Publicado el Deja un comentario

AWS Security Hub now supports NIST SP 800-171 Revision 2

AWS Security Hub now supports automated security checks that align with the National Institute of Standards and Technology (NIST) Special Publication 800-171 Revision 2 (NIST SP 800-171 Rev. 2). NIST SP 800-171 Rev. 2 is a cybersecurity and compliance framework developed by NIST, an agency that’s part of the U.S. Department of Commerce. This compliance framework provides recommended security requirements for protecting the confidentiality of Controlled Unclassified Information (CUI) in systems and organizations that aren’t part of the U.S. federal government. In Security Hub, the NIST SP 800-171 Rev. 2 standard includes 63 automated controls that perform automated checks against AWS resources to evaluate compliance with NIST SP 800-171 Rev. 2 requirements.

The new standard is now available in all AWS Regions where Security Hub is currently available, including the AWS GovCloud (US) and the China Regions. To quickly enable the standard across your AWS environment, we recommend that you use Security Hub central configuration. With this approach, you can enable the standard in all or only some of your organization’s accounts and across all AWS Regions that are linked to Security Hub with a single action.

To learn more, see NIST SP 800-171 Revision 2 in the AWS Security Hub User Guide. To receive notifications about new Security Hub features and controls, subscribe to the Security Hub SNS topic. You can also try Security Hub at no cost for 30 days with the AWS Free Tier offering.

 

​AWS Security Hub now supports automated security checks that align with the National Institute of Standards and Technology (NIST) Special Publication 800-171 Revision 2 (NIST SP 800-171 Rev. 2). NIST SP 800-171 Rev. 2 is a cybersecurity and compliance framework developed by NIST, an agency that’s part of the U.S. Department of Commerce. This compliance framework provides recommended security requirements for protecting the confidentiality of Controlled Unclassified Information (CUI) in systems and organizations that aren’t part of the U.S. federal government. In Security Hub, the NIST SP 800-171 Rev. 2 standard includes 63 automated controls that perform automated checks against AWS resources to evaluate compliance with NIST SP 800-171 Rev. 2 requirements. The new standard is now available in all AWS Regions where Security Hub is currently available, including the AWS GovCloud (US) and the China Regions. To quickly enable the standard across your AWS environment, we recommend that you use Security Hub central configuration. With this approach, you can enable the standard in all or only some of your organization’s accounts and across all AWS Regions that are linked to Security Hub with a single action. To learn more, see NIST SP 800-171 Revision 2 in the AWS Security Hub User Guide. To receive notifications about new Security Hub features and controls, subscribe to the Security Hub SNS topic. You can also try Security Hub at no cost for 30 days with the AWS Free Tier offering.  

Publicado el Deja un comentario

Amazon Neptune Database is now available in AWS Canada West (Calgary) and Asia Pacific (Melbourne) Regions

Amazon Neptune Database is now available in the Canada West (Calgary) and Asia Pacific (Melbourne) Regions on engine versions 1.4.5.0 and later. You can now create Neptune clusters using R8g, R7g, R7i, R6g, R6i, T4g, and T3 instance types in the Canada West (Calgary) and Asia Pacific (Melbourne) Regions.

Amazon Neptune Database is a fast, reliable, and fully managed graph database as a service that makes it easy to build and run applications work with highly connected datasets. You can build applications using Apache TinkerPop Gremlin or openCypher on the Property Graph model, or using the SPARQL query language on W3C Resource Description Framework (RDF). Neptune also offers enterprise features such as high availability, automated backups, and network isolation to help customers quickly deploy applications to production. Amazon Neptune supports Neptune Global Database designed for globally distributed applications, allowing a single Neptune database to span multiple AWS Regions.

To get started, you can create a new Neptune cluster using the AWS Management Console, AWS CLI, or a quickstart AWS CloudFormation template. For more information on pricing and region availability, refer to the Neptune pricing page and AWS Region Table.

