
General News 05:17 Redis switches licenses, acquires Speedb to go beyond its core in-memory database
08:36 Jonathan – “I’m less bothered by Redis doing this, then I think I have been about anybody else. Maybe I’m just kind of getting numb to it now a little bit. Maybe. I’m not sure what it is. I mean, I feel like there’s a key difference between something that works at runtime in an application or something that a cloud vendor would adopt and then sell as a service and something like Terraform. I think there’s some significant differences there. So I think the types of people who are using Redis at scale in production apps will want to pay for support.”
AI is Going Great – Or How ML Makes Money 14:50 Sora: First Impressions
16:23 Justin – “…there’s like seven or eight videos here, all very interesting and worth checking out if you are curious about what AI can do for video and why maybe the writers and the actors all struck, you know, had strikes about it, because it could be pretty compelling long-term.”
AWS19:48 AWS announces a 7-day window to return Savings Plans
17:30 Justin – “I mean, at one point you could resell these things on marketplaces and things like that. And then people were abusing it. And so Amazon took it away. But it would be nice to still have some of those capabilities and options and saying, hey, at the end of the day, it’s a commitment to Amazon.”
22:40 Improve the security of your software supply chain with Amazon CodeArtifact package group configuration
17:30 Ryan – “This is definitely handy for those internal teams who have had to manage this, just because it’s not the end of the world, but it’s toil, having to iterate through and go through each layer and set the security settings. So this is helpful.”
26:46 Run large-scale simulations with AWS Batch multi-container jobs
28:02 Ryan – “I’ve always thought Batch was a tool that was waiting for a problem to solve.”
28:22 Jonathan – “As a tool who used Batch once… it was a tool, yeah. I mean, it does a job. I wouldn’t say it’s fully managed. You pretty much have to bring a lot of your own management into it. But the simplicity of it for doing what it does do is really good. And to add the complexity of side cars and all this other stuff, I just don’t think it’s the right choice to add these extra features.”
GCP30:55 Google Cloud VMware Engine supercharged with Google Cloud NetApp Volumes
31:48 Justin – “Well, really the problem with NFS in this model is the multicast nature of NFS and the amount of network traffic that it puts out there that you don’t really… that’s the bigger problem with running NFS for VMware at scales. You run into a lot of network chatter.”
32:11 Introducing stronger default Org Policies for our customers
33:22 Ryan – “Subscribing to an API shouldn’t mean that you create a principal identity that has full admin access to that service. Like it just doesn’t make any sense to me why you would do that. So this is, these are good, good saying things to have. And if you have an existing org. I recommend going through and checking that you have some of these on. Because it’s uniform bucket level access. Everyone gets burned by that.”
36:13 Anthropic’s Claude 3 Sonnet and Claude 3 Haiku are now generally available on Vertex AI
39:24 5 ways Google’s data centers support Loudoun County
41:42 Introducing Cloud Run volume mounts: connect your app to Cloud Storage or NFS
43:13 Ryan – “ I wish they would blunt the rough edges on this a little bit, just because everyone burns themselves with fuse drivers in the same way. And it’s so ugly because it’s painful in a way that equals data loss and in some cases unrecoverable errors. Especially, it works fine at smaller scales and then until it doesn’t. I hate problems like that when you have to troubleshoot them out.”
45:21 Take control of GKE scaling with new quota monitoring
46:16 Ryan – “ …these features are super, super cool for anyone who’s running sort of Kubernetes as a platform service for the rest of their business. Previously, before this, right, you’d hit all these same limitations, except for it’s hard and you can’t do anything about it, right, at least with quotas, you can sort of manage it and you can set them where you can relax them and sort of reevaluate. I know, you know, I’ve hit the etcd database size with, you know, rapidly scaling clusters really fast, right? And when that fails, it is spectacular.”
Azure47:33 Study showcases how Microsoft Dev Box impacts developer productivity
50:20 Jonathan – “Yeah, it’s interesting that it’s all about productivity though and not about the real reasons that people are moving to these VDIs for dev work and that’s really about supply chain.”
52:13 Microsoft and NVIDIA partnership continues to deliver on the promise of AI
52:22 Accelerate your productivity with the Whisper model in Azure AI now generally available
Note from shownote writer: Copywriters are still better (and funnier) than AI, especially me.
54:44 Preview: New Features in Azure Container Storage
55:47 Ryan – “…as much as I’m against stateful data and containers, I’m always sort of curious to see if someone cracks it, because I do think that it’s not going to go away. People are always going to have workloads and use cases that were born of the server world and sort of have that shared model. And so if something can be written that’s performant and consistent, it really would be a bone. I mean, other than the fact that you would make me do SQL Server on it. But, you know, I do think that these things are, they’re getting better.”
56:50 Breaking Changes to Azure API Management Workspaces
59:11 General Availability: Automatic Scaling for App Service Web Apps
1:00:32 Jonathan – “Well, these novel new features like we actually scale this thing for you that we called managed service beforehand that’s uh it’s revolutionary technology.”
Oracle — The Globally Distributed Oracle Autonomous Database costs how much? 1:00:54 Announcing the general availability of Oracle Globally Distributed Autonomous Database
1:03:05 Justin – “So you’re paying for the rack plus the database servers plus the storage just to get started. And then you layer on the OG dad on top of that.”
1:03:14 Ryan – “I mean, I guess if you’re using Oracle database, you’re already sort of independently wealthy, money means nothing to you. And so, what’s an extra $34,000 among friends?”
1:04:13 Oracle Plans to Open a Public Cloud Region in Kenya
1:04:38 Justin – “Is it Wi-Fi enabled submarine or satellite enabled? Because the latency might be a killer. Yeah. So anyways, Oracle’s definitely not gonna be selling, I imagine, a lot of these Oracle OG dads to the Kenyan people, because I don’t know that there’s that much money in Kenya to pay for that, but they’re gonna be there.”
ClosingAnd that is the week in the cloud! Just a reminder – if you want to join us as a sponsor, let us know! Check out our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 252 of The Cloud Pod podcast, where the forecast is always cloudy! This week Justin, Jonathan, Ryan, and Matthew are talking about InfluxDB, collabs between AWS and NVIDIA, some personnel changes over at Microsoft, Amazon Timestream, and so much more! Sit back and enjoy – and make sure to hang around for the aftershow, where Linux and DBOS are on the docket. You won’t want to miss it.
Titles we almost went with this week: Light a fire under your Big Queries with Spark procedures * All your NVIDIA GPU belong to AWS * Thanks, EU for Free Data Transfer for all * Microsoft, Inflection, Mufasta, Scar… this is not the Lion King Sequel I expected * The Cloud Pod sees Inflections in the Timestream * The Cloud Pod is a palindrome * The Cloudpod loves SQL so much we made a OS out of it * Lets run SQL on Kubernetes on Top of DBOS. What could go wrong? * The Cloud Pod is 5 7 5 long
A big thanks to this week’s sponsor:We’re sponsorless this week! Interested in sponsoring us and having access to a specialized and targeted market? We’d love to talk to you. Send us an email or hit us up on our Slack Channel. Please. We’re not above begging. Ok. Maybe Ryan is. But the rest of us? Absolutely not. AI Is Going Great (Or, How ML Makes All Its Money)1:00 PSYCH! We’re giving this segment a break this week. YOU’RE WELCOME.
AWS01:08 Anthropic’s Claude 3 Haiku model is now available on Amazon Bedrock
02:02 Jonathan – “I haven’t tried Haiku, but I’ve played with Sonnet a lot for pre over the past week. It’s very good. It’s much better conversationally. I mean, I’m not talking about technical things. It’s like I ask all kinds of random philosophical questions or whatever, just to kind of explore what it can do, what it knows…If I was going to spend money on OpenAI or Anthropic, it would be on Anthropic right now.”
04:03 AWS Pi Day 2024: Use your data to power generative AI
04:49 Ryan – “So what’s awesome about that CSI driver is that we can run a SQL server in Kubernetes with the files being stored in S3 for all that. It’ll be awesome!”
07:41 Run and manage open source InfluxDB databases with Amazon Timestream
10:24 Matthew – “The question is, do they even have the InfluxDB in the Amazon calculator? Because in the past, it’s always been very delayed.”
10:35 Justin – “I’m sort of surprised they went with live analytics versus serverless. Because what they’re describing is basically a time stream serverless server. Because you don’t have to worry about servers, you just worry about compute and storage and things in memory. But apparently they decided not to use the serverless moniker for live analytics.”
15:08 AWS and NVIDIA Extend Collaboration to Advance Generative AI Innovation
17:30 Justin – “I am intrigued by the fact that this thing is going to run a multi-trillion parameter large language models. And all I can think about is the cash register is going brrrr. Because I don’t think we even have a trillion parameter large language model that’s publicly available that I’m aware of… but a multi-trillion one is even more fascinating to me… actually, I just did a Google search for it live, real-time fill-up. So January 8th, 2024, there was an article in DataCenter Dynamics – which I don’t know this website. “Frontier supercomputer trains one trillion parameter LM and just over 3000 GPUs’ and it says ‘researchers at Oak Ridge National Laboratory’ and I’m like, oh yes, okay, thank you FBI, CIA for letting us know you have this, appreciate it.”
GCP19:07 Jonathan Does a Thing – Google Support
Listener alert: Major vent session re Google customer service.
25:54 Announcing SQL Server Reporting Services (SSRS) in Google Cloud SQL
26:25 Matthew – “Fun fact, you can’t run SSRS in Microsoft SQL Managed Service.”
27:27 Google named a Leader in The Forrester Wave: AI Infrastructure Solutions, Q1 2024
32:20 Unify analytics with Spark procedures in BigQuery, now generally available
33:47 Jonathan – “What’s cool though is it’s not just like SQL sort procedures. You can actually write code in a sensible language. So you can write sort procedures in Python if you want.”
Azure36:03 Now available: Free data transfer out to internet when leaving Azure
37:26 Matthew – “ It’s confusing. Also, does your 0365, if you still left your 0365 there, where’s that live? Right, so do you have to cancel your entire 0365 data and then your SharePoint and Teams? Like, and then I’m sitting here going like, okay, through Azure CDN or front door, so I’m gonna post all my private data in a front door bucket…And then what? Download it through Azure front door, but that defeats the purpose of CDN if I’m willing to download it once. So I have many questions about why they threw that one in there.”
39:35 AKS Updates
41:10 Microsoft promises Copilot will be a ‘moneymaker’ in the long term
42:00 Ryan – “I think the problem I have with this is the user model. I just don’t know if that’s the right model for this, because it does sort of just burn you up. And you want to make this a tool that’s available. It is not something that you can clearly demonstrate a return on any kind of value yet.”
45:30 Mustafa Suleyman, DeepMind and Inflection Co-founder, joins Microsoft to lead Copilot
48:42 Microsoft open sources Retina: A cloud-native container networking observability platform
49:00 Ryan – “Cool, so like just go a whole different way with your observability platform than everyone else and well, because you had to, because that’s the only thing that’ll support Windows containers. All right!”
Aftershow49:18 What if the operating system is the problem’: Linux was never created for the cloud — so engineers developed DBOS, a new operating system that is part OS, part database
Meet DBOS: A Database Alternative to Kubernetes
ClosingAnd that is the week in the cloud! Just a reminder – if you’re interested in joining us as a sponsor, let us know! Check out our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 251 of The Cloud Pod podcast – where the forecast is always cloudy! This week we’re looking at the potential end of low impact code thanks to generative AI, how and why Kubernetes is still hanging on, and Cloudflare’s new defensive AI project. Plus we take on the death of Project Titan in our aftershow.
Titles we almost went with this week:* The Cloud Pod is Magic * Why is the Cloud Pod Not on the Board of the Director for OpenAI * The Cloud Pod wants Gen AI Money * The Cloud Pod Thinks Magic Networks Are Less Fun Than Magic Mushrooms * The Cloud Pod is Mission Critical so Give Us Your Money and Sponsor Us
A big thanks to this week’s sponsor:We’re sponsorless this week! Interested in sponsoring us and having access to a specialized and targeted market? We’d love to talk to you. Send us an email or hit us up on our Slack Channel. Follow-Up00:50 Kubernetes Predictions Were Wrong — Redux
02:39 Jonathan – “I actually think the pandemic had a lot to do with it. And I don’t know what it was about the pandemic that you talked about exactly, but I think we kind of went into this mode where the businesses that were scaling up as a response, the pandemic were like balls to the wall to increase capacity, add new services, do new things. And I think they probably lacked the time to actually go back and redesign or re-implement new patents. And so I think it probably saw more adoption and more expansion during COVID than ever before, simply because people were focused on delivering that kind of output and not redesigning things.”
05:48 Matthew – “There’s just nothing else really there out there. Like I still kind of like, you know, just using ECS because it’s simple. And to me, that was the point of containers, but you know, it didn’t grow. And, you know, I almost feel like Amazon could have maybe grown that ecosystem out if they would have taken it to the next level and maybe open sourced it. But that’s obviously a big step.”
General News08:41 IT Infrastructure, Operations Management & Cloud Strategies: Chicago (Rosemont/O’Hare), Illinois
11:01 Cloudflare announces new defensive AI products for protecting LLMs and companies from attack
12:01 Jonathan – “It’s a good product. I don’t think it’s going to have much of a life, unfortunately, because I think this functionality will be easily built into commercial offerings. I think we even talked about this a couple of months ago, about having a second layer that checks the answers to make sure that it’s within the constraints of the intent of the person using the model in the first place. It’s nice that they’ve got this, because nobody else has it yet…I guess there’s value in having a third party be the firewall and not necessarily trust OpenAI or Anthropiq or whoever else to be the gatekeeper as well as the service provider.”
13:31 Cloudflare acquires Nefeli Networks and launches multicloud networking service
16:42 Justin – “I don’t think it has quite the same use cases as something like Aviatrix does, but maybe that’s where it’ll go over time as they build out the product. But the way this press release works and the limited amount of content on the website so far, I’m not fully sure exactly where it considers its boundaries to be. But I’m definitely, you know, I’m happy to see another competitor in the space.”
18:14 Broadcom to offload VMware’s remote access computing business to KKR in $3.8B deal
20:34 Jonathan – “Yeah, I think VMware went in some strange directions and their product portfolio was all over the place and Broadcamer very specifically narrowing it down to what they care about in data center workloads. And so maybe these products will actually get a better life elsewhere.”
AI Is Going Great (Or, How ML Makes All Its Money)21:02 OpenAI Board Reappoints Altman and Adds Three Other Directors
22:05 Justin – “I do think it was interesting that they picked up Sue Desmond-Hellman, considering last week we talked about why you guys weren’t here. We talked about Elon and his big lawsuit against OpenAI and what they were doing. So yeah, it’s like, oh yeah, here we picked up a really well-known philanthropic board member to help make sure we keep that going.”
23:32 How generative AI will change low-code development
AWS24:54 Amazon RDS now supports io2 Block Express volumes for mission-critical database workloads
26:17 Matthew – “But it also is the same price as IO1, which is already costing you said arm and leg. So it’s nice that you can get these benefits of moving up to the newer tier with the newer technology without a price increase. Though normally Amazon does a price decrease to try to get people to move.”
30:37 AWS Cost Categories launches a revamped user interface
31:54 Matthew – “I was trying to play with this before the show and we are at like an hour and a half to two hours probably. And I’m still trying to get this to generate me the first cost category for a very small environment that’s like maybe a couple thousand a month…Oh, sorry, I have it backwards. If I spend more money, it runs faster because it has to process more data. Love that AWS bill.”
32:29 Introducing the AWS Generative AI Competency Partners
33:53 Justin – “It’s really about the paperwork. It’s not about the actual ability capability. It’s about, can I, can I produce the documentation and evidence that I know what I’m doing to satisfy this Amazon person who, you know, his job, he doesn’t understand it fully and his job is make sure you don’t get the competency because they’re supposed to be hard about it. Um, and so yeah, I’m not, I’m not a huge fan of the competencies in general, but, um, you know, it’s nice that if you were looking for this.”
35:58 Experience up to 40% faster stack creation with AWS CloudFormation
37:01 Justin – “So that means if you only provision one thing with your CloudFormation, it is not 40% faster. It’s only if you’re doing lots of things with your CloudFormation stack with lots of dependencies, that’s where you get that speed boost. So don’t get too excited if you have a very simple infrastructure.”
GCP41:04 GKE provides fully managed Kubernetes support for Elastic Cloud
42:28 Jonathan – “I’d love to know how it works under the covers because I know the elastic nodes have some very specific ways of working. The unique identifiers per host and things. I’d like to see how I’ve kind of hacked that to kind of make it work in a containerized way safely.”
43:13 Introducing Security Command Center Enterprise: The first multicloud risk management solution fusing AI-powered SecOps with cloud security
45:28 Justin – “I wonder how it’s gonna actually connect some of the things together. It was a little vague on, you know, like, do you give it API keys for their clouds, you know, agentless and agents, I mean, you get to support, you know, install a network, it wasn’t fully clear some of the details. But they do have some sessions happening at Google Cloud Next. So potential opportunities to learn more while I’m there. So I will definitely be checking out one of those sessions.”
Azure46:17 What’s new in Azure Data, AI, and Digital Applications: Data operates as the currency of AI
44:26 Matthew – “I mean, I guess they do appreciate Azure not just putting out an article for every single tiny announcement that they could possibly think of. So it’s kind of, they do the opposite of AWS in a little bit of a way.”
Aftershow49:18 Apple to Wind Down Electric Car Effort After Decade long Odyssey
ClosingAnd that is the week in the cloud! Just a reminder – if you’re interested in joining us as a sponsor, let us know! Check out our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 250 of the Cloud Pod podcast – where the forecast is always cloudy! Well, we’re not launching rockets this week, but we ARE discussing the AI arms race, AWS going nuclear, and all the latest drama between Elon and OpenAI. You won’t want to miss a minute of it!
Titles we almost went with this week:* The Paradox of AI choice * Amazon just comes across super desperate on RACING to AI foundation model * support * Your new JR developer Test-LLM * If you can’t beat OpenAI, sue them
A big thanks to this week’s sponsor:We’re sponsorless this week! Interested in sponsoring us and having access to a specialized and targeted market? We’d love to talk to you. Send us an email or hit us up on our Slack Channel.
General News 01:12 IT Infrastructure, Operations Management & Cloud Strategies: Chicago (Rosemont/O’Hare), Illinois
AI Is Going Great (Or, How ML Makes All Its Money)03:42 Anthropic claims its new models beat GPT-4
05:42 Justin – “Overall, this looks like not a bad model. I do see a little bit of chatter today actually. Some people say it’s not quite as good in some areas, but it’s pretty good in others. And it is not connected to the internet, this model. So it is dated only through August of 2023. So anything that happened after that, like the Israeli Hamas conflicts, it doesn’t know anything about those. So just be aware.”
06:08 Matthew – “You know, it’s actually interesting now. There’s so many models out there. You know, you have to start to look at what makes sense for your data and what you need, along with also price. You know, I look too closely at what the price is, but you might be able to get away with running this over GPT-4 turbo, and you might not need the latest and greatest, and you’re leveraging this in your company’s product or just in general.”
07:38 Meta’s new LLM-based test generator is a sneak peek to the future of development
09:21 Matthew – “It’s amazing where we’re going with all this stuff. And the fact that it’s able to actually take your own, do the analysis and produce anything, you know, is great. Unit tests are one of those things that if you’re not doing test-driven development, which I feel like very few people do TDD, it’s a great way to start to really find all these bugs. Slightly terrifying on the same level of how good it gets at some of these things, you know, as I play with Copilot and a few of the other, you know, technologies that I play with often, but it’s getting there and, you know, it can start to automate some of these things, which is great because let’s be honest, what developer really likes to write unit tests?”
10:43 Struggling to Pick the Right AI Model? Let’s Break It Down.
13:27 Justin – “I’m sort of hoping for a Forester wave or a magic quadrant of models. You know, some, some kind of like general guidance that would be helpful as well. But, you know, I assume it’s going to be an area that’s rapidly maturing here over the next few years as people get more experience and more use cases behind these things.”
AWS – Nuclear Powered13:56 New AWS Region in Mexico is in the works
Feliz Cloudidad, prospero año y felicidad
I wanna wish you a cloud-based welcome
From the heart of Mexico’s land
Where the servers hum, and the data it streams
AWS brings power in hand
(The rest of the team apologizes for this)
14:24 AWS to Launch an Infrastructure Region in the Kingdom of Saudi Arabia
20:22 AWS Acquiring Data Center Campus Powered by Nuclear Energy
21:17 Justin – “The interesting thing about this, I was like, well, it’s a little bit, uh, I thought maybe it was close enough on the Pennsylvania border to North Virginia that it wouldn’t be a big deal, but it’s
actually like 300 miles or so it’s two or three miles. It’s not close. So I was trying to figure out if this is going to be a new US East region, or is this going to be somehow extended to the US East one? So I’m not even sure Amazon’s planning to use this thing because they haven’t announced it, and all this news comes from directly from Talon Energy, who, you know, publicly had to announce it because they’re a publicly traded company.”
22:53 Amazon EKS announces support for Amazon Linux 2023
23:52 Matthew – “I was looking up to see, I was like, did I miss something? Cause I feel like AL2 became what’s originally was, supposed to be Amazon Linux 2022, which got renamed to 2023 I thought. And this just feels like a really long time for them to get support. So either it wasn’t a priority, which sounds weird, because, you know, I thought they were trying to kill off AL2 or…They had to do a whole lot to make it get there. Like I’m just trying to figure out why it took them so long.”
26:10 Anthropic’s Claude 3 Sonnet foundation model is now available in Amazon Bedrock
27:04 Mistral AI models now available on Amazon Bedrock
27:22 Justin – “I have to say, at Amazon, this just looks desperate. Couldn’t have waited a week. Couldn’t have just, you know, let, you know, Hey, it’s now available today. You know, you didn’t have to tell me preannouncement last week. I mean, it’s one thing to pre-announce and like it waits, it takes a month or so, but like literally you preannounced, we recorded and like three days later you announced it was available. Uh, it just smells of desperation. And this is where I was commenting earlier about weird named models.”
28:39 Introducing the AWS WAF traffic overview dashboard
30:56 Justin – “Or what you can do is what I did, just put the CloudPod website behind CloudFlare, enable their WAF and DDoS capabilities, and you’re done. I don’t think about it ever now. And so it’s a pretty nice package over there. So I definitely recommend that if you’re not interested in implementing the Amazon WAF, or you’re looking for something that’s maybe multi-cloud, CloudFlare would be your friend.”
33:07 Free data transfer out to internet when moving out of AWS
GCPAnnouncing Anthropic’s Claude 3 models in Google Cloud Vertex AI
37:11 Google Cloud databases stand ready to power your gen AI apps with new capabilities
40:53 Justin – “All I want to say is this, this whole announcement makes me sound, feel like I want us to say bingo on the amount of tech buzzwords that they can throw in here. Like we have Redis, we have Memcat or sorry, we have memory store, we have SQL, we have TG, which for Postgres, you know, there’s just everything in the one, which goes back to your prior point of Google just throws every announcement into one where, uh, as you were saying it, I was like, okay, that, you know, AWS wouldthey could potentially do the Cloud SQL, the memory store for Redis and the Cloud Spanner. I can see that being one or three for them. If it’s around re-event and price three, that they would do three different slides. Otherwise, I could see them doing it as one. Plus the whole next one, there’s seven announcements in this.”
Azure42:41 Introducing Microsoft Copilot for Finance – the newest Copilot offering in Microsoft 365 designed to transform modern finance
44:26 Matthew – “I’m not gonna lie, I’m kind of looking forward to playing with this, mainly with our Azure Cloud Bill. Like I want to see, you know, I already kill Excel and it consumes like 10 gigabytes on my Mac, you know, every time I open it with our Cloud Bill. And then like I have pivot tables and you know, a bunch of data analysis I do every time about it, but I kind of want to see what Copilot for Finance does with this.”
45:59 Microsoft and Mistral AI announce new partnership to accelerate AI innovation and introduce Mistral Large first on Azure
Aftershow48:52 Elon Musk sues OpenAI and CEO Sam Altman, claiming betrayal of its goal to benefit humanity
51:07 OpenAI and Elon Musk
54:03 Matthew – “…this is why legal departments don’t like 10 year old emails. You know, you put it in writing, you have to expect it to be used for you in the court a lot at one point, or the public opinion in this case. “
ClosingAnd that is the week in the cloud! Just a reminder – if you’re interested in joining us as a sponsor, let us know! Check out our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 249 of the CloudPod Podcast – where the forecast is always cloudy! This week, Justin and Ryan put on their scuba suits and dive into the latest cloud news, from Google Gemini’s “woke” woes, to Azure VMware Solution innovations, and some humorous takes on Reddit and Google’s unexpected collaboration. Join the conversation on AI, storage solutions, and more this week in the Cloud!
Titles we almost went with this week:Gemini Has Gone Woke? Uhhh…ok.
A big thanks to this week’s sponsor:We’re sponsorless this week! Interested in sponsoring us and having access to a specialized and targeted market? We’d love to talk to you. Send us an email or hit us up on our Slack Channel. General News 01:48 DigitalOcean beats expectations under the helm of new CEO Paddy Srinivasan
02:46 Ryan – “I like that, you know, while they are very focused on, you know, traditional compute workloads, you can still see them. Dip in their toes into managed services and, and, um, their interaction with the community and documentation of how to do things. I think it’s really impactful.”
03:34 VMware moves to quell concern over rapid series of recent license changes
05:50 Justin – “I appreciate you including NSX and vSAN because I know I’ve looked at those technologies in the past and looked at the price tag and said, yeah, that’s not going to happen. I do like the idea that I get that – for not being included in my VCF, but if you just charge me two or three X to get it, I’m going to go switch over to something else.”
AWS09:10 Mistral AI models coming soon to Amazon Bedrock
09:50 Ryan – “The more models available on your platform, the better off you are to allowing your customers to choose between them, and choose the right one for the workload – so I’m excited. It’s interesting.”
12:15 Building a Multi Cloud Resource Data Lake Using CloudQuery
13:09 Justin – “I’m super intrigued by this and want to know if anyone out there is using this because it does look quite interesting and really does solve a problem if you’re not using BigQuery, but you’re trying to use Redshift or something else where this will give you the ability to create your foundational data lake and then go query that data from other cloud providers and bring it back to the mothership in AWS if you want that to be your mothership, which maybe I would not choose that one, but if you wanted to.”
16:00 Amazon Document DB Gets lots of Gifts
17:26 AWS Systems Manager Parameter Store now supports cross-account sharing
20:10 Justin – “…Any ability to share across your account portfolio and really your organization is important.”
GCP – Google Gemini has a problem20:18 Google is under attack in the wake of its ‘woke’ AI disaster
30:48 Justin – “It is a very early days in AI. It is the wild, wild west. I don’t know that the whole model is flawed, uh, because of the wokeness of Google. I think, you know, these are lessons that everyone has to learn. I’m sure chat GPT had made similar decisions there. It is just further ahead of the game. So they didn’t make those bad mistakes, but they probably have bad mistakes in their system too. That will eventually be revealed to the world at some point. And people will say the same thing that, Oh, chat GPT is too woke.”
31:31 An expanded partnership with Reddit
32:41 Ryan – “That’s frightening. I get it. It’s fun to make fun of Reddit, and the content. I think it’s a good source of data – it’s a big source of data. I can see why it’s a target. It’s just sort of funny.”
33:25 Gemma is now available on Google Cloud
34:42 Introducing Security Command Center protection for Vertex AI
35:40 Ryan – “this is the first security feature specifically for protection of AI that I remember reading about. And so like, this is sort of, I think it’s pretty rad that to get this kind of built in managed service, like it’s a lot of the value of using a hosting provider. I would be fascinated to turn this on and play around and see what the risks and what it detects. And as, you know, as I am a different engineer and came to my day job, like to play around – I can see how it would be very helpful. So it’s kind of neat.”
Azure37:12 Continued innovation with Azure VMware Solution
39:02 Microsoft supports cloud infrastructure demand in Europe
39:47 Justin – “…Their basic answer to limited power in certain regions of Europe and the Europe moratorium is ‘data centers for everybody!’ Which is one option I guess… you know, to spread the love of our Azure cloud to every country in Europe. And then everyone can say, well, if you need more capacity, you need to talk to your local government. So that’s an interesting strategy as well. Uh, Azure, good, good move.”
40:59 Introducing Azure Storage Actions: Serverless storage data management
42:44 Ryan – “…a lot of the other providers just do this natively in the service. They don’t really sort of… So I’m trying to decide between do I like this feature or do I hate this feature? Or is it necessary because of the way that Azure Storage works? Because on one hand, it’s sort of like, I like bells and whistles, I like knobs, and I love being able to customize those workflows where, you know, in other storage providers, like you have…retention, you know, and it’s very binary based on that. Like, is it this many days? Is it, you know, this many days after access, you know, those types of things versus, you know, maybe you get some more flexibility and things like this.”
Continuing our Cloud Journey Series Talks45:23 40k servers, 400k CPUs and 40 PB of storage later… welcome to Google Cloud
48:16 Ryan – “This is a fantastic story just because you, you almost never hear the other side, right? You hear the announcement, everyone’s excited, right? At the beginning, we’re going to do a thing. And then, you know, a lot of the follow ups that I’ve I’ve seen done or usually are sort of the, they’re a little lackluster because like we got most of the way there, but didn’t quite finish it. And, you know, I’d say 90 % and closing 17 data centers is, you know, mission accomplished. Like I don’t think getting a hundred percent migration should ever be the plan.”
After ShowKubernetes Predictions Were Wrong
ClosingAnd that is the week in the cloud! Just a reminder – if you’re interested in joining us as a sponsor, let us know! Check out our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 247 of the CloudPod Podcast – where the forecast is always cloudy! Pepperidge Farm remembers – and now so does ChatGPT! Today on the pod we’re talking about the new “memory” function in ChatGPT, secrets over at OCI, and Firehose dropping Kinesis like its HOT. Plus plenty of other Cloud and AI news to get you through the week. Let’s get started!
Titles we almost went with this week:* I Don’t Think Anyone Wants to be “Good Enough” in AI * Oracle Can Rotate All My Secrets * Amazon Data Firehose – Not Without Kinesis
A big thanks to this week’s sponsor:We’re sponsorless this week! Interested in sponsoring us and having access to a very specialized and targeted market? We’d love to talk to you. Send us an email or hit us up on our Slack Channel. Follow Up00:57 C2C Event
Recently Justin was down at a 2gather event Google’s Cloud headquarters near Moffett Field in Sunnyvale. So to those new listeners who heard Justin there and just couldn’t get enough, welcome! We’re happy to have you.
Want to see what events are coming up, and hopefully near you? Check out the lineup here.
General News08:25 Why companies are leaving the cloud
09:55 Ryan – “I think it’s kind of the same thing that happened in reverse a few years ago, where it’s like all the companies are moving to the cloud. The same reports were, you know, 50 % of companies are moving other entire workloads into the cloud. And now it’s sort of the pendulum swinging the other way.”
AI is Going Great (or how ML Makes all Its Money) – ChatGPT gets Reveries12:37 Memory and new controls for ChatGPT
15:04 Ryan – “I think a lot of people initially trained a lot of models to get that level of customization, right? So they are building their own models based on that, which is super expensive. And so now this is sort of an option to get, you know, this is sort of in the middle, right? It’s where you want, you want some of these things to be sort of general biased things that you’re setting, but then you can use just the model as is after that, which is great.
15:31 Cohere For AI Launches Aya, an LLM Covering More Than 100 Languages
16:07 Justin- “A lot of people are looking at LLM for things like localization support and translating tweets and different things, different languages so people have that access and you need to make sure it’s being culturally relevant. Or else you’re going to end up in a good PR nightmare, which is not great.”
AWS18:07 Knowledge Bases for Amazon Bedrock now supports Amazon Aurora PostgreSQL and Cohere embedding models
19:50 Justin – “So basically there’s a picture of the flow of this in the document and basically there’s a user query. It goes to basically the embedded retrieval augmentation and gives you an embedding model that then generates the embeddings that make sense. And then basically it takes that, applies it to the vector store to retrieve similar documents, then uses those similar documents to search the foundational model to basically augment the two together. And then that’s what responds back to you as the user.”
21:46 AWS positioned highest in execution in the 2023 Gartner Magic Quadrant for Cloud Database Management Systems
23:53 Ryan – “I’m surprised Amazon’s not closing on Google in terms of being more visionary; with a lot of the enhancements that they’ve put out in the last few years; I do get Google leading in the visionary space and Amazon leading in the ability to execute.”
26:49 Introducing Amazon Data Firehose, formerly known as Amazon Kinesis Data Firehose
30:50 Justin – “I definitely think Kinesis could have some legs with it. If it could get some of the things that Kafka has for on -prem and like if they’ve truly supported hybrid properly, I think Kinesis could have a lot more traction, but I think they’ve so limited what they’ve done for supporting Kinesis on -premise to really just, you know, their, their big iron and primus appliances. I think that’s where it limits their ability to really compete with Kafka.”
GCP31:59 For Google, ‘Good Enough’ Gemini AI Could Be Good Enough to Win
36:08 Justin – “There’s some cool stuff coming; it’s showing up everywhere. Again, while I think it’s changing the world in many ways, and I think it’s fundamentally changing some jobs (like copywriters ) I think it’s still a bit overhyped.
37:42 Announcing the general availability of Network Function Optimizer for GKE Enterprise
38:30 Justin- “This is the first time I’ve seen them talk about GKE Enterprise in a hot minute. Wasn’t that one of the things we talked about with them at Next is that they were gonna start either deprecating this name and moving just to Anthos or Anthos was gonna deprecate into GKE Enterprise. Then nothing’s really happened in that space…I was really looking back to the article, bringing together the best of GKE and Anthos into an integrated intuitive container platform with a unified console experience. It’s like, to me, it sounds like they’re combining, but yeah, so it seems like they had a vision and then they sort of forgot about it. Or maybe, maybe they just haven’t finished development and then we just haven’t heard much because November wasn’t that far ago.”
Azure45:01 New data and AI solutions in Microsoft Cloud for Sustainability help move organizations from pledges to progress
46:37 Ryan – “The irony in all this for me is that out of all the clouds, the one to get your sustainability data out of that’s the hardest is Azure. Everywhere else has this managed thing; I can go directly to a dashboard and I get that number and I can export a report. With Azure, I got to set up this Power Blink to this app thing that links to a template in a database, which I then have to authorize at the main tenant level of my Microsoft…and I’m laughing at this; make me jump through 12 hoops to get it.”
49:48 Azure Elastic SAN is now generally available
50:30 Justin- “Can you think of anything less cloudy than a SAN?”
Oracle52:55 Automate secret generation and rotation with OCI Secret Management
53:33 Ryan – “I think the biggest secret they’re keeping is who are the Oracle Cloud customers?”
Continuing our Cloud Journey Series TalksAfter Show54:50 How do subsea cables work?
ClosingAnd that is the week in the cloud! Just a reminder – if you’re interested in joining us as a sponsor, let us know! Check out our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 246 of The CloudPod podcast, where the forecast is always cloudy! This week we’re discussion localllm and just why they’ve saddled us all with that name, saying goodbye to Bard and hello to Gemini Pro, and discussing the pros and cons of helping skynet to eradicate us all. All that and more cloud and AI news, now available for your listening nightmares.
Titles we almost went with this week:Oracle says hold my beer on Africa
The Cloud Pod Thinks the LLM Maturity Model has More Maturing To Do
There is a Finch Windows Canary in Fargate
New LLM Nightmares
The Cloud Pod Will Never Type localllm Correctly
A big thanks to this week’s sponsor:We’re sponsorless this week! Interested in sponsoring us and having access to a very specialized and targeted market? We’d love to talk to you. Send us an email or hit us up on our Slack Channel. General NewsIt’s Earnings Time!
01:42 Microsoft issues light guidance even as Azure growth drives earnings beat
02:46 Justin- “I don’t think the count the Open AI customers, do you? Because there’s way more people that have Open AI usage than 53,000. So I think this is legitimately Azure AI – which is Open AI under the hood – but specifically paying for that subscription.”
04:19 Alphabet shares slide on disappointing Google ad revenue
04:51 Justin- “…which is interesting, because you would expect that they’d have similar growth being tied to Bard and Gemini to be close to what Microsoft is doing.”
12:02 Amazon reports better-than-expected results as revenue jumps 14%
14:19 Jonathan – “I think AI is great for tinkering right now, but I think the cloud that’s going to win – and I suspect it’s going to be Amazon despite Google’s early lead – will be the cloud that provides the best tooling around SDLC.”
AI is Going Great (or how ML Makes all Its Money)17:22 Building an early warning system for LLM-aided biological threat creation
22:15 Justin- “We assumed Skynet takes us out with nuclear weapons; but we’re teaching it how to make biological weapons. That’ll work even better!”
AWS22:44 Finch Container Development Tool: Now for Windows
24:50 AWS Free Tier now includes 750 hours of free Public IPv4 addresses, as charges for Public IPv4 begin
24:58 Justin – “So, thank you for the free ones, but also, I just got a really big increase in my bill for all the IPV4 addresses you have that I can’t turn off because you don’t support IPV 6 on those services yet…I really don’t appreciate it. And those 750 free hours? Amazon – you can shove them somewhere.”
27:40 Amazon FSx for OpenZFS now supports up to 400,000 IOPS
29:00 Announcing CDK Migrate: A single command to migrate to the AWS CDK
29:51 Ryan – “I like features like this, just because anything where you’re taking your resources where you’ve deployed and being able to configure them into a stateful representation I think is a neat tool. It’s super powerful for development.”
40:14 AWS Fargate announces a price reduction for Windows containers on Amazon ECS
40:44 Justin – “If you HAVE to run Windows containers, this is the only way I’d recommend…which, I guess having a price cut is pretty nice. But if this is your model of deployment – try something else. Please.”
GCP42:33 Firestore Multiple Databases is now generally available
44:14 Ryan – “We were laughing before the show because we all learned that this was a limitation, and it’s crazy… don’t get me started on how Google provides their managed services; I’m sure that’s what this is. The way they implemented it required these backend connections into your project through your network.”
45:31 Heita South Africa! The new Google Cloud region is now open in Johannesburg
46:12 Bard’s latest updates: Access Gemini Pro globally and generate images
48:17 Jonathan – “I think this just confirms our suspicions that Bard was rushed out the door in response to Chat GPT.”
48:51 No GPU? No problem. localllm lets you develop gen AI apps on local CPUs
50:12 Jonathan – “I’m pretty sure they’ve chosen that name just for SEO. This is named purely for SEO, because everyone is searching for Local Llama right now, and that’s Meta’s tool, and you can already run those models locally with the same technology and techniques to quantize the model…this is totally a hack on people who are already running Local Llama.”
Azure56:36 Achieve generative AI operational excellence with the LLMOps maturity model
58:05 Justin – “This is so junior at this moment in time. It’s just covering LLM usage; it’s not covering LLM development or any other LLM use cases. And I expect that in a year it’s just laughed at.”
Oracle1:01:24 OCI announces plans to expand in Africa
ClosingAnd that is the week in the cloud! Just a reminder – if you’re interested in joining us as a sponsor, let us know! Check out our website, the home of the Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at theCloud Pod.net or tweet at us with hashtag #theCloud Pod
Welcome to episode 245 of The CloudPod podcast, where the forecast is always cloudy! This week is a real SBOM of an episode. (See what I did there?) Justin and Matthew have braved Teams outages, floods, cold, and funny business names to bring you the latest in Cloud and AI news. This week, we’re talking about Roomba, OpenTofu, and Oracle deciding AI makes money, along with a host of other stories. Join us!
Titles we almost went with this week:* Amazon Decides Roomba Sucks * AI Weapons: Will They Shift Cloud Supremacy * Oracle Realizes There is Money in Gen AI
A big thanks to this week’s sponsor:We’re sponsorless this week! Interested in sponsoring us and having access to a very specialized and targeted market? We’d love to talk to you. Send us an email or hit us up on our Slack Channel. General NewsREMINDER: 2gather Sunnyvale: Cloud Optimization Summit
On February 15, Justin will be onsite in Google’s #Sunnyvale office for the @C2C #2Gather Sunnyvale: #CloudOptimization Summit! Come heckle him, we mean JOIN him, to talk about all things #GenAI and #CloudOps. Consider this your invitation – he’d love to see you there! Sign up → https://events.c2cglobal.com/e/m9pvbq/?utm_campaign=speaker-Justin-B&utm_source=SOCIAL_MEDIA&utm_medium=LinkedIn
02:23 Amazon abandons $1.4 billion deal to buy Roomba maker iRobot
04:02 Terraform fork OpenTofu launches into general availability
Welcome to episode 244 of the Cloud Pod Podcast – where the forecast is always cloudy! We’ve got a ton of news for you this week, including a lot of AI updates, including new CoPilot Pro and updates to ChatGPT, including the addition of a GPT store. Plus, we discuss everyone’s favorite supernatural axis, MagicQuadrants.It’s a jam packed episode you won’t want to miss.
Titles we almost went with this week:* Switching from Google is Finally Easier * Cheaper AI Doesn’t Mean Better AI * Is the Cloud Pod Better Than Microsoft at Containers? * AWS is the Leader in Containers – Because You Can Run Them in Cloudshell * The Cloud Pod is Connecting to the World With Some Undersea Cables
A big thanks to this week’s sponsor:We’re sponsorless this week! Interested in sponsoring us and having access to a very specialized and targeted market? We’d love to talk to you. Send us an email or hit us up on our Slack Channel. General News2gather Sunnyvale: Cloud Optimization Summit
On February 15, Justin will be onsite in Google’s #Sunnyvale office for the @C2C #2Gather Sunnyvale: #CloudOptimization Summit! Come heckle him, we mean JOIN him, to talk about all things #GenAI and #CloudOps. Consider this your invitation – he’d love to see you there! Sign up → https://events.c2cglobal.com/e/m9pvbq/?utm_campaign=speaker-Justin-B&utm_source=SOCIAL_MEDIA&utm_medium=LinkedIn
AI is Going Great (or how ML Makes all Its Money)01:20 Introducing ChatGPT Team
03:00 Introducing the GPT Store
Welcome to episode 243 of the Cloud Pod podcast – where the forecast is always cloudy! It’s a bit of a slow new week, but we’re not hitting the snooze button! This week Justin, Matthew and Ryan are discussing more changes over at Broadcom after VMware buyout last year, HPE buying out Juniper Networks, why all the venture capital money seems to be going into trying to take down Nvidia, and changes to WHOIS lookup over at AWS certificate manager. Plus we’ll find out exactly what that special something is that makes Justin the perfect executive.
Titles we almost went with this week:* New Years Happened and there is no Good New News * The Cloud Pod Was Always Security Challenged * Azure Shows the Health of Their Business by Springing into Discounts * Network Gear Powers AI – Who Knew?
A big thanks to this week’s sponsor:We’re sponsorless this week! Interested in sponsoring us and having access to a very niche market of cloud engineers? We’d love to talk to you. Send us an email or hit us up on our Slack Channel. Follow Up01:48 More news from Broadcom – and this time they’re coming after the cloud. Broadcom ditches VMware Cloud Service Providers
03:29 Ryan – “I wonder if this is just going to be like new sales or something. Cause that seems very short notice if you’re on VMware as on one of these smaller cloud providers, that seems incredibly risky.”
03:45 Matthew – “I feel like they have to have something lined up. Or let me rephrase that. I would assume slash hope they have something lined up because otherwise they’re gonna really piss off a lot of people.”
General News04:40 Hewlett Packard Enterprise buying Juniper Networks in deal valued at about $14 billion
Welcome to episode 242 of the The Cloud Pod podcast – where the forecast is always cloudy. This week your hosts Justin, Ryan, Matthew, and Jonathan are talking about DoH – or DNS over HTTPS, the Digital Ocean, CISO issues, and whether employee issues over at Amazon will impact user experience. It’s a quiet week, but some interesting conversations you’re not going to want to miss.
Titles we almost went with this week:* Tired of the Winter of Other Announcements, The Cloud Pod Hits the Digital Ocean * Breaking Through the Chill: The CloudPod Dives into Digital Ocean’s Latest * Fed Up with the Winter of Other Announcements? Dive into Digital Ocean with the CloudPod! * The Cloud Pod Almost Didn’t Bother with an Episode This Week * The Cloud Pod Starts the Year Off Slow * The Cloud Pod is Silently Slacking Off * Running DNS over https Does Not Mean You Can’t Blame DNS for Always Breaking * DNS over HTTPS, One More Way DNS Will Break
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.AI is Going Great – Or how ML Makes Money7:20 OpenAI’s Annualized Revenue Tops $1.6 Billion as Customers Shrug Off CEO Drama
8:28 Justin – “I’m sure this is a ‘it made 1.3 billion or $1.6 million in revenue’ and they spent $25 billion. I’m pretty sure that’s the current scenario.”
AWS9:23 The AWS Canada West (Calgary) Region is now available
11:09 DNS over HTTPS is now available in Amazon Route 53 Resolver
Welcome to episode 241 of the Cloud Pod Podcast – where the forecast is always cloudy! Can you believe we’ve reached the end of 2023? Neither can we! Join us today for a look back at 2023 and all of the announcements that excited, befuddled, and confused us – as well as a slew of predictions for 2024. Make sure to share your own predictions (after listening, of course) with us on socials.
Titles we almost went with this week: * Wait, How is it 2024? * Thank God 2023 is Over * Thank God 2020 is Over… Finally? * The Cloud Pod Breaks the Crystal Ball when Trying to Predict 2024 * 2023: A Snarky Saga of Disappointment * 2023: A Snarky Saga of AI * 2023… Was Anything Announced Besides AI * How Cloudy Was It? A Whimsical Look Back at 2023 and Forecasting the Fluff in 2024 The 2023 Cloud Recap and 2024 Foggy Forecasts * 2023’s Cloudiest Moments and 2024’s Forecasted Fun * Cache & Carry: Storing Up 2023’s Memories and Downloading 2024’s Dreams * Even AI can’t help us find the best announcements of 2023 * Even AI can’t help us predict the announcements of 2024
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.General Podcast News00:23 Lot’s of changes around these here parts!
2023 PredictionsAlso known as “things we’re always wrong about.”
06:50 Ryan – “I also think Microsoft will get there’s no matter which way it goes, right? Because they’re either gonna sell it directly, or their investment in Open AI will pay off through shareholder price of stocks.”
11:26
Welcome to episode 240! It’s a doozy this week! Justin, Ryan, Jonathan and Matthew are your hosts in this supersized episode. Today we talk about Google Gemini, the GCP sales force (you won’t believe the numbers) and Google feudalism. (There’s some lovely filth over here!) Plus we discuss the latest happenings over at HashiCorp, Broadcom, and the Code family of software. So put away your ugly sweaters and settle in for episode 240 of The Cloud Pod podcast – where the forecast is always cloudy!
Titles we almost went with this week: Why run Kubernetes when you can have a fraction of the functionality from Nomad and Podman? * The CloudPod hopes for a Microsoft buyout before we shut down * The CloudPod looks forward to semantic versioning now Mitchell has left Hashicorp * Amazon Fiefdoms, Microsoft Sovereignty… I look forward to Google Feudalism * Sovereign Skies vs. Feudal Fiefdoms: Who Owns the Cloud’s Crown? * Cloud Fiefdoms, Feudal Futures: Battling for Data Sovereignty * Fiefdoms Fall, Sovereigns Rise: The Cloud’s Feudal Flaws
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.Follow Up01:09 Broadcom is killing off VMware perpetual licenses and strong-arming users onto subscriptions
The Cloud Pod Sees the Irony of Using AI to Assist with Climate Change Welcome to episode 239 of The Cloud Pod podcast, where the forecast is always cloudy! Jonathan, Matthew and Ryan are your hosts this week as we talk about all things AI and Climate Change – and Google’s assertion that their AI is going to fix it all. Also on today’s agenda: updates to Google Next’s new dates, Azure’s chips, Defender, and all the shenanigans over at OpenAI. Join us!
Titles we almost went with this week:Microsoft Ignites my dislike for their conferences
Google keeps using that Sustainability word….
The gift of no cost learning
The CloudPod has an advent calendar for AI
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.General News00:50 Broadcom announces successful acquisition of VMware
01:58 Matthew – “I feel like whenever you get acquired, a lot of the duplicated admin services and like HR, finance, some of those kind of naturally – like whenever a company gets acquired, I feel like there’s always layoffs within the first six months, and it’s really just a lot of those overlapping services now that the parent org has. But I know that they own Symantec. That was news to me.”
04:36 Ryan – “I think that the big value prop was for a lot of these things was, you know, being able to run that virtualized infrastructure and then the partnerships are, you know, to be able to run that with the same skill sets and the same people running both without having to get into the specifics of, you know, AWS or Azure cloud specifics. And so offering that as sort of a generalized compute… I think as cloud has become more prevalent and popular and there’s more people that know it, not enough, but still more. I think that value really goes down where you no longer need that sort of UI driven cloud management service that VMware provided for years.”
AI is Going Great!06:11 See Aftershow
AWS06:17 If you haven’t already, go listen to ep 238!
That’s our AWS re:Invent recap show; there really isn’t any AWS news outside of that for this week.
GCP06:28 Early Registration Now Open for Google Cloud Next ’24 (April 9-11) in Las Vegas
Welcome to episode 238 of the Cloud Pod Podcast – where the forecast is always cloudy! This week we’re bringing you a preview of Amazon re:Invent 2023. We’re talking all things AWS, Bedrock, Q, and frugal architecture, and – you guessed it – AI.
Titles we almost went with this week: Amazon Builds on Bedrock with Q
You Need to Be All Frugal Architects
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.“Pre”:Invent Is it just us, or is a lot of the stuff released during pre-invent stuff that would have been main stage just a few years ago?
01:48 Major Items
Introducing Amazon CloudFront KeyValueStore: A low-latency datastore for CloudFront Functions
03:43 Ryan – “I found this being announced pre-invent to be kind of shocking, because this is one of those announcements where you could re-architect your entire app for better performance using this type of solution, and it’s not even big enough for the main stage. But there’s huge potential in doing that edge transformation so that you can directly serve at the edge at much lower latency. So it’s awesome.”
Announcing AWS Console-to-Code (Preview) to generate code for console actions
*No Terraform yet, but hopefully that will come soon!
05:18 Jonathan – “I think it’s great for learning too, actually. I mean, I use this in the Google console all the time because I try and put together a command line to do something and it fails miserably. And so I go and do it in the console and it generates the command line coding thing. Ah, I missed that thing, which isn’t documented anywhere.”
07:23 Storage
Optimize your storage costs for rarely-accessed files with Amazon EFS Archive
FlexGroup Volume Management for Amazon FSx for NetApp ONTAP is now available
New – Scale-out file systems for Amazon FSx for NetApp ONTAP
Introducing shared VPC support for Amazon FSx for NetApp ONTAP
Announcing on-demand data replication for Amazon FSx for OpenZFS
New – Amazon EBS Snapshot Lock
Automatic restore testing and validation now available in AWS Backup RL(Maybe?)
08:56 Ryan – “that’s the main reason why I flagged this is that I’ve just done so many tabletop exercises and so many, you know, compliance e
Welcome to episode 237 of The Cloud Pod Podcast – where the forecast is always cloudy! It’s the most wonderful time of the year – it’s almost time for re:Invent! That means it’s also time for our wishlist and predictions. Follow along, and see which ones you think have the greatest likelihood of coming to fruition.
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.AWS Predictions Jonathan
Justin
Ryan
Matthew
Tie Breaker: Number of times the word Artificial Intelligence and/or AI.
Matt – 72
Ryan – 563
Justin – 142
Jonathan – 90
Honorable Mentions:
Reinvent announcement of Clippy/Mascot (Jonathan)
Chip Fab (Jonathan)
Astro Bot upgrade (Ryan)
Astrobot Robot Wars (Ryan)
Extra effort/hardware on energy usage (Jonathan)
IAM Permissions reducer (Matt)
Security/Guardduty/SOC AI (Justin)
DuckDB (Justin)
AI for Opensearch (Justin)
Werner masterclass on AI (Justin)
Simulated worlds (Jonathan)
Welcome to episode 236 of the Cloud Pod Podcast, where the forecast is always cloudy! Are you wandering around every day wondering just who has the biggest one? Chips, we mean. Of course. Get your mind out of the gutter. Did you know Azure was winning that battle for like 8 whole minutes? Join us for episode 236 where we talk about chip size, LLM’s, updates to Bedrock, and Toxicity Detection – something you will never find applied to the podcast. Not on purpose, anyway.
Happy Thanksgiving!
Titles we almost went with this week:* You Can Solve All Your AI Problems by Paying the Cloud Pod 10 million Dollars. * Cloud Pods Interest in AI Like Enterprises is Also Shockingly Low * Llama Lambda Llama Llama Lambda Lambda… or How I Went Crazy * Comprehends Detects Toxicity with the Cloud Pod * You Didn’t Need Comprehend for Me to Tell You I’m Toxic * The Cloud is Toxic, Run!
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.AI is Going Great! 00:39 OpenAI’s New Weapon in Talent War With Google: $10 Million Pay Packages for Researchers (listeners note: paywall article)
01:30 Jonathan – “I guess it’s quite a concern actually that since Google bought DeepMind they have pretty much two-thirds of the entire global AI talent at their own disposal. So I guess this is a desperate needs, call for desperate measures kind of thing.”
01:49 Nvidia Unveils New AI Chip, Upping Ante with AMD (listeners note: paywall article)
02:29 Matthew – “ I feel like we’re seeing the speed curve of processors and now we’re just watching the same things that happened in the 90s and 2000s happen with GPUs. It’s like, it will double every 18 mo
Welcome to episode 235 of the Cloud Pod podcast – where the forecast is always cloudy! This week a full house is here for your listening pleasure! Justin, Jonathan, Matthew, and Ryan are talking about cyberattacks, attacks on vacations (aka Looker for mobile) and introducing a whole new segment just for AI. You’re welcome, SkyNet.
Titles we almost went with this week:* AI is worth investing in – says leading AI service provider, Microsoft * Join The Cloud Pod for the ‘AI Worth Investing In’ Eye-Roll Extravaganza * The Cloud Pod: Breaking News – Microsoft Discovers Water is Wet, AI Worth Investing In * Jonathan finally wins the point for predicting ARM instances in Google Cloud * Looker for Mobile: Ruining vacations one notification at a time * Microsoft helps bring cloud costs into FOCUS * Focus only on the path forward… not the path behind you. * GPT-4 Turbo… just be glad its not Ultra GPT-4 * I can only flinch at the idea of Finch * The Cloud Pod finally accepts AI is the future
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.New Segment – AI is Going Great! 01:24 New study validates the business value and opportunity of AI
02:33 Ryan – “There were some questions that they didn’t ask that I wanted them to, like how many respondents are already using AI but wish they weren’t, or how many
Welcome to episode 234 of The Cloud Pod podcast – where the forecast is always cloudy! This week your hosts Justin and Ryan are bringing you all the latest news from the cloud, including latest earnings news (you know you want it), a discussion about whether cloud is “bad” from one of repatriation’s biggest advocates, Oxide’s new cloud computer (it’s SO pretty) and a look at some of latest updates on the AWS European Sovereign Cloud.
Titles we almost went with this week:The Cloud Pod is Sovereign
We Avoid the Oxide Rust at TCP
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.Pre-Show01:00 Follow Up: Wait – Is Cloud Bad?
03:43 Justin- “Kelsey Hightower pointed out rightfully the 15 years of cloud helped DHH even be able to do this, because being able to do a cloud exit of the size and the complexity of what he does have without cloud technologies that enabled some of those things, it would have been difficult for him to do this going back. Declarative infrastructure, containerization – all that stuff is big cloud advances that were brought to the world that he’s not benefiting from in his data center…”
General News this Week:06:30 Oxide Launches the World’s First Commercial Cloud Computer
Welcome to The Cloud Pod – where the forecast is always cloudy! This week your hosts Justin, Matthew, and Ryan are here to fill you in on all the latest and greatest happenings in the cloud, including news about your SSL & TLS certificates, MSK Replicator, and the Azure Incubations Team. Did you know about them? Neither did we!
Titles we almost went with this week:* The Cloud Pod Replicator… Replicating Snark to all the Kafkas * Mirror Mirror on the wall, Which Events? We Want Them All. * The Radius of my Patience for my Developer Portals is Shrinking * Oracle Java Plugin for VSCode… it’s a trap!
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.General News this Week:AWS01:20 Rotate Your SSL/TLS Certificates Now – Amazon RDS and Amazon Aurora Expire in 2024
01:45 Justin- “I definitely went for the 100 years to fake because I never want to do this again… This is not for the faint of heart, if you’re not familiar with how your database apps work, and do proceed with caution.”
05:48 Justin- “Well, so the 40 year one is a 2048 bit RSA certificate. The 100 year one is an RSA 4096 or an ECC 384 compiled. So it’s pretty high level encryption on both of those CAs. And the fun thing about that is if you do choose the 100 year certificate and you have like a T3 class system, all of a sudden now you’re processing a lot of stuff to calculate the cipher. So you may have some use cases where you don’t want to use the 100 year certificate because it does require some more CPU to process.”
07:07 Introducing Amazon MSK Replicator – Fully Managed Replication across MSK Clusters in Same or Different AWS Regions
Welcome to The Cloud Pod – where the forecast is always cloudy! This week your hosts, Jonathan and Ryan, are talking all about EC2 instances, including changes to AWS Systems Manager and Elastic Disaster Recovery. And speaking of disasters, we’re also taking a dive into the ongoing Google DDOS attacks. Plus, we’ve even thrown a little earthquake warning into the podcast, just for effect.
Titles we almost went with this week:A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.General News this Week:01:08 Why AMD’s Upcoming Chips Won’t Be the Savior AI Startups Are Hoping For
02:20 Ryan – “Yeah. I mean, it’s interesting how complex these have become, right? When it used to just be – sort of – you had optimized at the computer level and maybe at the OS level, but now the workloads are so specific because they’re so demanding, and then power is also very challenging. So that’s kind of neat. I’m kind of glad I don’t have to deal with it much.”
03:38 Report: Amazon will use Microsoft 365 cloud productivity tools in $1B ‘megadeal’
04:40 Jonthan – “I’m surprised they haven’t worked on their own office suite. They could have taken some open-source
Welcome to The Cloud Pod episode 231! This week Justin and Matthew are discussing updates to Terraform testing for code validation, some new tools from Docker, look into the now generally available AWS DataZone, and dig into the evolution of passkeys over at Google. Slide into the passenger seat and let’s check out this week’s cloud news.
Titles we almost went with this week:* The Cloud Pod wants to validate your code * The Cloud Pod can now test in parallel
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.General News this Week:01:17 Terraform 1.6 adds a test framework for enhanced code validation
03:22 Justin – “ One of the interesting things that, you know, that wasn’t part of this particular announcement is that they’re also adding an ability to use AI to help you with your test cases. And so basically the model, they built an LLM model to specifically trained on HCL and the Terraform test framework to help model authors begin testing their code.”
04:55 Docker debuts new tools for developing container applications
-->
Welcome to The Cloud Pod episode 230, where the forecast is always cloudy! This week we’re sailing our pod across the data lake and talking about updates to managed delivery from Kafka. We also take a gander at Bedrock, some new security tools from our friends over at Google. We’re also back with our Cloud Journey Series talking security theater.Stay Tuned!
Titles we almost went with this week:* Security and Delivery Within an Hour… Sacrilegious! * Unlock Global Innovation with Sovereign Cloud * Microsoft… What in the World Are You Doing? * If I ever own a sailboat, I will name it Kafka. * And the Oscar for Security Theater goes to…
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.General News this Week:01:15 Microsoft fans… This isn’t going to be pretty. You were warned.
Microsoft Warns of Cyber Attacks Attempting to Breach Cloud via SQL Server Instance
Microsoft…The Truth Is Even Worse Than You Think
Microsoft comes under blistering criticism for “grossly irresponsible” security
04:37 Matthew- “I mean, also just the scale of these hypervisors, sometimes it just takes time. Like – you don’t want to quickly roll out a hotfix to something, realize you caused another problem, and now you’re playing whack-a-mole because you’re moving too fast and not taking a step back and fixing the root cause of it.”
AWS – Kafka Managed Delivery07:07
Welcome episode 228 of the Cloud Pod podcast – where the forecast is always cloudy! This week your hosts Justin, Jonathan, Matthew and Ryan are taking a look at Magic Quadrant, Gemini AI, and GraalOS – along with all the latest news from OCI, Google, AWS, and Azure. Titles we almost went with this week:* The CloudPod wonders if Anthropic’s Santa Clause will bring us everything we want in an AI Bot. * The Cloud Pod recommends protection to achieve Safer * Google rides the gemini rocket to AI JPB * The only Copilot I need Azure, is Booze * GraalOS, or what we now call ‘the noise our CFO makes when he receives the Oracle audit bills’ * The hosts of the Cloud pod would like to understand how to properly pronounce GraalOS * Is Oracle even on the magic quadrant for cloud? * RedHat Puts lipstick on the pig and calls it OpenStack
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.
General News this Week:00:56 Red Hat rebrands OpenStack Platform for building and managing private clouds
02:32 Justin – “I mean, OpenShift is just like Convox. It’s a platform on top of Kubernetes and a fancy developer portal. And so then you get, now you add to that OpenStack.”
AWS03:51 Expanding access to safer AI with Amazon
Welcome episode 228 of the Cloud Pod podcast – where the forecast is always cloudy! This week your hosts are Justin, Jonathan, Matthew and Ryan – Titles we almost went with this week:* The Cloud Pod gets scanned for a malware infection * The Cloud Pod gives up on security * The Cloud Pod burns cash on a new Mac instance * Copilot’s Copyright Crusade – Microsoft’s Got Your Back in Copyright Battles * The Cloud Pod loves it when the clouds come together * The Cloud Pod doubts 90 day account expirations are a good idea * Matt brings a bit of class to the Cloud Pod
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.General News this Week:AWS02:56 Amazon EC2 R7a Instances Powered By 4th Gen AMD EPYC Processors for Memory Optimized Workloads AND New Amazon EC2 R7iz Instances are Optimized for High CPU Performance, Memory-Intensive Workloads
04:39 Matthew – “I’m just more impressed it’s still DDR5. I feel like 20 years ago I built a computer with DDR3 or 4. So I really feel like…”
04:49 Justin – “DDR4 was very long in the tooth.DDR4 lasted a very long time. DDR5 is actually pretty new, I think. I don’t know when you can kin
Welcome episode 227 of the Cloud Pod podcast – where the forecast is always cloudy! This week your hosts are Justin, Jonathan, Matthew and Ryan – and they’re REALLY excited to tell you all about the 161 one things announced at Google Next. Literally, all the things. We’re also saying farewell to EC2 Classic, Amazon SES, and Azure’s Explicit Proxy – which probably isn’t what you think it is. Titles we almost went with this week:* Azure announced a what proxy? * The Cloud Pod would like you to engage with our email. * Oracle Rover to Base… Come In Rover * A snarky look at 160 Google Next Announcements * Google Next’s got 161 Announcements and AI ain’t one * How high can you count, Google can count to 161 * The cloud pod would like to get consensus on the definition of light weight
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.General News this Week:AWS00:36 Farewell EC2-Classic, it’s been swell
02:08 Ryan – “I think most people know who he was referring to there. But it is cool. I mean, the fact that they were able to actually retire a thing and not just turn it off on people is pretty amazing.”
03:38 Amazon SES now offers email delivery and engagement history for every email
Welcome episode 226 of the Cloud Pod podcast - where the forecast is always cloudy! This week Justin, Matt and Ryan chat about all the news and announcements from Google Next, including - surprise surprise - the hot topic of AI, GKE Enterprise, Duet, Co-Pilot, Code Whisperer and more! There’s even some non-Next news thrown into the episode. So whether you’re interested in BART or Bard, we’ve got the news from SF just for you. Titles we almost went with this week:* 🎙️The cloud pod sings a duet, guess who was singing * 🤖You get AI, you get AI, Everyone Gets AI * 🔍Does a Mandiant Hunt, Or does a Hunter mandiant? * 🌨️The Cloud Pod goes into ROM Mode * 🔎Does a mandalorian Hunt, Or does a Hunter a mandalorian?
A big thanks to this week’s sponsor:Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.📰General News this Week:📰01:23 Introducing Code Llama, a state-of-the-art large language model for coding * So you know Github Copilot, Duet AI, and Codewhisperer…. But do you know Code LLama? (Meta you better get good stickers on this) * Meta has released the source code for the Llama 2 based Code Specialized LLM in three sizes 7B, 13B, and 35B parameters. * Each model is trained with 500b tokens of code and code-related data. * The 7B and 13b base and instructor models have also been trained with fill-in-the-middle capability allowing them to insert code into existing code. * The 7B model can run on a single GPU, the 34B model however returns the best results and for the best for coding assistance… while the 7b and 13b are great for real-time code completions. * Training recipes for Code Llama are available on the Github Repository.
04:08📢 Matthew - “It's interesting; if you go deep into the article there, they start to digress into like ‘Hey, this 7 and the 13 billion are better for near real time response back’ and the 34 billion… is better for fine tuning for yourself. So they really go into a little bit more detail of how to do it. And, you know, I think they also put out some code snippets if you kind of dive into it a little bit more, which I thought was very nice.”05:32 OpenTF Announces Fork of Terraform * Remember when we talked about Open TF’s manifest begging HashiCorp to backtrack on adopting a BSL license? Well guess what? * HashiCorp didn’t listen. Insert sad sound effect. * In response, OpenTF has officially forked Terraform. * They hope to have the repository available to you within the next 1-2 weeks, with their goal to have an OpenTF 1.6 release. * Want to keep up with their progress? They’ve created a public repository where you can track their progress. Check that out here.
06:37 Vlad Ionescu Open TF is a Joke * Some opinions are not as keen on this and think it's a huge distraction and waste of time. * We will definitely be following up on this in the next three months, so stay tuned.
07:39📢 Ryan - “It's gonna be hard to get community support to drive a fork for something as large as Terraform. I agree that it's going to be a challenge. I don't know if I agree with anything else. I was trying to read the thread and trying to sort of not have a visceral reaction to the tone and it's just, it's while complaining about drama in the most dramatic way possible. It sort of defeated the purpose for me and I was like I was looking for a little bit more insight because I haven't. I go very deep and I haven't really formed an opinion on if this is a good idea or not. Yeah, I don't know. I think the jury's still out and continue to watch and see if it takes.”11:44📢 Matthew - “I'm sure you guys remember when elastic search moved over, they like made it so that you can't connect with a non elastic search connector to it. And like, I'm just kind of envisioning that happening where like AWS, you know, Terraform AWS updates their provider to not only allow this, and it becomes a chicken and egg… you did this, we do this. I feel like Palm OS did it with iTunes back in the day… we connected to iTunes and then Apple blocked it. Like I just don't see where this is gonna go for them.”AWS13:32 Create Write-Once-Read-Many Archive Storage with Amazon Glacier * If you’re at all interested in mistakes that will cost you a lot of money for a very long time, well look no further! * AWS is introducing a new glacier feature that allows you to lock your vault with a variety of compliance controls that are designed to support this important record retention use case. * Once locked, the policy cannot be overwritten or deleted. * Glacier will enforce the policy and will protect your records according to the controls. * Creating the wrong policy can make your data undeletable for a long time. Don’t say we didn’t warn you.
15:37 Announcing Amazon Managed Service for Apache Flink Renamed from Amazon Kinesis Data Analytics * Did you know Amazon had a managed Flink service? Neither did we! * In what I hope will be an awesome change in pace for AWS, they are renaming Amazon Kinesis Data Analytics to Amazon Managed Service for Apache Flink. * This relates to a tweet from Ben Kehoe about that people didn’t know AWS had a managed Flink service, and someone tweeted “Wait they have a managed Flink offering?”. (So at least we weren’t the only ones.) * The cute names are fun, but also make it difficult to discover things.
17:10 AWS Compute Optimizer now supports licensing cost optimization for Microsoft SQL Server * AWS Compute Optimizer now supports licensing cost optimization for SQL Server. * Making recommendations like downgrading your SQL server edition to standard or BYOL licensing. * These seem like really dumb recommendations without a lot more understanding and context.
GCP19:18 Welcome to Google Cloud Next ’23* AI Was the theme of the day. Everywhere… I couldn’t escape hearing about AI + Literally. AI. All day. Everyday. * Impressions of the TK/Sundar Keynote (Forced smiles for the win!)? How about going to the DMV? * Event/Sessions/Venues. * Announcements + 23:15 New Titanium backed hardware will allow faster processing of machine learning and AI capabilities. * 23:48 Cloud TPU V5e - Most cost efficient, versatile and scalable purpose built AI accelerator to date. Now customers can use a single cloud TPU platform to run both large scale AI training and inference. (Point to Jonathan!) * 24:12 A3 Vms with NVIDIA H100 GPU to receive better training performance over prior generation 2 * 24:53 GKE Enterprise (formerly known as Anthos in many ways) + Enables Multi-cluster horizontal scaling plus GKE features like autoscaling, workload orchestration, automatic upgrades and now available with the Cloud TPU V5e + GKE Enterprise edition includes: * A new multi-cluster feature (“fleets”) * Managed security features * A fully integrated and fully managed platform * Hybrid and multi-cloud support * GKE Enterprise edition includes: * Group similar workloads into dedicated clusters * Apply custom configurations and policy guardrails * Isolate sensitive workloads * Delegate cluster management * Spend less time managing the platform * Run container workloads anywhere
28:42📢 Ryan - “And it is still the Anthos we've grown to love, right? So it's still a huge multi-cloud or hybrid cloud opportunity for a ton of people and companies, right? So that they can have sort of a consistent experience to offer across their data centers and any one of the cloud hypervisors. So it's pretty cool there too.”29:37 📢 Matthew - “I’d be curious to see and I don't know if you ever would, but like Google put out, Hey, this main number, you know, this percentage of customers actually using it for multi-cloud versus multi-cluster versus, you know, how are people actually leveraging the enterprise product?”* 31:04 Cross-Cloud Network - a global networking platform that helps customers connect and secure applications across clouds. It is open, workload optimized and offers ML-powered security to deliver zero trust. Reduces cross cloud network latency by 35% + Three key tenants: Open, Secure and Optimized + Allows you to address distributed applications, secure access for hybrid workforces and deliver internet facing apps + Cross Cloud Interconnects support Alibaba Cloud, AWS, Azure and OCI. + “Yahoo Mail is moving its backend onto Google Cloud and leveraging the planet-scale network for high performance and secure access to Google's data services. Cross-Cloud Network and Interconnects for high-scaled and high-performing secure access to Spanner and BigQuery will help Yahoo deliver performance and security across hundreds of millions of mailboxes." - Aaron Lake, Senior Vice President and CIO, Yahoo
32:18📢 Ryan - “When I worked for Yahoo, they were very heavy, a data center company. And that was my primary role was automating a lot of that inner company sort of play for launching infrastructure. So building our own versions of AWS and Azure services at the time. And so to see them, you know, taking advantage of the public ones is great, right? Because they're at a scale that is gonna make the product. really good for everyone else.”* 33:29 Global Access and Global Backends allow you to private clients from any region to access internal load balancers in any google cloud region. And Global Backends allow internal ALB to health-check and send traffic to globally distributed backend services * To simplify the network layer, VPC Spokes support in Network Connectivity Center now lets you smoothly scale VPC connectivity, providing reachability between a large number of VPC spokes. * Peered VPC spokes with overlapping RFC1918 addressing will be able to utilize Cloud NAT’s Inter-VPC NAT feature, ensuring that Inter-VPC network traffic stays within the Google Cloud network versus traversing the internet to help ensure privacy and security. * Cloud applications now support cross-project service referencing plus support for MTLS * Cloud NGFW in preview, a cloud first next gen firewall powered by PAN. Provides inline threat protection with 20x higher efficacy compared to other cloud firewalls, a built in distributed firewall architecture, unified network security posture controls and simplified single-policy threat response. * 37:24 Google Distributed Cloud is being expanded to support new Vertex AI integrations and a new managed offering of AlloyDB Omni on GCD-hosted. * If you’ve ever had the need to run Postgres AlloyDB, you can now do that in your data center on Google Managed Hardware. * 37:58 Vertex AI got lots of love at the conference - tons of new goodies. + Palm 2, Image and Codey Upgrades + New tools to tune Palm2 an Codey + New Models with Llama 2 and code llama, as well as Technology Innovative Institutes Falcon LLM, a popular open source model, as well as pre-announced Claude 2 from Anthropic. + Vertex AI extensions will allow developers to access, build and manage extensions that deliver real time information, incorporate company data, and take action on the users behalf. This allows Vertex to take action on third party systems like CRM. + Enterprise Grounding service + Digital Watermarking on Vertex offers a technology powered by Google DeepMind SynthID, offering a state of the art technology that embeds the watermark directly into the image of pixels, making it invisible to the human eye and difficult to tamper with. + Colab Enterprise to allow ease of use of Google’s Colab notebooks with Enterprise level security and compliance. * 39:44 Duet AI + Duet AI in Google Meet and Google Chat are now available. + Duet AI for BigQuery provides contextual assistance for writing SQL queries. + Duet AI for GKE and Cloud run provides gen AI assistance to cut down on the time it takes to run containerized apps. + Duet AI in Spanner, Alloy and Cloud sql, helps you generate code to structure, modify, or query data using natural language. As well as their bringing Deut AI Database Migration Service to help you automate the conversion of database code such as stored procedures, functions, triggers and packages + Duet AI also comes to Security in Chronic Security Operations, Mandiant Threat Intelligence and Security Command Center.
32:18📢 Ryan - “I know what I want, but I do not know the SQL syntax to get what I want. And this is, it is a fantastic feature that I've played around with a little bit for a couple hours. And I, like, I will never ever write SQL any other way.”42:49📢 Justin - “And I'm actually right now trying to backup an RDS MySQL database. And if I could use this to figure out how to make that better. Cause I foolishly thought I'd save time by using MySQL command center or the management center cause we have it set up for this particular database, and I regret everything about it.”* 45:38 Analytics + Big Query Studio is a single interface for data engineering, analytics and predictive analysis, which will increase efficiency for data teams. Plus it integrates into vertex AI foundation models (still gotta get that AI in there.) + Alloy DB AI offers an integrated set of capabilities for easily building GenAI apps, including high performance, vector queries that are up to 10x faster than standard postgres. * 46:33 Security + Mandiunt Hunt for Chronicle to integrate the latest insights into attacker behavior from Mandiant’s frontline experts with Chronicle Security Operations. + Agentless vulnerability scanning: this posture management capability in security command center detects operating system, software and network vulnerabilities on compute engine virtual machines + Cloud Firewall Plus adds advanced threat protection and next-generation firewall capabilities to their distributed firewall service powered by PAN. + Assured Workloads now support the Japan region for Japanese requirements on encryption keys and administrative access transparency.
PredictionsRyan Lucas* Generative AI Prediction - Finops Practice and Cost Management AI solution * A networking feature that only supports IPV6
Jonathan Baker* TPU V5 (Super Computer in a Box) * Generative AI for Contact Center and/or Retail AI
Justin Brodley* Google Bard in workspaces will be GA * Not going to announce anything New.
Matt Kohn* Bard via API * Additional Security tooling Ci/CD * Announcement that they Gain Market Share by @ least 5% * Some sort of competitor for AWS Lattice
Tie Breaker: Justin: 6Jonathan: 9Ryan: 1⭐Gold Star to Jonathan⭐ Azure57:33 Generally Available: Trusted launch as default for VMs deployed through the Azure portal* Trusted launch hardens your Azure VM with security features that allow administrators to deploy virtual machines with verified and signed bootloaders, OS kernels and boot policy. * We aren’t really sure why this took so long, but better late than never.
1:01:01 Generally available: Azure Container Apps jobs* Jobs - a new container app feature previewed at Build is now GA. * Azure Container App jobs support three trigger types: Manual, Scheduled and Event Driven. Manual Jobs are triggered by a user or an external system, such as another container app. * Common scenarios for jobs include: Running a one time containerized data migration job, running a scheduled recurring containerized batch job, such as a nightly inventory processing job, Running a containerized job in response to an event, or running a CI/Cd build process such as Azure Pipelines agents and github action runners.
1:01:49📢 Justin - “If you're into container app jobs and using these to do kind of your scheduled tasks, this is nice, I actually like this feature.”ClosingAnd that is the week in the cloud! We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, slack team, send feedback or ask questions at thecloudpod.net or tweet at us with hashtag #thecloudpod
Google Next Eve! Welcome episode 225 of The CloudPod Podcast - where the forecast is always cloudy! Justin, Jonathan, and Ryan are your hosts this week as we discuss all things Google Next! We talk schedule offerings, make our predictions about announcements, and prepare to be generally wrong about everything. Also - do you like stickers? Everyone likes stickers! Be on the lookout for us, and maybe you can have one. Titles we almost went with this week: None! Google Next is the next big thing, so of course it’s the title. A big thanks to this week’s sponsor: Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. 📰Pre-Show📰 01:23 Following up on some HashiCorp News:
HashiCorp updates licensing FAQ based on community questions * Hashicorp has responded in their FAQ to some of the concerns we brought up when we talked about them moving to the BSL license in our last show. + Question: Can I host the HashiCorp products as a service internal to my organization? + Answer: Yes. The terms of the BSL allow for all non-production and production usage, except for providing competitive offerings to third parties that embed or host our software. Hosting the products for your internal use of your organization is permitted. HashiCorp considers an organization as including all of its affiliates. This means one division can host a HashiCorp product for use by another internal division. + Q: What is a “competitive offering” under the HashiCorp BSL license? + A: A “competitive offering” is a product that is sold to third parties, including through paid support arrangements, that significantly overlaps the capabilities of a HashiCorp commercial product. For example, this definition would include hosting or embedding Terraform as part of a solution that is sold competitively against our commercial versions of Terraform. By contrast, products that are not sold or supported on a paid basis are always allowed under the HashiCorp BSL license because they are not considered competitive. + Q: What does the term “embedded” mean under the HashiCorp BSL license? + A: Under the HashiCorp BSL license, the term “embedded” means including the source code or object code, including executable binaries, from a HashiCorp product in a competitive product. “Embedded” also means packaging the competitive product in such a way that the HashiCorp product must be accessed or downloaded for the competitive product to operate. + Q: What if HashiCorp releases a new product or feature in the future that makes my project competitive? + A: If HashiCorp creates an offering in the future that is competitive with a product you are already offering in production, your continued use of the hosted or embedded HashiCorp product will not be considered a violation of the HashiCorp BSL license.
03:43📢 Ryan - “I think this is the right response, right? And I know that I'm probably in the minority of being sort of appeased by this in the community; because I think that the torches and pitchforks will not go away. But what this does is allow - if there's any kind of gray area in the future - it allows for litigation. And I think that that's sort of important, they're putting their stance out there. This will be referenced if it ever comes to it, as public facing statements. They're not trying to blow up the community. They're not trying to make sure no one uses it. What they're trying to do is make sure that they can still make money, which I think is good, right? I do want HashiCorp to stay around. I want them to be profitable. I want them to continue to deliver products.” 📰General News this Week:📰 AWS 12:37 Amazon EC2 Hpc7a Instances Powered by 4th Gen AMD EPYC Processors Optimized for High Performance Computing * AMD 4th gen EPYC processors (Genoa) continue to roll out across the AWS fleet with the new Hpc7a instances for HPC * These instances offer 300 Gbps Elastic Fabric Adapter (EFA) bandwidth powered by the AWS Nitro System, for fast and low-latency internode communications. * All configurations are coming up at the same price in the calculator at 5256.00 a month or 7.20 an hour for any configuration, so we’re not sure why you would not just choose the largest one.
GCP 13:50 If I were you: Here are the the Google Cloud Next ’23 talks for six different audiences * Attending Google Next? Richard Seroters gives you a great selection of courses to take across 6 different personas. * Richard is director of developer relations and outbound product management at Google Cloud. His blog is a good one to follow if you don’t already!
16:45 Announcing the new Transparency Center * A poor young product manager was given a task… and they were told that it was super important and would be critical for Google Next. That product manager pushed and pushed and shipped only to find out that it wasn’t main stage worthy.. Or that's what we like to think about this announcement at least… + Either way, good job product manager. We’re proud of you. * Google is launching the Transparency Center, a central hub for you to learn more about product policies. * The Transparency Center collects existing resources and policies, and was designed with you in mind. It aims at providing easy access to information on Google policies, how they create and enforce them, and much more, including: + Policy Development Process + Policies by product or service + Reporting and appeal tools + Transparency reports + Googles principles for privacy and AI
17:36📢 Ryan - “I mean, as the owner of the cloud platform that's constantly having to fetch the attestation for compliance of the cloud providers, I love this service. Here's a one-stop shop for the person who has no understanding of our workload, but they understand policy. Thank you very much.”
18:53 Google Next Predictions:
Ryan Lucas * Generative AI Prediction - Finops Practice and Cost Management AI solution * A networking feature that only supports IPV6
Jonathan Baker (Sneaky, sneaky Jonathan…) * TPU V5 (Super Computer in a Box) * Generative AI for Contact Center and/or Retail AI
Justin Brodley * Google Bard in workspaces will be GA * Not going to announce anything New.
Matt Kohn * Bard via API * Additional Security tooling Ci/CD * Announcement that they Gain Market Share by @ least 5% * Some sort of competitor for AWS Lattice
Main Stage New Features / Products (The Tie Breaker)
Justin: 6
Jonathan: 9
Ryan: 1 Azure 32:29 Efficiently store data with Azure Blob Storage Cold Tier — now generally available * + Azure is announcing the GA of Azure BLog Storage Cold Tier. I personally always imagined the blog was cold anyways. + Azure Storage Cold Tier is an online tier specifically designed for efficiently storing data that is infrequently accessed or modified, all while ensuring immediate availability. + The nice part about the cold tier is it is as easy to use as the hot tier with all APIs, SDK, Azure portals, powershell, CLI and Storage Explorer supporting the cold tier natively. * “Commvault is committed to ensuring customers can take advantage of the latest advancements on Azure Blob Storage for their enterprise data protection & management needs. We are proud to support cold tier as a storage option with Commvault Complete and our Metallic SaaS offering later this year. Commvault’s unique compression and data packing approach, integrated with cold tier’s policy-based tiering and cost-efficient retention, empowers customers to efficiently defend and recover against ransomware, all while ensuring compliance and cost-efficient, on-demand access to data.” — David Ngo, Chief Technology Officer, Commvault.
33:39📢 Jonathan - “I have nothing interesting to say about storage.” (He’s either still mad at Windows, or ready to head to a bar. Maybe both.) Closing And that is the week in the cloud! We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, slack team, send feedback or ask questions at thecloudpod.net or tweet at us with hashtag #thecloudpod
Welcome to episode 224 of The CloudPod Podcast - where the forecast is always cloudy! This week, your hosts Justin, Jonathan, and Ryan discuss some major changes at Terraform, including switching from open source to a BSL License. Additionally, we cover updates to Amazon S3, goodies from Storage Day, and Google Gemini vs. Open AI. Titles we almost went with this week: None! This week’s title was ✨chef’s kiss✨ A big thanks to this week’s sponsor: Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. 📰Pre-Show📰 📰General News this Week:📰 00:41 AWS and HashiCorp announce Service Catalog support for Terraform Cloud * AWS is catching up with GCP, with now native support for Terraform in Service Catalog. * The new integration is expanding on the previous support for Open Source; they now support the Terraform Cloud service. * This new feature is available in all AWS Regions where AWS Service Catalog is available.
02:07 HashiCorp adopts Business Source License * Do you use tools like N0 or ScaleSet? Or perhaps some of the other Terraform-adjacent things? You may be in some trouble. * Despite being ok with Amazon and GCP integrating their open source - and now Terraform cloud offering - Hashicorp is mad at companies adopting their technology and productizing it, forcing them to move to the new BSL (Business Source License) model. * This covers all Hashicorp products, not just Terraform. * HashiCorp points out that their approach has enabled them to partner closely with cloud providers to enable tight integrations for their joint users and customers, as well as hundreds of other technology partners. * There are vendors who take advantage of pure OSS models, and the community work on OSS projects, for their own commercial goals, without providing material contributions back. (GASP!) + Hashi doesn’t think this is “the spirit of open source.” * As a result, they believe commercial open source models need to change, as Open Source has reduced the barrier to copying innovation and selling it through existing distribution channels. + They point out they’re in good company; pointing to other OSS projects that have closed source or adopted similar BSL models. * They are officially moving from the Mozilla Public License v2.0 to the BSL v1.1 on all future releases of HashiCorp products. + The APIs, SDKs and almost all other libraries will remain MPL 2.0 * BSL is a source-available license that allows copying, modification, redistribution, non-commercial use, and commercial use under specific conditions. + They point out Couchbase, Cockroach, Sentry and Maria DB developed this license in 2013. * Hashi also would like to point out that they are including additional grants that allow for broadly permissive use of their source code, to make things slightly less scary. * End users can continue to copy, modify and redistribute the code for all non-commercial and commercial use, except where providing a competitive offering to Hashicorp. * They produced a nice FAQ just in case you have more questions that may have been frequently asked. https://www.hashicorp.com/license-faq
Open TF is the response but we still have questions. * It’s clear things are not great in the open source community, and this one has the potential to be especially impactful. We’d love to hear our listeners thoughts on this movement away from open source and to more commercial business models.
03:52 📢 Justin - “So here’s where I get confused. If I make a product internally that uses HashiCorp for my own needs, and that prevents me from buying Terraform Enterprise because I copied all the functionality for my own personal gain in my company... not selling it, not getting any money out of it. Does that count as competing with HashiCorp, or is that okay?”
04:30 📢 Jonathan - “I also have questions about like, is it just the source that they care about in that sense? Because everything about it is the source license. Can I still integrate the next version of Terraform binary if I download it and use it without modification in my own product and compete with HashiCorp? I'm unclear on that.”
07:31 The Open TF Manifesto - a plea to keep TF open Source * For those folks who WERE seriously impacted by the changes (we’re looking at you, Spacelift, Env0, Scaler, and GrantWork) - they have written a full manifesto on why Terraform adopting BSL is bad. This is essentially a plea to keep Terraform open source forever. * They say the BUSL license is a poison pill for Terraform - with unknown legal risk and future legal risks. The use grants are vague and you now have to ask if you are in violation. * The request from the manifest is that Terraform switch back to an open source license. * However, if they do not they will fork Terraform into a foundation such as Linux Foundation or the Cloud Native Computing Foundation.
08:15 📢 Justin - “When I think about what's happened to Docker, that's a really bad thing when that happens because the community moves on from you - and you get kind of left behind. Then you get bought by some company we never heard of, divested a bunch of things, and now you have to pay for licensing for Docker for zero reason. So if I had to pay for a Terraform client natively from Terraform someday - because some PE company bought them, I'm going to be super mad. But I'll just move to OpenTF hopefully by then.”
12:04 📢 Jonathan - “I've got a question for you then. If Terraform had never been open source, do you think it would have gained the same success as it has?”
-We’d be interested in hearing listener feedback to this question! What do you all think? AWS 14:47 Welcome to AWS Storage Day 2023! * The fifth annual storage day took place on the 9th after our editorial cutoff. * There is a replay available if you want to sit through it, but we only care about the announcements so let's get into it! * Generative AI/ML was the big theme of the day - color us surprised. * They want to highlight that EBS has just turned 15 years old. It handles more than 100 trillion I/O operations daily, and over 390 million EBS volumes are created every day, which is just an incredible number. * On their new M7i instances you can attach 128 of the EBS volumes, 28 more than the previous version.
16:55📢 Ryan - “EBS was really one of the key foundational things for really taking advantage of having an elastic workload or having a self-healing workload and anything attached to a server where you could operate it and operate your data as its own thing and move it around. Like it's a big, big advancement over what you could do in the data center.”
17:20📢 Jonathan- “Yeah, I feel like they've still missed an opportunity there. Getting the data off the host themselves and off of SSDs or disks on those instances and using instance storage, that was great because now if a machine goes down, you don't lose all your stuff, but they still don't support live migration of VMs between hosts. And EBS is the key for doing that, but they've never enabled that functionality.”
And now, onto the Storage Day Goodies!
19:15 Mountpoint for Amazon S3 – Generally Available and Ready for Production Workloads * Mountpoint for S3 (or AWS finally agreeing that S3FUSE was thing) is a new open source file client that delivers high throughput access, lowering compute costs for data lakes on Amazon S3. * Mountpoint for S3 is a file client that translates local file system API calls to S3 object API calls. * Mountpoint supports basic file operations, and can read files up to 5tb in size. + It can list and read existing files and create new ones + It cannot modify existing files or delete directories, and it does not support symbolic links or file locking. * Mountpoint will work with all S3 storage classes
20:23 New – Improve Amazon S3 Glacier Flexible Restore Time By Up To 85% Using Standard Retrieval Tier and S3 Batch Operations * S3 Glacier flexible retrieval improves data restore time by up to 85%, at no additional cost. * Faster data restores automatically apply to the standard retrieval tier when using S3 batch operations. * These restores begin to restore objects within minutes, so you can process restored data faster. * Using S3 batch operations you can restore archived data at scale by providing the manifest of objects and specifying the retrieval tier.
21:28📢 Ryan - “This just proves that -I think my theory that Glacier is just all their older EBS hardware and they're just cycling it through. And so now they've moved from spinators to SSDs. I'm certain of it.”
22:22 New — File Release for Amazon FSx for Lustre * Yes, Lustre supports files. This is something different - and it’s actually pretty neat. * Amazon FSX for Lustre provides fully managed shared storage with the scalability and high performance of the open source Lustre file system to support your Linux-based workloads. * At Storage Day they announced the file release for FSx for Lustre. This feature helps you manage your data lifecycle by releasing file data that has been synchronized with S3. * File release frees up storage space so that you can continue writing new data to the file system while retaining on-demand access to release files through the FSX Lustre lazy loading from S3. * This has the potential to be extremely valuable to machine learning workloads.
25:18 Announcing AWS Backup logically air-gapped vault (Preview) * AWS backup is announcing in preview the logically air-gapped vault, a new type of AWS backup vault that allows secure sharing of backups across accounts and organizations, supporting direct restore to help reduce recovery times from a data loss event. * AWS backup is a fully managed service that centralizes and automates data protection across AWS services and hybrid workloads. * This is a TERRIBLE name, but it really does a lot of work, so we’re not mad at it.
26:49 📢 Justin - I'm a little annoyed though that this took so long because like ransomware is not new. Like, I mean, we've been talking about ransomware risks in Amazon for three or four years now, maybe even longer, maybe six. And I do remember there was a magic quadrant that came out recently where they were the magic quadrant actually dinged them for not having A solid answer for ransomware and now all of a sudden they have this…we've all been telling you all over the market, you know in the cloud practitioners that this is something we need To meet compliance requirements. Then why did it take Gartner to get there? So that part annoys me just a little bit.”
28:14📢 Jonathan - “So if you encrypt your data in the vault, where do you store the keys securely so that the keys can't be compromised or attacked or corrupted? Because I think that becomes the next problem down the line. So great, we've got the backups and they're encrypted because that's best practice. But now we've got these keys and we need to also keep someplace safe. And I think attacks on encryption keys is probably going to be the next biggest sort of destructive power against enterprise. Cause if you've got all encrypted backups and you lose the keys, you've got no encrypted backups.”
29:27 Few other items we won’t talk about: * Power ML research and big data analytics with EFS * Multi-AZ file systems on FSX for OpenZFS * Higher throughput capacity levels for FSx for Windows File Server * Copy Data to and from other clouds with AWS datasync
30:51 Network Load Balancer now supports security groups * NLB’s now support security groups, enabling you to filter the traffic that your NLB accepts and forward to your applications. * This was one of the most confusing things to learn when implementing NLB’s and we’re so glad it now aligns to the patterns for all other load balancers.
31:48📢 Ryan - “Yeah. I mean, the poor networking team that had to expand the public subnets in a rush, right? Because the first thing you do is deploy your server into a private subnet and realize you can't actually get to, can't actually have the security group be the source IP. And it just turned into chaos real fast trying to.”
34:45 Amazon EC2 M7a General Purpose Instances Powered by 4th Gen AMD EPYC Processors * Were you excited about those M7i instances we talked about a few weeks ago? Were you perhaps thinking to yourself, “man, I wish I had an AMD version of that?” Well it’s GOOD NEWS! * A few weeks ago Amazon announced the M7I instances, and now they’re back with the M7A instances powered by 5th Gen AMD EPYC (Genoa) processors with maximum frequency of 3.7GHz, which offer up to 50 percent higher performance compared to m6a instances. * M7a instances support AVX-512 Vector Neural Network Instructions and Brain Floating Point (bfloat16). They also support DDR5 memory, which enables high-speed access to data in memory and delivers 2.25 times more memory bandwidth. * Configurations available from m7a.medium 1/4 to m7a.48 xlarge with 192/768. * You can take a look at the pricing here. It’s pricey. Be aware.
