ãã«ãã¢ã«ãŠã³ãæŠç¥ ã«é¢ãã AWS ã®ãã¹ããã©ã¯ãã£ã¹ã«åŸããã客æ§ã¯è£œåãã°ã«ãŒããéšéãªã©ã«å¿ããŠãè€æ°ã®ã¢ã«ãŠã³ããšãªãŒãžã§ã³ã§ Amazon Connect ã€ã³ã¹ã¿ã³ã¹ãèµ·åããŠç¶æããŠããŸããããã«ãããåã
ã®ããžãã¹ãªãŒããŒãéçºè
ããšã³ãžãã¢ãªã©ã¯ãåèªã®ç¬ç«ãã Amazon Connect ç°å¢ã«å€æŽãå ããããšãã§ããŸãããã®ãããªã·ããªãªã§ã¯ã Amazon Connect ç°å¢å
šäœã«ããããŠãŒã¶ãŒããªãœãŒã¹ã®ã¢ã¯ãã£ããã£ã«é¢ãã調æ»ãç°¡çŽ åãã管çããããã®äžå
çãªä»çµã¿ãå¿
èŠã§ãã ã客æ§ããã«ãã¢ã«ãŠã³ãç°å¢ã§ Amazon Connect ãããªã㯠API ã远跡ãèšé²ãåæã§ããããã«ãAmazon Connect ã¯ããã¹ãŠã®ãããªã㯠Amazon Connect API åŒã³åºããèšé²ãããµãŒãã¹ã§ãã AWS CloudTrail ãšçµ±åãããŠããŸããAWS CloudTrail ã䜿çšãããšãã客æ§ã¯ AWS Organization å
šäœã§ãã°ãåéããäžå
åããã Amazon Simple Storage Service (S3) ãã±ããã«éä¿¡ã§ããŸãããŸãããµãŒããŒã¬ã¹ã®ã€ã³ã¿ã©ã¯ãã£ãåæãµãŒãã¹ã§ãã Amazon Athena ã«ã¯ãäžå
åããã Amazon Connect ãã°ã®ã¯ãšãªãšåæãè¡ãæ©èœãåãã£ãŠããŸãã ãã®ããã°èšäºã§ã¯ãè€æ°ã® AWS ã¢ã«ãŠã³ããšãªãŒãžã§ã³ã«ããã Amazon Connect ã€ã³ã¹ã¿ã³ã¹ã®ã¢ã¯ãã£ããã£ãèšé²ã衚瀺ãã¯ãšãªãåæããããã«å¿
èŠãªæé ã«ã€ããŠèª¬æããŸãããã®æ
å ±ã«ãããAmazon Connect ã®ã»ãã¥ãªãã£ç¶æ³ãææ¡ããæ³å®ããéžè±ããã¢ã¯ãã£ããã£ã調æ»ã§ããŸãã åææ¡ä»¶ ãã®ãã¥ãŒããªã¢ã«ã§ã¯ã次ã®åææ¡ä»¶ãæºãããŠããå¿
èŠããããŸãã Amazon Conenct ãããªã㯠API ã®åºæ¬çãªçè§£ AWS Organization 㮠管çã¢ã«ãŠã³ã ãžã®ã¢ã¯ã»ã¹ çµç¹ã®èšŒè·¡ ãäœæã§ããããš ãã¥ãŒããªã¢ã« ãã®ãã¥ãŒããªã¢ã«ã§ã¯ãã¢ã«ãŠã³ããšãªãŒãžã§ã³ã暪æããåé€ããã Amazon Connect ã€ã³ã¹ã¿ã³ã¹ã調æ»ããŸãããŸããçµç¹å
šäœã§åé€ããã Amazon Connect ã€ã³ã¹ã¿ã³ã¹ã®æ°ã確èªããããšããå§ããŸããæ¬¡ã«ãåé€ãè¡ã£ããŠãŒã¶ãŒãç¹å®ããä»ã®ã¢ã¯ãã£ããã£ã調ã¹ãŸãã ãŸãã çµç¹ã®èšŒè·¡ ãäœæããŸããçµç¹ã®èšŒè·¡ãäœæãããšãçµç¹å
šäœã® Amazon Connect ãããªã㯠API ã®å±¥æŽãèšé²ããCloudTrail ãã°ãäžå
åããã S3 ãã±ããã«éä¿¡ããŸããæ¬¡ã«ãAmazon Athena ã䜿çšããŠãã®äžå
åããã S3 ãã±ããã«ã¯ãšãªãå®è¡ããã¢ã«ãŠã³ããšãªãŒãžã§ã³ã暪æã㊠Amazon Connect ã®ã¢ã¯ãã£ããã£ãåæããŸããå³ 1 ã¯ããã®ã¯ãŒã¯ãããŒãå³ç€ºãããã®ã§ãã å³ 1: äžå
