A cloud built for developers — 2021 year in review

2021 was a seminal year for software developers. Every company accelerated their digital and online efforts, while simultaneously moving to remote development. Innovation by driving developer productivity was top of mind for nearly every IT executive we spoke to. Many asked us about Alphabet’s long track record of innovation. From Google search to Waymo’s driverless cars,  is there a secret to developing the next big thing? The answer is simple: 10X thinking. Look for solutions that help customers drive 10X improvements, through a series of smaller increments that compound to a large impact over time. At Google Cloud, we follow a similar philosophy to help our customers become innovative technology companies. In recent times, we’ve worked closely with partners, customers, and developers on services that help unlock 10X improvements in developer productivity. Six years ago, we introduced a managed Kubernetes service, Google Kubernetes Engine (GKE). This year, we added GKE Autopilot, which revolutionized Kubernetes management by eliminating all node management operations. Likewise, our Cloud Run serverless platform was the first service of its kind, allowing developers to go beyond running small bits of code and run full applications in a serverless environment. From September 2020 to September 2021, Cloud Run deployments more than quadrupled. More recently, we co-founded the Open Source Security Foundation and began working on secure continuous Integration and delivery (CI/CD) services a year or so ahead of the cybersecurity threats that made it to headlines. Here are the top developer challenges that customers asked us to solve in 2021: Driving distributed developer productivitySecuring the software supply chainSimplifying running of cloud-native applications Read on for more insights. Driving distributed developer productivityA critical prerequisite for innovation is time. Investments in developer productivity free developers to work on the important things. Traditionally, developers have spent hours downloading and installing tools to their local environments, updating them with the latest versions, or dependencies. Cloud Shell Editor is a full remote development environment with a growing set of built in security capabilities. It comes with developer tools pre-installed, including MySql, Kubernetes, Docker, minikube, Skaffold, etc. Developers just needed a web browser and internet connection to be productive. Developers now have access to tutorials right from Cloud Shell Editor, and can try code samples directly in our documentation. Additionally, with support for buildpacks, developers can create container images directly from source code, without knowing anything about docker or containers. Securing the software supply chainSoftware supply chain vulnerabilities had far reaching consequences in 2021, with events such as SolarWinds, Mimecast/Microsoft Exchange, and Log4jaffecting businesses, daily life, and entire governments. President Biden even issued an executive order to strengthen software supply-chain security standards.Solving the software supply chain problem requires players across industries to work together. This is why we co-founded theOpen Source Security Foundation (Open SSF). We also proposed SLSA, an industry-wide framework for maintaining the integrity of software artifacts throughout the software supply chain. Open source, with its complex dependency trees, continues to remain a prime target for exploitation. In fact, an estimated 84% of commercial code bases have at least one open source vulnerability. Today, developers can use our tools such as Allstar GitHub App, open source security score cards and Open Source Insights to implement security best practices, determine a risk score for open source projects, and visualize a project’s deep dependencies. And several of these same  kinds of open-source innovations are available out of the box to Google Cloud customers. Here are a few examples: Detailed recommendations to help mitigate the Apache Log4j vulnerability. The Java scanning feature of Google Cloud On-Demand Scanning, which can be quite handy for developers to identify Linux-based container images that use an impacted version of Log4j. On-Demand Scanning can be used with no charge until December 31, 2021. Cloud Build, our serverless CI/CD service, offers SLSA Level 1 compliance by default. This verifiable build provenance lets you trace a binary to the source code to prevent tampering and prove that the code you’re running is the code you think you’re running. Cloud Build’s new build integrity feature improves on this by automatically generating digital signatures, which can be validated before deployment by Binary Authorization. Simplifying running cloud-native applicationsInnovation is rarely a straight road, there are many wrong turns along the way. Developers need a cost effective runtime, a way to run experiments and fail forward fast. That’s why GKE Autopilot takes GKE, the most mature Kubernetes service on the market and further simplifies Kubernetes operations by providing a managed control and data plane, an optimized configuration out-of-the-box, automated scalability, health checks and repairs, and pay-for-use pricing. “With GKE Autopilot, we can do more with our business. We can continue developing and upgrading our products, rather than focusing on fine-tuning infrastructure.”—Jun Sakata, Software Engineer, Site Reliability, Ubie Simpler still is no cluster all. Cloud Run provides developers the freedom to run services from code or container images with no cluster or VM to manage. At the same time, it provides a hypervisor grade secure sandbox environment and several built in DevOps capabilities such as, multi-versioned deployments, gradual rollouts and rollbacks, GitHub and Cloud Build integrations. This is ideal for web and mobile application development. In 2021, with additions like higher per-instance concurrency, new CPU allocation controls, and support for standard Docker images, the benefits of serverless can now be expanded to a wider range of workloads, including legacy ones. Additionally, with newer cost controls along with billing flexibility like committed use contracts and features like always-on CPU, it’s possible to run more steady-state pattern workloads cost effectively in a serverless environment.  Best of all, thanks to improvements like these, organizations using Cloud Run have reported reduction in developer recruiting costs by 40%. Cloud Run is also the first platform to provide developers the option to optimize their carbon footprint.  With the news self-service Region Picker you can choose the data center region with the lowest gross carbon cost on which to run your Cloud Run workloads. Further, with just one click, Google Cloud Carbon Footprintgives you access to the energy-related emissions data for external carbon disclosures. “With Cloud Run, we only need half the people to manage our systems as compared to before” Google Cloud Platform Architect, Cosmetics “Cloud Run is one of the easiest services on Google Cloud Platform you can deploy to. It’s just super simple.” CTO,Healthcare SaaSIf you want to give Cloud Run and associated Cloud Functions a try, check out the Easy as Pie Serverless Hackathon, which offers  over $20,000 USD in cash prizes.2022: More to come  2021 brought simplification and greater attention to developer productivity. It is essential that developers continue to operate at even higher levels of the stack, without worrying about infrastructure, security, compliance and integrations. This is the Northstar for 2022. In 2022, look for Google Cloud to co-innovate with our ISV partners, developers, and SecOps team to bring you the 10X innovation you need from the cloud that is built for developers.
Quelle: Google Cloud Platform