GCP 37:37 How Google is Planning to Beat OpenAI (Article - Subscription required) * In a prior episode we talked about Google merging their two large artificial intelligence teams--with distinct cultures and code- to catch up to (and surpass) OpenAI and rivals. * This effort is culminating into a release of large machine-learning models this fall. * The models, known as Gemini, are expected to give Google the ability to build products its competitors can’t, according to a person involved with Gemini’s development. * Open AI can understand and produce conversational text, but Gemini will go beyond that, combining the text capabilities of LLMs like GPT-4 with the ability to create AI images based on a text description, similar to AI image generators like Midjourney and stable diffusion. * It may also be able to analyze charts or create graphics with text descriptions and controlling software using text or voice commands. * Google is planning on having Gemini power its Bard Chatbot, Google Docs and Slides. * Google will charge app developers for access to Gemini through its google cloud product. * “The big question that I think everyone has asked for the last nine months is, ‘When will someone even look like they can catch up to OpenAI?’” says James Cham, an AI startup investor at Bloomberg Beta. “This is going to be the first indication that someone can compete in a legitimate way with GPT-4.” * Google is using its biggest advantage Youtube and the large corpus of Youtube video transcripts, but it could also integrate video and audio into the model, giving them multi-modal capabilities many researchers believe will be the next frontier in AI.
39:24📢 Jonathan - “You know, first to press release is not always first to market or first to success, for sure. And so Google announcing that they're working on this amazing thing, that's great. You can talk about it all you like. Pretty sure OpenAI are already working on this. They've already published models for text and audio and 3D objects. And they're working on video, all kinds of things. Integrating those into a single model, that will be awesome. That's what Google kind of... talking about doing here is having a multimedia evolution of large language models or generative AI. I don't think they're going to be Open AI to it unless Open AI ends up going out of business because they're sued and lose in the courts and that's a huge risk right now for them.”
40:14📢 Ryan- It's interesting. Yeah. Cause you know… I always felt that AI was Google's fight to lose, but they weren't first to market, but in doing so open AI has taken all the risk, and all the weird legal hurdles. And then Google has the advantage of all this data on the backend.”
50:12 Google launches Pricing API to help enterprises optimize cloud costs * Google has launched a new pricing API that will help enterprises optimize their cloud costs. The API will provide businesses with real-time visibility into their cloud usage and costs, and will allow them to set budgets and alerts. The API is also designed to help businesses identify and eliminate waste in their cloud usage. * Let’s be real. Setting budgets doesn't save me money. * Alerts don’t necessarily save you money. * The pricing API is part of Google's Cloud Billing service, which provides businesses with tools to manage their cloud costs. Cloud Billing includes a number of features, such as usage reports, budget alerts, and cost allocation. * Here are some key points from the article: + Google has launched a new pricing API that will help enterprises optimize their cloud costs. + The API will provide businesses with real-time visibility into their cloud usage and costs. + The API will allow businesses to set budgets and alerts. + The API is also designed to help businesses identify and eliminate waste in their cloud usage. + The pricing API is part of Google's Cloud Billing service. + Cloud Billing includes a number of features, such as usage reports, budget alerts, and cost allocation. + The pricing API is now available in beta.
51:38📢 Ryan - “I mean, this is the response to the age old problem, right? The CFO wants to save money. Everyone else in the business wants to empower developers to move faster. Right, and it's sort of like, how do you reconcile those two worlds? So, I mean, these APIs, yes, setting in budgets and stuff via APIs, but what it really does is empower approval workflows so that communication is happening about money being spent. And that's really the value in these things. And so, you know, like you set a budget and then you exceed that budget and that triggers a workflow of approvals. And then you can automatically update that budget to not block the business.” Azure Oracle Continuing our Cloud Journey Series Talks After Show Closing And that is the week in the cloud! We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, slack team, send feedback or ask questions at thecloudpod.net or tweet at us with hashtag #thecloudpod
Welcome episode 223 of The CloudPod Podcast! It’s a full house - Justin, Matt, Ryan, and Jonathan are all here this week to discuss all the cloud news you need. This week, cost optimization is the big one, with a deep dive on the newest AWS blog. Additionally, we’ve got updates to BigQuery, Google’s Health Service, managed services for Prometheus, and more. Titles we almost went with this week: * 🧑💻I swear to you Mr. Compliance Man, Mutator is not as bad as it sounds * 🔢Oracle Cloud customer - or how we let Oracle Audit us internally at will * 🗞️We are all confused by the lack of AWS news * ✨The CloudPod copies other Podcast’s Features * 🛞Get AWS spin on savings with Cost Optimization Flywheel
A big thanks to this week’s sponsor: Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. 📰General News this Week:📰 AWS No AWS news - so that should tell you we’re DEFINITELY getting close to announcement season. GCP 01:35 Introducing new SQL functions to manipulate your JSON data in BigQuery * Enterprises are generating data at an exponential rate, spanning traditional structured transactional data, semi-structured like JSON and unstructured data like images and audio. * Beyond the scale, the divergent types present processing challenges for developers, sometimes requiring a separate processing flow for each. * BigQuery supported semi structured JSON at launch eliminating the need for processing and providing schema flexibility, intuitive querying and the scalability benefits afforded to structured data. * Google is now releasing new sql functions for Bigquery JSON, extending the power and flexibility of their core JSON support. These new functions make it easier to extract and construct JSON data and perform complex data analysis. + Convert JSON values into primitive types (INT64, FLOAT64, BOOL and STRING) - Is anyone else insulted that STRING is considered primitive? + easier and more flexible way with new JSON LAX functions + Easily update and modify existing JSON values in BigQuery with new JSON Mutator functions. + Construct JSON objects and JSON arrays with SQL in BigQuery with new JSON Constructor functions.
03:58 📢 Justin - “Well, you only know that a NoSQL solution makes it once it gets a SQL interface. That's how you know it's truly become web scale.”
06:25 Introducing Personalized Service Health: Upleveling incident response communications * Outages happen to everyone… especially when your AZ’s aren’t really separate. * Google is excited to introduce personalized service health, which provides fast, transparent, relevant and actionable communication about Google Cloud service disruptions. + In preview, it allows you to receive granular alerts about Google Cloud service disruptions, as a stop in your incident response, or integrated with your incident response or monitoring tools. * Today when there is an issue they publish it to Google Cloud Service Health page, but with Personalized Service health they take this a step further by allowing you to decide which service disruptions are relevant to you. + You would think they could figure this out for us, but what do we know? * Integration with your incident management workflow is available via PagerDuty or other tools. * Personalized Service Health emits logs and can push customizable alerts to make incidents more discoverable for your workflow.
07:22 📢 Jonathan - “You can guess how that product turned out, or started out. I guess it's, how do we not tell customers that we have all these outages? Let's make a personalized dashboard that they actually have to configure before it shows anything.”
13:48 Improved cost visibility and 60 percent price drop for Managed Service for Prometheus * Does all your newly generated data need someplace to live? Maybe that someplace is Prometheus. Well, now it’s cheaper! We love a good discount… * Prometheus is the de facto standard for K8 application metrics, but running it yourself can strain engineering time and infra resources, especially at production scale. * Managed services for prometheus can help offload the burden, freeing up your engineers to build your next big application rather than spending time building out metrics infrastructure. * Google is announcing a 60% price reduction for sample ingestion effective immediately. Thanks Google! * Metric samples are tiered into 4 buckets.
15:17📢 Matt - “I always wonder what they do on the backend to get such a good price reduction? And then my next question is, how long has it been there they haven't given me the price reduction that they've been making that much profit on it?”
15:32 📢 Justin - “I was wondering these things too, is the reason why people aren't adopting it is because it's too expensive? And is it really a margin builder for them - or is it that they weren't getting any revenue from it? So now they have an opportunity to get more revenue because customers now aren’t saying, oh, that's too expensive.”
16:33 📢 Ryan - “I've never seen someone like, ‘let's use Prometheus!’ and then be cost aware about that choice… those two things don't happen.” Azure 16:50 Azure Storage Mover support for SMB and Azure Files * Azure storage mover can now migrate your SMB shares to Azure File Shares * Fully managed migration service that enables you to migrate on-premise files and folders to Azure storage while minimizing downtime for your workload.
Oracle 18:55 Introducing Oracle Compute Cloud@Customer * Oracle is pleased to announce the latest addition to the Oracle Distributed Cloud portfolio! (Whatever that is.) * Oracle Compute Cloud@Customer a fully managed, rack-scale infrastructure platform that lets organizations run enterprise and cloud-native workloads on Oracle Cloud infrastructure. * Compute Cloud@Customer is built, installed, owned and remotely managed by Oracle, so you can focus your scarce IT resources on growing your business and improving operating efficiency * The @customer offering is built using 4th generation AMD EPYC processors with 96 cores per processor and DDR5 memory. You can subscribe to increments of 552 available processor cores with 6.7 TB of available memory. + Up to a maximum of 6,624 cores overall. * This is 3.8 times the number of cores per rack as AWS Outpost system and 1.4 times the densest Microsoft Azure Stack Hub systems. * Oracle, unlike Amazon, wisely decided to give you only the pricing by cost per core and not by the actual monthly price you will pay for this unit. + They really would like you to notice that their price per core is only $53 / month
21:37 📢 Justin - “So anytime someone uses @Customer or @Ppartner like this, I have horror stories back to the company I worked at where we did SaaS @partner, which was terrible; where we basically took our SaaS application that we managed and we're like, ‘we're going to go run it in a data center owned by a partner who's going to resell it.’ And that was terrible. And I did it twice with the same leader - the same guy came up with the same dumb idea two different places; failed both times. And yet I had to go implement it both times and have it fail. So it's great. Super awesome.” Continuing our Cloud Journey Series Talks 23:01 Cost optimization flywheel * Today we’re taking a deep dive into the AWS blog post “Cost Optimization Flywheel”. * The article discusses the concept of a "cost optimization flywheel" for managing and reducing costs in the cloud. * The key points of the article are as follows: + The cost optimization flywheel is a continuous cycle of four steps: "Analyze," "Recommend," "Deploy," and "Operate." + The first step, "Analyze," involves gathering data and analyzing it to identify areas where cost optimization is possible. + The second step, "Recommend," includes using automated tools and machine learning algorithms to generate cost-saving recommendations. + The third step, "Deploy," involves implementing the recommended changes identified in the previous steps. + The final step, "Operate," focuses on monitoring and measuring the impact of the changes made and adjusting strategies accordingly. * Amazon Web Services (AWS) provides various services, tools, and resources to assist customers in each step of the cost optimization flywheel. * The article emphasizes the importance of a continuous, iterative approach to cost optimization, rather than treating it as a one-time effort. * It also highlights the role of automation and machine learning in enabling more efficient and effective cost optimization. * The cost optimization flywheel helps organizations achieve cost savings and better align cloud spending with business needs. * The cost optimization flywheel enables organizations to gain greater visibility and control over their cloud costs, allowing them to allocate resources more strategically and make informed decisions about their cloud spending.
26:53 📢 Matt - “So in the rare occasion I defend Azure, this is if you have essentially it's the same thing as AWS with the, like you get X number of IOPS per gigabyte for GP2, they have the same process with Azure file share for like DFS on AWS, where like, or sorry, FSX on AWS, where you like, you get X number of gigabytes per IOPS. And if you need more IOPS, then you have to just provision more storage space.”
27:20 📢 Ryan - “It's more of an artifact of PyOps being too expensive though, right? Then like, that's just the cost model. Like, so it's, it's because you can achieve better results, more cheaper by doing it that way versus, you know, how it's supposed to be, which is if I needed high, high throughput, I should be able to check the box for PyOps, but it's so ridiculously expensive. It doesn't make sense to do so.”
27:55 📢 Jonathan - “Just in general, I don't like this blog post at all. I don't like the diagram. I don't like the write-up. It's really amateurish. My eight-year-old could have drawn a better diagram of this. If you really want the proper diagram, go to Phenom's Foundation and look at their framework and the phases of their framework. They have basically the same thing. Inform, optimize, and operate. going around a little circle, and a really nice cloud-agnostic write-up of the process that you should be following.”
Welcome episode 222 of The Cloud Pod Podcast - where the forecast is always cloudy! This week we take an in depth look at the latest earnings reports from all the major players, changes to IPv4 costs (inflation), Healthscribe, and all the news (in cybersecurity) that’s fit to print. Titles we almost went with this week: * 💊The CloudPod can finally read the doctors notes with HealthScribe * 🩺Amazon Healthscribe it's like transcription, but for doctors who use big words * 📋You get an LLM, you get an LLM; apparently EVERYTHING at Amazon gets an LLM * ☁️Should The Cloud Pod rename itself C? * 🐦Musk Flips Twitter the Bird (just for Jonathan)
A big thanks to this week’s sponsor: Foghorn Consulting provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. 📰Pre-Show📰 00:49 Follow up: Public Preview: Customer Managed Failover for ADLS Gen2 * The guys didn’t talk about this when it came up, as it didn’t get a full blog post and we killed lightning round - but Matt has thoughts! * Azure storage strives to give you an effective disaster recovery offering and are now supporting customer-managed failover for ADLS Gen 2 accounts. * Whether you are performing testing or facing a true disaster your primary endpoint can now initiate a failover from our primary endpoint to your secondary endpoint.
01:40📢 Matt - “It's just one of those features that I'm just dumbfounded that didn't exist day one. You know, encryption, DR - these things should just be there. And the fact that it's ADLS has been around for a decent amount of time.” 📰General News this Week:📰 03:06 The big news this week is EARNINGS: * MSFT - Microsoft’s stock falls as demand for cloud services cools
“The key milestone is that services revenue is, for the first time, more than double that of product revenue, demonstrating how Microsoft is leaving its product legacy behind,” he said. “While product revenue was $8 billion less over the full year, services revenue more than compensated, growing by $22 billion in the same period. Overall, it is clear Microsoft wants to become a services company. It needs to produce a constant stream of services innovations to continue this transformation, and it’s well-placed to do that.” -- Holger Mueller from Constellation Research.
GOOG - Strong cloud growth driven by AI workloads boosts Alphabet’s stock
06:42📢 Jonathan - “I'm okay with servers sticking around until they die. I mean, I architect things for failure anyway, so as long as Google also architecting their services to deal with those failures when they happen, it shouldn't be an issue.”
07:44📢 Justin - “I'm sure the other cloud providers are, you know, assessing this and making a determination of how long they're going to keep hardware and running and, you know, extending from five years to six years, I think is a pretty low risk. you know, it gets more expensive for them from a green computing initiative, right? Like, you know, older hardware is not as efficient, it's more power hungry. So some of those are a challenge for them over time as well. Keep those things running for six years. So I don't think you'll see companies really stretch it out beyond six.”
AMZN - Amazon delivers surprisingly good earnings results as AWS growth starts to stabilize
13:35 ‘Every single’ Amazon team is working on generative AI, says CEO * During earnings, Andy Jassy said “Every Single one of Amazon's businesses have multiple generative AI initiatives going on right now.” * He added “They range from things that help us be more cost-effective and streamlined in how we run operations and various businesses, to the absolute heart of every customer experience in which we offer. It’s true in our Stores business, it’s true in our AWS business, it’s true in our advertising business, it’s true in all our devices — and you can just imagine what we’re working on with respect to Alexa there — it’s true in our entertainment businesses... every single one. It is going to be at the heart of what we do. It’s a significant investment and focus for us.
14:23📢 Justin - “It sort of hearkens back to Gates writing a telling memo about how we ‘need to become an internet company’... Is this that moment for AWS? They're an AI company now?
14:36📢 Jonathan - “I think they've been an AI company for a long time, there's just not a lot of it has been customer facing.”
15:05 What leaked court docs tell us about AWS, Azure and Google cloud market shares * Sometimes we get interesting data from weird sources; this time it's a Silicon Angle article that reports from leaked court documents of the ongoing Activision Blizzard/Microsoft Acquisition hearings. * The data shows that Azure Revenue maybe 25% lower than previous estimates (note they aren’t broken out by the cloud provider) * This means that AWS is probably maintaining a 50% share of Cloud revenue through 2023. It also helps Google Cloud, as its market share isn’t affected much. * The court documents show that Azure revenue for Fiscal 2022 is at 34B, which is 10 billion lower than analysts estimated. * While technically, Microsoft can put the money where it wants, and this may be a play to make it look like they have less of a monopoly than the FTC argues. But they are under oath to tell the truth… so it's unlikely. Maybe. Probably? * Just a reminder: only AWS reports in a clean manner.
AWS 17:31 ALL NEW! New Regions and Availability Zones * Now Open – AWS Israel (Tel Aviv) Region * New: AWS Local Zone in Phoenix, Arizona – More Instance Types, More EBS Storage Classes, and More Services + The AWS Tel Aviv region is now open with the terribly named il-central-1 API name. Is this a problem? That may cause some issues with the i and the l, so users beware… + Also Arizona got a new local zone, which must go with their carbon neutral plans.
18:19 📢 Matt - “I'm still trying to figure out where in Israel you have three zones that are more than 200 miles apart from each other.”
18:40📢 Justin - “We need someone to accidentally leak all that data again, so we get an updated Amazon map, because they don't like to tell you exactly where these things are, but there's that leak that came out a couple years ago, and they had the actual addresses of all of the data center regions and availability zones. We just need one of those to happen so we can tell.”
19:15 New – AWS Public IPv4 Address Charge + Public IP Insights * You know you're in inflationary times or desperate for revenue when even AWS is raising prices on their customers. * Effective Feb 1 2024, AWS will be charging $0.005 (half a penny) per IP hour for all public IPV4 addresses, whether attached to a service or not. + If they’re NOT attached to a service, there will actually be an additional charge, so beware of that. + Managed services or not * AWS explains that IPv4 addresses are a scarce resource, and the cost to acquire them has risen over 300% in the last 5 years. This new cost increase reflects that price increase. * This includes services AWS Manages for you that leverage IPv4 addresses like lnat gateways and load balancers. * AWS will give you 750 hours of one IPv4 address usage per month for the first 12 months. (Just a reminder, a single load balancer uses 3, so…) * You will not be charged for BYOIP. * To help you know how many of these are in use, Amazon VPC IP address Manager is offering a Public IP Insights dashboard, which is free to use.
21:08📢 Matt - “I get why they're doing it. You know, with all the cloud providers, all buying up them, there is a scarcity of resources but the same point it adds up quickly. You have what? Three NAT gateways, so that's three, you have a couple load balancers running your application or NLBs, there's another couple, three, you know, $4 round up here per month, it starts to - you know, per IP address - it starts to add up real quickly. Especially if you're running a small business.”
22:48📢 Jonathan - “I'm disappointed that they're passing that cost on to customers. They're already in possession of 100 million IPv4 addresses. I think they can probably afford to not have done this.”
29:44 New Amazon EC2 Instances (C7gd, M7gd, and R7gd) Powered by AWS Graviton3 Processor with Local NVMe-based SSD Storage
30:07 New – Amazon EC2 P5 Instances Powered by NVIDIA H100 Tensor Core GPUs for Accelerating Generative AI and HPC Applications * New Instances for the Graviton 3 with local VNME with the c7gd, m7gd, and r7gd instance families. ½ to 64/512 configurations * For your AI and HPC needs, the new P6 instance is the next generation GPU instances leveraging the latest NVIDIA H100 Tensor Core GPUs * These new GPUs provide a reduction of up to 6 times in training timing. * Options include 192 VCPU, 8 H100 GPUs, and 2tb of RAM * This is a significant bump over the P4d.24xlarge servers these replace
30:48📢 Jonathan - “Just the cost of the hardware is phenomenal. I mean, I jokingly priced out a server from Supermicro that had a bunch of these GPUs in, you know, for when I win the lottery. And just one of those GPUs is $40,000.”
Now… amortize that over six years instead of 4…
31:32 Introducing AWS HealthScribe – automatically generate clinical notes from patient-clinician conversations using AWS HealthScribe * AWS HealthScribe, is a new HIPAA-eligible service empowering healthcare software vendors to build clinical applications that automatically generate preliminary clinical notes by analyzing patient-clinician conversations is now available in preview. * AWS Healthscribe analyzes the patient-clinician conversation audio to provide: + Rich Consultation Transcripts + Speaker Role Identification + Transcript Segmentation + Summarized Clinical Notes + Evidence Mapping + Structural Medical Terms
32:58📢 Jonathan - “I fear that things like this will be used by insurance companies. They want to see the transcripts of conversations that you had over the years to evidence things for coverage. So I'd be concerned that this wouldn't actually work out in the consumer's favor at all…I can't help but think that the transcriptions will be anonymized and used to train machine learning models and all of a sudden we'll have a virtual Amazon doctor that we can call upon Chime and get a consultation for how many dollars.”
35:08 Preview – Enable Foundation Models to Complete Tasks With Agents for Amazon Bedrock * Bedrock gives you a preview of agents for Amazon Bedrock, a new capability for developers to create fully managed agents in a few clicks. Agents for Bedrock accelerate the delivery of generative AI applications that can manage and perform tasks by making API calls to your company's systems. Agents extend FMs to understand user requests, break down complex tasks into multiple steps, carry on a conversation to collect additional information and take actions to fulfill the request. * We’re on to you AWS - this is 100% the beginnings of Skynet. You heard it here first, folks
GCP 38:00 A new partnership to promote responsible AI * Anthropic, Google, Microsoft and Open AI are announcing the formation of the Frontier Model Forum, a new industry body focused on ensuring safe and responsible development of Frontier AI models. * The Frontier model forum will draw on the technical and operational expertise of its member companies to benefit the entire AI ecosystem, such as through advancing technical evaluations and benchmarks, and developing a public library of solutions to support industry best practices and standards.Those things include: + Advancing AI Safety Research + Identify best practices + Collaborating with Policymakers, academics, civil society and companies + Supporting efforts to develop applications that can help meet society's greatest challenges + Are you in AI? Do you develop and deploy Frontier models? You too can join and participate!
39:29 📢 Jonathan - “Yeah, it makes sense. I mean, Antropic has already been working on AI safety for years. So instead of reinventing things from scratch, Google and Microsoft and OpenAI probably do well to partner with somebody who's already been working on this.”
👂Listener Survey: What do you all think of the reports that ChatGPT has gotten dumber? Let us know your thoughts!
42:15 Attack Path Simulation is now Generally Available * Now available in Security Command Center Premium * This is a new threat prevention capability that automatically analyzes your Google Cloud Environment to discover attack pathways, and generates attack exposure scores so you can prioritize security findings.
42:28 📢 Justin - “What I think is a really nice feature and really good to have, I just don't know why they're insisting that I pay the premium price for Security Command Center. Premium to get it. I think every customer who's trying to secure their Google Cloud environment should have this for free. as just part of the value add of having Google, especially since it's simulations that tell you, hey, you have a potential attack vector.” Azure 47:58 Always learning, always adapting: Unpacking Azure’s continuous cybersecurity evolution * Azure's cybersecurity strategy is based on three pillars: prevention, detection, and response. + Prevention (don’t actually do anything proactive) + Detection (Your customers detect it) + Response (Deny, and then be publicly embarrassed) * Azure uses a variety of tools and techniques to prevent attacks, including artificial intelligence, machine learning, and behavioral analytics. * Azure also has a team of security experts who monitor for attacks and respond to incidents. * Azure is constantly evolving its cybersecurity measures to stay ahead of the latest threats. * Too bad it doesn’t seem to be working. Sad.
49:16 📢 Matt - “That was a Tenable literally saying, hey, we found a bug. And they said, cool, we fixed it. And normally when they fix it, they tell them how, so the pen tester can go back in and confirm that it was fixed. And they just said, hey, we fixed it. No one knows how they fixed it. If they just blocked Tenable IPs or what they did. Like who knows? Continuing our Cloud Journey Series Talks After Show RIP Twitter, Hello X * The bird is dead, long live X * Twitter rebranded to X corp officially, and we still can’t get used to it. * Musk has a much larger vision than 120 character tweets, with the idea that Twitter will evolve into something new, the “everything app” or the public town square. * This was further enforced by hiring Linda Yaccarino as CEO. * Ironically, Linda twitter that it's rare in life or business that you get a second chance to make another big impression... And they sure did with their X HQ neighbors in San Francisco, as the new sign on the building kept many of them awake before being taken down by the city. + Can you say ‘public nuisance’ kids? + Permits? We don’t need no stinkin’ permits.
Closing And that is the week in the cloud! We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, slack team, send feedback or ask questions at thecloudpod.net or tweet at us with hashtag #thecloudpod
Welcome episode 221 of The Cloud Pod podcast - where the forecast is always cloudy! This week your hosts, Justin, Jonathan, Ryan, and Matthew look at some of the announcements from AWS Summit, as well as try to predict the future - probably incorrectly - about what’s in store at Next 2023. Plus, we talk more about the storm attack, SFTP connectors (and no, that isn’t how you get to the Moscone Center for Next) Llama 2, Google Cloud Deploy and more! Titles we almost went with this week: * Now You Too Can Get Ignored by Google Support via Mobile App * The Tech Sector Apparently Believes Multi-Cloud is Great… We Hate You All. * The cloud pod now wants all your HIPAA Data * The Meta Llama is Spreading Everywhere * The Cloud Pod Recursively Deploys Deploy
A big thanks to this week’s sponsor: Foghorn Consulting, provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. 📰News this Week:📰 00:33 HashiCorp State of Cloud Strategy Survey 2023: The tech sector perspective * We didn’t find anything in the survey particularly interesting, until they broke it down by respondents who are actively in the tech industry. * Despite strong Macro pressure and recent earnings reports about slowness in growth, 48% of respondents increased their cloud spend in the last 12 months * 94% of tech industry respondents indicated that multi-cloud works, citing that it has advanced or achieved their company’s business goals. + Sure, Jan. * 91% of tech companies rely on platform teams.
01:37📢 Justin - “The thing about that is, I could see the value for Saas vendors, right? Especially if you're dealing with large data ingestion. I think we were talking to New Relic, for example, when they launched a New Relic on Azure.It saves their customers a bunch of money because they're not doing egress charges out to the internet to AWS to basically get the New Relic data in. And they see that as a strategy that helps customers reduce money and also helps increase adoption as well as partnership opportunities.” AWS 05:11 AWS Summit New York just happened, and there were a lot of announcements (and protests.) We won’t spend a lot of time going over each of these in the show, but the link are available for you to peruse at your leisure. * Introducing AWS HealthImaging — purpose-built for medical imaging at scale + AWS is very excited to announce the general availability of AWS HealthImaging, a purpose-built service that helps builders develop cloud-native applications that store, analyze, and share medical imaging data at a petabyte scale. HealthImaging ingests data in the DICOM P10 format. It provides APIs for low-latency retrieval and purpose-built storage.
06:42 Llama 2 foundation models from Meta are now available in Amazon SageMaker JumpStart * After we mentioned Azure getting LLama Support, we couldn’t ignore this article that you now use LLama 2 on Sagemaker.
08:04📢 Jonathan - “There’s an awful lot of models out there, actually. If you go to Huggingface.co there's a guy called Tom Joins known as ‘The Bloke’ and he has available for download like close to 600 different models and a lot of them are like quantized versions of the larger models so you can run them on sensible currency hardware. But yeah, there's dozens to choose from that have been trained on different data sets. Some are tuned for chats, some are tuned for other things. So yeah, don't be restricted by what the cloud providers actually turn into products and sell you when you can use any open source tools like PyTorch to take these models and do whatever you like with them, even in SageMaker.”
09:41 AWS Transfer Family launches SFTP connectors * We would argue that AWS Transfer Family has done more innovation than any other SFTP server vendor in a long time. * This time they are launching SFTP connectors, which is a fully managed and low code capability to securely and reliably copy files at scale between remote SFTP servers and Amazon S3. * Files transferred using SFTP connectors are stored in Amazon S3, enabling you to unlock value from data using analytics, data lakes or AI/ML Services in AWS. * AWS Transfer Family support for SFTP connectors is available in all AWS Regions where the service is available, and pricing information can be found here.
GCP 16:48 Cloud Next 2023 session catalog is live, covering all of your key cloud topics * Google Cloud Next is just about a month away, and Google Cloud Next has launched their session catalog. * There will be sessions on AI, (how surprising) Serverless/Containers, Devops, and more.
17:26 📢 Ryan - “So I want to know if I can use AI to schedule me in these things. Because I, with every single conference, I always have the best of intentions of going through the catalog in advance and figuring out what I want to do and getting all excited and the whole thing. But without fail, it's five minutes before a session and I'm trying to figure out how to get across to wherever I need to go.
18:09 Cloud Deploy gets deploy parameters, new console creation flows, and reduced pricing * Google Cloud Deploy announced new capabilities today, the first to add to their previously announced Parallel deployments capability, is the ability to use deployment parameters to focus your deployed to child targets. * They have also reduced the price of Active Cloud Deploy delivery pipelines and expanded no charge usage to include single-target delivery pipelines, making it easier to get started with cloud deploy. * It's easier than ever to deploy your first pipeline with simple deliver pipelines and targets, and release directly in the Cloud Deploy console for trials and experiments
19:05 📢 Jonathan - “A lot of the business that the cloud providers are seeing now are coming from cloud migrations. I'm sure they're getting some startups and cloud native apps as well, but a lot of the business is going to be from migrations. And people either have Jenkins already or some other kind of CI. set of tooling and build processes and things like that. So if Google is going to provide services for deployments, then it would really be in their interests to make it so that you could also do on-prem deployments with the same set of tools.”
23:13 Introducing Google Cloud Support on mobile: Manage support cases on-the-go * On-Call engineers supporting Google Cloud can be excited that they can now view and manage google cloud support cases right from the google cloud mobile app * This is perfect for anyone who wants to be ignored, or who loves watching your issues not get fixed in a timely manner.
24:14 📢 Justin - “So I will say - definitely support case. It's definitely a use case I would use the mobile apps for. And then rebooting an EC2 box, just as a preliminary, like I'm on my way home, let me reboot this box and hope it fixes it. And sometimes it does, which works. So those are the two use cases I've mostly had, but yeah, like looking at performance metrics, looking at, you know, different things, trying to set up anything like, yeah, forget all that use case. Like no, no time for that on my little teeny tiny phone to look at logs.” Azure 24:43 Compromised Microsoft Key: More Impactful Than We Thought * The Wiz, one of the leading cloud security researching companies, as well as Cloud Security Posture Management firms, did some extensive research in the recent storm attack. * Wiz reports that microsoft indicated only Outlook and Exchange online were impacted by the token forging technique. + Wiz Research has found that the compromised signing key was more powerful than it may have seemed, and was not limited to just those two services. * Wiz concludes that multiple types of Azure AD applications, including every application that supports personal account authentication such as Sharepoint, Teams, Onedrive and any app that supports login with Microsoft under certain conditions could be compromised. * While Microsoft released IOCs for the encryption keys and source ip addresses, Wiz says it will be difficult for customers to detect the use of forged tokens against their applications due to lack of logs on crucial fields related to the token verification process. * Wiz also researched where the key comes from and believes it was able to sign OpenID v2.0 tokens * Microsoft responded to the wiz article: + Many of the claims made in this blog are speculative and not evidence-based. We recommend that customers review our blogs, specifically our Microsoft Threat Intelligence blog, to learn more about this incident and investigate their own environments using the Indicators of Compromise (IOCs) that we've made public. We’ve also recently expanded security logging availability, making it free for more customers by default, to help enterprises manage an increasingly complex threat landscape
24:14 📢 Ryan - “I like changing the security logging to free though. I think that that's a good response. I'll give them credit for that one.” Oracle 33:20 Easily install Oracle Java on Oracle Linux in OCI: It’s a perfect match! * For those of you who leverage Oracle Cloud, you now get a license and full support of Oracle Java SE and Oracle GraalVM versions at no extra cost. * This is a trap if you're multi-cloud. * Oracle Java is supported by Oracle Linux. * It’s also compatible with Intel/AMD and Arm based processors.
Continuing our Cloud Journey Series Talks The Cloud Shared Responsibility model is a framework that defines the security and compliance responsibilities of cloud service providers (CSPs) and their customers.
The model is based on the principle of shared responsibility, which means that both the CSP and the customer share responsibility for security and compliance in the cloud.
The CSP is responsible for the security and compliance of the cloud infrastructure, platform, and services. The customer is responsible for the security and compliance of the data, applications, and workloads that they deploy in the cloud.
The key points of the Cloud Shared Responsibility model are as follows: 1. The CSP is responsible for the security and compliance of the cloud infrastructure, platform, and services. 2. The customer is responsible for the security and compliance of the data, applications, and workloads that they deploy in the cloud. 3. The CSP and the customer must work together to ensure the security and compliance of the cloud environment. 4. The CSP must provide customers with the information and tools they need to meet their security and compliance obligations. 5. The customer must implement appropriate security and compliance controls in the cloud environment. 6. The CSP and the customer must monitor and assess the security and compliance of the cloud environment. 7. The CSP and the customer must respond to security and compliance incidents in a timely and effective manner. 8. The CSP and the customer must cooperate with law enforcement and other government agencies in the event of a security or compliance incident. 9. The CSP and the customer must maintain appropriate documentation of their security and compliance efforts. 10. The CSP and the customer must regularly review and update their security and compliance policies and procedures.
The Cloud Shared Responsibility model is a complex and ever-evolving framework. It is important for both CSPs and customers to stay up-to-date on the latest changes and best practices.
The key differences between shared security model and shared fate security model are: * In a shared security model, each component is responsible for its own security. In a shared fate security model, all components are responsible for the security of the system as a whole. * In a shared security model, a component can be compromised without affecting the security of the other components. In a shared fate security model, a compromise of one component can lead to the compromise of the entire system. * In a shared security model, it is easier to identify and fix security vulnerabilities. In a shared fate security model, it is more difficult to identify and fix security vulnerabilities because all components are interconnected. * In a shared security model, it is easier to recover from a security breach. In a shared fate security model, it is more difficult to recover from a security breach because the entire system is compromised.
Shared security models are typically used in systems where the components are not tightly coupled. Shared fate security models are typically used in systems where the components are tightly coupled. After Show Wholesale copying’: Israel’s Orca Security sues rival Wiz for patent infringement Closing And that is the week in the cloud! We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, slack team, send feedback or ask questions at thecloudpod.net or tweet at us with hashtag #thecloudpod
Welcome episode 220 of The Cloud Pod podcast - where the forecast is always cloudy! This week your hosts, Justin, Jonathan, Ryan, and Matthew discuss all things cloud, including virtual machines, an AI partnership between Microsoft and Meta for Llama 2, Lambda functions, Fargate, and lots of security updates including the Outlook breach and WORM protections. This and much more in our newest episode. Titles we almost went with this week: * Too Many Bees died for Honeycode * Microsoft announces that AI will only cost you 3 arms and a leg. * The Cloud Pod also detects Recursive Loops in cloud news * The cloud pod disables health checks bc who needs them
A big thanks to this week’s sponsor: Foghorn Consulting, provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. 📰News this Week:📰 AWS 02:02 Detecting and stopping recursive loops in AWS Lambda functions * Do you utilize AWS Lambda? Here’s an update for you. * AWS Lambda is introducing a recursion control to detect and stop lambda functions running in a recursive or infinite loop. * This supports Lambda Integrations with SQS, SNS or directly via the Invoke API. * Lambda defects functions that appear to be running in a recursive loop and drops the request after exceeding 16 invocations * This can help reduce costs from an unexpected lambda invocation because of recursion. * You’ll receive notification that this action was taken through the AWS Health Dashbboard, email or by configuring Amazon Cloudwatch Alarms. * You can turn this off by reaching out to AWS support, if you have a valid use-case where recursion is intentional, or if you need to loop something through more than 16 times. * This is also the trap - if you say turn it off and then cry about a ridiculous bill due to your runaway recursion - they will now force you to pay it. So, listeners beware.
03:50📢 Matt- “I can definitely say I’ve caused an ‘in the hundreds of dollars’ very rapidly by this in the past in a dev account. So it's definitely something that's easy to do if you are doing recursion and you make an ‘if’ statement the wrong way.”
04:28 AWS Fargate Enables Faster Container Startup using Seekable OCI * Are you a Fargate user who has been jealous of all those folks using ECS who have been able to utilize the seekable OCI or Sochi capability of lazy loading of containers? Well pine away no more! This feature is now available to you! * As you most likely know, AWS last year started supporting lazy loading of containers via the Seekable OCI (SOCI) technology. + This was due to research that said image downloads accounted for 76% of container startup time, but on average only 6.4% of data is needed for the container to start and do useful work. * Now this feature is coming to AWS Fargate, which will help your application deploy and scale out faster by enabling containers to start without waiting to download the entire Container Image. * As of launch, you can now use it for both Fargate ECS as well as Fargate Naturally and ECS Compute. * Note that supporting this capability does require you to build a SOCI index for the container image. + Amazon has made this part easier, however, with a SOCI index builder. + This is a serverless solution for indexing container images in AWS. + If you like you can also create the SOCI indexes manually via the SOCI CLI provided by the soci-snapshotter project.
06:27📢 Justin- “I suspect this is a big issue if you're doing data learning sets and containers, right? So you need to load up a large amount of data set into the container, to basically then be able to train the model, but you know, you can start training the model on a subset of the data; you don't need the full thing to be loaded. And so I suspect that's really where the use case of this comes into play - in big data training and AI training.”
07:56 Amazon FSx for NetApp ONTAP Now Supports WORM Protection for Regulatory Compliance and Ransomware Protection * FSX for Netapp OnTap now supports Snaplock, an ONTAP feature that gives you the power to create volumes that provide Write Once Read Many (WORM) functionality. + (Or as we refer to it… how to turn your SAN into a paperweight and use it with care). * Snaplock volumes prevent the modification or deletion of files within a specified retention period, and can be used to meet regulatory requirements and to protect business-critical data from ransomware attacks and other malicious attempts at alteration or deletion. * FSx for OnTAP is the only cloud-based file system that supports Snaplock, and the ability to move Snaplock data to lower costs cloud storage. For now.
08:38📢Jonathan - “This is kind of a can of worms really. I see the advantage of protecting against ransomware, but also customers or consumers have a right to have the data deleted. So what happens if your data is on a worm drive with a policy that says it can't be deleted, but the regulatory requirements say that you have to delete customer data.”
20:29 Announcing AWS Fault Injection Simulator new features for Amazon ECS workloads AWS Fault Injection Simulator supports chaos engineering experiments on Amazon EKS Pods * AWS Fault Injection Simulator now supports Chaos experiments for EKS and ECS workloads. * We’re not sure just how much ADDITIONAL chaos you want to add to your containers, but now you have options! * ECS Actions Supported + Task-cpu-stress + Task-io-stress + Task-kill-process + Task-network-blackhole-port + Task-network-latency + Task-network-packet-loss * EKS supports all of the same actions.
11:02 📢 Jonathan - “We don't need to inject defects. We have plenty of our own.”
12:42 📢 Ryan - “Yeah, other than the basics of fault injection when it first came out, I don't think I've really used it since because like you said - I wish I could get to a level where I maintain application to a level where I'm like, yeah, I'm gonna make it really hardened and resilient.”
13:39 The future of Amazon's Honeycode cloud service is not looking so sweet * Filed under news we’re not at all shocked about, Honeycode may be on its last legs. * Originally launched in 2020, Honeycode was supposed to be the answer to AWS “low-code” development, which uses a simple drag and drop interface to help users easily build apps without advanced software engineering skills. * Amazon is currently providing bare minimum support for Honeycode, with no active promotions or sales activities for the app, according to people familiar with the matter. * It's basically a KTLO product, joining other services like Workdocs, Workmail and SimpleDB. * Amazon has great infrastructure as code, but has struggled with SaaS apps (outside of Connect IMO). With competing products for things like Dropbox, Slack, Tableau with only marginal success. * Interestingly enough, Honeycode was a high profile project when it launched. * Honeycode is still listed in the Amazon Directory but appears to have been absorbed by the new Next Generation Developer Experience team, which is focused on Generative AI.
GCP 15:48 Document AI introduces powerful new Custom Document Splitter to automate document processing * Google is focusing a lot on documents this year, with the launch of Custom Document extractor in February, and Custom Document Classifier in March. * Now they are announcing the latest feature in Document AI Workbench: the Custom Document Splitter. This will help users automatically split and classify multiple documents in a single file. * CDS allows customers to sort and classify their documents. + For example, businesses can validate if they have all the needed documents for an applicant. + Furthermore, individually classified documents can help automate other downstream processes. + The goal is to help businesses lower their documenting time and costs.
17:52 📢 Ryan - “In the pre-show I was talking about my expense report, and having to basically give the top page that has the account summary, but I don't really want all my individual cell phone transactions. And so being able to do stuff like that - automatically pre-processing, where you're splitting that up and not storing ages and ages of ‘this page intentionally left blank’ in your cloud storage is probably a pretty good idea.” Azure 17:49 Hotpatch is now generally available on Windows Server VMs on Azure with the Desktop Experience installation mode * Hotpatch is now available for Windows Server Azure Edition VMs with Desktop Experience installation mode using the newly released image. * Hotpatch is a feature that allows you to patch and install OS security updates on Windows Server Azure Edition Virtual machines on Azure without requiring a reboot. + Justin has a problem with this assertion, however… * Apparently, previously available only for Server Core Installations (with no GUI), now, they can do it with a full GUI every month. * Benefits + Lower workload impact with fewer reboots (allegedly) + Faster deployments of updates as the packages are smaller, install faster, and have easier patch orchestration with Azure Update Manager (allegedly) + Better protection, as the Hotpatch update packages are scoped to Windows security updates that install faster without rebooting (allegedly)
19:09 📢 Matthew- “I prefer not to ever log into my servers, ever deal with them in any way, shape or form. If there is a patch, the windows auto OS update feature, I don't know what the official name is on Azure for it, but it literally just takes care of it for you in the scale sets. You don't have to deal with it. Works great. Why do I need to actually patch local servers? I prefer not to do this… That is why I pay Microsoft to write it for me.”
19:41 📢 Ryan - “Well, with improvements like this, like Azure is going to be the only place to host Windows workloads, right? Because it's all the gripes with Windows. You're like, well, why would I run this another cloud provider? I have to reboot it every five minutes.”
20:07 Always Serve for Azure Traffic Manager * So you hotpatched your server and now need a reboot. * Now you can now use Always Serve for Azure Traffic Manager! * You can disable endpoint health checks from an ATM profile and always serve traffic to that given endpoint. You can also now choose to use 3rd party health check tools to determine endpoint health, and ATM native health checks can be disabled, allowing flexible health check setups.
20:55 📢 Jonathan - “It’s a pretty decent feature, actually. It seems weird to remove health checks, but what they're providing is a way to plug in your own health check infrastructure. So if you need something more complex than just a REST call or a web call that gets 200 or 500 back, then you can build something a lot more complex that runs much better tests, and then plug that into the load balancer.”
21:24 📢 Justin - “It's a lot of heavy lifting for me to now pull this all into APIs where… why don't you just give me the ability to run a custom health check as the health check through serverless, and then based on the output of what I give you, you can then do different scale set operations. Why completely divorce yourself from the responsibility and say, now you have a third party that's responsible. We're off the hook, when you could have given me a system that allows me to run my own code to do health checks.”
23:56 Microsoft and Meta expand their AI partnership with Llama 2 on Azure and Windows * Microsoft is doing all the AI things, and now announced support for the Llama 2 family of LLMs on Azure and Windows. * LLama2 is designed to enable developers and organizations to build generative AI powered tools and experiences. * Meta and Microsot share a commitment to democratizing AI and its benefits, and they are excited that Meta is taking an open approach with Llama 2.
23:56 Furthering our AI ambitions – Announcing Bing Chat Enterprise and Microsoft 365 Copilot pricing * Microsoft Inspire has announced Bing Chat Enterprise and Microsoft 365 Copilot pricing. * Bing chat enterprise delivers an AI-powered chat for the workspace, rolling out in preview to over 160 million people. * Also, for budgeting, you should know that Copilot is going to cost you $30 per user per month on top of your MS365 E3, E5, Business Standard and Business Premium customers. * Timing will be shared soon. We’re on pins and needles over here.
24:46 UPDATE: Analysis of Storm-0558 techniques for unauthorized email access * Storm-0558 acquired an inactive MSA consumer signing key and used it to forge authentication tokens for Azure AD enterprise and MSA consumer to access OWA and Outlook.com. All MSA keys active prior to the incident – including the actor-acquired MSA signing key – have been invalidated. Azure AD keys were not impacted. * The method by which the actor acquired the key is a matter of ongoing investigation. * Though the key was intended only for MSA accounts, a validation issue allowed this key to be trusted for signing Azure AD tokens. * This issue has been corrected. (Allegedly) * The big questions remain: what did they steal and how did they steal it?
26:09 📢 Justin - “So they fixed the root, which is good, but they still don't actually know how they got the acquired the key or at least they've not publicly announced how the packer got the key that was used and the whole thing. So this is not great, but I appreciate the thoroughness of this writeup versus the original document. And I do hope they answer the final piece of the puzzle. So we all. feel maybe a little better or a little worse. I'm not sure how I feel.” Closing And that is the week in the cloud! We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, slack team, send feedback or ask questions at thecloudpod.net or tweet at us with hashtag #thecloudpod
Welcome episode 219 of The Cloud Pod podcast - where the forecast is always cloudy! Today your hosts are Justin and Jonathan, and they discuss all things cloud, including clickstream analytics, databricks, Microsoft Entra, virtual machines, Outlook threats, and some major changes over at the Google Cloud team. Titles we almost went with this week: * TCP is not Entranced with Entra ID * The Cave you Fear to Entra, Holds the Treasure you Seek * Microsoft should rethink Entra rules for their Email
A big thanks to this week’s sponsor: Foghorn Consulting, provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. 📰News this Week:📰 AWS 00:47 Clickstream Analytics on AWS for Mobile and Web Applications * Want some solutions? Don’t we all! Well, for clickstream analytics at least, Amazon has released an update that has pre built solutions using Amazon components. * Covers iOS and Android * You can now deploy an end-to-end solution to capture, ingest, store, analyze and visualize your customers' clickstreams inside your web and mobile applications. * This solution is built using standard AWS services to allow you to keep your data in the security and compliance perimeter of your AWS account and customize the processing and analytics as you require, giving you the full flexibility to extract value for your business. * The new solution leverages ECS+Kafka/Kineses/S3, EMR, Redshift and Quicksight * You can use plugins to transform the data during processing via EMR< AWS has provided you to build in ones for User Agent enrichment and IP address enrichment. + You can also export your source server inventory list to a CSV file and download it to your local disk. + You can always continue leveraging the previously launched import and export functionality to and from an S3 bucket if you're so inclined. + Additional Post launch actions, adds four predefined post launch actions. - Configure Time Sync - Validate Disk Space - Verify HTTP(S) response - Enable Amazon Inspector * If only this had been written 9 months ago when everyone was trying to run away from Google analytics…
02:45 📢 Justin- “I believe they have cloud cost optimization opportunities and solutions, but I would appreciate maybe some additional of those. More dashboards, more pretty pictures for dealing with your Amazon bill.”
02:58 Introducing the AWS .NET Distributed Cache Provider for DynamoDB * Have you ever had to set up DynamoDB as a distributed cache provider in .Net? Were you frustrated with the documentation and/or the complexity of what you have to do? Well, fear not, gentle listener! Amazon has your back. * Now in preview is AWS .NET Distributed Cache Provider for DynamoDB. This library enables Amazon DynamoDB to be used as the storage for ASP.NET Core’s distributed cache framework. * This avoids unnecessary heavy lifting to implement a common .net core platform.
03:26📢 Jonathan - “That's awesome. I mean, this is replacing things like memcache and other similar technologies that are pluggable, I assume.”
04:09📢 Justin - “One of the things I've done quite a few times is enable session state for ASP.net code. And you can actually even use this Dynamo TV table to cache that, which is kind of great, because the way you either do it is you use Redis, which is the right way to do it, or you use SQL Server, which is the wrong way to do it. And you cause yourself all kinds of grief when your application gets a few hundred connections as your SQL Server can't keep up with it. So, always good to have another option in addition to Redis that is not SQL Server.” GCP 04:44 Former Amazon Web Services data center leader Chris Vonderhaar joins Google Cloud * Chris Vonderhaar (who was the VP of AWS Data Center Community and left in the spring) has now joined Google as VP Demand and Supply Management. * This is part of a larger shakeup in Google Cloud’s management team. * The changes include longtime google executive Urs Holzle, shifting to an Individual Contributor Role. * In the past Amazon has been aggressive about pursuing legal action against former executives, we will see what happens in this case.
06:20 Set task timeout (jobs) * Have you been angry that Google Cloud Run only supports a timeout of 1 hour? * Are you also angry that they’ve pivoted to using things like Knative to solve that problem? * Well, release that anger - you can now have Google Cloud Run timeouts up to 24 hours. * This is great for those LONG running jobs. * We here at The Cloud Pod like to refer to this as “serverful for serverless” and it's a great feature.
06:48📢 Justin - “Do be careful on this one. The pricing can get a little out of control on long running transactions. So do your math and ROI calculation to see if maybe you should just run it in a container, if it was going to take that long. Just to put it out there.” Azure 08:44 Latest generation burstable VMs - Bsv2, Basv2, and Bpsv2 * Microsoft has announced the public preview of new burstable VMs, Bsv2, Basv2 and Bpsv2. * These VMs offer a more cost-effective way to run workloads that burst in and out of activity. * BSV2 VMs have a base performance level that is guaranteed, and they can burst to a higher performance level for short periods of time. * BASV2 VMs are designed for workloads that only need to run occasionally, and they offer a pay-as-you-go pricing model. * To learn more about the new burstable VMs, check the Azure Blog announcement and Burstable VM documentation.
09:35 📢 Jonathan- “You almost love this kind of thing because now they can charge for the full Windows license for all 8 cores But you actually only get 2 cores worth of performance.”
09:43 📢 Justin - “I hadn't thought of that perspective, but yes, you're completely right. Well done, Microsoft, well done.”
09:53 Microsoft Entra expands into Security Service Edge and Azure AD becomes Microsoft Entra ID * Azure AD is now known as Microsoft Entra ID. * The name change represents the evolution and unification of the entire Microsoft Entra family, and a commitment to simplify secure access. * Did you know there was a WHOLE Entra family? We didn’t. Must have missed that blog. * No action other than snickering at the name is required for you, the end user. * Entra ID is more than just the AD you “know and love,” - it also provides: + App Integrations via SSO, Passwordless and MFA + Conditional access + Identity protection + Privileged Identity Management + End-User Self Service + Unified Admin Center * This brings it in line with the rest of the Entra product family with includes ID Governance, External SSO, Verified ID, Permissions Management, Workload ID, Internet Access and Private App Access * More information on Entra will be available at the live Tech Accelerator event on July 20th, 2023.
09:43 📢 Justin - “So apparently the Entra product that was announced a year ago in July of 2022, we clearly were on vacation… It’s interesting, you know, how we've been doing the show for a couple of years. I would say that the last 15 months now have been just kind of slow in general terms. So I don't know if that's a sign of the maturing cloud market, I don't know if that's a sign of productivity issues and layoffs impacting things, but I am sort of curious to see what Google Next drops this year. I'm really curious to see what reInvent does this year because it definitely feels like big innovations are kind of slowing down. And I don't know if that's just a perception I have or if that's reality.”
14:36 Microsoft mitigates China-based threat actor Storm-0558 targeting of customer email * Microsoft mitigated a China-based threat actor targeting customer email. * The threat actor used a variety of techniques to steal email credentials, including phishing emails, malicious websites, and watering hole attacks. * Microsoft blocked the threat actor's activity and notified customers who may have been affected. * Most concerning in the announcement is some of the details - or lack of details. + The actor exploited a token validation issue to impersonate Azure AD users and gain access to enterprise mail.
15:01 📢 Justin - “The most concerning part of the answer though, in my opinion, is that they talk about the quote here, is the actor exploited a token validation issue to impersonate Azure AD users and gain access to enterprise mail. And they don't really say how he got that token. Was it, you know, is it a token that everybody has access to in the web application, or is it a private token that he should never have been exposed that he got through insider threat model or from. you know, maybe a performer employee or I don't know how that got out there. I wish they would expand on this. The initial alert on it is pretty lightweight.”
15:43 📢 Jonathan - “Yeah being able to forge tokens to access Outlook web access is slightly concerning…”
16:09 Azure’s cross-region Load Balancer is now generally available * The Azure cross-region load balancer is a load balancer that distributes traffic across multiple regions. (We know, that seems obvious but you never want to assume.) * This provides high availability and disaster recovery, as if one region fails, the other regions can continue to serve traffic. * The load balancer uses a global network of Azure virtual network gateways to provide high-performance, low-latency connections to ensure that users in any region will have a good experience when accessing your application. * As you would expect, the load balancer also provides health checking to ensure that only healthy instances serve traffic.
16:59 📢 Justin - “If you're next to the server that's normally in Los Angeles and now you're being routed to India, that's not gonna be a great latency experience, I'm sure. So good on them.”
17:13 General availability: Azure Data Explorer adds support for PostgreSQL, MySQL, and CosmosDB SQL external tables * ADX External Tables is a new feature in Azure Databricks * This allows you to connect to external data sources and query them using Databricks SQL. * This can be useful for a variety of reasons, such as: + Accessing data that is not stored in Databricks, such as data in a data warehouse or on-premises file system. + Querying data in a more efficient way than is possible with Databricks' native connectors. + Using Databricks' powerful SQL engine to analyze data from a variety of sources. * To use ADX External Tables, you first need to create an external table definition. This definition specifies the location of the data source and the format of the data. * Once you have created an external table definition, you can query it using Databricks SQL. * ADX External Tables is currently in preview and is available for a limited number of customers. * Want to become one of those super special people with the super special limited access? Contact your sales rep.
19:13 📢 Justin - “It's interesting to me Databricks is still around because I was convinced this company would get bought by Microsoft when they created Azure Databricks. But I was just looking at them as we were talking, they've raised a lot of money, including like $1.6 billion in August 2021. So they have a long runway and they're probably very expensive to buy at a billion dollars in revenue. But I'm sure, I assume they're gonna IPO at some point. So then if they fall apart, then Microsoft can buy them for cheap on the stock market. So maybe it’s a good strategy!” Oracle Continuing our Cloud Journey Series Talks We’ll continue our Cloud Journey Series next week when Ryan and Matt join us again - so be sure to tune in next week.
Welcome to episode 218 of The Cloud Pod podcast - where the forecast is always cloudy! Today your hosts Justin, Ryan, and Matt discuss all things cloud - including migration services, AppFabric, state machines, and security updates, as well as the idea of shifting left versus (or in addition to) shifting down. Titles we almost went with this week: * The Cloud Pod Prefers to be Bought by Anyone but IBM * What Does the F(in)O(ps)X say? * The Cloud Pod Leverage appFabric for your SaaS Security
A big thanks to this week’s sponsor: Foghorn Consulting, provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. 📰News this Week:📰 01:21 IBM acquires hybrid cloud software company Apptio for $4.6B * + IBM is acquiring software company Apptio Inc for 4.6B in cash. + THe move comes five years after Vista Equity bought the firm for 1.94B + Apptio was created in 2007, and was notable as the first company Andreeson Horowitz invested in. Apptio owns Cloudability, among other features. + Apptio offers cloud-based technology and hybrid business management software for managing business in the IT field. + IBM Chief Executive Arvind Krishna said in a statement “Technology is changing business at a rate and pace we’ve never seen before. To capitalize on these changes, it is essential to optimize investments which drive better business value, and Apptio does just that. Apptio’s offerings combined with IBM’s IT automation software and watsonx AI platform, gives clients the most comprehensive approach to optimize and manage all of their technology investments.”
2:30📢Ryan - “The last time I played with Apptio was very early in my cloud experience and Apptio was struggling to understand how to sort of port their methodologies into cloud. It worked really well in the data center and for IT shops, for tracking assets and managing visibility into cost and financials there, but it really struggled with stuff like dynamically changing instance groups and that sort of thing. It made sense when they bought Cloudability, and I haven’t played with it since.”
04:39 Justin goes to FinopsX!
06:10📢Justin - “I did have an opportunity to talk to some startups. they're on the floor and they're thinking about kind of the next generation and what that looks like and you're really talking about bringing AI and LLM technology into FinOps and how do you get beyond the basics of it. I think we're at this kind of cusp of the end of the Gen 1 era… I suspect that we're in for a bunch of FinOps and capabilities coming out of these vendors as they try to figure out what their v2 is, and potentially new startups that are going to come in and be disruptive to the Gen 1 players, because I think it's a commodity, which was my big takeaway from the conference in general. It was good. It was a nice time. I definitely recommend going if you're in the FinOps space.”
08:07 📢Ryan - “I’m waiting for the first one of these players to really get the data enrichments, like AI generated data enrichment of your resources. The first person who cracks that in a reliable, useful fashion. I think it's going to change the way we do business. Cause I think there's a lot of business decisions we make on incomplete data, and I think that once that data is more complete and you can turn something loose - to do it at a very large scale. I think it's gonna change a lot about what we think of our businesses, how they run, how healthy they are, what things cost.”
Join us at FinOps X next year, and tune into The Cloud Pod in the months leading up to June - we’ll be sure to keep you updated on everything you need to join the fun in San Diego. AWS 13:54 AWS Application Migration Service Major Updates: Global View, Import and Export from Local Disk, and Additional Post-launch Actions * AWS has three major updates to the Application Migration Service. + Global View - You can manage large-scale migrations across multiple accounts. This feature provides you both visibility and the ability to perform specific actions on source servers, apps and waves in different AWS accounts. - Some actions: Launching test and cutover instances across accounts - Monitoring migration and execution progress across accounts + Import and Export from Local Disk- You can use AMS to import your source environment inventory list to the service from a CSV file on your local disk. + You can also export your source server inventory list to a CSV file and download it to your local disk. + You can always continue leveraging the previously launched import and export functionality to and from an S3 bucket if you're so inclined. + Additional Post launch actions, adds four predefined post launch actions. - Configure Time Sync - Validate Disk Space - Verify HTTP(S) response - Enable Amazon Inspector
15:03📢 Ryan- “I think the reason why none of us have ever used this tool is because we don't actually like supporting cloud adoption in this way. This is a lift and shift methodology and this just isn't a problem I have with lift and shift methodology. There's a lot of tools available and generally when I'm looking at cloud adoption, even in a lift and shift scenario, I'm trying to encourage better CI and CD and deployment automation and those types of things. And I feel like this is sort of a cheat around those things where you don't have that. And so I get it, but I do worry about what happens day three after you use this tool.”
17:29📢Matt - “It can be good, I guess, for like, ‘Hey, we got 80% of our environment and we have this one legacy system that we just need to move.’”
18:22 Generative AI with Large Language Models — New Hands-on Course by DeepLearning.AI and AWS * Generative AI is a type of artificial intelligence that can create new content, such as text, images, and music. * Large language models (LLMs) are a type of generative AI that are trained on massive amounts of text data. * LLMs can be used to create a variety of different types of content, including: + Text: LLMs can be used to generate text for a variety of purposes, such as writing articles, creating marketing materials, and generating customer service responses. + Images: LLMs can be used to generate images, such as product photos, marketing images, and even art. + Music: LLMs can be used to generate music, such as songs, jingles, and even entire albums. * A new hands-on course by DeepLearning.AI and AWS will teach you how to use LLMs to create your own AI-generated content. * The course will cover topics such as: + How LLMs work + How to train an LLM + How to use an LLM to create content + How to evaluate the quality of AI-generated content * They also teach you how to use the new Amazon LLM API, but we haven’t used that so can’t really give an opinion on how it works. * Conversely, if you’re using Google Workspaces you just hit a button in Google Docs. So that’s always an option.
19:29📢 Ryan - “This is the type of course that, you know, would help to step in a career, right? As technology moves on, as the ecosystem is changing, if you don't keep up - like if we don't learn AI - we are gonna sort of not understand what goes on in a couple of years. It's just gonna be the nature of the business. It's gonna be everywhere and ubiquitous and have influence everywhere. And so I love these courses for getting into some of these things at the ground level.”
22:23 New AWS AppFabric Improves Application Observability for SaaS Applications * Many companies turn to SaaS applications to provide software to their employees. * As SaaS app usage expands, there is an increasing need for solutions that can identify and address potential security threats, in order to maintain uninterrupted business operations. * Integration of SaaS apps with existing security tools requires many teams to build, manage and maintain P2P integrations. * In response AWS is launching AWS AppFabric, a fully managed service that aggregates and normalizes security data across SaaS applications to improve observability and help reduce operational effort and cost with no integration work necessary. * When the SaaS apps are authorized and connected, AppFabric will ingest the data and normalize disparate security data such as user activity logs. * This is accomplished using Open Cybersecurity Schema Framework, an industry standard schema and open sourced project co-founded by AWS. * The data is then enriched with user identifiers such as corporate email addresses. + This reduces our Security incident response time because you gain full visibility to user information for each incident. You can ingest normalized and enriched data to your preferred security tools, which allows you to set common policies, standardize security alerts and easily manage user access across multiple applications. * Some apps supported at preview launch: + Asana, Jira, Dropbox, Google Workspaces, M365 and M365 Audit logs, Miro, Okta, Slack, Smartsheet, Webex, Zendesk and Zoom. * Available in N. Virginia, Ireland, Tokyo in additional AWS regions * AWS AppFabric has Generative AI Capabilities * AWS Appfabric will empower you to perform tasks across applications in a future release automatically. * Audit data can be integrated into security tools such as logz.io, netskope, netwitness, rapid7 and Splunk. * Additionally, they mention in the article that they’re going to be adding some generative AI capabilities in the future, which when (and if) it comes out will allow users to uatmoatically perform tasks across applications. * It’s really great to see Amazon getting in the Vapoware game - announcing software they don’t have and that may - or may not - materialize at all.
25:46📢Justin - “Yep, well, it's like everyone was into NFTs and crypto stuff and Web 3.0 and then that all failed and then it was meta and meta universe and all that. Now we're into the chat GPT will save the world and the economy world and so everyone's gotta have features in that space.”
28:58 Deploying state machines incrementally with versions and aliases in AWS Step Functions * AWS Step Functions now supports versions and aliases, which allow you to deploy state machines incrementally and manage multiple versions of your state machines. * With versions, you can create a new version of your state machine without overwriting the existing version. * With aliases, you can create an alias for a specific version of your state machine. * This allows you to test changes to your state machine without affecting production traffic. * You can also use aliases to point to different versions of your state machine for different environments, such as development, staging, and production.
29:32 📢 Ryan - “So my fellow podcast hosts were like, we can get rid of this one. This isn't it. And I'm like, no, this is super awesome, guys. And I realized how much of a nerd I sounded like.”
29:41 📢Justin- “I thought this already existed! I just thought this already existed because lambdas under the hood, which is kind of what I've always used step functions with, you know, already have that. So when we talked about it, I guess I was just surprised that it didn't exist.” GCP 14:26 Expanding 24/7 multilingual support: Now in Mandarin Chinese and Korean * Google decided they were taking an extended 4th of July holiday, so this is the only thing they had to report this week. * If you require multilingual support for GCP, you can find it at https://cloud.google.com/support.
Azure 33:41 Azure Virtual Network encryption - now in Public Preview! * With Virtual Network encryption, customers can enable encryption of traffic between Virtual Machines and Virtual Machine Scale Sets within the same virtual network and between regionally and globally peered virtual networks.
33:58 📢 Justin - “This is one of those features that you have for your application - that isn't owned by you - and you need to encrypt it for a security compliance reason. And now you have an option, so I appreciate that.”
34:07 📢 Ryan - “Or that one thing that's still running on like a 2012 server and you can't move it off because it's not supported on a more modern thing, but it comes up in the security audit every single time.”
34:34 📢 Matthew - “And in true Microsoft fashion, it’s in public preview, so you have a little while until it’s actually usable.”
35:37 📢 Ryan - “Yeah, I feel like the preview is really, especially in GCP and Azure is a way to sort of not be bound by SLA, right? it's more contractual than it is about the product and the functionality of the app.
36:26 📢 Ryan - “I mean, now in the Google space, though, we have to worry about something being in preview for years and then going general available and then get sold to Squarespace. So…” Oracle Continuing our Cloud Journey Series Talks 36:55 The Modernization Imperative: Shifting left is for suckers. Shift down instead * We’ve got a really interesting article for this week’s Cloud Journeys discussion! * Have you heard the term shift down? We hadn’t! + Essentially shifting down is the process of moving testing to earlier stages of the software development lifecycle. + Shifting left is the process of integrating testing into the software development process. * Both shifting down and shifting left can help to improve the quality of software. * Shifting down can help to identify and fix defects earlier, which can save time and money. * Shifting left can help to improve communication and collaboration between developers and testers. * Both shifting down and shifting left can help to improve the overall quality of software + *Allegedly * According to the article, shifting down is mostly just taking advantage of managed services, which is interesting - given the fact that Google doesn’t really have a lot of managed services… but we’ll just ignore that fact for the time being.
38:22📢 Justin - “ So there is an overall kind of thread that you'll see on Twitter occasionally, or other subreddits ( if you're still using that) that basically say, you know, shift left is failing us as an industry, and it's not getting the value we want, it's not increasing the productivity we want, and it's not really working. I don't agree with that, I think shift left is working if it's done right... I'm intrigued mostly in this article about the idea of shift down, which is something I advocate for all the time. Managed services are something I love, because it takes away toil from my teams, and allows us to focus on things that matter. And so I do encourage this capability of shifting down to your managed service to help ease your burden, but shifting left, I still think has value.”
42:05📢 Ryan- “One point of the article I don't agree with - I don't think anyone is expecting a single person to do all the things. But I think that the important part to remember - with a full stack engineer - and that is, don't define yourself in the boundaries. There's gonna be, just like any engineering team, if you're solely focused on the front end, there's people that are gonna understand frameworks and technologies. at different levels of experience. You're gonna have React experts and Rails experts and those things. So it's no different, but the differences between full-stack engineers is that you're not tossing anything over a wall. You may not know, but it's still on you to go figure it out. And so leverage your team, leverage your peers. I don't think we're expecting everyone to know these things and be experts in these things, but the idea that... You have to know every technology front to end is ridiculous.” After Show Closing And that is the week in the cloud! We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, slack team, send feedback or ask questions at thecloudpod.net or tweet at us with hashtag #thecloudpod
Welcome to the newest episode of The Cloud Pod podcast - where the forecast is always cloudy! Today your hosts Justin, Jonathan, and Matt discuss all things cloud and AI, as well as some really interesting forays into quantum computing, changes to Google domains, Google accusing Microsoft of cloud monopoly shenanigans, and the fact that Azure wants all your industry secrets. Also, Finops and all the logs you could hope for. Are your secrets safe? Better tune in and find out! Titles we almost went with this week: * The Cloud Pod Adds Domains to the Killed by Google list * The Cloud Pod Whispers it’s Secrets to Azure OpenAI * The Cloud Pod Accuses the Cloud of Being a Monopoly * The Cloud Pod Does Not Pass Go and Does Not collect $200
A big thanks to this week’s sponsor: Foghorn Consulting, provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. 📰News this Week:📰 01:27 Vault 1.14 brings ACME for PKI, AWS roles, and more improvements * HashiCorp recently announced the general availability of ACME for PKI. * Vault 1.14 focuses on Vault’s core secrets workflows as well as team workflows, integrations, and visibility. * This allows you to use Vault to manage your TLS certificates, using the ACME protocol. * This allows you to use Vault to manage your AWS IAM roles, making it easier to grant access to your applications. * Vault has also been optimized for better performance, especially for large deployments. * A number of bugs have been fixed, improving the stability and security of Vault. * The Vaults Secrets Operator connects Vault secrets directly into native Kubernetes secrets.
Overall, Vault 1.14 is a significant release with a number of new features and improvements. If you are using Vault, I recommend upgrading to the latest version. AWS 03:36 Announcing the AWS Amplify UI Builder Figma Plugin * Finally! A plugin that makes Amplify work natively with Figma! (Any UI builders out there in our audience? Bueller? Bueller?) * AWS Amplify now offers you the UI Builder Figma plugin * This new plugin makes it easier to empower your design and development teams to seamlessly collaborate within a Figma file. * With the Amplify UI kit, easily theme your components, upgrade to new UI Kit versions and generate and preview React code from your designs directly in Figma. * Go from design to code in seconds by generating clean React code inside Figma, and see a live preview of the code running before adding it to your application.
04:15📢 Justin- “I went in and set this up today because I had never actually used Figma although I heard lots about it. So I signed up for my free account. I signed in for the plugin for Amplify and then I remembered I don't know how to use Amplify. So it didn't go so well for me but I'm gonna keep tackling it because one thing I'm not very good at is front end development and anything that makes me better as a front end developer would be a plus.”
04:40📢Jonathan - “Figma works really nice; it’s great for prototyping.”
06:44 AWS Transfer Family announces structured JSON log format * AWS Transfer Family now delivers logs in a structured JSON format across all resources - including servers, connectors, and workflows and all protocols including SFTP, FTPS, FTP and AS2. * The new format allows you to easily parse and query your logs using Cloudwatch Log insights, which automatically discovers JSON formatted fields. * You’ll also benefit from improved monitoring with support for CloudWatch Contributor Insights, which requires a structured log format to track top users, total number of unique users, and their ongoing usage. * In addition to the new log format, you’re now able to combine log streams from multiple AWS Transfer Family servers into a single Cloudwatch log group of your choosing. This allows you to create consolidated log metrics and visualizations, which can be added to cloudwatch dashboards for tracking server usage and performance.
And that very exciting announcement is linked to this one…
07:14 AWS Transfer Family announces Drummond Group Applicability Statement 2 (AS2) Certification * If you know anything about the Drummond Group or AS2 you probably care about this. * AWS Transfer Family has earned the official Drummond Group AS2 cloud certification seal. Drummond * Group is an independent provider of testing and certification services for various industry standards and protocols.
07:52📢Matt- “I read this headline and I looked at it and I went, wow, I've set up TransferFamily at least two or three times, set up all the logs and never have actually looked at them to know that it was not in JSON format.”
08:31 AWS launches AWS AppSync abstraction * If you didn’t know what appSync was before, you can now know even less by abstracting it behind the AWS Serverless Application Model with the new AWS Serverless GraphQL API resource abstraction. Fun! * AWS AppSync is a managed service that makes it easier to build scalable APIs that connect applications to data with a GraphQL endpoint.
08:59 📢Matt- “So they added it to CloudFormation and to SAM?”
09:02 📢Justin- “Apparently that’s what they did. And wrote a blog post about it! So thanks, Amazon! We really appreciate that.”
09:20 AWS Announces Generative AI Innovation Center * Amazon, in the midst of many other existential threats (unionization, antitrust no biggie.) wants you to know that they REALLY care about Generative AI too. * To prove it we are going to commit 100 million to a new Generative AI Innovation program. * The new program will help customers successfully build and deploy generative AI solutions. This will help customers successfully envision, design and launch new generative AI products, services and processes. * Building on more than 25 years of deep investment in developing AI technologies for customers and is just one part of AWS’s overall generative AI strategy to bring this technology to customers and partners around the world. + “Amazon has more than 25 years of AI experience, and more than 100,000 customers have used AWS AI and ML services to address some of their biggest opportunities and challenges. Now, customers around the globe are hungry for guidance about how to get started quickly and securely with generative AI,” said Matt Garman, senior vice president of Sales, Marketing, and Global Services at AWS. “The Generative AI Innovation Center is part of our goal to help every organization leverage AI by providing flexible and cost-effective generative AI services for the enterprise, alongside our team of generative AI experts to take advantage of all this new technology has to offer. Together with our global community of partners, we’re working with business leaders across every industry to help them maximize the impact of generative AI in their organizations, creating value for their customers, employees, and bottom line.”
10:40 📢Justin - “…they had a lot of AI and ML features, but they didn't have anything as revolutionary as chat GPT. So generative AI is where all the hotness is right now, and they are definitely lagging behind just a little bit.” GCP 14:26 Google Domains is shutting down; assets sold and being migrated to Squarespace * Google domains is winding down and selling the business and assets to Squarespace. * Squarespace entered into a definitive asset purchase agreement with Google, whereby Squarespace will acquire the assets associated with the Google Domains Business. * This includes approximately 10 million domains hosted on Google Domains spread across millions of customers. * Google launched the registrar business in 2014 as a bit proponent of HTTPS and Top-Level domains. The service just exited beta in 2022. * It's better than shutting down the service without a guided migration path...but holy crap! * Can’t wait till they sell the GCP business to a third party….
14:59📢 Justin- “I mean, if you can’t make money on 10 million domains I don’t know what you’re doing wrong.”
16:10📢 Jonathan- “Something as fundamental as domain registration for cloud users seems really weird to me that they would sell that and basically resell through a partner.”
19:58 Google Formally Accuses Microsoft of Trapping People in the Cloud * In peak American style, Google has employed the “if you can’t beat ‘em, sue ‘em” mentality when it comes to Microsoft's cloud business. * Google is accusing Microsoft of anti-competitive practices * Google after being beat up by the FTC, and is now complaining that Microsoft uses software licensing restrictions to keep customers locked into its cloud computing services. * The letter specifically takes issue with MS using its Windows Server and Office products to keep clients on Azure, and that Microsoft’s control is a national security risk. * Google has raised similar concerns to EU regulators. * Essentially, MS charges third party cloud providers extra to run its software, a cost that customers do not bear if they run on the same software on MS Azure’s cloud platform. * This has led to an FTP RFC on how the business practices for cloud computing providers affect competition and data security. And it has not been the only submission to raise concerns about Cloud Platform Competition.
20:57📢 Jonathan- “It’s kind of a weird conversation, because the free market's the free market. The business should be free to set the prices they charge for any product, for any customer. I mean, if you think about enterprise discount agreements, anything like that is a mechanism to provide different pricing to different customers based on usage of either one resource or combinations of resources. So on one hand, I'm like ‘they should be able to charge whatever they like to whoever they like and the market will figure things out’. On the other hand, it is such a monopolistic position to be in.”
23:20 Trace Exemplars now available in Managed Services for Prometheus * Cross Signal Correlation where metrics, logs and traces work together in concert to provide a full view of your systems health -- is often cited as the “holy grail” of observability. * However, given the fundamental differences in their data models, these signals usually live in separate, isolated backends. Pivoting between signal types can be laborious, with no natural pointers or links between your different observability systems. * Trace Exemplars provide cross-signals correlation between your metrics and your traces, allowing you to identify and zoom in on individual users who experience abnormal application performance. * Storing trace information with metric data lets you quickly identify the traces associated with a sudden change in metric values; you don’t have to manually cross-reference trace information and metric data by using timestamps to identify what had happened in an application when the metric data was recorded. * Google is making this easier with the support for Prometheus Exemplars in Managed Service for Prometheus.
24:36📢 Matt- “As things become more serverless, everything kind of becomes in its own little areas, tracking everything and tracking requests and all the different pieces that go through your system, has been a problem. And that's why AWS came out with X-ray, and APIMs andall these other things exist. So it's just another way to do a lot of the same things. It's nice that it's integrated into Prometheus. If you're running your own stacks of Prometheus and Grafana, it'll be nice to be able to do it all in one place versus having to use different tools for different aspects of your monitoring solution.” Azure 26:01 Microsoft Azure OpenAI lets enterprises feed corporate secrets to ChatGPT
Microsoft wants to make it easier for enterprises to feed their proprietary data and queries into Open AI GTP-4 or ChatGPT within Azure and see the results. What could go wrong? * Available in preview with Azure OpenAI service, it eliminates the need for training or fine tuning your own generative AI models. * A user fires off a query to Azure, MS cloud figures out what internal corporate data is needed, and the data is combined with the public data set and returned to the user. * The models are managed by Microsoft in its cloud, preventing Open AI from having direct access to the customer data, queries and output. * It is alleged that this new skill is “useful.” Insert side eye gif of your choice here. * Your prompts (inputs) and completions (outputs), your embeddings, and your training data:
are NOT available to other customers.
are NOT available to OpenAI.
are NOT used to improve OpenAI models.
are NOT used to improve any Microsoft or 3rd party products or services.
27:31 📢 Jonathan - “We talked last week about Google telling their own employees not to use generative AI, especially barred for coding. I wonder if Microsoft will do the same thing.”
27:51 📢 Matt - “Microsoft doesn’t use any chat GPT - any anything along those lines. They disable all the code pilot plugins on all their integrations.”
28:34 📢 Justin - “ I can see the advantage of having an AI LLM model in place to help you do things. But data privacy is the biggest issue in all this. And I kind of agree with Matt, if it's secret, don't put it anywhere that you don't trust it or don't control the endpoints. And maybe cloud isn't right for you for that particular use case.”
Side note, any listeners who want to get Jonathan a birthday gift, his list is at 29:18
30:00 Accelerating Scientific Discovery with Azure Quantum * Azure is announcing 3 new innovations to Quantum computing + Azure Quantum Elements - Azure Quantum elements accelerates scientific discovery by integrating the latest breakthroughs in high performance computing (HPC), AI and Quantum computing. - Reduce time to impact and costs by accelerating the R&D pipeline - Dramatically increase the search space for new materials, with the potential to scale from thousands of candidates to tens of millions - Speed up certain chemistry simulations 500kx - Get ready for scaled quantum computing by addressing quantum chemistry problems with AI and HPC, while experimenting with existing quantum hardware + Copilot in Azure Quantum - Scientists can accomplish complex tasks on top of the fabric of cloud supercomputing, advanced AI and quantum, all integrated with the tools they use today. - It can generate the underlying calculations and simulations, query and visualize data and help get guided answers to complicated concepts. - Helllllllllo Skynet! + MS Roadmap to Quantum Supercomputer - MS has achieved the first milestone towards a quantum supercomputer. They can now create and control majorana quasiparticles.We don't know what these are, but they sound really cool! With this achievement, they are on the way to engineering a new hardware-protected qubit.
30:56 📢 Jonathan - “I hadn't really considered that we could use the generative AI tools to actually write code for quantum computers actually. That's very useful to know because it's such a weird and limited language… but getting from a business idea, to code, to actually something that actually runs on quantum computers is a massive step. And actually being able to extract that and have Copilot write that code for you is super interesting. ”
31:39 📢 Matt - “I would have gone with terrifying, but interesting also works.”
31:53 Public Preview: Network Observability add-on on AKS * And lastly this week from Azure… * Azure has a new network observability add-on for AKS that will scrape useful metrics from K8 workloads and emit actionable networking observability data into industry standard prometheus format, which can be visualized with Grafana. * Key Customer Benefits to YOU (the customer) + Get access to node-level network metrics like packet drops, connection stats and more + Support for all Azure CNI’s + Support fall AKS node types Linux and Windows + Easy deployment using native Azure Tools + Seamless integration with the Azure managed Prometheus and Azure-managed grafana offerings.
And with that, we’re all burned out on logs. Networking and otherwise. Oracle Continuing our Cloud Journey Series Talks 33:40 How to build a FinOps roadmap | Google Cloud Blog * Justin is going to be at the FinOpsX Conference later this week, but in the meantime…How do you create a roadmap to FinOps? How do you get Cloud costs under control? * Define your goals. What are you trying to achieve with FinOps? * Assess your current state. What are your current costs? Where are you wasting money? * Develop a plan. What changes do you need to make to reach your goals? * Implement the plan. This includes setting up budgets, monitoring costs, and making changes as needed. * Measure your progress. Are you on track to reach your goals? If not, make adjustments to your plan. * Continuously improve. FinOps is an ongoing process, so be sure to review your plan regularly and make changes as needed.
30:31📢 Jonathan - “I like thinking about not just where we're wasting money, but why we're wasting money and how we're wasting money and what is it that got to that place where the finance is knocking your door… So I think one of the things that I'd focus on, would be processes and tooling and figuring out, well, why do we end up with all these objects in an object store that we don't need or want anymore? Or why do we have all these instances stood up and that no one's responsible for?”
38:15📢 Justin - “In the Google model and their steps, they talk about first defining your stakeholders, which is your CCOE, which we talked about a lot, if you have one. Engineering team is a stakeholder, your platform team is a stakeholder, the business and of course your accountants and finance team, who are the people yelling at you probably that you need a finance practice because the costs are out of control. But that's really kind of step one.” Closing And that is the week in the cloud! We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, slack team, send feedback or ask questions at thecloudpod.net or tweet at us with hashtag #thecloudpod
Welcome to the newest episode of The Cloud Pod podcast - where the forecast is always cloudy! Today your hosts are Jonathan and Matt as we discuss all things cloud and AI, including Temporary Elevated Access Management (or TEAM, since we REALLY like acronyms today) FTP servers, SQL servers and all the other servers, as well as pipelines, whether or not the government should regulate AI (spoiler alert: the AI companies don’t think so) and some updates to security at Amazon and Google. Titles we almost went with this week: * The Cloud Pod’s FTP server now with post-quantum keys support * The CloudPod can now Team into your account, but only temporarily * The CloudPod dusts off their old floppy drive * The CloudPod dusts off their old SQL server disks * The CloudPod is feeling temporarily elevated to do a podcast * The CloudPod promise that AI will not take over the world * The CloudPod duals with keys * The CloudPod is feeling temporarily elevated.
A big thanks to this week’s sponsor: Foghorn Consulting, provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. 📰News this Week:📰 No general news this week! Probably because no one wanted to talk to us. AWS 00:49 Amazon EC2 Instance Connect supports SSH and RDP connectivity without public IP address * You can now connect via SSH and RDP to EC2 instances without using public IP addresses. With EIC endpoints, customers have remote connectivity to their instances in private subnets, eliminating the need to use public IPv4 addresses for connectivity. * Previously you would have needed to create bastion hosts to tunnel SSH/RDP connections to instances with private IP addresses, but that created its own set of problems because bastion hosts would have to be patched, managed and audited as well as incur additional costs. * EIC endpoint combines AWS IAM-based access controls to restrict access to trusted principles with network-based controls such as security group rules. * It provides an audit of all connections via AWS cloud trail, helping customers improve their security posture.
01:31📢 Matt- “It’s nice to see Amazon still coming up with more solutions to not have things be public; and really try to get their customers to not use all the older-school technology.”
03:02 RDS Custom for SQL Server Lets you Bring Your Own Media * RDS Custom for SQL Server now allows customers to use their own SQL server installation media when creating an instance. By using BYOM, customers may leverage their existing SQL server licenses with Amazon RDS for SQL Server. Amazon RDS custom is a managed database service that allows customization of the underlying operating system and database environment. Managed features include Multi-AZ, point in time recovery, and more. * Previously when using RDS custom for SQL Server, customers used a license that included hourly pay as you go model. With BYOM, customers can provide their own SQL server licenses on Amazon RDS Custom for SQL Server. This allows customers who have already purchased SQL server licenses to save on costs while offloading the undifferentiated heavy lifting of database management to RDS custom.
04:28📢Jonathan- “I think the advantage for me is that I've often heard, well, we can't use RDS because it doesn't support this, doesn't support this, doesn't support this. Whereas now you can deploy your own instances with your own controls and just use RDS as a management layer. Kind of cool.”
06:22 Temporary Elevated Access Management with IAM Identity Center * AWS is providing you a solution for Temporary Elevated Access Management (TEAM) that integrates with IAM Identity Center (formerly AWS SSO) and allows you to manage temporary elevated access to your multi-account AWS environment. You can download the TEAM solution from AWS samples, deploy it and customize it to your needs. * The team solution has the following features: + Workflow and approval + Invoke access using IAM identity center + View request details and session activity + Ability to use managed identities and group memberships + A rich authorization mode
A Note from the team with some Reinforce quick hits for you:
** If you're using AWS Transfer for your SFTP solution, and quantum computing breaking your SFTP and FTPs ciphers keeps you up at night, AWS now supports post-quantum keys for AWS transfer. I mean personally if you're leveraging SFTP… in 2023 and post quantum security is your priority i’m unsure you're using the right technology.
Post-quantum hybrid SFTP file transfers using AWS Transfer Family
Your SOC team rejoices as it allows you to take automated actions to update your findings. These rules make it easy to avoid alert fatigue and more quickly close out alerts and issues.**
07:02 📢Matt- “This whole solution looks great. I'll be more curious in about two years from now when they add it into Amazon SSO - or the rebranded Amazon IAM Identity Center - to actually see it all nicely integrated in and not, ‘Hey, there's a web portal over here that you run with Amplify and there's probably Step Functions and CloudWatch.’ It's a really good solution for build your own. And if you have a public cloud team that can help manage this, great. But if you're trying to do this for a one or two AWS account, probably not worth the overhead and complexity of it. But it's nice to see that they’re, again, providing solutions for people.”
08:15 📢Jonathan - “I guess you could integrate it with things like change handlers so you can only get admin access during pre-approved changes or to pre-approved instances and that kind of thing. I'm sure this is a problem that a lot of people have, like what do you do when you don't want admin all the time, but you do need admin rights when you need it? And I've seen people build all kinds of tooling around this, you know, well, we keep passwords in volt, but if we get the password out to use temporarily, then we have to go back and change the password later. It's all a lot of moving parts. And so having an off the shelf solution like this is pretty neat.”
09:34 re:Inforce 2023 Quick Hits * Our recording schedule has been a bit off so we didn’t cover it at the time, but re:Inforce has come and gone - and we have the Cliffsnotes version just for you. * Post-quantum hybrid SFTP file transfers using AWS Transfer Family
Quick note from Justin If you're using AWS Transfer for your SFTP solution, and quantum computing breaking your SFTP and FTPs ciphers keeps you up at night, AWS now supports post-quantum keys for AWS transfer. I mean personally if you're leveraging SFTP… in 2023 and post quantum security is your priority i’m unsure you're using the right technology. Your SOC team rejoices as it allows you to take automated actions to update your findings. These rules make it easy to avoid alert fatigue and more quickly close out alerts and issues. * AWS Security Hub launches a new capability for automating actions to update findings
For those who were excited about WAF Fraud Control for Account Takeover Prevent (ATP, they are adding Account Creation Fraud Protection to protect your applications sign up pages against fake account creation by detecting and blocking fake requests. * Prevent account creation fraud with AWS WAF Fraud Control – Account Creation Fraud Prevention + Screw up timestamp as requested: 11:24 + Let’s blame Justin
12:14 Launching - Amazon S3 Dual-Layer Server-Side Encryption with Keys Stored in AWS Key Management Service (DSSE-KMS) * Additional timestamp errors for your listening pleasure! This is what happens when AI DOESN’T do the work for you I guess. Moving on. (Language Warning!) * For those who need to meet NSA CNSSP 15 for FIPS Compliance and Data at Rest capability Package 5.0 guidance for two layers of CNSA encryption. The new S3 Dual Layer Server Side Encryption with Keys stored in KMS (DSSE-KMS) is available for objects when uploaded to an S3 bucket. S3 is the only cloud object storage service that allows customers to apply two layers of encryption at the object level and control data keys used for both layers. DSSE-KMS makes it easier for highly regulated customers to fulfill rigorous security standards, such as the DOD. * DSSE-KMS applies two layers of encryption to objects in Amazon S3, which can help protect sensitive data against the low probability of a vulnerability in a single layer of cryptographic implementation. * DSSE-KMS is designed to meet National Security Agency CNSSP 15 for FIPS compliance and Data-at-Rest Capability Package (DAR CP) Version 5.0 guidance for two layers of CNSA encryption. * Holy acronyms, Batman!
14:30 📢Matt - “I think for the average consumer, you're probably not gonna need or want this. I'd be curious of what the overhead is or if it's something that Amazon's just eating the overhead on the backend.”
15:49 A New Set of APIs for Amazon SQS Dead-Letter Queue Redrive * AWS is launching a new API for SQS. * These new API’s allow you to manage dead-letter queue (DLQ) redrive operations programmatically. * You can use the SDK or the CLI to programmatically move messages from the DLQ to their original queue, or to a custom queue destination to attempt to process them again.
16:13📢Matt - “This is kind of nice. I mean, I always feel like I've had a dead letter queue and then I just send a notification. It's all I've ever used it for. But, if you can actually now move that message to somewhere useful, do either retry or if you're doing failure driven development (which I would recommend against) you could in theory just cascade it down, but it's nice that they are actually enabling this with APIs.”
16:40📢Jonathan - “Yeah, I've definitely had a use case for this before when we used SQS for hundreds of thousands of log events. And when Elasticsearch was down regularly, things would eventually time out of the queue after three days of trying to rebuild the Elasticsearch cluster. So moving those things was a Python script back to the thing, as I said, ended up in the back of the queue again. So. Definitely nice.”
18:06 Simplify How You Manage Authorization in Your Applications with Amazon Verified Permissions * Now generally available! * Amazon Verified Permissions (AVP) is a new service that makes it easier to manage authorization in your applications. * AVP uses machine learning to verify that users have the permissions they need to access your resources. * AVP can be used with any AWS service that supports IAM policies. * AVP is easy to set up and use. * AVP can help you reduce the risk of unauthorized access to your resources. * AVP can help you improve compliance with security and regulatory requirements. * AVP is available in all AWS regions. * AVP is a free service. * For more information, see the AWS documentation.
Note from Jonathan - It say easy to deploy not easy to use. Listener beware. GCP 20:31 Announcing Dataform in General Availability: develop, version control, and deploy SQL pipelines in BigQuery * + Google is announcing the general availability of Dataform, which lets data teams develop, version control, and deploy SQL pipelines in BigQuery. + Dataform helps data engineers and data analysts of all skill levels build production-grade SQL pipelines in BigQuery while following software engineering best practices such as version control with Git, CI/CD, and code lifecycle management. + Dataform offers a single unified UI and API with which to build, version control and operationalize scalable SQL pipelines. + In this single environment, data practitioners can develop new tables faster, ensure data quality and operationalize their pipelines with minimal effort, making data more accessible across their organization. * “Before we started using Dataform, we used an in-house system to transform our data which was struggling to scale to meet our needs,” says Neil Schwalb, Data Engineering Manager at Intuit Mailchimp. “After adopting Dataform and more recently Dataform in Google Cloud we've been able to speed up and scale our data transformation layer to 300+ tables across large volumes of data. The Google Cloud-Dataform integration has also sped up our development workflow by enabling faster testing, clearer logging, and broader accessibility.”
22:02📢 Matt- “Hey, Jonathan. Help explain to me what they're doing here, because all I see is that we're building pipelines from SQL to BigQuery, and they put a UI around it.”
22:14📢 Jonathan- “I think the big thing is data engineers spend a lot of time in a console clicking through things, clicking through pipelines, a lot of data quality is managed by people. A lot of pipelines are built by people rather than as code and so I guess by forcing it to be defined as code and versioned as code… potentially you could build a new pipeline, compare the output of that with the output of a previous pipeline. If it looks good then promote it to the next environment.”
23:05 Introducing Google’s Secure AI Framework * Google's Secure AI Framework is a set of principles and practices that guide the development and deployment of secure AI systems. The framework is based on three pillars: + Responsible AI development: This pillar includes principles such as transparency, accountability, and fairness. + Robust AI systems: This pillar includes principles such as accuracy, reliability, and safety. + Secure AI systems: This pillar includes principles such as confidentiality, integrity, and availability. * The framework is designed to help Google build AI systems that are safe, reliable, and trustworthy. It is also intended to help Google comply with applicable laws and regulations. * The key data points from the article are: + Google's Secure AI Framework is a set of principles and practices that guide the development and deployment of secure AI systems. + The framework is based on three pillars: responsible AI development, robust AI systems, and secure AI systems. + The framework is designed to help Google build AI systems that are safe, reliable, and trustworthy. + It is also intended to help Google comply with applicable laws and regulations. * The article also includes a number of case studies that illustrate how Google has applied the framework to real-world projects.
24:13📢 Matt- “I feel like all the cloud providers and all the AI providers are just saying, hey, this is what we're gonna do. And, you know, I really would like to see what are the consequences if they break their own framework. You know, like what are they going to do? Because cool, they can say that they're gonna be responsible and robust and secure and ensure confidentiality and all these things, but it's very easy to put out a press release saying that. It's very hard to prove that you're doing that.”
26:35 Google Warns its Employees: Do Not Use Code Generated by Bard * Google has warned its employees not to disclose confidential information to BARD, this isn’t surprising as many other large firms have similarly voiced these concerns. * However, they also said that they should not use the code generated by Bard, which seems to counter the message that developers can become more productive using Bard. * Google told Reuters its internal ban was introduced because bard can output undesired code suggestions. Which could lead to buggy or complex, bloated software that will cost developers more time to fix than if they don’t use AI to code at all. * The article also mentions that Google’s DeepMind AI lab does not want the US government to set up an agency to focus on regulating AI. (WEIRD) * Google argues the role should be split across different departments. * They believe NIST could oversee and guide policies and issues.
27:40📢 Matt- “NIST is a framework though; It's not an regulating agency. It's not like NIST says you have to do this. It's not a, it's a standards agency.”
