C’est sorti ce matin, c’est encore tout chaud. – AWS Secure Environment Accelerator –
The AWS Accelerator is a tool designed to help deploy and operate secure multi-account AWS environments on an ongoing basis. The power of the solution is the configuration file that drives the architecture deployed by the tool. This enables extensive flexibility and for the completely automated deployment of a customized architecture within AWS without changing a single line of code.
https://github.com/aws-samples/aws-secure-environment-accelerator

Je connaissais les services Landing Zone et Control Tower. Selon AWS, AWS S.E.C. va plus loin et de façon différente. Entendu des gens d’AWS : « Landing Zone est la sécurité niveau 101, Secure Environnment Accelarerator est de niveau 401… »
The AWS Accelerator is a superset of the Amazon Landing Zone. The initial versions of the AWS Accelerator presupposed the existence of an AWS Landing Zone Solution in the AWS Organization; this requirement has since been removed as of release
v1.1.0
. The Accelerator is now a completely standalone solution.When appropriate, it is envisioned that the AWS Accelerator will add the capability to be deployed on top of AWS Control Tower, as we initially allowed with the ALZ.
Chose intéressante, ce nouvel outil a été fait pour les exigences en sécurité pour le gouvernement du Canada.
the AWS Accelerator is delivered with a sample configuration file which deploys an opinionated and prescriptive architecture designed to help meet the security and operational requirements of many governments around the world (initial focus was the Government of Canada).
À première vue, ça me semble très complet. Voici, à titre d’exemple, la composante réseau du S.E.C.

Il me reste maintenant à parcourir le tout afin de pouvoir bien conseiller mes clients sur cet outil qui présente un très bon potentiel.
Venez-en discutez avec moi luc@luc.cloud si le coeur vous en dit.
Luc Pâquet
Votre commentaire