Medienerfassungspipelines zu Amazon Chime SDK unterstützen die serverseitige Amazon-S3-Verschlüsselung mit AWS Key Management Service

Mit dem Amazon Chime SDK können Entwickler ihren Web- oder mobilen Anwendungen Audio-, Video-, Bildschirmfreigabe- und Messaging-Funktionen in Echtzeit hinzufügen. Mit Medienerfassungspipelines können Entwickler die Inhalte ihrer Amazon-Chime-SDK-Meetings im Amazon Simple Storage Service (Amazon S3)-Bucket ihrer Wahl erfassen. Entwickler können jetzt Medienerfassungspipelines mit Amazon-S3-Buckets verwenden, die serverseitige Verschlüsselung mit kundenverwalteten Schlüsseln verwenden, die serverseitige Verschlüsselung mit AWS Key Management Service (SSE-KMS) verwenden, um Ihre Verschlüsselungsanforderungen zu erfüllen.
Quelle: aws.amazon.com

AWS Well-Architected Tool fügt vier neue Trusted-Advisor-Prüfungen hinzu

AWS Well-Architected unterstützt jetzt vier neue AWS-Trusted-Advisor-Prüfungen als eine einheitliche Plattform für Empfehlungen für bewährte Methoden, um die wirksamsten Risiken zu identifizieren und Maßnahmen zu ihrer Minderung zu ergreifen. Die neue Prüfungen sind:
1. Probleme mit hohem Risiko für Kostenoptimierung bei AWS Well-Architected 2. Probleme mit hohem Risiko für Leistungseffizinenz bei AWS Well-Architected 3. Probleme mit hohem Risiko für Sicherheit bei AWS Well-Architected 4. Probleme mit hohem Risiko für Zuverlässigkeit bei AWS Well-Architected
Quelle: aws.amazon.com