28:01📢 Jonathan- “Yeah, that's why they want nest involved, presumably, so that it's very unregulated.” Azure 18:31 Announcing Microsoft’s AI Customer Commitments * Microsoft is committing several things to its customers around AI: + To be transparent about how AI is used in Microsoft products and services. + To provide customers with control over how their data is used for AI. + To build AI systems that are fair, unbiased, and accountable. + To invest in research and development to ensure that AI is used for good. + To collaborate with governments and regulators to develop responsible AI policies. + To educate and empower people to use AI safely and responsibly. * These commitments are important because they show that Microsoft is committed to using AI in a way that benefits customers and society as a whole.
32:18 📢 Matt- “Repeat everything we just talked about for Google.”
Welcome to the newest episode of The Cloud Pod podcast - where the forecast is always cloudy! Ryan, Jonathan, and Matt are your hosts this week as we discuss all things cloud, including updates to Terraform, pricing updates in GCP SCC, AWS Blueprint, DMS Serverless, and Snowball - as well as all the discussion on Microsoft quantum safe computing and ethical AI you could possibly want! A big thanks to this week’s sponsor: Foghorn Consulting, provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. 📰News this Week:📰 00:57 Terraform AWS provider updates to V 5.0 * Announced this week from Hashicorp, Terraform AWS provider updates to version 5.0 * The updates include support that they say will help them “focus on improving the user experience.” * Support & improvements for general tags was added, which can now be set at the provider level - applying them across all resources. * Thanks to new features in Terraform plugin SDK and the Terraform plugin framework issues related to inconsistent final plans, identical tags, and perpetual diffs are now solved. * More information on the default tags can be found on the changelog.
04:11📢 Jonathan - “It’s kind of cool - it’s a neat hack as well as a way of AWS providing a really useful feature without having to do any work on the cloud platform itself. Just implement the tool that does the deploying rather than having a service which could do it for you.” AWS 05:28 NEW AWS DMS Serverless * Recognizing that many organizations were migrating to cloud platforms due to huge amounts of data, AWS has launched their cloud Database Migration Service back in 2016. * To make the migration even more seamless, AWS has now announced DMS Serverless. * AWS DMS Serverless will automatically set up, scale, and manage migration resources - all to make your migrations easier and (hopefully) more cost effective. * Supports a variety of databases and analytics services, including Amazon Aurora, RDS, S3, Redshift, and DynamoDB among others.
06:36📢 Matt- “I was thinking about it at the end of the migration - we finally got it all replicated; now we’re gonna wait a month before we actually cut over. We need this very small change rate, vs. lets go replicate everything at the very beginning. It just kind of keeps it in sync. So in theory, it goes up and down, and you’re not provisioning based on peak capacity.”
07:26 New Snowball Edge Storage Optimized Devices with MORE storage and bandwidth * AWS Snow family Devices help you move and process data in a cost effective way. * These new enhanced Snowball Edge Storage Optimized devices are designed for huge amounts of data; petabyte-scale data migration projects. * They include 210 terabytes of NVMe storage and the ability to transfer up to 1.5 gigabytes of data per second. * To make these migrations even more efficient, AWS has added a Large Data Migration Program, which will assist sites in making sure they are prepared for the rapid data transfers, as well as setting up a proof of concept migration. * The idea is to allow customers to set up and deploy migrations to and from Amazon easily.
07:52📢Matt - “I’m just wondering when Snowball Edge Devices are gonna catch up to the snow machine - you know, like the trucks. 100 TB - we gotta be getting close.”
08:03 📢Ryan -”Not until you can drive it. I don’t care how much storage it holds. But I want to be able to drive it around - like anything I order from Amazon.”
09:25 Amazon Security Lake - Now Generally Available * AWS recently announced the general availability of Security Lake. * Security Lake will automatically centralize data from AWS environments, SaaS providers, on-premise environments, and clou sources into a purpose-build data lake - all stored in your account. * AWS says the security lake will make it easier to analyze security data, as well as enabling users to get a more comprehensive view of their security across an entire organization. * Security Lake will also help organizations meet security requirements.
10:25 📢Ryan - “These are great things; a lot of time this data is being collected anyway, and it’s being stored across many different devices and S3 buckets and it’s all over the place; at least this will put it all in one place where hopefully it's a little more useable. But also, the main benefit is that it’s going to be easy to visualize the cost of this. Because a lot of security logging isn’t really utilized, but it’s stored - sometimes for a very long period of time - without actually providing any value. Sometimes you can’t even search it. You can’t even hydrate it into something until you have to for a security response. So I do like this tool - as much as I want to make fun of it.”
11:54 Announcing AWS Blueprint for Ransomware Defense * AWS announced AWS Blueprint for Ransomware Defense - available for both public and enterprise organizations, and can be customized to meet specific requirements. * Blueprint is a comprehensive framework that helps orgs protect themselves against ransomware attacks - an ongoing and serious issue if you read the news, well, EVER. * It includes best practices for security, compliance, and disaster recovery. * Based on AWS Security services (obviously…) * If you really need help falling asleep, there’s 29 pages of prescriptive guidance and lists of CIS controls. Because who doesn’t love lists of CIS controls? We sure do!
Does it interest anyone else that AWS is putting out all these announcements before Re:inforce coming up in June? It will be interesting to see what they release…
13:57📢Jonathan- “It’s nice to have a robust plan that your vendor also uses, because as I’m sure there are more and more high profile ransomware cases in the news vendor management questions are going to start including do you have a plan to deal with ransomware - and what is it? And the easy ‘well, this is what we use and Amazon uses the same thing’ is probably a huge time saver.” GCP 15:27 Security Command Center (SCC) Premium Pricing Gets a 25% Reduction * Google Cloud has introduced a 25% reduction in Security Command Center (SCC) Premium pricing for project-level activation. * SCC is a comprehensive risk management and security platform offered by GCP.
15:56 📢 Ryan- “So I’m probably biased because of my personal experience with SCC, but it’s priced VERY very high, and it is very hard to roll it out at scale with it’s pricing model. So this, I feel, is a necessary move to make it competitive.” Azure 18:31 Building a Quantum - Safe Future * Quantum computers are still in the early stages of development, but they DO have the potential to break current encryption standards. (Jonathan is going to keep adding this to his prediction list until it comes true.) * Microsoft is now working on developing quantum safe cryptography that would potentially be resistant to quantum computers. * These kinds of updates and developments will be essential in protecting sensitive data. * Microsoft is working with both private and public partners to develop new standards and get it deployed.
Quick reminder - Microsoft is also building the quantum computers that are going to crack the current encryption, so we have to make sure we have encryption that can beat the encryption beating machines. A “finger in both pies” situation. So that’s fun
20:20 📢 Matt- “But can you build a safety standard against something that doesn’t exist yet?”
20:25 📢 Ryan - “That’s the easiest safety standard to build, right?!”
20:40 📢 Jonathan - “It is a bit of a self-fulfilling prophecy about the whole thing though.”
21:58 Reflections on AI and the Future of Human Flourishing * No, this isn’t the newest concept ride over at EPCOT. It’s the latest blog from Microsoft! A blog - about AI - from Microsoft? How new and interesting! * Did you know that AI has the potential to be a powerful tool for good? We had no idea! * But of course, “it is important to use AI responsibly” and be developed in a way that benefits all of humanity - not just a select few. * The blog post talks about the need to be prepared for the negative consequences of AI, such as job displacement, and how Microsoft needs to have “a clear understanding” of the ethical implications of AI. * It also discusses the need to include diverse voices and research when it comes to developing AI in the future.
25:33 📢 Ryan - “Localization for AI is gonna be a thing, right? We’re just not there yet. It is a very difficult challenge, labeling and machine learning - that’s been around for awhile and I still don’t know a really good solution, other than what people do - which is mechanical trick it out; pay a lot of people a little money to go and just do a subset. I imagine with localization, and we”ll see how good that turns out.”
29:55 📢 Jonathan- “I will say something for Open AI though; in themselves, I like that they’re not publicly owned. There aren't shareholders to please. They’re not being pushed by investors to rush things out or monetize in a particular way.”
34:05 Microsoft Announced the Azure AI Content Safety Public Preview * Now available in public preview, this new suite of AI tools is available to help companies protect their users from harmful content. * Content Safety uses advanced AI to detect (and remove) offensive or inappropriate content in text and in images. * The tools are currently available to all Azure users, and Microsoft is partnering to make them more widely available.
34:36 📢 Ryan - “If you were wondering why Microsoft felt the need to publish a blog post with a deep thought experiment about being responsible with AI and Microsoft’s responsibility, now you know! They also now offer a service in public preview where you can give them money!”
35:08 Matt’s article from 2017 Non-Profit Hackathon “We Saw. We Hacked. We Conquered”
38:17 Azure Load Balancer per VM limit has been removed * All customers using the standard load balancer now have UNLIMITED power. Wait, no. Unlimited load balancers. Yeah, that’s it. You can now have as many load balancers per VM as you’d like, which is a pretty big increase from TWO (one public and one internal) - which used to be the limit.
38:56 📢 Matt- “I just want to know what caused it. Like, what was the technical limitation that was in place that caused this limit to have to occur?”
Either way - their announcement is now officially shorter than our notes about said announcement. Oracle Continuing our Cloud Journey Series Talks 40:53 Cloud Native MultiCloud * I know it feels like we already talk about this all the time. + 214 episodes, so the question is do we LIKE multicloud? + Should it be your first choice? Probably not. + Are there times where multicloud makes sense? Maybe. A really compelling service or you inherit someone else’s cloud - but otherwise there doesn’t really seem to be a good enough reason. Especially given the potential cost. * Is it even POSSIBLE to do multi cloud correctly? It’s hard enough to do ONE cloud right. + The best course of action is probably to choose the one that best fits your organization, and then just deal with its limitations - rather than trying to manage a multi cloud environment. * Our opinion: there’s almost no reason anyone should voluntarily choose a multicloud situation. * There’s an argument to be made that you actually lose time, money, and efficiency by losing out on some of the pros of your first environment - you lose the benefits of using the cloud. * One of the important things to remember is that the cloud - by default - is NOT cheaper than on prem. + Using the included services, and the correct tools, can definitely increase the value for money * Issue where multi cloud might make sense: data center location (read: latency, downtimes, etc) but even then it really only applies to the “last mile” talking to devices or customers. + Data sovereignty is going to be a key issue for regions and, in turn, multi cloud * Issue where multi cloud is not ideal - vendor lock. Do you want to be locked into a relationship with one vendor or three? + Does cost really influence moving from one cloud provider to another? Or is it just too complicated? If you’ve seen an entity actually completely move clouds over cost please let us know! + Pricing is definitely prohibitive for multicloud, including compliance, the number of people required, etc.
Welcome to the newest episode of The Cloud Pod podcast! Justin, Ryan, Jonathan, Matthew are your hosts this week as we discuss all things cloud and AI, as well as Amazon Detective, SageMaker, AWS Documentation, and Google Workstation. Titles we almost went with (and there’s a lot this week)📃The Cloud Pod becomes the cloud docs🎩The Cloud Pod loves inspector gadget📄The Cloud Pod documents the documentation🌍The Cloud Pod bangs its shin, since geospatial abilities are lacking🌎The Cloud Pod bangs its shin, since we lack geospatial abilities🌏The Cloud Pod bangs its shin, if only we had geospatial abilities🧞Unlike the Cloud Pod, Alibaba Cloud exits the stage🧨Retiring AWS Documents on Github… or how we laid off too many people in ourdocument team and can’t support this albatross anymore🏗️Microsoft Builds AI tools at its Build Conference and Wants you to Build MoreA big thanks to this week’s sponsor:Foghorn Consulting, provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.📰News this Week:📰01:29 Alibaba to Exit Cloud Business After Beijing Undercuts Potential Alibaba is apparently planning to spin out its $12 Billion dollar cloud business. * It’s unclear if Alibaba is bowing to market pressures or political pressures; in 2020 Beijing became increasingly suspicious of cloud services operated by private firms, and started cracking down on internet services. * Alibaba Cloud drew regulatory ire in 2021 for discovering and sharing a flaw before informing authorities (there goes their citizenship score), and was investigated for its role in China’s largest cybersecurity leak. * Analysts value it at 30B, and was a once thriving operation that harbored the potential to AWS level of market control in China. * “This full spinoff plan involving AliCloud is both bold and puzzling, “Nomura Holdings Inc analysts Jialong Shi and Thomas Shen wrote in a note. "Their current valuation for the unit stands at about $31 billion. AliCloud is BABA’s organic business and is still deemed as one of the long-term drivers for the group even though its growth temporarily slowed down in recent quarters due to macro headwinds. That is why we find it puzzling that BABA has decided to fully spin off this business instead of retaining a minority stake at least*.
04:30📢 Justin - “We're basically entering a very Cold War period between the US and Chinese. And so that's gonna be interesting to see how that continues to shake out. I saw some articles this week as well, like in the information about VC firms trying to exit their investments in China and just realizing that it's not gonna be the growth engine they expect it to be. I mean, we talked about here on the show even some of the supply chain issues with China, with the cloud providers and how it's impacted them. And now, I just saw this week, Apple just announced that they were making chips with Broadcom on US soil for some things. So, there's definitely an undercurrent in our politics about China in general.”05:46📢 Matt - “On the flip side, I'm kind of curious to see how taking this business unit out of the general Alibaba is going to work, especially with everyone starting to yell that the big tech companies are growing too large and everything. If this could be an interesting test balloon to see how AWS could spin out of Amazon, GCP could spin out of Google, Azure out of Microsoft, it could be an interesting playbook to see how they start to divide up the business units.06:15📢 Justin - “I really don't see anyone doing that unless they're forced to by the government.”AWS06:29 Amazon SageMaker Geospatial Capabilities Now Generally Available with Security Updates and More Use Case Samples* Amazon Sagemaker Geospatial capabilities were originally previewed at AWS re:Invent 2022. They are new Generally available with some security updates and additional sample use cases. * This service makes it easy to build, train, and deploy machine learning models using Geospatial data. * As part of the general availability announcement, they are integrating this capability with KMS and VPC networks. * AWS is touting several real world use cases for this technology (check out the article linked for more in depth discussion of these topics.) + Maximize Harvest Yield for Food Security + Damage Assessment + Climate Change Monitoring + Predict Retail Demands + Support Sustainable Urban Development * Are you excited to try out this new feature? Are you in US West 2? Great! Oh, you’re not? Sad tears - it isn’t available for you yet. * Time for the $$$ - the free tier is available for 30 days and includes 10 free ml geospatial compute hours, up to 10gb of free storage and no $150 monthly user fee - for one user. Everything after that will cost you money. Potentially lots of it. So be careful.
7:15📢 Jonathan - “My first thought was, well how can those poor farmers afford technology like this? And I'm thinking, ahhhh no, we're talking about like Monsantos.”We’ll be interested to see how AWS uses this tech over time, potentially for PR purposes.10:07 New – Simplify the Investigation of AWS Security Findings with Amazon Detective* Detective should have been called inspector, but they already called something else Inspector, so that’s a lost opportunity. Should have asked us first. * The detective now offers investigation support for findings in AWS Security Hub in addition to those things detected by Guard Duty. * It’s now easier than ever before to determine the cause and impact of findings coming from new sources such as AWS Identity and Access Management. * Justin got an abuse report just this morning, and it gave him an opportunity to try out Detective and was pretty good - except when he actually needed to contact support. So that’s always fun.
12:21 Retiring the AWS Documentation on GitHub* Do you remember this blog post from 5 years? Randomly we do - 5 years ago Jeff Bar told us about the fact that AWS documentation was open source and available on github. * Now, after a prolonged period of experimentation AWS will archive most of the repos starting the week of June 5th, and will devote all of their resources to directly improve the AWS documentation and website. * According to their newest update, the issue was that the primary source for most AWS documentation is an internal system that had to be manually synced with Github Repos. * Despite the efforts of their documentation team, keeping the public repos in sync has proven to be very difficult and time consuming, with several manual steps and some parallel editing. * This effort was high and consumed time that could have been used in ways that more directly improved the quality of the documentation - they honestly just decided it wasn’t worth it. AKA they laid too many people off and couldn’t keep up. * Repos containing code samples, sample apps, cloudformation templates, configuration files and supplementary resources will remain as-is since those repos are primary sources and get high levels of engagement. Do definitely use the thumbs up / thumbs down feature; they say they’re monitoring that.
14:33 📢Matt - “I'm just more curious of why it was so hard to sync them.”15:58 📢Jonathan -”If they can build out ES and orchestrate SQL server clusters, you'd think they could orchestrate copying some docs up to GitHub. Seems a little odd.”16:37 📢Jonathan - “I’m sure it has nothing to do with the fact that they don't want Microsoft using all the contents of github to train AI models or anything else…”17:00 Welcome to AWS Documentation Have you seen this portal? Come check out the weird page with us! Maybe you can also send in a complaint about the weird graphic design. We are not fans.
19:23 AWS partners bring choice of temporary elevated access capabilities to IAM Identity Center* Customers of AWS IAM Identity Center can use CyberArk Secure Cloud Access, Ermetic, and Okta Access Requests for temporary elevated access, or just in time access. * This ongoing collaboration with partners; AWS Identity validated that these solutions integrate with Identity Center and address common customer requirements, such as the ability to request and approve time-bound access and to audit action logs. * Temporary elevated access allows a workforce user who does not have standing permission to perform a task, such as changing the configuration of a production environment, to request permission, receive approval, and perform the task during a specified time.
20:09📢 Ryan- “As someone who's working towards developing this very same solution for a different project, this is fantastic. I think that the ability to have temporary access to cloud resources is a big key. And then especially if you're already leveraging an identity provider, being able to couple those together within IAM Identity Center is fantastic. So I like this.”GCP27:28 Cloud Workstations is now Generally Available! * Work Stations (not Spaces. Just FYI.) * Last year at Google Cloud Next, they introduced cloud workstations in public preview as a vital part of the Software Delivery Shield offering, to help address this challenge. Now they are thrilled to announce GA of Cloud Workstations with a list of enhanced features, providing fully managed integrated development environments (IDE) on Google Cloud. * Cloud workstations enables faster developer onboarding and increased developer productivity while helping support your compliance requirements with an enhanced security posture. The goals are to speed up developer onboarding, provide consistent dev environments and security hardened systems. * If you would like to force all of your developers to go use a virtual workstation to do all their developer work, this is available to you now! Woohoo!
30:49 📢 Jonathan - “I like the idea of having a standardized desktop with all the tools already installed because it just really sucks to see - especially new employees - spending a month getting things set up. However, I do value my ‘not connected to the internet’ time and I can sit on the plane and do some work locally. There's plenty of opportunities that will be lost, I think, by forcing people to only use this.”31:12 📢 Ryan- “It's a good option, right? When I think about some of the struggles with data science and access to data, this sort of offering can make that real easier, but I don't think it replaces my local workstation.”Azure34:53 Microsoft Build brings AI tools to the forefront for developers* Microsoft Build was this week, and boy they announced a ton of AI stuff! ALL. THE. STUFF. * If you have upgraded to Windows 11 or Windows 365 you're about to get a lot of AI - in the form of copilot; which is also opening up Copilot plugins to developers. * Microsoft will use the same plugin standard as ChatGPT to allow easy interoperability between Azure AI, GitHub AI, and Microsoft Copilot. * New Azure AI studio, which will make it simple to integrate external data sources into Azure Open AI services. * They are introducing Azure Machine Learning Prompt Flow to make it easier for developers to construct prompts while taking advantage of popular open-source prompt orchestration solutions like Semantic Kernel. * Azure Open AI service is bringing advanced models to integrate external data sources into Azure OpenAI Service. In addition, we’re excited to introduce Azure Machine Learning prompt Flow to make it easier for developers to construct prompts while taking advantage of popular open source prompt. * Justin’s personal favorite - Microsoft Fabric is a new unified platform for analytics that includes data engineering, data integration, data warehousing, data science, real-time analytics, applied observability and business intelligence, all connected to a single data repo called OneLake. * Copilot in Fabric in every data experience, customers can use conversational language to create dataflows and data pipelines, generate code and entire functions, build machine learning modes or visualize results - real language for the win! Can’t wait to see this one in use. * Azure Dev Box received new capabilities including customization using configuration as code and new start developer images; you can get a whole new developer experience.
37:30 📢 Jonathan - “So we were right about low code being a non-starter. I just don't think we quite saw these AI tools coming quite as fast as they have.”37:40 📢 Ryan - “Drag and drop we knew wasn't gonna work, but if I could just say it… ok! There's nothing worse than trying to figure out, you know, the fields of a data and, and, you know, dimension it the right way. And then screwing it all up and not knowing how to get back to the three changes that go when it was sort of what you wanted, but not quite. And I do really like this. I've been playing around with more and more solutions that are similar… I’m lazier for it, which is great.”38:28 📢 Jonathan - “I think the race is officially on now between Google getting Bard or whatever integrations and personal assistants set up on Android phones and maybe Chromebooks. We don't really hear much about Chromebooks anymore.” (Says the guys who have spent a quarter of the podcast talking about Chromebooks.)OracleNo new news.
Continuing our Cloud Journey Series Talks39:54 Security in Cloud Native * This week in cloud journeys we’re discussing all things security! We know you’ve been waiting patiently for this one. There’s quite a bit to unpack, including connectivity capabilities, dynamic environments, and autoscaling, among other issues. Also on the agenda today: + Encryption - Encrypt everything EVERYWHERE. All of it. Run the encryption. Make your compliance and security departments happy. - How do you then manage all the keys? Single key? Per customer? Per environment? Managed provider? There’s a lot of technologies; a lot of things that need to come into play when making decisions. + Zero Trust Access - Can be a big part of your security story + Managed Security Services - DLP, Config, Security Hub, Guard Duty - Ability to use tokens - Most cloud providers don't have this as an option for users; so it’s usually 3rd party software or writing your own. + Secure connectivity between distributed APIs + Newer Technologies require newer security methods + Dynamic environments require contextual information about workloads
45:32 📢 Ryan - “we've had decades of managing security in our environments and data centers and we've built tooling to match. And it's always my favorite cloud experience when the security team comes up and says, oh, we've got a vulnerability at this IP. Like, that's not a thing. Like that IP is gone. It's been gone for a long time. Like it's, you know, it's... It is an ephemeral construct and a lot of the tools are built to identify those sorts of things by stuff that's very static in a data center, but it's not very static in a cloud environment.”
48:45📢 Jonathan- “I think the problem is just that everyone had their own very siloed areas of responsibility. So you'd have the virtualization team and the network team and the, you know, release team, security team, they all have their own separate sets of tools with no access to each of those tools. And so it's really kind of like this is the only way that those machines could be scanned was by feeding it a massive subnet and just pinging everything until they got some response from something. or installing agents everywhere. And it really isn't a model that translates well to the cloud and auto scaling groups or managed instance groups.”
After Show50:43 “The Need to Visualize a Cloud Infrastructure” aka Justin Does a Thingwww.cloudockit.com
www.lucidchart.com
www.hava.io
Spotted on the HorizonNext week on the Cloud Pod Podcast…ClosingAnd that is another week in the cloud! We would like to thank our sponsors Foghorn Consulting, who is definitely NOT AI generated. Check out our website, the home of The Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at thecloudpod.net or tweet at us with hashtag #thecloudpod
Welcome to the newest episode of The Cloud Pod podcast! Justin, Ryan, Jonathan, Matthew are your hosts this week. Join us as we discuss all things cloud, AI, the upcoming Google AI Conference, AWS Console, and Duet AI for Google cloud. Titles we almost went with this week:* 🔒You can finally lock yourself out of the AWS Console! * 🤝Google IO delivers the AI… hopefully soon to be renamed Google AI Conference * 🖥️Azure announces major MySQL upgrade! * 😢Azure can now update mysql without taking itself offline
A big thanks to this week’s sponsor:Foghorn Consulting, provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.📰News this Week:📰01:10 - Terraform is in the news! * Terraform Cloud updates plans with an enhanced Free tier and more flexibility * A bunch of new updates are coming to Terraform Cloud * These update will provide access to premium features, up to 500 resources in the free tier * There are also new paid offerings for management capabilities, scaling currency, and enterprise support. * Consistent billing metrics based on managed resources, scaling concurrency, and enterprise support area available across all tiers. But let’s be honest - who needs consistent billing metrics? Half the fun is in the guessing! * New Features Include: + Premium security features such as SSO and Policy as Code on all tiers (yes, even the free ones for the poors like us.) + Make it “easy and frictionless” for smaller teams and organizations to get started with their first use cases. + And -finally- updated paid tiers provide easy upgrade paths for organizations as their usage scales, and they have more advanced use cases. * Consumer Advice Time! The updated pricing models include a “per resource” charge. That has the potential to get REAL messy over 500 devices. * Of course, it’s an option to stay on the legacy models, but the “carrots” - like SSO and Sentinel/OPA support - are pretty good, so you really just need to do a cost benefit analysis for your particular situation.
02:35 📢Ryan - “Yeah, I mean, the licensing for Terraform products for cloud and both enterprises always been rough, right? Like starting off per users for cloud makes sense. And at some point for enterprise, they had switched to per project, not users, because they figured out very quickly that what everyone did was just sort of link it together behind automation pane.”04:48 📢”Justin - the devil's in the details of what they consider a resource, right? And it's every single thing. I mean, 10 cents per EC2 instance, hmm. Like, yeah, I get 10 cents worth of value out of Terraform, not having to manually do that stuff. So, like, yeah, but then like you get into S3 buckets and like, I'm definitely not gonna get 10 cents of value out of an S3 bucket every month.”* Our only big question from this announcement is just what they consider a billable resource vs. a supportive resource. Example pricing could potentially be really helpful here. * Does anyone in the audience have a PhD in finance? We could use some help with some cost calculation.
AWS11:00 Amazon Aurora I/O-Optimized Cluster Configuration with Up to 40% Cost Savings for I/O-Intensive Applications * Announcing! The general availability of Amazon Aurora I/O Optimized! * This new cluster configuration offers improved price performance and predictable pricing for customers with I/O intensive apps (like e-commerce, payment processing systems, pretty much anything with SAP) * As much as we like the “everybody loves a surprise bill” method, you can now more confidently predict your costs for I/O intensive workloads - and get up to 40% cost savings when your I/O exceeds 25 percent for your current Aurora Spend. * If you use reserved instances for Aurora, you could potentially see even greater savings. Rad!
13:10 📢Jonathan - “The predictability of the workload means that they can, that Amazon themselves can better kind of put customers in buckets for IOPS. And so they can manage capacity better, whereas customers with very bursty workloads, they always have to make sure that capacity's available when they need it.”14:13 Private Access to the AWS Management Console is generally available * Now generally available in AWS Management Console - Private Access! * Private access allows access to your AWS Management Console from on-premise networks using a secure, private connection. * AWS touts the new access as easy to set up, and a good way to help improve costs, security, and compliance. And who doesn’t love improvements to cost, security, and compliance? * Some of the benefits of using Private Access to the AWS Management Console: + Improved security: Private Access to the AWS Management Console provides a more secure way to access AWS resources, instead of using a public internet connection. + Increased compliance: Private Access to the AWS Management Console can help you meet compliance requirements by providing a secure, controlled way to access AWS resources. + Reduced costs: Private Access to the AWS Management Console can reduce costs by eliminating the need for a VPN or other expensive connectivity solutions. + Improved performance: Private Access to the AWS Management Console can improve performance by providing a direct, private connection to AWS resources. + Increased flexibility: Private Access to the AWS Management Console can provide increased flexibility by allowing you to access AWS resources from your on-premises network. * Want to start utilizing Private Access? Us too! It is currently available in US East (Ohio), US East (N. Virginia), US West (Oregon), Europe (Ireland), and Asia Pacific (Singapore). * Looking for a more secure, compliant, and cost effective way to access your AWS resources? Private Access might just be the answer. Allegedly.
insert a classic Matthew horror story about some weird tech niche17:14 Using Open Source Cedar to Write and Enforce Custom Authorization Policies* Amazon has released support for Cedar * Cedar provides a simple and intuitive API that makes it easy to write policies for all your applications. * Cedar supports a variety of authorization models, including role-based access control (RBAC), attribute-based access control (ABAC), and capability-based access control (CBAC). * Cedar is highly extensible, allowing you to customize it to meet your specific needs. * Cedar is well-documented and has an active community of users and contributors. * Cedar has a pretty website.
17:52 📢Matt - “This is the first I'm hearing of this kind of concept and I'm loving it. Cause this is one of those things where if you're building your own app, I dread sort of the authentication flow, and so I'm always trying to leverage some other party for this.”18:26 📢Justin - “The examples they gave, this tiny to-do user policy thing, it's pretty great. It's a cute little app, and it gives you a very simple way to use it in a client, like a Python client or a Rust server. It's not a bad little example of how to do it. So yeah, I love all this. Ever since CDK, everybody's rushing to make all these things as code, but not restricted by CloudFormation. So I'll take it as a win anytime, it's not CloudFormation.”19:14 Announcing Provisioned Concurrency for Amazon SageMaker Serverless Inference* More exciting news from Amazon! SageMaker Inference now offers provisioned concurrency. This will allow you to set a specific number of concurrent requests that your model can handle. * This can help you to ensure that your model is always available to serve requests, even during periods of high demand. * Provisioned concurrency is available for both batch and real-time inference. * To use provisioned concurrency, you need to create a SageMaker endpoint with the "provisioned" concurrency mode.You can then specify the number of concurrent requests that you want your endpoint to handle. * What are the costs for this new Provisioned Concurrency for Amazon SageMaker Serverless Inference magic we hear you asking? Well, dear listener, wonder no more. + Pricing is based on the number of concurrent requests that you provision, and if you choose to provision one or multiple models. + The cost for provisioned concurrency is per hour, and you are billed for the hours that your concurrency is provisioned. For example, if you provision 10 concurrent requests for a model that costs $0.01 per hour, you will be billed $0.10 per hour for the provisioned concurrency. If you only use 5 concurrent requests for that model, you will only be billed $0.05 per hour. * Savings Plan is available for provisioned concurrency; and can offer a lower per-hour price than the on-demand price. * Users can choose between 1 or 3 year Savings Plan. * The bulk buying rule applies here - the more concurrency you commit to, the lower your price per hour will be.
20:08 📢Jonathan - “Seems to be becoming quite a pattern, doesn't it? They've moved away from servers, have serverless, it's on demand, you pay for what you use, but also now you can have provisioning capacity because you realize that that didn't actually work for people.”20:08 📢Ryan - “Well, it's not that it didn't work. It's that the people having to pay for this do not like spiky, unpredictable workbooks. Right? Like a lot of the provision capacity isn't because you run out of capacity. It's for consistency. And so like if you're going to use this, use it, right. And then we'll baseline the provision part so that we have a consistent cost model. Because otherwise we have no idea what our costs are doing. We don't know when it's out of control or we don't know when it's normal. And it's, so a lot of this I think is, is less about actually having the capacity to execute than it is actually just standardizing and removing those big spikes.”GCP22:56 At Google I/O, generative AI gets to work * Lots of news coming out of Google I/O this year, and surprise surprise - most of it centers around AI! Who would have guessed? Not us… * According to Google CEO, easy and scalable AI is going to drive innovation at all levels of business. * Google Cloud announced a number of new AI and machine learning products and features at Google I/O 2023. These include: + Cloud AutoML Natural Language, which makes it easier to build natural language processing models without any machine learning expertise. (Justin is excited for this one. Natural language for the win.) + Cloud AutoML Vision Edge, which enables developers to build and deploy custom vision models on edge devices. + Cloud TPUv4 Pods, which are powerful machine learning accelerators that can be used to train larger and more complex models. + Cloud ML Engine Pipelines, which make it easier to manage and monitor machine learning pipelines. * Cloud AI Platform, which is a unified platform for building, training, and deploying machine learning models. * These new products and features are designed to make it easier for developers and businesses to build and deploy AI and machine learning solutions. They also “demonstrate Google's commitment to AI and machine learning, which are two of the most important technologies of our time.” * And that’s a recap on Google AI, er, I mean Google I/O for 2023.
26:15 Introducing Duet AI for Google Cloud – an AI-powered collaborator * A few weeks ago we discussed BARD, and how Google had added some new programming languages and capabilities. * At Google I/O they have now presented Duet AI for Google Cloud. * Duet AI, which is on a limited access (much to Jonathan’s dismay) will help create a cloud experience that’s more personalized and intent-driven. * Duet AI will understand your environments, and assist users in building secure and scalable applications - all with expert guidance. * New capabilities powered by Duet AI + Code Assistance which provides AI-driven code assistance for cloud users such as application developers and data engineers. It provides code recommendations as they type in real time, generates full functions and code blocks, and identifies vulnerabilities and errors in the code, while suggesting fixes. + Chat assistance to get answers on specific development or cloud-related questions. Users can engage with chat assistance to get real-time guidance on various topics, such as how to use certain cloud services or functions, or get detailed implementation plans for their cloud projects. + Duet AI for Appsheet will help you create intelligent business applications, connect their data and build workflows into Google Workspace via natural language.
28:28 📢 Justin - “So one of the things they announced at Google I.O., that I don't have a story here for us, but they announced integration of BARD and stuff into Google Apps, and you could subscribe for the beta. And so I got the CloudPod Google Workspace into the beta. So most of the show notes today were written by AI.” (Insert tears from the show note writer.) ☎️Listener poll: What sorts of interesting, non-WGA line busting uses does Chat GT have in your day job (beyond dad jokes and basic chat)? Let us know! Azure34:21 New and upcoming capabilities with Elastic Cloud (Elasticsearch)—An Azure Native ISV Service * Moving on to Azure and services we hate with Elastic Cloud (missed title opportunity.) * Elastic Cloud Elasticsearch is now an Azure native ISV service. It’s now fully integrated with Azure services and can infect, I mean manage, using Azure tools. * There are a number of new and upcoming capabilities in Elastic Cloud Elasticsearch, including: + Support for Azure Kubernetes Service (AKS) + Integration with Azure Synapse Analytics + Support for Azure Active Directory (Azure AD) authentication + Improved performance and scalability
36:33 📢 Jonathan - “You know, when people are addicted to drugs, we don't just say well here's a drug dealer that's got a better deal we say maybe you should move off that and try doing something else.”And that pretty much sums up the guys’ thoughts on Elastic Cloud. Moving on. 37:25 What’s new with Azure Files * Azure Files is a fully managed file storage service that provides SMB and NFS file shares. It is a highly available, scalable, and durable service that can be used to store any type of data, including application data, user data, and backups. * There is currently no premium tier, but let's be real - it’s coming. Just wait and see. * Azure Files offers a number of features, including: + Durability: Azure Files is designed to be highly durable. Data is replicated across multiple data centers to protect against data loss. + Scalability: Azure Files can be easily scaled up or down to meet your needs. + Performance: Azure Files offers high performance for both reads and writes. + Availability: Azure Files is available in all Azure regions. + Security: Azure Files offers a number of security features, including encryption and access control. * New features include + Azure Files now supports Azure Files Sync, which allows you to sync files between Azure Files and your on-premises file servers. + Azure Files now supports Azure Files Premium, which offers higher performance and scalability. + Azure Files now supports Azure Files Edge, which allows you to deploy Azure Files to your edge locations. * The cost of Azure Files will depend on the following factors: * The type of storage account you choose. * The amount of storage you need. * The performance level you need. * The region you choose. * For example, a Standard storage account with 1 TB of storage in the US East region would cost \$12.50 per month. * Just know this doesn’t include network data transfer costs - which will most likely be high.
40:10 📢Ryan - “The Cloud. Full of sharp edges.” (Yet another missed title opportunity.)40:41 General Availability: Azure Database for MySQL - Flexible Server major version upgrade * Azure Database for MySQL Flexible Server now supports major version upgrades. * This means that you can now upgrade your database from one major version to another without having to rebuild your database - THANK GOODNESS! * The upgrade process is fully automated and takes care of all the necessary steps, including data migration and schema changes. * To use the major version upgrader, you must have a subscription to Azure Database for MySQL Flexible Server. * You can also find more information about the upgrade in the Azure docs if you want to learn more about this. + We don’t.
41:22 📢 Jonathan - “I mean, if you can roll back, that's nice. If there's less downtime, that's nice. If it syncs ahead of time before it does it, that'd be kind of cool. But saying that it does all the necessary steps? Yeah, I don't think so. There's a whole lot of testing involved in major upgrades for MySQL.”41:42 📢 Ryan - “ALL THE UPGRADES. It said ALL the upgrades! I’m just gonna click the button.”41:48 📢 Matt - “What could possibly go wrong?”OracleNo new news. Sad face. Continuing our Cloud Journey Series Talks47:27 Managed Services* Welcome back to Cloud Journeys! We’re still talking cloud native, and this week we’re focusing on managed services. In cloud native, there are 5 things managed services should be providing you with - and those include: 1. Reduces costs. Managed services can help you reduce costs by offloading the responsibility of managing and maintaining infrastructure to the cloud provider. This can free up your team to focus on other tasks, such as developing and deploying applications. 2. Increases agility. Managed services can help you increase agility by providing you with access to the latest technologies and features. This can help you quickly develop and deploy new applications and services. 3. Improves reliability. (Unless you’re in France. Too soon?) Managed services can help you improve reliability by providing you with a high level of uptime and availability. This can help you ensure that your applications and services are always available to your users. 4. Reduces complexity. Managed services can help you reduce complexity by providing you with a single point of contact for all of your cloud needs. This can help you avoid the hassle of managing multiple vendors and platforms. 5. Improves security. Managed services can help you improve security by providing you with a secure environment for your applications and data. This can help you protect your business from cyberattacks.
47:58 📢 Jonathan - “Reduce cost is interesting because I think they can enable better architectures, thinking about serverless and event driven architectures which don't cost anything. That could reduce costs versus running something 24-7. However, managed services in general are really not cheaper than running them yourself. It's just a matter of where you spend the money, I think.”48:24 📢 Justin - “Well, you have to calculate the ROI differently. Like an RDS database, for example, you know, yes, you're offloading SQL Server Management or MySQL Management or Postgres or whatever flavor of database you're using to the cloud provider. So maybe you have 10 DBAs, and now maybe you only need six DBAs. So you have an ROI there, because you were able to do less DBAs, or have the DBAs do a more valuable thing, you don't have to fire them necessarily… And if you can focus on just your app, then you save money. But that ROI is not a direct ROI because that database costs 20% more than that database would have cost you on EC2. But you have less headcount required to support it.”☎️Listener Poll - what sorts of things can you think of that are advertised as a managed service but it really isn’t? Matt’s example - having to tell Azure the number of servers that run your load balancers. 55:33 📢 Ryan - “That's my biggest gripe with Composer; is that it's pretending to be a managed Airflow service and it's not. It's a deployment template.”Keep listening for some after show convos with Justin and the boys - especially if you’re interested in learning about when Yahoo was cool. (It was! It really was!)After Show1:00:01 Can Marissa Mayer Eclipse Herself? * Marissa Mayer was the CEO of Yahoo! from 2012 to 2017. * She is now the CEO of Lumi Labs, a company that develops augmented reality technology. * The article discusses whether Mayer can "eclipse herself" at Lumi Labs, as she did at Yahoo!. * The article argues that Mayer's success at Yahoo! was due to a number of factors, including her experience at Google, her strong leadership skills, and her ability to attract top talent. * The article also argues that Mayer's success at Lumi Labs will depend on a number of factors, including the company's ability to develop successful products, the market for augmented reality technology, and Mayer's ability to lead the company. * The article concludes that it is too early to say whether Mayer will be successful at Lumi Labs, but that she has the potential to be a successful entrepreneur.
1:01:56 📢 Ryan - What I've been waiting for from Lumi Labs is sort of like… give me something to play with because their application availability and stuff is very early and not generally available. I kind of want to see what they'll do. I think that one of the things that she spearheaded while I was at Yahoo was a lot of the weather app stuff and her views on mobile - for a company at the time that was really trying to figure out whether it was a content company or a technology company - her views on mobile were very different from what we were used to for the last few years since the previous CEOs. She was very opinionated, very data driven, and had introduced some really cool mobile experiences during that time. So I think that she's got a good track record of that kind of delivery. So I look forward to what they're doing.”Spotted on the HorizonNext week on the Cloud Pod Podcast…ClosingAnd that is another week in the cloud! We would like to thank our sponsors Foghorn Consulting, who is definitely NOT AI generated. Check out our website, the home of The Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at thecloudpod.net or tweet at us with hashtag #thecloudpod
Welcome to the newest episode of The Cloud Pod podcast! Justin, Ryan, Jonathan, Matthew and Peter are your hosts this week as we discuss all things cloud and AI, Titles we almost went with this week:* The Cloud Pod is better than Bob’s Used Books * The Cloud Pod sets up AWS notifications for all * The Cloud Pod is non-differential about privacy in BigQuery * The Cloud Pod finds Windows Bob * The Cloud Pod starts preparing for its Azure Emergency today
A big thanks to this week’s sponsor:Foghorn Consulting, provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.📰News this Week:📰00:40 - News this week starts out with TCP’s own news - Peter’s podcasting career is riding off into the sunset. He claims he’ll actually start listening, but we’ll see…we’re always happy for more listeners though, no matter how we get them. 02:18 - FinOps Foundation debuts new specification to ease cloud cost management* Have we mentioned the FinOps User Conference? I can’t remember if we’ve mentioned that at all… In any event, join the fun June 27th through the 30th in beautiful and sunny San Diego, and be immersed in all things FinOps. It’s a dream vacation opportunity! * In the meantime, the Finops foundation has announced FOCUS, an open-source initiative designed to help companies more easily track their cloud costs, which will initially launch at the conference. * The goal of the initiative is to develop a standard specification for organizing cloud spending and usage data. * According to FinOps, FOCUS will also provide a number of related data management capabilities, MS and Google will join the steering committee tasked with managing the project. * “FOCUS will solve problems that organizations maturing their cloud adoption now face,” said Udam Dewaraja, the chair of the FinOps Foundation’s FOCUS working group. “Today, there’s no clear way to unify cost and usage data sets across different vendors.” * FOCUS introduces standardized terminology for describing cloud expenses and usage metrics, provides a standardized schema, or a data format in which financial information can be organized. A schema specifies technical details such as the maximum number of expenses that should be included in each database row.
AWS04:18 New Storage-Optimized Amazon EC2 I4g Instances: Graviton Processors and AWS Nitro SSDs* AWS is launching the new I4g instances powered by Graviton2 processors - delivering up to 15% better performance than their storage-optimized instances. Whoo! * Shapes come in 2 VCPU, 16gb Memory and 468gb of Storage up to 64 vcpu, 512gb of ram, and 15 tb of storage. * The instances leverage the AWS Nitro SSD’s for NVMe storage. Each storage volume can handle up to 800k random write iops, 1 million random reads, 4600mb/s of sequential writes and 8000mb of sequential reads - more reads and writes than a Scholastic Book Fair! * “What region is this available?” We hear you asking. Fear not, dear listener! We have that info too. The new features are available in select regions including US-East-1, US-West-2 and Ireland in OD, Spot, RI and Savings Plan Form.
05:08 📢Ryan - “some of these numbers are just staggering for workloads when, you know, the traditional sort of standard app is hundreds of megabytes maybe like at peak. So this is - it's a lot. I'm glad I don't have to pay for this.”05:28 📢Justin - “Yeah, 800,000 random write ops, IOPS. I mean, that's just crazy. And then they can support a million random reads. That's, you know, you'd buy a whole sand just to do that in prior lives. You know, and that'd be your entire workload. Now you're talking about a single server with that kind of throughput. It's just, it's incredible.”06:06 - Introducing Bob’s Used Books—a New, Real-World, .NET Sample Application* For folks who need to support .net apps, up until this point there’s really just been some sample code or a need to go search GitHub for your standardized patterns and methods. * That is - until now! AWS has a new open-source sample application, a fictitious used book eCommerce store they’re calling “Bob’s Used Books” - a boon for .net developers working AWS. * The sample app is built using ASP.Net core version 6, and represents an initial modernization of typical on-premises custom applications. Representing the first stage of modernization, the application uses modern cross-platform .net, enabling it to run on Windows and Linux systems in the cloud. * The .net app is based on a monolithic MVC (Model-view-controller) design. T * Typical of the .net framework era, it also uses a single MS SQL Server database to contain inventory, shopping cart, user data and more. * Bob’s Used Books leverages several AWS native services, including Cognito, RDS, S3, AWS SSM, Secrets Manager, Cloudfront and Rekognition
07:12📢Ryan - “I mean, they want to build a bridge for .NET into the cloud, right? And so they can't start off with stored procedures because it's so hard to make that work in a cloud native environment.”07:24 📢Justin - “it would be nice though if they gave you a pattern to, hey, move your stored procedure out of a SQL database and move it into server lists or into some other thing like that. That'd be super nice.”09:54 New – Set Up Your AWS Notifications in One Place* Have you ever had to go set up notifications? It’s a lot of clicks through multiple areas of applications. It’s an unnecessary pain. We’re glad to see AWS finally caught up with the other cloud providers in this area. * AWS is launching AWS User notifications a single place in the AWS Console to setup and view AWS notifications across multiple AWS accounts, Regions and Services * You can centrally set up and view notifications from over 100 AWS services such as S3, Ec2, Health Dashboard, CLoudwatch Alarms or AWS Support case updates in a consistent, human friendly format. You can also configure delivery channels -- email, chat and push notifications to the AWS console mobile app, where you can receive the notifications. * Alternatively you can view notifications in the AWS Management Console
11:04📢Matt - “It looks like from deep in the notes that there's a whole bunch of stuff you have to do in order to get the event bridge events to kind of flow between the accounts. So it doesn't look like it's press a button, get all your accounts in the organization. It looks like it's going to require some setup for multiple accounts.”GCP14:05 Chronicle Security Operations Q1 Feature Roundup * Chronicle has several new features this week to make securing the google cloud easier than ever. + New Looker Based Advanced Report modules to create strong BI Capabilities and have them completely embedded + Customers can now grant access to Google Support to help address issues + New case list view - easier to find those cases raised by Chronicle + Integration between Chronicle Alerts and Soar + Enhanced UDM search + Scheduled Reports - don’t need to log into the console * Australian listeners rejoice - there's now expanded regional support in Australia for iRap protection. We don’t know what that is. Some sort of murderous Australian spider spray maybe? We assume our Australian listeners know, so we’ll just leave it there.
15:41 BigQuery Differential Privacy There are SO MANY* laws in regards to privacy. And we don’t want to be in charge of that. * Thankfully, now in Public Preview is BQ differential privacy, which is SQL building blocks that analysts and data scientists can use to anonymize their data. In the future, they will integrate differential privacy with BigQuery data clean rooms to help organizations anonymize and share sensitive data, all while preserving privacy. * This builds on the Differential Privacy library that is used by the ads data hub and the covid-19 community mobility report. * They are also partnering with Tumult labs, a leader in differential privacy for companies and government agencies. Tumult labs offers technology and professional services to help google cloud customers with privacy implementations. * Differential privacy is an anonymization technique that limits the personal information that is revealed by an output. It is commonly used to allow inference and to share data while preventing someone from learning information about an entity in that dataset.
17:27 📢Peter - “It'll be interesting to see how much easier this makes it. But this has always been a big ask for people moving to the cloud who then want an easy way to have test data and their test environments and other use cases. So if it does make it easier and it's not just a tool that does it on BigQuery, then I can imagine some people are going to be pretty happy.”Azure18:04- Preparing for future health emergencies with Azure HPC * We’re crossing our fingers that this is a waste of money and that there will NEVER BE another major health emergency. NEVER AGAIN. * Essentially the GPU’s can be utilized to help prevent that next pandemic. * Azure HPC enables researchers to unleash the next generation of healthcare breakthroughs. The computational capabilities offered by HPC HB-Series VM, powered by AMD EPYCTM CPU Cores, allows researchers to accelerate insights and advances into genomics, precision medicine and clinical trials, with near infinite high performance bioinformatics infrastructure capabilities.
19:48📢Jonathan - “I think near infinite high performance is probably a bit of a marketing stretch.”20:30- Cloud-based chip design for national security achieves key milestone * Continued US leadership in emerging technology requires a sustainable supply of advanced chips to power innovation from AI to Quantum computing. The CHIPS and Science act passed last year aims to boost domestic research and manufacturing capacity for critical microelectronics. To support this the DOD launched the Rapid Assured Microelectronics Prototypes using Advanced Commercial Capabilities Program (RAMP), an effort to Accelerate the secure, sustainable development of microelectronics for defense technologies. * As part of this effort, Azure has developed three new state-of-the-art chips to benefit Azure Government Cloud customers and to ensure compliance with DoD supply chain requirements + This essentially means the chips can’t be manufactured in China in any way.
Oracle23:45 Microsoft and Oracle Discussed Sharing AI Servers to Solve Shortage * Oracle and Microsoft have reportedly discussed an unusual agreement to rent servers from each other if either company runs out of computing power for cloud customers that use large-scale artificial intelligence, according to a person with knowledge. * The proposed deal discussions have been happening as Oracle Chairman Larry Ellison and other senior executives firm up broader AI strategy, including how to use AI software to improve the company's core software products. * Who bought a lot of A100 Tensor Core CPUs that are most likely just sitting around? And then who also happens to have a direct connection between their cloud and the other cloud, you know, for things like ordering Oracle databases that could take advantage of selling AI chips to Azure for a profit. We don’t know. Really weird. Ok, moving on.
Continuing our Cloud Journey Series Talks26:54 We were going to continue with our Cloud Journey Series, but DHH stirred up a bunch of drama, and now we have to address it. * From the opinionated creator of Ruby on Rails, and Cloud Repatriation, DHH brings us “Amazon can’t even make Microservices or serverless work” * His latest poke in the eye at cloud computing starts from a pretty innocent post by the Amazon Prime team where they moved from a microservices architecture to a monolith * DHH basically sums up his entire opinion that microservices are crazy. And that the real word results of all the Microservices “theory” is that in practice, microservices pose perhaps the biggest siren song for needlessly complicating your systems. And Serverless only makes it worse. * DHH equates Microservices to “Zombie Architecture”. Another strain of intellectual contagion that refuses to die, and has been eating brains since the dark days of J2EE (remote server beans) through the WS-Deathstar Nonsense. * And he particularly points out that Amazon was the one who started all of this with their huge move to SOA and API calls. * Is Amazon Eating Crow here?
Scaling up the Prime Video audio/video monitoring service and reducing costs by 90% * Don’t be confused - it’s really just the microservices of Prime, not Prime itself. * Going to the source material… what you realize pretty quickly is that this particular thing is not ALL OF AMAZON PRIME.. It's a microservice of Prime. And in this case they deal with big video files and long-running processes. * They point out that what they built worked, but wasn’t meeting their service SLI/SLO’s and so the re-architecture to a monolith addresses that issue. * These patterns are all tools and methods, and there is never one correct answer; it depends on many factors. But we all know that microservices should be omnipotent and immutable, and if you break them down too much, you end up in microservice dependency logic hell. Microservice inception sounds like a great idea, right?
30:18 📢Jonathan - I think the problem they had really is that they took the software architecture and kind of projected that onto the infrastructure services they could use to fill those particular functions in the service they were delivering. I mean, and yes, it worked. And yes, it made sense logically. The diagram is the same regardless of whether it's in a monolith or whether it's user-managed services, but they realized they made a mistake and they need to bring those back to be more tightly coupled again. It makes sense. I mean, there's monoliths and there's monoliths. It's huge monoliths that are manageable. And there's small monoliths like this, which make total sense just as there's microservices deployments, which are completely out of control. It's a huge sliding scale, but to me, this just kind of seems like a little overzealous sort of turning what should be a software architecture into an infrastructure deployment type architecture.”How to recover from microservices * If you agree Microservices are the devil and want to stop the insanity DHH gives you 5 tips on how to get back on track: + Stop Digging - Can’t clean it up if you keep making a mess at the same time + Consolidate critical, dependent paths first + Leave isolated performance hotspots for last + Prioritize dropping the most esoteric implementations + Learn to partition large systems with modules rather than networks
Monoliths are not dinosaurs * After DHH’s post went viral, Werner Vogels had to weigh in on his All Things Distributed blog * He points out that software architecture is not like the architectures of bridges and houses. After a bridge is constructed it is hard, if not impossible to change. Software allows you to make changes and as you evolve the architecture you may change components. * He highlights how if you hire the best engineers, you should trust them to make the best decisions * There is not one architectural pattern to rule them all!
33:12 📢Peter - “Yeah, I want to disagree with David Hansen here, but Ruby on Rails, come on. He made Ruby on Rails. How can I disagree with someone who created Ruby on Rails and raced in the 24 hours of Le Mans?”35:16 📢Justin - “we're down to one Ruby on Rails person, which is me, and I'm not even that much of a Ruby on Rails fanboy anymore. I used to be, but I found my way out of that hole, unlike Vader.”News From the Clouds That Didn’t Make the Main ShowAWS* https://aws.amazon.com/about-aws/whats-new/2023/05/aws-cloudtrail-lake-query-presto-sql-select-functions/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-iot-sitewise-15-minute-intervals/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-glue-large-instance-types-generally-available/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-iot-sitewise-optimized-storage-hot-path-data/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-managed-services-prometheus-4-regions/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-quicksight-scatterplot-options-additional-use-cases/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-athena-apache-hudi/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-quicksight-state-persistence-bookmarks-embedded-dashboards/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-quicksight-vpc-public-apis-multi-az-support/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-memorydb-redis-creating-clusters-management-console/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-cloudwatch-synthetics-synthetics-nodejs-runtime-version-4-0/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-device-farm-rooted-android-private-devices/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-aurora-serverless-v2-additional-regions/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-rekognition-face-occlusion-identity-verification-accuracy/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-backup-cross-region-backups-four-regions/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-cloudwatch-metric-streams-filtering-name/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-quicksight-dataset-parameters-slicing-dicing-experiences/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-network-firewall-reject-action-stream-exception-policy/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-vpc-ipam-additional-aws-regions/ * https://aws.amazon.com/about-aws/whats-new/2023/05/sagemaker-ml-inf2-ml-trn1-instances-model-deployment/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-vss-application-backups-powershell-logging/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-codepipeline-govcloud-us-east/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-emr-eks-self-hosted-notebooks-managed-endpoints/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-kinesis-data-analytics-melbourne-region/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-security-hub-tracking-changes-finding-history-feature/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-emr-eks-vertical-auto-scaling/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-elemental-mediaconvert-video-pass-through/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-resilience-hub-trust-advisor-dynamodb-support/ * https://aws.amazon.com/about-aws/whats-new/2023/05/zonal-shift-amazon-route-53-recovery-controller-18-regions/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-batch-dashboard-customization-console/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-msk-apache-kafka-version-3-4-0/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-directory-service-smart-card-authentication-govcloud-us-east-region/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-appsync-graphql-apis-private-api-support/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-multi-az-standby-amazon-opensearch-service/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-rekognition-content-moderation-images-videos/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-network-firewall-suricata-home-net-variable-override/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-well-architected-tool-integration-service-catalog-appregistry/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-rds-postgresql-pgvector-ml-model-integration/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-user-notifications-available/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-console-mobile-application-launches-push-notifications/ * https://aws.amazon.com/about-aws/whats-new/2023/05/amazon-kendra-content-based-query-suggestions/ * https://aws.amazon.com/about-aws/whats-new/2023/05/aws-direct-connect-location-phoenix/
GCPAzure* https://azure.microsoft.com/en-us/updates/general-availability-inbound-icmpv4-pings-are-now-supported-on-azure-load-balancer/ * https://azure.microsoft.com/en-us/updates/generally-available-azure-dns-private-resolver-is-available-in-8-additional-regions/ * https://azure.microsoft.com/en-us/updates/alwaysserve/ * https://azure.microsoft.com/en-us/updates/preview-automatic-scaling-for-app-service-web-apps/ * https://azure.microsoft.com/en-us/updates/retirement-of-sql-server-native-client-snac-ole-db-provider-for-linked-servers-in-azure-sql-managed-instance/ * https://azure.microsoft.com/en-us/updates/general-availability-azure-iot-edge-supports-rhel-9/ * https://azure.microsoft.com/en-us/updates/public-preview-azure-cold-storage/ * https://azure.microsoft.com/en-us/updates/public-preview-palo-alto-networks-saas-cloud-ngfw-integration-with-virtual-wan/ * https://azure.microsoft.com/en-us/updates/generally-available-ebsv5-and-ebdsv5-nvmeenabled-vm-sizes/ * https://azure.microsoft.com/en-us/updates/mabsv4/ * https://azure.microsoft.com/en-us/updates/generally-available-serverless-sql-for-azure-databricks/
Oracle * https://blogs.oracle.com/cloud-infrastructure/post/oracle-cloud-vmware-solution-flexible-standard-shapes * https://blogs.oracle.com/cloud-infrastructure/post/launch-oracle-linux-8-stig-profile-instances-easy * https://blogs.oracle.com/cloud-infrastructure/post/vcn-cidr-range-requirement-odsa * https://blogs.oracle.com/cloud-infrastructure/post/3rd-party-apps-multicloud-multiregion * https://blogs.oracle.com/cloud-infrastructure/post/tryg-insurance-save-50-percent-k8-cloud-costs https://blogs.oracle.com/cloud-infrastructure/post/secure-oracle-cloud-vmware-solutions-workloads-oci-network-firewall * https://blogs.oracle.com/cloud-infrastructure/post/node-cycling-container-engine-kubernetes-oke
ClosingAnd that is the week in the cloud, we would like to thank our sponsors Foghorn Consulting. Check out our website, the home of The Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at thecloudpod.net or tweet at us with hashtag #thecloudpod
Welcome to the newest episode of The Cloud Pod podcast! Justin, Ryan and Matthew are your hosts this week as we discuss all the latest news and announcements in the world of the cloud and AI - including what’s new with Google Deepmind, as well as goings on over at the Finops X Conference. Join us! Titles we almost went with this week:* 🧠The Cloud Pod DeepMinds bring you the Cloud News * 📻The Cloud Sounds Better When Tuned Properly * ☁️The Cloud Pod Delegates Itself to Multiple Organizations * 🌧️The Cloud is Flush with Cash but Still Raining on Employees.
A big thanks to this week’s sponsor: Foghorn Consulting, provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.📰News this Week:📰00:43 - Finops X Foundation Conference is just around the corner * This is a great opportunity to meet with other Finops users and share knowledge, collaborate on Chalk Talk, and network in beautiful San Diego, CA. There will even be an awards ceremony on an aircraft carrier, and you KNOW you want to be there for that. * Do you like stickers? Of course you do. Everyone likes stickers! Be on the lookout for Justin - he’ll be there! And if you ask nicely (or even just sort of nicely) he’ll give you a TCP sticker, so that right there is a great reason to attend. * The conference is June 29th - 31st, and registration can be found on the Finops Foundation website. See you there!
02:51 It’s earning season. Listener discretion is advised. * Let’s start with Microsoft * + At their earnings report on Tuesday, Microsoft is reporting $52.9 billion revenue, up 7% from the previous year. Expectations were set at $51 billion. Much of this is driven by AI (because what isn’t driven by AI these days.) + Overall profits were up 9% from last year, coming in at $18.3 billion. + Microsoft Azure helped with these numbers by recording a 22% increase, vs. a 34% increase seen last year.
03:51 📢Ryan- I’m surprised with some of the numbers, just because I wasn’t expecting - after so many years of growth - that it would continue to rise despite the economic dip.”* Moving on to Google Earnings… * + Google earnings were recorded at $69.79 billion, which was higher than analysts expected, thanks partly due to Google cloud revenue and an increase in Youtube advertising (all of it aimed at my kid, apparently.) + Google cloud (GCI) revenue came in at $7.45 billion, which was slightly lower than expectations, but the good news is that Google finally recorded a profit in their cloud computing sector! This means everyone using GCI won’t be left in the dust, since we all know Google loves to kill off anything that isn’t profitable.
05:30 📢Ryan- “I imagine there’s a lot of people who have worked really hard to turn this profitable; it’s been up and down the last couple of years.”05:45 📢Matt- “I’m wondering if now they’ve kind of stabilized some of the capital expenditures, that they've kind of done with all the data center build outs and stuff like that. So now it's a little bit more maintenance and more incremental improvements, but I guess it also depends on how many new regions they open every year.”06:15 Side Note in regards to those data center maintenance issues - Have you heard about the shutdown of Europe West 9 in Paris? Starting on April 25th at 7pm PST, water damage from the fire suppression system caused a multi cluster failure, leading to the shutdown of multiple zones. Thankfully the shutdown is now limited to West 9a, which is good news for everyone - except those using West 9a. As of this morning, May 2nd, the outage is still being reported, and there’s no ETA for recovery. Our final thoughts on this… maybe just avoid France? 09:20 - Ok - back into earnings with Amazon** Amazon recorded revenue of $127.4 billion, vs. expectations that were set at $124.5 billion. So that’s good, right Wall Street? Right? Bueller? * Amazon Web Services also did a little better than expected, $21.3 billion vs. $21.22 billion. That’s a 16% growth in the first quarter, which seems good on the surface, but the good ole’ analysts over on the street still aren’t happy, since the previous quarter’s growth was a nice, round 20%. * Amazon’s CEO, Andy Jassy, was quoted as saying “There’s a lot to like about how our teams are delivering for customers, particularly amidst an uncertain economy. Our Stores business is continuing to improve the cost to serve in our fulfillment network while increasing the speed with which we get products into the hands of customers (we expect to have our fastest Prime delivery speeds ever in 2023). Our Advertising business continues to deliver robust growth, largely due to our ongoing machine learning investments that help customers see relevant information when they engage with us, which in turn delivers unusually strong results for brands. And, while our AWS business navigates companies spending more cautiously in this macro environment, we continue to prioritize building long-term customer relationships both by helping customers save money and enabling them to more easily leverage technologies like Large Language Models and Generative AI with our uniquely cost-effective machine learning chips (“Trainium” and “Inferentia”), managed Large Language Models (“Bedrock”), and AI code companion CodeWhisperer. We like the fundamentals we’re seeing in AWS, and believe there’s much growth ahead.”
11:08📢Matt - “I was about to say BINGO! At the end of that because I feel like I just heard 17 buzzwords all in a row.”11:08📢Justin - “It's a tough market, and it's tough for everybody - it's not just the cloud providers. But does that mean the gravy train of AWS is over? I don't think so… I did see some posts recently on sysadmin forums, such about moving workloads from cloud back to on-prem; and there are workloads that should never have been moved to cloud that are very static and they don't have economical advantages of using the cloud. So those decisions will be made - and those decisions should be made all the time - when you look at your workloads. But is it a big trend? I don't think it's a trend yet.” AWS15:27 There’s already a new feature for CodeCatalyst!* AWS announced a new Dev Environment dashboard for CodeCatalyst. * The dashboard enables users with the space administrator role to centrally view and manage dev environments across projects; and when using the new dashboard you can view, stop and delete dev environments belonging to your space * We are 100% taking credit for this, even though our idea for it in last week’s show was published after they made the announcement. We all have Alexa devices. We know what happened. You’re welcome. * This new feature helps justify the $20/month price tag, and we definitely expect to see more over the next few months.
17:17 - Amazon announced that S3 Compatible Storage on AWS Snowball Edge Compute Optimized Device is now generally available. * Joining a whole collection of purpose-built services to AWS Snow, customers now have access to S3 compatible storage. This will eliminate any need to re-architect applications for each deployment. * This also makes it easy for you to store data and run applications requiring Amazon S3 compatible storage across the cloud, on-premises, and at the edge in connected and disconnected environments with a consistent experience. * In addition, users can now utilize AWS OpsHub to manage Snow Family Services, as well as Amazon S3 compatible storage on the devices at the edge or remotely from a central location. This provides a unified view of the AWS services that are running on Snow devices, and automates tasks operational tasks through AWS Systems Manager * AWS OpsHub is available at no additional cost to users. * You can also use this as an intermediate storage location and allow the snow device to handle the replication; * We anticipate that this may ease your migration from traditional file systems to object storage.
20:13 📢Justin - “I do hope someday in my career I get to do a very massive storage migration, not to the point that I need the truck, but … where the point is that you have to order like a hundred of these things. Then I can build like mazes in my data center of snowball edge devices. I think it would be fun.”20:25 📢Matt - “I kinda want the truck - and get the two armored police cars to drive with it.”21:05 Amazon Inspector now supports deep inspection of EC2 instances Amazon Inspector now supports deep inspection of EC2 instances when the continual EC2 scanning feature is activated. With this expanded capability, Inspector now identifies software vulnerabilities in application programming packages including Python, Java and node.js packages and OS packages. * Go go gadget vulnerability management tool! Amazon Inspector continually scans your AWS workloads for vulnerabilities and unintended network exposures. * The AWS Regional Services list will let you know where Inspector is currently available. * Like AWS OpsHub, Inspector is available at no additional cost to users. * Note* Legacy accounts can turn this on; for new customers it’s on by default.
22:43 AWS Firewall Manager adds support for multiple administrators* Customers with multiple organizational units (OU’s) can now create up to 10 administrator accounts for your AWS Firewall managers.
22:32 📢Matt “Yeah, and the reason why I kind of thought this was interesting was lot of the stuff you could always only delegate to a single account. So things like config admin, the firewall manager, which also includes WAF, and a lot of the other ones, you can only go to one location. So this is kind of nice that you can start to subdivide stuff out, especially if you're an organization that has potentially multiple acquisitions that you're merging in; you still have your own security teams. You can kind of let them kind of manage their own aspects of it. So it's kind of just interesting to see that they are doing this. I'm curious to see if they expand it to all the other services that have delegated administrators.”Google25:17 - Google DeepMind: Bringing Together Two World Class AI Teams * Sundar Pichai himself released a letter to Google employees in regards to some changes happening with their AI organization. * He says they have created two completely state of the art and world-class research times “Leading the industry forward” but AI is moving faster than either of the teams can handle, so they’re combining the DeepMind and Google Research teams. * The new team, Google DeepMind, is poised to really accelerate Google’s AI progress.
27:30 - Bard can now help you learn to code! * Bard is still just for personal use, but it can personally help you with quite a few tasks! * As of now, Google says Bard can help you code, as well as with software development tasks, like code generation, debugging, and code explanation, something Justin specifically is excited about, because reasons. (Ryan is the reason.) * The new capability is available in 20 different programming languages, including C++, Java, Python, and Typescript - among others. You can even export your Python code without copy and pasting, making collaborative projects even easier than that diorama in 6th grade. * For users new to coding (or working with Ryan) Bard can explain pieces of code. * One of the more interesting aspects of this announcement is that this new feature of Bard is still early in its development, so they warn it may provide inaccurate, misleading, or false information. So essentially Bard has turned into Cable News. Awesome. Additionally, it may provide users with incomplete code, or code that isn’t optimal for your use. Interestingly enough, you can then ask Bard to fix that code or make it faster. The moral of the story: make sure you check Bard’s work.
28:45📢Ryan - “It is at this point that I want to remind our listeners that I am also capable of providing inaccurate misleading or false information and definitely provide code that's not optimal or non-functional.” 30:52 Next Gen Confidential VM is now available in private preview * Confidential Compute technology called AMD Secure Encrypted Virtualization-Secured Nesting Paging (AMD SEV-SNP) on general purpose N2D machines. * These new instances build upon memory encryption and adds new hardware-based security protections such as strong memory integrity, encrypted register state (Thanks to encrypted SEV-ES) and hardware-rooted remote attestation. * Brand new to you! * We offer our sincere apologies that Jonathan isn’t here to better explain this stuff to you all (and us, if we’re being honest.)
33:29📢Justin - “I think the other big lift is that most dev teams are already buried trying to get features out and then say, oh, you had to go modify your code to use this confidential computing thing. I think that's also becomes a problem for a lot of companies. And again, it goes back to the business driver. If you have the driver to do it, then you're gonna make the investment. But if you don't, it's sort of like, I'll get to it eventually. And you never, just never do.”Azure34:20 Preview: Introducing DCesv5 and ECesv5-series Confidential VMs with Intel TDX * If the AMD Confidential VMs on Google were nice, but you really wanted Intel, then Azure has you covered with the new DCesv5-series and ECesv5-series in preview. * They feature the 4th Gen Intel Xeon Scalable processors; these VMs are backed by an all-new hardware-based trusted execution environment called Intel Trust Domain Extensions (TDX). * The selling feature is that organizations can use these VMs to seamlessly bring confidential workloads to the cloud without any code changes to their applications. * DC variant up to 96vcpu and 385GB of memory; EC variant up to 64vcpu and 512GB of memory * Since you may want to attest to the environment, Azure can retrieve hardware evidence for cryptographic verification (just like Google could) of the TEE state and third-party root of trust. * Organizations will have native support for attestation with Microsoft Azure Attestation. They have worked closely with intel on support for project Amber, Intel's upcoming trust services, to help enterprises that want to enforce operator independence and separation of duties in deploying confidential computing.
35:26📢Ryan - “I like that the add test station service that I mean, I want to see that pattern grow across cloud as well. Like that's, I love the idea of being able to attest your state and verify compliance by API request. Fantastic.”35:43📢Justin - “As a person who has had to collect evidence for many audits, anything to automate that stuff and and to get confidence is always a big deal.”35:57 A little more on Project Amber * Amber is new to us so Justin researched it a bit. It’s an Intel project, and from their website “Project Amber is the code name for Intel’s groundbreaking service/SaaS-based implementation of an independent trust authority that provides attestation of workloads in a public/private multi-cloud environment.” * Don’t trust Amazon, Azure, or Google? Trust Intel! It’s an option. That’s all we’re saying. * We’ll be interested in watching where this one goes!
37:34 Cloud Cost optimization strategies with Microsoft Azure * There are many benefits to optimization of your cloud costs, including understanding your bill (I mean, who needs to understand what you’re paying, right?) Reducing carbon emissions, and improving the performance of applications. + #1 - RIght Sizing (where everyone should start) + #2 - Clean up unused resources + #3 - Buying reservations and savings plans (commit MORE money to Microsoft!) + #4 - Database and application tuning (especially if you are trying to get bigger boxes.)
39:33📢Matt - “I always feel like #2 I really feel like number two here, clean up, is always ridiculously hard because everyone's like, oh, it's in the cloud. It's only like two cents a gigabyte or three cents a gigabyte. Who cares? But people forget that if you're doing two, 200, 2000, gigabytes approaching terabytes per day, and all you're doing is aggregating and you're never cleaning up, that starts to add up to real money real fast.”Oracle40:02 Build your skills with the OCI Multicloud Architect Certification and Course * “Multicloud is the new normal” (especially if you're using Oracle databases and want to save a ton of money on licensing!) OCI is here with a new Multicloud Architect Course and Certification, so you can build up some necessary skills, have a neat little badge, and probably not make any more money. Awesome! * This certification is ideal for cloud architects interested in designing and building multi-cloud solutions utilizing Oracle services. * The Oracle learning platform is your one stop shop to get ready for your multi-cloud certification test with video courses, skill checks, exam preps, practice exams, online certification exams, credentials and more. * Public Service Announcement: this is mostly just an OCI to Azure exam. You’re welcome.
Continuing our Cloud Journey Series Talks42:44 Episode 4: All About State* Look, I know you’ve all been preached to in regards to building stateless…and we know state isn’t webscale. But hang with us a minute. + In many cases, stateless is still the best way to go, but it’s not ALWAYS the best option in regards to cloud native architecture.
43:30 📢Ryan - “I would argue that we've always built state. We've been building towards stateless to understand how to manage our state and not rely and make assumptions about our state. But very little that I've worked on doesn't have a state somewhere.”44:00 📢Matt - There's always state somewhere. Whether it's in your SQL or your caching layer or somewhere, like if you're using session caches or anything like that, there's still always state.”* Now in cloud native, a stateful approach has some advantages; the most obvious benefit is the reduction in the overhead of retrieving remote state on every request. But maintaining state may also have increased complexity. + This is tied to the fact that our perception is that we are doing things in the current way. * But now in an event-based state persistence, the stateful alternative shares an events-first way of processing and persisting state changes. Using classic shopping cart scenarios, each change to the state of the shopping cart is persisted as a sequence of events.
28:35 📢Justin - “And so this is again, thinking differently about your apps as you think about cloud native, is that where does eventing make sense? And then how do you think about state with that regard to that eventing?”* Justin and Ryan then argue about consensus protocols. (Not to be confused with the much more interesting protocol droids.) + Zookeeper vs EtcD - Ryan tries to defend it, but EtcD is behind Kubernetes, and as we’ve pointed out before Kubernetes is the new hotness, so… winning.
50:01 📢Ryan - “the argument we always have is just, is it the tool or is it how the tool is used, right? And so my argument is that if you cram too much into EtcD, you're gonna have the same problems as you do in ZooKeeper.”51:41 📢Justin - “At the end of the day, anytime you're dealing with a distributed state management system that has to get to quorum, you know, you can't overload it. And that's probably the biggest mistake people make with using EtcD and Zookeeper is they try to shove everything into it.”Spotted on the HorizonNext week on the Cloud Pod Podcast…News From the Clouds That Didn’t Make the Main ShowAWS* Choose Korean in AWS Support as Your Preferred Language * AWS Amplify supports Push Notifications for mobile and cross platform apps * AWS Lake Formation and Glue Data Catalog now manage Apache Hive Metastore resources * AWS Systems Manager now supports AWS Cloud Development Kit (CDK) applications * AWS License Manager now supports upgrading of EC2 Instances from Ubuntu to Ubuntu Pro operating system * AWS Glue Crawlers now support creating partition indexes * Apache Kafka support now available in AWS Distro for OpenTelemetry * Amazon Personalize now supports Kafka Sink connector to ingest real-time data with ease * AWS WAF Captcha launches JavaScript API support * Redesigned opportunity management experience in AWS Partner Central * AWS SAM CLI announces local testing support for API Gateway Lambda authorizers * Announcing Amazon GuardDuty support for AWS Lambda * Amazon Redshift announces general availability of Dynamic Data Masking * Introducing AWS WAF Ready Partner Offerings * Amazon Redshift announces general availability of MERGE SQL command * AWS Snowball Edge Compute Optimized now supports Amazon S3 compatible storage * AWS Amplify Flutter announces general availability for web and desktop support * Amazon Redshift announces centralized access control for data sharing with AWS Lake Formation * Amazon Comprehend improves accuracy of document classification using layout data * AWS Resource Access Manager supports fine-grained customer managed permissions * AWS Elemental Link UHD now supports Dolby Digital and Digital Plus * Amazon Keyspaces (for Apache Cassandra) supports IN operator for SELECT queries * Announcing AWS DataSync Discovery general availability (GA)
GCPAzure* Azure Service Fabric 9.1 Third Refresh Release * Generally available: Cross-region service endpoints for Azure Storage * General Availability: Support for Linux clients to use identity-based access to Azure file shares over SMB * Azure CycleCloud 8.4.0 release * The era of AI: How the Microsoft Cloud is accelerating AI transformation across industries
Oracle * Simplify IT with Oracle Cloud VMware Solution and Dell Data Protection Suite
ClosingAnd that is the week in the cloud, we would like to thank our sponsors Foghorn Consulting. Check out our website, the home of The Cloud Pod where you can join our newsletter, slack team, send feedback or ask questions at thecloudpod.net or tweet at us with hashtag #thecloudpod
Welcome to the newest episode of The Cloud Pod podcast! Justin, Ryan and Jonathan are your hosts this week as we discuss all the latest news and announcements in the world of the cloud and AI - including Amazon’s new AI, Bedrock, as well as new AI tools from other developers. We also address the new updates to AWS’s CodeWhisperer, and return to our Cloud Journey Series where we discuss insert dramatic music - Kubernetes! Titles we almost went with this week:* ⭐I’m always Whispering to My Code as an Individual * 🤖Azure gets an AI, Google gets an AI… and Amazon finally gets an AI * 🧑💻You can now creep out your copilot by whispering to your code * ✍️AI fails to generate an interesting show title this week
A big thanks to this week’s sponsor: Foghorn Consulting, provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.📰News this Week:📰AWS News@01:36 - Codewhisperer is now generally available - and includes a free tier! * -Besides just the availability, this new real-time AI coding companion also includes a FREE individual tier open to all developers. This is a (good!) surprise to us. * -The free tier works with many popular IDEs, including VS Code and Intellij IDEA among others. * -Codewhisperer can assist in productivity by creating code for repetitive or routine tasks * - Cost wise, Codewhisperer is pretty much in line with other products like GitHub Copilot. * - Python, Java, Javascript, Typescript, C#, Go, Rust, PHP, Ruby, Kotlin, C, C++, Shell Scripting, SQL and Scala * -The downside: security is fairly limited (Python and Java, for instance) * 02:50 📢Jonathan: “I’m super happy that they’ve launched with so many languages supported, and so much support for different IDE’s. It’s a great launch. It’s definitely a time saver, and I’d pay the $20 a month for the service even if there wasn’t a free tier.” * (But maybe we don’t say that too loudly, or the free tier will disappear…) * And speaking of that free tier - * 04:49 📢Jonathan: “I expect the reason there’s a free tier is so that they get much more data from user experiences, and can retrain the model based on people’s feedback.” * 05:24 📢Ryan: “It’s edging us closer to code writing code.” * -One of the things that is important to point out from our discussion today is that you can get a bit more for your money from Copilot, which also has a free tier for individuals.
@09:10 Amazon is excited to announce the Simple Database Archival Solution* -SDAS is an open source solution, available under the Apache License, and can be deployed directly from your AWS account * -Do you have a problem with being able to safely archive data from your databases? According to Amazon this is a wide ranging problem for many folks, and since storing data on-premises can be extremely costly, this may be a great alternative. * -It automates a lot of the logistics of archiving data and leverages Step Functions, Glue, S3 and Athena. * -What is supported, you may be asking? Fear not, dear reader; we have that information too! Oracle, Mysql or Microsoft SQL Server. * -SDAS, right out of the box, will also give you detailed information on the status of your data, so you always know what’s going on. Well, when it comes to archived data, anyway. * 12:00 📢Ryan - It’s clear from the write up that the purpose is not really to make that data useable, it’s to store it for compliance and regulatory reasons, right, so can you get it out when the lawsuit is filed is the success criteria.
@12:28 Amazon is getting into the AI business!* AI is going to be completely reinvented! Wait, no not really. 3rd in market maybe? Sure. * Amazon says that AI and machine learning have been a focus for Amazon for over 20 years, and that seems pretty obvious given the size of the company, and the complexities of things from their online services to robotics in their fulfillment centers. * The new tool, called Amazon Bedrock, aims to “democratize” ML and make it available for everyone to utilize and give users an easy way to build and scale generative AI. * Bedrock will give users access to multiple powerful Foundation Models for texts and images. The FMs are from AI21 labs, anthropic, stability AI, and Amazon’s Titan FMs and are accessible via an API. * Utilizing a serverless experience, users will be able to figure out what model is right for them, get started customizing their FM with their own data, and then deploy them into their own applications. Neat! * 14:05📢Ryan - I remember just lamenting about how AI seemed to be a tagline of every security or operations software that was being pitched to me, and there’s no way it could possible get worse - but what a fool I was. Because it is - you can’t open a news article without it being related to AI these days, and I can’t even keep up.” * 14:57📢Jonathan- I don’t think were in a position to predict what this space is going to look like in 6 months or 12 from now; I think the rate of innovation in this area is going to be absolutely exponential.” * 🔪Quick poll: (1) Are you saying please and thank you to Echo, Alexa, etc? (2) Will that keep us from getting murdered by AI? Nevermind. Let’s stop thinking about it.
GCP@16:48 Google has announced a new AI model for healthcare * -There’s a new cloud automation toolkit and cloud based claims acceleration suite * -They also previewed the Med-PaLM 2, described as a neural network capable of answering all of your most pressing medical questions. * -Our takeaway from this one - PLEASE someone convince WebMd to adopt this new tech. We’re tired of always being diagnosed with cancer.
@ 17:25 - Google announced the public preview of BigQuery change data capture -Joins their existing datastream for Bigquery solution which helps you seamlessly replicate data from relational databases such as MySQL, PostgreSQL, AlloyDB, and Oracle, directly in Big Query. * -Thanks to BigQuery’s native CDC support, customers can directly replicate insert, update and/or delete changes from source systems into BigQuery without complex DML Merge-based ETL pipelines, cutting out the middleman. As Jonathan pointed out, it’s not new* technology, so we’re a little surprised it wasn’t already a feature, although that may have been due to costs, and now it’s just a bit more cost effective. * 18:07 📢Ryan - This really feels like the BigQuery team is just challenging customer requests at this point; like, FINE. We’ll incorporate every database functionality into this.”
Azure@20:08 - It’s Kubernetes news from Azure today! Announcing the general availability of Azure CNI Overlay in Azure Kubernetes Service* -customers have been pushing the scales and boundaries of existing network solutions in Azure Kubernetes Services, so the new overlay will go a long way in addressing performance and scaling needs.
@22:35 Continuing our Cloud Journey Series Talks Great segues mean great content, and boy do we have some of that for you all today. And just what is great content? Kubernetes, of course! * Episode 3 of the Cloud Journey discusses - * What is Kubernetes and how does it support cloud native architecture? + The first thing you do to build a cloud native app is to put it in Kubernetes. Right? RIGHT? + The tech world revolves around Kubernetes these days. Maybe a lot of that is due to it being open source? * 24:17 📢Ryan - “I really think the Kubernetes wave has done a disservice to cloud native.” * 24:26 📢Jonathan - “I m still not entirely sure why Kubernetes as won the hearts and minds the way it has…I think part of it has to do with the prestige of companies like Google, and everyone wants to do things the Google way.” * What are the benefits of using Kubernetes for container orchestration? + There’s lots of great ways to orchestrate containers, and Kubernetes is one, but it’s really complex. + Great if you’ve got a team / support infrastructure, but it’s not simple. You really do need a team. + Did Kubernetes stifle some of the cloud native innovation in Serverless. Although, at least to Justin, Serverless is still the long term winner. + Kubernetes can add a lot of value to legacy platforms. * 28:35 📢Justin - “I hope someday we get to the end of Kubernetes as this end all, be all tool and say look we need something, simpler and easier that just works*.” * What is a service mesh and how does it help with microservice communication and management? + How does mesh ultimately help with this cloud native architecture? + Service mesh is a network infrastructure layer in the communication model. + It intercepts traffic leaving a service, applies rules, manages moving the request / data to an egress point and facilitates the flow. + Can service mesh replace networking? * 30:42 📢Justin - “If regular networking is role based access control, service mesh is the attribute based access control…It’s a way to simplify communication, because then it allows access to allow communication in a safe, prescriptive way.”
What are some popular service mesh technologies?* Are all of them based on Istio? * You definitely can do things in Console, but it’s more of a gateway proxy, but it’s not really a service mesh. * Jonathan would also like you to know about Console Connect, which Justin totally didn’t just mention.
News That Didn’t Make the Main ShowAWS* Amazon EC2 Inf2 Instances for Low-Cost, High-Performance Generative AI Inference are Now * Generally Available * Introducing AWS Libcrypto for Rust, an Open Source Cryptographic Library for Rust * Supabase Makes Extensions Easier for Developers with Trusted Language Extensions for PostgreSQL * Investigate security events by using AWS CloudTrail Lake advanced queries * Scale your authorization needs for Secrets Manager using ABAC with IAM Identity Center * Amazon EMR Serverless adds job-level billed resources for efficient cost management * AWS Lambda adds support for Python 3.10 * AWS Backup announces support for SAP HANA databases on Amazon EC2 * Amazon RDS events now include tags for filtering and routing * Prepare data easily with Amazon Personalize and Amazon SageMaker Data Wrangler integration * Amazon DocumentDB (with MongoDB compatibility) provides ODBC driver to connect from BI tools * Amazon EFS now supports up to 10 GiB/s of throughput * Amazon DynamoDB now supports up to 50 concurrent table restores * Introducing the AWS CloudFormation Template Sync Controller for Flux * AWS Elastic Disaster Recovery now simplifies launch settings management * AWS Glue launches new capability to monitor usage of Glue resources * Amazon SageMaker Collections is a new capability to organize models in the Model Registry * AWS Systems Manager Incident Manager now supports Microsoft Teams for Collaboration * Announcing availability of AL2023 and gMSA support on Amazon ECS Linux containers * Amazon ECS on AWS Fargate supports extensible ephemeral storage for Windows Tasks * Announcing updated video background blur and replacement in Amazon Chime SDK * Amazon Redshift enhances string query performance by up to 63x * Announcing AWS Elemental MediaConnect Gateway * AWS Service Management Connector introduces AWS Support and Automation integrations in Jira Cloud * Amazon EC2 Trn1n instances, optimized for network-intensive generative AI models, are now generally available * Amazon EC2 Inf2 instances, optimized for generative AI, are now generally available * AWS launches Split Cost Allocation Data for Amazon ECS and AWS Batch * EC2 Image Builder supports vulnerability detection with Amazon Inspector for custom images * AWS Ground Station now supports Wideband Digital Intermediate Frequency * Amazon EKS now supports Kubernetes version 1.26
GCP* New to Chronicle: Building Rules with Your Own Threat Intel Part 2
Azure* Generally Available: Kubernetes 1.26 support in AKS * Public preview: AKS service mesh addon for Istio * Generally Available: Long term support version in AKS * Public preview: Fail Fast Upgrade on API Breaking change detection * Generally Available: Azure CNI Overlay for Linux * OpenCost for AKS cost visibility * GA: Azure Active Directory workload identity with AKS * Azure Service Operator stable release version 2.0 now available * Hotpatch is now available on preview images of Windows Server VMs on Azure with the Desktop Experience installation mode * Generally Available: Azure App Service - New Premium v3 Offerings * Public Preview: Isovalent Cilium Enterprise through Azure Marketplace * Regional expansion: Azure Elastic SAN Public Preview is now available in more regions. * Azure Storage Mover is now Generally Available * General Availability: Azure CNI Overlay * Use Stream Analytics to process exported data from Application Insights * Connect Azure Stream Analytics to Azure Data Explorer using managed private endpoint. * Generally available: Azure Cosmos DB for PostgreSQL REST APIs * Azure SQL—General availability updates for mid-April 2023 * Generally available: Azure Cosmos DB for PostgreSQL cluster compute start and stop * Public preview: Node Resource Group (NRG) lockdown * Azure Machine Learning - General Availability for April * General Availability: Azure App Health Extension - Rich Health States * General availability: Azure DevOps 2023 Q1 * General availability: Improved scaling model for Azure Functions with Target Based Scaling * Azure SQL—Public preview updates for mid-April 2023 * General availability: Read replicas for Azure Database for PostgreSQL Flexible Server * Generally Available: New burstable SKUs for Azure Database for PostgreSQL - Flexible Server * Generally Available: Azure Database for PostgreSQL - Flexible Server in the Australia Central region. * Public preview: Azure Container Apps offers new plan and pricing structure * Generally available: Static Web Apps support for Python 3.10 * Public preview: Azure Container Apps supports user defined routes (UDR) and smaller subnets * Public preview: Azure Functions V4 programming model for Node.js * General Availability: App Configuration geo-replication * Manage your APIs with Azure API Management’s self-hosted gateway v2
Oracle * Achieve up to 50% better price-performance for big data workloads on OCI Ampere A1 Compute * Introducing the user tutorial for Cloud Shell * FastConnect integration with Megaport Cloud Router * Oracle unveils record breaking genomic analysis benchmark * New Oracle Cloud Infrastructure and Oracle Database capabilities, ready for CloudWorld Tour 2023
After ShowMass Layoffs and Absentee Bosses Create a Morale Crisis at Meta* The year of efficiency has some side effects * Employees are joking about being fired on internal slack teams and a rampant gallows humor exists * Employees are complaining though where Meta’s top executives have moved away from Silicon valley resulting in IC’s and now no middle managers as they’ve been laid off wandering around. And Zuckerberg is on Paternity leave. * Overall between the layoffs, absentee leadership and concerns about the future strategic direction by Zuckerberg has just hurt employee morale.
ClosingAnd that is the week in the cloud, we would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, slack team, send feedback or ask questions at thecloudpod.net or tweet at us with hashtag #thecloudpod
Welcome to the newest episode of The Cloud Pod podcast! Justin, Ryan and Matthew are your hosts this week as we discuss all the latest news and announcements in the world of the cloud and AI. Do people really love Matt’s Azure know-how? Can Google make Bard fit into literally everything they make? What’s the latest with Azure AI and their space collaborations? Let’s find out!Titles we almost went with this week:* Clouds in Space, Fictional Realms of Oracles, Oh My. * The cloudpod streams lambda to the cloud
A big thanks to this week’s sponsor: Foghorn Consulting, provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you have trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.📰News this Week:📰General News@00:57 - Interesting article - What is Open AI doing that Google Isn’t * (Besides making a usable product, obviously.) * -Google AI lab is separate, meaning researchers are separate from the engineers, versus Open AI where they are one combined team, which - go figure - works out better. -The article goes on to question whether Google is “losing their edge” which, as the number 3 player in the AI industry, is pretty evident. The guys discuss the two services, as well as how Bard can be crammed into every product Google makes. * 02:49 📢Ryan: “I find it kind of fascinating that Open AI, because they were first to market, gets to dictate what AI is.”
@07:01 Are you an AI developer? Are you looking to build out your own models? -Good luck. Finding the hardware to do that continues to be an issue. * The Information put out an article about a shortage of servers at all the major cloud companies, including AWS, Azure, GPC, and OCI. The biggest issue is a shortage of GPUs and GPU processors, which was one of the first and main resources to have supply chain issues. * Desktop computer GPUs are having less issues with supply. Some of that is thanks to the bottom falling out of the Bitcoin market (no need for mining anymore.) * 07:57 📢Ryan - “It’s a run on a limited resource, and GPU’s - they were the first to hit supply chain issue… it’s always been sort of a scarce resource. When I first heard of GPU’s being used for machine learning and those types of workloads, there weren’t enough of them, and it wasn’t really embedded in the type of hardware you need to run in a data center. * 09:07📢Justin - “A lot of GPU returns and GPU availability in the desktop market, which those GPU’s are better suited for doing high computational work of 3D and things that are required for getting to bitcoin… so you could use desktop GPUs but your experience won’t go as far.” * Unfortunately the smart British guy isn’t here to tell us all the ins and outs of the differences between types of GPUs, so do tune in for that next week!
@10:37 FinOps slack channels had some chatter in regards to the Amazon spot market pricing increases. * For the past couple weeks prices have continued to grow in US East 1, US AP Southeast 1A, and European servers (which are always more expensive anyway) among others. Justin discusses his ideas for why this is the case. Surprisingly (or not surprisingly at all) most of his theoretical reasons for these prices increases are pretty cynical - but they include capacity constraints in the supply chain, Amazon limiting additional buying because they’re going into earnings, and (most cynically) theorizing that Amazon is artificially increasing the prices in the spot market to boost sales and topline growth. * 12:35📢Justin - “I used to run spot instances for The Cloud Pod in US West 2 which is in Oregon, and it worked really great until re:Invent week. Then all the labs said ‘use US West 2!’ and guess what? They’re all hitting capacity that I was using in a spot market. So all my servers go down - which is a terrible scenario.”
AWS@16:56 AWS Lambda announces support for payload streaming* -Response payloads can be progressively streamed back to the client, which should help improve performance for both web and mobile apps, since functions can send partial responses as they become ready. The streaming responses will cost more in network transfer costs; billing is based on the number of bytes generated and streamed after the first 6mb, with an initial maximum response size of 20mb. The guys agree this is a useful function, but is at an early stage, since it only supports Node.js currently. We’re excited to see how this one evolves as they develop it further. * 18:09📢Ryan - “That is pretty cool actually, because that does open up Lambda for a lot more workloads that have been traditionally stuck on big servers with big beefy network connections.”
@ 21:36 - Any Proton users out there? They just announced an integration with Git for service sync. * Essentially customers can sync Proton service configurations directly from GitHub. Cool, huh? * Justin especially is interested in this one, and is excited to play with it a bit, even if Matt was a little surprised it wasn’t already in place. * We also think this one may be a really good intro for some dev teams when it comes to simple CI/CD pipelines.
@ 23:43 - You can now add an Elasticache cache to Amazon RDS databases in the RDS console. * While you could definitely do this before, you had to do your own plumbing, configurations, and configure security groups. * This new update should help accelerate application performance, and potentially lower costs, since when using caching you have to pay data transfer costs if it’s going across zones. * We’d love to give you more information, and a quick note about our experience with this, but neither our RDS servers in Oregon or RDS servers in Ohio have this option, so that’s helpful. * 26:46📢Justin: “It’s the most basic, low level integration they could have possibly done to make this work.” * 27:08📢Ryan: “It's a console enablement of the existing service” * 27:27📢Justin: “The promise of this headline is amazing - and the detail implementation is not.” * If you’re looking for “the button” - it’s DEEP and hidden in the actions menu. (Don’t search in the DBS instances menu where Justin was looking. That would make too much sense.) * Bottom line: This isn’t what we were hoping it would be. Sad face.
