
Must-know service summaries:
EC2 — virtual servers; IAM — access management; S3 — object storage; RDS — relational DB; DynamoDB — NoSQL DB; Lambda — serverless functions; CloudFront — CDN; Route 53 — DNS; VPC — virtual network; CloudTrail — API logging; CloudWatch — monitoring
Key exam facts:
Root account: enable MFA immediately, don't use daily
S3 durability: 11 9s (99.999999999%)
Shared responsibility: AWS = of the cloud; Customer = in the cloud
IAM is global; most services are regional
Availability Zone = one or more data centers
Edge location ≠ Availability Zone
CloudTrail = who did what; CloudWatch = metrics and logs
Security Group = stateful; NACL = stateless
Reserved Instance = 1 or 3 year commitment
Spot Instance = up to 90% off, can be interrupted
On-Demand = pay per second/hour, no commitment
S3 Glacier = archive; S3 Standard = frequent access
EBS = block storage for EC2; EFS = shared file storage
SNS = push to many; SQS = queue for one consumer
Reference:
TaskLoco™ — The Sticky Note GOAT