 

​Amazon Neptune Database is now available in the Canada West (Calgary) and Asia Pacific (Melbourne) Regions on engine versions 1.4.5.0 and later. You can now create Neptune clusters using R8g, R7g, R7i, R6g, R6i, T4g, and T3 instance types in the Canada West (Calgary) and Asia Pacific (Melbourne) Regions. Amazon Neptune Database is a fast, reliable, and fully managed graph database as a service that makes it easy to build and run applications work with highly connected datasets. You can build applications using Apache TinkerPop Gremlin or openCypher on the Property Graph model, or using the SPARQL query language on W3C Resource Description Framework (RDF). Neptune also offers enterprise features such as high availability, automated backups, and network isolation to help customers quickly deploy applications to production. Amazon Neptune supports Neptune Global Database designed for globally distributed applications, allowing a single Neptune database to span multiple AWS Regions. To get started, you can create a new Neptune cluster using the AWS Management Console, AWS CLI, or a quickstart AWS CloudFormation template. For more information on pricing and region availability, refer to the Neptune pricing page and AWS Region Table.  

Publicado el Deja un comentario

AWS Cost Explorer now offers new Cost Comparison feature

AWS announces Cost Comparison, a new AWS Cost Explorer capability that helps customers understand cost changes between two months. Cost Comparison automatically detects significant cost changes between two months and surfaces the key factors driving these changes. With this launch, customers can now effortlessly gain insights into their monthly cost changes across their organization and quickly identify key drivers of spending changes.

Cost Comparison streamlines the time-consuming process of cost analysis by automatically identifying the most substantial cost changes across services, accounts, and Regions. It eliminates the need to switch between different views in Cost Explorer or export data to spreadsheets for manual comparison. The feature provides detailed breakdowns of cost drivers, including usage changes, credits, refunds, and volume discounts impacts. A new Top Trends widget on the AWS Billing and Cost Management console home page shows the top 10 cost variations between the previous two months. For deeper analysis, customers can use the new Compare view within AWS Cost Explorer. This view offers comprehensive cost analysis capabilities, with insights into cost drivers that reveal changes between any two selected months in usage, credits, refunds, and volume discount impacts.

Cost Comparison is available at no additional cost in all AWS commercial Regions, excluding AWS China Regions. To get started, customers can visit the AWS Billing and Cost Management console and view the Top Trends widget on the home page, or navigate to Cost Explorer and choose «Compare» in the Report Parameters panel. To learn more, see the AWS Cost Explorer documentation.

 

​AWS announces Cost Comparison, a new AWS Cost Explorer capability that helps customers understand cost changes between two months. Cost Comparison automatically detects significant cost changes between two months and surfaces the key factors driving these changes. With this launch, customers can now effortlessly gain insights into their monthly cost changes across their organization and quickly identify key drivers of spending changes. Cost Comparison streamlines the time-consuming process of cost analysis by automatically identifying the most substantial cost changes across services, accounts, and Regions. It eliminates the need to switch between different views in Cost Explorer or export data to spreadsheets for manual comparison. The feature provides detailed breakdowns of cost drivers, including usage changes, credits, refunds, and volume discounts impacts. A new Top Trends widget on the AWS Billing and Cost Management console home page shows the top 10 cost variations between the previous two months. For deeper analysis, customers can use the new Compare view within AWS Cost Explorer. This view offers comprehensive cost analysis capabilities, with insights into cost drivers that reveal changes between any two selected months in usage, credits, refunds, and volume discount impacts. Cost Comparison is available at no additional cost in all AWS commercial Regions, excluding AWS China Regions. To get started, customers can visit the AWS Billing and Cost Management console and view the Top Trends widget on the home page, or navigate to Cost Explorer and choose «Compare» in the Report Parameters panel. To learn more, see the AWS Cost Explorer documentation.  