GCP @31:50 - No new announcements, but they added some new things to their blog. -Google Cloud deploy now supports canary deployment strategy The new deployment will support all target types, including Google Kubernetes Engine, Cloud Run, and Anthos. @ 35:39 Google also announced General Availability of Cloud Run services as backends to Internal HTTP(S) Load Balancers and Regional External HTTP(S) Load Balancers. * -Internal load balancers allow you to establish private connectivity between Cloud Run services and other services and clients on Google Cloud, on-premises, or on other clouds. Additionally, you can get custom domains, migration tools from legacy servers, identity aware proxy support. Internal load balancers are something many companies overlook, so we’re excited to see this coming out with the external load balancers. * 37:27📢Matt: “I feel like the internal load balancer is one of the harder things; a lot of times they use whatever their external tools are, and the internal load balancer is really what trip up a lot of the cloud providers and always is a later feature. So it’s nice to see that they’re doing it all at once.”
@ 38:41 - The Observability tab in the Compute Engine console has reached general availability. * -The new visualization tool for Compute Engine Fleets, which Google says is an easy way to monitor and troubleshoot the health of your fleet VMs. Cool! We like pretty graphs. * -Sorry Google. We don't mean to be mean. Next week give us some press releases so we’re less salty.
Azure @ 40:33 - Microsoft is excited to continue sucking up all the oxygen on AI with a new Azure connected learning experience (or CLX)* Do you want to learn all about AI? Of course you do! Become a data scientist today (and earn more money too!) by taking part in three new courses centered around AI data and skills. Now you too can become an Azure certified AI solutions engineer. Fancy!
@ 42:36 - AZURE IN SPACE - Azure announced advancements in technologies across multiple government agencies with multiple new features. * Are you ready for some acronyms? Because the Fed LOVES their acronyms. Ok. Here we go: advancements include: * Viasat RTE integration with Azure Orbital Ground Station, bringing high rate, low latency data streaming downlink from spacecraft directly to Azure. * A partnership with Ball Aerospace and Loft Federal on the Space Development Agency’s (SDA) National Defense Space Architecture Experimental Testbed (NeXT) program, which will bring 10 satellites with experimental payloads into orbit and provide the associated ground infrastructure. * Advancements on the Hybrid Space Architecture for the Defense Innovation Unit, U.S. Space Force and Air Force Research Lab, with new partners and demonstrations that showcase the power, flexibility, and agility of commercial hybrid systems that work across multi-path, multi-orbit, and multi-vendor cloud enabled resilient capabilities. * Seriously though, how much do we all love the name Space Force? * Azure powers Space Information Sharing and Analysis Center (ISAC) to deliver Space cybersecurity and threat intelligence operating capabilities. The watch center’s collaborative environment provides visualization of environmental conditions and threat information to rapidly detect, assess and respond to space weather events, vulnerabilities, incidents, and threats to space systems. * @43:46 📢Ryan: “Space is cool.” * That really about sums it up, doesn’t it?
@47:39 - new Azure App Service plans - will they bring greater choice and cost savings? There are two new offerings, and they’re super exciting and not confusing at all. * -We’re so happy to have Matt here to explain ALL of this stuff for us. Are you ready for this? Microsoft names for instances always make a ton of sense, so pay attention. * -“In uncertain economic times, you need more flexible options to achieve your business outcomes. To meet the need, Microsoft is excited to announce new plans for Azure App Service customers with two new offerings in the Premium V3 (Pv3) tier and expansion in the isolated v2 tier, which powers the high-security app service environment 3. The cost-effective P0v3 plan and a new series of memory-optimized (P*mv3) plans are designed to help more customers thrive and grow with Azure platform as a service (PaaS).” * Got that? Don’t say we didn’t warn you. Don’t worry. Matt is going to be able to explain it EVEN BETTER next week. Probably. Maybe. * @52:51 📢Matt: “You can’t do anything less than ultra premium - this is what I’ve learned. Everything has to be the highest end, because that’s the only way they nicely give you the security stuff that you need to make it past all your compliance.”
Oracle @ 56:28 Oracle sovereign cloud solutions are now making realms available for enhanced cloud isolation* Realms help with data sovereignty requirements by creating logical collections of cloud regions that are isolated from each other, and they don’t allow customer content to leave a region outside that realm. * Oracle’s EU Sovereign Cloud will be launching in 2023 * The EU sovereign cloud will initially be made of two regions in Germany and Spain. * TLDR; regions that are linked keep data in one governance area. Thanks Oracle. We’re super grateful to know what terrible things you’re doing on the backend. 👍
Continuing our Cloud Journey Series TalksSkipping the cloud journey. Again. We’ve been talking a bit too long already, so we should probably end here. You’re welcome. News That Didn’t Make the Main ShowAWS* Announcing media metrics for AWS Elemental MediaConvert * AWS Well-Architected Framework strengthens prescriptive guidance * Amazon SageMaker Inference Recommender improves usability and launches new features * AWS Firewall Manager adds support for six additional AWS WAF features * Amazon Connect now enables agents to handle voice calls, chats, and tasks concurrently * AWS Glue visual ETL now supports new native Amazon Redshift capabilities * Amazon Connect Voice ID now supports multiple fraudster watchlists per Voice ID domain * Amazon RDS Optimized Reads now offers up to 2X faster queries on RDS for PostgreSQL * Amazon QuickSight now supports Row Level Security tags with OR condition * Amazon GuardDuty Adds Three New Threat Detections to Alert Customers on Suspicious DNS Traffic * NICE DCV announces the general availability of the DCV Extension SDK * Amazon RDS for MySQL supports inbound replication for RDS Multi-AZ deployment option with two readable standby DB instances * Amazon RDS for MySQL now supports up to 15 read replicas for RDS Multi-AZ deployment option with two readable standby database instances * EMR on EKS now supports Apache Spark with Java 11 * RDS Custom for SQL Server now supports Multi-AZ deployments * Amazon Aurora now supports PostgreSQL 15 * AWS Trusted Advisor introduces Engage for AWS Enterprise On-Ramp Support customers (Preview) * Amazon SageMaker now supports sharing predictions with Amazon QuickSight * Amazon WorkSpaces Core introduces Microsoft Office 2019 Professional Plus bundle * AWS Security Hub launches 4 new security best practice controls * Introducing AWS Cloud Operations Competency Partners * AWS Proton introduces Git management of service configurations * Amazon CodeCatalyst Dev Environments now supports GitHub repositories * Amazon Monitron extends data stream with closure codes and status from sensors * AWS Controllers for Kubernetes (ACK) for Amazon MemoryDB is now generally available * Amazon CloudFront supports S3 Object Lambda Access Point origin * AWS Network Firewall now supports IPv6-only subnets * AWS App Runner adds 7 new compute configurations * Amazon S3 adds new visibility into object replication status * Announcing CSV Export for AWS Resource Explorer Search Results * AWS Systems Manager Distributor supports New Relic Infrastructure Monitoring agent * Amazon AppFlow announces 6 new connectors * AWS AppSync now supports publishing events to Amazon EventBridge * Amazon Rekognition launches Face Liveness to deter fraud in facial verification * Amazon EC2 Serial Console is now available on EC2 bare metal instances * Amazon Pinpoint now supports AWS PrivateLink * AWS WAF supports larger request body inspections for Amazon CloudFront distributions * AWS WAF increases web ACL capacity units limits
Azure* Enable Trusted launch on your existing Azure Gen2 VMs * NGINXaaS - Azure Native ISV Service * Azure Monitor managed service for Prometheus has updated our AKS add-on to support Windows nodes * Read replicas for Azure Database for PostgreSQL Flexible Server
Oracle * Create and manage OKE Clusters using Cluster API
AWS Puts Up a New VPC Lattice to Ease the Growth of Your ConnectivityAKA Welcome to April (how is it April already?) This week, Justin, Jonathan, and Matt are your guides through all the latest and greatest in Cloud news; including VPC Lattice from AWS, the one and only time we’ll talk about Service Catalog, and an ultra premium DDoS experience. All this week on The Cloud Pod. This week’s alternate title(s):* AWS Finally makes service catalogs good with Terraform * Amazon continues to believe retailers with supply chain will give all their data to them * Azure copies your data from S3… AWS copies your data from Azure Blobs… or how I set money on fire with data egress charges
📰News this Week:📰AWS@00:56 - Lots from AWS – Terraform and Service Catalog, Supply Chain and its crazy pricing, and VPC Lattice -Self-service provisioning of Terraform open source configured with AWS Service Catalog. This means you can define your service catalog resources with either cloud formation or Terraform. And yes, Service Catalog inception is potentially a viable thing. 📢Matt: “It’s useful when you want to give people who don’t know what they’re doing very specific things; if you’re in a large organization, really just defining exactly what people can do…but to me it really starts to remove a lot of the innovation… but if you really want your teams to leverage the cloud and innovate I feel like it does start to limit some of the different aspects of the cloud.”📢Justin: “Don’t drink the ITSM kool-aid on Service Catalog.”@ 04:32 - AWS Supply Chain is now generally available; and yes, this is the same Supply Chain that was introduced at re:Invent. AWS says it will help mitigate risks, lower costs, increase visibility and help give actual insights on the supply chain.-Honestly, we’re talking about Supply Chain because the pricing is all over the place. For example, the first 100,000 Supply Chain insights are .40/each; the next 900,000 are .13/each, and over 900,000 its .065/each. @ 09:26 - VPC Lattice is finally here! Also announced at re:Invent, this gives you the ability to connect, secure, & monitor communications between services. It also gives the ability to refine policies for both traffic management and network access. -Since the announcement, a few new capabilities have been added, including the ability to use custom domains, deploy open source AWS gateway API controllers to use Lattice with a Kubernetes-native experience, as well as giving the ability to configure SSL/TLS certificates when using HTTPS that matches the custom domain. You can also:* use the Kubernetes gateway API to connect services across multiple clusters * use an ALB or an NLB as a target for service * support IPv6 connectivity with IP address target type * -be confused by pricing
📢Justin: “Their examples of Lattice pricing hurts my brain just a little bit.”@ 13:36 - Guard Duty now supports Amazon EKS Runtime monitoring, which lets you detect Runtime threats from over 30 security findings via an EKS add on, which gives increased visibility on individual container Runtime activity. Guard Duty can tell you which potential containers are compromised, and it can be combined with audit logs. It’s kind of nice to see AWS growing the Guard Duty platform.@ 18:40 - AWS Data Sync now supports copying data from Azure Blob in a moment of “us too” when compared to Blob’s data sync. 📢Justin: “Now you can set up a really cool loop, where you can have your AWS data sync take your Blob data and then your Blob sync take the data back from S3 and that’s how you can burn a lot of money really quickly.”GCP @20:23 - Nothing of interest from GCP this week, just like last week. They had two things in their “what's new this week” but neither of those things were really new. One of them centered around the Looker Modeler for BI metrics. So that happened. Azure @ 21:24 - Announcing! Firewall enhancements for Azure! Now you have the ability to troubleshoot network performance and traffic visibility. The announcement included enhancements to logging and metrics, and offered a preview of three new tools for network administrators, including latency probe metrics, a flow trace log, and the unfortunately named fat flows (or top flows) log. It’s fine if you want to prove it’s not your firewall causing the problems, but otherwise, is it too much to ask for this all to just work? 📢Justin: “Of course Azure firewall is a cloud native firewall, so I don't want any of those things; just provide those to me in a dashboard or a security tool that would tell me these things are broken…instead you’re going to charge me a bunch of money for those other three tools, so thanks for that… but I prefer not worrying about this in my cloud.”📢Jonathan: “I like the visibility, but I don’t want to have to worry about this stuff.”@ 24:44 - DDos IP protection is entering general availability - a whole new skew on DDoS protection! This is geared towards small businesses, although the guys agree that you must be a REALLY small business to make this make sense monetarily, since Rapid Response Support, cost protection, and Azure Firewall Manager, and AWAF discounts are all missing from the base package. As a group, we’re just really looking forward to that ultra-premium DDos experience from Azure. Oracle * No Oracle news today. Not even any mud slinging.
Continuing our Cloud Journey Series Talks We WERE going to talk about Kubernetes, because let’s be real. Who isn’t* talking about Kubernetes. But Ryan decided he didn’t want to get out of bed this week, so we’re skipping our Cloud Journey series for this week, until he can rejoin us.
Spotted on the Horizon* Next week on the podcast we’re hopeful Ryan will grace us with his presence. Then we’ll get back into our Cloud Journey series.
News That Didn’t Make the Main ShowAWS* Amazon Kendra releases Microsoft OneDrive Connector * Announcing general availability for macOS Support on Amplify Library for Swift * Amazon Athena adds view support for external data sources * AWS Migration Hub now supports High Availability SAP HANA systems * Amazon SageMaker Feature Store now supports hard deletion in online store * AWS Service Catalog announces support for Terraform open source * Announcing Utilization Notifications for EC2 On-Demand Capacity Reservations * AWS Billing Conductor pricing change * Amazon Textract announces Bulk Document Uploader to test Textract on multiple documents * Amazon MWAA now supports Shell Launch Scripts * Announcing policies validations during synthesis time with AWS Cloud Development Kit (CDK) * Import data from 45+ sources for no-code ML with Amazon SageMaker Canvas * The sixth generation of Amazon EC2 instances powered by AMD processors now support faster Amazon EBS-optimized instance performance * Amazon ElastiCache for Redis simplifies creating new clusters in the AWS Management Console * Amazon SWF now supports AWS PrivateLink * AWS Trusted Advisor now includes fault tolerance checks for Amazon ECS * Amazon Textract announces updates to the AnalyzeDocument - Tables feature * AWS License Manager now offers improved license visibility and distribution across your organization * Amazon Simple Email Service now detects gaps in BIMI configuration * Amazon Simple Email Service now supports delivery and engagement graphs * AWS Cloud Map enables service editing in AWS Console * Console Toolbar is now generally available for AWS CloudShell * AWS Glue Studio visual ETL adds 10 new visual transforms * AWS Blu Insights enhances user access with single sign-on * AWS Site-to-Site VPN adds support for better visibility and control of VPN tunnel maintenance updates * Amazon GuardDuty now monitors runtime activity from containers running on Amazon EKS * Amazon Kendra launches Featured Results * AWS Compute Optimizer now supports HDD and io2 Block Express EBS volume types * Amazon SageMaker Canvas now supports NLP and CV use cases * EC2 Image Builder adds real-time build tracking and improves build speeds for image pipelines * AWS Compute Optimizer now supports EC2 instances with non-consecutive utilization data * Amazon DevOps Guru for RDS supports RDS for PostgreSQL * AWS Network Firewall announces support for ingress TLS inspection * AWS Chatbot now supports search of AWS resources and AWS content * AWS Compute Optimizer now supports 61 new EC2 instance types * AWS Well-Architected Tool Announces Consolidated Report and Enhanced Search functionality * Announcing the ACK Controllers for Amazon EventBridge and Pipes * AWS Batch now supports user-defined pod labels on Amazon EKS * Amazon SNS launches the Extended Client Library for Python to support payloads up to 2GB * AWS Elastic Disaster Recovery supports automated replication of new disks * Amazon RDS Custom now supports new General Purpose gp3 storage volumes * Amazon Omics now enables batch variant store imports * Amazon CloudFront announces support for HTTP status and response generation using CloudFront Functions * AWS re:Post now includes AWS Knowledge Center articles * AWS Toolkits for JetBrains and VS Code now support AWS SAM Accelerate to speed up application iteration * Amazon SageMaker Python SDK now supports setting default values for parameters * AWS announces Amazon DataZone (Preview) * New – Ready-to-use Models and Support for Custom Text and Image Classification Models in Amazon SageMaker Canvas
GCPAzure* Generally available: Large disk support for disaster recovery of Hyper-V VMs using Site Recovery * Public Preview: Support for Azure VMs using Ultra disks in Azure Backup * Public preview: Private Application Gateway v2 * Public preview update: Azure Automation supports PowerShell 7.2 and Python 3.10 runbooks * General Availability: New General-Purpose VMs - Dlsv5 and Dldsv5 * The “managed” IoT Edge solution on Azure stack Edge will be retired on March 31, 2024. Transition your IoT Edge workloads to an IoT Edge solution running on a Linux VM on Azure Stack Edge. * Azure Image Builder Portal Functionality now available * Azure Service Fabric 9.1 Second Refresh Release * Generally available: Mount Azure Files and ephemeral storage in Azure Container Apps * Azure Maps is now HIPAA (Health Insurance Portability and Accountability Act) compliant * Public Preview: Simplified flush operation for caches using active geo-replication * Public Preview: In-place scaling for enterprise caches * Public preview: AKS support for Kubernetes 1.26 release * Public Preview: Storage in-place sharing in Microsoft Purview in additional regions * Public Preview: Connection audit logs for Enterprise tier caches * Generally Available: Larger SKUs for App Service Environment v3 * Preview: customer managed key encryption for Enterprise tier caches * Generally available: Azure Premium SSD v2 Disk Storage in East US 2, North Europe and West US 2 * Generally available: Azure Monitor Alerts now support duplicating alert rules * Multi-Column Distribution for Dedicated SQL pools is now available! * General availability: IP Protection SKU for Azure DDoS Protection * Public Preview: Azure Migrate - Discover ASP.NET & Java web apps and assess ASP.NET in all environments * General availability: Microsoft Purview DevOps policies for Azure SQL Database * Enhanced Azure Arc integration with Datadog simplifies hybrid and multicloud observability
Oracle * Hands-on experimenting with Oracle Cloud Infrastructure and Roving Edge * OCI Domain Name System (DNS) service: More than public names * Disaster recovery at scale with OCI Full Stack Disaster Recovery * GraalVM for Java microservices in the cloud * Access OCI compliance reports on-demand in the Oracle Cloud Console
This week on the podcast, Justin, Jonathan and Ryan are joined by Matt Kohn and can be found chatting about all things microservices and containers - including new Security Copilot features. In our cloud journeys, we discuss just what defines a microservice (spoiler: the guys actually agree for once) and whether or not those microservices require containers. Also on the agenda, IS Kubernetes the new Monolith? 📰News this Week:📰@4:00 - HashiCorp has announced quite a few updates for Terraform, including a number of innovations for the cloud version. This includes:-A new version of the UI (not actually new if you use the cloud version) and a new cross organizational provider, which will allow users to share via a private registry across an organization. -They introduced Projects, which will give the ability to organize workspaces and ownership boundaries within Terraform. -An Auth update will give enhanced integration between Terraform and GitHub.com-But wait, there’s more from HashiCorp! Among the updates is a new and improved pipeline model called the TFE Taskworker. This will let Terraform offer features like OPA support, dynamic provider credentials, and drift detection. 📢From Justin: “And OPA is exactly what you thought - they’re getting rid of Sentinel. No. They’re not. They’re giving you OPA AND Sentinel so you can use either/or or both of them.”AWS@7:57 AWS News - We discussed a few weeks ago the new app migration service from AWS; well, they’ve added three new features! -Import/Export: You can use the App Migration Service to import source environment inventory list from a CSV file (snazzy!) as well as exporting that same data for reporting purposes, offline reviews, and update integration. - New dashboard for server migration metrics and added 8 additional predefined actions, such as converting licenses to Amazon licensing. - ALB’s now support TLS 1.3 (Did anyone else realize they hadn’t already offered that update?)📢Matt: “I think what scares me more is the Windows update version; they have a runbook that will just do the upgrade for you. I feel like that definitely will never end well.”@14:04 - GCP: Nothing of interest this week! Still trying to get Bard to work, go figure. Google recently discussed their “shared agenda for sensible AI progress” which is essentially an “if you can’t beat ‘em regulate ‘em” ideology.SIDENOTE: Weird Amazon returns policies SIDENOTE: AI Startup Replika - it goes where you think it does. (Hint: Where the internet ALWAYS goes.) Azure@ 20:19 - Moving on to Azure - Microsoft’s inaugural secure event says they are “bringing the power of AI to security” but are they? The announcement doesn’t tell us much, but it marries GPT to Security Copilot. But is this a product they need to be selling? The guys discuss what GOOD AI integration would look like for InfoSec. 📢Ryan: “I can’t get the image out of my head of Clippy wearing a badge saying ‘Would you like to open a Sev1 incident’?”📢Justin: “Just because you have the big partnership with Open AI for billions of dollars doesn’t mean every one of your products has to get AI in a bad way.”📢Jonathan: “I wish it well, I really hope that it gets developed and we no longer have to work with real InfoSec people.” (No offense to InfoSec people, even though none of them are listening to this.)@29:10 - Even more Azure News! Azure AI is now available for ISV’s! Did Microsoft announce Azure AI last week? Yes. Are they announcing it again? Yes. Just to make sure you don’t forget they exist. But they also announced their Azure Virtual Network Manager; a solution for producing, configuring, deploying & grouping network resources. So that’s nice, right? Oracle@34:56 Oracle is in the news and they’re slinging more mud - this time in the direction of AWS. They have compared serverless and determined that Oracle can save money over serverless on AWS. A lot of the focus was on AWS’s Lambda which is proprietary, whereas OCI’s FN Project (which, spoiler alert, Oracle owns) is open source.📢Jonathan (re: AWS Lambda) “I don’t personally care that it’s not open source; it’s a service that I consume through an API, it does a thing, that I pay for. If it breaks they fix it.” The end result, can you save money with OCI? Sure. Or you could just sign up for AWS Savings Plan. Continuing our Cloud Journey Series Talks:@40:37 - Last week we talked about Cloud Native, and this week we’re taking a deep dive on microservices and containers - what are they? Is there a true definition of a microservice that we can all agree on? What we agree on: an architectural style that are small applications, have a very specific purpose and can be scaled independently of each other. 📢Justin: “I think, as an industry, we’ve sort of forgotten that containers were really made to make it easier to package and deliver software; they’re not really necessary for anything else.” Is it a microservice if it’s just an extension of a monolith? We can agree that in order to be cloud native the microservice doesn’t necessarily need to be in containers; as long as it continues to be independent of everything else. The guys discuss all things microservice, monoliths, and containers, and the benefits of using them in cloud native architecture. Also: Kubernetes. Since it’s the new monolith. Also, how do you think about CI/CD in cloud native architecture? A lot of it probably comes down to just what you’re trying to achieve for the business. Make sure to tune into next week’s podcast where the guys hold an intervention for Justin so he’ll stop suggesting running SQL Server on top of Kubernetes.Coming Up Next Week:More on the “new hotness” that is Kubernetes Links to Additional Reading and Articles Mentioned:Cheating is All You Need by Steve Yegge
On this episode of The Cloud Pod, the team discusses the new Amazon Linux 2023, Google Bard, new features of Google Chronicle Security Operations, GPT-4 from Azure Open AI, and Oracle's Kubernetes platform comparison. They also talk about cloud-native architecture as a way to adapt applications for a pivot to the cloud.A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.This week’s highlights* 🚨 AWS: Amazon announces General Availability of Amazon Linux 2023. * 🚨 GCP: New capabilities available on Google Chronicle Security Operations * 🚨 Azure: Azure announces preview of GPT-4 in Azure Open AI Service. * 🚨 Oracle: Oracle compares its Kubernetes platform with that of Hyperscalers.
Top Quotes * 💡 "The goal of Cloud Native architecture is to develop scalable resilient ports of applications that you can easily deploy and manage in a modern Cloud environment" * 💡 "You maximize the benefits of the platform you're on and you minimize the weaknesses of it when you design for that platform" * 💡 "There's nothing that prevents you from going to the cloud if you're not cloud-native, I just think you don't get the advantages of the cloud native and what the cloud brings to you"
AWS: Amazon announces General Availability of Amazon Linux 2023.* 👤 Amazon Linux 2023, a Cloud-Optimized Linux Distribution with Long-Term Support * ️🕵️ This third generation of Amazon Linux Distributions includes security policies to apply the common industry guidelines.
GCP: New capabilities available on Google Chronicle Security Operations.* 0️⃣ Chronicle Security Operations Feature Roundup * These New features enable a speedy response to threats.
Azure: Azure announces preview of GPT-4 in Azure Open AI Service.* 0️⃣ Introducing GPT-4 in Azure OpenAI Service * As billing starts on the 1st of April, customers can begin harnessing Open AI's most advanced model.
Oracle: Oracle compares its Kubernetes platform with that of Hyperscalers.* 0️⃣ Kubernetes cloud cost comparison: Who provides the best value? * They highlight both serverless and managed K8 services and compare some specific services offered by both.
The Cloud Journey Series; Cloud Native Architecture.* Cloud-Native architecture is an approach to building and running applications that use Cloud computing principles and technologies. * Some benefits are scalability, reduced time to market, better utilization of resources, integrated management and monitoring as well as efficiency with large or small-scale work. * While it is possible to move to the cloud without being cloud-native, the benefits may be reduced and there are no provisions for the typical challenges in the cloud space.
Other Headlines Mentioned:* Amazon to lay off 9,000 more workers, including at AWS, as cost-cutting effort continues * Amazon Takes Its Time Delivering Second Round of Job Cuts * AWS Chatbot Now Integrates With Microsoft Teams * Try Bard and share your feedback * AWS announces new AWS Direct Connect location in Muscat, Oman * Application Auto Scaling now supports resource tagging * AWS now allows you to bring your Windows 11 licenses to Amazon WorkSpaces * Amazon VPC Reachability Analyzer now supports 3 additional AWS networking services * Amazon Corretto 20 is now generally available * Amazon EMR now supports Amazon EC2 C7g (Graviton3) instances * Amazon Connect launches support for multiple SAML 2.0 identity providers * AWS Backup now supports VMware vSphere 8 and multiple virtual NICs * AWS Database Migration Service now generates an AWS Glue Data Catalog when migrating to Amazon S3 * AWS Migration Hub Strategy Recommendations adds support for binary analysis * AWS Database Migration Service now supports S3 data validation * Amazon CloudWatch Logs adds support for new Amazon VPC Flow Logs metadata * AWS CodeBuild now supports a small GPU machine type * Amazon GuardDuty RDS Protection for Amazon Aurora is now generally available * Amazon Kendra releases Microsoft SharePoint Cloud Connector * Amazon EC2 C6in, M6in, M6idn, R6in, and R6idn metal instances are now available * AWS Clean Rooms Now Generally Available — Collaborate with Your Partners without Sharing Raw Data * Google Cloud targets multiplayer game developers with GKE Autopilot * Pub/Sub schema evolution is now GA * Introducing time-bound Session Length defaults to improve your security posture * Announcement: Azure Active Directory backed authentication for JMS 2.0 API on Azure Service Bus * General Availability: ASP. NET web app migration to Azure App Service using PowerShell Scripts * Generally available: Encryption scopes on hierarchical namespace enabled storage accounts * Azure Maps is now HIPAA (Health Insurance Portability and Accountability Act) compliant * Public preview: Listener TLS certificates management available in the Azure portal * Public Preview: PgBouncer monitoring metrics for Azure Database for PostgreSQL - Flexible Server * Preview: JSON support for Active Geo-Replication on Azure Cache for Redis * Azure SQL—General availability updates for mid-March 2023 * General Availability: Performance workbooks for Azure PostgreSQL - Flexible Server * Azure Load Testing support for JMeter 5.5 * Now available: Azure Kubernetes Service Edge Essentials * Azure Machine Learning - Generally availability updates for March 2023 * Generally available: Azure Monitor integration with Azure Container Apps * Generally available: Azure SQL Database offline migrations in Azure SQL Migration extension * Public preview: Azure Database for MySQL connector for Power Apps, Logic Apps * Azure Red Hat OpenShift version 4.11 now available * Generally Available: Durable Functions support of managed identity for Azure Storage * Public preview: Data API builder instantly creates modern REST and GraphQL endpoints for modern databases * Public Preview: Collect Syslog from AKS nodes using Azure Monitor container insights * Public Preview: Performance Plus for Azure Disk Storage * Azure Red Hat OpenShift March Updates * Generally available: Azure Ultra Disk Storage in Brazil Southeast, South Africa North and UAE North * Azure SQL—Public preview updates for mid-March 2023 * Public Preview: Change data capture for Azure Cosmos DB analytical store * Generally available: ContainerLogV2 Schema in Azure Monitor container insights * Generally available: Metric charts support for split-by operations on multiple dimensions * Generally available: Azure Firewall Basic * Public Preview - Backup for Azure Kubernetes Service (AKS) * Public preview: Database connections support in Azure Static Web Apps * Public preview: Azure Static Web Apps support for A Record * General Availability: Support for pg_hint_plan and server extensions in Azure Database for PostgreSQL – Flexible Server * General Availability of Azure Hybrid Benefit for SQL Server on Azure VMware Solution * Azure Machine Learning - Public Preview updates for March 2023 * Azure Machine Learning – March 2023 Region Expansion Announcement * Public Preview: Selective Disk Backup and Restore in Enhanced Policy for Azure VM Backup * Generally available: Azure Digital Twins Data history supports Graph updates * Kubernetes at scale just got easier with new Oracle Container Engine for Kubernetes enhancements * OKE virtual nodes deliver a serverless Kubernetes experience * Kubernetes cluster add-on lifecycle management * First principles: Making Kubernetes serverless with OCI Virtual Nodes * Breakthrough computational analysis of grate discharge flow performed by Ansys Rocky DEM-SPH on OCI bare metal GPU shape
After show: Mark Zuckerberg will be laying off 10,000 Facebook employees.* 0️⃣ Update on Meta’s Year of Efficiency. * This comes with a manifesto highlighting his key points for making Meta a formidable tech company.
On this episode of The Cloud Pod, the team discusses Amazon Pi Day, Google's upcoming I/O conference, the agricultural data manager by Microsoft, and the downturn in net profits of Oracle. They also round up cloud migrations by highlighting tools from different cloud service providers that are useful for the process.A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.This week’s highlights* 🚨 AWS: Amazon celebrates Pi Day with live twitch streams. * 🚨 GCP: Google announces their I/O conference to take place near their headquarters in Mountain View. * 🚨 Azure:To increase global food production, Microsoft has created an agricultural data manager. * 🚨 Oracle: Net income for Oracle this quarter dropped to 1.9 billion.
Top Quotes * 💡 "It's been the thorn in the side of every migration I've been a part of… 'how are we going to operate FTP securely in the cloud?" * 💡 "It is not about where you are in the future to Amazon, it's about where you are today… that's why Google and Azure have some success seen as Amazon because they come in and they realize the true long-term value of the customer not the immediate short-term value of the Amazon approach"
AWS: Amazon celebrates Pi Day with live twitch streams.* 👤 Celebrate Amazon S3’s 17th birthday at AWS Pi Day 2023 * ️🕵️ They also announced 7 new capabilities across their data services.
GCP: Google announces their I/O conference to take place near their headquarters in Mountain View.* 0️⃣ Google I/O 2023 developer conference to kick off on May 10 * The full agenda will be published in the next few weeks.
Azure: To increase global food production, Microsoft has created an agricultural data manager.* 0️⃣ Announcing Microsoft Azure Data Manager for Agriculture: Accelerating innovation across the agriculture value chain * With the rising rate of hunger, this manager will provide solutions by maximizing agricultural data.
Oracle: Net income for Oracle this quarter dropped to 1.9 billion.* 0️⃣ Oracle’s stock heads south on revenue shortfall * Despite the drop, and the gap from other cloud providers, they only slightly missed Wall Street expectations.
The Cloud Journey Series; Cloud Migration Tools.* The final part of Cloud Migrations Migrations; cloud tools to help with your migration. * AWS has the highest amount of tools for cloud migrations; GCP and Azure also have some useful tools, but the least is OCI * Foghorn Consulting can help clients with planning out their migration program.
Other Headlines Mentioned:* The inside story on Mountpoint for Amazon S3, a high-performance open source file client * https://aws.amazon.com/blogs/aws/new-use-amazon-s3-object-lambda-with-amazon-cloudfront-to-tailor-content-for-end-users/ * The next generation of AI for developers and Google Workspace * Azure previews powerful and scalable virtual machine series to accelerate generative AI * ChatGPT is now available in Azure OpenAI Service * Amazon MemoryDB for Redis Announces 99.99% Availability Service Level Agreement * Application Auto Scaling now supports Metric Math for Target Tracking policies * Introducing fine-grained access controls with AWS Lake Formation and Apache Hive on Amazon EMR * Amazon EC2 M1 Mac instances now support in-place operating system updates * Amazon Keyspaces (for Apache Cassandra) now supports client-side timestamps * Announcing an updated console experience for Amazon GameLift * Amazon Kendra releases Confluence Server Connector * Amazon Kendra releases Confluence Cloud Connector * Amazon Kendra releases SharePoint OnPrem Connectors * Amazon Neptune introduces graph summary API * Announcing R6i instances for Amazon Neptune * Amazon Neptune announces support for Slow Query Logs * Amazon Connect Wisdom now supports Microsoft SharePoint Online * Amazon QuickSight adds hide collapsed columns control for Pivot table * Amazon OpenSearch Service now supports OpenSearch version 2.5 * Amazon Route 53 Resolver endpoints for hybrid cloud announces IPv6 support * Amazon EMR on EKS adds support for emitting customer metrics for managed endpoints * Amazon SageMaker Data Wrangler now supports Amazon EMR Hive as a big query engine * Amazon SES adds email receiving metrics for better visibility and control * Amazon Connect launches a new API for customers to access historical metrics * Announcing Favorites feature to organize AWS Systems Manager documents and runbooks * Announcing lower data warehouse base capacity configuration for Amazon Redshift Serverless * Amazon Aurora MySQL-Compatible Edition now supports Microsoft Active Directory authentication * Public preview: Azure Cognitive Service for Vision Powers State-of-the-Art Computer Vision Development * Public preview: Illumio for Azure Firewall * Public Preview: Azure Chaos Studio now available in * General availability: Ephemeral OS disks supports encryption at host using customer managed keys * Public preview: Accelerated Connections for Network Virtual Appliances now in Azure Marketplace * Private Preview: Azure Backup enables vaulted backups for Azure Files for comprehensive data protection. * GA: Spot Priority Mix * General availability: Yocto Kirkstone recipes for IoT Edge 1.4 LTS * Public Preview: Azure Backup enables vaulted backups for Azure Blob for comprehensive data protection. * Oracle Cloud VMware Solution with OCI block volumes * First principles: Using redundancy and recovery to achieve high durability in OCI Object Storage * OCI Object Storage is certified as Veeam Ready - Object
After show* 0️⃣ Silicon Valley Bank failed last week, alongside a few other banks. * This was a result of changes in banking regulations made by the last administration.
On this episode of The Cloud Pod, the team talks about the possible replacement of CEO Sundar Pichai after Alphabet stock went up by just 1.9%, the new support feature of Amazon EKS for Kubernetes, three partner specializations just released by Google, and how clients have responded to the AI Powered Bing and Microsoft Edge.A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.This week’s highlights* 🚨 AWS: The new Amazon EKS release: the "combiner". * 🚨 GCP: Google rolls out new partner specializations * 🚨 Azure: Microsoft releases AI-Powered Bing and Microsoft Edge.
Top Quotes * 💡 "It's always going to be a race for these cloud providers to manage every software, in general, to stay up to date because it's challenging"
AWS: The new Amazon EKS release: the "combiner"..* 👤 Amazon EKS now supports Kubernetes version 1.25 * ️🕵️ The most notable change in version 1.25 is the removal of Pod Security Policies PSPs.
GCP: Google rolls out new partner specializations.* 0️⃣ Three new Specializations help partners digitally transform customers * These new specializations are Datacenter modernization services, DevOps services and Contact Center AI services.
Azure: Microsoft releases AI-Powered Bing and Microsoft Edge.* 0️⃣ The new Bing preview experience arrives on Bing and Edge Mobile apps; introducing Bing now in Skype * With positive feedback, they will be launching the Bing and Edge mobile apps.
Other Headlines Mentioned:* Alphabet Needs to Replace Sundar Pichai * Announcing Amazon ECS Task Definition Deletion * New – Amazon Lightsail for Research with All-in-One Research Environments * Microsoft Azure innovation powers leading price-performance for SQL Server * AWS Security Hub launches 7 new security best practice controls * AWS App Runner introduces web application firewall (WAF) support for enhanced security * AWS SAM connectors now supports multiple destinations * Announcing Consolidated Control Findings and a Consolidated Controls View for AWS Security Hub * Amazon EC2 C7g instances are now available in additional regions * AWS Glue Crawlers now support integration with Lake Formation * Vertical specific bot templates in Lex Console * AWS Systems Manager for SAP is now generally available, with initial support for backing up SAP HANA databases using AWS Backup * Amazon RDS for MariaDB adds new disaster recovery (DR) capabilities with Cross-Region Automated Backups * Amazon RDS for MySQL adds new disaster recovery (DR) capabilities with Cross-Region Automated Backups * Amazon CloudWatch RUM now supports customer defined metrics for troubleshooting and monitoring * Amazon Forecast now supports built-in holiday data for 251 countries to improve your forecasting accuracy * AWS Resilience Hub adds application change capabilities and simplified APIs * AWS Transfer Family announces support for sending AS2 messages over HTTPS * Amazon QuickSight enables role-based access control to data sources that connect to Amazon S3 and Athena * AWS Transfer Family announces AWS CloudFormation support and enhanced monitoring capabilities for AS2 * Amazon Detective adds the ability to export data from Summary page panels and search results * AWS App Runner now supports HTTP to HTTPS redirect * Amazon EKS and Amazon EKS Distro now support Kubernetes version 1.25 * Amazon ECS increases the number of provisioning tasks quota to deliver faster Cluster Auto Scaling * Announcing Smart Data Validation for Amazon Fraud Detector * Amazon CloudWatch Synthetics announces new Synthetics NodeJS runtime version 3.9 * Amazon Aurora Serverless v1 now supports customer configurable maintenance windows * AWS Service Catalog now supports the ability to disassociate and delete products in one-action * SageMaker Autopilot now offers the ability to select algorithms while launching a machine learning training experiment * Amazon CloudWatch Internet Monitor is now generally available * AWS Lake Formation extends Data Filters to all regions for supported services * Amazon Redshift announces general availability of ROLLUP, CUBE, and GROUPING SETS in GROUP BY clause * AWS SimSpace Weaver now supports AWS IAM Identity Center * AWS Lambda now supports Amazon DocumentDB change streams as an event source * Autocomplete suggestions are now available on AWS Marketplace search * AWS SAM CLI announces preview of Rust build support * AWS Private CA releases open source samples to help create Matter compliant certificate authorities * Code scans for Lambda functions within Amazon Inspector now in preview * Our progress toward quantum error correction * Azure NetApp Files volume user and group quotas * Public Preview: Azure NetApp Files now support large volumes up to 500TiB in size * Public preview: Incremental snapshots for Premium SSD v2 Disk Storage * GA: Create disks from CMK-encrypted snapshots across subscriptions and in the same tenant * Public preview: Azure Managed Lustre * General availability: Azure Sphere OS version 23.02 * Public Preview: Azure NetApp Files support for 2TiB capacity pools * 3 Microsoft Azure AI product features that accelerate language learning * Exploring mTLS setup to send a client certificate to the backend and OCSP validation * Empowering operators and enterprises with the next wave of Azure for Operators services shaping the future of cloud * Azure private MEC delivers modern connected applications for industries * General availability: Scale improvements and metrics enhancements on Azure’s regional WAF * What's new in Azure Data & AI: Azure is the best place to build and run AI workloads * Microsoft commercial marketplace: Spend smarter, move faster Facebook Twitter LinkedIn * Upgrade your OCI Site-to-Site VPN tunnels to the next generation OCI VPN service * ODSA versus the OCI-Azure Interconnect * MLPerf: Benchmark multinode ML training on OCI
On this episode of The Cloud Pod, the team discusses the AWS systems manager default enablement option for all EC2 instances in an account, different ideas from leveraging innovators plus subscription using $500 Google credits, the Azure Open Source Day, the new theme for the Oracle OCI Console, and lastly, different ways to migrate to a cloud provider.A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.This week’s highlights* 🚨 AWS: AWS systems manager has a new default enablement option for all EC2 instances. * 🚨 GCP: Leveraging the innovators plus subscription to create ideas on how to use Google cloud credits. * 🚨 Azure: About Azure Open Source Day * 🚨 Oracle: Oracle redesigns OCI Console UI
Top Quotes * 💡 "There's a lot to understand about your product and the way it works before you can even think about a cloud migration" * 💡 "In the cloud, we always tell to plan for failure" * 💡 "If you're selling to your business the need to innovate… and you're going to move on a cloud journey, then you need to actually deliver on those things"
AWS: AWS systems manager has a new default enablement option for all EC2 instances* 👤 Announcing the ability to enable AWS Systems Manager by default across all EC2 instances in an account * ️🕵️ Using DHMC, core system manager capabilities are now available to all EC2 instances in an account.
GCP: Leveraging the innovators plus subscription to create ideas on how to use Google cloud credits* 0️⃣ What would you build with $500 in Google Cloud credits included with Innovators Plus * The innovators plus subscription offers $500 in credits and vouchers for certification.
Azure: About Azure Open Source Day* 0️⃣ 7 reasons to join us at Azure Open Source Day * This virtual event will take place on the 7th of March from 9 to 10:30. * Join the Azure Collective on Stack Overflow
Oracle: Oracle redesigns OCI Console UI* 0️⃣ Introducing Redwood Theming for Oracle Cloud * Although the changes are cosmetic, usability enhancements are expected. .
The Cloud Journey Series; Cloud Migrations* Cloud migration means moving your workload to a cloud provider, and the first part of this journey is the discovery phase. * After inventory and assessment, the next step is to decide exactly how to move to the cloud which can be any one of five methods. * It is imperative to consider your products and existing operational processes when migrating to a cloud provider..
Other Headlines Mentioned:* https://awsteele.com/blog/2023/02/20/a-role-for-all-your-ec2-instances.html * New: AWS Telco Network Builder – Deploy and Manage Telco Networks * Announcing AWS ParallelCluster 3.5 with a new UI for AWS ParallelCluster * Amazon Connect Cases now supports AWS PrivateLink * Amazon Detective launches an interactive workshop for investigating potential security issues * Amazon OpenSearch Service now lets you schedule service software updates during off-peak hours * AWS App Runner adds service level concurrency, CPU and Memory utilization metrics * Amazon Connect launches granular access controls for real-time metrics * AWS Incident Detection and Response now supports New Relic integration * AWS Step Functions adds integration for 35 services including EMR Serverless * Amazon CloudWatch announces increased quotas for Logs Insights * Amazon MQ adds AWS Key Management Service (AWS KMS) support for RabbitMQ brokers * Request tracing for customizations now available for AWS Control Tower Account Factory for Terraform * Amazon Managed Grafana now supports network access control * Amazon Kinesis Data Streams for Amazon DynamoDB now supports AWS CloudFormation for Global Tables * Amazon Cognito identity pool data events are now available in AWS CloudTrail * Amazon Pinpoint now supports SMS and voice spending metrics in Amazon CloudWatch * AWS WAF Captcha adds support for ten additional languages * AWS WAF Fraud Control - Account Takeover Protection now allows inspection of origin responses * Amazon Fraud Detector(AFD) launched AFD-Lists to optimize fraud prevention strategies * Amazon EC2 Dedicated Hosts now support automated maintenance on rare degradation * AWS Expands Torn Write Prevention to EC2 Im4gn, Is4gen instances and additional EBS regions * Amazon RDS for Oracle now supports early notifications of Auto minor Version Upgrades (AmVU) * Behind the Scenes at AWS – DynamoDB UpdateTable Speedup * Building your own private knowledge graph on Google Cloud * Read-write premium caching now in public preview * Public preview: Serverless Hyperscale in Azure SQL Database * Generally Available: Azure Functions Linux Elastic Premium plan increased maximum scale-out limits * Generally Available: Availability zones support for Azure Functions in new regions * Generally Available: Durable Functions support for .NET isolated model * Public Preview: Azure Communication Services Chat for Bot Framework * Public preview: Major version upgrade in Azure Database for PostgreSQL – Flexible Server * General availability: Encryption using CMK for Azure Database for PostgreSQL – Flexible Server * GA: 50K relationships per twin support in Azure Digital Twins * Public preview: VBS enclaves for Always Encrypted in Azure SQL Database * Public Preview: Jobs API to support bulk import in Azure Digital Twins * Public preview: Cluster key index in Azure Cosmos DB for Apache Cassandra * Azure SQL—General availability updates for mid-February 2023 * General availability: Azure Active Directory for Azure Database for PostgreSQL – Flexible Server * General availability: Improved geo-replication for Azure Cache for Redis * Public Preview: SDK type bindings * Generally available: Azure Functions support for Python 3.10 * Public preview: Python 3.10 Support * Public preview: Upgrade scheduler * Public preview: New General-Purpose VMs - Dlsv5 and Dldsv5 * Public Preview: Import Jobs API Support in Azure Digital Twins * General availability: Azure IoT Edge supports Ubuntu 22.04 * General availability: Azure Data Explorer Dashboards * Now Available: Azure Monitor Query client module for Go * Public Preview: Customer-managed keys for Azure NetApp Files volume encryption * Azure Backup: Enhanced experience for creating and managing private endpoints for Recovery Services vaults is now available * 6 ways to improve accessibility with Azure AI * DDoS Mitigation with Microsoft Azure Front Door * Deploy Oracle FLEXCUBE with Oracle Kubernetes Engine * Boost profitability with full flexibility: Automated DevOps on Oracle Cloud A1 compute * Announcing native OCI Object Storage provider backend support in rclone * Behind the scenes: Too slow, workflow! How OCI services use controllers to coordinate background processes
After show* 0️⃣ Northern Va. is the heart of the internet. Not everyone is happy about that. * This is due to the constant humming noise from the machines particularly disturbing those living close to it.
AI Products & EarningsOn this episode of The Cloud Pod, the team talks about the announcement of Amazon VPC resource map, Google's new AI product, the new Bing AI-powered search engine, and why multiple accounts are necessary for data centers to carry out work seamlessly in the cloud.A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.This week’s highlights* 🚨 AWS: AWS announces Amazon VPC resource map * 🚨 GCP: Sundar introduces Google's new AI product, Google Bard. * 🚨 Azure: Microsoft announces the resurgence of Bing now powered by Open AI and Edge browser.
Top Quotes * 💡 "How was Google the first one to start looking into AI and still be late to the market?" * 💡 "That's why you have a center of excellence; they're positioned centrally to be able to orchestrate all the different moving parts and be able to facilitate the communication between all the different projects and parts of not only your business but also your cloud provider's business as well" * 💡 "I think it's important to not try to answer the next ten years of problems but also to try to build in circuit breakers or flexibility into your designs so that you can quickly adapt"
AWS: AWS announces Amazon VPC resource map.* 👤 New – Visualize Your VPC Resources from Amazon VPC Creation Experience * ️🕵️ This feature shows users their existing VPC resources and routing on a single page in order to simplify VPC creation on AWS.
GCP: Sundar introduces Google's new AI product, Google Bard.* 0️⃣ An important next step on our AI journey * It is a conversational AI service, powered by LaMDA, being made available to trusted testers before the public.
Azure: Microsoft announces the resurgence of Bing now powered by Open AI and Edge browser.* 0️⃣ Reinventing search with a new AI-powered Microsoft Bing and Edge, your copilot for the web * The new Bing search engine will include a new chat experience and better search with complete answers, as well as other features.
The Cloud Journey Series; The Cloud Center of Excellence (CCOE)* The complexity of the workload being managed at data centers makes multiple accounts imperative for ease of processing. * Despite the evolution in projects and accounts, there are some poorly thought out aspects, for example, shared VPC. * The onus is on cloud users to identify what they need to communicate intrasystem and what they can have in complete isolation.
Other Headlines Mentioned: Google suffered ‘pullback’ in ad spending over holidays, Alphabet stock falls after earnings * Amazon stock falls as least profitable holiday quarter since 2014 leads to its worst annual loss on record * Amazon: Airing Out The Financial Laundry * Amazon EC2 C7g metal instances are now available * In development: New planned datacenter region in Saudi Arabia (Saudi Arabia Central) * Microsoft Azure Load Testing is now generally available * Azure Native NGINXaas makes traffic management secure and simple—now generally available * The anatomy of ransomware event targeting data residing in Amazon S3 * Optimizing your Kubernetes compute costs with Karpenter consolidation * AWS Service Management Connector for Jira Service Management customer portal * AWS announces new AWS Direct Connect location in Kolkata, India * Amazon Fraud Detector introduces Cold Start model training for customers with limited historical data * Amazon CloudWatch now supports high-resolution metric extraction from structured logs * AWS SimSpace Weaver now supports CloudFormation * AWS Glue Crawlers now support MongoDB Atlas * AWS Systems Manager Change Manager now supports a more flexible way of approving change requests * AWS Systems Manager Change Calendar now provides a more comprehensive calendar view of operational events * Amazon RDS for PostgreSQL now supports seg extension * Amazon Chime SDK now offers a Windows client library * Amazon EC2 Mac instances now support replacing root volumes for quick instance restoration * AWS SAM CLI introduces ‘sam list’ command to inspect AWS SAM resources * AWS AppConfig expands encryption capabilities, integrating with AWS Secrets Manager and AWS KMS * Amazon Connect launches AWS CloudFormation support for instance management APIs * Amazon OpenSearch Service now supports enabling SAML during domain creation * Use your own training image in a private Docker registry with Amazon SageMaker * Amazon increases NAT Gateway’s capacity to support concurrent connections to a unique destination * Amazon Omics Supports PrivateLink & CloudFormation * AWS App Runner now supports HTTP 1.0 protocol * AWS CloudFormation StackSets gives quick access to list of Regions for stack instances of a stack set * New to Chronicle: Contextual Awareness * How to migrate Cloud Storage data from multi-region to regional * How to use advance feature engineering to preprocess data in BigQuery ML * Submit your entry now for our new* Talent Transformation Google Cloud Customer Award * Demystifying BigQuery BI Engine * Advancing cancer research with public imaging datasets from the National Cancer Institute Imaging Data Commons * What Data Pipeline Architecture should I use? * Azure Red Hat OpenShift for Microsoft Azure Government—now generally available * Now available: "Find my partner" for Azure Data Explorer * Generally Available: Serverless Real-Time Inference in Azure Databricks * Azure Digital Twins Control-Plane Preview API Retirement (2021-06-31) * General Availability: Managed Run Command – Execute PowerShell or shell scripts on Virtual Machines and Scale Sets * Public Preview: Azure Digital Twins * Generally available: New storage backend for Durable Functions — Microsoft Netherite & MSSQL * Generally Available: Azure Functions support for Node.js 18 * General availability: Trusted launch for Azure VMs in Azure for US Government regions * Azure SQL Gen 4 hardware approaching end of life 31 March 2023 * Generally Available: Azure Kubernetes Service introduces two pricing tiers: Free and Standard * Meta Declares ‘Year of Efficiency’ as Revenue Stagnates
On this episode of The Cloud Pod, the team discusses the upcoming 2023 in-person Google Cloud conference, the accessibility of AWS CloudTrail Lake for non-AWS activity events, the new updates from Azure Chaos studio, and the comparison between Oracle Cloud service and other Cloud providers. They also highlight the application and importance of VPCs in CCOE.A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.This week’s highlights* 🚨 AWS: AWS CloudTrail Lake now allows users to consolidate, immutably store, and analyze activity events from non-AWS sources. * 🚨 GCP: Google Cloud 2023 Next conference will be in-person. * 🚨 Azure: New updates are available in the Azure Chaos studio. * 🚨 Oracle: Oracle creates a page comparing its cloud services with AWS and others.
Top Quotes * 💡 "A transit gateway effectively is saying we're going to let you make multiple VPCs into one VPC, which is awesome" * 💡 "When you're designing VPC networking, make sure you're aware of the cost involved in cross-zone communication because it's not free and it can be quite significant"
AWS: AWS CloudTrail Lake now allows users to analyze activity events from non-AWS sources.* 👤 New – AWS CloudTrail Lake Supports Ingesting Activity Events From Non-AWS Sources * ️🕵️ Initially, AWS cloud lake was a service to access, analyze and store user and API activity from AWS as a source, but now users can set up custom events or integrate with other providers.
GCP: Google Cloud 2023 Next conference will be in-person.* 0️⃣ Google Cloud Next * This will be the first in-person Next conference since 2019.
Azure: New updates are available in the Azure Chaos studio.* 0️⃣ Chaos studio - Public preview updates for January 2023 * These updates include the availability of dynamic targeting, enabling service tags, VMSS SHutdown 2.0, and others.
Oracle: Oracle creates a page comparing its cloud services with AWS and others.* 0️⃣ Compare cloud services across OCI and other cloud providers, highlighting its equivalents to AWS, Azure and GCP
The Cloud Journey Series; The Cloud Center of Excellence (CCOE)* VPC means Virtual Private Cloud and is a service tied to almost every aspect of the cloud, especially in AWS. * Security requirements are crucial to consider with VPCs which would include ACLs and VPC Flow Logs. * Another consideration for VPCs is connectivity back to your private data center which may be through a VPN connection or a direct connect point-to-point from a third party or your data center into the cloud provider itself.
Other Headlines Mentioned:* Native OPA Support in Terraform Cloud Is Now Generally Available * Introducing Hermes, An Open Source Document Management System * New – Deployment Pipelines Reference Architecture and Reference Implementations * AWS announces Amazon-provided contiguous IPv6 CIDR blocks * Lessons learned optimizing Microsoft’s internal use of Azure * Latest OCI Blockchain Platform update enables blockchain interoperability and brings Web3 capabilities to OCI * OpenAI-backed motion to dismiss * AWS achieves ISO 20000-1:2018 certification for 109 services * Visualize AWS WAF logs with an Amazon CloudWatch dashboard * SageMaker Automatic Model Tuning now adds three new completion criteria for tuning jobs * Amazon OpenSearch Service simplifies remote reindex for VPC domains * Amazon CloudWatch now simplifies metric extraction from structured logs * Amazon Athena releases data source connector for Google Cloud Storage * AWS CloudTrail Lake now supports ingestion of activity events from non-AWS sources * AWS Systems Manager announces integration of Automation with Change Calendar * Amazon AppFlow announces 4 new data connectors * AWS announces Credential Guard support for Windows instances on Amazon EC2 * Amazon QuickSight launches Radar chart * AWS Snow Family now supports Ubuntu 20 and 22 operating systems * AWS Outposts rack local gateway now supports VPC prefix lists to simplify routing policy management * AWS Snow Family now supports software updates on AWS Snowcone * Amazon Kendra Expanded Data Formats Support * Bottlerocket now supports network bonding and VLAN tagging * Amazon RDS now supports increasing storage size when creating read replicas and restoring databases from snapshots * AWS Glue Studio Visual ETL now supports 5 new transforms * AWS announces access of Simple Monthly Calculator estimates in the AWS Pricing Calculator * AWS Fault Injection Simulator announces Pause I/O action for Amazon Elastic Block Store volumes * AWS announces three new AWS Direct Connect locations * AWS Conversational AI Competency Partner's implement high-quality chatbot solutions * Amazon Personalize simplifies onboarding with data insights * Generally available: Apply Azure storage access tiers to append blobs and page blobs with blob type conversion * General Availability: 5 GB Put Blob * Microsoft Cost Management updates—January 2023
After show* 0️⃣ Microsoft, GitHub, OpenAI urge judge to bin Copilot code rip-off case. * This request is based on grounds that the case lacks standing as there is no evidence that the plaintiff suffered harm that can be addressed by the court.
On this episode of The Cloud Pod, the team sits to talk about AWS's new patching policies, the general availability of Azure OpenAI, and the role of addressing IM or access management challenges in ensuring the seamless transition to the Cloud.A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.This week’s highlights* 🚨 AWS announces new patching policies, * 🚨 Azure OpenAI service is now generally available. * 🚨 IM/Access Management in CCOE...
Top Quotes * 💡 "I think it(access management) should be the first challenge that's tackled, and I usually try to approach it as such but it's also sort of hard to do when it starts off as an experiment…and you have to retrofit it in”
AWS: Announcement of new patching policies* 👤 AWS Systems Manager announces Patch Policies, enabling cross account and cross Region patching * ️🕵️ This allows users to deploy policies to enforce patch compliance across their AWS accounts and regions...
Azure: Azure OPN AI service is now generally available.* 0️⃣ General availability of Azure OpenAI Service expands access to large, advanced AI models with added enterprise benefits * 0️⃣ This is Close to Jonathan's prediction that Azure will launch a ChatGPT service, and more businesses can now access the most advanced AI models with pricing based on the mode of use..
The Cloud Journey Series; The Cloud Center of Excellence (CCOE)* IM or Access management should be the first area people look at and the first challenge to be tackled, while also defining data protection boundaries. * CCOE also provides the opportunity to identify activities in production that are unnecessary and should be changed. * Permissions are the least important part of your IM journey; permissions change and would need to be evaluated continually.
Other Headlines Mentioned:* Announcing the general availability of AWS Local Zones in Perth and Santiago * AWS Clean Rooms is now available in preview * AWS announces changes to AWS Billing, Cost Management, and Account consoles permissions * AWS CloudTrail vulnerability: Undocumented API allows CloudTrail bypass * EC2 Image Builder adds Center for Internet Security (CIS) Benchmarks for security hardening of Amazon Machine Images * Amazon Corretto January, 2023 Quarterly Updates * EC2 network performance metrics add support for ConnTrack Utilization metric * AWS Network Firewall announces IPv6 support * Amazon EFS Supports 1,000 Access Points per File System * Amazon CloudFront now supports the request header order and header count headers * AWS Nitro Enclaves announces support for multiple enclaves * Amazon RDS now supports new SSL/TLS certificates and certificate controls * AWS Lambda now supports Maximum Concurrency for Amazon SQS as an event source * AWS Resource Groups now emits lifecycle events * Amazon Kendra releases the Microsoft Teams Connector to enable Microsoft Teams messaging search * Amazon Kendra releases Microsoft Exchange Connector to enable email-messaging search * Amazon Detective adds new AWS managed IAM policies to improve secure access for security analysts * Announcing the general availability of Amazon Route 53 Application Recovery Controller zonal shift * Amazon RDS now supports restoring database snapshots from Multi-AZ with two readable standbys * Changing the customer experience with Contact Center AI: Look back and look forward * General availability: IoT Edge Metrics Collector 1.1 * Public Preview: Azure Automation Visual Studio Code Extension * General Availability: Azure Active Directory authentication for exporting and importing Managed Disks * General Availability: AzAcSnap 7 — Azure Application Consistent Snapshot tool updates
On The Cloud Pod this week, Amazon announces massive corporate and tech lay offs and S3 Encrypts New Objects By Default, BigQuery multi-statement transactions are now generally available, and Microsoft announces acquisition of Fungible to accelerate datacenter innovation.Thank you to our sponsor, Foghorn Consulting, which provides top notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you’re having trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.General News:* Amazon to lay off 18,000 corporate and tech workers. [1:11]
Episode Highlights* ⏰ Amazon S3 Encrypts New Objects By Default. [3:09] * ⏰ Announcing the GA of BigQuery multi-statement transactions. [13:04] * ⏰ Microsoft announces acquisition of Fungible to accelerate datacenter innovation. [17:14]
Top Quote💎 “And it's interesting that, you know, the way they're phrasing this where it's, you know, it's it's moving these traditional things that have been in relational databases for a long time, but it's the it's the, the analytical, sort of big data sort of offerings, and it's interesting to see how that transforms over time.” [15:16]AWS* Amazon S3 Encrypts New Objects By Default. [3:09] * AWS App Runner now integrates with AWS Secrets Manager and AWS Systems Manager Parameter Store. [8:26]
GCP* Announcing the GA of BigQuery multi-statement transactions. [13:04]
Azure* Azure Confidential Computing on 4th Gen Intel Xeon Scalable Processors with Intel TDX. [15:38] * Microsoft announces acquisition of Fungible to accelerate datacenter innovation. [17:14]
The Cloud Center of Excellence (CCOE) [19:40]:* Setting up a charter that works for your CCOE. * Setting up your big three and expanding your charter. * Choosing your stakeholders–and when to bring them on. * Picking the right strategy areas for your charter.
Other Headlines:AWS* Authenticate to Amazon EKS using Google Workspace * Amazon Personalize now supports tag based resource authorization * Amazon Kendra releases S3 connector with VPC support to enable customers to index and search content from S3 * Amazon Personalize launches new recipe “Trending-Now” * Amazon Kendra releases new Google Drive Connector to enable document indexing and search on Google Drive * AWS CloudShell is now Health Insurance Portability and Accountability Act (HIPAA) eligible * Amazon Kendra launches Kendra Intelligent Ranking for self-managed OpenSearch * Amazon S3 Storage Lens introduces tiered pricing for cost-effective monitoring at scale * AWS Network Firewall adds support for reject action for TCP traffic * Amazon EC2 Auto Scaling now forecasts frequently for more accurate predictive scaling * Introducing Amazon EMR Serverless Custom images: Bring your own libraries and application dependencies * Announcing Amazon Elastic Fabric Adapter Installer v1.21 * Amazon MWAA now supports Apache Airflow version 2.4 with Python 3.10
GCP* Accelerate integrated Salesforce insights with Google Cloud Cortex Framework * Hierarchical Firewall Policy Automation with Terraform
Azure* Public preview: Azure Synapse Runtime for Apache Spark 3.3 * At-scale monitoring for Azure Site Recovery with Backup center * Public preview: Capture Event Hubs data with Stream Analytics no-code editor in Delta Lake format * Public Preview: Azure Cosmos DB to Azure Data Explorer Synapse Link * Azure VM backup: General availability updates for Dec, 2022 * General availability: Apache log4J2 sink to Azure Data Explorer * Microsoft named a Leader in 2022 Gartner® Magic Quadrant™ for Insight Engines
And that is the week in the cloud. We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, Slack team, send feedback or ask questions at thecloudpod.net or Tcweet at us with hashtag #thecloudpod
For our New Years Resolution, we decided to change some of our show. First, we have cut the lightning round in favor of our new Cloud Journey series, where we will talk about core cloud concepts over several episodes. We are also covering only the larger stories from the cloud providers, we still want to provide you with all of the news, so you'll find it in the show notes; if you enjoy the aggregation, subscribe to our newsletter to get the show notes to get your mailbox weekly. Share your feedback through our website or join our slack team. On this episode of The Cloud Pod, the team follows up on the news from Salesforce's last episode, as workforce cuts ensue as a fallout of the noted decline in productivity, with more on 2023 predictions from Peter, including general expectations in the tech space, while also highlighting the new Graph-explorer tool by Amazon Neptune, GCP security trends for the coming year, the CES Conference and CCOE from the new Cloud Journey Series.A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions focused on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.This week’s highlights* 🚨 AWS: Amazon Neptune announces a new open-source low-code visual exploration tool, the Graph-explorer. * 🚨 GCP releases an article on security trends to expect in 2023. * 🚨 The Cloud Journey Series; The Cloud Center of Excellence (CCOE)
Top Quotes * 💡 "A lot of traditional security operations has been at the infrastructure level; tracking packets and using the header information of those packets for identification, and none of that really works on cloud anymore" * 💡 "It's not just how to use cloud technology, which is what the IT teams were focused on, it's how do you provide the value of cloud into your business and succeed?" * 💡 "Understanding the advantages of why you want to adopt Cloud is really important for a business, even before they start the CCOE"
Follow up: * After discussing Salesforce and their "less productive" employees a few weeks ago, Salesforce has followed up by laying off 10% of their workforce. * 👤 After missing last week’s episode, Peter shares his 2023 prediction; The recession will be more severe than expected, resulting in significant layoffs as companies are forced to get more competitive with automated solutions. * Peter’s favorite announcement for 2022; Aurora Serverless V2
5 things to look out for in tech* Five Things to Watch in Tech 2023 * Big Changes ahead in 2023 for big tech with poor valuations, justifying their software against slashing budgets and the next big thing; is it AI, AR, VR?
AWS: Amazon Neptune announces Graph-explorer* 👤 Amazon Neptune announces a new open-source low-code visual exploration tool, the Graph-explorer. * ️🕵️ This react-based Web app will create a seamless browsing experience for Labeled Property Graphs (LPG) or Resource Description Framework (RDF).
GCP releases an article on big security ops trends to expect in 2023.* 0️⃣ 5 security operations trends and tips for 2023 * These trends include SOC teams handling of cloud environments, the use of AI by attackers, changes in staffing of SOCS, and continuation of hybrid work for Anywhere Security Operations workers
The Cloud Journey Series; The Cloud Center of Excellence (CCOE)* Defining CCOE; an Amazon invention. * While a variety of skills will be required for professionals who will work in the CCOE, it is crucial to understand the relevance of such a team, compared to the usual IT teams companies have. * Most importantly, companies need to realize that the goal is to integrate cloud systems in such a way that it promotes the growth of the business.
Other Headlines Mentioned:* AWS Transfer Family announces built-in PGP decryption for file uploads * Updated whitepaper available: AWS Security Incident Response Guide * Blue/Green or Canary Amazon EKS clusters migration for stateless ArgoCD workloads * Announcing firewall status message for AWS Network Firewall * AWS Organizations console adds support to centrally manage region opt-in settings on AWS accounts * AWS License Manager now supports commercial Linux subscriptions discovery and governance * Amazon Connect now allows contact center managers to join ongoing calls * Amazon RDS announces integration with AWS Secrets Manager * Amazon RDS now supports renaming Multi-AZ deployments with two readable standbys * ROSA now provides an AWS Management Console experience for satisfying ROSA prerequisites * AWS Migration Hub Orchestrator adds support for importing virtual machine images * Nimble Studio now supports configurable persistent storage and new EBS volumes * Amazon Nimble Studio now supports EBS Snapshots with Auto Backup * Amazon EKS Anywhere now supports single-node clusters on bare metal * Amazon EKS Anywhere now supports cluster lifecycle automation with GitOps and IaC tools like Terraform * AWS announces Amazon EKS Anywhere on Nutanix * Amazon Rekognition improves accuracy of content moderation for images * New to Chronicle: Regular expressions and reference lists * Document AI adds three new capabilities to its OCR engine * General availability: Encryption using CMK for Azure Database for PostgreSQL – Flexible Server * The future of mobility is now: Five themes to watch at CES 2023 * Access Jupyter notebooks within OCI Data Flow service
After Show* Your hosts geek out about CES this week
On this episode of The Cloud Pod, the team wraps up 2022 so far, comparing predictions made with the events so far while projecting into 2023 as the year comes to a close. They discuss the S3 security changes coming from Amazon, the new control plane connectivity options with GCP, and Microsoft's achievement, finally topping a list within the cloud space. A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.This week’s highlights* 🚨 Starting in April, Amazon will change defaults around S3 security. * 🚨 The new control plane connectivity and isolation options are coming to GKE clusters * 🚨 Finally, Microsoft is Number #1 In a Cloud Thing. * 🚨 Salesforce Founder, Marc Benioff says employees hired during the pandemic are facing much lower productivity. * 🚨 Open AI's new chat AI and AI playground create much buzz but with high compute costs, it will be monetized soon. * 🚨 A lookback at 2022 predictions by our hosts, none of which came true. * 🚨 The team gives 2023 predictions surrounding Microsoft, data Sovereignty and AI and No-code solution convergence
Top Quotes * 💡 "The problem with low-code No-code… is that the gap between those solutions and the bespoke development that you typically would meet is mountains of distance but with this [Open AI's new chat AI] ..now I just have to tell the computer what I'm trying to do…and then the computer can determine what type of code to write for that"
2023 Predictions* 👤 Jonathan: Microsoft will release in preview of an Azure branded Chat GPT * 🚤 Justin: Data Sovereignty will drive single panes of glass against multi-cloud * 💂 Ryan: An influx of all of the AI and No-Code solution convergence
Favorite AnnouncementsRyan* Announcing Amazon CodeCatalyst, a Unified Software Development Service (Preview) * Announcing new workflow observability features for AWS Step Functions * Source Protect for Cloud Code gives developers real-time security feedback as they work in their IDEs #46
Justin* Accelerate Your Lambda Functions with Lambda SnapStart * Microsoft announces new collaboration with Red Button for attack simulation testing * Google + Mandiant: Transforming Security Operations and Incident Response * Raising the bar in Security Operations: Google Acquires Siemplify
Jonathan* Introducing VPC Lattice – Simplify Networking for Service-to-Service Communication (Preview) + Amazon VPC Lattice Pricing * Strengthen your security with Policy Analytics for Azure Firewall * Cloud Functions 2nd gen is GA, delivering more events, compute and control
AWS: Starting in April, Amazon will change defaults around S3 security* 💂 Heads-Up: Amazon S3 Security Changes Are Coming in April of 2023. * ️🕵️ Previously, S3 block public access and access control lists existed as console defaults and are recommended best practices. * 👤 However, with this change, there must be a specification of parameters as there will not be more security by default.
GCP: The new control plane connectivity and isolation options are coming to GKE clusters * 0️⃣ New control plane connectivity and isolation options for your GKE clusters. * 🚤 The new control plane connectivity and isolation options are coming to GKE clusters. * 🚤 GKE and other public clusters use Google cloud PSC to communicate between clusters. * 🚤 New capabilities have now been added, like allowing access to the control plane only via private endpoints, as well as access from Google cloud and others.
Azure: Finally, Microsoft is Number #1 In a Cloud Thing.* ⬆️ Microsoft named a Leader in the 2022 Gartner® Magic Quadrant™ for Global Industrial IoT Platforms. * 📦 While Amazon is a challenger, Google is not even on the list.
TCP Lightning Round⚡ Here are the scores this Lightning Round: Justin 9, Ryan 8, Jonathan 5, Peter 0, Joe 1Other Headlines Mentioned: Okta's source code stolen after GitHub repositories were hacked. * Announcing upcoming changes to the Amazon ECS console. * Amazon ECS now supports container port ranges for port mapping * Announcing AWS Systems Manager widgets on AWS Console Home. * Announcing Amazon CodeCatalyst, a Unified Software Development Service (Preview) * Announcing new workflow observability features for AWS Step Functions * Source Protect for Cloud Code gives developers real-time security feedback as they work in their IDEs #46 * Accelerate Your Lambda Functions with Lambda SnapStart * Microsoft announces new collaboration with Red Button for attack simulation testing * Google + Mandiant: Transforming Security Operations and Incident Response * Raising the bar in Security Operations: Google Acquires Siemplify * Introducing VPC Lattice – Simplify Networking for Service-to-Service Communication (Preview) - Amazon VPC Lattice Pricing* * Strengthen your security with Policy Analytics for Azure Firewall * Cloud Functions 2nd gen is GA, delivering more events, compute and control
On The Cloud Pod the team reviews the multi-billion-dollar DOD contract formerly known as Jedi awarded to big tech companies; Microsoft buys a stake in LSE, raising questions; Werner shares his 2023 tech predictions and posts the Distributed Computing manifesto to his blog; and lastly, at Azure, Bell hits bumps while trying to make Microsoft safer. A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.This week’s highlights* 🚨 The Pentagon awards a cloud-computing contract that can reach up to $9 billion in total through 2028 to Amazon, Google, Microsoft, and Oracle. * 🚨 Microsoft buys 4% stake in the London Stock Exchange * 🚨 AWS: Werner posts the Distributed Computing Manifesto to his blog All Things Distributed and shares his 2023 tech predictions. * 🚨 GCP: Break down data silos with the new cross-cloud transfer feature of BigQuery Omni * 🚨 Azure: Bell hits obstacles in his push to make Microsoft more secure as feedback suggests the bar is being set too high.
Top Quotes * 💡 "The long and the short of it is that slowly over time, the ship date when buying something on Amazon or anywhere else gets closer to real-time and the cost to get it to you gets lower" * 💡 “All software has defects since it’s created and configured by humans, [But] the pattern of security incidents [and] defects in Azure reported by third parties and the related severity suggests that even Microsoft is challenged in adopting proper security controls in cloud-native development pipelines, like many enterprises.”
AWS: ALL THINGS DISTRIBUTED – WERNER VOGELS’ BLOG* 💂 Werner posted the Distributed Computing Manifesto to his blog “All Things Distributed”. * ️🕵️ The manifesto highlights the challenges Amazon was facing at the end of the 20th century, and hints at where it was headed. * 👤 He also shared his 2023 tech predictions on the blog involving cloud technology, simulated worlds, silicone chips supply chain transformation, and smart energy..
GCP: Break down data silos with the new cross-cloud transfer feature of BigQuery Omni* 0️⃣ GCP launched big query Omni in 2021 to help customers break down data silos. * 🚤 They have now added support for SQL-supported Load Statements that allowed AWS/Azure Blob data to be brought into big query as a managed table for advanced analysis. * 🚤 Feedback confirms improvements in usability, security, latency, and cost audibility.
Azure: Bell hits obstacles in his push to make Microsoft more secure.* ⬆️ After spending 23 years at Amazon, Charlie Bell, the most senior cybersecurity executive now at Microsoft, faces resistance to preventing and responding to software vulnerabilities believing that he was setting the bar too high. * 📦 If there are flaws in the software they write that leads to vulnerabilities for downtime, developers in bell’s unit can expect to be paged and asked to fix it. This is long-standing practice at AWS but a new concept at Microsoft.
Oracle: Oracle announces the availability of OCI * 🤝OCI is a serverless computer service that enables you to run containers instantly without managing any servers. * 🚤 OCI Container Instances enables you to run containerized applications without operational complexity or managing infrastructure.
TCP Lightning Round⚡ Scores are now at TCP Lightning Round Justin (9), Ryan (8), Jonathan (5), Peter (0), Joe (1).Other Headlines Mentioned:* Amazon DevOps Guru for RDS detects SQL load changes * AWS fixes vulnerability affecting container image repository * The Cloud Pub/Sub team has announced the general availability of the exactly-once-delivery feature. * Azure has launched new role-based training courses to help you tailor your azure learning * Azure Storage Mover–A managed migration service for Azure Storage. * OCI or Azure: Which offers the best value for serverless container instances? * Oracle clouds never go down, says Oracle's Larry Ellison
The Cloud Pod recaps all of the positives and negatives of Amazon ReInvent 2022, the annual conference in Las Vegas, bringing together 50,000 cloud computing professionals. This year's keynote speakers include Adam Selpisky, CEO of Amazon Web Services, Swami Sivasubramanian, Vice President of Data and Machine Learning at AWS and Werner Vogels, Amazon's CTO. Attendees and web viewers were treated to new features and products, such as AWS Lambda Snapstart for Java Functions, New Quicksight capabilities and quality-of-life improvements to hundreds of services. Justin, Jonathan, Ryan, Peter and Special guest Joe Daly from the Finops foundation talk about the show and the announcements.Thank you to our sponsor, Foghorn Consulting, which provides top notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you’re having trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.Episode Highlights ⏰ AWS Pricing Calculator now supports modernization cost estimates for Microsoft workloads*. * ⏰ AWS Re:Invent 2022 announcements and keynote updates.
Top Quote💎 “But if I'm putting my business data into another data lake, and I want to use the business data to inform my security data, I now have to cross the lakes to even make this connection to get that data set. So I agree with you on a pure security basis in the open schema for security data is really great. My issue is that you're putting borders around these lakes, when you really want to bring the data together and be able to hydrate across. That's why we have enterprise data, we analyze data warehouses, where we have all these things to bring this data together, add context to data. And I feel like this is just more removing context.” [37:20]AWS: Amazon Goes to India AWS Pricing Calculator now supports modernization cost estimates for Microsoft workloads. [1:39]* * Introducing Finch: An open source client for container development*. [3:19]* * AWS opens its 30th region in India*. [4:51]* * New for AWS backup: Protect and restore CloudFormation stacks*. [5:57]* * Amazon ECS Service Connect enabling easy communication between microservices**. [7:31]
REINVENT RECAPDAY 1 KEYNOTE: Peter DeSantis [19:11]Compute [19:42] Announcing AWS Lambda SnapStart for Java functions. * Amazon EC2 C7gn instances is now in preview. * Introducing Elastic Network Adapter (ENA) Express for Amazon EC2 instances*.
DAY 2 KEYNOTE: Adam Selipsky [24:52]Advertising & Marketing [25:34] Announcing AWS Clean Rooms*.
Compute [26:29] New AWS SimSpace Weaver allows you to run large-scale spatial simulations in the cloud*.
Databases & Analytics [27:31] Amazon OpenSearch Serverless – Run Search and Analytics Workloads without Managing Clusters–now in preview. * AWS Announces two new capabilities to move toward a zero-ETL future on AWS. + AWS announces Amazon Aurora zero-ETL integration with Amazon Redshift. + Amazon Redshift Integration with Apache Spark. * AWS Announces Amazon DataZone. * AWS Announces Five New Capabilities for Amazon QuickSight. + Support for forecast and "why" questions in Amazon QuickSight Q. + Automated data preparation for Amazon QuickSight Q. + Paginated reporting built for the cloud. + Simple and fast analysis for large datasets. + Faster, programmatic migration to the cloud.*
Security [35:12] Amazon Security Lake – A purpose-built customer-owned data lake service*–now in preview.
DAY 1 & 2 ANNOUNCEMENTS [:]:AI/Machine Learning [41:02] AWS unveils new AI service features and enhancements at re:Invent 2022. + Amazon Textract launches analyze lending to accelerate loan document processing. + Announcing real-time capabilities in Amazon Transcribe Call Analytics API to improve customer experience. - New Search Capabilities on Amazon Kendra: * Amazon Kendra launches tabular search for HTML documents. * Amazon Kendra launches expanded language support for semantic search. - New Capabilities for Amazon HealthLake. - Amazon CodeWhisperer adds Enterprise administrative controls, simple sign-up, and support for new languages*.
Compute [42:15] New general purpose, compute optimized, and memory-optimized Amazon EC2 instances with higher packet-processing performance.* + Amazon EC2 M6in / M6idn Instances. + Amazon EC2 C6in Instances*.* * AWS Nitro Enclaves now supports Amazon EKS and Kubernetes*.* * AWS Compute Optimizer now supports external metrics from observability partners**.
Network & Content Delivery [44:18] Elastic Load Balancing capabilities for application availability.* + Announcing preview for Amazon Route 53 Application Recovery Controller zonal shift*.* + Application Load Balancer (ALB) Cross Zone Off. + Network Load Balancer (NLB) Health Check Improvements. + ALB and NLB Minimum Healthy Targets.**
Security [45:32] Amazon Inspector Now Scans AWS Lambda Functions for Vulnerabilities. * Announcing AWS KMS External Key Store (XKS)*.
Storage [46:40] Announcing a new generation of Amazon FSx for OpenZFS file systems. * Amazon FSx for NetApp ONTAP simplifies access to Multi-AZ file systems from on-premises and peered networks. * Amazon FSx for NetApp ONTAP doubles the maximum throughput capacity and SSD IOPS per file system. * AWS announces lower latencies for Amazon Elastic File System*.
DAY 3 KEYNOTE: Swami Sivasubramanian [48:36]Artificial Intelligence & Machine Learning [48:36] AWS machine learning university new educator enablement program to build diverse talent for ML/AI Jobs. * Amazon SageMaker Data Wrangler Supports SaaS Applications as Data Sources. * AWS Announces Eight New Amazon SageMaker Capabilities. + New ML governance tools for Amazon SageMaker – Simplify access control and enhance transparency over your ML projects. + Next Generation SageMaker Notebooks – Now with built-in data preparation, real-time collaboration, and notebook automation. + Preview: Use Amazon SageMaker to build, train, and deploy ML models using geospatial data*.
Database & Analytics [50:46] AWS Announces Five New Database and Analytics Capabilities. + Amazon DocumentDB Elastic Clusters. + Amazon OpenSearch Serverless – Run Search and Analytics Workloads without Managing Clusters. + Amazon Athena for Apache Spark. + AWS Glue Data Quality. + Amazon Redshift now supports Multi-AZ (Preview) for RA3 clusters. * Amazon GuardDuty RDS Protection now in preview. * Amazon Redshift now supports auto-copy from Amazon S3. * Now in preview: Amazon Redshift data sharing now supports centralized access control with AWS Lake formation*.
DAY 3 ANNOUNCEMENTS:Artificial Intelligence & Machine Learning [54:11] Introducing AWS AI Service Cards: A new resource to enhance transparency and advance responsible AI*.
Database & Analytics [54:28] Amazon Redshift announces support for dynamic data masking (preview). * Amazon Kinesis Data Firehose adds support for data stream delivery to Amazon OpenSearch Serverless*.
Networking [56:50] VPC Lattice – Simplify networking for service-to-service communication*–now in preview..
Security [58:58] AWS Verified Access Preview — VPN-less secure network access to corporate applications*.
Storage [1:00:30] AWS Announces Torn Write Prevention for EC2 I4i instances, EBS, and Amazon RDS. * Amazon S3 Access Points can now be used to securely delegate access permissions for shared datasets to other AWS accounts*.
DAY 4 KEYNOTE: Werner Vogels [1:01:43]Developer Tools [1:01:59] Announcing Amazon CodeCatalyst (preview), a unified software development service*.
Serverless [1:04:17] Step Functions Distributed Map – A Serverless Solution for Large-Scale Parallel Data Processing. * Create point-to-point integrations between event producers and consumers with Amazon EventBridge Pipes. * AWS Application Composer* is now in preview.
DAY 4 ANNOUNCEMENTS [1:05:37]Gaming [1:05:37] Introducing Amazon GameLift Anywhere – Run your game servers on your own infrastructure*.
Re:Invent Predictions 2022 (Ryan 22, Justin 15, Peter 23) [1:06:03]Peter1. Adding RDS To Savings Plan 2. GPU for Fargate 3. New mi6.xlarge family of EC2 only used by british spies
Justin1. New Graviton/Arm Based Pick - YES 2. Cognito 2.0 3. Meh Conference, only niche announcements nothing for the general market. And no additional cost savings for customers due to profitability needs at AWS
Ryan1. Significant Step Flow increases - Andrew Fitzgerald - OG 2. Salesforce Killer for CRM Ryan Lucas - CloudPod 3. SLSA solution and/or enablement/visualization/existing code family products
Jonathan1. ARM Chip Factory
⚡ TCP Lightning Round (Justin 9, Ryan 8, Jonathan 4, Peter 0, Joe 1)Amazon Textract launches the ability to detect signatures on any documentAWS Secrets Manager now supports rotation of secrets as often as every four hoursAmazon QuickSight adds line and marker customization options for line charts, Small Multiples for line, bar and pie charts and the ever popular TextboxAmazon Managed Workflows for Apache Airflow (MWAA) now offers container, queue, and database metricsAWS Service Catalog now supports syncing products with Infrastructure as Code template files from GitHub, GitHub Enterprise, or BitbucketAmazon CloudFront launches continuous deployment supportIntroducing Amazon Omics
RE:INVENT NOTICE Jonathan, Ryan and Justin will be live streaming the major keynotes starting Monday Night, followed by Adam's keynote on Tuesday, Swami's keynote on Wednesday and Wrap up our Re:Invent coverage with Werner's keynote on Thursday. Tune into our live stream here on the site or via Twitch/Twitter, etc. On The Cloud Pod this week, a new AWS region is open in Spain and NBA and Microsoft team up to transform fan experiences with cloud application modernization.
Thank you to our sponsor, Foghorn Consulting, which provides top notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you’re having trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. General News [0:04] * 🥳 CDK for Terraform 0.14 Makes it Easier to Use Providers
Episode Highlights * ⏰ New AWS region open in Spain. * ⏰ NBA and Microsoft team up to transform fan experiences with cloud application modernization.
Top Quote 💎 “When we set this up, they still called you by voice and you had to validate when it took up to an hour to support case. And yeah, it would take forever. Like, not only did it take you to an hour, there's like 10 things you needed to do with a root account that you couldn't do with an im account. Yeah, it was brutal back then.” [9:27] AWS: Amazon Goes to Spain * 🇪🇸 New AWS region open in Spain. [2:00] * 💻 You can now assign multiple MFA devices in IAM. [2:32] * 🔈 Announcing AWS CDK Support and CodeBuild Provisioning for AWS Proton. [6:16] * 💿 Introducing the AWS Proton dashboard. [6:16] * 🧑💻 Incident Manager from AWS Systems Manager launches incident coordination capabilities for Incident Response. [7:00] * 💾 Announcing enhanced operational incident response capabilities with AWS Systems Manager and PagerDuty. [7:21] * 📀 AWS announces Amazon WorkSpaces Multi-Region Resilience. [7:56] * 📜 Announcing certificate-based authentication for Amazon WorkSpaces. [7:56] * 😌 Announcing General Availability for Amazon WorkSpaces Integration with SAML 2.0. [8:10]
Reinvent 2022 Predictions [9:27] Peter 1. Adding RDS To Savings Plan - Thanks Kap, Steve Bisson and Eric Mulatrick 2. GPU for Fargate - Defel on Reddit 3. New mi6.xlarge family of EC2 only used by british spies - Robert Martin - Finops Slack
Justin 1. New Graviton/Arm Based Pick - Thanks Akustic646 from reddit 2. Cognito 2.0 - Thanks Syphoon from Reddit 3. Meh Conference, only niche announcement its nothing for the general market. And no additional cost savings for customers due to profitability needs at AWS - Glenn - OG AWS
Ryan 1. Significant Step Flow increases - Andrew Fitzgerald - OG 2. Salesforce Killer for CRM Ryan Lucas 3. SLSA solution and/or enablement/visualization/existing code family products
Jonathan 1. ARM Chip Factory
Tie Breaker Number Ryan: 22
Justin: 15
Peter: 23 Azure: The NBA Drafts Microsoft * 😀 Azure Synapse Link for SQL is now generally available. [26:37] * 💻 DR secondary free with SQL Server on Azure Virtual Machines is now generally available. [26:58] * 🤝 NBA and Microsoft team up to transform fan experiences with cloud application modernization. [27:22]
⚡ TCP Lightning Round (Justin 9, Ryan 8, Jonathan 4, Peter 0) [28:22] * Amazon WorkSpaces announces version 2.0 of WorkSpaces Streaming Protocol. * AWS Service Management Connector now supports provisioning AWS Service Catalog products in Atlassian’s Jira Service Management Cloud * AWS Security Hub now supports bidirectional integration via AWS Service Management Connector for Atlassian’s Jira Service Management Cloud * Amazon NAT Gateway Now Allows You to Select Private IP Address for Network Address Translation * Announcing the new Applications widget on AWS Console Home * Announcing preview of the AWS SDK for SAP ABAP
And that is the week in the cloud. We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, Slack team, send feedback or ask questions at thecloudpod.net or Tcweet at us with hashtag #thecloudpod
RE:INVENT NOTICE Jonathan, Ryan and Justin will be live streaming the major keynotes starting Monday Night, followed by Adam's keynote on Tuesday, Swami's keynote on Wednesday and Wrap up our Re:Invent coverage with Werner's keynote on Thursday. Tune into our live stream here on the site or via Twitch/Twitter, etc. On The Cloud Pod this week, Amazon Time Sync is now available over the internet as a public NTP service, Amazon announces ECS Task Scale-in protection, and Private Marketplace is now in preview.
Thank you to our sponsor, Foghorn Consulting, which provides top notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you’re having trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. Episode Highlights * ⏰ Amazon Time Sync is now available over the internet as a public NTP service. * ⏰ Amazon announces ECS Task Scale-in protection. * ⏰ Private Marketplace is now in preview.
Top Quote 💎 “And then those companies say, ‘Well, I don't have time to performance tests and regression tests and load tests.’ Or, or, ‘It's not broken, I don't want to fix it.’ You know, and so they just sit there paying more money because it's not worth the risk.” [10:37] AWS: Time for Amazon * ⚖️ Amazon announces ECS Task Scale-in protection. [2:05] * ⏳ Amazon Time Sync is now available over the internet as a public NTP service. [4:54] * 🍎 Amazon EC2 Mac instances now support Apple macOS Ventura. [6:14] * 📦 Amazon RDS now supports General Purpose gp3 storage volumes. [7:49] * 📀 Amazon EKS supports Kubernetes version 1.24. [10:53] * 🪟 New centralized Logging for Windows Containers on Amazon EKS using Fluent Bit. [15:50] * 🔊 Amazon EC2 announces new price and capacity-optimized allocation strategy for provisioning Amazon EC2 Spot Instances. [16:28] * 💻 AWS Backup now supports restore of VMware workloads to Amazon EC2. [18:37]
GCP: Privately GCP * 🔈 Private Marketplace is now in preview. [20:05] * 🧘 Google Public Sector announces continuity-of-operations offering for government entities under cyberattack. [21:48]
Azure: Empowered Azure * ❗Project Flash Update: Advancing Azure Virtual Machine availability monitoring. [23:37] * ☁️ Empowering ISVs to build and sell with the Microsoft Cloud. [25:47] * 👩🏼🤝👨🏽 More inclusive workplaces: Independent Review prompts Microsoft to release an action plan. [27:35]
⚡ TCP Lightning Round (Justin 8, Ryan 7, Jonathan 4, Peter 0) [29:00] Amazon S3 Glacier improves restore throughput by up to 10x when retrieving large volumes of archived data Amazon RDS for SQL Server now supports a linked server to Oracle Amazon RDS for Oracle now supports Amazon Elastic File System (EFS) integration AWS Secrets Manager increases the API Requests per Second limits General availability: Multivariate Anomaly Detection General availability: Retryable writes in Azure Cosmos DB for MongoDB Generally available: Static Web Apps support for preview environments in Azure DevOps Amazon EventBridge Launches New Scheduler Things Coming Up: AWS Reinvent - November 28th-Dec-2
And that is the week in the cloud. We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, Slack team, send feedback or ask questions at thecloudpod.net or Tcweet at us with hashtag #thecloudpod
On a slow news week, we talk about the new AWS Switzerland region, Googles 2022 State of Devops report and GCP gets those flexible committed use discounts!
Thank you to our sponsor, Foghorn Consulting, which provides top notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you’re having trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. General News [4:02] * 👮 Announcing the 2022 Accelerate State of DevOps Report: A deep dive into security.
Episode Highlights * ⏰ Announcing the 2022 Accelerate State of DevOps Report: A deep dive into security. * ⏰ AWS opens a new region–its 28th– in Switzerland * ⏰ GCP unveils flexible committed use discounts.
Top Quote 💎 “Back when you only had the option of on demand or reserved instances, and you do the math… And if you run the thing, basically more than 40 hours a week, you might as well buy the Ri. You're not getting any benefit of scaling anyway, at that point. So this is this is so much better, you get the benefit of committing to an aggregate use and the discount to that with the benefit of turning stuff off when you're not using it.” [32:24] AWS: Amazon Isn’t Neutral About Switzerland * 🇨🇭 AWS opens a new region–its 28th– in Switzerland. [19:29] * 🔎 Quickly find resources in your AWS account with new Resource Explorer. [21:55]
GCP: Google Is Committed To Their Flexibility * 🔈 Announcing MongoDB connector for Apigee Integration. [24:40] * 🧘 GCP unveils flexible committed use discounts. [28:15]
Azure: Azure Needs No Downtime * 0️⃣ Zero downtime migration for Azure Front Door—now in preview. [33:57]
⚡ TCP Lightning Round (Justin 8, Ryan 7, Jonathan 4, Peter 0) [35:09] * AWS Certificate Manager now supports Elliptic Curve Digital Signature Algorithm TLS certificates * Amazon ElastiCache adds support for Redis 7 * AWS Private 5G service now includes support for multiple radio-units * Amazon ElastiCache now supports Internet Protocol Version 6 (IPv6) * GA: Encrypt Azure storage account with cross-tenant customer-managed keys
After Show: * 👖 Amazon is tightening its belt and Alexa could face cutbacks.
Things Coming Up: AWS Reinvent - November 28th-Dec-2
And that is the week in the cloud. We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, Slack team, send feedback or ask questions at thecloudpod.net or Tweet at us with hashtag #thecloudpod
On The Cloud Pod this week, Amazon announces Neptune Serverless, Google introduces Google Blockchain Node Engine, and we get some cost management updates from Microsoft.
Thank you to our sponsor, Foghorn Consulting, which provides top notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you’re having trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. General News [1:24] * 😯 Microsoft surprises with first quarter results * 📉 Microsoft drops 6% after revealing weak guidance on its earnings call * 3️⃣ Alphabet announces Q3 results * ✂️ YouTube shrinks Alphabet; company will cut headcount growth by half in Q4 * ⚓ Amazon stock sinks 16% on weak Q4 guidance * 3️⃣ Amazon announces Q3 results * 🦥 Amazon CFO says tech giant is preparing for ‘what could be a slower growth period’ * 😞 AWS just recorded its weakest growth to date * 🏅 AWS named as a leader in the 2022 Gartner CIPS Magic Quadrant for the 12th consecutive year
Episode Highlights * ⏰ Amazon announces Neptune Serverless. * ⏰ Google introduces Blockchain Node Engine * ⏰ Cost management updates from Microsoft.