åããã CloudTrail ãã°ãžã®ã¯ãšãª ã¹ããã 1: çµç¹ã®èšŒè·¡ã®èšå® æ¢åã®çµç¹ã®èšŒè·¡ãããå Žåããã®æŒç¿ã§ãæ¢åã®èšŒè·¡ã䜿çšã§ããŸããæ¢åã®çµç¹ã®èšŒè·¡ã«ã¢ã¯ã»ã¹ã§ããªãå Žåã¯ã以äžã®æé ã«åŸã£ãŠãã ããã管çã€ãã³ãã Amazon S3 ã«é
ä¿¡ããå Žåã 1 ã€ã®é
ä¿¡ã¯ ç¡æ ã§ãã CloudTrail ã³ã³ãœãŒã« ã«ç§»åããŸããå·ŠåŽã®ãã€ã³ãã蚌跡ãéžæããå³åŽã®ãã€ã³ãã蚌跡ã®äœæãéžæããŸãã èšŒè·¡å±æ§ã®éžæããŒãž ã§ã cloudtrail-connect-example ãªã©ã®èšŒè·¡åãæå®ããŸãã çµç¹å
ã®ãã¹ãŠã®ã¢ã«ãŠã³ãã§æå¹å ã®ããã¯ã¹ã«ãã§ãã¯ãå
¥ããŸãã ããããããããããã«ã ãã°ãã¡ã€ã«ã® SSE-KMS æå·å ã¯æå¹ã«ããŸãããä»ã®ãªãã·ã§ã³ã¯ããã©ã«ãã®ãŸãŸã«ããŸãã æ¬¡ãž ãéžæããŸãã ãã°ã€ãã³ãã®éžæ ããŒãžã§ãã¹ãŠããã©ã«ãã®ãŸãŸã«ããŠã 次㞠ãã¯ãªãã¯ããŸãã 確èªãšäœæ ããŒãžã§ã 蚌跡ã®äœæ ãéžæããŸãã ããã§èšŒè·¡ãäœæãããŸããã S3 ãã±ããã®å ã®ãã±ããåãã¡ã¢ããŠãããŸãã ã¹ããã 2: Athena ããŒãã«ã®èšå® Athena ã³ã³ãœãŒã« ã«ç§»åãã ã¯ãšãªãšãã£ã¿ ãéžæããŸããAthena ã䜿çšããŠåããŠãã°ãèšé²ããå Žåã以äžã®ã¡ãã»ãŒãžã衚瀺ãããŸãã èšå®ãç·šé ãéããã¯ãšãªçµæã®å Žæã® S3 ãã±ãããèšå®ããŸãã çµç¹ ID ã確èªãããããAWS Organizations ã®ã³ã³ãœãŒã«ã«ã¢ã¯ã»ã¹ããŸããå·ŠåŽã®ããã«ã® çµç¹ ID ãã³ããŒããŸãã Athena ã³ã³ãœãŒã« ã«æ»ããã¯ãšãªãšãã£ã¿ãéããŸããå³åŽã®ãã€ã³ã®ã¯ãšãªãšãã£ã¿ã«ã¯ãšãªãå
¥åããå®è¡ããããšãã§ããŸãã 以äžã®ã¯ãšãªã䜿çšããŠãçµæãã¯ãšãªããããã®ããŒãã«ãäœæããŸãã S3 ãã±ããå (ã¹ããã 1 ã§ã¡ã¢ãããã®) ãš çµç¹ ID (o-xxxxxxxxxx) ã¯çœ®ãæããŠãã ããã CREATE EXTERNAL TABLE cloudtrail_logs ( eventversion STRING, useridentity STRUCT< type:STRING, principalid:STRING, arn:STRING, accountid:STRING, invokedby:STRING, accesskeyid:STRING, userName:STRING, sessioncontext:STRUCT< attributes:STRUCT< mfaauthenticated:STRING, creationdate:STRING>, sessionissuer:STRUCT< type:STRING, principalId:STRING, arn:STRING, accountId:STRING, userName:STRING>, ec2RoleDelivery:string, webIdFederationData:map<string,string> > >, eventtime