Publicado el Deja un comentario

AWS Network Firewall Adds Support for Multiple VPC Endpoints

AWS Network Firewall now supports configuring multiple VPC endpoints for a single firewall. This new capability gives you more options to scale your Network Firewall deployment across multiple Amazon Virtual Private Clouds (VPCs), using a centralized security policy.

AWS Network Firewall is a managed, cloud-native firewall service that makes it easy to deploy essential network protections for all your Amazon VPCs. A Network Firewall instance is deployed within a VPC subnet, with a VPC endpoint providing a secure connection to the firewall. Now you can associate up to 50 VPC endpoints per Availability Zone with the firewall and route traffic through the firewall for inspection, reducing operational complexity and lowering costs as you protect more VPCs.

The multiple VPC endpoints feature is supported in all AWS Regions where AWS Network Firewall is available today, including the AWS GovCloud (US) Regions and China Regions.

You can enable multiple VPC endpoints from the Amazon VPC Console or the Network Firewall API. To learn more about this feature and pricing, please see the AWS Network Firewall product page and service documentation.
 

 

​AWS Network Firewall now supports configuring multiple VPC endpoints for a single firewall. This new capability gives you more options to scale your Network Firewall deployment across multiple Amazon Virtual Private Clouds (VPCs), using a centralized security policy. AWS Network Firewall is a managed, cloud-native firewall service that makes it easy to deploy essential network protections for all your Amazon VPCs. A Network Firewall instance is deployed within a VPC subnet, with a VPC endpoint providing a secure connection to the firewall. Now you can associate up to 50 VPC endpoints per Availability Zone with the firewall and route traffic through the firewall for inspection, reducing operational complexity and lowering costs as you protect more VPCs. The multiple VPC endpoints feature is supported in all AWS Regions where AWS Network Firewall is available today, including the AWS GovCloud (US) Regions and China Regions. You can enable multiple VPC endpoints from the Amazon VPC Console or the Network Firewall API. To learn more about this feature and pricing, please see the AWS Network Firewall product page and service documentation.    

Publicado el Deja un comentario

Amazon FSx for NetApp ONTAP now supports write-back mode for ONTAP FlexCache volumes

Amazon FSx for NetApp ONTAP, a service that provides fully managed shared storage built on NetApp’s popular ONTAP file system, now supports write-back mode for ONTAP FlexCache volumes. Write-back mode is a new ONTAP capability that helps you achieve faster performance for your write-intensive workloads that are distributed across multiple AWS Regions and on-premises file systems.

FlexCache is an ONTAP caching technology that enables distributed access to data. Previously, FlexCache only supported write-around mode, where every write operation to a FlexCache volume had to go back to the origin volume before it was acknowledged, increasing write latency. Starting today, FSx for ONTAP now supports the new write-back mode for FlexCache. Write-back mode improves the performance of write-heavy workloads by caching writes locally on FlexCache volumes and asynchronously updating the origin volume, reducing write latency. You can now use write-back mode to improve write performance for write-intensive distributed applications such as collaborative content creation, distributed databases, and engineering workflows that need to operate across multiple AWS Regions or between cloud and on-premises environments.

Starting today, you can enable FlexCache write-back mode at no additional cost on all FSx for ONTAP file systems in all AWS Regions where the service is available. For more information, refer to the FSx for ONTAP User Guide.

 

​Amazon FSx for NetApp ONTAP, a service that provides fully managed shared storage built on NetApp’s popular ONTAP file system, now supports write-back mode for ONTAP FlexCache volumes. Write-back mode is a new ONTAP capability that helps you achieve faster performance for your write-intensive workloads that are distributed across multiple AWS Regions and on-premises file systems. FlexCache is an ONTAP caching technology that enables distributed access to data. Previously, FlexCache only supported write-around mode, where every write operation to a FlexCache volume had to go back to the origin volume before it was acknowledged, increasing write latency. Starting today, FSx for ONTAP now supports the new write-back mode for FlexCache. Write-back mode improves the performance of write-heavy workloads by caching writes locally on FlexCache volumes and asynchronously updating the origin volume, reducing write latency. You can now use write-back mode to improve write performance for write-intensive distributed applications such as collaborative content creation, distributed databases, and engineering workflows that need to operate across multiple AWS Regions or between cloud and on-premises environments. Starting today, you can enable FlexCache write-back mode at no additional cost on all FSx for ONTAP file systems in all AWS Regions where the service is available. For more information, refer to the FSx for ONTAP User Guide.  