Top Quote 💎 “Google Cloud is an important partner to HashiCorp, and our enterprise customers use HashiCorp Terraform and Google Cloud to deploy mission critical infrastructure at scale. With 70 million downloads of the Terraform Google Provider this year and growing, we’re excited to collaborate closely with Google Cloud to offer our joint customers a seamless experience which we believe will significantly enhance their experience on Google Cloud.” - Burzin Patel, HashiCorp VP, Global Partner Alliances. [39:38] AWS: Amazon Goes to Neptune * 🪐 Announcing Amazon Neptune Serverless – A fully managed graph database that adjusts capacity for your workloads. [13:15] * 🖥 AWS Batch for Amazon EKS. [17:08] * ☁️ AWS Console mobile application adds support for AWS CloudShell. [20:13] * 💉 AWS Fault Injection Simulator now supports network connectivity disruption. [21:57] * 📜 AWS Private Certificate Authority introduces a mode for short-lived certificates. [24:01] * 🔈 AWS announces Amazon EKS Anywhere on Apache CloudStack. [24:51] * 🎩 Amazon EKS Anywhere now includes support for Red Hat Enterprise Linux. [26:32] * 🕶️ Announcing dark mode support in the AWS Management Console. [28:01] * 🪛 Amazon EC2 enables easier patching of guest operating system and applications with Replace Root Volume. [29:24] * ✨ Amazon Aurora supports cluster export to S3. [30:50] * 💵 Amazon MSK now offers a low-cost storage tier that scales to virtually unlimited storage. [32:02]
GCP: Google Goes Blockchain? * 🌍 Introducing assured workloads in Canada and Australia. [33:37] * 🪙 Introducing Blockchain Node Engine: fully managed node-hosting for Web3 development. [34:57] * ☁️ Google Cloud and HashiCorp deliver a more efficient approach for cloud support services. [38:59] * 💪 Introducing Sensitive Actions, a new way to help keep accounts secure. [41:20] * 💻 Join the Google Cloud BI Hackathon. [45:26] * 📀 Skaffold v2 GA: Further enhancing developer productivity. [46:41]
Azure: Microsoft’s Got that Money (Update), Honey! * 💸 Microsoft Cost Management updates—October 2022. [48:03] * 👋 General availability: Azure Cosmos DB for MongoDB data plane RBAC. [50:12]
After Show: * 😧 Why we're leaving the cloud * ⁉️Why we’re leaving the electric grid
⚡ TCP Lightning Round (Justin 8, Ryan 6, Jonathan 4, Peter 0) [50:53] * Amazon Cognito now provides user pool deletion protection * AWS Nitro Enclaves is now supported on AWS Graviton * AWS Service Management Connector now streamlines display of AWS Service Catalog products by Account and Region in ServiceNow Service Portal * Amazon SES now offers new model to simplify provisioning and managing dedicated IPs * Announcing new AWS Amplify Library for Swift, now with support for both iOS and macOS * Announcing Red Hat Enterprise Linux (RHEL) Workstation on AWS * Amazon RDS now supports events for operating system updates * Amazon Virtual Private Cloud (VPC) now supports the transfer of Elastic IP addresses between AWS accounts * AWS CloudTrail Lake now supports export of signed query results to Amazon S3 * Improve your Azure SQL Managed Instance performance with new TempDB configurations. * Auto-scale compute to higher limits with up to 80 vCores in selected regions using Azure SQL Database serverless.
Things Coming Up: AWS Reinvent - November 28th-Dec-2
And that is the week in the cloud. We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, Slack team, send feedback or ask questions at thecloudpod.net or Tweet at us with hashtag #thecloudpod
On The Cloud Pod this week, Amazon EC2 Trn1 instances for high-performance model training are now available, 123 new things were announced at Google Cloud Next ‘22, Several new Azure capabilities were announced at Microsoft Ignite, and many new announcements were made at Oracle CloudWorld.
Thank you to our sponsor, Foghorn Consulting, which provides top-notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you’re having trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. Episode Highlights * ⏰ Amazon EC2 Trn1 instances for high-performance model training are now available. * ⏰ 123 new things were announced at Google Cloud Next ‘22. * ⏰ Several new Azure capabilities were announced at Microsoft Ignite. * ⏰ Many new announcements from Oracle CloudWorld.
Top Quote 💎 “We are pleased to have co-designed the first ASIC Infrastructure Processing Unit with Google Cloud, which has now launched in the new C3 machine series. A first of its kind in any public cloud, C3 VMs will run workloads on 4th Gen Intel Xeon Scalable processors while they free up programmable packet processing to the IPUs securely at line rates of 200Gb/s. This Intel and Google collaboration enables customers through infrastructure that is more secure, flexible, and performant.” – Nick McKeown, Senior Vice President, Intel Fellow and General Manager of Network and Edge Group. [35:26] AWS: Increasing Your Large-Scale Distribution * 🏃 Amazon EC2 Trn1 instances for high-performance model training are now available. [1:55] * 🖥 AWS launches new local zones in Taipei and Delhi. [3:29] * 🔈 A new cost explorer console experience was just announced, and it’s Justin approved. [4:26] * ➕ Amazon Connect Cases is now generally available. [6:40]
GCP: What Will They Announce Next? * 💸 You can now manage storage costs by automatically deleting expired data using Firestore Time-To-Live (TTL). [9:23] * 📢 123 new things were announced at Google Cloud Next ‘22. [11:04] * 👮 Google introduced new capabilities for secure transformations at Next '22. [15:14] * 💳 You can now learn with an annual subscription to Google Cloud. [20:10] * 👓 Introducing the next evolution of Looker, your unified business intelligence platform. [22:49] * ☁️ Google announces 20+ cloud networking innovations at Google Next.. [24:58] * ⛑️ New Google Workspace innovations to aid in hybrid work. [28:37] * 💽 Google is unifying data across multiple sources and platforms. [33:30] * 💾 New C3 VM and Hyperdisk for Google Cloud. [35:00] * 💲 Google Cloud offers up to 11% off on Spot VM. [37:12] * 👀 Cloud Monitoring now supports PromQL. [38:23] * 🤝 Google Cloud inks cloud and payments partnership with Coinbase. [38:46] * 🇮🇱 Google Cloud opens a new region in Israel. [40:54]
Azure: Igniting the Competition * 💪 Increase productivity with Microsoft Cloud. [44:14] * 🔥 Several new Azure capabilities were announced at Microsoft Ignite. [47:08] * 👋 Introducing Microsoft Syntex: Content AI integrated with the flow of work in Microsoft Cloud. [52:15] * 🧱 Azure Firewall Basic now in preview. [53:05] * 🎲 Introducing AiDice, advanced anomaly detection with AIOps. [54:38] * ❤️🔥 From Places to Edge Workspaces, more news from Microsoft Ignite. [55:12] * 📀 You can now leverage SFTP support for Azure Blob Storage to build a unified data lake. [1:02:12] * 💻 Enterprise-grade DDoS protection for SMBs is now available in preview. [1:03:39]
Oracle: CloudWorld 2022 Announcements * 1️⃣ Oracle CloudWorld day one: Announcing Oracle Database 23c. [1:05:36] * 2️⃣ Oracle CloudWorld day two: Serverless Kubernetes, coming soon. [1:07:24]
Things Coming Up: * Kubecon US - October 24-28th * AWS Reinvent - November 28th-Dec-2
Episode 185: The Cloud Pod is flush with Cache! On The Cloud Pod this week, Amazon introduces their new file cache for on premises systems, Google introduces GKE Autopilot, and Azure helps you strengthen your security even more.
Thank you to our sponsor, Foghorn Consulting, which provides top notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you’re having trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.
Episode Highlights * ⏰ Introducing Amazon File Cache, the new AWS cache for on-premises file systems. * ⏰ Google introduces support for GPU workloads and more in GKE Autopilot. * ⏰ Strengthen your security with Policy Analytics for Azure Firewall.
Top Quote 💎 “I get the feeling that the multiple tenancy, in a way is probably the selling point here. That as you acquire new companies, or as you bring on new partners dynamically, it's easier to integrate those IDPs. Whereas previously, it's been pretty difficult to to have multiple sources of identity, I guess it sort of abstracts those and provides a single layer to the Google identity service.” [22:07” General News: * 😨 We will not be recording during the week of Google Cloud Next, so our episodes will be slightly delayed–fear not, we’re recording an episode immediately after Next so we can deliver your weekly dose of cloud news ASAP.
AWS: All About the Cache
GCP: Put Your Work on Autopilot?
Azure: Budget Updates on the Go! * 💪 Strengthen your security with Policy Analytics for Azure Firewall. [25:18] * 💰 Cost Management updates for September, including the ability to track budgets from the Azure mobile app! [28:17] * 👋 Azure SQL Database Hyperscale reverse migration to general purpose tier is now generally available.. [30:06] * 🔊 Generally available: Azure Functions .NET Framework support in the isolated worker model. [32:05]
Oracle: Is it Halloween or April Fool’s Day?
TCP Lightning Lightning Round [37:01]
⚡️ With Justin out this week, Ryan looks to take over as champion:
Justin (8), Ryan (6), Jonathan (4), Peter (1).
AWS Service Catalog console makes improvements on usability AWS announces updated Support Plans Console with new IAM controls AWS Systems Manager adds CloudWatch Alarms to control tasks Bottlerocket is now supported by Amazon Inspector AWS Certificate Manager Private Certificate Authority is now AWS Private Certificate Authority
(Lets hope this starts a trend… looking at you Simple Systems Manager)
Things Coming Up:
Google Cloud Next - October 11th - 13th Oracle Cloud World - October 17-20th Devops Enterprise Summit US Flagship - October 18th-20th - Las Vegas Kubecon US - October 24-28th AWS Reinvent - November 28th-Dec-2 (assumed)
And that is the week in the cloud. We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, Slack team, send feedback or ask questions at thecloudpod.net or Tcweet at us with hashtag #thecloudpod
On The Cloud Pod this week, AWS announces an update to IAM role trust policy behavior, Easily Collect Vehicle Data and Send to the Cloud with new AWS IoT FleetWise, now generally available, Get a head start with no-cost learning challenges before Google Next ‘22.
Thank you to our sponsor, Foghorn Consulting, which provides top notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you’re having trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.
Episode Highlights * ⏰ AWS announces an update to IAM role trust policy behavior. * ⏰ Easily Collect Vehicle Data and Send to the Cloud with new AWS IoT FleetWise, now generally available. * ⏰ Get a head start with no-cost learning challenges before Google Next ‘22.
General News: * 📱 Google Next is coming up in two weeks. [0:56] * 😨 Next week’s show will be sans Justin. [1:02]
AWS: More like “Announcement” Web Services
GCP: Google Next Is Almost Here!
Azure: Read This if You’re Running PostgreSQL 11?
TCP Lightning Round [30:06]
⚡️ Ryan, Jonathan, and Peter are making it a little too easy at this point:
Justin (8), Ryan (5), Jonathan (4), Peter (1).
Azure unmanaged disks will be retired on 30 September 2025 Continuous delivery setting of Azure VM will be retired on 31 March 2023 – Use Azure DevOps to create pipelines Deployment Center setting of Azure Kubernetes service (AKS) will be retired on 31 March 2023 – Use Automated Deployments to create pipelines Announcing availability of AWS Outposts rack in Kazakhstan and Serbia Amazon Kendra releases Dropbox connector AWS Cost Categories now support retroactive rules application AWS Copilot, a CLI for the containerized apps, adds IAM permission boundaries and more
Things Coming Up: Google Cloud Next - October 11th - 13th Oracle Cloud World - October 17-20th Devops Enterprise Summit US Flagship - October 18th-20th - Las Vegas Kubecon US - October 24-28th AWS Reinvent - November 28th-Dec-2 (assumed)
And that is the week in the cloud. We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, Slack team, send feedback or ask questions at thecloudpod.net or Tcweet at us with hashtag #thecloudpod
On The Cloud Pod this week, AWS Enterprise Support adds incident detection and response, the announcement of Google Cloud Spanner, and Oracle expands to Spain.
Thank you to our sponsor, Foghorn Consulting, which provides top notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you’re having trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. Episode Highlights * ⏰ AWS Enterprise Support adds incident detection and response * ⏰ You can now get a 90-day free trial of Google Cloud Spanner * ⏰ Oracle opens its newest cloud infrastructure region in Spain
Top Quote 💎 “A very large percentage of MySQL HeatWave customers are AWS users who are migrating off Aurora. However, there are still some AWS customers who are not able to migrate to OCI. This is a service where the data plane, control plane and console are natively running on AWS. We have taken the MySQL HeatWave code and optimized it for AWS infrastructure.”
-Nipun Agarwal, senior vice president of MySQL, Database and HeatWave at Oracle. General News: 🆕 Moving from Ruby to Go, Vagrant 2.3 Introduces Go Runtime. [0:58] AWS: New Proactive Monitoring from AWS * 🚨 AWS Enterprise Support adds incident detection and response. [2:01] * 🙂 Helping to vastly reduce failover times, Amazon RDS Proxy adds support for Amazon RDS for SQL Server. [3:59] * 📑 Beginning October 11th, ACM public certificates will be issued by one of the Intermediate CA’s that AWS manages. [7:46] * 💽 AWS has announced direct VPC routing for AWS outposts. [10:23] * 🖥️ You can now deploy your Amazon EKS Clusters Locally on AWS Outposts. [12:12]
GCP: Free Trial Here! Get Your Free Trial Here! * 🤑 You can now get a 90-day free trial of Google Cloud Spanner. [14:04] * 👮 If you need a new way to protect your data, try Google introduced fine-grained access control for Cloud Spanner. [14:58] * 📀 Googles Database Migration service now supports Google Alloy DB in preview. [16:30] * 🧑💻 Revelations from Storage Innovation Day [17:36] * 🍻 Hold our collective beers… you can now Sign up for the Google Cloud Fly Cup Challenge. [20:31] * 🗣️ Google has announced Pub/Sub metrics dashboards for improved observability. [22:52] * 💻 Virtual Machine support in Anthos is now generally available. [25:14] * 🖱️ Beginning this month, Vertex AI matching engine and feature store will support real-time streaming ingestion as preview features. [26:54]
Azure: Low-latency Streaming… What Is It Good For? * 🔋 Azure Media Services low-latency live streaming is now generally available. [27:51] * 📈 The ability to resize peered virtual networks is now generally available. [30:56]
Oracle: Oracle goes abroad * 💰 Oracle’s total revenue increases by 23% in the first fiscal quarter. [32:44] * 🇪🇸 Oracle opens its newest cloud infrastructure region in Spain [34:53] * ☁️ Only two years later, Oracle finally brings MySQL heatwave to the Amazon Cloud. [35:56]
TCP Lightning Lightning Round [30:06] ⚡️ Another week goes by and Justin’s reign remains unthreatened:
Justin (7), Ryan (5), Jonathan (4), Peter (1). * AWS Transfer Family now supports multiple host keys and key types per server * AWS Cloud Development Kit (CDK) announces CDK Construct tree view in the AWS CloudFormation console * Introducing Visual Conversation builder for Amazon Lex * AppFlow now supports deleting records in Salesforce * AWS Systems Manager now supports patching newer versions of SUSE Linux Enterprise Server, Oracle Linux, and Red Hat Enterprise Linux * On 1 October 2025, the Log Analytics alert API in Azure Monitor will be retired * Sign Amazon SNS messages with SHA256 hashing for HTTP subscriptions
Things Coming Up: * Google Cloud Next - October 11th - 13th * Oracle Cloud World - October 17-20th * Devops Enterprise Summit US Flagship - October 18th-20th - Las Vegas * Kubecon US - October 24-28th * AWS Reinvent - November 28th-Dec-2 (assumed)
On The Cloud Pod this week, Amazon SWF launches a new console experience, Google acquires Mandiant, and Azure Space has some new products coming your way soon.
Thank you to our sponsor, Foghorn Consulting, which provides top notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you’re having trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week.
Episode Highlights * ⏰ Amazon SWF just launched a new console experience for building distributed applications. * ⏰ The Google acquisition of Mandiant (Mandoogle!) is finished. * ⏰ Azure Space announced their next wave of products.
Top Quote
💎 “The new certification is sort of interesting, because it's a little bit more like the, the content isn't new, right? But the certification is new. And so it's an interesting metric. Like how do you, how do you ensure people are reviewing the content? You have these certifications that you measure on the completion of that? So like, it's, I can see how it's a little bit of like, weaponizing, you know, those metrics in order to like drive culture change, maybe within an org where there's division over private cloud or public cloud? Or, you know, it just depends on what you want to do. But very interesting.” [17:04] General News: * 😳 Hashi Corp announced that Consul Terraform Sync is generally available at the 0.7 release. [1:12]
AWS: More Like Amazon SWTF? * 🤔 You’ve never heard of it, but Amazon SWF just launched a new console experience for building distributed applications. [4:20] * 😷 Amazon SNS launches a public preview of message data protection. [6:53] * 🏃♂️ Your containers will now be launching faster, thanks to Seekable OCI for lazy loading container images. [10:00]
GCP: Hey Siri, What Is a Mandoogle? * 🙊 Google Cloud Next is less than one month away. Have you registered yet? [12:16] * 🤷🏻♀️ The Cloud Digital Leader certification is bringing Cloud training to those of us who aren’t technically inclined. [14:56] * 🚨BeyondCorp Enterprise is giving you more ways to protect your corporate applications. [18:45] * 🧑💻The Google acquisition of Mandiant (Mandoogle!) is finished, finally bringing the two cybersecurity giants together. [19:34] * ☁️ Google introduces cloud backup and DR. [21:56]
Azure: Even More Products From Azure * 👋 Built-in Azure Monitor lerts for Azure Backup is now generally available. [25:45] * 📀 Two years after launch, Azure Space announced their next wave of products. [28:54]
TCP Lightning Lightning Round [30:06] ⚡️ The scores stayed the same this week… will Justin ever be de-throwned?:
Justin (7), Ryan (5), Jonathan (4), Peter (1). * Multi-instance GPU support in AKS * AWS Backup adds Amazon CloudWatch metrics to its console dashboard * Amazon RDS Performance Insights now supports displaying top 25 SQL queries * SageMaker Studio now supports Glue Interactive Sessions * AWS Firewall Manager adds support for AWS WAF custom requests and responses * Azure Dedicated Host support for Ultra Disk Storage * AWS Fargate announces migration of service quotas to vCPU-based quotas * Standard network features for Azure NetApp Files
Aftershow: * 👑 Queen Elizabeth II dies at 96
Things Coming Up: * Elasticon San Francisco - October 4th * Google Cloud Next - October 11th - 13th * Oracle Cloud World - October 17-20th * Devops Enterprise Summit US Flagship - October 18th-20th - Las Vegas * Kubecon US - October 24-28th * AWS Reinvent - November 28th-Dec-2 (assumed)
On The Cloud Pod this week, Amazon announces Amazon Inspector’s new support of Windows OS for continual software vulnerability scanning of EC2 workloads, Google has several exciting announcements regarding Chronicle, Azure is announcing pretty much everything under the sun, and Oracle announces OCI Lake in beta.
Thank you to our sponsor, Foghorn Consulting, which provides top notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you’re having trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. Episode Highlights ⏰ Amazon Inspector now supports Windows operating system (OS) for continual software vulnerability scanning of EC2 workloads.
⏰ Google makes 3 announcements about Chronicle.
⏰ Azure has three–yes, three–new releases this week.
⏰ Oracle announces OCI Lake in beta. Top Quote 💎 “The picture is still opaque of what the real value of this is going to be. But the fact that it's out there is good or, you know… it's the classic. “I'm leaving Amazon and I have worked on this code for five years and I like doing open source. So I can keep using it. It can be that classic move.” General News: * 🤑 Gartner published an article indicating that SaaS vendors will be using sustainability as a basis to raise their prices. [0:34] * 🤪 The news out of VMWare this week can basically be summed up as: Tanzu, Tanzu, and more Tanzu. [2:38]
AWS: Scanning, scanning, scanning…. * 📏 Amazon Event Ruler is becoming open source. [10:50] * 🔍 Amazon Inspector now supports Windows operating system (OS) for continual software vulnerability scanning of EC2 workloads. [14:12]
GCP: Dear Diary, today I… 🖊️ A Chronicle blog post diary, Google made several announcements [17:09]:
📈 There are new ingestion metrics coming to Chronicle.
⏳ New YARA-L functionalities are coming that will allow you to apply more fine grained time based criteria into your detections.
🦠 The Chronicle native-VirusTotal augment widget is now available. Azure: New Releases, New Releases Everywhere… * 🔋 Azure Managed Grafana is now generally available. [19:39] * 👋 Enterprise-ready Azure Monitor change analysis capability released–say that five times fast. [22:03] * 🖥️ Enterprise-grade edge for Azure Static Web Apps is now generally available. [25:16]
Oracle: * 💾 Oracle has announced OCI Lake (beta), which provides fine-grained access control to all resources in a data lake's object storage. [26:48]
TCP Lightning Lightning Round [30:06] ⚡️ This week, Ryan inches closer to dethroning Justin as the scores move to:
Justin (7), Ryan (5), Jonathan (4), Peter (1). * Unity Catalog for Azure Databricks is now GA * Azure Cosmos DB integrated cache is now GA * You can now authenticate to Azure Service Bus using Managed Identities * AWS announces open-sourced credentials-fetcher to simplify Microsoft AD access from Linux containers * AWS Fargate announces availability of Microsoft Windows Server 2022 images for Amazon ECS * AWS Config conformance pack templates can now be stored in AWS Systems Manager * Amazon Managed Service for Prometheus Alert Manager & Ruler logs now available in Amazon CloudWatch Logs * Announcing new AWS Console Home widgets for recent AWS blog posts and launch announcements
Aftershow: 🍎 The Top 9 Announcements from Apple's iPhone 14 Event
Things Coming Up: * Sectember - CSA Conference - September 26-30th - Bellevue WA * Elasticon San Francisco - October 4th * Google Cloud Next - October 11th - 13th * Oracle Cloud World - October 17-20th * Devops Enterprise Summit US Flagship - October 18th-20th - Las Vegas * Kubecon US - October 24-28th * AWS Reinvent - November 28th-Dec-2 (assumed)
And that is the week in the cloud. We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, Slack team, send feedback or ask questions at thecloudpod.net or Tweet at us with hashtag #thecloudpod
On The Cloud Pod this week, Amazon adds the ability to embed fine-grained visualizations directly onto web pages, Google offers pay-as-you-go pricing for Apigee customers, and Microsoft launches Arm-based Azure VMs that are powered by ampere chips.
Thank you to our sponsor, Foghorn Consulting, which provides top notch cloud and DevOps engineers to the world’s most innovative companies. Initiatives stalled because you’re having trouble hiring? Foghorn can be burning down your DevOps and Cloud backlogs as soon as next week. Episode Highlights ⏰ Fine-grained visualizations can now be embedded directly into your webpages and applications
⏰ Google is now offering pay-as-you-go pricing for its Apigee API customers
⏰ Microsoft launches Arm-based Azure VMs powered by ampere chips Top Quote 💎 “I think I feel like SimCity 2000 lied to me. By now we should have had satellites in space collecting solar power and beaming microwave energy down to us.” General News: * 😐 Due to concerns about power shortages and availability of supplies, Microsoft and Amazon cancel several new planned data centers in Ireland. [1:18]
AWS: Adding Visuals to Your Apps Is Getting Even Easier… * 📊 Fine-grained visualizations can now be embedded directly into your webpages and applications thanks to Amazon QuickSight. [4:44] * ⚙️ Amazon’s announcement of the new AWS Support App for Slack is going to streamline management of technical, billing, and account support cases. [6:24] * 🗣️ AWS Security Hub is now publish announcements through Amazon SNS, and anyone can submit via the console or CLI. [8:37] * ✉️ Amazon RDS for SQL Server now supports email subscription for SQL Server Reporting Services (SSRS). [10:37] * ☁️ Amazon CloudFront launches Origin Access Control (OAC), which helps more easily secure S3 origins. [11:08] * 🔐 Your account login pages are becoming even more secure, thanks to AWS WAF Fraud Control. [12:38] * 📦 Amazon EKS Anywhere Curated Packages now generally available. [13:20] * 📈 AWS and VMware Announce VMware Cloud on AWS integration with Amazon FSx for NetApp ONTAP, allowing customers to scale storage independently. [14:33] * 🇦🇪 AWS now has regions open in the United Arab Emirates (UAE). [16:06]
GCP: Get What You Pay For * 🧩 Managed AD from Google now supports on-demand backups, schema extension support, and requires zero hardware management or patching. [18:02] * ⚔️ Six months after it was launched in preview, virtual Machine Threat Detection is now generally available to Cloud customers [20:30] * 🌥️ Google Cloud Certificate Manager is also generally available. [21:31] * 💳 Google is now offering pay-as-you-go pricing for its Apigee API customers, allowing them to unlock all of the benefits with no upfront commitment. [23:03]
Azure: Arms in the Cloud * 🦾 Ampere Altra Arm-based processors are now generally available on the Azure cloud. [24:28] * 🖥️ Azure Data Explorer now supports native ingestion from Amazon S3, one of the most popular object storage services. [27:00] * 🧑💻 IoT Edge 1.4 is now generally available. [28:34]
TCP Lightning Lightning Round [30:06]
⚡️ This week, Peter struggles to keep up, as everyone else’s scores increase to: Justin (7), Ryan (4), Jonathan (4), Peter (1). * A new sign-in experience is now generally available for Amazon QuickSight * Announcing the Oracle Cloud VMware Solution summer release * Amazon AppFlow now supports Jira Cloud as a source * Announcing support for Crawler history in AWS Glue * Prevent a lifecycle management policy from archiving recently rehydrated blobs on Azure * Announcing dynamic performance scaling with autotuning for OCI Block Storage
Aftershow: * 🪫 Silicon Valley Startup Sparks Controversy Over What Critics Call ‘Racist Software'
Things Coming Up: * Sectember - CSA Conference - September 26-30th - Bellevue WA * Elasticon San Francisco - October 4th * Google Cloud Next - October 11th - 13th * Oracle Cloud World - October 17-20th * Devops Enterprise Summit US Flagship - October 18th-20th - Las Vegas * Kubecon US - October 24-28th * AWS Reinvent - November 28th-Dec-2 (assumed)
And that is the week in the cloud. We would like to thank our sponsors Foghorn Consulting. Check out our website, the home of the cloud pod where you can join our newsletter, Slack team, send feedback or ask questions at thecloudpod.net or Tcweet at us with hashtag #thecloudpod
On The Cloud Pod this week, the team weighs the merits of bitcoin mining versus hacking. Plus: AWS Trusted Advisor prioritizes Support customers, Google provides impenetrable protection from a major DDoS attack, and Oracle Linux 9 is truly unbreakable.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 AWS Trusted Advisor offers a new Priority capability for Enterprise Support, offering a prioritized view of critical risks. * 🚨 Nothing’s touching Google, as it blocks the largest Layer 7 DDoS attack to date, with a whopping 46 million requests per second (RPS). * 🚨 The new Oracle Linux 9 comes with Unbreakable Enterprise Kernel Release 7 (UEK R7) and Red Hat Compatible Kernel (RHCK).
Top Quotes * 💡 “This is really just institutionalizing the knowledge that the Enterprise customers are already getting from their account team. And it probably really helps — in the event that the AWS account team experiences churn for those customers — not to be negatively impacted. It probably makes it really easy for new people on that AWS account team to come in and know where the other team left off. I don't think it's really a new feature — just a new way to access data that customers are already getting.” * 💡 “Ignoring those Tor nodes — which didn't make a whole lot of traffic — that's 12,000 requests a second per source IP, on average. That's enormous.”
AWS: A Trusty Advisor’s Priorities * 🧑🔧 Finally, AWS has found a use for Mechanical Turk, with its new Priority capability for Trust Advisor. * 🔭 If you've been curious about what's happening during domain updates of the OpenSearch Service, you now get more visibility into validation errors during blue/green deployments. * 📜 Great news for license-holders and clearly by popular demand: RDS for Oracle now supports managed Oracle Data Guard Switchover and Automated Backups for read replicas.
GCP: Heavily Armored Cloud * 🥝 Google Cloud is saying goodbye to its IoT Core service in 2023. How about instead of turning it off, just stop selling it? * ✂️ You can benefit from operating system Committed Use Discounts (CUD) with workload predictability. Now, get some cuts on your SUSE Linux Enterprise Server (SLES) — with savings of up to 79%. * 🛡️ There’s much fanfare at Google, as it blocks the largest Layer 7 DDoS attack to date. It didn’t last long though, because the attackers gave up — probably deciding there was no value in continuing. * 🔍 Chronicle SecOps Suite now offers curated detections for SOC teams. Now you’ve got them, what do you do with them? Well, be on the lookout out for a follow-on service from Google, probably coming soon.
Azure: It Must Be Kubernetes Week at Azure * 🤔 In a strange announcement that doesn’t make a whole lot of sense, Public IP Capability for Azure VMware Solution is now generally available. What does “the ability to receive up to 1000 or more Public IPs” actually mean? Come on, Azure. * 🤝 If you’re in the Kubernetes camp, you get a big change with the general availability of Kubernetes 1.24 support. (For most people this isn’t a big deal and you don’t care.) * 🤗 It sounds expensive, but it’s dedicated: Azure Dedicated Host Support is now general available. * ⌨️ It’s mind blowing that key management system integration with AKS wasn’t already a thing, but there we go.
Oracle: Surviving a Train Wreck * 🚆 If you were super excited about the general availability of Oracle Linux 9, you get cloud-ready platform images now available in OCI, with the Unbreakable Enterprise Kernel Release 7 (UEK R7) and Red Hat Compatible Kernel (RHCK).
TCP Lightning Round ⚡ Jonathan makes the dad joke of the century, but fails to snag the point from Justin. The scores stand at: Justin (7), Ryan (4), Jonathan (3), Peter (1). Other Headlines Mentioned: * Amazon RDS now supports setting up connectivity between your RDS database and EC2 compute instance in 1-click * Now capture AWS Site-to-Site VPN connection logs using Amazon CloudWatch * AWS Cost Categories now support Out of Cycle cost categorization * Amazon EKS announces cluster-level cost allocation tagging * Azure UAE North Availability Zones
Things Coming Up: * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th-13th * Oracle Cloud World - October 16th-20th * Kubecon US - October 24th-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBD * Microsoft events - TBD Check for status
After Show: Elon Musk’s lawyers are bringing in a Twitter whistleblower as part of the ongoing plan to back away from buying the social media giant.
On The Cloud Pod this week, the team chats cloud region wars to establish the true victor. Plus: AWS Storage Day offers a blockhead badge, all the fun of the Microsoft Dev Box, and Google sends people back to sleep with its Cloud Monitoring snooze alert policy.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 AWS Storage Day 2022 marks the fourth annual event streamed live on Twitch, with its File Cache service announcement and five new available learning badges. * 🚨Google now offers alert policy snoozing in Cloud Monitoring for maintenance or non-business hours. * 🚨Microsoft previews its Dev Box, a managed service enabling developers to create cloud workstations.
Top Quotes * 💡 “I found it completely shocking that this didn't exist in AWS — that you only had enable/disable — when first moving over there. So this is a fantastic feature for Google Monitoring. I love it.” * 💡 “This seems like one of those things I'd like, but half the fun of starting a new project is installing a new version of Python or something that completely hoses my local laptop. And I spend the next three or four days frantically trying to undo what I've done that breaks six other things.”
AWS: It’s Storage Day! * 🗃️ AWS livestreamed its fourth annual Storage Day on Twitch, and Ryan is rather excited about getting his hands on that blockhead badge for core storage competency. Plus, the new File Cache service promises to accelerate and simplify hybrid cloud workloads. * 🤔 Continue to be blown away by the theory of HTTP/3 (and if you’re like Ryan, dread the day you have to troubleshoot it), as Amazon CloudFront now supports it. * 📱 Now available in US regions (with a likely quick extension with increased adoption and understanding of the service): AWS Private 5G. * 👐 Amazon and Splunk co-announce the release of the Open Cybersecurity Schema Framework (OCSF) project with a lot of partners… but (interestingly) no Elastic. * 🤝 If you've been holding off on that move from Dockershim to the new launcher, now’s the time to do it before it’s too late: Amazon EKS and Amazon EKS Distro now support Kubernetes version 1.23. * 🤔 Apparently Amazon Cognito enables native support for AWS WAF, but we’re not entirely sure what they're enabling here — it feels like something they should have already been doing.
GCP: Hitting the Snooze Button * ❓ Query Library offers new tools for increasing developer productivity. You should eventually be able to actually save your queries into a custom Query Library, but we’re still waiting on this. * 😴 A snooze, not a pause: Google Cloud Monitoring can now send alerts to sleep, which is perfect for maintenance and non-business hours. * ☁️ Google Cloud Deploy gets several awesome new features this week, including faster onboarding with Skaffold, delivery pipeline management and expanded enterprise features.
Azure: Microsoft Dev Box Treats * 🇶🇦 Microsoft announced its new cloud region in 2019. Two and a half years later, Qatar is finally here. * 🧑💻 Microsoft previews its Dev Box, a managed service that enables developers to create cloud workstations and focus on writing their code instead of building environments to run it.
TCP Lightning Round * ⚡ The lightning lightning round this week (sans Peter) keeps the scores at: Justin (6), Ryan (4), Jonathan (3), Peter (1).
Other Headlines Mentioned: * Optimize resources across your organization using AWS Compute Optimizer from a designated account * The Amazon Chime SDK announces elastic channels * Amazon EBS adds the ability to take crash-consistent snapshots of a subset of EBS volumes attached to an Amazon EC2 instance
Things Coming Up: * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th-13th * Oracle Cloud World - October 16th-20th * Kubecon US - October 24th-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBD * Microsoft events - TBD Check for status
After Show: Post-pandemic remote working, Apple’s enforcing three days a week in the office with a new deadline in place.
On The Cloud Pod this week, the team gets judicial on the Microsoft-Unity partnership. Plus: Amazon acquires iRobot, BigQuery boasts Zero-ETL for Bigtable data, and Serverless SQL for Azure Databricks is in public preview.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 iRobot signs an agreement with Amazon for its acquisition. To what end remains known to Amazon and Amazon alone. * 🚨 Google offers a Zero-ETL approach for Bigtable data analytics using BigQuery. * 🚨 Serverless SQL for Azure Databricks is now in public preview.
Top Quotes * 💡 “Almost all of Amazon's big acquisitions have always been about something indirect. The Whole Foods acquisition was really about the logistics supply chain behind the scenes of moving that around — they kept the brand … and they have the same footprint for stores … but now they have a lot more infrastructure for AmazonFresh. And I suspect for iRobot it's the same thing.” * 💡 “This is super handy for huge datasets where you want to track trends over a long time. It's always really difficult and you always end up compromising somewhere — by not loading or querying your full dataset, because you can’t get it from A to B, or trying to run the query against two separate data sets and combining the results. So this is a nice thing to have for those users who have data across these multiple places.”
AWS: We, Robots * 🤖 Those who hate working in Amazon warehouses might not have to have anything to complain about anymore, as Amazon agrees to acquire iRobot. * 🏁 If you need to get up to speed with Graviton, you’ve now got Graviton Fast Start, which helps move workloads over to AWS. * 🛡️ VMware’s interesting cloud workload protection feels like a continued diversification away from virtualization as your main revenue stream. * ☁️ CloudWatch Evidently, Amazon's second product to help with feature flagging, adds support for creating target customer segments for feature launches and experiments. Neat! * 💸 In what seems like a cost-saving announcement, Lambda gets tiered pricing (but most enterprise customers already have this pricing experience).
GCP: It’s A Big World Out There * ❓ You can now benefit from a Zero-ETL approach for Bigtable data analytics using BigQuery. * 🧑💼An on-premises Windows workload nice-to-have offers support with Certificate Authority Service. * ☁️ Second generation Cloud Functions is now generally available. So are they moving to Knative or away from it? * 🌏 Great news if you’re in the Asia Pacific region outside of Singapore and Australia, with more Google Cloud regions on the way.
Azure: Unity is Strength * 🤝 Microsoft and Unity buddy up for the sake of digital creators, 3D artists and game developers across the world. Whether it’s all-in on Azure or just a simple partnership is a topic of hot debate. * 🕹️ VMware VMs get a modernization boost with Site Recovery, now generally available. See how many times it mentions “experience” in one announcement. * 🧱 If you were skeptical about that one, Serverless SQL for Azure Databricks is now in public preview. They’ll charge you when you use it (because they know you're always going to use it). * 🔮 VM insights with Azure Monitor agent are also in public preview. Hopefully they do this a little better than Amazon did. * 3️⃣ As all things come in threes, the third public preview is Azure Dedicated Host support for Ultra SSD. Next in line is Ultra premium, Ultra Premium Ultra, and Ultron discs, before we move to crystal storage or something biological. * ✨ Either it’s Gartner Magic Quadrant update season or Azure thinks they have something to brag about, because Microsoft is apparently a leader in Gartner’s 2022 edition.
Oracle: Peter’s Back! Bring Out the Oracle Story * 🤝 OCI Code Editor makes developing with Oracle Cloud Infrastructure a whole lot easier. Is this top of the list for all the cloud features you could develop and release? You decide.
TCP Lightning Round ⚡ Ryan edges a touch closer to Justin this week, making the scores: Justin (6), Ryan (4), Jonathan (3), Peter (1). Other Headlines Mentioned: * Public preview: Azure Dedicated Host restart * AWS Data Exchange increases the asset size limit to 100GB * Amazon Aurora Serverless v1 now supports PostgreSQL 11 and In-Place upgrade from PostgreSQL 10 * Amazon SageMaker Pipelines now supports sharing of pipeline entities across accounts * Amazon S3 adds a new policy condition key to require or restrict server-side encryption with customer-provided keys (SSE-C) * AWS Direct Connect expands AWS Transit Gateway support at more connection speeds * Introducing Google Cloud and Google Workspace support for multiple Identity providers with Single Sign-On
Things Coming Up: * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th-13th * Oracle Cloud World - October 16th-20th * Kubecon US - October 24th-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-December 2nd (assumed) * Oracle OpenWorld - TBD * Microsoft events - TBD Check for status
On The Cloud Pod this week, the team discusses why Ryan’s yelling all day (hint: he’s learning). Plus: Peter misses the all-important cloud earnings, AWS Skill Builder subscriptions are now available, and Google Eventarc connects SaaS platforms.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 Earnings time is upon us once again, and it’s apparently doom and gloom all around as tears of loss are wiped away with $100 bills. * 🚨 AWS makes its Skill Builder subscriptions available with more than 500 courses and four new learning experiences. (The Cloud Pod is now registering signups for a virtual proctor while you take the test.) * 🚨Google Eventarc for events enthusiasts unifies and integrates supported SaaS platforms.
Top Quotes * 💡 “Teams is a huge focus. The last two years have been companies figuring out how to remote work for the first time ever. That's not a sustainable thing — those two years’ growth is all just pandemic.” * 💡 “I do like the way that they're presenting a lot of this training. I don't learn well in the classroom setting — I learn by doing, so any kind of hands-on labs or the jams which I've done in person at re:Invent are better for me to learn the internet intricacies of different services. So I love this.”
General News: Earnings, Damned Earnings, and Negative Analysts * 💵 First up for reported earnings is Microsoft, where no one’s really hurting. (Wait until you see the other guys.) * 😢Sadly, Google still hasn’t figured out how to make money on GCP. Ad revenue is down. * 🤦 Amazon suffers slower demand amid another net loss. Rivian takes a big hit, so if you were hoping to see it turn around, it hasn’t. * 🙅 Of course, all of this bad news means Google and Microsoft have scaled back hiring efforts. Coupled with high inflation and bad interest rates, an economic bloodbath in the next 12 months looms. * 🪓 Oracle axes U.S. staff as part of a plan to lay off thousands — mainly in marketing and customer experience. This could signal a step back from opening so many new data centers.
AWS: Building Skills One Course at a Time * 🌐 Handy new IPv6 support appears for AWS Global Accelerator. * 🌎 Already five years too late, CDK for Terraform is now (finally) generally available. * 👐 Amazon OpenSearch Service gets a trifecta of boosts in the form of advanced log and application analytics, OpenSearch version 1.3 support, and support for EBS gp3 volume type. * 🧿 For those who need Neptune at scale, the Amazon Neptune Global Database is the perfect solution. As a growing service, it’s a great thing to have. * 👷 Giving problems to solve instead of document-based learning is what AWS Skill Builder Subscriptions sets out to do with its 500+ courses and four new learning experiences. Pretty cool! * 🛡️ You can now build AWS Config rules with AWS CloudFormation Guard — perfect for those who aren’t full-time developers who can still lend a hand in security. * 👓 So long as you don’t leave it on all the time, running Visual Studio software on Amazon EC2 could save money. At the same time, it looks like no-code isn't going to be a thing that soon.
GCP: Let’s All Come Together Now * 👌 To avoid heavy lifting, stream data with Pub/Sub direct to BigQuery. (No pipelines needed!) It’s like an ETL without the “T.” * 👷 If you were super excited about AWS Skill Builder and wanted certification but via GCP, your calls have been answered: Meet the new Professional Cloud Database Engineer certification. * 🔒 Keep it secret, keep it safe: Cloud SQL for PostgreSQL and MySQL local user password policies pop up for protection. * 🙌 Eventarc promises to connect, unify, and integrate supported SaaS platforms for event management and infrastructure.
Azure: Well on the Way to That Government Contract * 🤔 In a one-sentence press release, US West 3 sees a price drop. For what, and why, remains a mystery. * 🎅 Microsoft threat intelligence solutions leverage its acquisition of RiskIQ in its bid to up security posture and hunt for bad guys. * 📈 If you needed that certification to do government work, you're good to go with the newly ICSA Labs-certified Azure Firewall Premium.
TCP Lightning Round ⚡ With scorer Peter still absent, this week sees the round robin once again. The scores remain: Justin (6), Jonathan (3), Ryan (3), Peter (1). Other Headlines Mentioned: * General availability: Next hop IP support for Azure Route Server * Generally available: Azure Public IPv6 offerings are free as of July 31 * AWS Support launches a new AWS Support Center console domain * General availability: Reservation administrator and reader roles in the Azure Portal * Now in Preview - Amazon WorkSpaces Integration with SAML 2.0 * Amazon RDS for MySQL now supports enforcing SSL/TLS connections * AWS Microservice Extractor for .NET now provides automated refactoring recommendations * VM Import/Export now supports Windows 11 * AWS Ground Station announces a new antenna location in the Asia Pacific (Singapore) Region * AWS Secrets Manager connections now support the latest hybrid post-quantum TLS with Kyber
Things Coming Up: * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th-13th * Oracle Cloud World - October 16th-20th * Kubecon US - October 24th-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBD * Microsoft events - TBD Check for status\
After Show: * If earnings weren’t disappointing enough, it could be time for Google employees to fix their resumes: Their CEO emphasizes productivity, focus and efficiency with a ‘Simplicity Sprint.’
On The Cloud Pod this week, the team gets skeptical on Prime Day numbers. Plus: AWS re:Inforce brings GuardDuty, Detective and Identity Center updates and announcements; Google Cloud says hola to Mexico with a new Latin American region; and Azure introduces its new cost API for EC and MCA customers.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 AWS re:Inforce brings us Amazon GuardDuty, Amazon Detective and IAM Identity Center releases, updates and name-changes for additional protection and headache. * 🚨 Google Cloud adds a third Latin American data region to its collection — this time, in Mexico. * 🚨 EA and MCA customers now benefit from Azure’s new Cost Details API for better HR and finance management.
Top Quotes * 💡 “This must always have been their plan. Amazon did not build that block Inspection Service just so that Orca could serve their own customers. They must have had an eye on the huge customer base of people using EBS Volumes to do this exact same thing. So it's no surprise [as they’ve] had almost two years of sole ownership of the service to deliver this to customers. I'm not surprised at all to see an enhancement like this. And it's awesome. Really.” * 💡 “Microsoft is in a lucky position, because the Windows ecosystem has been very services heavy for a long time. … They've got this unique position where they can deprecate … they can pivot to new APIs more quickly than AWS, who are stuck with so many customers [and it’s] very painful for them to deprecate … It’s lucky that [Microsoft] don't have customers that would push back against this, because they're used to constant change.”
AWS: re:Inforcing Prime Numbers * #️⃣ There may well be some spin in Jeff Barr’s latest brag on behalf of Amazon for its Prime Day 2022. Impressive numbers nonetheless! * 💂 New malware detection for EBS Volumes with GuardDuty is the first of three announcements hot out of AWS re:Inforce — very similar to Orca Security malware snapshot and restore functions. * 🕵️ The second offering is Amazon Detective’s support for Kubernetes Workloads on EKS, for improved security investigations. There’s nothing not to like here, and it shows exactly why we use managed services. * 👤 Finally, the terribly named AWS IAM Identity Center — which you may remember was previously called AWS SSO — promises to scale your workforce access management. They could’ve called it “AWS Centaur,” but instead opted for two words that mean absolutely nothing.
GCP: Making US Automakers Happy One Latin American Region at a Time * 🇲🇽 Google Cloud says hola to Mexico, as it adds a third Latin American data region following Santiago, Chile, and Sao Paulo, Brazil. If there are further updates within the next three to four years, Ryan has kindly volunteered to be The Cloud Pod’s reporter on the ground. * 0️⃣ Not “no code,” just… “low code:” Next-gen Dataflow covering Prime, Go and ML is here. See if you can get as excited as your hosts. * 🚤 Pretty neat with nice integrations across it, the generally available BigLake allows you to unify data lakes and warehouses.
Azure: The Buzzword Is Deprecate * 💸 HR and finance rejoice: Both Enterprise Agreement (EA) and Microsoft Customer Agreement (MCA) customers benefit from the Microsoft Cost Details API, now generally available. * ⬆️ If you're doing patch management — which you will be if you're running Windows on Azure — you’ve got the public preview of Update Management Center to get hyped about. More importantly, it's a very nice and easy graphic dashboard to say that you're in patch compliance. * 📦 And if you're unhappy with MSIs, you’ll love the general availability of VM Applications, designed to manage and deploy applications to VMs and VMSS. Another package manager? Great! Just what we need.
Oracle: Taking a Walk on the Wild Side * 🤝Oracle decides that if you can't beat them, you should join them, as it announces its database service for Azure. Multicloud for managed services? This level of integration at the UX level is kind of nuts. If you make a website that looks like somebody else's website, it’s usually called a scam, right?
TCP Lightning Round ⚡ Justin would’ve awarded the point to Ryan if points were being awarded, but they’re not. As such, the scores remain at: Justin (6), Jonathan (3), Ryan (3), Peter (1). Other Headlines Mentioned: * AWS Fault Injection Simulator now supports ChaosMesh and Litmus experiments * AWS Backup adds support for Amazon RDS Multi-AZ clusters * AWS WAF adds sensitivity levels for SQL injection rule statements * Amazon Macie introduces new capability to securely review and validate sensitive data found in an Amazon S3 object * Amazon DocumentDB (with MongoDB compatibility) now supports fast database cloning * Now programmatically manage primary contact information on AWS accounts * Enable post-quantum key exchange in QUIC with the s2n-quic library
Things Coming Up: * Blackhat USA - August 6th-11th * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th-13th * Oracle Cloud World - October 16th-20th * Kubecon US - October 24th-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBD * Microsoft events - TBD Check for status
After Show: * Google fires the engineer who claimed its AI was sentient. Obviously revealing company secrets is a big no-no, but it does raise interesting questions about how we’ll test sentience in the future.
On The Cloud Pod this week, the team discusses facial recognition avoidance tactics. Plus: Waving farewell to CentOS 7 with the rise of Rocky Linux, Amazon traverses the new Cloudscape, and the U.K. heatwave spells disaster for Oracle and Google data centers.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 As CentOS is put out to pasture, say hello to Rocky Linux, named in honor of CentOS late co-founder Rocky McGaugh. * 🚨 Cloudscape Design System is the latest AWS open source wonder for web application building. * 🚨 The great British heatwave of 2022 burns Oracle and Google data centers to a crisp.
Top Quotes * 💡 “It answers the question of who we shout at if there's a bug at zero day and the community doesn’t get around to fixing it. Now we can shout at Google.” * 💡 “It's probably a sign of further issues to come unless they do some productive work. Because it's one thing to … build a data center in Utah [where] it gets up to 45 degrees C and the sun's heating the air under some land. And that's a completely different situation than heating up Europe, which is … much less expected to have those kinds of temperatures so far north. … So it's going to be time to invest in HVAC business.”
General News: The Best Data Lake Is the One With Your Boat on It * 🛥️ VentureBeat offers up its top 10 data lake solution vendors this year. If you also don’t know what a data lake is, fear not (it tells you).
AWS: Open Source Because They Can’t Sell It? * 🪐 AWS suits up for battle against Microsoft and Google with its server chip. Fire up the Graviton! * 👐 Cost-saving automated and easily modifiable EBS Elastic Volumes are here. (Just watch out for a pesky potential price increase.) * 🌁 The very cool VPC Flow Logs for Transit Gateway will make things much more efficient. * 💰 AWS announces neat new AppConfig Extensions. Step one: Enable feature. Step two: Figure it out yourself. Step three: Profit, profit, profit. * ☁️ AWS goes open source with Cloudscape Design System for building web applications. * 🏔️ More epic work from Amazon as EC2 R6a Instances join the M6a and C6a club, now rolled out across all three primary node types. You're welcome!
GCP: The Rise of Rocky * 🤯 Stunned reactions all around here at The Cloud Pod: Model co-hosting enables resource sharing among multiple model deployments on Vertex AI. A great use case, with the next step being making it entirely serverless. * 🥊 For those of you who live in the Linux world like your hosts, you’ll be waving goodbye to CentOS 7, as Rocky Linux (named in honor of one of the late CentOS co-founders) makes its debut. * 💪 Welcome the Arm-based Tau T2A to the VM family. Will Google start selling the Graviton Three to the other cloud providers making it a $12 billion business? * 📚 Batch is ostensibly a new managed service for scheduling batch jobs at any scale, but let us know if you see what’s managed about this. You’ll be managing everything else, so there’s no value add. Good luck if you do use it!
Azure: Sovereignty Is the Buzzword * 💎 If you were already confused about Premium and Ultra Premium storage, we have a new flavor to add to your nightmares: Azure Premium SSD v2 Disk Storage, which is now in preview. * 😐 Azure’s facial recognition approach has changed, and the engineers among you may be feeling as conflicted as Ryan about it. On the other hand, demand facial sovereignty! Tell Azure (and AWS) that you refuse to be identified — an interesting use case and neat business model. * ⚖️ Gateway Load Balancer is now generally available in all regions. A feature we’re all glad exists that we don’t need to take advantage of. * 🤝 Microsoft and Netflix buddy up, and all we’re wondering is if Microsoft is trying to poach some of that sweet, sweet cloud revenue Netflix pays AWS. * 👑 Microsoft Cloud for Sovereignty is its answer to Oracle. Nothing new here, just a rebrand — some lipstick on a pig. * 💡 What’s new for Azure Stack HCI at Microsoft Inspire 2022? Find out all the latest therein. * ₿ If you're into Bitcoin, Azure’s confidential ledger is now generally available, and is apparently a better solution to banks’ compliance and technology requirements than what they’ve been using for so long already. Why care now about the distributed immutability of a ledger? (Unless it’s not a better solution.) * 💸 For those of you who aren’t cutting costs and need a new way to burn your money faster, Azure SQL Managed Instance hosts premium-series hardware which is now generally available.
Oracle: The Data Centers Are Burning * 🔥 Both Oracle and Google experienced data center knockouts in London due to the U.K. heatwave. We want to know the hows and whys: Did external dependency fail? Power delivery to the data centers? Or was it the data center itself and the HVAC system inside?
TCP Lightning Round ⚡ Ryan snags the point this week, creeping up to equalize with Jonathan and making the scores Justin (5), Jonathan (3), Ryan (3), Peter (1). Other Headlines Mentioned: * Amazon Timestream announces improved cost-effectiveness with updates to metadata metering * AWS Lambda Powertools for TypeScript is now generally available * AWS Firewall Manager now supports AWS Network Firewall strict rule order with alert and drop configurations * OCI Queue limited availability program * Australian Government certifies Oracle Cloud Infrastructure under the Hosting Certification Framework * Moving data from the mainframe to the Google cloud made easy
Things Coming Up: * SCALE 19X - July 28th-31st
After Show: * Slack is making some free plan changes (Business+ or custom enterprise plans aren’t affected). Live from Sept. 1, 2022, there’ll be a small price increase, and free users get 90 days of messages and uploads instead of the 10,000 message and 5GB limit of yore.
On The Cloud Pod this week, the team discusses shorting Jim Chanos amid the great cloud giant vs. colo standoff. Plus: Google prepares for a post-quantum world, Amazon EC2 M1 Mac instances are now generally available, and master of marketing Oracle introduces sovereign cloud regions for the European Union.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 Future forward Google prepares for a post-quantum world, while most corporations won’t catch up for a long time. * 🚨 Amazon EC2 M1 Mac instances are now generally available (so the hidden Mac Mini under that developer’s desk can finally be replaced). * 🚨 Master of marketing Oracle introduces sovereign cloud regions for the European Union.
Top Quotes
💡 “Quantum computing has been taken very seriously from a security perspective. Conservative estimates [are] 10 to 20 years before we have quantum computers large enough and reliable enough to run short algorithms to factor these large primes. But we're starting ... It’s going to take a long time for businesses to actually catch on and realize and modernize and adopt this before the bad things start to happen. If they ever do.”
💡 “The big issue is from a federal government perspective: In a world where quantum computing can actually go through those primes fast enough and decrypt all this data … it's a huge national security risk [and] a huge problem for the world. … Does it follow into the corporate world as quickly? No. Will it become a big issue when it happens? Hell yeah. There'll be a Y2K-level disaster that we'll have to be dealing with.” General News: Walmart Muscles In * 🏞️ Will cloud giants really drive colos off a financial cliff? Big leagues short-seller and Enron prophesier Jim Chanos seems to think so… or maybe that’s all part of his plan. * 🛒 Walmart saw that and said, Well, we're doing it too: Their CTO claims they’re now the largest hybrid cloud in existence. Having 10,000 massive buildings at their disposal must be convenient.
AWS: New York, New York * 🖥️ EC2 M1 Mac instances are now generally available. Thanks to Apple’s licensing agreement, they have to be turned on for 24 hours minimum. * 🗺️ Identity and Access Management gets IAM Roles Anywhere for workloads outside of AWS, removing a huge and clunky obstacle to adoption. Awesome. * 📏 EC2 Auto Scaling customers can monitor their predictive scaling policy with Amazon CloudWatch, but we’re left wondering how to close the loop on having to monitor the monitoring service to make sure it’s doing what it’s supposed to be doing. * 🥅 If you're a .NET developer leveraging AWS for all your compute needs, you’re in luck — there’s a streamlined deployment experience for .NET applications in .NET CLI and Visual Studio. Huge sales ahoy. * 3️⃣ In the first of three New York summit announcements, three new serverless analytics offerings are generally available. * 💭 In preview at re:Invent, the Cloud WAN managed service is now generally available. But beware of inter-region data transfer charges, which could get very expensive. * 📘 First you partner, then you kill them: DevOps Guru offers recommendations and log anomaly detection to quickly detect and resolve issues.
GCP: The Future Is Scary * 🕵️♀️ Google is preparing for a post-quantum world, as mathematicians and cryptographers from all over the world race to develop algorithms before disaster strikes.
Azure: Why, Microsoft, Why!? * 🚀 The legacy agent callback config from log analytics workspaces rejoices at the public preview of Monitor Agent’s new migration tools, and we’re super happy for you. For everyone else, this is crazy — why not just build the migration tool into the actual agent itself? * 🗄️ 30’s a strange limit for supported window server containers, but there we go. Obviously the support team is happy — just decrease the number of containers until it works.
Oracle: The Sometime-Master of Marketing Returns * 🇪🇺 A story to die for: Oracle introduces its new sovereign cloud regions for the European Union. Spare a thought for poor Accenture, who have to build products around this.
TCP Lightning Round ⚡ Justin (6) jumps ahead again with the rest of the team trailing behind — Jonathan (3), Ryan (2), Peter (1). Other Headlines Mentioned: * AWS re:Post introduces profile pictures and inline images * Amazon WorkMail now supports invoking Lambda to fetch availability (free/busy) * AWS Security Hub launches 36 new security best practice controls * Amazon QuickSight launches APIs for account create * Amazon Athena enhances console and API support for parameterized queries * Amazon GuardDuty introduces new machine learning capabilities to more accurately detect potentially malicious access to data stored in S3 buckets * Multicloud reporting and analytics using Google Cloud SQL and Power BI * General availability: Azure Database for PostgreSQL—Hyperscale (Citus) supports PostgreSQL minor versions * General availability: Azure Active Directory authentication for Application Insights * General availability: Azure Application Insights standard test for synthetic monitoring * IN, NOT_IN and NOT EQUAL query operators for Google Firestore in Datastore Mode
Things Coming Up: * AWS re:Inforce - July 26th-27th → Now Moved to Boston * SCALE 19X - July 28th-31st
Postgres @ SCALE
DevOps Enterprise Summit Virtual - US - August 2nd-4th
After Show: * Apple spent eight years trying to build a self-driving car. The team chatted about this and self-driving cars in general after the show.
On The Cloud Pod this week, the team discusses data sovereignty for future space-customers. Plus: There’s a global cloud shortage, Google announces Apigee advanced API security, and GKE Autopilot gets new networking features.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 Microsoft is the latest victim in a global cloud shortage, spinning it as a temporary issue fueled by surging Teams demand and rapid Azure growth. * 🚨 Google announces Apigee Advanced API Security in a bid to defend against increased attacks and traffic volumes. * 🚨 GKE Autopilot gets new network features in the form of IP masquerading and eBPF, now generally available.
Top Quotes * 💡 “The supply chain has been huge on a lot of people. You don't hear so much from Amazon, and I don't know if that's related to the commerce site Amazon.com and the overprovisioning they did … If AWS went the same route and has a bunch of stock, cluster manufacturing their own chips, maybe they have a little bit more control. But everyone else is screwed.” * 💡 “In the article, it just says what you can do to detect bots. But some bots are the use case [you’re] selling to the world. ... On the surface, it sounds logical, but there are some ‘gotchas’ that you need to be careful of if you're doing B2B or doing things that look bot-ish.”
General News: All the Joy of the Crypto Crash * 💢 Apparently the tech talent crunch (not because we suck at running Kafka) is to blame for a 68% reliance on AWS managed services. Come on, VentureBeat, you can do better than this! * 🌤️ Microsoft is in the yellow zone because of a global cloud shortage, which it’s attributing to rapid Azure growth and increased Teams demand.
GCP: The Very Apigee of Security * 🛡️ Google announces Apigee Advanced API Security to help protect against increased attacks and traffic volumes. Seems more like a WAF function than a misconfiguration issue, though. * 📓 Go go go, Google: get more support for structured logs in the latest version of Go logging library. * ☁️ Monitor your cloud metrics now in Managed Service for Prometheus. Allegedly, Cloud Native community members have an 86% chance of using Prometheus (we’re not so sure about that number.) * 🇫🇷 Say bonjour to the new Paris region, as the French government aims to make the nation cloud native. * 🎭 GKE Autopilot’s new IP masquerading and eBPF network features are now generally available. * 🛠️ Query Insights for Cloud Spanner promises to troubleshoot performance issues with pre-built dashboards. When latency is high, it’s your fault. When it’s low, it’s because we’re awesome.
Azure: Head in the Clouds * 😖 Get ready to cringe hard: Which Azure service should you use to run your applications? Op sides are very angry about how this article is written. * 💵 NVads A10 v5 virtual machines are now generally available, offering to help choose the right size for your workload. Why choose one when you can have both?
TCP Lightning Round ⚡ With a full house this week, Jonathan (3) edges closer to Justin (5), with Ryan (2) and Peter (1) tailing slightly behind. Other Headlines Mentioned: * Public preview: Azure Ephemeral OS disk support for confidential virtual machines * Announcing availability of AWS Outposts rack in Panama * AWS Database Migration Service now supports IBM Db2 z/OS as a source * AWS Database Migration Service now supports Babelfish for Aurora PostgreSQL as a target
Things Coming Up: * AWS re:Inforce - July 26th-27th → Now Moved to Boston * DevOps Enterprise Summit Virtual - US - August 2nd-4th * Blackhat USA - August 6th-11th * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th-13th * Oracle Cloud World - October 16th-20th * Kubecon US - October 24th-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBC
On The Cloud Pod this week, Peter finally returns with some beer-based bets about Amazon extending its TLS deadline. Plus: Terraform drift detection for managing infrastructure, chilling tales of Amazon’s CodeWhisperer ML advances, and Anthos on-premise options finally arrive for your platform of choice. Plus the cloud talks about AWS SNOWCONES in SPACE!!!!!!
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 Terraform Cloud finally adds drift detection to help manage infrastructure, now generally available after its 2020 preview. * 🚨 Amazon’s crazy “ML-powered coding companion,” CodeWhisperer, is here for our jobs. * 🚨 Google expands its Distributed Cloud platform with Anthos on-premises options.
Top Quotes * 💡 “I'm surprised it's taken so long. Because I mean, the reality is if you're in a plan, and the plan doesn't require any changes, then there's been no drift. So what was the obstacle in delivering this as a feature sooner?” * 💡 “Not only they're training their own machine learning models, but they're also generating code. Not concerned at all.”
General News: Drifting in the Right Direction * 🏁 While everyone’s been a little afraid to pull the trigger, HashiCorp announced drift detection in Terraform cloud, which is in a public beta. Pretty exciting! * 🗺️ HashiCorp also announced the launch and free public beta of HCP Boundary, but what's their long-term vision?
AWS: Whispering Sweet Somethings to the Machine * 🌿 SageMaker Ground Truth now supports synthetic data generation, promising to reduce time and training costs for model operations. Getting enough data to actually train a model could be hard… (fake it til you make it?) * 🤖 Your new “ML-powered coding companion” CodeWhisperer now writes code for you. We’ve joked about it before, but Alexa really is one step away from upskilling to coding. * 📆 Peter’s betting two beers at his local pub on Amazon extending the deadline on this one: TLS 1.2 is to become the minimum TLS protocol level for all AWS API endpoints. There’s currently just under a year to get yourself sorted. Good luck! * 🍨 Apparently, even space has (AWS) Snowcones: Amazon sends one to the International Space Station * 🛫 As EKS improves control plane scaling and update speed by up to 4x, get ready for a lot of step function workload. * 🤫 Imagine waiting 10 years for private IP VPNs… well, we did, and here they are, introduced by AWS Site-to-Site VPN.
GCP: Anthos Attracts * 🏢 Google expands Distributed Cloud platform with Anthos on-premises options running on your virtual platform of choice. Very neat. * 💵 Apparently the Google Cloud product manager listens to the show, because we now have billing info at our fingertips in the latest Cloud Console mobile app to show it’s not costing you $100 million a day. * 🛡️ Neat new Cloud Armor edge security policies and proxy load balancer support is now generally available. * 🛡️ And if that wasn’t exciting enough, Cloud Armor also announced even more features including rate limiting, adaptive protection, and bot defense. * 🌦️ Public sector agencies are getting new sustainability offerings to improve climate resilience… so, they have a new insurance company as a customer, right?
Azure: Dispatches From the Space Race * 🛰️ Azure’s Orbital Ground Station as Service (GSaaS) aims to reduce costs for satellite operators while extending their mission life.
Oracle: The Story of All Stories * 🌐 Oracle’s got your back this week, with a dedicated region allowing you to run your stack wherever you like (although it's a stretch to call it a region).
TCP Lightning Round
⚡ After all the desperate talk of crowdsourcing points last week, Peter finally returns to host the lightning round. Jonathan manages to snag the point this week, making the scores Justin (5), Jonathan (3), Ryan (1), and Peter (1). Other Headlines Mentioned: * AWS Support announces an improved create case experience * Public preview: Create an additional 5000 Azure Storage accounts within your subscription * Amazon has a plan to make Alexa mimic anyone's voice * AWS Fargate now fully supports multiline logging powered by AWS for Fluent Bit
Things Coming Up: * DevOps Enterprise Summit Virtual - US - August 2nd-4th * Blackhat USA - August 6th-11th * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th - 13th * Oracle Cloud World - October 16-20th * Kubecon US - October 24-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBC * Microsoft events - TBD Check for status
On The Cloud Pod this week, the team discusses Jonathan’s penance for his failures. Plus: Microsoft makes moves on non-competes, NDAs, salary disclosures, and a civil rights audit; AWS modernizes mainframe applications for cloud deployment; and AWS CEO Adam Selipsky chooses to be intentionally paranoid.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 The Balmer era is officially dead: Microsoft curbs non-competes, drops NDAs from worker settlements, disclose salary ranges, and even launches a civil rights audit. * 🚨 AWS launches their new modernization service for mainframe applications, now deployable in fully managed AWS runtime environments. * 🚨 AWS CEO Adam Selipsky “choose[s] to be intentionally paranoid,” as he leads the company through turbulence.
Top Quotes * 💡 “We've talked about how garbage those [noncompetes] are, the problems they've had with them, executives leaving, Amazon going to Microsoft, then getting sued and all the mess of that. So I'm super glad they're finally starting to see a tide swell change in technology where that's no longer a thing.” * 💡 “I always felt like Amazon was going to just create a mainframe as a service offering — buy a bunch of IBM mainframes that they sell out to you — because that's been a model of mainframe for a long time: CPU slicing, rentals and that kind of thing. But it seems like now they're going to go down this other path where the answer is [that] you convert to a more modern architecture, which is interesting.”
General News: It’s a New Era * 💵 The times they are a-changin’, as Microsoft revises its position on non-competes, NDAs, and salary range disclosure, while launching a civil rights audit. Take that, Amazon! * 💨 Target CIO Mike McNamara jumps away from AWS with a scaled move toward multicloud architecture. Target allegedly has 4,000 engineers, which seems like a lot. * 👎 Archera vents via Venturebeat about the unmanageability of cloud costs, calling for standardized billing. While it might be helpful and even valuable, this seems a road too far traveled.
AWS: Modernized Mainframes and Intentional Paranoia * 🕰️ You can now take advantage of AWS’ new modernization service for mainframe applications, deployable in fully managed AWS runtime environments. * ♻️ There are some nice enhancements for MGN, including DR configuration and Linux to Rocky Linux and SUSE Linux Subscription conversions. * 👀 AWS CEO Adam Selipsky admits, “I choose to be intentionally paranoid,” as he leads the company into a turbulent world. * ☎️ A nice feature so long as you don’t use it for bad things, Amazon Connect now offers high volume outbound campaign capabilities. This clearly exists because customers only answer around 10% of the automated calls they receive. Why? Because it’s all spam. * 🔕 With AWS Managed Microsoft AD, you can finally you can finally disable ciphers, amongst other things. Amazon, what took you so long? * 👌 Justin doesn’t actually hate the new AWS Bills page experience. Not exactly high praise, but in a world where all billing pages are terrible, it’s surely something.
GCP: Big and Powerful * 🥧 Bad scheduling in the press corps led to the very late release of this announcement about 100 trillion digits of pi on Google Cloud. Pi Day was March 14. * 🤖 Google reimagines AutoML and announces Vertex AI Tabular Workflows. * 🤷 For those in ML teams who don't really know what they're doing and want to just take advantage of marketplaces of prebuilt ML AI code, they now can thanks to Google and NVIDIA. * 🔐 To help secure sensitive data, Google announces two new BigQuery capabilities: Column level encryption functions are general available, and there’s a preview of Dynamic masking. * ☹️ If you know the Obama “not bad” meme, you’ll know the reaction Justin had to gcpdiag, the new open source troubleshooting tool. * 🇮🇹 Like all regional announcements, the new cloud region in Milan provides Ryan with the perfect opportunity to add it to his travel list.
Azure: Facial Recognition Is Coming for Us All * 🏎️ Azure SDK for Go is now generally available. Why not? * 📄 There’s now a 16MB limit per document in API for MongoDB, which is in public preview. (That’s an 8x increase for those who want math.) * 🕹️ And if you want to play with that new feature, you can do it locally via the Linux emulator with Azure Cosmos DB API for MongoDB, now in public preview. * 🔥 Learn what’s new in Azure Firewall, and there’s a lot: Intrusion Detection and Prevention System (IDPS) signatures, TLS inspection (TLSi) Certification Auto-Generation, and web categories lookup are all now generally available. Additionally, Structured Firewall Logs and IDPS Private IP ranges are both now in preview. * 🤔 Azure Cognitive Services promises to be responsible with its AI investments and facial recognition safeguards. Only time will tell… * Hot on the trails of AWS and Google, Azure hops on the firewall manager bandwagon with Azure Firewall Manager promising simplified, centralized network security management.
Oracle: Breaking News: Oracle has Finally Fixed its RSS Feed * 🤝 Someone working at Oracle must listen to The Cloud Pod, because Justin is now receiving Oracle news! Oracle announces that more startups are choosing Oracle Cloud Infrastructure (OCI) over other cloud platforms, citing customers that no one has ever heard of like Aleph Alpha and Aindra Systems. * 🗣️ While on an Oracle earnings call after the AWS outage, Oracle Chairman Larry Ellison took the opportunity to quote a (definitely real) anonymous customer who told him “Oracle never ever goes down” — never mind the five incidents that have happened since December 8th. * 💻 Oracle releases OCI DevOps Service, an end-to-end CI/CD platform where developers can commit their own source code to a repository, build and test software artifacts, and run deployments to OCI platforms.
TCP Lightning Round ⚡ New ideas abound as Peter’s disappearance becomes yesterday’s news. Now you can vote for the winner each week via The Cloud Pod Slack Channel. Until those votes come in, the scores stand at Justin (5), Ryan (1), Jonathan (2), Peter (1, although we’re not sure how). Other Headlines Mentioned: * Reduce read I/O cost of your Amazon Aurora PostgreSQL database with range partitioning * Introducing managed zone permissions for Cloud DNS * Announcing private network solutions on Google Distributed Cloud Edge * New – Amazon EC2 R6id Instances with NVMe Local Instance Storage of up to 7.6 TB * Azure API Management reusable policy fragments * Public preview: Azure Cosmos DB serverless container storage limit increase to 1TB
Things Coming Up: * DevOps Enterprise Summit Virtual - US - August 2nd-4th * Blackhat USA - August 6th-11th * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th - 13th * Oracle Cloud World - October 16-20th * Kubecon US - October 24-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBC * Microsoft events - TBD Check for status
On The Cloud Pod this week, half the team whizzes through the news in record time. Plus: AWS Elastic Disaster Recovery, Google Distributed Cloud adds AI, ML and Database Solutions, and there’s another win for NetApp with Azure VMware Solution.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 AWS Elastic Disaster Recovery now supports up to 300 staging and target accounts, which seems like a small number for some enterprises with thousands. * 🚨With the power of Anthos, Google Distributed Cloud adds AI, ML and Database Solutions — continuing the trend of service monetization regardless of host location. * 🚨 Another win for NetApp, the home of choice for Azure VMware solutions optimization.
Top Quotes * 💡 “If you're really doing auto scaling [and] traditional cloud native, you don't use the service because you’ve already built it into your app. So this is for legacy IT operations like SAP, Oracle, and others. Three hundred or 3,000 covers small and medium business, but large enterprise has way more than that.” * 💡 “When Anthos first was announced, and Outpost for AWS, we talked about how likely it was that more and more cloud-native services were going to be made available anywhere, on any cloud, in any data center. It's definitely a pattern of monetizing the services regardless of where they're hosted.”
AWS: Bouncing Back From Disaster * 🗃️ Amazon EMR Serverless is now generally available, a cool feature running big data applications (and Outpost too). But it’s interesting that it’s been branded “serverless” when it’s clearly a managed service. * ⛑️ Elastic Disaster Recovery now supports 300 staging and target accounts, but we can’t help wondering how this helps the largest enterprises. * 📋 Step Functions launches a workflow-based interactive application workshop, and it looks like a golden age for developer experience is close at hand. * 🦖 Amazon Route 53 announces IP-based routing for DNS queries, which is going to make things complicated. So preoccupied with whether or not they could integrate, they didn't stop to think if they should.
GCP: Complexity on Top of Complexity * 📜 Google Chronicle offers context-aware detections, alert prioritization and risk scoring for its Security Operations. But wouldn't you want to protect everybody from everything? * ✅ A boon for customer choice and flexibility: Google Distributed Cloud adds AI, ML and database solutions. On prem, running Kubernetes and Anthos? Justin loves this. * 🤠 Yeehaw! Time to grab that 10-gallon hat and run your server, because the new Google Cloud region in Dallas, Texas, is now open.
Azure: It’s All About the Datastores * 🗄️ Azure VMs get a performance boost for data intensive workloads. You never can get enough storage optimization. * 🔷 Azure introduces comprehensive new skilling guides. Microsoft has been running training programs for more than three decades, so they've got their pattern down by now. * 💻 NetApp does it again as the datastore of choice for Azure VMware Solution, now available in preview.
TCP Lightning Round ⚡ Justin (5) tells Jonathan (2) to try his best to win 0 points, safe from Ryan (1) and Peter (1) in the dungeon. Other Headlines Mentioned: * Amazon EC2 Dedicated Hosts are now available on AWS Outposts * Amazon Kendra releases GitHub SaaS & On-Prem Connector * AWS Security Hub now receives AWS Config managed and custom rule evaluation results * Amazon CloudFront now supports TLS 1.3 session resumption for viewer connections * AWS IoT Device Management announces an 80% price reduction for Secure Tunneling
Things Coming Up: * Google Cloud Summit Series (Updated Regularly)
Sustainability Summit - June 28th * AWS Reinforce - June 28th-29th → Now Moved to Boston * DevOps Enterprise Summit Virtual - US - August 2nd-4th * Blackhat USA - August 6th-11th * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th - 13th * Oracle Cloud World - October 16-20th * Kubecon US - October 24-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBC * Microsoft events - TBD Check for status
On The Cloud Pod this week, the team discusses the new Madrid region’s midday siesta shutdown. Plus: Broadcom acquires VMWare for $61 billion, Azure gets paradigmatic with 5G, and you can now take the 2022 Google-DORA DevOps survey.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 Broadcom acquires VMWare for $61 billion, in one of the largest-ever acquisitions. * 🚨 Google Cloud and DORA team up to bring us the 2022 Accelerate State of DevOps Survey. * 🚨 Azure calls 5G a “paradigm,” but is it just hype?
Top Quotes * 💡 “This is an interesting reverse on the large cloud providers getting into the silicon business, which makes sense to me — that they want to control their supply chain and optimize. … Is Broadcom going to start becoming like a cloud provider? That's interesting. I wouldn't suspect that.” * 💡 “What [is Azure] trying to do? Are they trying to sell us on [5G]? Are they trying to change the way we develop? Because we're just going to waste our time developing stuff that requires some of these things, and then the infrastructure is not going to be there to support it.”
General News: Diversifying the Portfolio * 💰 In one of the largest acquisitions ever (just shy of Dell’s EMC takeover at $67 billion and Microsoft’s Blizzard acquisition at $69 billion), Broadcom acquires VMware for $61 billion. This could have big implications for enterprise.
AWS: Need for Speed * 💾 If you need a lot of disk space to log transactions, you’re in luck: Amazon EC2 M6id and C6id instances buff up their storage by up to 7.6TB. * 📸 Ryan’s usually doing whatever he can to avoid this, but if you need Elastic Volumes and Fast Snapshot Restore (FSR) support for io2 Block Express, you’ve now got it.
GCP: the State of DevOps in 2022 * ✅ Why do IT leaders choose Google Cloud certification for their teams? In case you were wondering, here’s a puff piece with the answer. * 🏞️ If you need to change streams with Cloud Spanner, you can now do so. A cool feature, but it does need to be by email (there’s no homing pigeon option… yet). * 💫 If you want to learn a whole bunch of irrelevant HPC jargon, this is the blog post for you. * 📋 You can now take the 2022 Accelerate State of DevOps Survey, launched by Google and DORA. * 💥 Eliminate hotspots in Cloud Bigtable, but remember just as “no good plan survives first contact with the enemy,” no data structure plan survives general availability. * 🤔 The super useful Network Analyzer detects service and network issues. Always on and always free to use — very nice! * 🕵️ Like Ryan, you might want more out of Confidential Computing, which is now generally available. * 🇪🇸 The team considers a field trip to Madrid as Google opens a new region there. * 💳 Granular instance sizing for Cloud Spanner could prove very useful for startups and early projects on a budget, with production workloads running for as low as $40/month.
Azure: Getting a Little Meta * 🤝 In a somewhat puzzling move, Meta selects Azure as its strategic cloud provider for AI and PyTorch purposes. Maybe they don’t want to support their own data science teams? * 🔋 Azure calls 5G a “paradigm” instead of an “upgrade”. But is it really even required? * 🤫 Now you’ve got more places to hide your money as Switzerland adds two extra regions to its existing one.
TCP Lightning Round ⚡ Justin (5) continues resting on his laurels, with Jonathan (2) and Ryan (1) tailing behind and Peter (1) still in the dungeon. Other Headlines Mentioned: * Amazon Lightsail containers now supports deploying images from Amazon ECR private repositories * AWS Launch Wizard now supports SQL Server deployments using Amazon FSx for NetApp ONTAP * Amazon ElastiCache for Memcached now supports encryption of data in transit * AWS IAM now supports WebAuthn and Safari browser for multi-factor authentication with security keys
Things Coming Up: * Google Cloud Summit Series (Updated Regularly)
Sustainability Summit - June 28th * Amazon Re:Mars - June 21st - 24th * AWS Reinforce - June 28th-29th → Now Moved to Boston * DevOps Enterprise Summit Virtual - US - August 2nd-4th * Blackhat USA - August 6th-11th * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th - 13th * Oracle Cloud World - October 16-20th * Kubecon US - October 24-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBC * Microsoft events - TBD Check for status
On The Cloud Pod this week, the team talks tactics for infiltrating the new Google Cloud center in Ohio. Plus: AWS goes sci-fi with the new Graviton3 processors, the new GKE cost estimator calculates the value of your soul, and Microsoft builds the metaverse.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 AWS fires up the Graviton3 processors for some big energy savings. * 🚨 Google develops the new GKE cost estimator for people who aren’t curious about cost. * 🚨 Microsoft Build comes out of nowhere to deliver awesome, scary AI-driven tools with much mention of metaverse (yuck).
Top Quotes * 💡 “This feature isn't developed for you because you're curious about the cost. This is developed specifically for the people who are not curious about the cost. It's a big red number. When they're doing the deployment, it’s like, oh, I should probably not do that.” * 💡 “I cannot wait for the robot overlords to completely school me at code. This is gonna be hilarious… and frightening.”
General News: HashiCorp Extends Its Reach * 👁️ Ryan is slightly embarrassed by how much he’s excited about the new HCL Extension for Visual Studio Code 0.1 announcement.
AWS: Abiding by the Laws of Graviton3 * 🚰 Storage company NetApp continues to buck industry trends with Backup and FSx support for ONTAP. Don’t forget to check out the TCP Talks interview with Anthony Lye, Executive VP and General Manager of NetApp. * ⚡ New AWS-designed Graviton3 Processors power Amazon EC2 C7g Instances, now generally available. * 🏢 Control Tower now supports concurrent operations for preventive guardrails. Awesome if you’re just starting, tougher if you’ve been at it for a while. * 🔍 If you’ve been waiting for Kendra to give you something you actually cared about in dev, here you go: Jira connector enables document search on Jira repository. * 🤝 Great news: Incident Manager expands support for runbook automation. We love announcements like these. * 💪 Ryan now has even less excuse for not trying Resilience Hub, after it adds support for Terraform, Amazon ECS and more. * 🌩️ Once again, AWS admits that multicloud is a real thing, with DataSync’s flexible file movements across Google Cloud and Azure.
GCP: Changing Behavior One Cost Estimate at a Time * 💸 The new GKE cost estimator seems designed to ward off expensive new deployments. * 🕵️ Unless you’re a total data nerd you won’t likely use PSP's new open source cryptographic hardware offloading. Interesting nonetheless, and could be great technology to try at scale. * 📕 Ryan thinks policy guardrails for Terraform on Google Cloud CLI preview is a huge announcement and readily acknowledges he needs to get out more. * 🌎 Finally for GCP this week, Ohio’s very own Columbus houses a brand new data region.
Azure: Unleashing the Terrifying Power of AI-written Code * 🗃️ It’s what we wanted all along: HostProcess Containers is now in public preview. Great when you need it, but you should try really hard to not need it — it’s last resort territory. * 👷 Neither Microsoft nor our listeners told us about this, but Microsoft Build delivers a dazzling array of tools for builders: AI now writes your code, something something metaverse. * 💵 Don’t you just love paying the market for the marketplace? NGINX is in public preview. * 📒 Jonathan really doesn’t understand the need for Ledger in Azure SQL Database. (A database is meant to be dynamic — it makes no sense for static data.)
TCP Lightning Round ⚡ Because Peter is still in the dungeon and the team is looking out for him, the scores remain the same: Justin (5), Jonathan (2), Ryan (1), and Peter (1). Other Headlines Mentioned: * Amazon Chime SDK now supports video background replacement and blur on iOS and Android * Public preview: Azure Digital Twins 3D Scenes Studio * General availability: Azure Backup supports backup of Write Accelerator enabled disks * Amazon EC2 enables customers to protect instances from unintentional stop actions * Scale your cloud-native apps and accelerate app modernization with Azure, the best cloud for your apps * Announcing Multi-Account Support for AWS Transit Gateway Network Manager * Google Cloud establishes European Advisory Board * Run your fault-tolerant workloads cost-effectively with Google Cloud Spot VMs, now GA * GKE workload rightsizing — from recommendations to action * Unlock real-time insights from your Oracle data in BigQuery * Draft 2: An open-source project for developers building apps on Kubernetes * General availability: Azure Backup support for trusted launch Azure Virtual Machines * Public preview: Azure Stream Analytics no code editor * Introducing the Microsoft Intelligent Data Platform
Things Coming Up: * Google Cloud Summit Series (Updated Regularly)
Applied ML Summit - June 9th
Sustainability Summit - June 28th * Google Next - June 6th-8th * RSA Conference - June 6-9th * Amazon Re:Mars - June 21st - 24th * AWS Reinforce - June 28th-29th → Now Moved to Boston * DevOps Enterprise Summit Virtual - US - August 2nd-4th * Blackhat USA - August 6th-11th * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th - 13th * Oracle Cloud World - October 16-20th * Kubecon US - October 24-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBC * Microsoft events - TBD Check for status
On The Cloud Pod this week, the team struggles with scheduling to get everyone in the same room for just one week. Plus, Microsoft increases pay for talent retention while changing licensing for European Cloud Providers, Google Cloud introduces AlloyDB for PostgreSQL, and AWS announces EC2 support for NitroTPM.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 Big changes are afoot with Microsoft on both pay and European licensing fronts. * 🚨 A very busy Google finds time to release AlloyDB for PostgreSQL. * 🚨 NitroTPM gets Amazon EC2 support.
Top Quotes * 💡 “I hope that it's the exact opposite of TK and Google Cloud — that they’re really focused on the values and the culture and providing meaningful work. Especially during the last year in the pandemic, a lot of people have realized there's a lot of different priorities; that money is good — it doesn't buy happiness, but it buys a lot of things that can make me happy — but it's getting that fulfillment, and enrichment is also super important. Not just a slog.” * 💡 “The problem is they're not building power plants fast enough to support all of the power demand they have in this country. So there's a possibility that these cloud providers may get pushback on building data centers in the region, which can have a huge detrimental impact. So keep an eye on that.”
AWS: Some Dynamite Announcements * 🤝 AWS teams up with IBM in a SaaS-based partnership. Interesting that it’s IBM, but money talks, and there’s no better time to do it. * 💥 EC2 now supports NitroTPM and UEFI Secure Boot, which is an interesting pivot for the security-minded. * 🛡️ Open source supply chain security gets a nice big $10 million investment from AWS. * ⚙️ If you need the functionality, you’ve got some nice EKS Anywhere curated software packages to choose from, which are now in public preview. * 🕹️ CloudWatch improves the console experience, which no one really wants. There’s a lot more Amazon can be doing.
GCP: Busy Little Bees * 🗄️ AlloyDB for PostgreSQL promises freedom from expensive legacy databases. Here’s to hoping it works. * 😠 Google Cloud employees are seemingly at loggerheads with management on the subject of growth. Is it really a representative sample, though? * 🤖 The U.S. public sector gets Autonomic Security Operations (ASO). Great news if you can’t hire an army of security analysts. * 🎹 The Cloud Pod is all for what furthers the use of temporary ended keys, which SAML’s federated workloads do. Increased flexibility… but probably a step backwards for actual directory. * 🥈 Google saw Amazon’s $10 million investment and raised it with the introduction of its new Assured Open Source Software (OSS) service. * 🏛️ Anthos Multi-Cloud promises standardization, security, and governance across environments. * 🇪🇺 Google Cloud at KubeCon EU announces new projects, updated services, and ways to connect. (KubeCon’s been a little dark for Ryan the last few years.)
Azure: It’s All About the Money * 🤑 Microsoft has jacked up its pay in an attempt to retain talent. Great if you’re money-hungry! * 🔒 Nice job copying Amazon, Azure: The new DNS Private Resolver is now in public preview. * 🎛️ In the shortest announcement ever, Container Apps now support log streaming and console connect. After Justin read the documentation four times and only understood about 40% of it, he decided it wasn’t worth it. * 💚 What’s not to love about going green? Microsoft Cloud for Sustainability accelerates sustainability progress and business growth from June 1. * ⚖️ Microsoft responds to European Cloud Provider feedback with specifically vague and non-binding principles and programs for maximum plausible deniability.
TCP Lightning Round ⚡ The scores remain unchanged with Justin in the lead (5), followed by Jonathan (2), Ryan (1), and Peter (1). Other Headlines Mentioned: * AWS Control Tower can now use customer provided core accounts * Amazon VPC now supports multiple IPv6 CIDR blocks * Amazon CloudWatch Synthetics adds support for canary resources deletion when a canary is deleted * Amazon VPC Traffic Mirroring now supports sending mirrored traffic to Gateway Load Balancer backed monitoring appliances * Administer AWS Single Sign-On from a delegated member account in your organization * AWS PrivateLink announces support for IPv6 * Maintenance made flexible: Google Cloud SQL launches self-service maintenance * Extending BigQuery Functions beyond SQL with Remote Functions, now in preview * Google Cloud is forming a dedicated Web3 team
Things Coming Up: * Google Cloud Summit Series (Updated Regularly)
Startup Summit - June 2nd
Applied ML Summit - June 9th
Sustainability Summit - June 28th * Google Next - June 6th-8th * RSA Conference - June 6-9th * Amazon Re:Mars - June 21st - 24th * AWS Reinforce - June 28th-29th → Now Moved to Boston * DevOps Enterprise Summit Virtual - US - August 2nd-4th * Blackhat USA - August 6th-11th * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th - 13th * Oracle Cloud World - October 16-20th * Kubecon US - October 24-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBC * Microsoft events - TBD Check for status
On The Cloud Pod this week, the team discusses wholesome local Oakland toast for breakfast. Plus: Hybrid infrastructure is unsustainable, the AWS Proton template library expands, and Amazon angers the team by describing Step Functions as “low-code.”
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 Against the trend of popular opinion, it turns out that hybrid infrastructure is a bad idea in the long term, with a few significant drawbacks. * 🚨 The AWS Proton template library just got bigger, so now people can find something else to complain about. * 🚨 Amazon annoyingly describes Step Functions as low-code, which is definitely not true.
Top Quotes * 💡 “Proton was only developed as an answer for, how should we deploy onto Amazon? It's setting yourself up just so someone can armchair-quarterback and poke holes in it. Now they're saying, well, how would you do this? [Answer:] You have the templates. And then they're gonna be like, the templates are cool, except it doesn't meet my pretty edge case, so they'll complain about that. We'll see templates for the templates next.” * 💡 “I just love the assumption that you could low-code a solution with Step Functions, just because I've created many a step function and state machine flow. And all it is is coding and then figuring out why the code isn't doing what I want — because I'm not passing things correctly between the different functions. The ability for someone who can't write code to be able to to accomplish anything is a little far fetched.”
General News: Don’t Plan on Hybrid for Long... * ⛈️ In the cloud court of public opinion, dissent is infrequent. Yet here’s Michael Bathon of Rimini Street claiming that hybrid is actually bad in the long-term.
AWS: What Is Low-Code, Anyway? * 📚 The AWS Proton template library expands — as does people’s list of things to complain about. * ✍️ Amazon very irritatingly calls Step Functions low-code, with new workflow observability features. * 👯 Can the annoying customer with the single use case please stand up? Amazon RDS for PostgreSQL now supports a lot more read replicas. Driven by the business side, perhaps?
GCP: Something’s Got To Give With BigQuery * 🏃 Cloud TPU VMs are now generally available, with faster speeds and lower costs for training. * ❓ BigQuery BI Engine now supports more tools and custom applications. All we heard is that the analysts want to learn BigQuery, so they made it work for them. * ⛅ It’s one thing to provide a good service and another thing to develop an open source tool that anyone can use for their own workloads in their own clouds: namely, CIS hardening support in Container-Optimized OS. Nice going, Google. * 🎼 Great for those who need it (and a “meh” for those who don’t): You can now orchestrate Looker data transformations with Cloud Composer.
Azure: Red Hat and Azure: Friends With Hybrid Benefits * ⛑️ Azure continues cosying up to Red Hat with seamless workload management. * 🎅 The time when we don’t have to do podcast anymore is near at hand, with new voices and emotions via Azure’s Neural Text to Speech (TTS) * 🛡️ Three new managed services come from Microsoft’s bid to boost its cybersecurity business. Professional services with a security angle?
Oracle: The Search Is On * 🔮 Oracle Cloud Infrastructure (OCI) Search Service with OpenSearch is now available. We’re wondering if they realize this is an open source project largely contributed to by Amazon.
TCP Lightning Round ⚡ The scores remain Justin (5), Jonathan (2), Ryan (1), Peter (1) until the team lets Peter out of the dungeon (maybe next week). Other Headlines Mentioned: * AWS Secrets Manager now publishes secrets usage metrics to Amazon CloudWatch * Amazon EFS now supports a larger number of concurrent file locks * Monitor your Amazon Managed Service for Prometheus usage with Amazon CloudWatch usage metrics * Amazon Connect now supports up to six participants on a customer service call * The New Amazon ElastiCache console is now available
Things Coming Up: * Google Cloud Summit Series (Updated Regularly)
June 2nd - Startup Summit
June 9th - Applied ML Summit
June 28th - Sustainability Summit * AWS Summits
May 23-25th - Washington DC * Google Next - June 6th-8th * RSA Conference - June 6-9th * Amazon Re:Mars - June 21st - 24th * AWS Reinforce - June 28th-29th → Now Moved to Boston * DevOps Enterprise Summit Virtual - US - August 2nd-4th * Blackhat USA - August 6th-11th * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th - 13th * Oracle Cloud World - October 16-20th * Kubecon US - October 24-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBC * Microsoft events - TBD Check for status
On The Cloud Pod this week, Peter’s been suspended without pay for two weeks for not filing his vacation requests in triplicate. Plus it’s earnings season once again, there’s a major Google and SWIFT collaboration afoot, and MSK Serverless is now generally available, making Kafka management fairly hassle-free.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 Earnings season is upon us once again, with billions earned and lost. Who are the winners? * 🚨 MSK Serverless is now generally available as a boon for Kafka management. * 🚨 Google and SWIFT uproot the financial world in announcing a huge cloud-based collaboration.
Top Quotes * 💡 “It's hard to call a 32% increase for Azure earnings a slowdown, but it is definitely slower than what they saw in 2021 and the boom of the pandemic. But the overall trend is everyone's gonna keep adopting cloud hyperscalers to host their infrastructure.” * 💡 “The important thing about this is that it's signaling a change in compliance controls; all these financial organizations with very traditionally physical hardware in Iraq in the data center [had] no way to move to the cloud. So whether it's through advocacy or proof of process, being able to virtualize all these things is going to be huge and will open up a massive market for new customers.”
General News: Earnings Are In, and It’s Looking... Good? * 🏞️ Imagine earning $116.4 billion and then still losing money. But fear not after such a rough quarter, Amazon: AWS revenue is here to save the day at 37%. * ⭕ Meanwhile, Google revenue increased slightly below expectations, and GCP is still losing money — but $43 million less than last year. * 🚀 Finally, Microsoft has Azure to thank for its 32% growth.
AWS: A Truly Kafkaesque Affair * 🌤️ MSK Serverless is now generally available, offering a reduction in the overhead of managing Kafka. * ⛸️ Amazon EC2 instances get some storage-optimizing icy processing power. (You just know there's still a whole team of DBAs that doesn't think this is good enough.) * 🔑 Last on the AWS front: There are new management features for EC2 key pairs. We’re ecstatic!
GCP: Last Chance to Register for the Google Cloud Security Summit * 🤔 GCP offers some CISO perspectives on security updates, as well as a reminder to register for the upcoming summit. * 😱 No-code solutions provide some nightmare fuel, as SAP BTP announces five new capabilities. What could go wrong? * ☁️ Build and flaunt your cloud skills with a nice new certificate, available from Google’s Coursera training course. * 🏎️ SWIFT and Google are looking to revolutionize the world of finance as they announce a major cloud-based collaboration.