Amazon Translate kündigt Maskierung von profanen Begriffen

Amazon Translate ist ein neuraler, maschineller Übersetzungsservice, der schnelle, qualitativ hochwertige, erschwingliche und anpassbare Übersetzungen liefert. Ab heute haben Sie die Möglichkeit, allgemein verstandene profane Begriffe zu maskieren und zu verhindern, dass sie in Ihren Übersetzungen vorkommen. Standardmäßig wählt Amazon Translate klare Wörter für Ihre Übersetzungsausgabe. In Fällen, in denen profane Wörter in der übersetzten Ausgabe vorkommen, können Sie jetzt die profanen Wörter und Phrasen mit einer grawlix-Zeichenfolge „?$#@$“ maskieren. Diese 5-Zeichen-Sequenz wird für jedes profane Wort oder jede profane Phrase verwendet, unabhängig von der Länge oder Anzahl der Zeichen. 
Quelle: aws.amazon.com

AWS Trusted Advisor fügt drei Optimierungsprüfungen für Microsoft SQL Server auf Amazon EC2 hinzu

AWS Trusted Advisor unterstützt jetzt neue Empfehlungen, die Ihnen helfen, Ihre SQL-Server-Optimierung auf Amazon EC2 zu vereinfachen. Die Prüfungen überprüfen Ihre SQL-Server-Workloads und listen automatisch Ihre SQL- Server-Instances auf, die optimiert werden müssen. Sie können dann empfohlene Maßnahmen ergreifen, um Kosten zu senken und die Sicherheit zu verbessern. Nachfolgend finden Sie die Details zu den drei Prüfungen.
1. Amazon-EC2-Instances mit Support-Ende für Microsoft SQL Server – Prüft die SQL-Server-Versionen für Amazon-EC2-Instances und warnt Sie, wenn die Versionen kurz vor dem Support-Ende stehen oder es erreicht haben. Beispielsweise endet der verlängerte Support für SQL Server 2012 am 12. Juli 2022. Sie finden die flexiblen Migrations- und Upgrade-Optionen auf AWS unter Prüfempfehlungen. 2. Amazon-EC2-Instances für Microsoft SQL Server haben zu viel bereitgestellt – Überprüft Ihre Amazon-EC2-Instances, auf denen SQL Server ausgeführt wird und warnt Sie, wenn eine Instance das vCPU-Limit der SQL-Server-Software überschreitet. Eine Instance mit SQL Server Standard Edition kann beispielsweise bis zu 48 vCPUs verwenden. Eine Instance mit SQL Server Web kann bis zu 32 vCPUs verwenden. 3. Amazon-EC2-Instances-Konsolidierung für Microsoft SQL Server – Überprüft Ihre Amazon-EC2-Instances und warnt Sie, wenn Ihre Instance weniger als die Mindestanzahl an SQL-Server-Lizenzen hat. Sie können kleinere SQL-Server-Instances konsolidieren, um Kosten zu senken.
Quelle: aws.amazon.com

AWS DataSync kann jetzt Daten nach und von Amazon FSx for Lustre kopieren

AWS DataSync unterstützt jetzt das Kopieren von Daten nach und von Amazon FSx for Lustre, einem vollständig verwalteten Service, der kostengünstigen, leistungsstarken und skalierbaren Speicher für Computing-Workloads bietet. Mit DataSync können Sie Datenverschiebungsaufgaben schnell und sicher ausführen, wie das Verschieben von Daten von einem Dateisystem von FSx for Lustre in ein anderes, das Migrieren Ihrer On-Premises-Daten zu Ihrem Dateisystem von FSx for Lustre oder das Kopieren von Daten zwischen Ihrem Dateisystem von FSx for Lustre und andere AWS-Speicher-Services wie Amazon S3, Amazon Elastic File System (EFS) oder Amazon FSx for Windows File Server. Sie können DataSync auch für laufende Datenübertragungen zwischen On-Premises-Speicher und AWS zur Verarbeitung verwenden.
Quelle: aws.amazon.com