Publicado el Deja un comentario

Cost Optimization Hub now supports Savings Plans and reservations preferences

Cost Optimization Hub, a feature within the Billing and Cost Management Console, now allows you to configure preferred Savings Plans and reservation term and payment options preferences, so you can see your resulting recommendations and savings potential based on your preferred commitments.

Cost Optimization Hub allows you to easily identify, filter, and aggregate AWS cost optimization recommendations, such as EC2 instance rightsizing recommendations, graviton recommendations, idle recommendations, reservations recommendations and Savings Plans recommendations. By providing new preferences, you can now select 1 or 3 year term lengths, as well as All upfront, Partial upfront, and No upfront payment options. This helps align the savings potential with your organization’s preferred commitment settings, giving you even more accurate potential savings.

Cost Optimization Hub is available at no additional charge in all AWS Regions, except for the AWS China Regions and AWS GovCloud (US) Regions.

You can start using Cost Optimization Hub and the new Preferences options through the AWS Management Console, AWS CLI, or AWS SDK. Visit product details page and user guides to learn more.
 

 

​Cost Optimization Hub, a feature within the Billing and Cost Management Console, now allows you to configure preferred Savings Plans and reservation term and payment options preferences, so you can see your resulting recommendations and savings potential based on your preferred commitments. Cost Optimization Hub allows you to easily identify, filter, and aggregate AWS cost optimization recommendations, such as EC2 instance rightsizing recommendations, graviton recommendations, idle recommendations, reservations recommendations and Savings Plans recommendations. By providing new preferences, you can now select 1 or 3 year term lengths, as well as All upfront, Partial upfront, and No upfront payment options. This helps align the savings potential with your organization’s preferred commitment settings, giving you even more accurate potential savings. Cost Optimization Hub is available at no additional charge in all AWS Regions, except for the AWS China Regions and AWS GovCloud (US) Regions. You can start using Cost Optimization Hub and the new Preferences options through the AWS Management Console, AWS CLI, or AWS SDK. Visit product details page and user guides to learn more.    

Publicado el Deja un comentario

Amazon DocumentDB (with MongoDB compatibility) Announces 99.99% Service Level Agreement

Amazon DocumentDB (with MongoDB compatibility) announces an updated Service Level Agreement (SLA), promising a 99.99% availability when using a Multi-Availability Zone (Multi-AZ) configuration. Previously, Amazon DocumentDB offered a 99.9% SLA. Now, Amazon DocumentDB has updated the SLA to 99.99%, increasing our commitment to service availability.

Amazon DocumentDB (with MongoDB compatibility) is a fully managed native JSON document database that makes it easy and cost effective to operate critical document workloads at virtually any scale without managing infrastructure. The updated SLA for Amazon DocumentDB applies to all regions where DocumentDB is generally available, at no additional cost. To learn more about Amazon DocumentDB, please see our product page and documentation.
 

 

​Amazon DocumentDB (with MongoDB compatibility) announces an updated Service Level Agreement (SLA), promising a 99.99% availability when using a Multi-Availability Zone (Multi-AZ) configuration. Previously, Amazon DocumentDB offered a 99.9% SLA. Now, Amazon DocumentDB has updated the SLA to 99.99%, increasing our commitment to service availability. Amazon DocumentDB (with MongoDB compatibility) is a fully managed native JSON document database that makes it easy and cost effective to operate critical document workloads at virtually any scale without managing infrastructure. The updated SLA for Amazon DocumentDB applies to all regions where DocumentDB is generally available, at no additional cost. To learn more about Amazon DocumentDB, please see our product page and documentation.    