Azure: Premium Class Warfare * 🤗 In what seems a little underhanded, Azure announces new investments to help accelerate a move to them. We’re still not sure about creating a ‘premium class' of Microsoft users (especially since its security updates). * 👾 We’re also not sure if the general availability of object replication on premium blob storage and the increase of the rule limit is a joke or not. * 🤓 You know a nerd wrote this article about the Azure Web Application Firewall (WAF) by the way it opens: “Threat intelligence at scale!”
TCP Lightning Round ⚡ The team agrees that no one earns the point this week, with the scores remaining at Justin (5), Ryan (1), Jonathan (2), Peter (1). Other Headlines Mentioned: * Amazon RDS Data API now supports returning SQL results as a simplified JSON string * Public preview: Static Web Apps support for preview environments in Azure DevOps * Amazon Relational Database Service on AWS Outposts now supports storage autoscaling * Amazon RDS now supports Internet Protocol Version 6 (IPv6) * AWS Snow Family now enables you to remotely monitor and operate your connected Snowball Edge devices * Amazon CodeGuru Reviewer now supports suppression of files and folders in code reviews * AWS AppConfig Feature Flag Lambda Extension announces support for Arm/Graviton2 processors * Amazon RDS Performance Insights now allows you to more easily see metrics for any time interval
Things Coming Up: * Google Cloud Summit Series (Updated Regularly)
May 17th - Google Security Summit
June 2nd - Startup Summit
June 9th - Applied ML Summit
June 28th - Sustainability Summit * AWS Summits
May 18th - Tel Aviv
May 23-25th - Washington DC * Microsoft Security Summit - May 12th * Kubecon EU - May 16th-20th * Google Next - June 6th-8th * RSA Conference - June 6-9th * Amazon Re:Mars - June 21st - 24th * AWS Reinforce - June 28th-29th → Now Moved to Boston * DevOps Enterprise Summit Virtual - US - August 2nd-4th * Blackhat USA - August 6th-11th * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th - 13th * Oracle Cloud World - October 16-20th * Kubecon US - October 24-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBC * Microsoft events - TBD Check for status
On The Cloud Pod this week, the team establishes that Justin may be immune to COVID. Plus all the latest from the AWS Summit, Azure Red Button team up on DDOS defense, and engines are revving in the great VMware showdown.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 The AWS San Francisco Summit kicks off with a ton of new generally available stuff, but not-so-impressive attendance (looking at you, COVID). * 🚨 Microsoft and Red Button buddy up on DDOS defense testing initiative. * 🚨 AWS, Google and Oracle rev their engines for the VMware top spot.
Top Quotes * 💡 “Really shows you the power of partnership … There’s finally some easy button for testing these things. Because you always dream: Maybe I could create my own DDoS situation, which seemingly I do occasionally by accident, but intentionally would be nice this time.” * 💡 “I don't necessarily trust their math, but assuming that it’s reasonably correct, it seems like a good market for Oracle to go after if you're gonna try to compete with those three platforms — I don't see a ton of people moving straight to the cloud on VMware. But that's a pretty compelling argument and potentially a way of getting VMware customers to the cloud quicker: let's just do it now if we don't have to get off of VMware.”
General News: Great Expectations * 📈 Gartner anticipates big growth (20.4%) in public cloud spending for 2022!
AWS: Everything Generally Available * 🎛️ Finally, you can use IAM to control access to a resource based on the account, OU or organization that contains the resource — just how it used to be, and makes a whole lot more sense. * 🌈 You might be excited for the confusingly named Amazon CloudWatch for Ray — if you can work out what it is (we couldn’t). Something to do with machine learning? * 🗄️ One for the data scientists: Announcing the Amazon SageMaker Serverless Inference, which should prove a boon for infrastructure management. * 👎 Now the guru can tell you your code sucks, too: Introducing the power of operational issue automatic detection in Lambda Functions with Amazon DevOps Guru for Serverless. * 👯 IoT TwinMaker is now generally available, and while your host doesn’t understand, luckily Ryan is on hand to talk about its uses. * 🔊 AWS Amplify Studio is also now generally available. Justin’s keen to play with it, but Ryan’s convinced it’s compensating for the shortcomings of a managed platform. You decide! * 🌌 Aaaand finally, Amazon Aurora Serverless v2 is now generally available. Nothing says success like a sequel interface.
GCP: Start Your Engines * 🤕 Fixing problems it caused in the first place, here’s version selection for Terraform solutions. * 🏁 Google revs its engine with seven reasons why its WMware beats the competition.
Azure: Push the Button * 🔴 Microsoft and Red Button team up for attack simulation testing. Now you can run that DDOS attack you always dreamed of without the risk of the FBI knocking on your door. * 🚫 Controls to block domain fronting behavior on customer resources are now generally available. Our question: How is this an opt-in choice? Just… turn it on, Azure.
Oracle: A Busy Week * 🏗️ Gartner hits bullseye, asserting that Oracle users fail to get that moving apps to cloud means business transformation. * ♻️ Oracle goes green with accelerated sustainability commitments in the form of environmentally conscious data center provider partnerships. * 🐇 The Oracle Cloud VMware Solution spring release is here, and Oracle is going hard on comparisons with AWS.
TCP Lightning Round ⚡ Justin firmly leads the way with the scores at Justin (5), Ryan (1), Jonathan (2), Peter (1). Other Headlines Mentioned: * AWS Announces General Availability of openCypher support for Amazon Neptune * EC2 Auto Scaling now lets you set a default instance warm-up time for all instance scaling and replacement actions * Amazon Kendra releases Box Connector to enable search on documents in Box Enterprise repository * Amazon Macie adds support for discovering more types of sensitive data * Amazon SES V2 now supports email size of up to 40MB for inbound and outbound emails by default * New AWS Wavelength Zone in Toronto – The First in Canada
Things Coming Up: * Google Cloud Summit Series (Updated Regularly)
May 17th - Google Security Summit
June 9th - Applied ML Summit * AWS Summits
May 11-12th - Berlin
May 18th - Tel Aviv
May 23-25th - Washington DC * Microsoft Security Summit - May 12th * IBM Think - May 9th-13th * DevOps Enterprise Summit Virtual - Europe - May 10th-12th | Registration Open | CFP Open * Kubecon EU - May 16th-20th * Google Next - June 6th-8th * RSA Conference - June 6-9th * Amazon Re:Mars - June 21st - 24th * AWS Reinforce - June 28th-29th → Now Moved to Boston * DevOps Enterprise Summit Virtual - US - August 2nd-4th * Blackhat USA - August 6th-11th * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th - 13th * Oracle Cloud World - October 16-20th * Kubecon US - October 24-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBC * Microsoft events - TBD Check for status
On The Cloud Pod this week and with half the team gone fishin’, Justin and Peter hash it out short and sweet. Plus Google Cloud SQL Insights, Atlassian suffers an outage, and AWS finally offers accessible Lambda Function URLs.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 Atlassian suffers an outage, sparking fears of data loss. * 🚨 AWS offers some very welcome accessibility for Lambda Functions. * 🚨 Google announces Cloud SQL Insights for MySQL.
Top Quotes * 💡 “When Lambda first came out, before I even used it, this is how I thought it would work … then it didn't. So it's cool that it's now available. I'm surprised it wasn't the default — the starting point — before getting more complex, like API gateways.” * 💡 “It's almost required: These tools are so important when it's a managed service and you can't get under the covers yourself. So it's cool, for sure. Especially when you get into how these things work with your cloud and how they interact with each other, it becomes even more important.”
General News: Atlassian Made a DevOops * 🔌 While only 0.25% of their customer base was affected, Atlassian’s outage is not a good look. The company continues to be haunted by it, with data loss fears. * 🌇 Sungard is doomed. A Chapter 11 bankruptcy filing confines them to history’s unmarked grave of discarded cloud victims.
AWS: Lambda Finally Does What It Was Always Meant To * ⛺ Accessible Lambda Function URLs are now yours — something that would’ve been nice when it first came out. * 👮 Security Hub launches five controls and one new integration partner, in a move that seems to open the door to start using it for all sorts of non-security checks. * ⛩️ Amazon ECS now allows you to run commands in a Windows container running on AWS Fargate. Peter doesn’t want to do this at all, but maybe someone does. * 👯 Something you always thought would have been there but didn’t know actually existed: Amazon RDS for SQL Server now supports SQL Server Agent job replication. * ✂️ Ooooooh: PrivateLink, Transit Gateway and Client VPN services all get a data transfer price reduction — a good first step! * ⚙️ In case you’re looking (Peter’s not), there are two new Amazon EC2 bare metal instances. * 🔓 Whoooo this one’s bad: An RDS vulnerability leads to internal service credentials. While it was definitely risky, it’s no longer exploitable. Another fine example of happiness when you’re doing security in layers.
GCP: Great Powers of Observation Unlocked * 🔮 The all-important Cloud SQL Insights for MySQL is now in preview. * 💎 An epically long subsea cable project called Topaz connects Canada and Asia. * ☁️ Breaking out the big bucks: Google Cloud and SADA launch an expanded partnership with a goal of $2.5 billion in cloud sales. * 🔫 MongoDB announces a pay-as-you-go offering on Google Cloud Console — you go, Mongo!
TCP Lightning Round ⚡ With Ryan and Jonathan out of action this week, Peter feels bad about the prospect of giving Justin a point, with the scores staying at Justin (4), Ryan (1), Jonathan (2), Peter (1). Other Headlines Mentioned: * Azure Data Explorer supports Azure private endpoints * Public preview: Azure Backup supports metrics and metric alerts for Azure Blobs * AWS Shield Advanced now supports Application Load Balancer for automatic application layer DDoS mitigation * Generally available: Service tags support for user-defined routing
Things Coming Up: * Google Cloud Summit Series (Updated Regularly)
May 4th - Google Workspace Summit * SQL Server & Azure SQL Conference - April 5-7th * AWS Summits
May 4-5th - Madrid
May 11-12th - Berlin
May 18th - Tel Aviv
May 23-25th - Washington DC * IBM Think - May 9th-13th * DevOps Enterprise Summit Virtual - Europe - May 10th-12th | Registration Open | CFP Open * Kubecon EU - May 16th-20th * Google Next - June 6th-8th * RSA Conference - June 6-9th * Amazon Re:Mars - June 21st - 24th * AWS Reinforce - June 28th-29th → Now Moved to Boston * DevOps Enterprise Summit Virtual - US - August 2nd-4th * Blackhat USA - August 6th-11th * VMWorld - US - August 29th-September 1st * DevOps Enterprise Summit US Flagship Event 🎉 The Cosmopolitan of Las Vegas - October 18th-20th * Google Cloud Next - October 11th - 13th * Oracle Cloud World - October 16-20th * Kubecon US - October 24-28th * MS Ignite - November 2nd-4th * AWS Reinvent - November 28th-Dec 2nd (assumed) * Oracle OpenWorld - TBC * Microsoft events - TBD Check for status
Google Biglake takes the feature of the week with the ability to federate data from multiple data lakes. On The Cloud Pod this week, the team discusses the most expensive way to run a VM (Oracle wins). Plus some exciting developments, an AWS OpenSearch 1.2 update with several new features, and Azure’s having a party, so bring your own IP addresses (BYOIP).
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 The Cloud Pod goes fishing on Google BigLake with a new tackle box and a whole lot of data. * 🚨 AWS opens up the market with its OpenSearch 1.2 update boasting several new features and which could attract more customers. * 🚨 Azure implements a fancy new bring your own IP addresses (BYOIP) policy.
Top Quotes * 💡 “Are they saving BigOcean for the next layer of unification above when we need to aggregate multiple BigLakes?” * 💡 “It is good to be able to do it, and I still pity the poor companies who need to migrate IP addresses and anchor their IPs to a provider in order to get their DVR functionality. So this now makes that possible, however bad a pattern that is in the cloud.”
General News: Decisions, Decisions * 🗺️ VentureBeat discusses how to choose the right AWS region for your business, but they seem to be missing a few considerations (sovereignty, anyone?). Also, picking a region isn’t a great idea for a business (like an e-commerce site) that needs to be multiregional to survive if things go sideways.
AWS: Opening up the Search Nice and Wide * 🤝 Amazon EKS now supports Kubernetes 1.22 — maybe AWS bribed the Kubernetes governance board because they were tired of trying to keep up with Kubernetes’ quarterly patch releases. * 🧑🚀 Good news for console users who no longer have to click through five separate pages of configurations, with the new and improved Amazon EC2 console launch experience. * 🔒 Cue applause track: AWS Organizations now provides central AWS account closure. We’ve been waiting for this for years. * 🙋 Amazon EC2 now performs automatic recovery of instances by default — a no-brainer, really. * 💾 Killing the need for all those expensive backup software solutions, AWS Backup now allows you to restore virtual disks from protected copies of your VMware virtual machines. You can use it for decades. * 💰 Could there be a more expensive way to run a VM than VMware Cloud on AWS Outposts? Yes, as it happens: Oracle. But this is a not-so-distant second place. * 📠 Not ideal, but there should be a workaround, as Amazon EC2 now reduces the visibility of public Amazon Machine Images (AMIs) older than two years. * 🔎 Amazon OpenSearch Service releases
On The Cloud Pod this week, it’s a brave new world for Ryan, who learns all kinds of things. Plus the Okta breach leads to customer outrage over not telling them for months, AWS announces its new Billing Conductor, and Google expands Contact Center AI for a reimagined customer experience.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Okta is in big trouble with furious customers after it fails to disclose a security breach… for months. * 🚨 AWS announces the brand new and very welcome AWS Billing Conductor to much fanfare and great rejoicing. * 🚨 Google expands end-to-end with Contact Center AI for a touted “reimagining” of the customer experience.
Top Quotes
General News: Okta Breach Shenanigans * 🤬 Change your credentials immediately. Customers are raging at Okta, which manages 100 million logins but failed to disclose a security breach for months. Just who is running things over there?
AWS: Money Money Money * ⛳ Donald Trump’s golf courses are going to be very unhappy to learn that AWS is investing $2.3 billion in UK data centers over the next two years, taking advantage of the Moray West Wind Farm off the coast of Scotland — creating 1000 jobs and injecting £500,000 into the Scottish economy. * 👊 Billing and accounting departments across the land rejoice as AWS announces its very welcome and much improved AWS Billing Conductor. * 🤝 Sharing is caring: AWS Lambda console now supports the option to share test events between developers.
GCP: ReAImagining Customer Experiences * 🤖 “Agent, please.” Let’s hope Google’s Contact Center AI expansion won’t leave customers as frustrated as they usually are and that this is a step in the right direction for support. * 🏎️ Go go go! Ann
On The Cloud Pod this week, the team discusses Peter’s concept of fun. Plus digital adventures with AWS Cloud Quest game, much-wanted Google price increases, and a labyrinthine run-through of the details of Azure Health Data Services.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 AWS gamifies cloud training with the release of Cloud Quest, along with two new initiatives in a bid to build foundational cloud skills for younger people. * 🚨 Google announces price changes while framing it as “choice”: Some services will decrease in price while others will increase. * 🚨 Microsoft launches Azure Health Data Services, the details of which turn out to be super fun trying to get your head around.
Top Quotes * 💡 “If you've ever wanted the job of living in a 3D world where a construction worker runs up to you and tells you that the server running in this weather app is failing and helping them figure this out, this game is for you. And you can earn gems and build and it feels very much like Roblox…. I give it an A for effort and an F for execution.” * 💡 “One of the arguments that people have made against the cloud forever is that once you're locked in, they're gonna jack the rates up, and then you're screwed because you're stuck there. It's that exact thing. This is now giving credence to those naysayers who traditionally will say that's not really true. … Now we have an exact use-case: Google did it. So what’s to stop Azure and AWS from doing it?”
AWS: Slay the Dragon and Rescue the Cloud * 💪 New bigger and badder EC2 X2idn and X2iedn Instances for you to throw your money away on are now here — supporting memory-intensive workloads with higher network bandwidth. * 🥧 If you’re excited about Pi Day, Jeff Barr helps celebrate with a bragging blog post on the number of objects Amazon S3 now boasts (with some fun galaxial anecdotes to boot). * ⬆️ A feature we can finally appreciate: Amazon ECS Update Service API now supports updating Elastic Load Balancers, Service Registries, Tag Propagation, and ECS Managed Tags. * 🪟 And moving onto an AWS feature we don't care about, Amazon ECS now supports on-premises workload orchestration on Windows OS. * 🛑 More Windows support arrives, this time for containerd runtime on EKS starting with Kubernetes 1.21. We don’t know about you, but we’re starting to get releases mixed up here. * 🏁 Don't get fooled by the marketing folks: There’s still work for the dev team to do with the general availability of AWS AppConfig Feature Flags. * 🗃️ We’re not sure who wants to use this, but Amazon RDS for PostgreSQL now supports mysql_fdw extension for Amazon Aurora, MySQL and MariaDB Databases. Wait… wasn’t that just patched in Log4j?
On The Cloud Pod this week, the team reminisces about dealing with awful database technologies, which Ryan luckily managed to avoid. Plus all things cybersecurity as Linux gets hit with a huge security emergency, Google acquires Mandiant for $5.4 billion, and Orca Security catches a major Azure cross-tenant vulnerability.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 Linux is on the backfoot as it’s hit by the most severe vulnerability in years. * 🚨 Google has acquired the cybersecurity giant Mandiant for a cool $5.4 billion. * 🚨 Orca Security catches a huge Azure cross-tenant vulnerability.
Top Quotes * 💡 ”But is Mandiant now going to be suddenly finding the vulnerabilities and publishing the vulnerabilities that they're finding in Azure and AWS, and happen to maybe not mention the ones externally that are happening in GCP? They're no longer an independent third party.” * 💡 “Even with these things happening, you're still safer running in the cloud. Even though there are outages, you're still more highly available in the cloud. I hate to see these things in the news.”
General News: Linux Is Feeling the Pain * 🆗 Knative is now officially a CNCF incubating project — any competitors in the market? * 😦 As Linux is bitten by its most high-severity vulnerability in years, we take back everything we said about Windows vs Linux security.
AWS: Solving Very Cloudy Problems * 🗄️ Faster failover is the name of the game with AWS this week: its RDS for MySQL & PostgreSQL Multi-AZ deployment option comes with improved write performance. Jonathan is also very, very excited about their JDBC driver for MySQL. * 👀 AWS customers can now request their CyberGRX report for due diligence on third-party suppliers. But who watches the watchmen? * ⏱️ Ryan’s always suffered from slow performance, but now he can now get specific about how his bad code is affecting it, thanks to Amazon DevOps Guru’s extended support for Lambda with CodeGuru Profiler integration.
GCP: Getting Out the Wallet * 🤫 Google pays $5.4 billion in hush money to Mandiant in a move that’s sure to massively boost their credibility in the cybersecurity arms race. Mandiant’s biggest customer? GCP itself. * 🔧 You can now leverage OpenTelemetry to democratize Cloud Spanner observability — which of course they want everyone using.
Azure: Take Shelter From the Storm * ⛈️ Microsoft’s new security chief says it’s time to take shelter in the cloud. Between this and Mandiant,
On The Cloud Pod this week, order in the court! Plus tackling those notorious latency issues with AWS Local Zones, things get quick and rusty with AWS s2n-quic, and GCP flexes with Dataplex data mesh.
A big thanks to this week’s sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week’s highlights * 🚨 AWS takes on network latency issues — its customers’ #1 complaint — with AWS Local Zones. * 🚨 AWS is getting quick and rusty this week with s2n-quic, its new open-source protocol for Rust implementation. * 🚨 GCP announces Dataplex in Google Cloud is now generally available, enabling the creation of the data mesh view.
Top Quotes * 💡 “We must be hitting some huge brick walls in web performance that are really hurting certain application workloads that require low latency, because if you look at both these announcements back-to-back, they're really trying to improve performance.” * 💡 “This is definitely a hard problem for companies to solve. Data is not going to be uniform, and you're going to have many different sources of it, and you want it to all play nice together so it's usable across a larger view than it used to be. I like these types of solutions, where they're applying governance and a way of doing things that's not just everyone reinventing these wheels — which is what we've been doing up until now.”
General News: Order in the Court! Judge Ryan Presides * ⚖️ Best Buy selects AWS as its strategic cloud provider, but Peter and Ryan argue that it may not be all that exclusive. * ☁️ VentureBeat reveals that Optimizely is partnering with Google Cloud. Justin thinks the reason the company chose GCP over AWS comes down to wanting to feel special.
AWS: Goodbye Network Latency? * 🌐 With AWS’ announcement of the global expansion of AWS Local Zones, will its customers’ number one complaint (network latency) be finally addressed? No doubt a good move forward. * 💨 AWS is also getting quick and rusty this week with the introduction of s2n-quic, the new open-source QUIC protocol for Rust implementation. For encryption nerds, this is it. * 👯 The general availability of AWS Backup for Amazon S3 is sure to be a great enablement — not to mention a massive cost saving for those using the age-old solution of full data replication between buckets. * 🧾 Amazon comes to the rescue with auto-adjusting budgets — something to add to budgets, not a tool to replace them. Super valuable nonetheless!
GCP: The Great Dataplex Data Mesh Flex * 🪢 You can now build a data mesh on Google Cloud with Dataplex — very fancy and very helpful. * 🐶 If you’ve got security concerns (who doesn’t?), the new FIDO security key support answe
On The Cloud Pod this week, Jonathan’s got his detective hat on. Plus Akamai steps up to CloudFare with Linode acquisition, AWS’ CloudFormation Hooks lift us up, and EPYC instances are now available.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Akamai notes CloudFare’s aggressive pivot to edge computing and acquires AWS competitor Linode for $900m. * 🚨 AWS announces the general availability of AWS CloudFormation Hooks, which should prove very useful. * 🚨 Amazon provides EPYC-powered instances, with up to 15% improvement in price-performance.
Top Quotes * 💡 “When AWS announces general availability of an instance, I have never been unable to launch that instance to test it. … I can't say the same thing for workloads on GCP.” * 💡 “If you ever take a laptop that has no security patches on it and you put it on a network … it'll be hacked within minutes. It's crazy how bad it is, actually. This is what we always talk about: it’s when you get hacked, not if you get hacked. Because if you have vulnerabilities, there's always a chance. It's just a matter of time before someone figures it out.”
General News: Akamai Steps Up Its Game * 🛡️ Capitalizing on existing relationships, F5 unveils its new cloud platform with a huge advantage in security — but it might be a tough sell. * 🉐 Akamai acquires AWS competitor Linode for $900m. Clearly Akamai saw what CloudFare was doing and thought I gotta get me some of that.
AWS: Getting Its CloudFormation Hooks In * 🪝 AWS announces the general availability of its CloudFormation Hooks. Very nice. * 🪵We wish we’d had Amazon CodeGuru Reviewer’s new security features back in December — now it’s February and no one cares about Log4j anymore. * 🪢 A nice freebie comes in the form of improved performance for Amazon Elastic File System (EFS). * ⛰️ Epic new EC2 c6a instances are powered by EPYC processors, providing up to 15% price performance improvements next to c5a instances. And there was much rejoicing. * 🛑 Protect your login page against credential stuffing attacks with AWS WAF Fraud Control. * 🏠 We don’t completely hate the new Billing console home page experience. Actually, it’s pretty good. * 🤔 Ryan thinks AWS’ Migration Hub Refactor Spaces (now generally available) sounds cool, but he’s suspicious as to how effective it will actually be.
GCP: Also Wants To Be Epic * 👷 Vertex AI has nifty
On The Cloud Pod this week, Ryan grapples with life in the confusion matrix. Plus money money money with Q4 2021 earnings announcements, shiny new digital badges from AWS, and Google Serverless Spark lights the way on data processing and data science jobs.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Q4 2021 earnings: Amazon and Microsoft are killing it with impressive cloud revenues (the only part we care about), and Google is losing money but its cloud is still growing. * 🚨 Nothing much from AWS (again) as performance reviews continue over there; but there are some new digital badges to show off your AWS cloud storage knowledge. * 🚨 Serverless Spark is now available on Google Cloud to simplify data processing and data science jobs, allowing more focus on code and logic, and less on managing clusters and infrastructure.
Top Quotes * 💡 “There's the rub: it's in the details as usual. You do need to operate as a business and achieve that transformation together. No matter what, any kind of migration is going to have an impact on product delivery and feature roadmap, which will have an impact on the ability to sell. So it really does take everyone marching to the same tune in order to get that done, or it just causes infighting.” * 💡 “The safest move is always to take a small [proof of concept], push that, and do your cloud landing zone with that… But then you're left — at a certain point — with the thing that makes you the most amount of money [not fitting] your plans… It's a huge risk: a lot of businesses get stuck trying to modernize. How do you justify the interruption to the revenue streams and the lack of feature delivery while you're doing that transformation to the thing that pays all the bills?”
General News: Q4 2021 Earnings Are In and It’s Looking Good * 📈 Some serious cloud revenue growth reports from AWS, Microsoft, and Alphabet with growth at 40% or higher, despite Amazon losses. And if you ever want to own Google stock, now’s your chance. * ⏩ Meanwhile, VentureBeat reports on best practice for strategically maximizing the ROI of cloud migrations, although one or two of those metrics are questionable.
AWS: Performance Reviews Keep Things Quiet * 📛 Now you can demonstrate your cloud storage knowledge and skills with brand new shiny digital badges! Very pretty — and good to stick on the resumé. * ⚖️ 52 AWS cloud services declare adherence to the CISPE Data Protection Code of Conduct in compliance with the GDPR. Tricky but important. * 🏃 We’re very glad to see that VPC Support for App Runner is finally here. It took a while! * 👯 You can
On The Cloud Pod this week, Jonathan is still AWOL. Also Amazon is on GuardDuty with credential exfiltration, Google Cloud Deploy is generally available, and Azure is suffering from more serious DDoS attacks.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon’s been on GuardDuty with enhanced detection of EC2 instance credential exfiltration. * 🚨 Google Cloud Deploy (GCD) is now generally available, making continuous delivery on Google Kubernetes Engine (GKE) easier. * 🚨 Azure reports that it spent the last half of 2021 dealing with distributed denial-of-service (DDoS) attacks that are increasing in both severity and frequency.
Top Quotes * 💡 “The biggest risk to cloud infrastructure is that you’re one secret access key away from a big booboo.” * 💡 “Last November, [Azure] had just mitigated a pretty large attack — at the time the largest in history, at least from ones that have been reported to the world. … Things have gotten worse in Q3 and Q4 — not only the levels [of attacks], but the complexity has gotten worse.”
AWS: Beefing Up GuardDuty * 🛡️ The threat detection service Amazon GuardDuty — which monitors your accounts for malicious activity and unauthorized behavior — is pretty great already. In the aftermath of the Superglue issue, however, AWS is ramping things up with enhanced detection of EC2 instance credential exfiltration. * ⚕️ AWS Security Hub has been integrating with AWS Health and with AWS Trusted Advisor (TA). Does this mean everything annoying gets reflagged? Thanks, TA! * 🏢 In a move that makes a lot of sense, Amazon Elastic Container Service (ECS) now supports ECS Exec and Amazon Linux 2 for workloads running on-premises with Amazon ECS Anywhere. No more yum and Red Hat-based Fedora deployment sounds great, although it would be nice to have a few more implementation details ahead of rolling it out. * 🪢 Replication is now possible for Amazon Elastic File System (EFS), but watch out for those pesky inter-region transfer fees — which do rack up — before enabling this.
GCP: Google Cloud Deploy Makes Your Life Easier * 🧮 Google Cloud Deploy (GCD) is now generally available, making it easier to do continuous delivery to GKE. We’ve also done the math on this and it seems to be cheaper than Ryan: GCD customers get their first active delivery pipeline per account free, and pay a $15/month management fee for each additional pipeline. Whereas Ryan is, frankly, expensive.
Azure: Azure Under Attack and It’s Getting Worse * 🔈 In an announcement that isn’t really an announcement, you can now leverage elastic integrations for your observability of Spring Boot apps on Azure. * 💸 Azu
On The Cloud Pod this week, the team decides 2022 is already a long, cursed year — bring on 2023. Plus nuggets of wisdom from Gartner, Orca discovers breaksformation and Glue vulnerabilities, and 10 questions to help boards (and others) maximize cloud opportunities.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Gartner reveals six cloud trends for 2022: Take what you need for your organization and throw away the rest. * 🚨 Orca Security discovers vulnerabilities in AWS’ CloudFormation, and — more seriously — Glue. * 🚨 GCP releases 10 questions to help boards safely maximize cloud opportunities — which can also give you the opportunity to bag that promotion.
Top Quotes * 💡 “Look at the rate of growth of cloud over the past few years. The rate of training new people could not possibly keep up. … [Organizations] want to hire someone who's got 20 years’ experience in something that's only been around for five years. I can see it being a real problem in terms of quality of output.” * 💡 “Because Orca published a blog post, we know about this — would AWS have disclosed it to us? If there are other people out there doing research against AWS and they're not publishing these things, there could be other things that we don't know about, that are not being addressed. Transparency is important.”
General News: Get Out the Crystal Balls * 🔮 SiliconANGLE published a guest blog from Gartner’s Paul Delory on his six predictions for what is coming to the cloud in 2022. * ⏩ VentureBeat has five considerations for saving more and wasting less on cloud services. We didn’t learn much, but everyone’s mileage varies.
AWS: CloudFormation’s Breaking Apart and the Glue Doesn’t Stick * 🐋 Orca Security Research Team’s been hunting in AWS waters, and found a vulnerability in CloudFormation. AWS responded that on further inspection, there was no threat to customers or resources. * ⚠️ There’s something more troublesome afoot, though: The Orca team also discovered a vulnerability with Glue. AWS Principal Engineer Anthony Virtuoso thanked Orca for its findings: but a coordinated effort between AWS and Orca might have avoided all of this. * 🎛️ AWS releases its new console which, overall, looks a lot like the old one with new lipstick — it still doesn’t appear to deliver.
GCP: 10 Questions and Some Fire in the Works * ❓ GCP helpfully published a list of 10 questions to help boards understand how to use the cloud in business. It sounds terrible, but actually proves
On The Cloud Pod this week, Peter finally gets to share his top announcements of 2021. Plus, Google increases security with Siemplify, Azure updates Defender, and AWS comes into the new year with a lot of changes.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning, and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud, and Azure.
This week’s highlights * 🚨 AWS confirms that applications can now be deployed on Amazon EKS using the IPv6 address space. * 🚨 Google looks to boost its security operations by acquiring SOAR provider Siemplify. * 🚨 Azure spent December updating Defender: was it worth it?
Top Quotes
💡 “All the cloud providers are embracing containerization and the technologies that allow containerized workloads to work well on their platform. But the side effect is that they also run equally well on everybody else's platform.”
💡 “[As Vice President of Google Cloud Phil Venables wrote in a blog post,] ‘The race by deep-pocketed cloud providers to create and implement leading secure technologies is the tip of the spear of innovation.’ Which is interesting, because I think this is an area where Google's really crushed it, and I think Amazon has failed. Not failed, but not invested as much as they should have.” General News: Google Acquires Siemplify * 💰 Google acquired Siemplify, a security orchestration, automation and response (SOAR) provider. The hope appears to be that it will help security teams using GCP better manage their threat responses.
AWS: Plenty of Non-Outage News * 🤨 IPv6 applications are now deployable through Amazon’s Elastic Kubernetes Service (EKS). This prevents IP exhaustion, minimizes latency, and simplifies routing configurations. On the downside, IPv6 can’t be added retroactively, and this EKS add-on only supports Linux — a dealbreaker for the team. * 👩💻 The AWS compute optimizer has been enhanced to allow users to specify both x86 and ARM as their preferred architecture for their EC2 instance type recommendations. This is a big blow to other tools that perform the same operations. * 🎵 AWS announced the general availability of the EC2 Hpc6a Instance. It’s built for HPC workloads to leverage AMD EPYC 3rd-generation processors. This release expands AWS’ portfolio of HPC compute options. Plus, according to Justin, the instance name reminds him of the song “abcdefu” by GAYLE. * 💡 According to a recent job posting, AWS plans to completely re-imagine how its network is managed. It allegedly has two secret projects that could mitigate the risk of cloud outages — like the one that impacted the company in December of 2021.
GCP: Phil Venables on the Keyboard * ✍️ Phil Venables, the venerable Google VP and Chief Information Security Officer, wrote a blog post about megatrends he’s identified in the cloud security world. It’s worth a re
EDITORIAL NOTE: Your Cloud Pod hosts are on vacation until early January!! Enjoy our 2021 wrapup and look ahead to 2022 and we'll be back in your Podcast feed mid January!
Justin, Jonathan, and Ryan are minus Peter in this episode as they review the year in cloud computing.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning, and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud, and Azure.
This week’s highlights * 🚨 It’s the last podcast of 2021. The next one premieres in the third week of January. * 🚨 Log4j came back with a vengeance during the holiday season. * 🚨 The team looks back at its 2021 predictions and forecast for 2022.
Log4jackass * 📅 Using AWS security services to protect against, detect, and respond to the log4j vulnerability is still an issue. Suggestions to upgrade to version 2.16 for Apache log4j security issue for EKS, ECS, and Fargate customers wasn’t enough. Customers are asked to upgrade to 2.17. By the end of 2021, it will probably be 2.22 just to get into the spirit.
Did The Team’s 2021 Predictions Come True? 👔 The hosts reviewed their 2021 predictions to see if they came true. * Johnathan’s prediction about bracket computing and other quantum technology didn’t come true to break TLS. It’s still a long way off but there are now more classes in quantum programming to prepare for the cutover. Jonathan takes half a point on his merit. * Peter believed The biggest blocker to cloud adoption would be costs, with individuals spending too much on poor cloud migrations. Justin believes he’s way off on this prediction. Though cost is a big consideration it’s definitely not the blocker. However, Jonathan believes more controls are needed to prevent overspending. * Justin’s prediction on the verticalization of the cloud in fintech, health, retail, etc. came true. Ryan says it makes a lot of sense for industries to go this route instead of building everything out. * Ryan said work from home (WFH) would be a permanent trend, further breaking traditional security. Justin agreed on the first part but not the second on security issues. Though plenty of workers still log in through their companies’ VPNs, there is a big move to implement zero-trust security.
Favorite Announcements Of 2021 📢 The hosts reviewed their favorite announcements of 2021. * Justin is happy that Amazon released its Redshift Serverless program to compete with Snowflake * Jonathan’s most favorite announcement was the introduction of OpenSearch. Especially how it went from notification to general release in a short period. Justin is impressed at the community working to improve OpenSearch. He hears more about this product now than elasticsearch. * Ryan puts AWS announcing the cloud con
On The Cloud Pod this week, Oracle finally has some news to share. Plus Log4j is ruining everyone’s lives, AWS suffers a massive outage post re:Invent, and Google CAT releases its first threat report.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 A critical vulnerability in Apache Log4j wrought havoc over the weekend. Cloud platforms and developers alike are racing to fix the bug, which gives hackers an opportunity to take control of systems remotely. * 🚨 On the heels of re:Invent, AWS suffered a major outage last Tuesday in its US-EAST-1 region, which had staggering repercussions across the cloud. * 🚨 Google Cybersecurity Action Team (CAT) releases its first Threat Horizons report, revealing its top three concerns threatening cloud users today.
Top Quotes * 💡 “It’s amazing how much of our infrastructure and applications live on these open source contributions of one or two people, and how critical they are to the entire ecosystem. And when they break or they're vulnerable, it becomes a huge issue for us very quickly.” * 💡 “Think about what Microsoft did: They started signing device drivers and signing applications that run in Windows, and everyone thought Oh, they’re just exerting control, what a terrible idea. They're just trying to corner the market. And now, of course, 15 years later, binding authorization is probably the most critical next step in securing the cloud.”
General News: The Log4j Vulnerability is COVID for Tech * 🔥 In light of the critical Apache Log4j 2.0 vulnerability that gives attackers the ability to to execute arbitrary code on other systems, AWS has released a hotpatch for the logging platform. The aim is to help developers mitigate risk as they work to update their systems to 2.15 or newer. * ⏩ VentureBeat reminds us that while the Log4j debacle is bad, at least organizations now have tools and processes in place to respond quickly to zero-day bugs. * ✅ GCP has released a set of recommendations for those who are investigating and responding to the Log4j 2.0 vulnerability. * 🔎 To help customers detect whether their systems have been compromised by the Log4j bug, Google has updated its IDS signature to automatically scan for any Log4j exploit attempts. * 🛡️ Google creates a new Web Application Firewall (WAF) rule to detect and block Log4j exploit attempts by attackers.
AWS: What Better Way to Follow Up re:Invent Than With a Giant Outage? * 💀 On the Tuesday after re:Invent, AWS experienced a major outage that left many of its users
On The Cloud Pod this week, the team finds out whose re:Invent 2021 crystal ball was most accurate. Also Graviton3 is announced, and Adam Selipsky gives his first re:Invent keynote.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon’s re:Invent 2021 featured a ton of new updates, including AWS CloudWatch Evidently, AWS Private 5G, and a new AWS Sustainability Pillar. * 🚨 Justin’s prediction pick — Graviton 3 — was announced on Day Two of re:Invent, along with serverless options for data analytics, and a free machine learning (ML) database for existing AWS customers. * 🚨 Amazon CEO Adam Selipsky missed the mark at his re:Invent debut, announcing fewer new releases than expected to a low-energy crowd.
Top Quotes
💡 “This is Adam’s [Selipsky] first keynote as CEO of AWS… I do feel it was a missed opportunity. Number one, he didn't drive out a ton of announcements, which everyone expected. There was a miss across the entire audience — people were expecting something they didn't get. And then number two, OK, maybe you're not the best public speaker: maybe you should go with a different model.”
💡 “In the keynote, the message was really clear: They're trying to democratize access to machine learning, they're trying to give this access to more than just the elite data scientists and programmers. And that made me think that if you expand that out to no-code in general, that’s a really powerful thing” AWS: re:Invent 2021 feat. a Mechanical Cat * Amazon highlights its top announcements of AWS re:Invent 2021 and gives details of new releases and updates across the platform.
Pre:Invent: Because Every Good re:Invent needs a Warmup * 👩🏫 In support of its mission to educate 29 million people by 2025, AWS expands access to its free cloud skills training to empower learners to pursue careers in technology. * ⚠️ AWS Elastic Disaster Recovery is now generally available to provide fast, reliable recovery of on-premises and cloud-based applications for its enterprise customers. This scalable solution enables customers to use AWS as an elastic recovery site rather than relying on an on-premise disaster recovery infrastructure. * 🐦 AWS Control Tower users can now created nested organizational units within the platform. Huzzah! * 📊 AWS Audit Manager users can now simplify their audit preparations with the new dashboard feature that enables them to instantly track the progress of audit assessments relative to common control domains. * ⛔
The Cloud Pod: Oh the Places You’ll Go at re:Invent 2021 — Episode 144
On The Cloud Pod this week, as a birthday present to Ryan, the team didn't discuss his advanced age, and focused instead on their AWS re:Invent predictions. Also, the Google Cybersecurity Action Team launches a product, and Microsoft announces a new VM series in Azure.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 AWS releases new G5 instances, which feature up to eight NVIDIA A10G Tensor Core GPUs. That’s super, super fast. * 🚨 Google’s Cybersecurity Action Team adds Risk and Compliance as Code (rCaC) Solution. * 🚨 Microsoft announces the NDm A100 v4 Series, and claims another spot on the TOP500 supercomputers list.
Top Quotes * 💡 “[AWS Resilience Hub] is already building on top of the FIS, which is interesting, but at some level I just want you to execute Lambda functions that validate things for me, and then tell me that I'm resilient because I validated it with Lambda.” * 💡 “Anything that empowers more dynamic and interactive web development I'm all for.”
Amazon Web Services: Give Us Your Car * 🚘 AWS is releasing new G5 instances, which feature up to eight NVIDIA A10G Tensor Core GPUs. For the cost of a small car every month, you too can get up to 40% better value on inferencing and graphics-intensive operations. * 💪 AWS is releasing the Resilience Hub, a service designed to help you define, track and manage the resilience of your applications. * 🐧 Unified Search in the AWS Management Console now sources results from blogs, knowledge articles, events and tutorials. Buyer beware with this one: It will pull outdated information that is still available on AWS, and you could end up with a giant albatross that costs you a fortune. * 🐌 Amazon ECS is improving ECS Capacity Providers to deliver faster cluster auto scaling. When you're using a capacity provider, it's painfully slow to get the underlying hosting infrastructure to scale fast enough, so we’re presuming AWS has addressed this in the back end. * 😁 Manage access centrally for JumpCloud users with AWS Single Sign-On. We’re super happy to see this: Take notes, Azure AD. * 👏 Amazon ECS adds container instance health information. This is nice to see and will help improve your application resiliency.
AWS re:Invent 2021 Predictions * Prediction rule: If it’s already been officially announced by Amazon, then it doesn’t count. It needs to be in the rumor mill and somewhat specific. * Each contestant will also pred
On The Cloud Pod this week, the pod squad is down to the OG three while Ryan is away. Also AWS announces serverless pipelines, GCP releases Spot Pods, and Azure introduces Chaos Studio.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 AWS releases Serverless Application Model (SAM) pipelines to save development teams time. These pipelines streamline CI/CD configurations for AWS applications. * 🚨 In the spirit of savings, new GCP Spot Pods help GKE Autopilot users run fault-tolerant workloads while spending less money. Hooray! * 🚨 Azure Chaos Studio helps development teams wreak controlled havoc with a managed experimentation service, allowing them to safely build, break and optimize their apps with reckless abandon.
Top Quotes * 💡 “I think for some people when they're looking at, OK, we're gonna make this commitment to a different architecture, at that point in time, they've looked at serverless versus containerized apps, and most companies went the containerized apps route, but that might change in the next wave.” * 💡 “Python 3.10 looks really interesting. It's got a bunch of new features … around data handling specifically, which is really what people have been using Python for for years: bioinformatics and data science. But it has really neat features around matching different schemas of data and things like that.”
AWS: Finally, a Pipeline We Can Get Behind * ⏲️ AWS releases Serverless Application Model (SAM) pipelines, a new feature of the AWS SAM CLI, to help users simplify CI/CD configurations for AWS serverless applications. The new feature will help development teams minimize the amount of time spent creating pipelines, while also ensuring safe deployments. * 🍗 With AWS Fault Injection Simulator, users can now create and run FIS experiments that check the state of Amazon CloudWatch alarms and run SSM automations. We hope the only fault injections you have are in your EC2 instances, not in your Thanksgiving turkey. * 🪄 AWS customers running Windows containers rejoice: New Amazon ECS Exec allows you to execute commands or get information directly from your Windows container shell. Magic! * 🇨🇦 Amazon is doubling down on Canada. AWS announced plans to open a second Canadian region, in Calgary, bringing the company’s total region count to nine. The Calgary region is set to open in late 2023 or early 2024, and AWS has committed to using renewable energy to help build it out.
GCP: Hitting the Spot with New GKE Autopilot Spot Pods * 🖼️ Google is making it easier to improve application scale-up times with its “revolutionary” (read: evolutionary
On The Cloud Pod this week, the team wishes for time-traveling data. Also, GCP announces Data Lakehouse, Azure hosts Ignite 2021, and Microsoft is out for the metaverse.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 GCP releases its data lakehouse, a new architecture that offers low-cost storage in an open format. The real question is, can we book it on Airbnb? * 🚨 Microsoft kicks off Azure Ignite 2021, announcing new capabilities for its hybrid, multicloud and edge computing platforms. * 🚨 Microsoft also unveils plans for its own metaverse, including upgrades to Teams, Dynamic 365 Connected Spaces and more.
Top Quotes * 💡 “I'm a big fan of IDE for coding and that integrated environment to reduce context shifting, but when you're talking about access to data, Jupyter is something that's hosted, that you can protect and grant access to, versus an IDE like RStudio. It becomes a much trickier scenario to maintain any kind of data sovereignty, or protect that in any way, just because, by its true nature, you have to open it up.” * 💡 “Between the Facebook Metaverse and Microsoft, who's going to win the race? Everyone wants to build “Ready Player One.” And Facebook owns Oculus and they have all my data, then they can get my brain as well: They can just monetize the crap out of my profile. And then Microsoft has their augmented reality things… . But I think the power of the Azure cloud actually gives them the advantage versus Facebook, in my opinion. “
General News: ‘Tis Earnings Season * 📈 Microsoft was the first to announce its quarterly revenue, boasting a $45 billion increase. This jump of 22% beats Wall Street expectations, and includes Microsoft Azure, LinkedIn commercial revenue, Office 365, and Xbox. * 💰 Google also posted impressive results, rounding out the quarter at $18.9 billion, up a whopping 68% from one year ago. Much of this success came from Google Ads and GCP, where revenue was up 45% or about $5 billion. * 📉 Due to ongoing supply chain issues and labor shortages, Amazon missed the mark on its earnings forecast, posting a profit of $3.2 billion, a 49% decrease from last year. AWS, however, outperformed (as usual), with a 39% rise in revenue to $16.1 billion.
AWS: The Official Cloud Storage Provider of MI6 * 🐟 Now generally available, AWS Babelfish allows users to migrate from expensive, proprietary MSSQL to the Amazon Aurora compatible edition. With Babel
On The Cloud Pod this week, half the team misses Rob and Ben. Also, AWS Gaudi Accelerators speed up deep learning, GCP announces that its Tau VMs are an independently verified delight, and Azure gets the chance to be Number One for once (with industrial IoT platforms.)
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 AWS is using Gaudi Accelerators to speed up deep learning models — for nearly $10,000 a month. * 🚨 Google announces that Tau T2D VMs are now available in preview, and takes the opportunity to report that Phoronix has identified these Tau instances as the best price-performing ones yet. * 🚨 Azure bags the Number One spot in the Gartner Magic Quadrant category of Industrial IoT Platforms. We’re wondering how much schmoozing Microsoft had to do to pull this off.
Top Quotes
💡 “I guess [AWS Gaudi Accelerators] solve the problem of lack of availability of NVIDIA CPUs. It's almost impossible to buy a decent graphics card, and I'm sure the cloud providers are suffering horrendously with not being able to scale their machine-learning instances the way they wanted to, because of the chip shortage.”
💡 “We've said it for a long time now that with Google coming to the market when they did, it was very easy to take all the major gripes of AWS and Azure and improve on them. And they banged it out of the park. So kudos to them, because it is a much better user experience than [what you get with] the other two cloud providers.” General News: HashiCorp Increases Access to its Service Mesh 🚦 HashiCorp introduces its new Consul API Gateway to help route traffic to applications running on the Hashicorp Consul Service Mesh. This seems like an early release, given its fairly basic capabilities. AWS: Rolling Out Gaudi Accelerators — Not Architecture * 📹 AWS announces AWS Panorama, which is an appliance and SDK that allows users to process video data at the edge of their locations. AWS Panorama was first introduced at the last re:Invent, and is now generally available. * 🏇 Amazon joins Microsoft, Google, IBM, Honeywell and more in the race to build a quantum computer, partnering with Caltech to open a new center in Pasadena. * 4️⃣ To save Peter some time in the lightning round, we combined four Amazon DocumentDB updates into one announcement: Users can now enjoy additional support for access control; support for $literal, $map and $$ROOT; capabilities for storying, querying, and indexing Geospatial data; and a
On The Cloud Pod this week, the team’s collective brain power got a boost from guest hosts Rob Martin of the FinOps Foundation and Ben Garrison of JumpCloud. Also, AWS releases Data Exchange, Google automates Cloud DLP, and Azure Synapse Analytics is available for pre-purchase.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 AWS announces Data Exchange for Amazon Redshift, which will allow users access to and management of third-party data. Watch out, Snowflake. * 🚨 Google is making its Cloud Data Loss Protection (DLP) automatic so users no longer have to worry about manually monitoring their data. * 🚨 Azure has made Azure Synapse Analytics available for pre-purchase for customers looking to manage their analytics workloads.
Top Quotes
💡 “There's always that line: If you build a module that is very effective for users across the board, regardless of what they're doing, at some point it just becomes a resource. It’s pretty tough to build complex modules that everybody's going to use as-is, and not want to end up making their own.”
💡 “I do not envy security people in this current climate. The proliferation of cloud computing, edge computing, has really had to get a lot of creative minds working together to try and secure data outside your four walls of sanctity. … And so it's good to see big companies starting to chime in and address that, because I think it's just going to continue to keep growing.” General News: Hashicorp + AWS = A Match Made in Heaven * 💰 At .conf21, Splunk announces a new workload-based pricing model for its smaller customers that will help drive retention. Clearly Splunk has been listening to TCP complaining about its insanely expensive model. * 🧳 HashiCorp releases the public beta of HCP Packer, which allows teams to track and automate build updates across their packer and terraform workflows. * 🤝 AWS and HashiCorp are partnering to make developers’ lives easier with new terraform modules for AWS, as well as an API path that will enable users to quickly deploy AWS resources while keeping modules lightweight and composable. Justin is stoked for this!
AWS: AWS Data Exchange is Coming for Snowflake * 📝 AWS releases its Security at the Edge: Core Principles whitepaper to help business and technology leaders ensure their cloud network security extends to workloads running on the edge. The paper points out three strategic areas to address: AWS Services at the edge location, AWS security best practices, and additional edge services. * 🪲 AWS Glue Crawlers now support Amazon S3 event notifications, making discovering data sets simpler and reducing the cost and time a crawler needs to update frequently changing tables. * 🌐
On The Cloud Pod this week, Jonathan reveals his love for “Twilight.” Plus GCP kicks off Google Cloud Next and announces Google Distributed Cloud, and Azure admits to a major DDoS attack.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 After a few awkward keynotes, Google Cloud Next kicks off days one and two, highlighting new features and announcing Google’s $10 billion investment in cybersecurity advancements. * 🚨 At Google Cloud Next, GCP announced the Google Distributed Cloud: A network of hardware and software to help organizations improve cloud strategies. * 🚨 After tooting its horn for reduced DDoS attacks in 2021, Azure reveals details about the largest DDoS attack in its history. This 2.4 terabits/second attack was launched in late August against an Azure customer in Europe.
Top Quotes * 💡 “It is kind of crazy, because [Google Distributed Cloud] is an open source project that's basically how to run Google Cloud in your own data center. It's probably a smart risk, because I do believe workloads will just eventually end up on Google Cloud.” * 💡 “The tools have the functionality built in, but unless you're offering that as a service to your end users … and thinking about the holistic management of the settings, the deployment and the full lifecycle of those things, it's the difference between enabling your business to be secure and just shooting it in the foot.”
AWS: Keeping Quiet This Week for Google Cloud Next * 🕵️♀️ Amazon Fraud Detector can now store event datasets and use this historical data to boost performance for ML models — all at a 56% reduction in price. * 📱 AWS Console Mobile Application has (finally) added ECS, which will allow users to view and manage a select set of resources to support incident responses from their devices. Clearly someone at AWS listens to TCP and has heard Justin’s many complaints about this. * 🚦 CDK8s (say that five times fast) is now generally available and supports the Go programming language. Using CDK8s, you can define your K8 applications and apply K8 YAML to any cluster. * 🪱 Tired of accidentally deleting your backup with your cloud formation stack? The newly released AWS Backup Vault Lock solves this problem by using safeguards to ensure users store their backups using a Write-Once-Read-Many (WORM) model.
GCP: Thank U Google Cloud Next * 📦 Ahead of Google Cloud Next, GCP makes Artifact Registry generally available for Java, Node.js, and Python packages. Users can host their internal codes as packages to their centralized private repositor
On The Cloud Pod this week, the team is running at half-duplex without Peter and Ryan. Plus Cloudflare R2 is here, Facebook died for a day, and AWS releases Cloud Control Plane.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Cloudflare’s new R2 service is making waves in the cloud object storage space, offering incentives like no egress fees and lower rates than its competitors. * 🚨 Influencers, boomers and bored teenagers collectively screamed on October 4th as Facebook and its associated apps experienced an unprecedented six-hour outage. * 🚨 AWS Cloud Control Plane offers developers an easier way to manage their third-party and AWS services with a new set of common APIs.
Top Quotes * 💡 “The bigger impact is actually WhatsApp, because for a large portion of the world, Whatsapp is the primary method of communication. If you go … to different countries overseas … everyone's on WhatsApp. Everybody. So to not have that communication is a huge loss. And you have to wonder, does Facebook need to think about diversifying their backend in some way? Should all of their DNS be inside Facebook?” * 💡 “[AWS Cloud Control API] is probably going to be a requirement for any new services that launch in AWS … which means that we will no longer be waiting weeks or months for new services to be available in CloudFormation.”
General News: The day that Facebook died (for six hours) * ☁️ Cloudflare is getting into the cloud object storage market with its new, competitively-priced R2 Service. Unlike other storage services, Cloudflare is nixing the dreaded egress cost, and will charge 10% less than AWS, its largest competitor. * 💀 Facebook is having a rough week. On October 4th — the day before a former employee testified to Congress about the social media giant’s negative impacts — Facebook accidentally unpublished itself and its affiliated apps for around six hours. A seemingly routine update caused issues with its BGP routes: Read the company’s account of events here.
AWS: On a mission to control the cloud * 📊 In a rush to release before the next AWS summit, Amazon Managed Service for Prometheus is now generally available. With Prometheus, users can easily monitor their containerized apps at scale, and new features like alert manager and ruler let users integrate SNS with various destinations. * 🎛️ AWS releases Cloud Control API, a new set of common APIs designed to help developers manage their AWS and third-party services. According to AWS, three groups will benefit the most f
On The Cloud Pod this week, Justin may be out but the cloud stops for no one. Also, AWS announces a New Zealand region, GCP releases GKE Backup, and Azure Functions 4.0 is now in public preview.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Grab your togs and sunnies! AWS is opening a New Zealand region to serve Asia Pacific. The move is expected to create more than 1,000 jobs in the next 15 years. * 🚨 GCP users can now protect their GKE workloads with GKE Backup, which helps automate recovery tasks and shows reporting for compliance and audit purposes. * 🚨 Azure Functions 4.0 has arrived — in public preview, that is. It’s expected to be generally available by November 2021, just in time for the .NET 6.0 release.
Top Quotes * 💡 “Microsoft Excel is still the most powerful tool for making business decisions. And [Amazon QuickSight] is the same thing: It's a way to visualize the raw data you have. Being able to ask a service a question in normal words is gonna be super powerful.” * 💡 “It’s funny because for at least the last 18 months, this has been my daily life: Thinking hard about how software makes it from environment to environment and into production. And no matter where you're hosting this workload — what cloud provider, what technology — there are trials and tribulations and hurdles that have to be overcome … So I’d like to see more of these bespoke deployment technologies that are really focused on doing one thing really well, rather than doing all things.”
AWS: AWS says ‘Kia Ora’ to its Newest Region: New Zealand * 👓 With the newly available Amazon QuickSight, business users can use natural language (read: normal words) to quickly create interactive BI dashboards and receive accurate insights and data visualizations. * 🇳🇿 Look out, Kiwis and hobbits: Amazon is set to open new data centers in New Zealand by 2024, adding the AWS Asia Pacific (Auckland) Region to its 81 existing availability zones. It’s estimated that the new region will create 1,000 jobs in the next 15 years, but we believe it will have an even bigger impact. * 🕵️♂️ Tracing support is now generally available in AWS Distro for OpenTelemetry. Users can now send telemetry data to various AWS applications as well as partner destinations. Telemetry, dear Watson. * 🪄 AWS releases AQ UA (Advanced Query Accelerator) for Amazon Redshift RA3.xlplus nodes. This new distributed and hardware-accelerated cache enables Redshift to run up to 10X faster than AWS competitors by boosting certain query types. Magic! * 🤬 AWS users can now easily select, detect and manage sensitive data with Amazon Macie. Using machine learning and pattern matching, users can
On The Cloud Pod this week, the whole team definitely isn’t completely exhausted. Meanwhile, Amazon releases MSK Connect, Google offers the Google Cloud Digital Leader certification, and DORA's 2021 State of DevOps report has arrived.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Users of AWS’s fully managed Apache Kafka service can now use MSK Connect to easily set up and deploy Kafka Connect clusters. * 🚨 GCP releases the new Google Cloud Digital Leader training and certificate program, which trains users on all things Google in just four classes. * 🚨 Google Cloud’s DevOps Research and Assessment (DORA) team publishes the 2021 State of DevOps, identifying key trends.
Top Quotes * 💡 “From a least-privileged perspective, it'd be better to have a purpose-built tool that does one thing really well — what you need it to do — versus building out this huge AWS CLI you have to install on every server and expose attack vectors if it has the wrong permissions.” * 💡 “Digital transformation is such a broad thing for so many industries … and giving them this cloud knowledge helps them drive outcomes from a technical perspective, and map the business need to the technical need … It's helpful for [business users] to get a little bit of language, but also for the technical person to actually learn how to translate technical ideas into business ideas that have value.”
General News: F5 Absorbs Threat Stack * 💰 F5 sets its sights on Threat Stack, paying $68 million to add this Boston-based cloud monitoring company to its growing list of cloud and security software acquisitions. This recent buy brings F5’s investment in cloud monitoring capabilities to over $2 billion.
AWS: MSK Connect – the New Easy Button for Managed Kafka Service users * 🏋️ AWS is eliminating undifferentiated heavy lifting for users of its fully managed Apache Kafka service, by introducing MSK Connect, which allows users to configure and deploy a connector using Kafka Connect with a few clicks. * ⌨️ Amazon Redshift users can now use RSQL, a fully-featured command-line client, to interact with their clusters and databases. Working as a complement to the PostgreSQL psql command line tool, RSQL is available for Linux, Windows, and macOS X.
GCP: Anointing Future Digital Leaders * 🪣 Google introduces the new Cloud Storage trigger in Eventarc, which eliminates the need for audit logs and supports bucket filtering. Now you can do what you’ve always done in Eventarc, only better. * 🙏 Google has answered its customers’ prayers with its new Cloud Digital Le
On The Cloud Pod this week, AWS releases OpenSearch and EKS Anywhere, Google Cloud is now available in the Toronto region, and Microsoft deals with two critical security issues.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 AWS releases OpenSearch (previously Elasticsearch) and makes EKS Anywhere generally available — to those who run VMware. * 🚨 Google Cloud opens a Toronto region, expanding its core Google portfolio into three new zones. How aboot that? * 🚨 Security issues continue to plague Microsoft, with critical vulnerabilities exposed in both its ACI and OMI features. Hopefully new hire, Charlie Bell, can help them out.
Top Quotes
💡 “I hope that the reason [AWS is] integrating with VMware only is because they're deeply integrating with that platform and they can spin up new VMs, deploy new infrastructure, and provide the scaling you need to make EKS Anywhere work the way it works in the cloud.”
💡 “Everything now is driven by the cloud in a big way, where you pay by the drip. So now I need to make the drip as efficient as possible. And if I can give you dedicated silicon to do that, that's the best thing for me. And so it's quite interesting.” General News: Jump On It * 🚀 The Cloud Pod sponsor, JumpCloud, raises $159 million in its Series F round, bringing its total funding to $350 million. Remote working has catalyzed growth for this cloud directory service, now valued at $2.56 billion. Take that, AD.
Amazon Web Services: New Features, Who Dis? * 🔎 Amazon Elasticsearch is now OpenSearch. In addition to the new name, AWS has also added a host of new features like advanced security, SQL query syntax, updated reporting capabilities, and more. Overall, we are super happy with this first release! * ✨ Amazon EKS Anywhere is now generally available… as long as you use it on top of VMware. EKS (almost) Anywhere helps users manage any Kubernetes cluster, and offers automation tooling for cluster lifecycle support. This comes two weeks late for Justin, who included it in his predictions draft. Bummer. * 📹 Livestreamers rejoice! AWS is launching EC2 T1 instances for live multi-stream video transcoding, which will provide resolution up to 4K Ultra HD. Using GPUs for graphics processing — what an idea!
Google Cloud Platform: Google Welcomes Toronto to the Family * 🕹️ In addition to giving users dedicated CPUs, GCP is now offering CPU allocation controls which will allow users to do background processing for their asynchronous tasks in Cloud Run container instances. * 🇨🇦 Break out the maple syrup because
On The Cloud Pod this week, the team wishes there was something else on tap, not just NetApp. Also, AWS Storage Day has come and gone again, and Azure is springing into the enterprise cloud.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 The third annual AWS Storage Day brought a few presents, including new features for files and transfers. * 🚨 One announcement was the general availability of Amazon FSx for NetApp ONTAP. Hell has frozen over, and you can now get Netapp Filers on top of AWS. * 🚨 Azure announces the launch of Spring Cloud Enterprise, a managed service for Spring optimized for enterprise developers.
Top Quotes * 💡 “I assume this is all built natively on top of AWS, and they are managing the service for you on EC2. If that's the case, I believe this is the first of this type that AWS has offered. We've talked about Google partnering with people to operate appliances on your own VPCs, same as Azure. So this is probably the first of many partner integrations.” * 💡 “I don't know if it's [Amazon S3 Multi-Region Access Points] they wanted, but I think at these prices, they definitely didn't want it. If the price was more attractive or if it was simpler to process and calculate — more predictable — I think people would potentially be excited about this.”
General News: Whisk It * 🥚 DigitalOcean acquired three-year-old startup Nimbella, which develops multi-cloud serverless software. It’s an interesting alternative to, say, building its own serverless stack with OpenWhisk.
Amazon Web Services: Hell Has Frozen Over * ⛄ Here’s what happened at AWS Storage Day 2021. We recommend you check out the recordings, because it actually wasn’t a snooze fest. * 🍺 AWS announces general availability of Amazon FSx for NetApp ONTAP. If you want to import data into a data lake, this would be one way to do it. * 🤸 AWS announces Amazon EFS Intelligent-Tiering to optimize costs for workloads with changing access patterns.This gives you some flexibility that you didn't have before — but it’s still expensive. * 🤑 AWS lays out how to accelerate performance and availability of multi-region applications with Amazon S3 Multi-Region Access Points. Be
On The Cloud Pod this week, AWS releases new features including Managed Grafana, GCP Serverless solves the cold start problem, and Wiz hacks into CosmosDB.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 AWS shows no sign of slowing down after the Summit, making Managed Grafana generally available and releasing new features for VPC, CloudFormation, and CloudWatch. * 🚨 Google introduces new capabilities to minimize cold starts, giving serverless customers the option of using — gasp! — servers. * 🚨 Wiz finds a critical security flaw in CosmosDB which allowed it to hack into thousands of Azure customers’ databases. Looks like Microsoft needs to make some calls.
Top Quotes * 💡 “I just think about all the companies who were … trying to build their own ML models for document recognition and how far they are versus how far Amazon and Google are and Azure. … this is the reason why using your cloud vendor might be the better choice. Because they're not even getting this kind of scale and or price reduction for anything they're doing on top of ML.” * 💡 “I think the main benefit for this change is going to be shared tenancy systems because, with virtualization, everytime there’s a context switch between different tenants on the CPU, you have to throw away that entire cache. The smaller that cache is, the faster that's going to be, and the better overall performance you'll get from the system.” * 💡”There's servers behind everything. So nothing’s serverless just how exposed are you to it? And to me, I think that level of exposure where it's no longer serverless is if I have to patch it.”
General News: Docker goes “Full Oracle” * 💩 Docker announces it will begin charging enterprise customers to use it’s desktop app. Enterprise companies with over $10 million in revenue or greater than 250 employees have until January 31st, 2022 to buy the subscription. In Justin’s words, “that’s just dirty.”
Amazon Web Services: Can’t Stop Won’t Stop * 🧭 To enable East-West traffic, Amazon has removed some VPC routing restrictions, allowing users to inspect, analyze or filter all traffic flowing between two subnets. * 🚫AWS CloudFormation users are sharing a collective sigh of relief as they can now disable the automatic rollback when a cloud formation fails and retry stack operations from the point of failure. Peter is jumping for joy. * 💨AWS announces a 32% price reduction for Amazon Textract users in 8 regions as well as a 50% reduction in processing times for asynchronous jobs. Fast or cheap? We choose both. * 🔘Cloudwatch dashboards now support custom wi
On The Cloud Pod this week, the results of the AWS Summit prediction draft are in. It was probably worth getting up early for — especially if you’re Jonathan.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 At the Summit, AWS announces AWS Backup Audit Manager, sealing the prediction draft winner: Congratulations, Jonathan. * 🚨 Outside the Summit, AWS announces MemoryDB for Redis, new split charge rules, and cybersecurity updates. * 🚨 Former AWS leader Charlie Bell is joining Microsoft. What his role will be is unclear, but we speculate that he’ll play some part in improving Azure availability.
Top Quotes * 💡 “I suspect that certificate-based access to the console is going to be more prevalent. I don't know of this in Microsoft Azure or Amazon, but I also know that this is one of the things popping up in custom security audits or in documentation that I've started to see more and more, which is, how do you control access to this publicly available API?” * 💡 “This could be an additional $5 billion boost in revenue for Microsoft Office 365, which is important to us because Microsoft 365 is included in the Azure number and reported as one line item. So a $5 billion increase could be a pretty big increase in revenue and growth that Azure could then tout and say, We are finally the biggest, fastest-growing cloud.”
General News: Later Days * 👋 GitHub is saying goodbye to password authorization, but you can still create a personal access token to log in.
Amazon Web Services: We’ve Reached the Summit * 📣 Redis users in select regions can now use Amazon MemoryDB to boost their application performance with data durability, microsecond read, and single-digit millisecond writes. Unlike ElastiCache, MemoryDB does not require adding a cache from your database to achieve low latency. * 🎂 Amazon EC2 turns 15 this year. Launched with a single instance in 2006, there are now over 400 variations of instances. Happy birthday, EC2 — next year we’ll buy you a car. * 💰 Good news for finance pros: AWS Cost Categories will now allow you to create split charge rules to allocate shared costs to different categories. Time to bust out the corporate card. * ☁️ IAM Access Analyzer users can (finally) get rid of localized cloud trails and consolidate them into a single account. This makes us super happy, except for Justin, who lost a point in the prediction draft because AWS did not announce this at the summit. * 💾 AWS has released its
On The Cloud Pod this week, everyone’s favorite guessing game is back, with the team making their predictions for AWS Summit and re:Inforce — which were not canceled, as they led us to believe last week.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 AWS CTO talks about continuous configuration (CC) at Amazon in his latest blog post. CC has made it possible for the company to keep services running while it also adapts and reacts in real-time. * 🚨 Google launches monitoring and troubleshooting for virtual machines (VMs). Developers will be able to access visual guides talking them through various scenarios. * 🚨 Microsoft launches a lawsuit in response to AWS winning a $10 billion NSA contract, the content of which is reportedly related to the organization’s attempts to modernize the way it stores classified data.
Top Quotes * 💡 “When it comes to streaming VR, you can be very smart about what you send to a consumer and what you don't. I mean, there's still enough compute power locally that it has a good idea of what most of the scenes can look like. So potentially, local computers do the background or the bits that are complex, and you just stream the complexity with the bits that do need to be latency sensitive.” * 💡 “I feel like all the monitoring tools out there have been missing this [monitoring and troubleshooting for VMs] for a long time, in that they seem to have all the features you need, but then getting the things you want is so difficult.”
General News: Here We Go Again * 🙄 Amazon has won a secret $10 billion cloud computing contract from the NSA. This is JEDI all over again: Microsoft is not happy and has already launched a lawsuit. * 👏 AWS CTO Dr. Werner Vogels talks about continuous configuration at Amazon. There are a lot of helpful tips in this article, particularly if you’re in Dev, DevOps or Ops.
Amazon Web Services: A Good Brew * 👍 AWS Codebuild allows project owners to make build logs and artifacts publicly accessible to anyone outside of AWS Console. This is a great way to build trust in your product: thumbs up from us. * 🍺 AWS continues to muddy the waters of Glue DataBrew with announcements about logical conditions, numerical format transformations,
On The Cloud Pod this week, it’s been an interesting few days in the cloud, so the team members have made themselves comfortable with plenty of adult beverages to keep them going. Also, Elastic has forked everyone with its latest Elasticsearch move.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Elastic has modified the Elasticsearch Python client so it won’t work with forked versions, including the relatively recently released OpenSearch 1.0. * 🚨 AWS CloudWatch Synthetics now supports visual monitoring. Customers with web apps can see defects that can’t be scripted but would be visible to end users. * 🚨 Google introduces the Unattended Project Recommender. It uses machine learning to identify projects that have likely been abandoned and forgotten about, so you can cull them from the cloud.
Top Quotes * 💡 “People were originally attracted to Elasticsearch because it was an open source project. So this [amending the Elasticsearch Python client] is taking away one of the main reasons they were able to acquire the users they did. I don't get the strategy, unless they're pulling a ripcord right now, because they're bleeding.” * 💡 “I know a lot of companies are moving their services into the cloud, and a lot of security engineers are restricting outbound access, or tightly controlling egress. These things [Google’s Private Service Connect] have to happen — these things are absolutely needed — to keep them secure, and allow those companies to sell their services. Good catch-up feature.”
General News: We’re Not Angry Just Disappointed * 🐍 Elastic amends Elasticsearch Python client so it won't work with forked versions — and proves it knows how unpopular this is by blocking GitHub comments. This is forcing people to choose sides, and is a really disappointing move. * 😐 AWS details its commitment to keeping OpenSearch and Elasticsearch compatible with open source. Elastic has managed the impossible: it’s made AWS look like the good guys.
Amazon Web Services: Unbreaking The Rules * 🧑 Amazon’s senior cloud leader Charlie Bell is leaving the company after more than 23 years. Knowing how fast AWS moves, we feel tired just thinking about working there that long. * 👍 Amazon EC2 Auto Scaling enhances Instance Refresh with new features. Clearly the company is listening to its customers (in this respect, at least.) * 😎 AWS WAF
On The Cloud Pod this week, the team is back in full force and some are sporting fresh tan lines. Also, it’s earnings season, so get ready for some big numbers — as well as some losses.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 AWS is finally killing off EC2-Classic. EC2 was launched in 2006, with one instance type (m1.small), security groups, and the US-EAST-1 Region. * 🚨 The 2021 Gartner Magic Quadrant for Cloud Infrastructure and Platform Services is out, and AWS, Google, Microsoft and Oracle have all made it. Although some scraped in by the skin of their teeth. * 🚨 Get consistent Kubernetes definitions with the new Anthos Config Management feature. The Kubernetes Resource Model (KRM) helps users define and update resources with minimal effort on their part.
Top Quotes * 💡 “I would say Google's getting market share because they are able to leapfrog everyone else on Kubernetes, big data, and machine learning.” * 💡 “Considering all the different vendors that are involved in a hospital, just being able to have a standard data format with FHIR is huge. And they also now power that with the cloud. There are lots of really interesting use cases that get unlocked with this [Azure Healthcare APIs] solution.”
General News: Earn Baby Earn * 💲 Google’s parent company, Alphabet, crushed earnings expectations. It still lost a lot, though. Increasing the price of YouTube TV could have limited the damage. * 🤪 Microsoft's revenue is up 21% overall. Azure’s revenue doubled, which is nuts. * 😨 Amazon’s revenue is up 27% overall — but that’s down from the 41% year-on-year increase the company saw in Q2 of 2020. It’s starting to see post-COVID-19 corrections.
Amazon Web Services: Not Fit for Consumption * 😡 AWS named as a Leader for the 11th consecutive year in the 2021 Gartner Magic Quadrant for Cloud Infrastructure & Platform Services. It’s interesting to see the 20% renewal push included, which is clearly a sore point for AWS customers. * 🛰️ AWS support for
On The Cloud Pod this week, it’s a merry-go-round of vacations, with Jonathan returning and Ryan escaping while Peter tunes in from Hawaii. Also, there is some big news in an otherwise quiet week.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 AWS announces that Virtual Private Cloud (VPC) users can now assign IPv4 and IPv6 prefixes to EC2 instances. It should help simplify the process of using container and networking applications that require multiple IP addresses. * 🚨 AWS releases a new feature for SAM CLI, SAM Pipelines. It provides quick and easy access to the benefits of CI/CD, making it easier to get out new products faster and check for errors. * 🚨 Microsoft has acquired security platform CloudKnox, which was designed to work across multi-cloud and hybrid cloud environments.
Top Quotes * 💡 “I hope to see more of these [SAM Pipelines-style features]. It’s been one of my mental blocks. I've been using serverless ever since Lambda was announced, but building into a pipeline is such a chore. And Jenkins is such a chore in itself. So if you have a canned way to deploy a pipeline, it's great.” * 💡 “I think it [CloudKnox] had a potential to be really interesting and really valuable. But Azure was actually building a lot of these capabilities into their cloud natively, including least privilege access. And Google's building that kind of stuff too. So I don't know if there's a long runway left for them to get a lot of adoption and a lot of new customers, or if they’re going to be replaced by the cloud providers over time, and ultimately not be needed.”
General News: Don’t Off Slack * 💀 Salesforce has completed its acquisition of Slack for $27.7 billion. Hopefully they don’t kill slack because we do not want to use Teams.
Amazon Web Services: Winning * 👍 Amazon Virtual Private Cloud customers can now assign IP prefixes to their EC2 instances. Being able to assign multiple IPs is super helpful, so there are some great use cases for this. * 📦 AWS Serverless Application Model (SAM) Pipelines is a new feature of the AWS SAM CLI. We hope to see more of these types of announcements, this out-of-the-box function is so good. * 🐃 AWS is releasing the Amazon Route 53 Application Recovery Controller. We’re hoping the high price tag is just to slow the stampede of people who w
On The Cloud Pod this week, if you were impressed by Matthew Kohn’s ability to wing it last time, then you’re in luck because he’s back. Also, the team hopes AWS is listening to the show and reading these notes, so it can get on with creating its own unified agent for CloudWatch.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 AWS has launches HIPAA eligible Amazon HealthLake. The service enables information exchange across healthcare systems, pharmaceutical companies, clinical researchers, health insurers, patients, and others parties. * 🚨 Google previews new Cloud IDS for network security. The system makes it easier to manage threat detection from the cloud. * 🚨 Microsoft announces the evolution of the Azure Migration Program (AMP). The new Azure Migration and Modernization Program (AMMP) will help enterprises improve their apps while moving them to Azure.
Top Quotes * 💡 “I have a couple of customers that I sent this [HealthLake] press release over to, and they're very excited. They have no idea how they want to use it yet, but they're very excited to figure out how to do something interesting with it. So I'm really curious to see how people actually start to play with this, and figure out how to use it to be beneficial for their companies.” * 💡 “I was surprised that they limited the open-source UDP proxy to just gaming. I get that there's some undifferentiated heavy lifting that is provided with session management security. But a UDP proxy that scales is something valuable to most companies that are using some legacy protocols. I wouldn't be surprised to see this expand a little bit to enable some other UDP use cases in the future.”
Amazon Web Services: Swimming Upstream * 🏊 AWS has launched a HIPAA eligible service for customers in healthcare and life sciences, called Amazon HealthLake. We recommend checking out the pricing before getting excited, as it seems expensive to us. * 🧊 AWS EBS io2 Block Express volumes are now generally available. Make sure you’re caffeinated when you dive in: it’s a complex space. * 👍 Amazon EKS now supports Kubernetes 1.21. Nice to see Amazon delivering on its promise of faster re
On The Cloud Pod this week, with a couple of no-shows, Justin and Ryan’s Happy Hour includes returning guests Matthew Kohn and Sara Tumberella. Also, the team is curious to see what’s going to change at AWS with its new CEO.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon has finally launched OpenSearch 1.0. They’re hoping to make the transition to as simple as possible for open-source Elasticsearch users. * 🚨 AWS customers can now pre-pay for their usage. This will allow customers to pay future invoices automatically. * 🚨 Google announced the general availability of its new Google Cloud Certificate Authority Service (CAS). It hopes the service will help address the increased need for digital certificates.
Top Quotes * 💡 “I'm curious to see if you can do things like optimization, where you can reference a security group rule many times across multiple security groups. [You could] simplify a lot of your ecosystem by having maybe a catalog of rules that you apply selectively.” * 💡 “I still haven't seen much talk about what they're doing with Beats, and if they're going to fork Beats as well. Initially, they weren’t going to, but then it sounded like Elasticsearch basically pulled the rug out from under them on that too. I wouldn't be surprised to see that also get forked at some point in the future as well.”
General News: Red Tape
Security: Ryan’s Going to Space * 👮 Research suggests security tools are fighting for attention, and there’s a rise in false-positive alerts. When companies want the latest and greatest security applications, they often end up competing with each other, and it makes troubleshooting difficult.
Amazon Web Services: Setting Fire to Dumpsters * 🚓 AWS announces new VPC security group rule IDs. We’re curious to dig into the details: for example, will it allow users to reference one security group rule across multiple security groups? * 👏 AWS launches OpenSearch 1.0. We get the impression AWS is handling this project differently, by really investing in the community. * 😐 AWS now allows customers to pay for their usage in advance. We think they should offer a big discount as an incentive. * 👍 AWS lowers data processing charges for
On The Cloud Pod this week, Ryan was busy buying stuff on Amazon Prime Day and didn’t want to talk about JEDI, so he arrived late to the recording. Also, long-time sponsor of The Cloud Pod, Foghorn Consulting, has been acquired by Evoque, so the team grilled Peter for the juicy details.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 The $10 billion JEDI cloud contract has been canceled by the Pentagon. In its place, the DOD announced a new multi-vendor contract known as the “Joint Warfighter Cloud Capability.” * 🚨 Evoque Data Center Solutions has acquired cloud engineering experts Foghorn Consulting. This is a key part of the company’s Multi-Generational Infrastructure (MGI) strategy, which it announced the same day as the acquisition. * 🚨 AWS released some incredible numbers from Amazon Prime Day. Jeff Barr gives his annual take on how AWS performed and the record-setting event.
Top Quotes * 💡 “The Pentagon has called off the $10 billion cloud contract [JEDI]. It was being dragged through the courts by Amazon and Microsoft, and this is sort of an admission that the Pentagon didn't want Donald Trump to get subpoenaed and testify on what his involvement was in the whole contract.” * 💡 “This is a big problem that almost every business has: how do you stop a deployment, especially a large deployment? Typically, we throw people at it, and we have them watch millions of dashboards, and hopefully, they catch it. But usually, it's a problem somewhere that's exposed to the customer that triggers that. So if we can have more tools like Gandalf that detect problems earlier, it’s great.”
General News: Some People Can’t Take a Joke * 🥳 Evoque Data Center Solutions acquires Foghorn Consulting. Congratulations to Peter on this exciting news! * 😠 The AWS Infinidash story has taken on a life of its own. What started as a joke has led to backlash from the community complaining about it being a form of technology gatekeeping.
JEDI: We’re Not Talking About This Anymore * 💀 The Pentagon has canceled the $10 billion JEDI cloud contract. It’s not really dead, they've just turned it into a joint multi-cloud offering, which is what we said they should do six months ago.
Amazon Web Services: A Little Gooey * 🚀 Andy Jassy thanks AWS employees as he takes over as Amazon CEO. We wonder if Bezos is bored yet. Between the Blue Origin launch and The Washington Post, he’s probably not. * 🕵️♂️ Jeff Barr is back with his annual take on
On The Cloud Pod this week, with the first half of the year full of less-than-ideal events, the team is looking forward to another next six months of less-than-ideal events. Also, everyone is excited to see how they can manipulate the AWS BugBust Challenge for a free ticket to re:Invent.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 AWS launches the BugBust Challenge in the hopes of finding and fixing 1 million bugs. The challenge aims to help developers improve code quality, eliminate bugs and boost application performance while saving millions of dollars in application resource costs. * 🚨 Google has announced new features for Cloud Monitoring Grafana plugins. The new features include popular dashboard samples, more effective troubleshooting with deep links, better visualizations through precalculated metrics and more powerful analysis capabilities. * 🚨 Azure VM Image Builder service is now generally available. Image Builder will make it easier to build custom Linux or Windows virtual machine images.
Amazon Web Services: Does Not Have Bugs * 🐜 AWS announces the world’s first global competition to find and fix 1 million software bugs. We don’t think they’re referring to Amazon bugs, just software bugs in general. * 🤷 AWS launches customized images for Amazon EMR on Amazon Elastic Kubernetes Service. If you’re looking to reduce the time it takes to build images, that’s a good thing: otherwise it’s a fully managed service, so we’re not sure that users will care. * 🦸♀️ Amazon announces new Java Detectors and CI/CD Integration with GitHub Actions for CodeGuru Reviewer. We’re amazed by how quickly GitHub Actions is being adopted. * ❓ AWS acquires communication technology company Wickr. We want to know why Amazon is buying this: maybe they’re trying to enhance their enterprise and public sector application suites. * 🤓 AWS now supports container images to simplify continuous integration tasks. Continuing to build the ecosystem around serverless applications is a smart move by AWS.
Google Cloud Platform: Smart Player * 👍 Google announces that a new public dataset for Google Trends
On The Cloud Pod this week, Jonathan pulls a classic move from 2020 and doesn’t realize he’s on mute. Also, the team completely destroys an article about the cloud being too expensive for what you get.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 VC firm a16z calls the cloud a “trillion-dollar paradox” in a blog post, noting the pressure cloud computing puts on margins can start to outweigh the benefits. We think there are quite a few holes in their analysis and the Dropbox example doesn’t work. * 🚨 AWS releases Step Functions Workflow Studio. Developers new to Step Functions will enjoy being able to build workflows faster. * 🚨 Google announces that Quantum computers from IonQ are now on its marketplace. Developers, researchers and enterprises alike can now access IonQ’s high-fidelity, 11-qubit system via Google Cloud.
General News: A Trillion-Dollar Paradox * 😠 Venture capital firm Andreessen Horowitz, known as "a16z," thinks the cost of cloud computing outweighs its benefits. Dropbox is a terrible example to use in this case. * 👀 Splunk launches Splunk Security Cloud and announces a billion-dollar investment by a private equity firm. We think it’s having some integration problems in the background — it’s something to keep an eye on.
Amazon Web Services: Jonathan, You’re On Mute * 👍 AWS launches Step Functions Workflow Studio. This is great for developers new to Step Functions as it reduces the time it takes to build their first workflow. * 🚗 AWS invites individual developers and small teams to take the Graviton Challenge. They’re obviously trying to drive adoption. * 🥳 AWS Key Management Service is introducing multi-region keys. A nuisance that has plagued Justin for years has finally been solved. * 😺 AWS announces a public registry for CloudFormation, providing a searchable collection of textensions. People have been asking for this for a long time so it’s nice to see.
Google Cloud Platform: Tell Us How To Use It * 🤷 Google announces Quantum computers from IonQ are now available in
On The Cloud Pod this week, Matthew Kohn joins the team as a substitute for Jonathan and Peter, who have gone AWOL. Also, Google demonstrates again why its network is superior to the other cloud providers.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 AWS now allows crash-consistent AMIs without requiring a reboot. No more manual processes needed. * 🚨 Google is building a subsea cable named Firmina. The cable, to be comprised of 12 fiber pairs, will carry traffic quickly and securely between North and South America. * 🚨 Oracle announces improvements to its block volumes. Its Ultra-High-Performance (UHP) block volume comes with up to 300,000 IOPS and 2,680 MB/s throughput per volume and is generally available across all OCI commercial regions and on all interfaces.
General News: Not Dead Yet * 💀 Hashicorp Vagrant 3.0 will maintain its Ruby-based features while being ported to Go. We thought this was on a path to death but apparently not.
Amazon Web Services: Proceed With Caution * 👏 AWS announces a new region in Tel Aviv, Israel. AWS clearly realized it was behind the other cloud providers on building new regions. * 😎 Amazon launches AWS Proton in general availability. There are some super cool improvements that have been done to this. * ✔️ Amazon EC2 now allows you to create crash-consistent Amazon Machine Images (AMIs). This is one of our EC2 wish list items — it’s great to tick it off the list. * 🤗 AWS announces per second billing for EC2 Windows Server and SQL Server Instances. It’s nice to only be billed for what you actually use. * 🎉 AWS removes NAT Gateway’s dependence on Internet Gateway for private communications. This has been a big annoyance for a while so nice to see it sorted!
Google Cloud Platform: Just Figure It Out * 🤷♀️ Google is announcing the general availability of Ubuntu Pro images on Google Cloud. Doesn’t make a lot of sense to embrace open source by purchasing an enterprise product. * 👍 PLAID guest posts
Is sending the former CEO of one of the biggest technology companies in the world to space a good idea? On The Cloud Pod this week, the team discusses the potential economic catastrophe that could follow if Jeff Bezos becomes space junk.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Jumpcloud, which provides cloud directory services, enables remote access, eases onboarding and offboarding of users and enables zero trust access models.
This week’s highlights * 🚨 Amazon is sending the old junk it found in the attic into space. * 🚨 Google is now fully qualified to direct traffic. * 🚨 Azure turned its out-of-office message on and hoped no one would notice.
General News: Frenemies * ⛄ Snowflake had its annual user conference and announced some new tools and features. Pretty good! * 👾 Jeff Bezos is joining the first human flight to space with his company Blue Origin. This is super risky, even if he’s no longer CEO. * 👍 Fastly blames global internet outage on a software bug. This is the right way to address outages — nice one, Fastly!
Amazon Web Services: Watch This Space * 😐 Amazon announces auditing feature for FSx for Windows File Server. This needs an acronym. * 👀 AWS has added a third availability zone to the China (Beijing) region operated by Sinnet. Nice to see. * 🧠 AWS Sagemaker Data Wrangler now supports Snowflake as a data source. Smart move.
Google Cloud Platform: Sneaky Sales Tactics * 🤷 Google announces the release of container-native Cloud DNS for Kubernetes. Powerful building block or Achilles heel? * 🤔 Google announces new capabilities for Cloud Asset Inventory. Makes so much sense to come from the provider because they know what you have. * 🤭 Google releases new Microsoft and Windows demos on Google Cloud Demo center. This is absolutely not a sales tool... * 😺 Introducing Google Cloud Service, Kf for Cloud Foundry, on Kubernetes. Another good p
This week on The Cloud Pod, apparently there was a machine learning conference because there is A LOT of machine learning news. For the listeners (and hosts of The Cloud Pod) who don’t understand machine learning, buckle up because this will be a long episode for you.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning, and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon is acting like it’s helping but really it’s lying with numbers. * 🚨 Google is pretending the 1991 Ford Fiesta it’s selling is a 2021 Mustang. * 🚨 Azure got a little overexcited with the use of its naming bot.
General News: Fake It Until You Make It * 😐 Amazon data shows more diversity among senior leaders after the definition of “executive” loosened. Well, that’s one way to do it. * 🎉 Amazon’s Andy Jassy is warming up for the CEO role. We hope competitors don’t expect him to tread softly when he starts. * 😲 Pluralsight will acquire A Cloud Guru to address growing cloud skills gap. This is earth-shattering.
Amazon Web Services: Busy As Usual * 🤗 Amazon Redshift Machine Learning is now generally available. There’s a helpful table to explain the different machine learning products. * 😞 Amazon ECS Anywhere is now generally available. A bit disappointed that they haven’t addressed the networking issue more. * 🎥 Introducing Amazon Kinesis Data Analytics Studio for analyzing streaming data. They’re really into studios at the moment. * 👍 Amazon SQS now supports a high throughput mode for FIFO Queues. This is nice. * 🚚 Amazon Location Service is now generally available with new routing and satellite imagery capabilities. Just so you don’t run your truck under a bridge that’s too low.
Google Cloud Platform: Not A Robot In Disguise * 🥱 New Cloud TPU VMs make training machine learning models on TPUs easier. We told you this wou
This week on The Cloud Pod, Ryan is stuck somewhere in a tent under a broken-down motorcycle but is apparently still having fun.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon went back to school to become a detective. * 🚨 Google was voted prom queen at the virtual homecoming. * 🚨 Oracle shocks everyone with its new look.
General News: Great Partners * 👏 Hashicorp has partnered with AWS to launch support for predictive scaling policy in the Terraform AWS provider. This will be hugely popular for people new to the cloud.
Amazon Web Services: Dropping Stories For No Reason * 🐜 AWS Lambda Extensions are now generally available with new performance improvements. This has pretty limited regional availability, though. * 👍 Amazon releases the AWS Shield threat landscape 2020 year in review. One of our favourite blogs. * 😊 AWS EKS Add-Ons now supports CoreDNS and kube-proxy. This is neat! * 🐦 Introducing the AWS Application Cost Profiler — there have been a few complaints about this on Twitter. * 😺 AWS Compute Optimizer launches updates to its EC2 instance type recommendations. This is awesome. * 🌎 AWS Outposts launches support for EC2 Capacity Reservations. Being able to use the same tool regardless of where you are is a good thing! * 😃 An AWS Region in the United Arab Emirates (UAE) is in the works. Great!
Google Cloud Platform: Prom Queen 2021 * 😐 Google VM Manager with OS configuration management is now in Preview. This is basically patch and agent management. * 🥳 Forrester names Google Cloud a leader in Unstructured Data Security Platforms. Good job, Google! * 😭 Google has released a better way to manage firewall rules with Firewall Insights. We just want a firewall manager that does everything for us. <!--
-->
This week on The Cloud Pod, the team discusses the fine art of writing the podcast show notes so there are bullet points for when Peter shows up without doing the homework.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon is catering to the unimaginative with its version of a vanilla milkshake. * 🚨 Google now performs commitment ceremonies but they come at a cost. * 🚨 Azure did an online pastry course and can now make croissants.
General News: La France Est Méconnaître Amazon (France Is Ignoring Amazon) * 😴 VMware picks longtime executive Raghuram as its new CEO. So many people were overlooked for this position. * 🍟 France says Google and Microsoft Cloud Services are OK for storing sensitive data. Bit of a snub for Amazon.
Amazon Web Services: Busy Little Bees * 🚀 AWS SaaS Boost released as open source. Sounds more like a product than it actually is. * 🦆 AWS announces general availability of AWS Application Migration Service. If play is to lift and shift, with no thought of transformation at all, this is for you. * 🛡️ AWS CloudFormation Guard 2.0 is now generally available. It’s great that this supports more than just cloud transformation. * 🦹♂️ AWS Premium Support launches Support Automation Workflows (SAW). This will make the exchange of data so much easier. * 🗳️ Amazon Elasticsearch Service announces a new lower-cost storage tier. This is great news for everybody. * 😐 Amazon announces the release of EKS 1.20 — the raddest release ever. * 🏃 AWS launches another way to run containers with App Runner. Just in case you don’t want to use one of the other billion container services.
Google Cloud Platform: Here To Confuse You * ⭐ Google will bring Starlink satellite connectivity to enterprises in late 2021. Cool! * ☁️ Google is offering new committed use
This week on The Cloud Pod, Justin is away so the rest of the team has taken the opportunity to throw him under the bus.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 The Pentagon has had enough of the kids fighting so no one gets the toy. * 🚨 Amazon has given developers the happy ending they’ve always wanted. * 🚨 Google is playing with fire and hopes no one gets burnt.
JEDI: Play Nice * 🚸 Pentagon officials are considering pulling the plug on the star-crossed JEDI cloud-computing project. Reminds us of when we were kids and our parents took toys away when we couldn’t play nice together.
Amazon Web Services: We’ve Made All the Money * 💯 AWS announces a price reduction for Amazon Managed Service for Prometheus. That’s an awful lot of samples. * 🙏 Amazon Virtual Private Cloud (VPC) announces pricing change for VPC Peering. Just get rid of the ridiculous data transfer fees! * 🤩 AWS Organizations launches a new console experience. We’re excited to try this out! * 👍 AWS announces IAM Access Control for Apache Kafka on Amazon MSK. This is great. * 😐 AWS Systems Manager now includes Incident Manager to resolve IT incidents faster. This might initially fall short of some of the other offerings on the market. * 😆 AWS Local Zones are now open in Boston, Miami and Houston. They’re continuing on the Oracle model of racks in random garages. * 🎈 Amazon now lets you create Microsoft SQL Server Instances of Amazon RDS on AWS Outposts. A big hooray for people using Outposts.
Google Cloud Platform: Smells A Bit * 😬 Google announces Agent Assist for Chat is now in Preview. Hopefully this is better than predictive text, which is often highly inappropriate. * 👃 Google releases a handy new Google Cloud, AWS and Azure product map. This press release has an Oracle smell about it. * 👏 Browse and query Google Cloud Spanner da
This week on The Cloud Pod, Yahoo is back and cheaper than ever. Just kidding, it’s Ryan who is back and the team is curious as to how he managed to extricate himself out from under that kitten.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon has been doing yoga and the results are paying off. * 🚨 Google bought a hard hat and is getting into the construction business. * 🚨 If you need to get your kid to sleep, let them read this from Azure.
General News: Yahoo’s Renaissance * 💀 Verizon dumps Yahoo-AOL for rock-bottom price. But they’re not dead yet! * 👍 Amazon posts record profits as AWS hits $54B annual run rate. That’s pretty good! * 🚙 Microsoft beats Q3 revenue expectations, spurred by strong cloud sales. Get on the bandwagon, Azure. * 💰 Alphabet announces first quarter results for 2021. It does include GCP and G-Suite revenue. * 🤯 Cloud infrastructure spending grew 35% to $41.8B in Q1 2021. These numbers boggle our minds.
