Ian Mckay Profile picture
DevOps dude from Sydney 🇦🇺 | #AWS Community Hero & Ambassador | IaC & security enthusiast | Breaks basically everything | he/him
Dec 4, 2022 11 tweets 5 min read
I'm back home from #AWS #reInvent which means it's time to go through my top 10 favourite / most impactful announcements, in order. Let's begin! #10. Amazon Inspector now supports scanning the packages of deployed Lambda functions for Java, Node and Python. Previously, scanning tools would have to be embedded into CI/CD, or forced via ECR Lambda deploys. A great addition to close the gap.
Jan 18, 2022 7 tweets 3 min read
Have you ever used Cognito's Hosted UI and found it very limiting in its customization options? (drop shadows and plain backgrounds🤢)

Well today I've figured out a way to fully customize the CSS, so you can make beautiful looking pages like this: 😍

…auth.ap-southeast-2.amazoncognito.com/login?client_i…

1/ If you've ever attempted to use the old console for CSS customization, you'll notice that you can only enter details for the CSS classes that Cognito specifically allows you to change.

2/
Nov 9, 2021 12 tweets 4 min read
Soo, AWS have added probably the worst CAPTCHA flow ever as a feature of AWS WAF (docs.aws.amazon.com/waf/latest/dev…). 1/ The flow opens with a useless prompt which causes more clicks than necessary 2/
Jul 21, 2021 7 tweets 2 min read
S3 bucket squatting/sniping is alive and well. AWS Security reached out to me recently to politely ask to transfer some S3 buckets that the NICE DCV team requested, which I happily obliged. Here's a post for those unfamiliar with the issue onecloudplease.com/blog/s3-bucket…. 1/ The buckets in question were dcv-license.af-south-1 and 3 others in the same format, for active regions. Per the docs (docs.aws.amazon.com/dcv/latest/adm…), this is actually how they license the software for EC2-based deployments. 2/
May 11, 2021 13 tweets 5 min read
AWS Systems Manager Incident Manager *inhales* is one of the worst launches I've seen in quite some time. I think @pagerduty can breathe a sigh of relief.

Here's my initial experience with the service, so you can judge for yourself. 1/ We're first thrown into a wizard where we're asked to accept some charges and assign a key to the service. The service immediately contradicts itself by saying "the selection is permanent" / "you will not be able to change it" then goes on to say "to change the KMS key...". 2/