Publicado el Deja un comentario

AWS Backup enhances Amazon EC2 restores with custom volume configuration support

AWS Backup now offers enhanced Amazon EC2 restore capability that allows you to customize volume configurations during the restoration process. This new feature enables users to specify custom settings for all the attached Amazon EBS volumes to an EC2 AMI, including volume type, size, IOPS, AWS KMS encryption keys and others, directly through AWS Backup. The capability works seamlessly for restores from standard backup vaults and logically air-gapped vaults.

You can start using this feature through the AWS Backup CLI, or SDK. During EC2 backup restoration, you can now include a new section (block device mappings) in your restore metadata to configure Amazon EBS volume settings. You can also specify additional volumes in the block device mappings to attach when launching the instance. The enhancement applies to both existing and new EC2 backups and is available at no extra cost.

AWS Backup support for enhanced EC2 restores is available in all commercial Regions, where AWS Backup is supported. To learn more about AWS Backup support for this feature, visit the AWS Backup product documentation.
 

 

​AWS Backup now offers enhanced Amazon EC2 restore capability that allows you to customize volume configurations during the restoration process. This new feature enables users to specify custom settings for all the attached Amazon EBS volumes to an EC2 AMI, including volume type, size, IOPS, AWS KMS encryption keys and others, directly through AWS Backup. The capability works seamlessly for restores from standard backup vaults and logically air-gapped vaults. You can start using this feature through the AWS Backup CLI, or SDK. During EC2 backup restoration, you can now include a new section (block device mappings) in your restore metadata to configure Amazon EBS volume settings. You can also specify additional volumes in the block device mappings to attach when launching the instance. The enhancement applies to both existing and new EC2 backups and is available at no extra cost. AWS Backup support for enhanced EC2 restores is available in all commercial Regions, where AWS Backup is supported. To learn more about AWS Backup support for this feature, visit the AWS Backup product documentation.    

Publicado el Deja un comentario

Amazon Neptune announces MCP (Model Context Protocol) Server

Today, AWS announces the launch of the Amazon Neptune MCP Server, now available in the AWS MCP open-source repository. This new server makes it easier for developers and AI assistants to interact with Amazon Neptune, enabling seamless integration of graph queries into generative AI workflows.

Part of AWS’s growing suite of Model Context Protocol (MCP) tools, the Neptune MCP Server supports openCypher and Gremlin queries, schema discovery, and natural language querying. Users can now seamlessly integrate Neptune into MCP capable tools like Amazon Q CLI, Cursor, Claude Code, as well as the ability to ask questions in plain English and receive accurate graph responses—without writing complex code. Whether you’re building a knowledge graph, analyzing relationships, or powering an AI assistant, the Neptune MCP Server lets you explore and query graph data more intuitively and efficiently than ever before.

Amazon Neptune MCP Server is now available in all AWS regions where Amazon Neptune is offered. For more details, learn more about Neptune MCP Server on our blog.
 

 

​Today, AWS announces the launch of the Amazon Neptune MCP Server, now available in the AWS MCP open-source repository. This new server makes it easier for developers and AI assistants to interact with Amazon Neptune, enabling seamless integration of graph queries into generative AI workflows. Part of AWS’s growing suite of Model Context Protocol (MCP) tools, the Neptune MCP Server supports openCypher and Gremlin queries, schema discovery, and natural language querying. Users can now seamlessly integrate Neptune into MCP capable tools like Amazon Q CLI, Cursor, Claude Code, as well as the ability to ask questions in plain English and receive accurate graph responses—without writing complex code. Whether you’re building a knowledge graph, analyzing relationships, or powering an AI assistant, the Neptune MCP Server lets you explore and query graph data more intuitively and efficiently than ever before. Amazon Neptune MCP Server is now available in all AWS regions where Amazon Neptune is offered. For more details, learn more about Neptune MCP Server on our blog.