JEDI: Just Keeps Getting Better * 🤣 Court snubs Microsoft and the U.S. government’s request to throw out Amazon's complaint against JEDI cloud contract decision. We can’t wait to hear what Trump says under oath.
Amazon Web Services: Bring Your Own Talent * 🚀 AWS is launching Amazon FinSpace, a data management and analytics solution. Step one, invent the universe. * 🤷 AWS Proton introduces customer-managed environments. We had to look up what Proton actually is. * 🤩 AWS Proton allows adding and removing instances from an existing service. We’re looking forward to some re:Invent sessions on this. * 💳 Amazon launches CloudFront Functions for the lowest possible latency. A great solution that can reduce your costs quite a bit. * 👎 Happy 10th birthday to AWS Identity and Access Management. Ten years on and still a pain in the ass. * 🏭 Introducing Amazon Nimble, a new service that creative studios can use to
On The Cloud Pod this week, the team admits to using the podcast as a way to figure out what day it is. Justin also relents and includes Azure news because he couldn’t handle any more Oracle mobile apps announcements.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Social media influencers can breathe a sigh of relief. * 🚨 Amazon is dangling a carrot in front of one of its partners. * 🚨 Azure is throwing a spanner in the works.
General News: Not Cool News * 💣 The FBI arrests a man for his plan to kill “70% of the internet” in an AWS bomb attack. 70% is quite a stretch but we’re sure it would have caused a crappy day for a lot of people. * 🥳 Hashicorp has released its Boundary 0.2 release with several new features. We’re really excited about this. * 😐 Announcing HashiCorp Terraform 0.15 General Availability. If you believe it, this is really great news.
Amazon Web Services: Good At Compromising * 💯 AWS announces AQUA is now generally available. Justin should have gotten a prediction point for this one. * 🤗 Amazon Managed Service for Grafana now offers more support. We’ll see if Grafana can actually make money out of its partnership with Amazon. * 👏 Amazon RDS for PostgreSQL now integrates with AWS Lambda. This is really cool! * 🤑 Decrease machine learning costs with instance price reductions and savings plans for Amazon SageMaker. Some pretty significant savings here.
Google Cloud Platform: Colossal * 🏊♀️ Google takes a deep dive into its scalable storage solution, Colossus. Nothing new here. * 🔧 Google announces tracking index backfill operation progress in Cloud Spanner. This is super important. * 🗺️ The new Google Cloud region in Warsaw is open. Nice to see Eastern Eu
On The Cloud Pod this week, Ryan has given all his money to the Amazon press team to write really confusing headlines just to annoy Peter. Also, Jonathan is missing presumed cranky buns.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 IBM is spinning off its infrastructure services business — the new public company will be called “Kyndryl.” * 🚨 Teresa Carlson has left the AWS building. The AWS VP is headed to big-data analytics company Splunk Inc. as its new chief growth officer. * 🚨 Google’s like the cool kids who know how to party.
General News: Eventual Degradation of Profits * 🤣 IBM to name its infrastructure services business “Kyndryl”. We hope they didn’t spend a lot of money coming up with that name. * 🤷 Top AWS executive Teresa Carlson joins Splunk as President and Chief Growth Officer. We thought she might have been a candidate to succeed Andy Jassy.
Amazon Web Services: 5G Not Included * 👂 AWS formally launches the OpenSearch project. Seems like it’s listened to the open source feedback. * 🚽 Amazon EC2 Auto Scaling introduces Warm Pools to accelerate scale-out while saving money. Please don’t let Andy name anything. * 🧑🤝🧑 AWS and Verizon team up to provide 5G-powered edge computing infrastructure. Justin got his COVID-19 vaccination and was disappointed it didn’t come with 5G. * 🎅 Amazon Redshift now supports data sharing when producer clusters are paused. We wonder what underlying tech made this possible?
Google Cloud Platform: Excel at No Code * 🍃 Leaf Space enables next-gen satellites on Google Cloud. This fills a very obvious gap in the market and is pretty cool. * 🤓 Google introduces a new blog series: Cloud CISO perspectives. Hopefully some cool stuff will be announced. * 💻 Google announces its business process automation app AppSheet is now generally available. We feel bad for the poor sap that has to maintain this on the bac
On The Cloud Pod this week, the team discusses the future of the podcast and how they’ll know they’ve made it when listeners use Twitter to bombard Ryan with hatred when he’s wrong.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon gives Justin a long overdue birthday present. * 🚨 Google wants to educate the people. * 🚨 Azure has a new best friend but could they be a wolf in sheep's clothing?
General News: Goodbye, Friend * 😢 The Apache foundation has decided to send Mesos to the attic. This makes us sad because we loved the concept.
Amazon Web Services: Happy Birthday, Justin * 👍 New AWS WAF Bot Control to reduce unwanted website traffic. This is great! * 🏷️ AWS is releasing the Amazon Route 53 Resolver DNS firewall to defend against DNS-level threats. Pricing is interesting on this one. * 🙏🏻 AWS launches CloudWatch Metric Streams. After years of complaints, they’re finally fixing this issue. * 💰 AWS Lambda@Edge changes duration billing granularity from 50ms down to 1ms. Nice price cut! * 😊 AWS Direct Connect announces MACsec encryption for dedicated 10Gbps and 100Gbps connections at select locations. AWS has fulfilled their promise to Justin — three years later. * 🐍 Amazon announces new predictable pricing model up to 90% lower and Python Support moves to GA for CodeGuru Reviewer. If this goes down next week, blame Ryan.
Google Cloud Platform: So Pretty * 👸 Google is releasing an open-source set of JSON dashboards. This is super important. * 🏫 Google announces free AI and machine learning training for fraud detection, chatbots and more. We recommend you check these out. * 🦆 Google Clouds Database Migration Service is now generally available. Everything is so beautiful on paper. * 🔧 Google introduces request
On The Cloud Pod this week, the team is feeling nostalgic and a little nerdy, as you can see from the show title — a throwback to Serial Console and its ability to add a ton of characters when you didn’t want it to.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud, and Azure.
This week’s highlights * 🚨 Amazon should be singing a different tune. * 🚨 Google has astonished us all by actually sharing something interesting. * 🚨 Azure is the strict school principal that just canceled lunch.
General News: Justin Said It First * 🥇 VentureBeat predicts industry clouds could be the next big thing. Justin will take the royalties check anytime, VentureBeat.
Amazon Web Services: Please Don’t Keep It To Yourself * 🤷 Red Hat OpenShift Service on AWS is now generally available. Surprising because we don’t remember it going into beta. * 🔭 AWS Distro for OpenTelemetry adds StatsD and Java support. We’re glad to see the continued investment in OpenTelemetry. * 🤯 AWS DevOps Monitoring Dashboard solution is now generally available. The solutions library is a Rube Goldberg machine. * 👍 Amazon Lookout for Metrics is now generally available — perfect for Ryan, who has no machine learning experience. * 🎵 Amazon Elasticsearch Service announces a new Auto-Tune feature for improved performance and application availability. We wish Amazon would open source this. * 👼 AWS SSO credential profile support is now available in the AWS Toolkit for VS Code. Thank you, Jesus. * 🍎 Amazon is developing a chip to power the hardware switches that shuttle data around networks. Apparently Google and Apple are also doing this. * 🦇 Troubleshoot boot and networking issues with new EC2 Serial Console. Must be useful for someone, maybe the people using enclaves?
Google Cloud Platform: Blame Active Directory * 😊 Google wants customers to rethink their cloud migration strategy. Actually quite an interesting blog post — no, this is not sarcasm!
Disappointed not to see Amazon take the opportunity to increase its executive diversity with its new CEO.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 If Amazon was the royal family, this would be like Harry becoming King. * 🚨 Google found slugs in its lettuce and is not happy about it. * 🚨 Azure wants to shut The Cloud Pod up for good this time.
General News: Nothing Spicy * ☁️ Sysdig is releasing unified cloud and container security with the launch of Unified Threat detection across AWS cloud and containers. Interesting that it uses Cloud Custodian.
Amazon Web Services: No Longer Hiring * 🤯 Tableau CEO Adam Selipsky will return to Amazon Web Services as CEO. We did not see this coming. * 👂 Introducing Amazon S3 Object Lambda. They listened to us!
Google Cloud Platform: Slurm It Up * 👎 Google Cloud caps sales commissions as losses mount. This will remove the motivation to go after smaller deals. * 😊 Google announces a new method of obtaining Compute Engine instances for batch processing. We thought it was attacking our workloads but it actually wasn’t — our bad. * 🥔 Google is announcing the preview of its Network Connectivity Center. No potatoes, thankfully. * 🐌 Announcing the newest set of features for Slurm running on Google Cloud. Worst name ever. * 🦹♀️ Google announces A2 VMs are now generally available with the largest GPU cloud instances with NVIDIA A100 GPUs. Is this the computer version of scalping tickets? * 🤷 Google announces high-bandwidth network configurations for General Purpose N2 and Compute Optimized C2 Compute Engine VM families. We’d love to know what the technology is behind this.
Azure: Not Happy With The Cloud Pod * 🌎 Azure announces plans to expand the Azure Availability Zones to more regions. We’ll take credit for this one.
TCP Lightning Round ⚡ After a large amount of debate about who should win, Jonathan takes this week’s point, leaving scores at Justin (3), Ryan (3), Jonathan (5). Other headlines mentioned:
On The Cloud Pod this week, the team debate the merits of daylight savings and how they could use it to break things in a spectacular fashion.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon is injecting the fun back into the party. * 🚨 Google is going mission-critical, spare a thought for its employees. * 🚨 Azure has released a new storage defender to reduce the threat of storage exploitation.
General News: Back From The Dead * 👑 Docker CEO talks about their progress, product-led strategy, and coders as “kingmakers.” We’re not sure how solid that funding is but we’ll see how it goes when the renewals come around.
Amazon Web Services: So Many Faults * 💉 Amazon is launching the AWS Fault Injection Simulator (FIS) for controlled fault experiments on AWS workloads. We can’t wait for FIS to go wrong and start injecting faults where they don’t belong. * 💵 Amazon announces price reduction for S3 Glacier. We can hear the cash registers ringing in the background. * 🧔 Amazon is celebrating 15 years of Amazon S3 with “Pi Week” livestream events. It’s not a sentient being! * 🤗 Amazon gives customers an easy way to execute commands in a container running on ECS ec2 based instances or Fargate with ECS Exec. A little clunky to set up but it’s amazing! * 😂 Amazon announces end of life date for ECS-optimized Amazon Linux AMI. We’re predicting Amazon announces an extension announcement in January 2023! * 👍 Amazon is launching a new set of Graviton2 based instances for memory-intensive workloads. This sounds really good. * 🤑 Amazon is adding policy validation to IAM Access Analyzer. Can’t argue with the price, it’s been so helpful.
Google Cloud Platform: Yell At Us * 😡 Google is releasing a new service called Mission Critical Services (MCS). Meaning you get to yell at Google if it goes wrong.
Azure: Epic * 😺 Azure and AMD announce a landmark partnership in confidential computing evolution. Cool!
On The Cloud Pod this week, Jonathan’s brain is a little scrambled and he can’t remember when he last went out for dinner even though it was with Justin on Tuesday.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 The honey pot might be about to dry up for Microsoft's lawyers. * 🚨 If you need a headache to get out of dinner with the in-laws, read this. * 🚨 Google has finally started listening to the sage advice from The Cloud Pod.
General News: Burn, Baby, Burn * 🥺 Okta says it’s buying security rival Auth0 for $6.5 billion, sending its stock plunging. The company’s not telling us its plan so don’t panic just yet. * 🔥 OVH data center burns down knocking major sites offline. Brutal.
JEDI: Things Are Not Going Well * 🤣 With a $10 billion cloud-computing deal snarled in court, the Pentagon may move forward without it. We can’t wait to see what this has cost taxpayers.
Amazon Web Services: Bottom Of The Barrel * 👍 AWS Lambda has received four new trusted advisor checks. This is a real advantage! * 🤯 AWS Secrets manager now lets you replicate secrets across multiple AWS regions. This makes our brains hurt.
Google Cloud Platform: Just Listen To The Cloud Pod * 🔨 Introducing Apache Spark Structured Streaming connector for Pub/Sub Lite. Easy tools to make life easier! * 🎠 Google’s Cloud Healthcare Consent Management API is now generally available. Could be a Trojan horse. * 🙏🏻 Save the date for Google Cloud Next ‘21: October 12–14, 2021. Thank you, Jesus, it’s not nine weeks long! * 😐 Managing cloud firewalls at scale with new Hierarchical Firewall Policies. This is a terrible name.
Azure: Hot Potato * 💖 Scale your critical applications cost-effectively with Azure Disk Storage. Always love a good disk storage story. * 🤷♀️ Architect and optimize your internet traffic with
On The Cloud Pod this week, Peter is spending the next 12 hours in a rejuvenation chamber like a regular villain straight out of a James Bond film.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon is on a mission to replace humans so we can go on holiday permanently. * 🚨 Google is a bit early with the April Fools’ joke. * 🚨 Azure is, much to our surprise, ahead of everyone else for once.
Amazon Web Services: Battle Bots * 😞 Amazon announces Alexa Conversations is now generally available for voice app development. We’re still a bit disappointed in her voice — it would be nice to hear something a bit more natural. * 🍬 Amazon launches computer vision service to detect defects in manufactured products. Soon we’ll just be sitting around eating bon bons — we can’t wait! * 🎎 AWS Asia Pacific (Osaka) region now open to all, with three availability zones and more services. We think this is a reaction to the huge cloud growth in Japan. * 🏅 AWS DeepRacer League’s 2021 season launches with new Open and Pro divisions. Apparently it's gone virtual and is being dominated by experts.
Google Cloud Platform: A Bit Jealous * 👩✈️ Google introduces GKE Autopilot, a revolutionary mode of operations for managed Kubernetes. Autopilot makes it sound like an Oracle product. * 🤣 Google announces the Risk Protection Program to enhance trust in cloud ecosystems. Google wants you to pay insurance in case its cloud goes down… * 👍 Google extends BigQuery BI engine for faster insights across popular BI tools. Pretty cool! * 👏 New enhancements for Google Cloud Marketplace Private Catalog including Terraform support. This is pretty good for internal teams managing private catalogs.
Azure: Killing It * 🐑 Microsoft has announced a trio of new industry clouds. We think other providers will follow very soon. * 😬 Microsoft to establish the first datacenter region in Indonesia as part of
On The Cloud Pod this week, Jonathan has returned and is sitting in his garage letting it get darker and darker before he turns a light on. Gartner says low-code is growing!! NOOOOOO!
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 AWS is teaming up with TV to make hockey more exciting. * 🚨 Google is no longer stuck in the 90s. * 🚨 Oracle thinks it’s ruggedly handsome — it is not.
Follow Up: Somebody’s In Trouble * 🌞 SolarWinds hackers downloaded some Microsoft source code for Azure, Exchange and Intune. Intune is probably the most damaging — this is not good news for Microsoft.
General News: The Glowing Puck * 💲 Gartner is reporting that Low-Code development tool growth has grown 23% this year. Gartner, pay to play. * 🏒 AWS provides the National Hockey League with cloud, AI and machine learning services. It’s great to see computer tech adding to viewer engagement. * 👍 Hashicorp announces the general availability of the Terraform Cloud Operator for Kubernetes. It’s an interesting solution to a very hard problem.
Amazon Web Services: Everyone’s On Vacation * 😯 Amazon EC2 Mac Instances now support macOS Big Sur. Completely stunned by this, aren’t you. * 🎉 Amazon EC2 Auto Scaling now shows scaling history for deleted groups. This actually solves a small but annoying problem for Justin.
Google Cloud Platform: Jumping Back To 1994 * 👏 Google introduces schedule-based autoscaling for Compute Engine. Finally catching up to Azure and AWS, both of which have had this for a few years now. * 🔨 Google adds several new features to Google Cloud VMware Engines to support workloads moving from the cloud. We just want the VMware tools. * 🦖 Google launches Cloud Domains to make it easy to register and use custom domains within its platform. Should have had this a long, long, long time ago.
Azure: Copying Things That Are Good Ideas * 🤷 Introducing private Azure marketplace for simplified app governance and deployment. Apparently this is a t
On The Cloud Pod this week, Jonathan is getting his beauty sleep so you’ll have to make do with the comic stylings of Justin, Peter and Ryan.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Like The Very Hungry Caterpillar, Amazon is turning into a beautiful butterfly. * 🚨 Google is helping to monetize Jonathan's beauty sleep. * 🚨 It’s the end of the world, we can Azure you.
Amazon Web Services: The Weird Kid in Class * 🦋 AWS announces Amplify Flutter is now generally available. Get your flutter on in the cloud. * 👽 Amazon EKS now supports Kubernetes version 1.19. Weird use case, but OK. * 👏 AWS Direct Connect announces native 100 Gbps dedicated connections at select locations. No discount for more data — well done, Amazon.
Google Cloud Platform: Jonathan’s Money Maker * 🍰 Easily build Kubernetes applications that span multiple clusters with Google’s new multi-cluster services (MCS). Now you can have your cake and eat it, too! * 😴 Google announces general availability of Service Directory. Now Jonathan makes money while he sleeps. * 😐 Google announces 9TB SSDs to bring ultimate IOPS per dollar to Compute Engine VMs. Still not that exciting.
Azure: Lost in Space * 🔥 Azure announces Firewall Premium is now in preview. No more excuses for sticking with standard firewall protection. * 🤣 Microsoft will establish its next U.S. datacenter region in Georgia’s Fulton and Douglas Counties. Not only did Georgia go blue, they went Azure blue. * 👩🚀 Azure announces partnership with HPE and the upcoming launch of the Spaceborne Computer-2 (SBC-2). Also known as SkyNet. * 🧠 Azure has added the ability to backup Linux systems with Azure Backup. This is such a no-brainer; all cloud providers should have this.
TCP Lightning Round ⚡ Justin will have nightmares about supporting more than
On The Cloud Pod this week, The Team are on the brink and three more months of the pandemic will likely push the podcast over the edge into an abyss of garble that no one can understand.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon has a gender reveal party and introduces its latest bundle of joy. * 🚨 Google is eating croissants for breakfast. * 🚨 Azure is dangling a pair of juicy fruits in front of us.
Follow Up: The Mad Men Are Back * 🤔 Amazon announces its “Other” business segment, which consists mostly of its advertising business, has surpassed its “subscription services” segment. There’s speculation that Andy Jassy might split Amazon's advertising business out once he becomes CEO.
General News: Rolls Right Off The Tongue * 😒 Vantage, an AWS Console alternative, has acquired ec2instances.info. They better not mess it up!
Amazon Web Services: Undoing Your Hard Work * 👾 New Amazon Elastic Block Store Local Snapshots on AWS Outposts makes it easier to meet data residency and local backup requirements. It’s like playing a video game and building up your weapons, only to start from scratch when you move regions. * 👶 Amazon introduces CloudFront Security Savings Bundle. We appreciate the savings, but not sure about the bundle.
Google Cloud Platform: Our Buzzword Bingo Is On Point * 🙈 Google launches improved troubleshooting with Cloud Spanner introspection capabilities. We love these types of tools, except if they’re on SQL Server. * 🤷 Google launches Apigee X to help enterprises manage their digital transformation assets. What is it with X? What happened to 8 and 9? * 🤳 Google introduces real-time data integration for BigQuery with Cloud Data Fusion. For people who don’t want to read, they just want to see pretty pictures. * 🦘 Google introduces Assured Workloads Support. The Aussies will always be the best. * 🥐 The Dunant subsea cable, connecting the US an
It’s Peter’s washing night so please enjoy the soothing sounds of the odd spin cycle as we dive into the huge news coming out of Amazon on The Cloud Pod this week.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 America’s version of Queen Elizabeth has stepped down. * 🚨 Google is a bit late to the party but brings the ice so we forgive its team. * 🚨 Azure is trying to claim it came first but the chicken says otherwise.
Follow Up: A Bit Slack * 👉 Slack explains how the January 4th outage occurred. It was all Amazon’s fault. * 🥳 FogOps for Linux is now available via the AWS Marketplace. Congratulations on getting FogOps on the marketplace, Peter! * General News: It’s Earnings Season! * 🥜 Microsoft releases its earnings. This is nuts. * 😶 Alphabet also released its earnings. We hope all the money it’s investing in infrastructure and data centers pays off in the long run, because that’s a big loss. * 🤪 Amazon announces financial results and CEO transition. That’s some crazy profit. * 🙋♀️ Outgoing Amazon CEO Jeff Bezos addresses employees. But who will head AWS now?
Amazon Web Services: Bon Voyage, Bezos * 🤨 AWS launches multiple private marketplace catalogs for AWS organizations. Not a problem any of us have so not wowed by this. * 👎 AWS PrivateLink for Amazon S3 is now generally available. We like it but don’t like the pricing. * 👍 Amazon Macie announces a slew of new capabilities. Check out our sponsor OpenRaven, which is much better at solving the same issue and is much cheaper.
Google Cloud Platform: Stop Blaming Our Database * 😕 Google announces a CentOS 7-based Virtual Machine image to achieve optimal Central Processing Unit and network performance on Google Cloud. We had to look a few of these terms up. * 👏 Google introduces Cloud SQL Insight
It’s a Wednesday so things could be better, but spare a thought for the team as they battle Mother Nature on The Cloud Pod this week.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon is forking people off big time. * 🚨 Google wants to help you lose those pandemic lockdown pounds. * 🚨 Azure didn’t overwhelm anyone with its “problem.”
General News: The Elastic Kerfuffle * 🤣 Elastic blames Amazon for forcing it to change its licensing. One of the most ridiculous blog posts ever. * 🍽️ Logz.io looks to launch a true open-source distribution for Elasticsearch and Kibana. Everybody’s forking now. * 💀 AWS has also announced that it will also fork its project for a truly open source Elasticsearch. The beginning of the end for Elasticsearch. * 👏 Logz.io followed up its previous announcement by announcing it’s combining its efforts with Amazon. This is great news for the open-source community.
Amazon Web Services: Let’s Talk * 👍 AWS Lex has released a new console experience and new V2 APIs to make it easier to build, deploy and manage conversational experiences. We’ve played with it and it’s very nice. * 🤫 Amazon CloudWatch Agent now supports OpenTelemetry APIs and Software Development Kits. Could be a sign it’s about to make a lot of investments in OpenTelemetry and is moving away from CloudWatch. * 🚓 Amazon GuardDuty enhances security incident investigation workflows through new integration with Amazon Detective. Integrated security — we like it! * 😒 Amazon Chime SDKs for iOS and Android now support screen share. It’s great it has functionality that other apps have had from the start. * 🤩 Amazon ECS Agent v1.50.0 allows customers to execute interactive commands inside containers. This makes Justin’s life complete.
Google Cloud Platform: Making Peter’s Dreams Come True * 🤗 Google announces the general availability of its comprehensive
On The Cloud Pod this week, news has been a bit slow coming out of the Cloud Providers; the team suspects they might be curled up on the floor in fetal position after the events of last year.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon has gone to the gym over the holidays and is now kicking butt. * 🚨 Helping teach us the ways of the cloud, Google is. * 🚨 There’s nothing remotely funny about Azure this week.
General News: Ryan Doesn’t Want to Wear Pants * 🙄 Amazon has kicked controversial social media platform Parler off AWS. The multi-cloud people are going to be unbearable now. * 💌 Amazon defends its decision to suspend in response to Parler’s lawsuit. Most people don’t know Amazon sent Parler notices for months — it’s not like they weren’t warned. * 👎 F5 Networks to acquire edge-as-a-service startup Volterra for $500M. There’s so much buzzword lingo in this announcement, we suspect this service will lack substance. * 👒 Red Hat buys Kubernetes security startup StackRox. We’re surprised Google didn’t buy it. * 🔨 Pat Gelsinger is stepping down as VMWare CEO to replace Bob Swan at Intel. We think he has a very long road ahead to get Intel back on track.
Amazon Web Services: Family Time * 🤞 AWS announces Transfer Family now provides support for EFS file systems as well as S3. Would be nice if this would tie into Incognito or Simple Directory Service. * 😐 Amazon EMR now supports Apache Ranger for fine-grained data access control. Neat. * 🤷 Achieve faster database failover with Amazon Web Services MySQL JDBC Driver now in preview. Why not just re-resolve the DNS?
Google Cloud Platform: Ruby Red * 👌 Google Cloud Function is bringing support for Ruby, a popular, general-purpose programming language
On The Cloud Pod this week, it appears 2020 is not done with us yet and Ryan receives a mystery emergency alert to kick the show off.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
Open Raven, the cloud native data protection platform that automates policy monitoring and enforcement. Auto-discover, classify, monitor and protect your sensitive data.
Due to the pandemic and the cancellation of just about every in-person event, Justin has hundreds of stickers at his house that (his wife says) need to go. Head to The Cloud Pod store and use codes 100EPISODE or 2020SUCKS for 75% off.
This week’s highlights * 🚨 Amazon won’t be taking a holiday to China anytime soon. * 🚨 Google is tapping Linux users for new ideas. * 🚨 Azure is being annoyingly helpful to the healthcare industry.
Amazon Web Services: Ready For Battle * 🤷 AWS Certificate Manager is now compliant with FedRAMP, the Federal Risk and Authorization Management Program. What exactly makes up the compliance requirement? We’re not sure. * 🐼 Amazon Web Services launches appeal after losing $12-million AWS trademark war in China to local biz Actionsoft. You know who should be suing everyone? The American Welding Society, which has been around since the 1800s. * 😮 Amazon SQS announces tiered pricing for monthly API requests. Discounts are good but we’re surprised they’re using tiered pricing. * 😩 Amazon Elastic Container Service launches new management console. We want to like this but it sort of just aggravates us.
Google Cloud Platform: Bowing to Demands * 👏🏽 Google announces a new tool to mimic the behavior of tail -f which displays the contents of a log file to the console in real time. Thank you Linux users for demanding this!
Azure: Opt-in * 📎 Introducing the Azure Health Bot, an evolution of Microsoft Healthcare Bot with new functionality. On the one hand, this is super helpful. On the other, it’s Clippy (the annoying paper clip assistant) and dear God, go away! * 🕵🏽♂️ Microsoft promises 99.99% uptime for Azure Active Directory from April 1. Reading between the lines, could there be a replacement for Active Directory coming for the cloud? * 👍 Azure Application Change An
On The Cloud Pod this week, the team looks back on the incredibly weird year that was 2020 and how all we want is to give each other a hug (but we don’t because social distancing is important).
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Open Raven, the cloud-native data protection platform that automates policy monitoring and enforcement. Auto-discover, classify, monitor and protect your sensitive data.
This week’s highlights * 🚨 Amazon hurts Google’s feelings with its harshly worded message. * 🚨 Google is tapping into its inner dictator by vying for world domination. * 🚨 Azure wants you to know it made something cheaper.
Recapping the Shit Year That Was 2020 The Predictions That Were Made for 2020 * Justin: Amazon and Microsoft will work hard to compete with GKE. * Peter: Kubernetes workloads will double in the next year. * Jonathan: Amazon will open data centers across growing African economies, RISC-V based RISC instances will release (and Slack will be acquired this year for sure). * No One: A global pandemic and Ryan would join the podcast (coincidence?).
Favorite Announcements of 2020 Ryan: * AWS Serverless host and run applications, bringing it closer to what developers need. Tooling, savings plan * Covid-19 response, from each vendor, from public data lakes, responding to capacity needs, database of research and overall support of WFH * A big shift for Container Ecosystems, Split from enterprise/developer, Docker.com on downward trend, download limits
Peter: * Google’s creation of the Open Usage Commons for trademarks * Amazon Braket * WFH trend — which may be permanent
Jonathan: * Solarwinds Hack, and the risk of a supply chain hack occurs * Confidential Computing and the enclave needs.
In its final week, re:Invent continues to deliver a slew of announcements, which are captured on The Cloud Pod this week. It came and went quickly for the team unlike Google Cloud Next, which seemed to go on forever.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Open Raven, the cloud native data protection platform that automates policy monitoring and enforcement. Auto discover, classify, monitor and protect your sensitive data.
This week’s highlights * 🚨 Amazon and Microsoft are acting like children that need to be separated. * 🚨 Infrastructure nerds are rejoicing at re:Invent. * 🚨 You can spend while you sleep with Google.
General News: Everyone's Favorite Topic * 🍑 A heavily redacted version of AWS's latest protest against Microsoft and the JEDI contract has been unsealed. Trump made them do it. * 🤗 U.S. Treasury and Commerce Department communications were reportedly compromised by a supply chain attack on security vendor SolarWinds. Go hug a security team this week.
Amazon Web Services: The Presents Keep On Coming re:Invent Continued * 🏆 AWS launches the VPC Reachability Analyzer to measure reachability between two endpoints without sending any packets. Anything that makes life easier is a win. * 🤓 The re:Invent infrastructure keynote lacked announcements but gives insight into how AWS thinks about data centers. Old school infrastructure nerds, take note of this one. * 🤩 AWS announces the general availability of Amazon EMR on Elastic Kubernetes Service. EMR fans will be super happy about this. * 😲 AWS has released an Infrastructure Code Template generator to make it easy to start using Spot Instances. You can go straight to production now, no testing! Just kidding… Please test. * 👍 Amazon EBS reduces the minimum volume size of Throughput Optimized HDD and Cold HDD Volumes by 75%. This is kind of nice! * 👻 Amazon EC2 announces new network performance metrics for EC2 instances. Troubleshooting these is a nightmare, so this will be great. * 👼 AWS has expanded the capability of the AWS transit Gateway for SD wan with the new AWS Transit Gateway Connect. Thank you, Jesus!! * 😃 Amazon EMR Studio makes it e
This week on The Cloud Pod, the team admits defeat and acknowledges they are not experts in machine learning. Joining them in that club is the rest of us.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Open Raven, the cloud native data protection platform that automates policy monitoring and enforcement. Auto discover, classify, monitor and protect your sensitive data.
This week’s highlights * 🚨 Amazon is helpfully pointing out all your mistakes. * 🚨 Google knows you have deep pockets and wants a piece. * 🚨 Microsoft is really bad at keeping secrets.
General News: Jonathan Called It * 💀 Salesforce has acquired Slack for $27.7 billion. We’re hoping Chatter will die a horrible death now.
Amazon Web Services: Error 404 😔 Amazon explains the Thanksgiving Kinesis outage that occurred in North East Virginia. We feel bad for the Ops team that had to support this. re:Invent Continued * 💪 Amazon adds stronger Read-After-Write consistency to S3. A really fantastic technical feat. * 👍 Amazon announces S3 Replication support for multiple destination buckets. Nice and simple! * 🤩 Amazon S3 Replication now has the ability to replicate data from one source bucket to multiple destination buckets. Super excited about this! * 😲 Integrate Amazon Honeycode with popular SaaS applications, AWS services and more. It’s finally usable now. * 🌳 Amazon announces new AWS Region is in the works for Melbourne, Australia. It will also use 100% renewable energy, which is cool. * 🤪 Fully serverless batch computing with AWS Batch Support for AWS Fargate. Batch is a weird service to begin with. * 😕 Amazon debuts Trainium, a custom chip for machine learning training in the cloud. We’re confused by this one. * 🏥 Amazon HealthLake stores, transforms and analyzes Health Data in the Cloud. Machine learning, while confusing, is great for the healthcare industry. * 🥶 Amazon launches Lookout for Metrics, an anomaly detection service for
Santa arrived early and he brought all the goods with him to The Cloud Pod this week. The team dives into all the big announcements from AWS re:invent 2020.
A big thanks to this week’s sponsor: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon flips the bird at Microsoft with its Babelfish announcement. * 🚨 AWS is angling for a free Jeep Wrangler with its new service. * 🚨 AWS is helping customers get out of the sticky situation they’re in and don’t know it.
Amazon Web Services: Thankfully They Didn’t Ruin Our Predictions * 🌊 Amazon launches managed workflows for Apache Airflow to simplify data processing pipelines. Interesting to see it giving some alternative options. * 🦃 AWS Lambda now has Code Signing, a trust and integrity control to confirm code is unaltered and from a trusted publisher. Not a nice way to start Thanksgiving if you are Palo Alto. * 🆗 Amazon announces centralized account access management of AWS Single Sign-On and Attribute-based access control. Has a few rough edges. * 🤗 Multi-Region Replication is now enabled for AWS Managed Microsoft Active Directory. We’re so glad this is finally here. * ♻️ Amazon announces reusable building blocks called modules to define infrastructure and applications in AWS CloudFormation. Amazon is jumping on the reusable elements bandwagon with this one. * 👮 AWS Security Hub integrates with AWS Organizations for simplified security posture management. Basically a centralized security hub.
AWS Elasticsearch Announcements: * Amazon Elasticsearch Service announces support for Elasticsearch version 7.9 * Amazon Elasticsearch Service now supports anomaly detection for high cardinality datasets * Amazon Elasticsearch Service introduces Piped Processing Language (PPL) * Amazon Elasticsearch Service announces support for Remote Reindex
This week on The Cloud Pod, the team used their slightly cloudy crystal balls to share their predictions for Re:Invent 2020. They hope Amazon doesn’t ruin them before the event.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon spoils the prediction party by revealing a new product just before Re:Invent. * 🚨 Google is making sandcastles by itself in the sandbox. * 🚨 Azure is smart enough not to announce anything exciting right before Amazon’s big day.
Amazon Web Services: Crushing Hopes and Dreams * 💡 Amazon Lightsail lets developers easily deploy containers in the cloud. This is like the cloud version of candy-flavored tobacco — somebody out there will be excited. * 📸 Amazon announces visual data preparation tool AWS Glue DataBrew. Really cool — we wish they’d created this sooner! * 👏 AWS Key Management Service now supports three new hybrid post-quantum key exchange algorithms. We’re just happy that the defense is ahead of the offense this time. * 😡 Amazon launches AWS Network Firewall, a highly available, managed network firewall service for VPC. Peter is angry that Amazon killed one of his Re:Invent predictions. * 👓 Introducing Amazon S3 Storage Lens for organization-wide visibility into object storage. We think the dashboard is built on years of customer complaints, not experience.
Re:Invent Predictions Prediction rule: If it’s already been officially announced by Amazon, then it doesn’t count. It needs to be in the rumor mill and somewhat specific. * Peter + Integration between Sumerian and Chime/Slack (messaging service) for virtual in-person meetings + Major upgrade to CloudWatch/Logs/GuardDuty/CloudWatch Events (SIEM) but an actual SIEM product. Will have its own name or does something to GuardDuty + Robot SDK for tight integrations into AWS Cloud * Jonathan + Serverless graph database + Live migration for some instance types between EC2 hosts so maintenance events don’t cause the same level of damage + Detailed discussion of their use of IOT and AWS services for COVID
This week on The Cloud Pod, the team is getting ready to share their predictions for re:Invent, and that may or may not involve greasing the palms of some Amazon employees.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon is becoming a connoisseur of international cuisine with its new region. * 🚨 Google is borderline nefarious in the scientific community. * 🚨 Azure adds a long overdue feature.
Amazon Web Services: Spicing Things Up * 🍛 AWS announces the new Hyderabad region in India will open in mid-2022. We’re surprised at how long this took to happen. * 🕒 AWS launches managed messaging service Amazon MQ for Rabbit MQ. Only took three years of Justin whinging. * 🤷 Amazon now allows customers to proactively manage the EC2 Spot instance lifecycle using the new capacity rebalancing feature. Not sure this needed a whole blog about it. * 👌 AWS announces AWS Gateway Load Balancing for easy deployment, scalability and high availability for Partner Appliances in the cloud. Thanks for helping us out, Amazon! * 🖌️ AWS makes it easier to export DynamoDB table data to S3 with no code writing required. At lots less Lamda spackle, we like it. * 🛁 AWS announces a full set of features across the storage family as part of AWS Storage Day 2020. Buckets, buckets and more buckets.
Google Cloud Platform: Doing What It Does Best * 🤡 Google Cloud SQL now supports Postgres 13. Next up, Google announces deprecation of Postgres 13… Just kidding. * 💖 GCP launches a unified console for document processing with Document AI platform. For anyone who hates data entry, you’ll love this! * 😲 Google is launching a public preview of a suite of fully managed AI tools designed to solve medical challenges. Google has been accused of us
While waiting on tenterhooks to find out who will win the U.S. presidential race, the team welcomed guest Jacques Chester to The Cloud Pod this week.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
Cloud Academy, which provides an intuitive and scalable training platform to meet teams wherever they are along the cloud maturity curve. Use the code THECLOUDPOD for 50% off its training platform.
Manning Press is offering a 40% discount on any Manning Publication, and we highly recommend Knative in Action by guest Jacques Chester. Use the code PODCLOUD20 to receive 40% off; additionally, the first five people who retweet this episode from the official @thecloudpod1 twitter account will get a free copy.
This week’s highlights * 🚨 AWS will be enjoying fondue in Switzerland. * 🚨 Google is clearing out the old junk in the attic. * 🚨 Dr. Microsoft is now taking appointments.
General News: Money, Money, Money * 🙄 Microsoft has reported its earnings for the first fiscal quarter of 2021. Microsoft is over 2020 already. * ☠️ Google’s parent company Alphabet crushed expectations for both earnings and revenue in its third-quarter earnings results. This could be a good sign it’s not planning on killing Google Cloud just yet. * 💪 Amazon reports $96.1 billion in Q3 2020 revenue. Overall a pretty strong quarter!
Amazon Web Services: Spend Or Save? * 🔐 Amazon launches AWS Nitro Enclaves to carve out isolated environments on any EC2 instance that is powered by the Nitro System. A great increase in security for no additional cost. * 🎉 Customers can now use Jira Service Desk to track operational items related to AWS resources. This is great for the start-ups and smaller organizations that are using Jira! * 🤗 Amazon announces new Application Load Balancer Support to make it easier to use gRPC with your applications. Another great feature! * 🤤 New AWS Europe region will allow customers to run their applications and serve end-users from data centers located in Switzerland. Happy for Europe but can we get more in the U.S.? * 🤢 AWS delivers up to 2.5x the deep learning performance with new GPU-Equippe
On The Cloud Pod this week, the team discusses the conspiracy theory surrounding media coverage of daylight savings and continues counting down to re:Invent.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon sells a whole bunch of stuff on its website. * 🚨 Google is nosy and wants people to know what files you’ve been looking at. * 🚨 Azure wants people to think more with its new knowledge center.
Amazon Web Services: Getting Excited for re:Invent * ⛰️ Jeff Barr shares how AWS helped to make Prime Day a reality for its customers. Congratulations to the Amazon Ops and Dev teams for this amazing feat. * 🎀 AWS Global Accelerator announces the ability to override destination ports used to route traffic to an application endpoint. Pretty neat! * 🏗️ AWS is launching AWS Distro for Open Telemetry in preview. We’re excited to see what this builds out to become. * 🤪 AWS launches fully managed publishing/subscribing messaging service enabling message delivery to a large number of subscribers. This is great and we already have use cases for this. * 🏆 Amazon introduces the AWS Load Balancer Controller to simplify operations and save costs — a huge win for anyone using EKS today. * 🤷 AWS CloudFormation now supports increased limits on five service quotas. Sounds good unless you’re trying to make smaller CloudFormation templates.
Google Cloud Platform: A Bit Confused * 🥔 GCP is introducing new Scale-in controls for Compute Engine, to prevent the autoscaler from reducing a managed instance group size too far. We’re a bit confused by the term “Scale-in.” * 🔍 GCP improves security and governance in PostgreSQL with Cloud SQL. Great for companies that are highly audited. * 😺 Google updates Firebase with new emulator and data analysis tools. Really great stuff!
Azure: Busy Building Services It Promised For JEDI * 🥳 Microsoft announces multiple
On The Cloud Pod this week, the team acknowledges the very real issue of canine confusion as a result of everyone wearing face masks.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon is in the Halloween spirit with its tricky new feature. * 🚨 Google is solving a potentially nonexistent problem for retailers. * 🚨 Microsoft is sending Azure into spaaaaaaaaaaace to power satellite projects.
General News: All About Hash(iconf) * 🤔 HashiCorp Consul is now available in public beta while Vault is available in private beta. We’re hesitant to trust anything from HashiCorp. * 💔 Terraform 0.14 is now available in beta and includes feature improvements in security, visibility and stability. Justin looks forward to the upgrade that breaks everything later this year. * ❄️ HashiCorp Consul 1.9 introduces new service mesh visualization tools. Pretty minor but cool! * 😄 HashiCorp launches Boundary for simple and secure remote access based on trusted identity. We see huge potential in this. * 🗡️ HashiCorp launches Waypoint, a new open source project that provides developers a consistent workflow. These types of announcements are a dagger through Ryan’s heart. * 📦 HashiCorp introduces Consul Terraform Sync, a new tool for automating network infrastructure. Really powerful but really packed in a way we don’t understand.
Amazon Web Services: Handy * 👍 Amazon launches Cloudwatch Synthetics Recorder, a Chrome browser extension, to help monitor endpoints and APIs. We hope this does better than others we’ve tried in the past. * 🗿 Amazon announces better cost-performance for Amazon Relational Database Service databases. Has some rough edges but once you overcome them, this is rock solid. * 🤗 Amazon Aurora now enables dynamic resizing for database storage space. Nice that you’ll now only pay for the storage you actually use! * 🙏 Amazon announces AWS Budgets Actions to reduc
On The Cloud Pod this week, Peter turns into an old man in his yard, yelling at cloud providers.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 The big cloud providers must not tell lies about their cloud customers. * 🚨 Google keeps us guessing if features will survive after the Preview. * 🚨 Microsoft launches the world’s smallest Machine Learning degree.
General News: An Expensive Gimmick * 🤡 Microsoft, AWS and others boast of exclusive cloud customers that aren’t actually exclusive to them. At the end of the day, being “all in” is a gimmick. * 💰 Palo Alto Networks, Inc. announced it’s adding four new cloud security modules to Prisma Cloud. All for the low, low price of a lot of money. * ❓ Red Hat, Inc. ties Ansible automation to Kubernetes cluster management to improve automation in cloud-native infrastructure. The only thing that’s going to make Kubernetes easier to manage is a whole bunch of Ansible catalogues and code that you don’t understand. * 😡 Spinnaker-as-a-service startup Armory raises $40M in new funding. This makes us all cranky — these giant one-stop solutions are not the answer.
Amazon Web Services: Strangely Quiet * 💚 Amazon EventBridge now supports Dead Letter Queues, making event-driven applications more resilient. We love this! * 🏇 Amazon EKS now officially supports Kubernetes version 1.18. We’re taking bets on when version 1.19 comes out.
Google Cloud Platform: Apply Sunscreen * 🧯 Google announces that all new GCP products will launch in Preview or General Availability. Tread carefully here — we’ve been burned by previews before where features don’t make it into General Availability. * 😕 Google launches support across Google Cloud for buildpacks to easily create container images. Don’t be fooled: Problems you had with Docker files
On The Cloud Pod this week, Ryan is shocked the rest of the team managed so well without him while he was on vacation.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Progress is tapping its inner Freddy Kruger after acquiring Chef. * 🚨 AWS is soothing the burns of many with its Compute Optimizer. * 🚨 Google is behind the eight ball with the launch of its healthcare API.
General News: On The Chopping Block * 💔 IBM is splitting itself into two public companies to focus on high-margin cloud computing. We’re not sure about this strategy so we’ll keep an eye on this one. * 😃 Google will give up direct control of the Knative cloud open-source project. We’re glad to see this is getting closer to a resolution. * 👩🍳 Business application platform Progress is making job cuts at recently acquired enterprise automation technology company Chef. The cuts included part of the Chef engineering team — when you’re buying a product company, that doesn’t seem like a good play.
Amazon Web Services: In Happier News * 👍 Amazon S3 on Outposts expands object storage to on-premises environments. If only this had existed a year ago! * 🥳 AWS Systems Manager now enables developers to view, author and publish Automation runbooks directly from Visual Studio Code. We like this! * 🥂 Amazon launches several new features with Redis 6 compatibility to Amazon ElastiCache for Redis. These enhancements are making it well on its way to being useful on a big project. * 💲 Amazon SageMaker leads the way in machine learning and announces up to 18% lower prices on GPU instances. That’s a huge price cut that we think is great! * 🚔 Three new security and access control features are now available in the Amazon S3 update. This is a big improvement for customer experience. * 🤓 AWS launches a new Identity and Access Management (IAM)
Your hosts have an action-packed episode in store for you on The Cloud Pod this week, and Ryan is back after surviving the wild Oregon forest.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon is helping you figure out where your money is going. * 🚨 Google isn’t wowing anyone with its AI Platform Prediction improved reliability. * 🚨 Azure has some underwhelming improvements you should read about.
General News: This Is What Happens When You Go On Vacation * 🛍️ VMware, Inc. is acquiring SaltStack, Inc. to enhance its vRealize cloud management software suite. It’s interesting that this comes only a few weeks after Chef was acquired.
Amazon Web Services: Always Comes Through For Us * 😲 AWS launches Glue Studio, which provides a simple visual interface to compose jobs that move and transform data and run them on AWS Glue. Surprised it wasn’t just an integration with Visual Studio Code. * 🤗 AWS Backup now supports application-consistent backups of Microsoft workloads. This is not the cloud way to do it. * 🔐 AWS Security Hub has released 14 new automated security controls for the AWS Foundational Security Best Practices standard. Typical Amazon — gives you a control that costs you more money. * ⚠️ Preview the Anomaly Detection and alerting now available in AWS Cost Management. It’s great to have these features for those weird quirky things that can happen when you’re spending money. * 😺 Usability improvements for AWS Management Console are now available. Some of us are super grumpy with this and others super happy, so up to you to decide! * 🙊 AWS backtracks on plans to block old-style S3 paths. You now have some unknown time period plus a year to sort this out. You’re welcome?
Google Cloud Platform: The Detectives On The Case * 🎈 Cloud Run for Anthos now includes an events feature allowing customers to easily build event-driven systems o
On The Cloud Pod this week, your hosts eagerly await next week's Google product announcements so they can update their old phones.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * When the girls get coding!. Join us on your screens, Oct 13, for the live@Manning “Women in Tech” conference to celebrate the rising movement of women in technology. http://mng.bz/MolW
This week’s highlights * 🚨 Amazon is helping stop the insanity with patching. * 🚨 Google is tired after its event but has still managed to give us new tools. * 🚨 Microsoft’s new data center is an igloo in the desert.
Amazon Web Services: Do the Work For Us * 🦝 Amazon API Gateway enhances the security of APIs to protect data from client spoofing and man-in-the-middle attacks with mutual TLS support. Twice as nice and great for the financial industry! * 🕵️♀️ Amazon Detective now analyzes IAM role sessions to assist security analysts in diagnosing issues and understanding their root cause. The Detective is on the case! * 🦥 Amazon CloudWatch Agent is now Open Source and included with Amazon Linux 2. Not really a fan of doing a multi-billion dollar company’s job... * 🧩 AWS Security Hub now supports viewing patch compliance findings across AWS accounts. Now the question is, do people shadow patch so no one knows they’re out of date? * 🏛️ AWS Perspective is a new AWS Solutions Implementation that helps customers build detailed architecture diagrams of workloads. Be wary of how much this will cost to run. * 🌊 Three new AWS Wavelength Zones on Verizon’s 5G Ultra Wideband network are now available in Atlanta, New York City and Washington, D.C. With COVID shutting everything down and more things going online, this tech could be amazing.
Google Cloud Platform: Blue Screen Of Death * ⚰️ Google Cloud makes it easier to manage Windows Server VMs. Nice — it’s a tool that gives you a p
On The Cloud Pod this week, your hosts just want to be wowed and Ryan is off motorcycling somewhere in the desert.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * When the girls get coding!. Join us on your screens, Oct 13, for the live@Manning “Women in Tech” conference to celebrate the rising movement of women in technology. http://mng.bz/MolW
This week’s highlights * 🚨 Fighting words from Amazon over JEDI loss. * 🚨 Microsoft has gone to crazy town with their AWS connector pricing. * 🚨 Oracle taps their inner millennial to win the Tik Tok U.S bid.
General: A Bit Picky * 💰 Business App Platform Progress will acquire automation technology company Chef for $220 million. That’s a bargain price when you look at their recurring revenue. * 🥇 Pentagon reaffirms Microsoft as winner of $10B JEDI cloud contract. Nobody says the government is the most efficient at doing anything so picking the second best cloud vendor is unsurprising. * ⚔️ AWS has responded to the Pentagon reaffirmation of Azure with a harshly worded blog post. Well, life’s just not fair. * 🥳 Foghorn Consulting (sponsor alert!) are teaming up with Hashicorp and sponsoring a virtual Q&A with Kelsey Hightower on September 24. Head to The Cloud Pod Slack page after to discuss!
Amazon Web Services: You’ll Need Some Pain Relief * ☁️ AWS named Cloud Leader in Gartner’s Infrastructure & Platform Services Magic Quadrant. Gartner, are you listening to The Cloud Pod? * 👍 Amazon CloudFront now supports Transport Layer Security v1.3 for improved performance and security. Good move for privacy, but will cause a lot of pain. * 👓 Amazon CloudWatch now monitors Prometheus metrics to reduce monitoring tools needed for application performance degradation and failures. Might be worth the money — we’ll see. * 🛒 Bezos’s likely Amazon successor is an executive made in Bezos’s image. Considering the source, are they floating this idea to see how people react? * 🚀 AWS turns its
On The Cloud Pod this week, your hosts introduce the idea of plaques to commemorate a feature suggestion becoming a product.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * When the girls get coding!. Join us on your screens, Oct 13, for the live@Manning “Women in Tech” conference to celebrate the rising movement of women in technology. http://mng.bz/MolW
This week’s highlights * 🚨 Active Directory just will not die. * 🚨 Someone is excited about Google’s Data Fusion pipelines. We just don’t know them. * 🚨 Azure gets features that AWS and Google already have.
General: Did You Do Your Homework? * 💀 Former Google engineer Steve Yegge resurrects his blog to explain why Google’s deprecation policy is killing user adoption. We’re still bitter about Google Reader. * 🎈 The Cloud Pod is sponsoring the Rust Conference and Women in Tech conference. We’re super excited about both of these conferences and supporting more women in the technical world.
Amazon Web Services: So confused * 🎮 AWS launches second Local Zone in Los Angeles for customers requiring very low latency. This caused massive confusion when they launched the first one as they already had a localized region concept they forgot about. * ⚰️ Connect to AWS Directory Service for Microsoft Active Directory seamlessly with new AWS Linux feature. No one has jumped on board with killing Active Directory yet. Someday we’ll get there. * 😕 AWS now lets you log all Domain Name System queries to understand how your applications are operating. We don’t really know why you would want this (except maybe Jonathan). * 🤗 AWS launches Bottlerocket to improve security and operations of containerized infrastructure. Really a joy to set up and makes you feel really secure, without needing a therapist. * 🏆 AWS Site-to-Site now supports Internet Key Exchange that allows customers to connect to other cloud providers. Like Superman in disguise, there’s more to this under the surface. * 👍🏽 Publish and deliver messages with
Your hosts kick off this week’s episode of The Cloud Pod by discussing the elephant in the room… the great Google outage.
A big thanks to this week’s sponsors: * Commvault is data-management done differently. It allows you to translate your virtual workloads to a cloud provider automatically, greatly simplifying the move to the cloud or your disaster recovery solution to the cloud. * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon gives customers the opportunity to spend lots of money with them. * 🚨 Your hosts sit on the fence discussing Google’s new platform. * 🚨 Azure gets features everybody else already has.
General: The Great Google Outage * 🤷 Google explained how and why big chunks of its cloud crashed last week — turns out it broke itself. Google didn’t tell us who broke it because developers shouldn’t be publicly shamed... although they did break Google. That’s pretty bad.
Amazon Web Services: Dollar Bills * 👍 Amazon introduced the newest AWS Heroes who go above and beyond to share AWS knowledge and teach others. It’s great to see friend of the show, Ian McKay, recognized for his awesomeness. * 👮 AWS Firewall Manager now supports security groups on Application Load Balancers and Classic Load Balancers. Slowly but surely, it’s becoming the tool we’ve always wanted. * 🖇️ Amazon launches new API Gateway to manage business rules around how data is created, stored and changed in AWS services. We think this is a complete rewrite due to the fact they’re having to reimplement integrations. * 🏗️ AWS Controllers for Kubernetes is a new tool that makes it simple to build scalable and highly-available Kubernetes applications. We’re pretty impressed by the controller which centralizes your deployment. * 🕺 AWS releases the latest update to Provisioned Input/output Operations Per Second (IOPS) allowing users to dial in the level of performance that they need. Amazon now gives you the opportunity to give them more money. How nice!
Google Cloud Platform: To Be or Not To Be * 🔨 Google announces a number of improvements to log storage and management for Cloud Logging. We feel mixed emotions regarding these improvements. * 🚀 Google launches new Dataflow Flex template capable of publishing unlimited high-volume JSON messages to a Google Cloud Pub/Sub topic
Your hosts set right what once went wrong in this week’s quantum episode of The Cloud Pod.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Commvault is data-management done differently. It allows you to translate your virtual workloads to a cloud provider automatically, greatly simplifying the move to the cloud or your disaster recovery solution to the cloud. * live@Manning: Sign up for RustConf and Manning's Women in Tech conferences here.
This week’s highlights * 🚨 Amazon and Rackspace may be growing closer soon. * 🚨 Your hosts may or may not know how quantum computing works. * 🚨 Google is now available for 35 more minutes out of the month.
General: High Stakes * 💰 Reuters reported that Amazon is looking to acquire a stake in cloud infrastructure and services company Rackspace Technology. It is unclear exactly how much of the company Amazon may buy.
AWS: A Discrete Quantity of Computers * ⚛️ You can now run Amazon Braket on real or simulated quantum chips. We’ll try to explain quantum computing to you if we ever understand it ourselves. * 🧏 AWS Step Functions has been updated to Amazon State Language. Alright, let’s learn this thing the hard way! * 🔒 AWS Security Hub Automated Response & Remediation is now generally available. It’s an old architecture, but cool to see formalized. * 🥉 The new Distributor capability of AWS Systems Manager installs and manages third party agents, and that’s pretty cool. * 🔘 AWS Fargate for Elastic Kubernetes Service and Elastic Container Service now supports Elastic File System. It’s the interface that really makes it work. * 🖥️ Amazon Elastic Container Service now supports EC2 Inf1 instances. * ✍️ Serverless icon Ben Ellerby wrote an article about SLS-Dev-Tools for Serverless on the AWS Open Source Blog. If you’re doing a lot of serverless work, we recommend giving this one a read. * 🆓 Application and Classic Load Balancers now support
It’s a new week, and that means you can be sure that Google Next is still going on… and of course, we’ve got a new episode of The Cloud Pod.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Commvault is data-management done differently. It allows you to translate your virtual workloads to a cloud provider automatically, greatly simplifying the move to the cloud or your disaster recovery solution to the cloud. * live@Manning: Sign up for RustConf and Manning's Women in Tech conferences here.
This week’s highlights * 🚨 Foghorn has two new solutions we’d love for them to advertise with us. * 🚨 Azure advances the open-source front. * 🚨 Oracle wins the 4th place medal in the VMware race. What would a 4th place medal be — aluminum?!
JEDI: Wait and See * ⏱️ The Department of Defense has been granted an additional month to issue its remand decision. Neither Amazon nor Microsoft have objected to the delay.
COVID-19 * 💉 AWS is supplying Moderna with the computing as they work on their COVID-19 vaccine. Our deepest gratitude to the 30,000 human subjects in the phase 3 trials.
AWS: Brought to You by Foghorn * 📶 The AWS Wavelength 5G partnership is now available in Boston and San Francisco. Inevitably though cloud platforms, like the iphone, will need to break free from their provider-locks. * 📯 TCP sponsor Foghorn has developed VPC-In-A-Box℠ for Amazon VPC creation and management, and the Fog360 Security security analysis and visualization service. Send all your questions our way! * 🕸️ The new AWS App Mesh is a service mesh that features a new default mesh configuration. It’s an interesting concept for sure but it might not be for the best. * 💰 AWS Glue 2.0, now generally available, starts jobs ten times faster and has one tenth the minimum billing time. Apparently this is enough to make people like Glue!
Google: YouTube Tutorials * 📋 An International Data Group study<!--
-->
It’s an unexpectedly short and sweet conference week on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Commvault is data-management done differently. It allows you to translate your virtual workloads to a cloud provider automatically, greatly simplifying the move to the cloud or your disaster recovery solution to the cloud.
This week’s highlights * 🚨 Alphabet and AWS release their first all-pandemic quarterlies. * 🚨 Google leverages their machine learning horsepower. * 🚨 You can get your kicks on our Route 53 console rant after the lightning round.
General: Growth Mindsets * 🔻 For the first time in its 16 years as a public company, Alphabet’s quarterly sales have dropped. This is of course due to pandemic-related macroeconomic effects. It will be interesting to see if the ad revenue business model is changed long-term. * 🔺 Despite being less than anytime in the last two years, Amazon reported AWS revenue up 29%. The retail end of Amazon is faring even better, with sales up 43% in North America.
COVID-19 * 🤝 Google Cloud AI and Harvard Global Health Institute have partnered to create the COVID-19 Public Forecasts model. You can query the forecasts for free in BigQuery or download as CSV.
AWS: Accepting Applications * 💲 Anomaly and threat detection for Amazon Simple Storage Service is coming to Amazon GuardDuty at an 80% discount. You can get a 30 day free trial of the improved and affordable service even on accounts already enabling GuardDuty. * 📥 The new AWS Community Builders Program is now open for anyone (to apply to). If you’re as interested as we are, be sure to sign up before September 15. * 💾 Amazon Simple Storage Service resources can be found in AWS Toolkits for Visual Studio Code using AWS explorer view. Tools like this that make things easier on developers are a good investment for AWS. * 📋 AWS CodeBuild now supports Test Reporting for code coverage. This will go a long way to help CodeBuild catch up to some of the more mature options on the market. * 🔒 AWS Security Hub has released
Ian Mckay fills in for Jonathan on this week’s double-stuffed episode of The Cloud Pod.
A big thanks to this week’s sponsor: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Commvault is data-management done differently. It allows you to translate your virtual workloads to a cloud provider automatically, greatly simplifying the move to the cloud or your disaster recovery solution to the cloud.
This week’s highlights * 🚨 A string of attacks deletes, but does not leak, unsecured databases. * 🚨 Cloudfare’s Matthew Prince plans to be the next top dog of data. * 🚨 Following the eight weeks of Next’ 20 we’ll get three weeks of Re:Invent.
General: Cat Got Your Data? * 💹 It’s earnings season and revenues are up for Azure, but for whatever reason Azure isn’t happy with it. * 🌊 Aqua Security announced Aqua Wave and Aqua Enterprise. Check out our interview with Liz Rice for more. * 😼 The rash of automated “Meow” attacks has deleted at least 3,800 databases. The deleted text is replaced with random text and the word “Meow”, hence the name. And deleting unsecured databases does keep it from being leaked... * 🥇 Matthew Prince of Cloudflare believes their new Workers Unbound platform will beat the big three providers on performance and price. Good luck making money on those margins.
AWS: Remote Viewing * 📅 It’s official: Re:Invent will be all digital this year. Not only that, but it will run for three weeks starting November 30. * 🗺️ AWS’s 77th availability zone will also be their fourth in the Seoul Region. * 📹 The new Amazon Interactive Video Service allows you to integrate live video to your apps and websites. Doesn’t seem like there’s much difference from MediaLive. * 🆕 The Cloud Development Kit (CDK) for Terraform and the CDK Pipelines construct library for AWS CDK are now in preview. * ☎️ The new Contact Lens AI features will help optimize contact centers using Amazon Connect. Connect is really taking the contact center world by storm with its ease of adoption. * 💾 Amazon now offers “d” variants to all three
The Cloud Pod Confidential — Episode 79
Your hosts kick off the nine weeks of Google Next on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsor:
This week’s highlights * 🚨 We kicked off this year’s Google Next by crowning our draft picks winner! * 🚨 Friend of the show Ian Mckay wrote a tool to automate your auto-remediation. * 🚨 Azure is here too. (We just wanted them to feel included this week.)
Google: What’s Next? * 🥇 The Google Cloud Next keynote address was this week, and Jonathan has taken the win for our draft picks by predicting new collaborations and productivity tools in Google Meet. Congratulations, Jonathan! * 😠 Google launched the Open Usage Commons framework to support Open Source development. Google has donated the ISTIO trademark to the Commons, upsetting IBM. * 🦾 AutoML Tables has received several user-friendliness features, including explanations for online predictions. (Not that any of us use AutoML.) * 🕸️ Google is releasing Network Endpoint Groups, which is a collection of network endpoints to use as backends for some load balancers. This is what you need to have if your hybrid cloud isn’t going to be just a transition. * 🔮 The new Active Assist portfolio of tools promises to help you reduce the complexity of your cloud operations. Moving around the complexity, how very… Oracle of you. * 🗳️ Assured Workloads for Government, now in private beta, promises to help government customers, suppliers and contractors meet the security and compliance standards of federal agencies. The compliant-but-not-isolated model can be expected to bleed out into non-governmental workloads. * 🤔 BigQuery Omni will allow you to access and analyze data across your multi-cloud environment. It’s a solution to the data gravity problem, but keep in mind it’s still an onramp to GCP. * 🤐 The Confidential Virtual Machines product, now in beta, is the first tool in the Confidential Computing portfolio. Apparently this is revolutionary, but we’re only sold on “neat.” * 📧 The new Customer to Community (C2C) platform is an exclusive community for cloud professionals among Google Cloud customers.
Architect Matt Kohn fills in for Peter on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsor: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Ian McKay has cool tools for the new Honeycode service. * 🚨 Amazon shoots for the stars with their new Aerospace and Satellite Solutions business unit. * 🚨 A new family of Virtual Machines boast powerful performance benchmarks.
AWS: Business! In! Space! * 🍯 Amazon’s No-Code solution has finally shipped in the form of Amazon Honeycode, fully managed and now in beta. Friend of the show Ian McKay has created Honeycode export and appflow integration projects which add a lot of usability to the service. * 🧘 After a six-month beta period, Amazon CodeGuru is now generally available featuring CodeGuru Reviewer and CodeGuru Profiler. CodeGuru is still sticking to Java support, so if you’re working in another language, you won’t find much here. * 🧡 AWS CodeCommit now supports a limited set of Emoji Reactions to comment on pull requests and commits. The set includes 👍, 👎, 😊, 🧡 and “ship-it”, though we’d have rather used 💩, 🙄, 😕, 🤬 and 🤡. * 🚀 AWS announced a foray into the space sector with the launch of the Aerospace and Satellite Solutions business unit. AWS appointed former director of Space Force Planning Clint Crosier to lead the unit. * 📦 On the last day of June, AWS launched AWS App2Container to help containerize currently running applications without the need for code changes. Once this applies to applications other than .NET 3.5+ and Java, we expect this to be adopted like hotcakes. * 🧹 On the first of July, AWS announced the Porting Assistant for .NET, a tool to port .NET Framework applications to .NET Core running on Linux. This should clean up the last of the .NET apps in the next, say, 25 years. * 💳 Amazon Relational Database Service instances are now available on AWS Outposts with mySQL and PostgreSQL support. The management fee can be a bit pricey, but compared to what you’d already be paying for Outpost, you probably won’t even notice.
Azure: I Studied the Blade * 🆕 The first release of Docker Desktop’s integration with Microsoft Azure
Google Cloud Next Predictions Your show hosts come to you with their cloudy crystal balls to give us Google Cloud Next Prediction show for Thomas Kurian's keynote.
Justin 1. CloudSQL/Firebase/BigQuery via Anthos 2. More Granularity in Stackdriver reports/analytics around status reports (Thanks /u/casper_man) 3. Cloud endpoint Security Protection (Antivirus, Endpoint DLP, HIDS)
Jonathan 1. New Collaborations & Productivity tools Google Meet, New or Improved 2. Price reduction (token for Anthos (Small cut pacify the haters) 3. Thomas Kurian will speak about community governance
(Peter) Matt 1. GCP will launch a new region somewhere in the midwest 2. Partnership with a pro-sports league. 3. Will announce their commitment to cloud infrastructure beyond 2023
Ryan 1. Tout their amazing bigquery & ML stuff to help with Covid research 2. A significant price reduction for Anthos drop it by more than 40% or removing 12 month commitment 3. Layer 7 network inspection and egress filtering
Honorable Mentions * Endpoint Security will run in the hypervisor (Agentless) - Jonathan * Tool Similar to Sagemaker * Threat Hunting Tools * ML/AI chops to Cloud Monitoring * Configuration Management Endpoints * Major Updates to Docs, Sheets, Slides, * Quantum Computers
Tie Breaker: Number of Virtual Attendees on the Register? * Ryan - 45,000 * Matt - 60,000 * Jonathan- 85,000 * Justin - 100,000
Your hosts see a new cloud on the horizon and anticipate a flood on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsor: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 HashiCorp enters the ring with HashiCorp Cloud Platform. * 🚨 Microsoft offers free AI classes. * 🚨 Bayer Crop Sciences pushes cluster size to new heights.
General News: A Challenger Approaches * ☁️ HashiCorp has launched the HashiCorp Cloud Platform featuring managed Consul as the single initial service. HashiCorp is currently soliciting feedback on the alpha version of HashiCorp Cloud Platform and is planning on releasing Vault next.
AWS: Let it Snow * 🍧 The AWS Snow family of devices is now joined by AWS Snowcone, a four-and-a-half pound eight terabyte data storage and transfer device, both the most storage and least weight yet. Don’t lose it though — this little guy runs around $2,000. * 🦥 Aurora Global database now supports write request forwarding for low latency global data reads. This is fantastic news for lazy devs like us. * 😃 Amazon EC2 Auto Scaling Groups now support the Instance Refresh feature, eliminating the need for custom scripts and systems. This is a long-anticipated feature for TCP. We can’t believe it’s taken until 2020! * 📚 The new Lambda Powertools library within the Serverless Lens for the Well Architected Framework features Tracer, Logger and Metrics as its three core utilities. Using these tools to get yourself set up will save you a lot of strife down the line.
Azure: An ‘Udacious’ Plan * 🤝 Azure and Udacity are partnering to launch a scholarship program and the free Azure Machine Learning course to address the growing demand for AI specialists. We’ve had good experiences with Udacity so this offering appeals directly to us. * 🦾 Azure is catering to users new to ARM templates with new features including a template Quickstart gallery and Azure Resource Manager Tools in Visual Studio Code. How did we ever get by without this?
Google: Seeds and Nodes * 🔐 Google rolled out Transport Layer Security 1.3 featuring updated ciphers and low handshake latency as the new default for Cloud CDN and Global Load Balancing customers. Of course, you’
Your hosts (minus Jonathan) talk outages and instances on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsor: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Mark Russinovich (twitter: @markrussinovich) published a guide on scaling-up during the pandemic. * 🚨 Sagemaker Ground Truth lets robots see in 3D. * 🚨 Check out our interview with Spot CEO Amiram Schachar.
General News: Not Our Fault * 🤐 IBM assigned the cause of a several-hour global outage on June 10 to an unnamed third party. We can expect a full formal report from IBM soon. * 💰 Data warehouse specialist company Snowflake is rumored to be filing for initial public offering at $20 billion, 1,333% of its valuation just two and a half years ago. It’s just a matter of time until Amazon Redshift makes a move to break into Snowflake’s space.
COVID-19 * 📓 Chief Technical Officer at Azure Mark Russinovich detailed how Azure scales Microsoft Teams during the pandemic in what appears to be a face-saving measure after Azure’s recent capacity issues. It’s a weighty article — we recommend checking this one out for yourself if you’re encountering any scaling issues of your own.
AWS: The Third Dimension is Data * 🏺 AWS CodeArtifact, a managed artifact repository service, is now generally available. Everyone has to store their Build Artifacts somewhere, so this is an exciting tool, especially at this price point. * 🏷️ Amazon Sagemaker Ground Truth can now label 3D point clouds using a new editor and assistive labeling features. We don’t know how this one works but expect widespread adoption in advanced machine learning. * 💵 New EC2 instances with Graviton2 processors are now generally available. Whether you choose C6 or R6, expect some hefty price-performance improvements. * 📁 AWS Lambda functions can now connect to Amazon Elastic File Systems. Sure, some people may make the point that this runs counter to the purpose of Lambda, but just think of the use cases! * 🛡️ The AWS CloudFormation Guard open-source command-line interface is now available in preview. An ounce of prevention is worth a pound of remediation, and it’s good to see that made easy.
Azure: An Instance of Poor Optics * 📹 The live video analytics platform Azure Media Services is now in preview. Enjoy your automated live video feed analytical capabilities, Department of Defense! Pinky swear you’ll be responsible with it? * 💾 Azure released
Your co-hosts announce parity with the leading cloud-computing podcast hosts on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsor: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Amazon is suing their former vice president of marketing. * 🚨 AWS introduces new instances. * 🚨 Google pulls the perfect hat-trick and celebrates parity with AWS three times.
General News: What? Amazon is Litigious? No... * 👨⚖️ Amazon is suing their former vice president of marketing Brian Hall over the breach of his non-compete agreement after taking a position with Google Cloud. We will see whether Amazon’s inconsistent enforcement of their non-compete agreements will give Hall a win in court. * 🤝 Slack is partnering with AWS, integrating Slack Calls with Amazon Chime. For an interview with Chime GM Sid Rao, check out friend of the show Corey Quinn’s podcast Screaming in the Cloud. * 🆕 Rackspace rebranded this week to “Rackspace Technology.” This shift mirrors their move from selling equipment to selling services.
AWS: Instant Hits * 💸 AWS launched new EC2 instances, this time bumping up to second generation AMD EPYC processors. Well, it’s cheaper than the Intel counterpart. * 🤖 EC2 G4dn bare metal instances are now available with up to eight NVIDIA T4 GPUs. You’ve got to be working on some seriously cool machine learning projects to need something this expensive. * 🔍 You can now find the machine-learning powered anomaly detection feature and interactive SQL tools in Amazon Elasticsearch Service. Chamberlain and Boyce (inventors of SQL) should be proud — it’s everywhere these days. * ❓ You can now write the results of an Amazon Redshift query
The Cloud Pod Gets Their Groove Back — Episode 74
Your co-hosts have cooked up a good one on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsor: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Your co-hosts cover DockerCon 2020. * 🚨 Chef announced several new features at ChefConf 2020. * 🚨 Google Cloud Platform (GCP) teaches you how to take an online certification exam.
General News: Prince Ali * 💸 Mirantis has released the first major update to Docker Enterprise since it acquired the platform in November — a loss for the startup community. * 🎙️ Over 60,000 people registered for the online DockerCon, the first DockerCon after the loss of Enterprise. During the keynote, Docker CEO Scott Johnston announced a strategic partnership with Microsoft. * 📈 Chinese cloud titan Alibaba’s revenue grew 62% in the first quarter of 2020, though it remains behind AWS, Microsoft and Google for now. With the regional advantage, it seems all Alibaba needs to do is maintain parity with AWS features to stay on top.
Chef Conference: Too Many Cooks * 👩🍳 Predominant Configuration Management software platform and TCP punching-bag Chef held their virtual ChefConf where they debuted several new capabilities. + Chef Compliance now features Chef Compliance Audit and Chef Compliance Remediation. + Chef Desktop helps IT managers centrally deploy, manage and secure an organization’s laptops, desktops and workstations. + Chef Infra and Chef Automate now integrate with ServiceNow Configuration Management Database.
AWS: No Back-SaaS * ✍️ Upgrading contracts for SaaS and usage-based products on the AWS Marketplace is now easier. Look to this for grabbing those high-volume discounts when scaling up. * 🔑 AWS Single Sign-On now integrates with Okta Universal Directory. This one’s a sure-fire hit. * 📱 AWS Amplify iOS and Amplify Android libraries and tools are now available. We...are not a group of iOS experts here at TCP. Let us know what you think of these! * 📋 Elastic Load Balancing now
A big thanks to this week’s sponsor: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 An unusually short AWS segment this week featured new Backup customizations. * 🚨 Azure is bringing their HoloLens2 to a new set of countries. * 🚨 We celebrate BigQuery’s 10th birthday and the accompanying BigSale.
AWS: Only Three Stories Somehow * 🐈 Jonah Jones of the AWS Open Source Blog published an article on how to use the PromCat (Prometheus Catalog) to monitor AWS services used by Kubernetes. It’s great to see Prometheus and Kubernetes continue to take over the world. * 💾 You can now opt-in or opt-out of AWS Backup services at the account level. Opt-in is nice and all, but opt-out provides peace of mind to the largest user base. * 🗺️ Information on AWS regions and servers is now available programmatically in the AWS Systems Manager Parameter Store. It’ll be nice when we see other tools pulling this data.
Azure: Mixed With What? * 👓 HoloLens 2, the latest in Azure’s “mixed reality” glasses technology, is now available in 10 countries and will be coming to more soon. Once the technology becomes as functional as it is in the advertisements, we’re going to be thrilled to play with it. There’s a lot of potential here for industrial applications that are already being explored. * 🌈 The Azure Arc preview now supports Kubernetes which was hotly requested in customer feedback. Expect to see some very interesting use cases from Azure Arc in the next 12 months.
Google: Happy Birthday! * 🎖️ After dropping out early in the JEDI contract competition citing conflicts with its AI principals, Google has signed a seven-figure contract with the Department of Defense’s Defense Innovation Unit. Google anticipates that this may lead to future business deals with branches of the DoD. * 😊 Serverless VPC Access now features ingress settings. It’s really nice to see a tightening down of function access on VPCs and vice versa. This should make a lot of people happy. * 🔒 Google’s new open-source tool IAP Desktop allows users to access and manage Windows VMs conveniently and securely. Glad to see Google supporting the zero-trust remote admin access story. * 🎂 Data warehous
Your co-hosts cover conferences past and yet to come on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsor:
This week’s highlights * 🚨 We take a good, hard look at the ways Google Cloud has AWS beat. * 🚨 Microsoft Build 2020 featured the fifth most powerful computer in the world. * 🚨 Google Cloud Next is here to stay for a long, long time.
General News: Let Me Count the Ways * 🔢 Peter Wayner of InfoWorld wrote an article listing the 13 ways Google Cloud beats AWS. Well…he didn’t say they were all good reasons.
AWS: That’s a MTHFL * 🔨 AWS announced the Cloud Development Kit for Kubernetes called cdk8s is now in alpha. Rolls right off the tongue, doesn’t it? * 🔒 You can now use Attribute-based access control with EC2 Instance Connect to define Secure Shell access permissions based on attributes. It’s good to move away from passing around all those extra keys. * 👨🏽💼 State Manager features for Systems Manager now integrate with AWS CloudFormation. Assuming we’re parsing the naming conventions correctly in these press releases, that’s good news! * 🧘 Amazon CodeGuru Profiler added -javaagent switch, and CodeGuru Reviewer now supports Atlassian Bitbucket Cloud. Obviously, profiling and reviewing are totally different services — how could anyone get those mixed up? * ❓ The AWS CloudTrail console has been redesigned. It’s just the S3 user interface again, so it’s not a very intuitive interface. * 📁 Amazon Elastic Container Service now supports environment files to store environment variables for containers using the EC2 Launch type. * 📖 The new Amazon Elastic Kubernetes Service Best Practices Guide
We crown the winner of the AWS Summit Draft Picks on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsor:
This week’s highlights * 🚨 We crown the winner of this year’s AWS Summit Draft Picks! * 🚨 Amazon and Microsoft keep slinging blog posts over JEDI. * 🚨 We’re all just trying to stay sane, honestly.
AWS Summit: Draft Picks * 🏈 While it wasn’t a particularly accurate set of predictions this year (with no honorable mentions scoring and even the tiebreaker non-functional), Justin managed to squeak out a win by correctly predicting a price cut in EC2, S3, or Networking and the Covid Crazy Growth Numbers. Jonathan scored the only other point with his prediction of improved DLP Tools for S3. * 💰 Amazon Macie simplified its pricing plan and dramatically reduced costs. Is the 80% price cut the new way of announcing a product is generally available? * 💵 Amazon Elastic Compute Cloud cut prices across all regions for Standard Reserved Instances and EC2 Instance Saving Plans. * 💸 Inter-Region Data Transfer prices have been reduced for data coming out of São Paulo, Bahrain, Cape Town and Sydney.
General News * 👩⚖️ Amazon filed a second, concurrent bid protest to the Department of Defense. Microsoft and Amazon continue to snip at each other in public blog posts.
COVID-19 * 🏘️ Amazon will allow non-warehouse employees to work from home for at least five months. Microsoft updated their WFH policy, and will give employees the option to work remotely through October.
AWS * 🧘 Amazon CodeGuru Reviewer has seen pricing changes. Now CodeGuru’s terrible payment model is much less terrible. * 🆕 Amazon Elastic Kubernetes Service now supports Kubernetes version 1.16. It’s good to see they’re putting out these updates progressively faster. * 🧙♂️ A new wizard will allow for simplified creation and management of Elastic Kubernetes Service clusters. This should clean up some of the EKS console nicely. * 🔏 AWS Identity and Access Management introduced basic password strength requirements. Thank goodness. * 📠 AWS Internet of Things Device Management service’s Device Jobs feature now costs
The Three Musketeers have gained their D’Artagnan and take on the world (metaphorically and from home) on this week's episode of The Cloud Pod.
A big thanks to this week’s sponsor: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Take a break with us and enjoy a music video. * 🚨 Oracle managed a whole two headlines this week! * 🚨 Jonathan called it: AWS opens the Africa (Cape Town) Region.
General News: Chime After Chime * + 🎵 Tim Leehane and Spencer Johnson released a working-from-home anthem titled Chime After Chime we just had to share with you.
COVID-19 * 🔮 Zoom picked the dark horse of cloud platforms Oracle for their next upscaling deal. Zoom is moving around 93 years of video through Oracle servers every day. * ❓ AMD revealed an anonymous customer (probably Oracle or Microsoft) deployed 10,000 new Epyc servers in just 10 days.
AWS: Summit Predictions * Jonathan 1. Improved DLP Tools for S3 2. AI Powered submarine to explore the depths of the ocean 3. ES service will pivot to Open Distro for ElasticSearch * Ryan 1. Docker Exec based Debugging tools/capability 2. Remote Debug capabilities for Lambda Functions 3. Security Code Scanning service (similar to code guru). (static and dynamic code analysis) * Peter 1. Direct Competitor to Anthos 2. DLP for VPC, always wanted a layer 7 like proxy. Filtering/Domain Whitelisting 3. A caricature of larry ellison will appear on the screen in the slides * Justin 1. Price Cut in EC2, S3 or Networking 2. Covid Crazy Growth Numbers (service dig on Azure) 3. A Diplo T-shirt will be worn by Werner Vogel
Honorable Mentions: * Amazon Crucible their first person shooter game, online multiplayer game * Dr. Matt Wood will make a passionate attempt for people to love sagemaker * 6 foot distancing robots * Keyspaces will be on the HIPAA BAA list
A big thanks to this week’s sponsor: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 AWS Summit Online is on May 13. * 🚨 Drama brews in the developing JEDI contract story. * 🚨 Please welcome Ryan Lucas as our new full-fledged non-guest host!
General News: This Isn’t the Evidence You’re Looking For * 📛 AWS Summit Online is free to attend on May 13. Expect to hear our predictions soon! * 🎖️ Following a partial review, the Department of Defense’s inspector general’s office announced they have found no evidence of the DoD awarding the JEDI contract unfairly. Meanwhile, Jon Palmer, Deputy General Counsel for Microsoft argued that allowing AWS a second bid would give Amazon an unfair advantage. But who inspects the inspector?
COVID-19 * 👖 Verizon is breaking out the big bucks to purchase video conference company BlueJeans for $400 million. It’s interesting to see BlueJeans back in the spotlight. * 💵 The Information reports that AWS has been comparatively inflexible on cloud bill payments compared to Azure and Google Cloud Platform. At the same time, AWS has maintained the messaging that it is “here to help” during this “unprecedented time.”
AWS: A Snowball’s Chance at the JEDI Contract * ❄️ The Snowball family of devices received a ton of updates. All that work on military applications and no JEDI contract to apply it to. * 🔺 Federated querying is now generally available on Amazon Redshift. It’s clear that Amazon is investing heavily in Redshift. * 🔎 AWS Security Hub launched the BatchUpdateFindings API and the Workflow Status field. Good to see some of these issues worked out. * 🤐 This one goes out to all the auditors: AWS Secrets Manager now integrates with AWS Config. And when the auditor’s happy, everyone’s happy. * 📇 AWS IAM will allow you to identify who performed actions when viewing AWS Cloudtrail logs. Now you don’t have to keep track of hundreds of federated accounts manually! * 📦 Amazon Route 53 Doma
Ryan Lucas and Ian Mckay fill in for Jonathan on this week’s free-tier episode of The Cloud Pod.
A big thanks to this week’s sponsor: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 GitHub announced a new business model. * 🚨 Amazon announced a giant pile of Beanstalk updates. * 🚨 Google published a free book on secure and reliable systems.
General News: [Upgrade to Premium for Full Segment Title] * 💸 GitHub has switched to a freemium business model — core features will be free to all users, and premium features like Security Assertion Markup Language will require a paid plan. This is a great new direction, though they may lose a few paid customers tempted to downgrade to the new free tier.
AWS: Amazon Golden Goose * 🧙 The new AWS Launch Wizard for Solutions and Pricing (SAP) service will orchestrate resource provisioning to help customers deploy or migrate SAP workloads. If you’re paying the premium for a big fancy SAP instance, you’re going to want to be invested in how your infrastructure is set up. * 🌱 Amazon unveiled a giant pile of Beanstalk updates this week. The AWS Elastic Beanstalk console is now generally available, and upcoming features can be followed the roadmap on GitHub. New generations of Docker, Corretto and Python platforms built on Amazon Linux 2 will all run applications on Elastic Beanstalk. Elastic Beanstalk has added API support for listing platform branches. Beanstalk is looking to be a very popular option for smaller developers, and is getting more impressive with every update. * 👛 You can now preview Amazon RDS Proxy with PostgreSQL compatibility, which resolves connection pool issues. This is going to be a super helpful service and at about three cents per hour to run a proxy, it’s also extremely cost effective. * 🆕 AWS Fargate updated to version 1.4.0, with new features including EFS Endpoint Support, consolidated 20gb ephemeral storage and new options for metrics and statistics. You have a month to test before this becomes the default version.
Google:
Your hosts meet online to work on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsor: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Profits of The Cloud Pod’s sticker sales will be donated to charity. * 🚨 DeepComposer is now generally available. * 🚨 You can play around with March Madness simulations in BigQuery.
General News: The Cloud Pod Tackles COVID-19 🏷️ We’re donating profits of our sticker sales to the John Hopkins University COVID-19 Research Response Program through July 1, 2020. AWS: Staying Productive 🤔 The Amazon CloudWatch Contributor Insights feature, which gives users an overview of their operational problems, is now generally available. CloudWatch Contributor Insights is also generally available for DynamoDB, though it is 50 percent more expensive per million log events than Insights not for DynamoDB. You can build some neat automation around this.
☁️ Back in Episode 51, we covered the new instances with ra3.16xlarge nodes, and now Amazon is adding instances with ra3.4xlarge nodes, which lack the excess power of ra3.16xlarge. At a quarter of the price of the larger larges, that’s some considerable savings.
📏 Amazon Redshift now features elastic resize, allowing users to change node types within minutes. This will be helpful if you want to make the move to those cheaper instances.
🎹 If you’re looking for something fun while sheltering in place, you may be pleased to hear that AWS DeepComposer is now generally available (and with new features!) You can buy an Amazon keyboard for $99 or a generic for $50.
💰 Amazon RDS for SQL Server now supports In-Region Read Replicas on SQL Server Enterprise Edition in the Multi-AZ config with Always On Availability. Careful though, you can really rack up a bill this way if you’re careless.
⏩ Amazon announced that Amazon Elastic File System has quintupled its speed for General Purpose mode file systems to 35,000 read operations per second. That leads into our next headline: Amazon Elastic Container Service now supports Amazon Elastic File System, replacing the interesting hacks previously required to allow containers on different hosts to access the same data set. Maybe we’ll rebuild our TCP website?
📦 AWS
Jonathan is out with a back injury, so it’s just Justin and Peter on this week’s intranational episode of The Cloud Pod.
A big thanks to this week’s sponsor: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure.
This week’s highlights * 🚨 Teleconferencing services continue to boom. * 🚨 Amazon opens up a new avenue of attack on Microsoft’s JEDI contract. * 🚨 Azure UK declares it will triage who gets service if need be.
General News: Cloud Provider Moves to Internet for Business 💰 Business for web conferencing applications has boomed this month. Microsoft Teams gained 12 million users in a week and Slack’s paid version gained over 7,000 customers since the start of February. Hopefully people continue to use these tools to stay more connected even after we’ve gotten through this pandemic.
✍️ With AWS testing centers closed, AWS Certification is now offering all exams online with online proctoring. Considerations are being made for those who need to reschedule. AWS: Chipping Away at JEDI 🏷️ The price of Amazon GuardDuty use over 10,000 gigabytes (GB) was reduced from 25 cents to 15 cents per GB.
⏱️ The normally quiet CloudFront announced they have cut propagation times down to five. Propagation times used to average between 17 and 35 minutes. CloudFront has always been cost-effective, but now it’s as efficient as it needs to be.
👁️ Amazon QuickSight launched image support on dashboards through the insight editor. Neat, but indicative of a slow news week.
🔏 AWS Site-to-Site VPN now enables you to use digital certificates for all site-to-site connections. This is great for mobile devices or other cases without static IP addresses.
👩⚖️ In our developing coverage of the JEDI contract, AWS has now charged that the DoD is unfairly granting Microsoft a “do-over” on flawed portions of its bid.
🧮 The UpdateShardCount API for Amazon Kinesis Data Streams upgraded from a 500 shard capacity to a 10,000 shard capacity. If you want to work with social media, this may be a tool for you.
☎️ Amazon Connect now features voicemail, which not only works as a traditional voicemail but also includes transcriptions. It’s all very serverless in its methodology. Google: A Strong Third Place 🧪 Forrester Research named G
Your hosts join the rest of the world in phoning one in on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure
This week’s highlights * 🚨 More conference cancellations roll in due to the ongoing global pandemic. * 🚨 Amazon Redshift made several improvements this week. * 🚨 We take a look at a bug-hunt by a Site Reliability Engineer at Google.
General News: Working From Home 📴 As the pandemic response ramps up across the world, teleconferencing services like Slack and Zoom have struggled to meet demand. Microsoft Teams users in Europe reported difficulty logging into the service. If you’re looking for an open-source web conferencing application, AWS recommends you use Jitsi. If you’re a startup with more AWS credits to spend than money, we recommend you check it out.
🚫 In the continued wave of canceled conferences, Microsoft moved the May 19-21 Build developer conference to a virtual-only format. Even virtual conferences aren’t entirely safe bets, as Google has postponed Google Cloud Next 2020: Digital Connect. Perhaps they will try to wait until they can safely host a physical conference again, but who knows when that will be? AWS: Redshifting Into Gear 🟥 Amazon Redshift now allows users to pause and remove clusters so they are not billed for their use while unneeded. In other Amazon Redshift news, the cloud data warehouse now supports materialized views functionality. We suspect that Redshift will be going serverless before long.
🚪 As a part of its release, API Gateway will offer private integrations with AWS Elastic Load Balancers and AWS CloudMap. There’s a lot there, but we wish it had a Lambda endpoint.
🌎 Amazon ElastiCache for Redis announced Global Datastore, a fully managed service for secure cross-region replication. It’s great that they’re doing what they can to make this easy, but you should be aware of the limits of a service like this.
📦 AWS AppConfig now
Ryan Lucas (@ryron01) fills in for Peter again as we practice social distancing on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Blue Medora, which offers pioneering IT monitoring integration as a service to address today’s IT challenges by easily connecting system health and performance data — no matter its source — with the world’s leading monitoring and analytics platforms.
This week’s highlights * 🚨 Details emerged from the ongoing legal battle surrounding the JEDI contract. * 🚨 Amazon shows off its new operating system. * 🚨 Powershell 7.0 brings long-awaited features to Windows.
General News ❌ Due to the ongoing global pandemic, AWS Summits have been (responsibly) cancelled in Sydney, Singapore, Mumbai, Paris, San Francisco and Brussels. Hopefully we’ll see these events move online.
👩⚖️ Court documents from Amazon’s injunction have been unsealed. The documents reveal that Microsoft’s bid included “non-compliant storage” which was not counted against them. The Department of Defense responded that Amazon’s bid did not include technically compliant storage either.
📰 Our very own Justin Brodley made the news! His comments are included in an article covering a cloud alternatives panel discussion at Altitude 2020.
🗂️ VMware Inc. overhauled its portfolio of products to focus on Kubernetes support. Expect to see the whole host of products available by May 2020. AWS: ⏰ The new CloudWatch composite alarms will allow you to combine alarms and get a clearer picture of what is happening when something goes wrong.
🔊 You can now host your applications with the AWS Amplify Console via S3 and CloudFront. If you checked out Amplify last year, it’s changed a lot since then so it might be worth another look.
🗃️ AWS Serverless Application Repository now allows you to share applications with Organizations. Anything you can manage at an organizational level is
Ryan Lucas (@ryron01) fills in for Peter as we cover all the news you can use on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Blue Medora, which offers pioneering IT monitoring integration as a service to address today’s IT challenges by easily connecting system health and performance data — no matter its source — with the world’s leading monitoring and analytics platforms.
This week’s highlights * 🚨 AWS restructures its sales force. * 🚨 Google Cloud Next ’20: Digital Connect is canceled. * 🚨 Who’s else is excited to re-network their printers!?
General News 🎙️ We’re proud of the Bonus Episodes we’ve produced lately. Check out our interviews with Rob Martin and Ben Kehoe!
✈️ Check out Aviatrix’s panel on Multi-Cloud architecture and networking — featuring our very own Justin Brodley. And if you’re here because you saw Justin’s panel, welcome to TCP!
🆚 Global research firm Gartner has named AWS the top leader in Cloud AI developer services. Gartner categorizes industry leaders as having a complete vision and the ability to execute on it. Microsoft and Google were close behind, though unlike Microsoft, Google spread the news. AWS: Human Salesforce, AI Oversight 🤭 Amazon Transcribe can now automatically redact personally identifiable information. You can rest assured when a robot collects your personal information for data analysis, it will use discretion in what it shares with humans.
🏷️ AWS Global Accelerator users may now use their own IP addresses and tag resources. We already had AnyCast, but the tagging is nice.
💲 Faced with tougher competition, AWS plans to double the size of its sales team. This will be the first major sales restructuring for AWS in several years.
👣 AWS Config’s advanced query feature now supports configuration aggregators. This feature will save you a ton of sweat managing a large AWS footprint.
🏗️ If you’re going to
Your hosts talk about AWS Lambda, Azure’s Cybersecurity of Things and Google’s loquacious AI on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Blue Medora, which offers pioneering IT monitoring integration as a service to address today’s IT challenges by easily connecting system health and performance data — no matter its source — with the world’s leading monitoring and analytics platforms.
This week’s highlights * 🚨 AWS Lambda sees savings and supports Dart. * 🚨 Your kitchen appliances are safer with developments in the Internet of Things. * 🚨 It’s the last week of our trial of the new Lightning Round format. Comedy’s hard.
TCP News ☁️ ICYMI, check out our second episode of TCP Talks: Finops in the cloud with Rob Martin. We learned some things about financial operations, and we’re sure you will too. AWS Lambda Updates 🐑 AWS Compute Savings Plans now apply to your AWS Lambda workloads. That’s nice, but even a decent percentage of such a cheap service probably won’t impact your expenses all that much. In addition, those Lambda workloads now support Dart, an open-source programming language made by Google. If you’re making mobile apps, you’ll be happy to use this. If you’re not making mobile apps, you probably didn’t need to read this paragraph.
🔒 AWS Identity and Access Management now allows you to control access for requests made on your behalf by AWS services. It’s a great security feature. We’re looking forward to AWS taking this a step further at this year’s re:Inforce conference.
🔑 Amazon Elastic Container Service now supports previous Secrets Manager versions and can read keys directly from JSON objects. It’s going to be much more convenient now that you can use one key instead of, say, 10.
🌿 AWS Chief Evangelist Jeff Barr outlined a laundry list of updates to Amazon FSx for Lustre in this blog post. All these changes add up to SageMaker integration, to make SageMaker more attractive to customers. Spherical Things 📠 At this year’s RSA cybersecurity conference, Azure announced several improvements to Azure Security Center for Internet of Things (IoT). It’s good to see the time and energy being put into IoT security. Your personal computer may be secure, sure, but wha
We follow continuing stories with the JEDI contract, GigaOM and our new Lightning Round format on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Blue Medora, which offers pioneering IT monitoring integration as a service to address today’s IT challenges by easily connecting system health and performance data — no matter its source — with the world’s leading monitoring and analytics platforms.
This week’s highlights * 🚨 Amazon makes progress contesting the JEDI contract. * 🚨 AWS and Azure introduce shared cloud block storage. * 🚨 Google shows signs of shifting priorities.
Arrested Development 👩⚖️United States judge Patricia Campbell-Smith has granted Amazon’s request to temporarily halt work on the JEDI contract by Microsoft. She also ordered Amazon to post $42 million in the event the injunction was issued wrongfully. AWS Not First to Share Blocks 🥞CloudFormation StackSets users can now manage multiple AWS accounts. We recommend you get your organizational units structured properly now so you’re ready for when that must-have feature for your organization is added.
💽AWS customers running Linux on Ec2 can now attach provisioned IOPS (io1) EBS volumes to Multiple Ec2 instances. Be careful though: wielding fine control over your data means taking responsibility for your data losses, as well. This news comes a day after Azure announced their own Azure Shared Disks, which was, for those sweet brief hours before AWS’s announcement, the industry’s only shared cloud block storage. What’s in the Box? 🧪Azure released a new GigaOM study which backs up the findings from the GigaOM study we covered on episode 58. How incredible — Azure, which paid for the scientific (and unverifiable) study, was found to be the best at everything once again!
📦The Azure Backup service now offers a preview of the Azure Data Box. You can kick-start your large-scale backups by loading up to 80 terabytes of data into the Data Box and sending it to Azure, where it will be integrated into a standard cloud backup. Google Shifts Focus 📐Google has introduced
Peter’s returned from his trip to Asia and the band’s back together on this episode of The Cloud Pod.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Blue Medora, which offers pioneering IT monitoring integration as a service to address today’s IT challenges by easily connecting system health and performance data — no matter its source — with the world’s leading monitoring and analytics platforms.
This week’s highlights * 🚨 Registration for Amazon Re:Mars 2020 is now open! Academics can use code ACAD20REMARS for a discount. * 🚨 Google releases several new tools for building and managing data pipelines. * 🚨 We tried out a new format for our lightning round!
Amazon Web Services: To Infinity and Beyond 🔭 Registration is open for the Amazon Re:Mars 2020 robotics and technology conference running June 16-19 in Las Vegas. Tickets cost $1,999, but astronauts get in free! Academics and students registering with a .edu email address can use the discount code ACAD20REMARS if a couple grand is too pricey.
🗺️ AWS Sync Routes is available on the AWS Open Source blog to allow you to synchronize routes across tables. If you’ve got only a few VPCs, you might have the right use case for this.
🐦 AWS CodeDeploy’s blue/green deployments for Amazon ECS now include “linear and canary deployments.” Hidden in that announcement is the implication that they seem to have invented linear deployments.
👁️ You can now use a full-screen narrative editor with a preview mode thanks to enhancements to Amazon QuickSight. You can also add static and dynamic URLs within those narratives.
📐 If you’re a Well-Architected Framework practitioner, the new Serverless Lens for AWS Well-Architected Tool may improve your architecture assessments.
🌎 If you (somehow) have a workload that can tolerate lost events, the Multi-Region Asynchronous Object Replication Solution may be for you. We’ll hope for a global bucket option to replace this down the line with something more elegant. Azure’s Safety and Retiring 🦺 Mark Russinovich, Chief Technology Officer of Azure, published Advancing safe deployment practices detailing Azure’s best practices for their deployments. If you use Azure, we absolutely recommend giving it a read.
👴🏽 Azu
Your hosts are joined again by Ryan Lucas (@ryron01) who is filling in for Peter as we recap the week in cloud.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Blue Medora, which offers pioneering IT monitoring integration as a service to address today’s IT challenges by easily connecting system health and performance data — no matter its source — with the world’s leading monitoring and analytics platforms.
This week’s highlights * 🚨 It’s earnings season as the top dogs show their growth. * 🚨 Azure gets back in the headlines with a bold but contested study. * 🚨 Google fulfills an old TCP prediction with reports of a unified service.
Certificates of Doom Update 📅 Amazon has given customers an extension until March 5, 2020 to rotate their SSL/TLS certificates. Previously, rebooting or manually changing a relational database service (RDS) instance would automatically switch to the new certificate authority, even if the customer didn’t have their application ready to do so. IBM Changes Leadership 👔 Speaking of new authorities, major changes are coming to IBM. Arvind Krishna will replace current CEO Ginni Rometty on April 6 and current Red Hat CEO Jim Whitehurst will become president. Hopefully the changes in leadership and the acquisition of Red Hat will be what IBM needs to turn around what’s been a rough decade for the tech giant. Earnings Season 📈 It’s that time of the year where financial analysts are breaking out the line graphs to show investors just how much their holdings are growing. Let’s see what the quarterly reports had to say this time around: * Microsoft saw a rebound from slowing cloud growth last quarter with Azure up 62 percent, Surface up 6 percent, and LinkedIn up 24 percent. * Google Cloud growth was strong enough for the company to brag, but still lags behind AWS, Azure and even Google’s own YouTube. * Amazon joins the Trillion Dollar Club alongside Apple, Alphabet and Microsoft after a strong holiday season. Amazon also released their tax details to push back against accusations that it does not pay its taxes. Amazon paid ab
Your hosts are back at it — well some of them are. Ian Mckay (@iann0036) fills in for Peter this week as we cover all of the triumphs and troubles in cloud.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Blue Medora, which offers pioneering IT monitoring integration as a service to address today’s IT challenges by easily connecting system health and performance data — no matter its source — with the world’s leading monitoring and analytics platforms.
This week’s highlights * 🚨 Ian Mckay gives an Aussie perspective on the AWS outage in Sydney. * 🚨 Amazon streamlines permissions with the IAM policy simulator. * 🚨 Google competes with AWS with competitively priced services.
Amazon Pressures Pentagon, Suffers in Sydney ⚖️ On January 22, Amazon filed a motion to halt work on the JEDI contract between Microsoft and the Department of Defense until a court rules on the protest filed by Amazon last year. Expect more news here as the story develops through February.
🕕 That same day, Amazon Web Services (AWS) suffered a six hour outage across multiple services in the Sydney region “including EC2, elastic load balancing (ELB), relational database service (RDS), AppStream 2.0, ElastiCache, WorkSpaces and Lambda.” After the issue was resolved, Amazon assured customers it will use this experience to learn and improve future operational performance. AWS Adds, Updates and Improves 💾 AWS DataSync has received an update: You can now use DataSync to quickly transfer large amounts of data to and from Amazon FSx for Windows File Server. Previously, DataSync was not fully compatible with Windows applications and environments.
🖥️ All seven sizes of the T3 instances are now available on single-tenant hardware. It might help you meet your compliance goals by physically isolating your machine from other AWS accounts, but the unlimited bursting capability makes us wonder what use cases Amazon has in mind for these.
🛡️ Amazon GuardDuty has globally released a threat detection enhancement which should allow customers with common architectures to see fewer false alarms, and ultimately 50 percent fewer alerts overall.
📷 You can now export Amazon Relational Database Service or Amazon Aurora snapshots to Amazon Simple Storage Service as Apache Parquet. Compared to uncompressed text, Parquet is twice as fast to export and takes up
Your co-hosts move from the atmosphere to DigitalOcean as they recap the week in Cloud on this episode of The Cloud Pod.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Blue Medora, which offers pioneering IT monitoring integration as a service to address today’s IT challenges by easily connecting system health and performance data — no matter its source — with the world’s leading monitoring and analytics platforms.
This week’s highlights 🚨 Microsoft releases an ambitious plan to erase its carbon footprint.
🚨 Amazon slashed prices for two services.
🚨 Google Cloud fights for market share as connections change with Epic and Sabre.
Justin’s Adventures in Oracle Cloud Revisited 🔎 On Episode 54 we featured an investigative segment where Justin sought answers as to whether non-boot volume cross-region backups were available yet. And while that sleuthing was still an informative experience, Max Verun, a Product Manager at Oracle, has reached out to let us know that those answers were also in paragraph two of the very article we linked to.
Thanks, Max. We’d love to have you on the show sometime. Microsoft and DigitalOcean Make Major Reductions (But Not the Same Kind) 📣 Microsoft has declared an ambitious plan to remove all of the carbon it has ever emitted from the atmosphere, a goal that far outstrips that of other tech giants. Currently carbon neutral, Microsoft plans to use a combination of forestation, reforestation and other carbon sequestration technologies to go carbon negative and completely remove its legacy carbon footprint.
📉 DigitalOcean, on the other hand, is reducing its workforce by about 10 percent with a round of layoffs. Co-founder Moisey Uretsky assured the public that the move is a strategic one, and not indicative of any sort of poor financial health. Amazon Web Services (AWS) — New Features and Price Reductions AWS announced four new features this week, starting with: 1. AWS Health organizational view, which can now aggregate health events across all accounts in your organization. 2. Perhaps as a step towards Fargate support for EFS, Amazon ECS now supports EFS filesystems in ECS task definition.
Your co-hosts discuss the National Security Agency, the Department of Defense, the UK Home Office and more on this week’s episode of The Cloud Pod.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Blue Medora, which offers pioneering IT monitoring integration as a service to address today’s IT challenges by easily connecting system health and performance data — no matter its source — with the world’s leading monitoring and analytics platforms.
This week’s highlights 1. Amazon seeks a restraining order in a move to contest the JEDI contract. 2. Our first 2020 prediction comes true in a Microsoft/IBM team-up. 3. Jonathan takes a 200 percent lead in the Lightning Round with Amazon Cognito.
Matters of National Security Amazon Web Services (AWS) is going to court over allegations that the $10 billion JEDI contract was awarded to Microsoft due to improper pressure from the president as part of his personal issues with Amazon CEO Jeffrey Bezos. Expect the temporary restraining order to be granted or denied on February 11. Amazon may try to drag out proceedings until after the election — and a more favorable administration.
For those of you running Windows 10 or Windows Server 2016, be sure to grab the new patch advised by Microsoft and the National Security Agency. The patch solves a vulnerability that was found in a decades-old component called CryptoAPI, and would allow an attacker to copy the digital signature of legitimate software. Amazon Web Services — Seven Short Sweet Stories Though AWS may be hoping to stall the JEDI contract, business as usual shows no sign of slowing. Here are the seven AWS stories we talked about this week: * You can now go to Github for the public roadmap of AWS Elastic Beanstalk and voice any of your input. * UK Home Office (think Department of Homeland Security) has announced they’ll renew their public cloud services deal with AWS for another £100 million over four more years. To put that in context, it’s 0.13 percent the size of JEDI. * Former Vice President of Worldwide Marketing Ariel Kelman has left to join Oracle, and in his absence, AWS is taking the opportunity to reorganize its executive ranks. * Amazon EFS introduces two new features: EFS access p
Your co-hosts kick off their first regular news episode of the year with Consumer Electronics Show 2020, Google Cloud Next 2020 and Justin’s Oracle adventure.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Blue Medora, which offers pioneering IT monitoring integration as a service to address today’s IT challenges by easily connecting system health and performance data — no matter its source — with the world’s leading monitoring and analytics platforms.
This week’s highlights 1. Amazon flexes its tech at the Consumer Electronics Show with an automotive exhibit. 2. Use coupon code GRPABLOG2020 for $500 off your ticket to Google Cloud Next 2020. 3. Justin does a bit of investigative journalism to understand Oracle’s new boot volume backup announcement.
Amazon Web Services (AWS) at the Consumer Electronics Show 2020 — Cars and CAs Those attending the Consumer Electronics Show in Las Vegas last week saw Amazon show off the practical uses of AWS technology and machine learning at their automotive exhibit. The exhibit includes an array of demonstrations from an in-vehicle digital assistant to car-to-home integrations to a fleet of autonomous cars in China. We’d like to see this sort of in-vehicle technology have constant cloud connectivity, where software updates can continue to be pushed out.
And speaking of updates, you may have already seen a notification or email for AWS’s upcoming 2019 certificate authority. From the article:
“If you are using Amazon Aurora, Amazon Relational Database Service (RDS), or Amazon DocumentDB (with MongoDB compatibility) and are taking advantage of SSL/TLS certificate validation when you connect to your database instances, you need to download & install a fresh certificate, rotate the certificate authority (CA) for the instances, and then reboot the instances.” -Jeff Barr Yeah, it’s a chore and it sucks to do, but if you use it and you don’t update your CA, you’ll have an outage. Is doing this once every five years really so bad? Lastly, in all AWS regions except China, you can now use Private DNS names to access your AWS PrivateLink based services. We’re happy to see it. Azure Recaps Cost Management for 2019 While Azure’s been quiet since Christmas, their cost management program manager published an article this week recapping the tools they’ve released over the last year to help you monitor and optimize the costs of your cloud operations. Not only can you now use Azure Cost Management to analyze your Azure and AWS spends, but GCP support is on the horizon too. Google: Access, Freeze, Next The new
Your co-hosts recap 2019 and make predictions for the year ahead on the first episode of 2020. We’re skipping the Lightning Round this week to focus on a collaborative Q&A segment pulled from our Slack channel.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Blue Medora, which offers pioneering IT monitoring integration as a service to address today’s IT challenges by easily connecting system health and performance data — no matter its source — with the world’s leading monitoring and analytics platforms.
This week’s highlights 1. Our top 3 favorite headlines of the year. 2. Google released a white paper to help you comply with the California Consumer Privacy Act (CCPA.) 3. We read your questions from our TCP Slack channel for our first Q&A!
2019 Cloud Computing Predictions and Headlines Recap Last year (episode 4), we shared our predictions for what might happen in 2019.
Peter took the lead, predicting container-based models would continue to see more adoption over serverless. Justin — who predicted mergers in cloud providers would create a new top contender, and Jonathan, who predicted an acquisition of Slack — haven’t been vindicated. (Yet!)
Our 3 favorite headlines of the year.
Justin: * Google Anthos is probably the best thought-out strategy for being multi-cloud with Kubernetes (if currently pricey.) * Azure Tardigrade uses machine learning to address hardware failures before they impact uptime. * Cloudwatch Container Insights shows off the power of Cloudwatch.
Peter: * Transit Gateway became a viable method of creating a global network. * DocumentDB (with MongoDB Compatibility) sets the direction for new business models for SaaS companies. * EKS SLA reaches a 3 nines standard of reliability.
Jonathan: * Google’s Explainable AI provides a way we can understand and begin to implement machine learning in important areas like healthcare. * Wavelength<
Your co-hosts settle into the winter holidays by unwinding from Re:Invent and recording the last episode of The Cloud Pod of 2019.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Blue Medora, which offers pioneering IT monitoring integration as a service to address today’s IT challenges by easily connecting system health and performance data — no matter its source — with the world’s leading monitoring and analytics platforms.
This week’s highlights 1. Amazon picks fights with Microsoft, the New York Times and the President. 2. Oracle’s finances reflect the trouble we predicted they’d be in when Amazon pulled out. 3. Google sets its sights on dramatically increasing its market share by 2023.
Return of the JEDI It’s official: the Joint Enterprise Defense Infrastructure (JEDI) contract has been awarded to Microsoft to modernize the Department of Defense’s IT systems to the tune of $10 billion. Amazon, which anticipated that it would be awarded the JEDI contract, believes the decision was politically motivated, and that Microsoft is under-equipped to deliver on their promises, highlighting the dangers of a vulnerability in such a sensitive system.
In case you missed it, Sundar Pichai will be taking over as the new CEO of Google. Since he was already the CEO of Google’s parent company Alphabet, don’t expect any drastic changes.
And speaking of CEOs, Safra Catz is now officially the sole CEO of Oracle following the death of her co-CEO Mark Hurd. After Amazon’s migration, she’ll have to deal with the company’s revenue challenges and falling stock prices. It’s not a great time for Oracle as the company continues to lose face with CIOs after years of licensing audits and exorbitant penalties. Football in the Amazon Amazon may have lost the contract with the DoD, but it can proudly claim to be the cloud computation provider for the Seattle Seahawks. Not only that, but Amazon will be partnering with the entire NFL for a new safety initiative analyzing impact data with a “digital athlete.
AWS CEO Andy Jassy gave an
Your co-hosts celebrate the one-year anniversary of the podcast by returning to the place where it all started - AWS Re:Invent. Joining us once again is Ryan Lucas (@ryron01) as we recap the largest week in Cloud.
A big thanks to this week’s sponsors: * Foghorn Consulting, which provides full stack cloud solutions with a focus on strategy, planning, and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. * Blue Medora, which offers pioneering IT monitoring integration as a service to address today’s IT challenges by easily connecting system health and performance data–no matter its source–with the world’s leading monitoring and analytics platforms.
This week’s highlights * Machine Learning took center stage as the engine behind many of the new machines introduced over the week, and we expect to see it implemented more and more.
AWS Draft — and the Winner is… On episode 49, we drafted each of our top three picks for what we thought would be announced at Re:Invent. It’s a three-way tie for first! Each one of us correctly guessed one of our three picks, and nobody guessed that Anderson .Paak would make a musical appearance, leaving the tie unbroken. (Peter predicted that Formula 1 racing would be included, but it was a runner-up choice and goes uncounted.)
Moving on to Re:Invent, we cover the announcements day-by-day:
Sunday Toys and Security AWS launched DeepComposer, the world’s first machine learning enabled keyboard. The 32-key, 2-octave keyboard is designed to help developers to get hands-on with AI. You can train the program to generate compositions based on musical genres, but don’t expect any compelling vocals from it yet, though. Check out the announcement for sample selections. For only $99 you will be able to buy a MIDI keyboard (worth about $50) with the AWS logo on
DeepRacer, a machine-learning based toy from yesteryear has received its own upgrades (a stereo camera and LIDAR sensor) which allow the cars to be trained to race each other physically in addition to virtually.
Identity and Access Management (IAM) Access Analyzer launches for free as a way to get an overview on your access control policies — it mathematically analyzes access control policies attached to resources and determines which resources can be accessed publicly or from other accounts.
A preview version of EC2 Image Builder has also launched to help you maintain secure OS images for Windows Server and Amazon Linux 2. This is especially good for anyone just starting their cloud journey. We’re glad to see this available now, but where was it four or five years ago when it should
Sponsors: * Foghorn Consulting * Blue Medora
Your co-hosts are back from Thanksgiving and Re:Invent, and we’re running through all of it for you. In this episode, we cover the lead-up to opening day. Next week, we’ll release an episode fully devoted to Re:Invent coverage. This week’s highlights
CloudWatch has been growing quietly into a much more robust tool with 11 updates since the last episode.
Attribute-based access control comes to AWS. This should allow a finer control over your security privileges.
CloudTrail Insights launches with machine learning to help you separate the signal from the noise in your user activity and API usage.
Amazon EC2 introduces new API We’re one step closer to actually paying for what we use with the announcement that EC2 T2 instances will support Unlimited Mode at the account level. If your workload is spread out among multiple accounts, this will be something you should look at. But if you’re looking for load balancer updates, there’s a new batch of those for you too. We especially like the Weighted Target Groups, which have been needed for blue/green deployments for a while now. Restores and Replicas Migrating to the cloud has gotten a bit easier with differential and log restores on RDS for SQL servers. Like a lot of the recent announcements, simplicity was highlighted in the announcement of increased availability of DynamoDB tables using global table replicas.
“It’ll only take a few clicks” makes it sound like Amazon thinks clicking things must be very taxing on us. Secrets and Cents CloudTrail Insights will alert you to unusual activity at a cost of 35 cents per 100,000 write management events analyzed. It’s hard to know yet whether how expensive that will end up being, but it sounds cheap. AWS Single Sign-On will connect to Azure AD, making it easier to migrate to Amazon, and AWS Secrets Manager will make it easier to rotate your secrets by handling it at the API level.
AWS is moving from role-based to attribute-based access control and will be implementing Tag Policies to allow you to control the standardization of your tags. Implementing these should serve to become better organized with less pain. WAF has grown up, having gained a number of improvements. With a threat research team maintaining the rules, you’ll have protection even before you customize your rules. Devops and Devtools
AWS is getting ready for the biggest event of the year, Re:Invent 2019 in Las Vegas. Your Co-Hosts do their best to guess what AWS may announce, we cover some preannouncement news, and more!
NOTE: This episode was recorded on November 20th, to let the co-hosts enjoy Thanksgiving! This episode is AWS specific, as well as our first show after the Re:Invent conference. If you want to stay up to date on Azure or GCP in the interim, follow our Twitter @thecloudpod1 or join our Slack Channel.
Sign up for our Newsletter!! Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Topics AWS * CloudFormation Update – CLI + Third-Party Resource Support + Registry * Announcing Firelens – A New Way to Manage Container Logs * In The Works – New AMD-Powered, Compute-Optimized EC2 Instances (C5a/C5ad) * Amazon EKS adds support for provisioning and managing Kubernetes worker nodes * AWS Systems Manager Explorer – A Multi-Account, Multi-Region Operations Dashboard * Application Load Balancer Simplifies Deployment with Weighted Target Groups * Add defense in depth against open firewalls, reverse proxies, and SSRF vulnerabilities with enhancements to the EC2 Instance Metadata Service * Welcome to AWS Storage Day * Continuously monitor unused IAM roles with AWS Config
Reinvent Draft Jonathan 1. Zero/Low code application platform 2. Anthos like hybrid/multi-cloud platform/option 3. Transit Gateway cross-regional and/or Security group support
Peter 1. Layer 7 Egress Filtering Gateway 2. Cloudwatch Dependency Mapping (mute alerts if downstream from another alert) 3. Outposts GA and/or Shipping
Justin 1. Cost Reduction for the Network Tier 2. A device with a camera, like a drone, thing, etc that will replace the deepracer 3. Visual Threat Detection modeling for their security tools
Artist Pick * Jonathan: Calvin Harris * Peter: Marshmello - The Licks * Justin: David Guetta
Runner Ups
Docker sells off its enterprise business to Mirantis. Amazon gets upset with the pentagon and launches a data exchange. Azure wins a lucrative contract and GitHub actions. Google buys cloudsimple complicating things for the VMWare on Azure offerings.
Sign up for our new Newsletter! Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Follow Up Jonathan - Follows up on Redshift Topics General News/Topics * Container shakeup: Docker sells enterprise business to Mirantis, appoints new CEO * Amazon protests Pentagon’s cloud contract award, citing ‘unmistakable bias’
AWS * Import Existing Resources into a CloudFormation Stack * AWS Data Exchange – Find, Subscribe To, and Use Data Products * Continuous delivery of container applications to AWS Fargate with GitHub Actions
Reinvent Tips & Suggestions * Attending Sessions * Reinvent Parties * Replay
Google * Google launches new service for monitoring multicloud networks * Google makes biggest gains in ThousandEyes’ report on public cloud network performance * Google acquires CloudSimple to bring more VMware workloads into its cloud * Multi-tenancy support in Identity Platform, now generally available
Azure * In a win for Microsoft, Salesforce will migrate its Marketing Cloud to Azure * GitHub Actions for Azure is now generally available * Save more on Azure usage—Announcing reservations for six more services
Lightning Round (Jonathan 13, Justin 18, and Guest 5): * Amazon CloudSearch provides option to mandate HTTPS & minimum TLS version * <
AWS releases new RI option called the savings plan, IBM builds a financial services cloud, and @jeffbarr celebrates 15 years of blogging for AWS! Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Follow Up * Halloween Downtime RCA - Google
Topics General News/Topics * Capital One replaces security chief after data breach * Amazon doubles down on Boston as a robotics hub with new $40M facility * IBM: Bank of America Know-How Will Differentiate Financial Services Cloud
AWS * 15 Years of AWS Blogging! * New – Savings Plans for AWS Compute Services * Cross-Account Cross-Region Dashboards with Amazon CloudWatch * An outsider’s inside view on open source at AWS * AWS supports Automated Draining for Spot Instance Nodes on Kubernetes * Amazon QuickSight goes Mobile, launches Cross Source Join and More * PostgreSQL 12.0 Now Available in Amazon RDS Database Preview Environment
Reinvent Tips & Suggestions Google * Google releases its Skaffold tool for automating Kubernetes into general availability * Opening the door to more dev tools for Cloud Spanner
Azure * 10 user experience updates to the Azure portal * What’s new with Azure Monitor
Lightning Round (Jonathan 12, Justin 17, and Guest 5): * Updating Google App Engine with more new runtimes: Nodejs 12, Go 1.13, PHP 7.3 and Python 3.8 * Amazon EC2 now supports Microsoft SQL Server 2019
This week we discuss the Microsoft Ignite conference, announcements and new features and how we did on the Azure Draft. AWS announces a new Spain region and GCP had a lengthy halloween incident. Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Follow Up * Amazon fails to stop ex-sales staffer winging it to Google Cloud * Accused Capital One hacker had as much as 30 terabytes of stolen data, feds say * Senators Wyden and Warren sic trade lapdog on AWS over Capital One hack culpability
Topics AWS * Amazon Web Services to expand into Spain with new cloud region * Post-quantum TLS now supported in AWS KMS
Google * GCP Halloween Outage - 10/31 6:30 PM Pacfic - 10/2 - 10:51 AM * Celebrity Recognition now available to approved media & entertainment customers * Cloud storage data protection that fits your business * Introducing TensorFlow Enterprise: Supported, scalable, and seamless TensorFlow in the cloud * Exploring container security: Use your own keys to protect your data on GKE
MS Ignite Draft Jonathan 1. Digital Assistant to compete with Alexa or Google Home. 2. 3 more Azure Regions in US 3. More or Improved tooling for Devops Community
Peter 1. Istio for AKS 2. 1 more region in Canada 3. Visual Studio Online
Justin 1. Azure Portal Redesign 2. Sagemaker/Databricks like Competitor. 3. Oracle on Stage
Azure * Microsoft Azure customers reporting hitting virtual machine limits in U.S. East regions * Companies of all sizes tackle real business problems with Azure AI * Simply unmatched, truly limitless: Announcing Azure Synapse Analytics
The DOD awards the coveted Jedi contract, the MS ignite Draft, Earnings season and more this week on The Cloud Pod. Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Follow Up Topics * Pentagon awards controversial $10 billion cloud computing deal to Microsoft, spurning Amazon * Even after Microsoft wins, JEDI saga could drag on
General News/Topics Earnings Season * Microsoft’s cloud shines again as it easily tops earnings targets, but Azure slows * Despite AWS cloud growth, Amazon shares sag on lower forecast * Google Cloud fails to lift Alphabet enough to please investors
AWS * 200 Amazon CloudFront Points of Presence + Price Reduction * Native Container Image Scanning in Amazon ECR * AWS Global Accelerator Now Supports EC2 Instance Endpoints
Google * Updates make Cloud AI platform faster and more flexible * Advancing Customer Control in the Cloud * Swipe right for a new guide to PCI on GKE * Bring Your Own IP addresses: the secret to Bitly’s shortened cloud migration * What’s happening in BigQuery: New features bring flexibility and scale to your data warehouse
Azure * Preview: Server-side encryption with customer-managed keys for Azure Managed Disks * New in Stream Analytics: Machine Learning, online scaling, custom code, and more
MS Ignite Draft
Jonathan 1. Digital Assistant to compete with Alexa or Google Home. 2. 3 more Azure Regions in US 3. More or Improved tooling for Devops Community
Peter 1. Istio for AKS 2. 1 more region in Canada 3. Visual Studio Online
Justin 1. Azure Portal Redesign
Peter goes Absent With Out Leave - AWOL. Redhat can't save IBM's earnings, AWS starts detecting anomalies, Google adds 100-Gbps direct connect links to their data centers, and Azure gets FHIR-Y. We also take a few somber minutes to talk about the passing of Mark Hurd, Oracle's former Co-CEO. Plus the world famous lightning round.
Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Follow Up Topics General News/Topics * Oracle’s Mark Hurd, who was on medical leave, has died at 62 * Despite Red Hat boost, IBM misses revenue targets ? * Defense Secretary Mark Esper pulls out of JEDI cloud computing contract review
AWS * Amazon CloudWatch Anomaly Detection * Now Available – Amazon Relational Database Service (RDS) on VMware * Containers and infrastructure as code, like peanut butter and jelly * Amazon joins the Java Community Process (JCP)
Google * Improve your connectivity to Google Cloud with enhanced hybrid connectivity options * Leave no database behind with Cloud SQL for SQL Server
Azure * Microsoft unveils two open-source projects for building cloud and edge applications * Announcing the general availability of larger, more powerful standard file shares for Azure Files * Azure API for FHIR® moves to general availability
Lightning Round (Jonathan 11, Justin 16, and Guest 4): * AWS IoT Things Graph now provides workflow monitoring with AWS CloudWatch * Amazon CloudWatch now sends alarm state change events to Amazon EventBridge
Sponsors: Foghorn Consulting - fogops.io/thecloudpod * Ryan Lucas (@ryron01) fills in for Peter as we review the latest batch of cloud news. AWS re:Invent 2019 is just a month away and there’s no shortage of announcements this week either.
This week’s highlights * AWS re:Invent 2019 session catalog is live. If you haven’t gotten into the panels you want, you'll have to get on a waitlist. We’re also considering a podcast meetup! Please let us know if you’d be up for that. Reach out on Twitter or through the contact form. * Look at migrating from Oracle. It may take some time and effort to accomplish, but the savings Amazon’s had are results that bear an attempt at repeating. * You might be in luck if you have an open-source project. AWS is offering promotional credits to promote certain open-source work. Amazon completes massive migrations from Oracle After moving 75 petabytes of data involving 100+ teams, Amazon has finished migrating the last database of their first-party programs from Oracle to AWS services. The slashes in operational costs and latency may have the Amazon teams happy, but Oracle will definitely be watching to see if their other customers will be tempted to follow suit. A 90 percent reduction in cost would be an enticing prospect to switch providers of any service, and half the latency is nothing to sneeze at either.
Amazon looks to be taking some of those savings and turning them right back around into more projects. Of note, they will be offering promotional credits to those working on open-source projects, especially if you are working in Rust. If you manage to get a whole year of funding through Amazon that will mean more time working on what you really care about and less trying to keep the grants coming in every quarter or, worse, every month.
Rounding out AWS news, we discussed four other stories: 1. VPC security groups come to Firewall Manager. Finally. You’d think this would be included day one, but at least it’s here now. Maybe soon it’ll be updated to include federated access? 2. New M5n/R5n EC2 instances will offer up to 100 Gbps networking speeds. If you need to move around larger sets for machine learning, for instance, the price is reasonable. 3. EC2 instances will also be available in Arm-based bare metal form. The bare metal probably won’t grant much of an efficiency edge anymore, but hey, maybe it will help meet especially strict compliances. 4. AWS announced that another 18services have been FedRAMP authorized. If you’re working in the federal government, you now have a total of 48 AWS services available to you. The announcement comes off the back of Oracle gaining FedRAMP authorization for a handful of services. Way to laugh in Oracle’s face, AWS! Google offers new cloud architecture trainings
In an effort to
Justin is back from vacation and gets the podcast back on track. Justin, Peter and Jonathan talk about their guest spot on roaring elephants and Justin's AWS lambda fireside chat video. Elasticsearch sues AWS over trademark infringement, AWS gets its IQ raised, Oracle gets fedramp certified cloud regions and Google enhances their github app for cloud build. Plus the world famous lightning round. Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Follow Up Topics Roaring Elephant https://roaringelephant.org/2019/10/08/episode-161-the-cloudpod-weather-report-part-1/
AWS
https://www.youtube.com/watch?v=8Aq2DIMRIIg&t=1s General News/Topics * Oracle Launches FedRAMP-Authorized Government Cloud Regions * Oracle will add 2,000 jobs and 20 data centers in cloud infrastructure push * AWS faces Elasticsearch lawsuit for trademark infringement * Ansible holds the pole position for automation, but is it too good and too small?
AWS * Now use AWS Systems Manager to execute complex Ansible playbooks * AWS DataSync News – S3 Storage Class Support and Much More * AWS IQ – Get Help from AWS Certified Third Party Experts on Demand * EC2 High Memory Update – New 18 TB and 24 TB Instances LR? * Amazon EKS Windows Container Support now Generally Available
Google * Cloud Build brings advanced CI/CD capabilities to GitHub * Optimize your Google Cloud environment with new AI-based recommenders * Announcing updates to AutoML Vision Edge, AutoML Video, and Video Intelligence API * Extending Stackdriver Logging across clouds and providers with new BindPlane integration
Azure
Chef finds a bad recipe for success, AWS rolls out Step Functions, Google launches its native load balancer for Kubernetes and Microsoft confuses us further with premium tier storage offerings. Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Topics General News/Topics * A CIO’s guide to cloud success: decouple to shift your business into high gear * What’s Going on with GKE and Anthos? * Chef Saga + DevOps biz Chef roasted for tech contract with family-separating US immigration, forks up attempt to quash protest - 9/19 + Chef’s Position on Customer Engagement in the Public and Private Sectors 9/19 + An Update to the Chef Community Regarding Current Events 9/20 + A Personal Message From the CTO 9/20 + An Important Update from Chef 9/23 * A ‘Grass Roots’ Campaign to Take Down Amazon Is Funded by Amazon’s Biggest Rivals
AWS * Now Available – EC2 Instances (G4) with NVIDIA T4 Tensor Core GPUs * New – Step Functions Support for Dynamic Parallelism * Amazon S3 introduces same region replication * vCPU-based On-Demand Instance Limits are Now Available in Amazon EC2
Google * Virtual display devices for Compute Engine now GA * Container-native load balancing on GKE now generally available
Azure * Azure Files premium tier gets zone redundant storage * Introducing cost-effective increment snapshots of Azure managed disks in preview
Lightning Round (Jonathan 10, Justin 15, and Guest 4): * Introducing new Amazon EC2 Windows Server AMIs for DISA STIG compliance
Justin goes to Oracle World and comes back with a new understanding of OCI customers. VPC Flow logs get new metadata and we get an update on AWS outposts, but no date or pricing yet. Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Follow Up * Investors send Cloudflare’s shares soaring 20% after IPO hauls in $525M
Topics AWS * Learn From Your VPC Flow Logs With Additional Meta-Data * Running AWS Infrastructure On Premises with AWS Outposts * What is an AWS Outpost? * AWS Service Catalog Announces Budget Visibility * Firelens now in Preview * Introducing NoSQL Workbench for Amazon DynamoDB — Now in Preview
Google * Google teams up with Mayo Clinic on AI-powered medical research * Anthos simplifies application modernization with managed service mesh and serverless for your hybrid cloud
Azure * Microsoft and Disney aim to speed up movie and TV production with new ‘scene-to-screen’ cloud deal * Announcing user delegation SAS tokens preview for Azure Storage Blobs * Announcing Azure Private Link
Oracle * Oracle co-CEO Mark Hurd takes leave of absence for unspecified health reasons * Introducing Simple, Unified Billing for Partner Solutions on Oracle Cloud Marketplace * Oracle Cloud Infrastructure Brings More Innovations to Customers * In an Industry First, Oracle Brings Autonomous Operation to Linux
Episode 39: Recorded on September 10th, 2019. Show Title: The Cloud Pod goes Quantum
This week AWS releases the Quantum Ledger Database, Google gets shielded GKE nodes and Microsoft gets a new shiny datacenter in Germany Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Follow Up * Slack stock plunges on bigger-than-expected loss forecast
Topics AWS * Introducing Fine-Grained IAM Roles for Service Accounts * Optimize Storage Cost with Reduced Pricing for Amazon EFS Infrequent Access * Building Spinnaker Features for Amazon ECS * Amazon EKS now supports K8 1.14 * Use AWS Config Rules to Automatically Remediate Non-compliant Resources * Now Available - Amazon Quantum Ledger Database (QLDB)
Google * Announcing the general availability of 6 and 12 TB VMs for SAP HANA instances on Google Cloud Platform * Exploring container security: Bringing Shielded VMs to GKE with Shielded GKE Nodes
Azure * Microsoft acquires infrastructure visibility provider Movere * Azure HPC Cache: Reducing latency between Azure and on-premises storage * Microsoft Azure available from new cloud regions in Germany * Satellite connectivity expands reach of Azure ExpressRoute across the globe * Building cloud-native applications with Azure and HashiCorp
Lightning Round (Jonathan 8, Justin 15, and Guest 4): * Introducing Analyzing Text with Amazon Elasticsearch Service and Amazon Comprehend
US-East-1 has a hiccup in a single AZ, Lambda fixes cold start launches inside a VPC, Google gets an AD service and Microsoft goes cloud neutral in Switzerland. Plus special guest @ryron01 Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Follow Up * In updated IPO filing, Cloudflare seeks up to $483M at $3.5B valuation
Topics AWS * US-Tire-Fire-1 had an outage * Operational Insights for Containers and Containerized Applications * Port Forwarding Using AWS System Manager Session Manager * Now use Session Manager to interactively run individual commands on instances * Client IP Address Preservation for AWS Global Accelerator * 64 AWS services achieve HITRUST certification * Take the AWS certified cloud practitioner exam in your home or office 24/7 * AWS Chatbot Now Supports Notifications from AWS Systems Manager * Amazon ECS now exposes runtime ContainerIds to APIs and ECS Console * Announcing improved VPC networking for AWS Lambda functions
Google * Managed Service for Microsoft Active Directory (AD) * Using Google Cloud Speech-to-Text to transcribe your Twilio calls in real-time * August on GCP
Azure * How Microsoft and Oracle became cloud buddies, and what’s next for their improbable partnership * Microsoft Azure's cloud regions in Switzerland are now open for business
VMWare acquires Pivotal and Carbon black, plus VMworld debrief. Google kills more products and AWS reduces the cost of SageMaker training. Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Topics General News * Oracle files new appeal over Pentagon’s $10B JEDI cloud contract RFP process
VMWorld * VMware pays billions to acquire Pivotal Software and Carbon Black * VMWorld US 2019 Monday Recap * VMWorld US 2019 Tuesday Recap * VMware CEO Pat Gelsinger weighs in on acquisitions, blockchain, security and more * VMware Delivers a Hybrid Cloud Platform Powering Next-Generation Hybrid IT * VMware Announces VMware Tanzu Portfolio to Transform the Way Enterprises Build, Run and Manage Software on Kubernetes
AWS * Amazon Forecast is now GA * Introducing AI powered health data masking * Managed Spot Training: Save Up to 90% On Your Amazon SageMaker Training Jobs * AWS Systems Manager Parameter Store announces intelligent-tiering to enable automatic parameter tier selection
Google * Introducing Cloud Run Button: Click-to-deploy your git repos to Google Cloud * Cloud Text-to-Speech expands its number of voices by nearly 70%, now covering 33 languages and variants * Google will shut down Google Hire in 2020
Azure * Preview of custom content in Azure Policy guest configuration
AWS introduces new kernel panic API trigger, Azure storage gets complicated, and Google's big query gets a terraform module. Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Follow Up * Cloudflare files for IPO, revealing revenue of $129M in first half of 2019
Topics General News * Alibaba blows past earnings estimates cloud business hits 4.5b run rate * Digital Ocean launches new managed MySQL and Redis Database Services
AWS * New – Trigger a Kernel Panic to Diagnose Unresponsive EC2 Instances * Amazon Prime Day 2019 – Powered by AWS * AWS App Mesh now supports routing based on HTTP headers and specifying route priorities * Easily enable AWS Systems Manager capabilities with Quick Setup * Amazon ECS Now Supports Per-Container Swap Space Parameters * 081319 Amazon Letter to Sen Wyden RE Consumer Data.pdf * Original letter: https://www.wyden.senate.gov/imo/media/doc/080519%20Letter%20to%20Amazon%20re%20Capital%20One%20Hack.pdf * Amazon Redshift now recommends distribution keys for improved query performance
Google * Skip the heavy lifting: Moving Redshift to BigQuery easily * Shining a light on your costs: New billing features from Google Cloud * Introducing the BigQuery Terraform Module
Azure * Improving Azure Virtual Machines resiliency with Project Tardigrade * Geo Zone Redundant Storage in Azure now in pr
Github.com gets a CI/CD Service, Lakes are forming with lake formation and Google and Azure get EPYC this week on the show. Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Follow Up * Amazon and Capital One face legal backlash after massive hack affects 106M customers * Intersect.AWS music festival has released ticket and lineup information
Topics General News * GitHub gets a CI/CD service * Announcing the preview of Github Actions for Azure * Pentagon pushes back JEDI winner decision by weeks amid fresh review * Pentagon Makes case for Return of the Jedi: There's only one cloud biz that can do the job and its starts with an A (or rhymes with loft) + https://media.defense.gov/2019/Aug/08/2002168542/-1/-1/1/UNDERSTANDING-THE-WARFIGHTING-REQUIREMENTS-FOR-DOD-ENTERPRISE-CLOUD-FINAL-08AUG2019.PDF * Apple is a filthy AWS, Azure, Google Reseller, grip punters: iPhone giant accused of hiding iCloud's real backend
AWS * Local Mocking and Testing support with Amplify CLI * AWS Lake Formation - Now GA * Amazon Aurora Multi-Master is Now GA + https://aws.amazon.com/blogs/database/building-highly-available-mysql-applications-using-amazon-aurora-mmsr/ * Preview Release of the new AWS tools for Powershell * AWS step functions adds support for nested workflows * New AWS Training Courses teach APN partners to better help their customers * Amazon Rekognition now detects violence, weapons and self-injury in images and videos; improves accuracy for nudity detection
Special guest Josh Stella joins us to talk about the Capital One breach. AWS releases PartiQL, one query language to rule them all, Microsoft licensing changes and more. Plus we talk more about Josh's company @Fuguehq in Cool Tools. Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Follow Up Capital One * A Technical Analysis of the capital one cloud misconfiguration breach
Topics General News * Cloudflare reportedly files to go public in September
AWS * Amazon acquires enterprise flash storage startup E8 Storage * Amazon sues former AWS exec for joining rival Google division as cloud wars escalate * AWS CloudFormation Update – Public Coverage Roadmap & CDK Goodies * Introducing the preparing for the california consumer privacy act whitepaper * Announcing PartiQL: One query language for all your data
Google * Google debuts migration tool for its Anthos hybrid cloud platform * New protections for users, data, and apps in the cloud
Azure * Introducing Azure Dedicated Host * Cisco and Microsoft integrate their Kubernetes container platforms * Azure Archive Storage is better with new lower pricing * Microsoft has updated licensing rights for dedicated cloud hosts + https://twitter.com/Werner/status/1158458860790779905 + https://twitter.com/RobertEnslin/status/1159225726949720064?s=20 * Microsoft launches new Azure Security Lab, offering up to $300k to anyone who can hack its public cloud
Lightning Round (Jonathan 8, Justin 11, and Guest 3):
Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Follow Up AWS Reinvent Music Festival - https://intersect.aws/ Topics General News * Earnings + Amazon shares dip missing profit expectations tech giant posts 63.4billion in Q2 revenue + Microsoft trumpets record year with $126b in Annual Revenue up 14% as quarterly profits beat estimates + Google Cloud's run rate is now over $8B + Alphabet announces second quarter 2019 results
AWS * eksctl – the EKS CLI * AWS Released resource optimization recommendations * Stackery lets AWS lambda developers debug their serverless programs locally on a laptop * AWS Launches a chatbot for chatops * AWS client VPN now adds support for split tunneling * AWS Secrets Manager now supports VPC endpoint policies * Announcing the new AWS Middle East Bahrain Region
Google * Google partners with VMWare to bring virtualized workloads to GCP * Brick by Brick: Learn GCP by setting up a kid-controllable Minecraft server
Azure
Gartner releases the new magic quadrant for IaaC and PaaS Cloud providers and Amazon continues to dominate. AT&T gets busy with the cloud, Google introduces spinnaker and Microsoft invests 1B in OpenAI this week on The Cloud Pod. Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Topics * Introducing the Amazon Corretto Crypto Provider for improved Crypto Performance * Advancing Microsoft Azure reliability * Introducing proximity placement groups * IBM inks multi-billion dollar cloud computing deal with AT&T * Microsoft & AT&T sign $2B+ cloud infrastructure and services deal * The case against Amazon: Why the tech giant is facing antitrust scrutiny on two continents * Arrested Development: Cops Dump Amazon's facial-recognition API after struggling to make the thing work properly * AWS named as leader in Gartner's Infrastructure as a Service (IaaS) Magic Quadrant for 9th consecutive year * Introducing Spinnaker for Google Cloud Platform - CD made easy * Azure is making it easier to bring your linux based web apps to Azure App Service * Microsoft will invest $1B for OpenAI aimed at improving Azure cloud platform
Lightning Round (Jonathan 8, Justin 9, Peter 1 and Guest 3): * Azure is Silo Busting with new Multi-Protocol access for the Azure Data Lake * Azure Monitor for containers with Prometheus now in preview * Amazon ECR now supports increased repository and image limits * AWS Cost Explorer
The team is back after some well deserved time off, with a busy two weeks they try to cover everything. AWS NYC event, Azure Migration Program, EC2 Instance connect and AWS budget reports. Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Topics * Announcing the General Availability of Azure Premium Files * AWS OpsCenter - A new feature for streamlining IT Operations * Amazon Aurora PostgreSQL Serverless - Now GA * Amazon EventBridge - Event Driven AWS Integration for your SaaS applications * AWS Cloud Development Kit (CDK) for typescript and python are now GA * NYC Summit draws Protests * Google Acquires Storage Startup Elastifile for reportedly 200m * Production debugging comes to Google Cloud Source Repositories * Google has introduced a new Jenkins GKE plugin to deploy software to K8 * Google Announces new Cloud Region and Google Data Center in Nevada * Introducing Equiano, a subsea cable from Portugal to South Africa * Introducing the Azure Migration Program * Announcing preview of Azure Data Share * Session Manager launches tunneling support for SSH and SCP * Introducing Amazon EC2 Instance Connect * Introducing AWS budgets reports * Amazon Cloudwatch Anomaly Detection - Now in Preview
We talk about AWS EKS 1.13 release, Slack IPO, GCP Workload identity and more this week on the cloud pod. Note: This episode was recorded after reinforce recap show due to vacation schedule of the hosts. We will cover the first few weeks of July for all cloud providers in Episode 31 and then back to normal schedule. Sponsors: * Foghorn Consulting - fogops.io/thecloudpod
Topics * App Engine second generation runtimes now get double memory, plus go 1.12 support and PHP 7.3 * Virtual machine scale set insights from Azure Monitor * Amazon EKS now supports K8 1.13, ECR Private Link and Kubernetes Pod Security Policies * The cloud goes 'cloudless' * AWS @ OSCON 2019 * Slack stock soars 50% in direct NYSE listing, Now valued at $20 billion + dolalrs * Amazon RDS now supports Storage Autoscaling * GCP Workload Identity: Better Authentication for your GKE Apps
Lightning Round (Jonathan 7, Justin 9, Peter 1 and Guest 3): * Microsoft Positioned as a Leader in the Forester WaveTM: Database as a Service * Amazon Quicksight now supports fine-grained access control over Amazon S3 and Athena * Amazon API Gateway Adds Configurable Transport Layer security version for Custom Domains * AWS Glue now provides workflows to orchestrate ETL workloads * Amazon Aurora with PostgreSQL compatability supports data import from Amazon S3 * AWS Lambda Console shows recent invocations using cloudwatch insights * AWS has announced
We recap the AWS Reinforce conference from Boston Massachusetts. Draft results, overall impressions of the conference and we break down each announcement.
Sponsors: * Foghorn Consulting - fogops.io/thecloudpod * Turbonomic - turbonomic.com/cloudpod
Reinforce Results Justin 1. DLP Cloud solution on AWS 2. SIEM for AWS 3. Endpoint Security Tools
Jonathan 1. Redlock or Trusted Advisor for security 2. VPC Security Group Improvements 1. Lists of Source IP’s 2. IP/Name matching/Tag sources for Security Groups 3. Machine Learning around Flowlogs and Payload data
Peter - Wins! 1. L7 Egress Firewall/proxy 2. Flowlogs with Payload data/Packet Capture - VPC Traffic Flow Mirroring 3. Security Scanning of Container for ECR
Honorable Mention * Justin + WAF Enhancement + Client VPN based Dynamic Access/Security Groups + Tagging Namespace fix * Jonathan + Organizations enhancements to make security easier across a set of accounts * Peter + Lunch will be free
Reinforce Announcements * AWS Certificate Manager Private CA now supports Root CA hierarchy * You can now use IAM access Advisor with AWS Organizations to set permission guardrails confidently * Network Load Balancer Now Supports UDP Protocol * Amazon FSx for Windows File Server Now Enables you to use your File Systems Directly with Your organizations self-managed active directory * Amazon FSX for WIndows File Server now enables you to use a single AWS Managed AD with file systems across VPC's and Accounts * File Gateway Adds options to enforce encryption and signing for SMB shares * New Service Quotas: View and manage your quotas for AWS services from one central location * Amazon DynamoDB now supports up to 25 unique items and 4 MB of data per transactional request<
It is the week before AWS Re:Inforce and that means it is time for the draft! Cloud Endure migrate is now free of charge, Azure has a shared image gallery and Mongo comes to Google Cloud this week on the podcast. Sponsors: * Foghorn Consulting - fogops.io/thecloudpod * Turbonomic - turbonomic.com/cloudpod
Topics: * Cloud Endure Migration is now available at no charge * Azure Shared Image Gallery now GA * Microsoft FHIR server for Azure extends to SQL * 15 Highlights from the 2019 AWS Public Sector Summit Keynote * Amazon S3 Update - SigV2 Deprecation Period Extended & Modified * Github acquires Pull Panda to power up Collaboration for software teams * 2 new AWS C5 instance types and 1 new C5 metal server * Announcing the preview of Microsoft Azure Bastion * Mongo DB Atlas comes to Google Cloud * Azure launches first middle east regions
Reinforce Predictions * Justin + DLP Cloud solution on AWS + SIEM for AWS + Endpoint Security Tools
Honorable Mentions * Justin + WAF Enhancement + Client VPN based Dynamic Access/Security Groups + Tagging Namespace fix * Jonathan + Organizations enhancements to make security easier across a set of accounts * Peter + Lunch will be free
Lightning Round (Jonathan 6, Justin 9, Peter 1 and Guest 3): * Amazon Aurora with Post
Google Publishes RCA on their outage, Microsoft and Oracle enter into a cloud alliance and AWS improves incident resolution with Systems Manager Opscenter. Sponsors: * Foghorn Consulting - fogops.io/thecloudpod * Turbonomic - turbonomic.com/cloudpod
Follow Up: * Google Cloud networking incident 19009 Final RCA
Topics: * Google releases new Translate API Capabilities to help localization experts and global enterprises * Google now allows you to save money by stopping and starting compute engine instances on a schedule * Google has created more choice, less complexity in their latest Google Compute Engine Pricing updates * Azure forecasting has added several new features * Microsoft Azure and Oracle Partner Up * Microsoft and Oracle to interconnect Microsoft Azure and Oracle Cloud * Overview of the Interconnect between Oracle and Microsoft * AWS is introducing AWS Systems Manager Opscenter to enable faster issue resolution * Google continues to preach multi-cloud with the acquistion of Looker * Amazon Personalize is now GA * Lightning Round (Jonathan 6, Justin 9, Peter 1 and Guest 3): * Amazon API Gateway now supports VPC Endpoint Policies * AWS Glue now provides VPC interface endpoint * Amazon Inspector adds CIS Benchmark support for Amazon Linux 2 * Google has announced integrated partnership for Snowflake on Google Cloud Marketplace * Azure has released new Mobility SDKs for Azure Maps * AWS organizations now support tagging and untagging of AWS Accounts * Amazon ECS now supports increased ENI limits for tasks i
Peter is back after a few weeks away from the show. Azure launches new Event Grid features, Palo Alto Networks picks up Twistlock and Puresec and Google has a really bad day. Plus the amazing lightning round with Peter.
Sponsors:
Foghorn Consulting - https://fogops.io/thecloudpod Topics: * 25th Episode Blog Post * Azure has simplified event-driven architectures with new updates to Event Grid * Palo Alto Networks enters into definitive agreement to purchase Twistlock and Puresec * Oracle Lays off hundreds from its Seattle office as its cloud strategy remains grounded * Azure Adaptive network hardening in Azure Security Center is now GA * Amazon EBS adds ability to take point-in-time, crash-consistent snapshots across multiple EBS volumes * Announcing Tag-Based Access Control for AWS Cloudformation * New Data API for Amazon Aurora Serverless * Amazon Managed Streaming for Apache Kafka (MSK) - Now Generally Available * Google Cloud has Major Outage on 6/2 + Google Cloud Outage resolved, but it reveals holes in cloud computing atmosphere + An update on Sunday's service disruption
Lightning Round (Jonathan 6, Justin 9, Peter 1 and Guest 3): * AWS is Announcing Windows Server version 1903 AMI's for Amazon EC2 * Amazon Chime now supports United States Toll-Free Numbers * AWS Storage Gateway Service adds capability to move Virtual Tapes from S3 Glacier to Glacier Deep Archive * AWS has introduced Fraud Detection capabilities using Machine Learning
This week we talk about Cloud Center of Excellence, New Encryption options, open source update on Firecracker and more. Elise Carmichael (twitter: @uncfleece) from @tricentis joins us to talk about some of their tools. Sponsors: Foghorn Consulting - https://fogops.io/thecloudpod Topics: * New - Updated Pay-Per-Use Pricing Model for AWS Config Rules * Google Says some G-Suite Passwords were stored in Plaintext since 2005 * Google Cloud - Optimize your organizations cloud journey with a Cloud Center of Excellence * Amazon RDS for SQL Server increases database limit per database instance up to 100 * AWS Opt-In to Default Encryption for New EBS Volumes * AWS Ground Station - Ready to ingest & process Satellite Data * Firecracker Open Source Update May 2019 * Application Management made easier with Kubernetes Operators on GCP Marketplace * Amazon RDS for SQL Server now supports Always On Availability Groups for SQL Server 2017 * Github launches Sponsors, lets you pay your favorite open source contributors * Manage your cross cloud spend using Azure Cost management
Lightning Round (Jonathan 5, Justin 9, Peter 1 and Guest 3): * AWS now allows you to enable Hibernations on EC2 instances at the same time as you launch the AMI * Amazon Document DB (with MongoDB Compatibility) is now SOC 1, 2, 3 Compliant * AWS Marketplace enables long term contracts for AMI products * AWS Budgets now Supports Variable Budget Targets for Cost and Usage Budgets * Amazon RDS Recommendations Provide Best Practice Guidance for Amazon Aurora * All US Azure regions now approved for FedRAMP High impact level
Kubecon is happening in Barcelona, Spain, VMWare purchases bitnami, Apptio buys Cloudability and a ton of Kubernetes announcements out of KubeCon this week on The Cloud Pod. Sponsors: Foghorn Consulting - https://fogops.io/thecloudpod Topics: * A Cosmonaut's guide to the latest Azure Cosmos DB Announcements * VMWare snaps up Bitnami to broaden its multi-cloud strategy * Apptio buys Cloudability as cloud cost management market heats up * Introducing Terraform Cloud Remote State Management * Cloudwatch container insights for EKS and Kubernetes Preview * Digital Ocean K8 service is now Generally Available * Google Announces new enhancements to ease adoption of GKE + In celebration of K8 5th birthday GCP is giving away a free month of learning at Coursera with the Architecting with GKE course. (valid until September 30th)
Lightning Round (Jonathan 5, Justin 8, Peter 1 and Guest 3): * EKS has simplifed K8 cluster authentication with new CLI Sub command for generating the authentication token for connecting * You can now use custom chat bots with Amazon Chime * Performance insights now supports Amazon Aurora Global Database * AWS Migration hub now provides right-sized Amazon EC2 instance recommendations * Amazon Sagemaker Ground Truth now supports Automated Email Notifications for Manual Data Labeling * AWS APAC Mumbai region adds third availability zone * AWS APAC Seoul Regions adds third availability zone
This week on The Cloud Pod, Amazon S3 deprecates path style routing, then changes their mind. Azure reliability suffers in the first part of the year, and Google summarizes their IO cloud announcements. Sponsors: Foghorn Consulting - https://fogops.io/thecloudpod Topics * Amazon S3 will no longer support path-style API requests starting September 30th, 2020 + https://github.com/SummitRoute/aws_breaking_changes + https://aws.amazon.com/blogs/aws/amazon-s3-path-deprecation-plan-the-rest-of-the-story/ * Azure App Service update: Free Linux Tier, Python and Java support, and more * New – The Next Generation (I3en) of I/O-Optimized EC2 Instances * Azure SQL Data Warehouse releases new capabilities for performance and security * Google Cloud at I/O: The news you need to know * Steve Singh stepping down as Docker CEO * AWS Secrets Manager supports more client-side caching libraries to improve secrets availability and reduce cost * Microsoft may be all-in on cloud computing, but Azure Reliability is lagging the competition + https://searchcloudcomputing.techtarget.com/news/252463190/Microsoft-to-reduce-Azure-outages-with-Project-Tardigrade
Lightning Round (Jonathan 5, Justin 7, Peter 1 and Guest 3) * Azure has improved their portal with improvements to search, change tracking, faster and more intuitive resource browsing * Azure Integration Services has simplified adoption of serverless with Azure Functions including new SAP connectors, Logic Apps and API Management * Azure now introduces health to azure deployment manager to detect problems with your deployment and automate rollback processes * Amazon and its Partners can now resell VMWare on AWS
Azure suffers an outage, AWS Snowballs drive block storage at the edge, S3 Batch Operations and Fully Managed Blockchain all this week on the cloud pod! Plus Lightning Round and Cool Tools with Jonathan. Sponsors: Foghorn Consulting - https://fogops.io/thecloudpod Follow Up * VMWare CEO implies Amazon Partnership is more important than Azure
Topics * Use AWS Transit Gateway & Direct Connect to Centralize and Streamline Your Network Connectivity * AWS Snowball Edge adds block storage for edge computing workloads * New — Analyze and debug distributed applications interactively using AWS X-Ray Analytics * Migrate your aws site-to-site VPN connection from Virtual Private Gateway to an AWS Transit Gateway * Amazon S3 introduces S3 Batch operations for Object Management * 5/2 Azure Outage & RCA * Azure Fully Managed Blockchain Service * Azure Intelligent Edge Innovation across data, IOT and Mixed Reality * Azure Making AI real for every developer and every organization * AWS Amplify launches an online community for fullstack serverless app developers + https://amplify.aws/community * A deep dive into what's new with Azure Cognitive Services * Partnering with the community to make Kubernetes easier * Accelerating DevOps with GitHub and Azure * Google Cloud and Service Now announce strategic partnership to enable intelligent digital workflows
Lightning Round (Jonathan 4, Justin 7, Peter 1 and Guest 3)
A New Cost Management blog, APAC gets a new AWS region and Docker Hub gets hacked. Plus Alphabet, Microsoft, and Amazon all release earnings and we break out the highs and lows. With special guest, Ian Mckay @iann0036 talks about his new AWS tool www.former2.com Sponsors: Foghorn Consulting - https://fogops.io/thecloudpod Follow Up * Apple actually reducing dependence on Amazon Cloud services
Topics * Ford Partners with Amazon to build cloud service connected cars * New AWS cost management blog launches * New Query for AWS Regions, Endpoints, and More using AWS Systems Manager Parameter Store * Earnings Season + Microsoft beats Wall street expectations, posting $30.6B in revenue, powered by cloud division + AWS revenue approaches $8 Billion in Q1, up 41% compared to last year + Despite Cloud growth, slowing revenue at Alphabet sends investors fleeing * AMD EPYC-Powered Amazon EC2 T3a instances * Now Open - AWS Asia Pacific (Hong Kong) Region * Slack renegotiated its deal with AWS in 2018, will spend 212 million more through 2023 * 190,000 user accounts exposed in hack of Docker Hub Database * Microsoft container registry unaffected by recent docker hub data exposure * VMWare brings its virtualization software to Microsoft Azure * AWS Deep Racer League Virtual Circuit is now Open
Lightning Round * AWS Single Sign-On now offers certificate customization to support your corporate policies
Google Kubernetes Engine Advanced, Jedi Contract Finalists, Cloud Migrations services and Apple’s 30 million a month spend on AWS this week on The Cloud Pod, plus the lightning round. Sponsors: Foghorn Consulting - https://fogop.io/thecloudpod Topics: * Improve Enterprise IT Procurement with Private Catalog, now in Beta * Introducing GKE Advanced - Enhanced reliability, simplicity and scale for enterprise + https://medium.com/@tinder.engineering/tinders-move-to-kubernetes-cda2a6372f44 * Amazon Cloudfront is now available in mainland China * Move your data from AWS S3 to Azure Storage using AzCopy * Announcing Azure to AWS Migration support in AWS Server Migration Service * Rewrite HTTP headers with Azure Application Gateway * Much to Oracles' chagrin, Pentagon names Microsoft and Amazon as $10B JEDI contract finalists * Announcing Azure Government Secret Private preview and Expansion of DOD IL5 * AWS Organizations now available in the AWS Govcloud regions for Central Governance and Management of AWS accounts * Google Hires 27-year SAP veteran Robert Enslin to boost cloud sales and support * Cloudbees buys Electric Cloud to strengthen Devops Platform * Microsoft Open sources data accelerator an easy to configure pipeline for streaming at scale * Apple spends more than 30m a month on AWS * AWS Cloudformation coverage updates for EC2, ECS and ELB
Lightning Round * Announcing the new AWS ce
We are back to our normal show after our GCP Next recap. This week the new AWS APAC region, Azure premium tiers and the AWS open letter on climate change. Plus the lightning round and cool tools. Sponsors * Foghorn Consulting: fogops.io/thecloudpod
Topics * Alerts in Azure are now all the more consistent * Self-Service exchange and refund for Azure Reservations * Unlock Dedicated resources and enterprise features with Service Bus Premium * Extending Azure Security Capabilities * AWS Boosts presence in Asia with new Indonesia cloud region * Spinnaker continuous delivery platform now with support for Azure * Azure Front Door service is now GA * Amplify Framework simplifies configuring Oauth 2.0 flows, hosted UI and AR/VR scenes for Mobile and Web * Introducing the App Service Migration Assistant for ASP.NET applications * Azure security center exposes crypto miner campaign * Gizmodo reports that Amazon is Aggressively pursuing big oil as its clean energy initiative stalls * 6562 Amazon employees have signed letter * AWS simplifies replatforming of MS SQL databases from Windows to Linux * New Release for Open Distro for ES 0.8.0
Lightning Round (Jonathan 4, Justin 4, Peter 1 and Guest 3) * AWS Cloudwatch launches search expressions * AWS Cloud 9 announces support for ubuntu development environments * Announcing the Azure Functions Premium plan for enterprise serverless workloads * Windows Server 2019 support now available for Windows Containers on Azure App Service
Google Next has wrapped up in San Francisco and we break down the announcements, talk about Google's enterprise play, and more. Special guest Ryan Lucas @ryron01 #googlenext19 #thecloudpod #gcp Sponsors Foghorn Consulting: fogops.io/thecloudpod Audible: audibletrial.com/thecloudpod
Topics Google Next Draft Results General Thoughts/Impressions Pre-Next Announcements * Introducing Compute and Memory Optimized VMs * Announcing the Cloud Healthcare API (Beta) * Google Cloud Memorystore Now with Redis 4.0 and Manual Failover API's
Next Announcements * Google Anthos * Cloud Run * Fully Managed Open Source Partnerships * Enterprise Databases Managed For you Enhancements and New Engines * Big Query Business Intelligence Engine * Google Voice for G Suite * New Storage Features * Google Cloud is the best place to run your microsoft windows apps * Introduce Cloud Code IDE integrations * New GCP Regions in Seoul and Salt Lake City * Choose your own environment with Apigee hybrid API management * Introducing Traffic Directory and other network enhancements * Increasing Trust - Visibility, Control and Automation
Episode 17 Azure announces new data and discovery classification features, AWS APN changes go into effect, and Chef goes 100% Open Source. Jonathan, Justin and Peter draft their Google Next 2019 predictions and more on the cloud pod. #thecloudpod Sponsors * Foghorn Consulting: fogops.io/thecloudpod * Audible: audibletrial.com/thecloudpod
Follow Up * KubeCTL - Cuttle or Control or C-T-L * Mitigating Risk in the hardware Supply Chain
Topics * Now Go Build #2 * Channel 9 releases information on Global Azure Bootcamp * Azure has announced preview of Data Discovery and Classification for Azure SQL Data Warehouse * Azure Search has new storage optimized service tiers in preview * AWS 2019 APN Changes in Effect * Amazon DynamoDB drops the price of global tables by eliminating associated charges for DynamoDB Streams * Scale Storage out with new Elastifile Cloud File Service for GCP * Chef goes 100% Open Source
Google Next Prediction Draft * Jonathan Picks
New languages for functions
Justin Picks
Major spanner enhancement
Google Siem Product
Peter Picks
Major announce around GKE in particular monitoring integration
Hybrid Service mesh. ISTIO like for hybrid cloud
Honorable Mention -
Lightning Round * AWS Firewall Manager now supports AWS Shield Advanced * Amazon Comprehend now supports AWS KMS encryption * Amazon Aurora with Postgresql now supports logical replication
AWS Summit Season 2019 is officially underway. Justin, Peter and special guest Chris Short @chrisshort. Plus the famous lightning round. Sponsors Foghorn Consulting: fogops.io/thecloudpod
Audible: audibletrial.com/thecloudpod Topics AWS Multi-Account Support for Direct Connect Gateway Introducing AWS Deep Learning Containers AMD Processors now available on AWS Ec2 Instances AWS S3 Glacier Deep Archive GA AWS App Mesh now Generally Available Concurency Scaling for Amazon Redshift New ALB Request routing for HTTP customer headers AWS Transfer for SFTP now supports VPC's and Private Link AWS Toolkit for IntelliJ GA and Visual Studio Code now in Preview Amazon EKS opens public preview for Windows Container Support ECS now supports local testing AWS Fargate and ECS now support external deployment control Episode #2 of Now Go Build New IAM permissions to enable accounts for new regions Google Releases new SRE tools and Training Azure has released new capabilities for Hybrid Cloud Service Control Policies in Organizations enable fine-grained permissions Lightning Round
Google finds a use for unused Kubernetes capacity by calculating PI, The Hyperscalers double down on gaming platforms and Azure beats Amazon to DOD certification! Plus the lightning round and cool tools with Jonathan. Sponsors * Foghorn Consulting: fogops.io/thecloudpod * Audible: audibletrial.com/thecloudpod
Follow Up Open Distro for ES * Free Software is the only Winner Elastic NV vs AWS - Adam Jacobs * Cloud Open Source Powder Keg
Topics AWS Re:inforce 2019 Registration now open Azure Simplifies environment setup with new blueprints for ISO27001 environments Workload Importance for Azure SQL Data Warehouse in Preview
Gaming Developers Conference
Microsoft Game Stack allows you to Achieve More Google Cloud makes Game Development More Open and Flexible AWS announced 190 new features for Lumberyard 1.18 Amazong Gamelift Realtime Servers in Preview Google Cloud has reached a new record computing 31.4 trillion digital of PI on Pi Day The Google Cloud Next 19 Session guide is Now available GCP Turning Data into NCAA March Madness Insights Cloudflare raises Fresh 150 million round delaying IPO AWS Joins the GraphQL Foundation Azure Government is First Cloud to Achieve DOD impact level 5 Provisional Authorization & GA of DOD regions Azure Data Studio - Open Source Gui for Postgres Lightning Round AWS Private Link now supports access over VPC Peering Amazon FSX for Lustre now supports access from amazon Linux Amazon RDS for Oracle now supports in region read replicas with Active Data Gu
This week Matt Adorjan (@mda590) joins us to talk about AWS's open distro for ElasticSearch, Breaking up big tech, and F5 acquiring Nginx. Plus the lightning round and Cool Tools with Jonathan. Thanks to our sponsors! Foghorn Consulting: fogops.io/thecloudpod Audible: audibletrial.com/thecloudpod Show Topics How does your cloud storage grow? With a scalable plan and a price drop Azure Premium Blob storage now in public preview Simply Enterprise Threat Detection and Protection with Google Cloud Security Services Elizabeth Warren bold plan to break up big tech Azure Devops Server 2019 now available AWS Announces Open Distro for Elastic Search Adrian Cockcroft publishes blog on keeping open source open Elastic.Co Response to open distros open source F5 Acquires NGINX Lightning Round AWS Performance Insights is now GA for SQL Server
https://aws.amazon.com/about-aws/whats-new/2019/03/performance-insights-is-generally-available-for-sql-server/
AWS SSM on-Premise now handles large hybrid environments (Previously less than 1000 instances)
https://aws.amazon.com/about-aws/whats-new/2019/03/AWS_Systems_Manager_on-premises_instance_management_for_large_hybrid_environments/
AWS Coretto 11 is now available as a release candidate
https://aws.amazon.com/about-aws/whats-new/2019/03/amazon-corretto-11-is-now-available-as-a-release-candidate/
AWS Step functions adds tag based permissions
https://aws.amazon.com/about-aws/whats-new/2019/03/aws-step-functions-adds-tag-based-permissions/
New AWS Direct Connect Console
https://aws.amazon.com/about-aws/whats-new/2019/03/announcing-the-new-aws-direct-connect-console/
Starbucks launches its latest drink the cloud macchiato
https://www.cnbc.com/2019/03/04/starbucks-launches-its-latest-drink-the-cloud-macchiato.html
AWS Code Commit now supports VPC Endpoints
https://aws.amazon.com/ab
Lyft goes all in on AWS and commits big money to AWS in their IPO. Several new solutions for security from the cloud vendors at RSA this week, and Jeff Barr stops by Reddit to tell us all about cloud formation! Plus the lighting round and cool tools with Jonathan. Sponsors: Foghorn Consulting: fogops.io/thecloudpod Audible: audibletrial.com/thecloudpod Show Topics: Lyft goes all in on AWS Google Releases csp config management for k8 GCP introduces new KMS client libraries Instantly restore your machines with Azure Backup SuperMicro hardware weakness lets researches backdoor into an ibm cloud server RightScale state of the cloud reports indicates Azure gaining on AWS * https://twitter.com/QuinnyPig/status/1100893328348831745
Maria DB ceo accuses hyperscalers of strip mining open source Azure announces preview of sentinel security Azure GA of Lab Services Jeff Barr stops by Reddit to drop a quick cloudformation update * Original Thread
Azure Security Center new Capabilities Azure announces new firewall capabilities Lightning Round: Amazon Worklink now works with Android Phones -
https://aws.amazon.com/about-aws/whats-new/2019/02/amazon-worklink-now-works-with-android-phones/
Aurora Serverless now publishes logs to cloudwatch - https://aws.amazon.com/about-aws/whats-new/2019/02/amazon-aurora-serverless-publishes-logs-to-amazon-cloudwatch/
Amazon Document DB now supports aggregations in arrays and indexing - https://aws.amazon.com/about-aws/whats-new/2019/02/Amazon-DocumentDB-new-features-for-aggregations-arrays-and-indexing/
AWS SSM now supports document sharing across accounts -
Episode 12 This week we talk about Athena Workgroups, Spotinst AWS partnership, Spatial Anchors in Azure and Microsoft and Google handle several employee issues. Sponsors: Foghorn Consulting: fogops.io/thecloudpod Audible: audibletrial.com/thecloudpod Show Topics Athena now supports Workgroups to segment/isolated data Azure has GA’s several new features to create more reliable event driven applications in Azure Spotinst Announces partnership with AWS Google Rethinks Federated Identity with Continuous Access evaluation protocol Next 19 Qwiklabs Challenge Azure Announces Spatial anchors for collaboration and mixed reality apps Microsoft Workers protest army contract Microsoft CEO Satya Nadella says company will not walk away from contract Google ends forced Arbitration for Employees - Lightning Round EFS now supports tag on create - https://aws.amazon.com/about-aws/whats-new/2019/02/amazon-efs-now-supports-tag-on-create/
AWS Code commit now supports programmatic creations of commits - https://aws.amazon.com/about-aws/whats-new/2019/02/aws-codecommit-supports-programmatic-creation-of-commits-contain/
Performance Insights now supports counter metrics for RDS Postgres, RDS Mysql and Aurora Mysql - https://aws.amazon.com/about-aws/whats-new/2019/02/Performance-Insights-Counter-Metrics-MS-PG-AMS/
Amazon Ec2 Fleets now let you increase target capacity limits - https://aws.amazon.com/about-aws/whats-new/2019/02/amazon-EC2-fleet-now-lets-you-increase-the-fleets-target-capacity-limits/
Amazon Data Lifecycle Manager adds support for shorter backup intervals - https://aws.amazon.com/about-aws/whats-new/2019/02/amazon-data-lifecycle-manager-adds-support-for-shorter-backup-intervals/
Azure Monitor aiops now supports alerts with dynamic thresholds- https://azure.microsoft.com/en-us/blog/announcing-azure-monitor-aiops-alerts-with-dynamic-thresholds/
Mysql and Maria RDS instances now support T3 and r5 instances
Episode 11
This week we have special guest Corey Quinn (twitter: @quinnypig). We talk about Googles Culture, Managed Database Services, Amazon HQ2. Plus the world famous lightning round and Jonathan's cool tools. Sponsors: Foghorn Consulting: fogops.io/thecloudpod Audible: audibletrial.com/thecloudpod Follow Up Azure security center helps protect you from RunC vulnerability - https://azure.microsoft.com/en-us/blog/how-azure-security-center-helps-you-protect-your-environment-from-new-vulnerabilities/
Ballmer’s Clippers select AWS in the first round for their public cloud partner * https://www.geekwire.com/2019/steve-ballmers-los-angeles-clippers-sign-cloud-deal-microsoft-rival-amazon-web-services/
News Google Cloud Security talks at RSA - https://cloud.google.com/blog/products/identity-security/announcing-google-cloud-security-talks-during-rsa-conference-2019
Liz Fong-Jones posts about her decision to leave Google and the toxic culture - https://medium.com/s/story/google-workers-lost-a-leader-but-the-fight-will-continue-c487aa5fd2ba
Digital Ocean launches Managed Database Service - https://siliconangle.com/2019/02/14/expanding-cloud-platform-digitalocean-launches-managed-database-service/ https://blog.digitalocean.com/announcing-managed-databases-for-postgresql/
Amazon introduces Lower cost storage class for EFS - https://aws.amazon.com/about-aws/whats-new/2019/02/amazon-efs-introduces-lower-cost-storage-class/
Amazon drops plans for New York (Queens) HQ2 - https://techcrunch.com/2019/02/14/amazon-drops-plans-for-new-york-hq2/
Azure releases Monitoring at Scale Features with Multi-resource metric alerts - https://azure.microsoft.com/en-us/blog/monitor-at-scale-in-azure-monitor-with-multi-resource-metric-alerts/
IBM CEO says they will be #1 in cloud chapter 2 - https://www.forbes.com/sites/siliconangle/2019/02/14/analysis-ibm-ceo-declares-chapter-2-of-cloud-and-ai-at-ibm-think-2019/#7968ea5c648f https://www.businessinsider.com/ibm-ceo-ginni-rometty-hybrid-computing-2019-1
AWS Announces five new amazon ec2 bare metal instances -
https://aws.amazon.com/about-aws/whats-new/2019/02/introducing-five-new-amazon-ec2-bare-metal-instances/
Amazon Updates Professional level certificates - https://aws.amazon.com/about-aws/whats-new/2019/02/updated-profes
Episode 10 Peter returns from his vacation, Major Docker security vulnerability, Azure gets FHIR and the Warriors choose a public cloud partner. Plus the lightning round! Sponsors Foghorn Consulting: fogops.io/thecloudpod Audible: audibletrial.com/thecloudpod Topics CVE-2019-5736 Docker RunC vulnerability - * Vulnerability - https://seclists.org/oss-sec/2019/q1/119 * AWS - https://aws.amazon.com/security/security-bulletins/AWS-2019-002/ * Google - https://cloud.google.com/kubernetes-engine/docs/security-bulletins * Azure - https://github.com/Azure/AKS/releases/tag/2019-02-12
Azure Account Failover now in Public preview - https://azure.microsoft.com/en-us/blog/account-failover-now-in-public-preview-for-azure-storage/
Google Cloud now provides bigquery sandbox without credit card - https://cloud.google.com/blog/products/data-analytics/query-without-a-credit-card-introducing-bigquery-sandbox
Azure API for FHIR - https://azure.microsoft.com/en-us/blog/lighting-up-healthcare-data-with-fhir-announcing-the-azure-api-for-fhir/
MSFT Healthcare Bot brings Conversational AI to healthcare - https://azure.microsoft.com/en-us/blog/microsoft-healthcare-bot-brings-conversational-ai-to-healthcare/
Azure announcing updates and GA for 3 Azure Data Services - https://azure.microsoft.com/en-us/blog/individually-great-collectively-unmatched-announcing-updates-to-3-great-azure-data-services/
Golden State Warriors Chase Center names Google Cloud as their public cloud provider- http://www.sportspromedia.com/news/golden-state-warriors-chase-center-google-cloud
Build Containers faster with Cloud build with Kaniko - https://cloud.google.com/blog/products/application-development/build-containers-faster-with-cloud-build-with-kaniko
Jib 1.0 released by Google Compute to simplify Java Docker Containers - https://cloud.google.com/blog/products/application-development/jib-1-0-0-is-ga-building-java-docker-images-has-never-been-easier
Amazon acquires Eeero - https://www.imore.com/amazon-buying-popular-mesh-wi-fi-company-eero https://www.theverge.com/2019/2/12/18221441/amazon-buying-eero-disappointing Lightning Round Google Announces support for 6 new cryptocurrencies in bigquery public datasets - https://cl
Episode 9 Its earnings season and we take a look at both AWS and Googles earnings, plus recap the Azure earnings from last week. We also talk about AWS Corretto GA, Microsoft DNS outage causes data loss?, Mongo DB SSPL licensing and more. Special Guest Ryan Lucas Sponsors Foghorn Consulting: fogops.io/thecloudpod Audible: audibletrial.com/thecloudpod Topics Earnings * AWS Earnings - https://www.cnbc.com/2019/01/31/aws-earnings-q4-2018.html * Alphabet (Google) Earnings - https://siliconangle.com/2019/02/04/alphabet-beats-earnings-forecast-costs-weigh-shares/
Google Cloud Firestore Nosql Database hits GA - https://techcrunch.com/2019/01/31/googles-cloud-firestore-nosql-database-hits-general-availability/
DNS Outage results in azure database outage - https://nakedsecurity.sophos.com/2019/02/01/dns-outage-turns-tables-on-azure-database-users/
MS Launches AMD powered Azure Instances - https://siliconangle.com/2019/02/01/microsoft-launches-amd-powered-azure-instances-analytics-databases/
Oracle AMD instances Outperform AWS - https://blogs.oracle.com/cloud-infrastructure/oracle-amd-instances-outperform-and-outprice-comparable-aws-instances
Amazon Corretto 8 is now GA - https://aws.amazon.com/blogs/opensource/amazon-corretto-8-generally-available/
Oracle CISO: Are Audits and Certifications enough? - https://blogs.oracle.com/cloud-infrastructure/security-in-the-cloud:-are-audits-and-certifications-really-enough
MongoDB SSPL Licenses rejected by RHEL - https://www.zdnet.com/article/mongodb-open-source-server-side-public-license-rejected/
Slack IPO - https://siliconangle.com/2019/02/04/months-rumors-team-chat-leader-slack-files-ipo/ Lightning Round Amazon RDS for Oracle now supports t3 instances - https://aws.amazon.com/about-aws/whats-new/2019/01/amazon-rds-for-oracle-now-supports-t3-instance-types/
Azure announces GA for Query store for sql data warehouse - https://azure.microsoft.com/en-us/blog/announcing-the-general-availability-of-query-store-for-azure-sql-data-warehouse/
Google Cloud now supports websockets for app engine flexible environment - https://cloud.google.com/blog/products/application-development/introducing-websockets-support-for-app-engine-flexible-environment
Azure now tells you when your hardware is degraded with scheduled events -
Episode 8 - Now With Insane Magic This week we talk about TLS support for NLB, AWS Worklink, Kubernetes Metering and retailers pushing back on AWS. Plus the lightning round and cool tools with Jonathan. #thecloudpod Thanks to our Sponsors: Foghorn Consulting: fogops.io/thecloudpod Audible: audibletrial.com/thecloudpod News Microsoft Earnings - http://fortune.com/2019/01/30/microsoft-stock-down-slowdown-azure-cloud/
Idera acquires Travis CI - https://techcrunch.com/2019/01/23/idera-acquires-travis-ci/
Google Gives Wikipedia Millions - https://www.wired.com/story/google-wikipedia-machine-learning-glow-languages/
NLB now supports TLS Termination - https://aws.amazon.com/blogs/aws/new-tls-termination-for-network-load-balancers
Microsoft Acquires Citus Data - https://blogs.microsoft.com/blog/2019/01/24/microsoft-acquires-citus-data-re-affirming-its-commitment-to-open-source-and-accelerating-azure-postgresql-performance-and-scale/
AWS Worklink secures on premise website and apps - https://aws.amazon.com/blogs/aws/amazon-worklink-secure-one-click-mobile-access-to-internal-websites-and-applications/
GKE Usage Metering
https://cloud.google.com/blog/products/containers-kubernetes/gke-usage-metering-whose-line-item-is-it-anyway
Albertsons picks Azure to run cloud workloads due to Amazon being a competitor - https://www.fool.com/investing/2019/01/28/amazon-fear-is-driving-retailers-to-microsofts-clo.aspx Lightning Round Python Shell for AWS Glue - https://aws.amazon.com/about-aws/whats-new/2019/01/introducing-python-shell-jobs-in-aws-glue/
AWS Elasticsearch Service now supports maximum cluster size of 200 nodes - https://aws.amazon.com/about-aws/whats-new/2019/01/amazon-elasticsearch-service-doubles-maximum-cluster-capacity-with-200-node-cluster-support/
AWS SSM now supports management of in guest and instance level configuration - https://aws.amazon.com/about-aws/whats-new/2019/01/aws-systems-manager-state-manager-now-supports-management-of-in-guest-and-instance-level-configuration/
AWS Public Datasets now available from UK meteorological office, queensland government, university of Penn, buildzero and others - https://aws.amazon.com/about-aws/whats-new/2019/01/aws-public-datasets-now-available/
Amazon ECS and ECR now support AWS Private Link - https://aws.amazon.com
Episode 7 - The Cloud Pod now 99.9% available Jonathan, Justin, and Peter talk about the latest news in AWS, Google and Azure. This week we talk about the AWS Backup Services, Oracle Cloud launching in Toronto and AWS Re:Mars. Plus the lightning round and Jonathan's cool tools.
Sponsors
Foghorn Consulting: fogops.io/thecloudpod Last Week in AWS: lastweekinaws.com Audible: audibletrial.com/thecloudpod News * Nvidia Tesla T4 GPU's now available in beta - https://cloud.google.com/blog/products/ai-machine-learning/nvidia-tesla-t4-gpus-now-available-in-beta * AWS Announces AWS Backup and support for multiple services - https://aws.amazon.com/blogs/aws/aws-backup-automate-and-centrally-manage-your-backups/ + https://aws.amazon.com/about-aws/whats-new/2019/01/aws-storage-gateway-integrates-with-aws-backup-to-protect-volume/ + https://aws.amazon.com/about-aws/whats-new/2019/01/aws-backup-integrates-with-amazon-DynamoDB-for-centralized-and-automated-backup-management/ + https://aws.amazon.com/about-aws/whats-new/2019/01/introducing-amazon-elastic-file-system-integration-with-aws-backup/ + https://aws.amazon.com/about-aws/whats-new/2019/01/amazon-ebs-integrates-with-aws-backup-to-protect-your-volumes/ * Oracle Cloud launches in Toronto region and plans Mumbai region - https://blogs.oracle.com/cloud-infrastructure/oracle-cloud-infrastructure-launches-toronto-region + https://inc42.com/buzz/oracle-plans-data-centre-in-india-to-challenge-aws-google-cloud/ * Oracle says open source vendors locking down licensing proves they were never really open - https://www.theregister.co.uk/2019/01/17/oracle_exec_opensource_vendors_locking_down_licenses_proves_they_were_never_really_open/ * AWS Announces RE:Mars event June 5/6th - https://www.geekwire.com/2019/amazon-launches-remars-event-focusing-ai-second-stage-invite-mars/ * AWS Trusted Advisor announces 9 new best practices - https://aws.amazon.com/about-aws/whats-new/2019/01/aws-trusted-advisor-expands-functionality/
Lightning Round * AWS GA Party + Kinesis Data Streams + https://aws.amazon.com/about-aws/whats-new/2019/01/amazon-kinesis-data-streams-announces-99-9-service-level-agreement/ + Kinesis Data Firehose
Episode 6 - The Cloud Pod Now Supports Resource Tagging Jonathan, Justin, Peter talk about the latest news in AWS, Google and Azure. This week we talk about the TSO Logic Acquisition, Document DB, TriggerMesh Lambda, Azure win of the DOD contract, plus much more including the lightning round and cool tools by Jonathan. Sponsors Foghorn Consulting: fogops.io/thecloudpod Last Week in AWS: lastweekinaws.com Audible: audibletrial.com/thecloudpod Show Topics Ring Privacy Story - https://bgr.com/2019/01/10/ring-camera-customer-feeds-accessed-creepy-privacy-violation Amazon Acquires TSO Logic - https://www.geekwire.com/2019/amazon-web-services-acquires-tso-logic-vancouver-startup-working-cloud-spending-analysis/ Azure Wins 1.76b DOD Contract - https://siliconangle.com/2019/01/14/microsoft-wins-1-76b-contract-supply-cloud-services-dod/ New AWS Services launch with HIPAA, PCI, ISO and SOC Certifications - https://aws.amazon.com/blogs/security/new-aws-services-launch-with-hipaa-pci-iso-and-soc/ GCP SpotInst Partnership - https://it.toolbox.com/blogs/technologynewsdesk/google-cloud-platform-announces-spotinst-elastigroup-011019 TriggerMesh brings AWS Lambda Serverless computing to k8 - https://www.zdnet.com/article/triggermesh-brings-aws-lambda-serverless-computing-to-kubernetes/ Lightning Round https://aws.amazon.com/about-aws/whats-new/2019/01/aws-step-functions-now-supports-resource-tagging/ https://aws.amazon.com/about-aws/whats-new/2019/01/aws-opsworks-stacks-now-supports-amazon-linux-2--amazon-linux-20/ https://aws.amazon.com/about-aws/whats-new/2019/01/aws-database-migration-service-adds-support-for-amazon-documentdb/ https://aws.amazon.com/about-aws/whats-new/2019/01/amazon-ec2-spot-now-supports-paginated-describe-for-spot-instance-requests https://aws.amazon.com/about-aws/whats-new/2019/01/aws-iot-core-now-enables-customers-to-store-messages-for-disconnected-devices/ https://azure.microsoft.com/en-us/blog/announcing-the-general-availability-of-azure-data-box-disk/ Cool Tools Git Explorer https://gitexplorer.com/ EC2types.io https://ec2types.io/home
Show Notes 1/8/18 * Amazon reportedly buys cloud endure for $250 million * Fargate Lowers prices by 50% * Cloudera/Hortonworks merger closes, takes aim at Amazon * Is this the worst S3 compromise? * Google Purchases DORA (DevOps Research and Assessment) * Github goes Free * AWS CLI Query JMES Path reference
Lightning Round * Windows Server 2019 AMI’s now available on AWS * Parallel Cluster now available in Sweden * Alexa announces Skill Builder Beta Example/Certification * WAF now includes a monitoring dashboard * MSFT Project Bali * EMR announces 99.9% Service Level agreement
Cool Tools * AWS CLI Builder * AWS Console Recorder
Sponsors * Foghorn Consulting - https://www.fogops.io/thecloudpod * Last week in AWS - https://www.lastweekinaws.com * Audible - http://www.audibletrial.com/thecloudpod
Show Notes Follow Up * Jedi Contract + Jedi Contract/AWS Bid Riddled with Conflicts of Interest * Community Licensing Issue + Adam Jacobs - Sustainable Free and Open Source Communities + https://sfosc.org/ + Stephen O'Grady - Cycle Circle of OSS + Copy Left and Community licenses are not without merit but are dead end
Show Topics * Introducing AWS Client VPN to Securely access AWS and On-Premises Resources * Blog Post: Exploring Container Security: let Google do the patching with new managed based images * 2019 Predictions from Justin, Jonathan and Peter
Lightning Round * https://cloud.google.com/blog/products/databases/cloud-spanner-adds-enhanced-query-introspection-new-regions-and-new-multi-region-configurations * https://azure.microsoft.com/en-us/blog/azure-backup-can-automatically-protect-sql-databases-in-azure-vm-through-auto-protect/ * https://aws.amazon.com/about-aws/whats-new/2018/12/amazon-dynamodb-accelerator-adds-support-for-dynamodb-transactions/ * https://aws.amazon.com/about-aws/whats-new/2018/12/amazon-transcribe-now-supports-speech-to-text-in-french-italian-and-brazilian-portuguese/ * https://aws.amazon.com/about-aws/whats-new/2018/12/amazon-ec2-ntroduces-partition-placement-groups/ * https://aws.amazon.com/about-aws/whats-new/2018/12/introducing-workload-qualification-framework-to-plan-your-database-migration-projects/ * https://aws.amazon.com/about-aws/whats-new/2018/12/amazon-route-53-adds-alias-record-support-for-api-gateway-and-vpc-endpoints/ * https://aws.amazon.com/about-aws/whats-new/2018/12/amazon-connect-adds-real-time-customer-voice-stream/ * https://aws.amazon.com/about-aws/whats-new/2018/12/amazon-rds-for-sql-server-now-supports-m5-instance-
The podcast has just started, but we've reached the end of 2018 already. To recap 2018 Justin, Jonathan and Peter scoured the AWS, Azure, GCP and General Cloud news to find their favorite stories, features and capabilities from 2018. Run through their top stories and see if you agree!
Honorable Mentions
Microsoft sponsors the Open Source Initiative - https://opensource.org/node/901Resource Based Pricing - https://cloud.google.com/compute/resource-based-pricing
K8 Takes over the WorldAzure K8 - https://azure.microsoft.com/en-us/services/kubernetes-service/Amazon EKS - https://aws.amazon.com/eksGKE on Premise - https://cloud.google.com/gke-on-prem/
Sponsors
Foghorn Consulting – www.fogops.io/thecloudpod – Your leading AWS premier partner helping companies move to the cloudLast Week in AWS – www.lastweekinaws.com – Your weekly dose of AWS Snark and announcements. The Cloud Pod - www.thecloudpod.net/sponsor
Clipart: ID 126311059 © Bulat Silvia | Dreamstime.com
Show Notes
AWS
Homework Assignment - Now Go Build E1 https://www.youtube.com/watch?v=a42kxHSX4Xw
Show Topic AWS ECS Container Roadmaphttps://github.com/aws/containers-roadmap
GCP
Google Cloud Next: https://cloud.google.com/blog/products/gcp/mark-your-calendar-google-cloud-next-2019?utm_source=DevOps%27ish&utm_campaign=3fc0c13de2-106&utm_medium=email&utm_term=0_eab566bc9f-3fc0c13de2-46450203 Save the date: April 9-11, 2019 at Moscone Center in San Francisco.Registration opened Dec 12th
Security Command Centerhttps://cloud.google.com/security-command-center/?utm_source=release-notes&utm_medium=email&utm_campaign=2018-december-release-notes-1-en
Azure
https://azure.microsoft.com/en-us/blog/automate-always-on-availability-group-deployments-with-sql-virtual-machine-resource-provider/ https://azure.microsoft.com/en-us/blog/a-fintech-startup-pivots-to-azure-cosmos-db/
Other
https://blogs.oracle.com/cloud-infrastructure/core-to-edge-security:-the-oracle-cloud-infrastructure-edge-network https://www.confluent.io/blog/license-changes-confluent-platform?utm_source=DevOps%27ish&utm_campaign=3fc0c13de2-106&utm_medium=email&utm_term=0_eab566bc9f-3fc0c13de2-46450203 https://www.zdnet.com/article/oracles-ellison-no-way-a-normal-person-would-move-to-aws/
Lightning Round
https://aws.amazon.com/about-aws/whats-new/2018/12/aws-transit-gateway-is-now-available-in-8-additional-aws-regions/ https://aws.amazon.com/about-aws/whats-new/2018/12/amazon-eks-adds-managed-cluster-updates-and-support-for-kubernetes/ https://aws.amazon.com/about-aws/whats-new/2018/12/aws-storage-gateway-announces-increased-throughput-and-adds-new-/ https://www.businesswire.com/news/home/20181212005251/en/Amazon-Web-Services-Launches-New-Region-Sweden https://www.infoq.com/news/2017/09/google-cloud-hashicorp https://azure.microsoft.com/en-us/blog/azure-backup-server-now-supports-sql-2017-with-new-enhanc
Enjoy our recap of AWS Re:Invent 2018
Topics:
Sponsors:
Foghorn Consulting - www.fogops.io - Your leading AWS premier partner helping companies move to the cloudLastweek in AWS - www.lastweekinaws.com - Your weekly dose of AWS Snark and announcements.