STRING, eventsource STRING, eventname STRING, awsregion STRING, sourceipaddress STRING, useragent STRING, errorcode STRING, errormessage STRING, requestparameters STRING, responseelements STRING, additionaleventdata STRING, requestid STRING, eventid STRING, resources ARRAY<STRUCT< arn:STRING, accountid:STRING, type:STRING>>, eventtype STRING, apiversion STRING, readonly STRING, recipientaccountid STRING, serviceeventdetails STRING, sharedeventid STRING, vpcendpointid STRING, tlsDetails struct< tlsVersion:string, cipherSuite:string, clientProvidedHostHeader:string> ) ROW FORMAT SERDE 'org.apache.hive.hcatalog.data.JsonSerDe' STORED AS INPUTFORMAT 'com.amazon.emr.cloudtrail.CloudTrailInputFormat' OUTPUTFORMAT 'org.apache.hadoop.hive.ql.io.HiveIgnoreKeyTextOutputFormat' LOCATION 's3:// ENTERNAMEOFS3BUCKET /AWSLogs/ ENTERORGID /'; å·ŠåŽã®ããŒãã«ãšãã¥ãŒã®ããã«ã« cloudtrail_logs ãšããããŒãã«ãäœæãããŸããã æ¬¡ã«ãããŒãã«ã«è¿œå ããå¿
èŠããããŸãããã®ãããã¯ãšãªãšãã£ã¿ãŒã§ãã©ã¹ (+) èšå·ãéžæããŠã次ã®ã¯ãšãªçšã«æ°ããã¿ããäœæããŸãã ALTER TABLE cloudtrail_logs SET LOCATION 's3:// ENTERNAMEOFS3BUCKET /AWSLogs/ ENTERORGID /' ã¹ããã 3: è€æ°ã®ã¢ã«ãŠã³ããšãªãŒãžã§ã³ã«ããã Amazon Connect ã¢ã¯ãã£ããã£ã®èª¿æ» Amazon Connect ã®ã¢ã¯ãã£ããã£ãã·ãã¥ã¬ãŒããããããè€æ°ã®ã¢ã«ãŠã³ããšãªãŒãžã§ã³ã§ Amazon Connect ã€ã³ã¹ã¿ã³ã¹ãäœæ ããåŸã§ ãããã®ã€ã³ã¹ã¿ã³ã¹ãåé€ ããŸããCloudTrail ã¬ã³ãŒãã衚瀺ããããŸã§æ°ååŸ
ã£ãŠãããæ¬¡ã®ã¯ãšãªãæ°ããã¿ãã«å
¥åããŠãã ããã ã¢ã«ãŠã³ããšãªãŒãžã§ã³å
šäœã§ åé€ããã ã€ã³ã¹ã¿ã³ã¹ã®æ°ã確èªããã«ã¯ã Athena ã³ã³ãœãŒã« ã«ç§»åããŠä»¥äžã®ã¯ãšãªãå®è¡ããŸãã SELECT eventName, count(eventName) AS NumberOfDeletedInstances, recipientaccountid, awsRegion FROM cloudtrail_logs Where eventname = 'DeleteInstance' AND eventsource = 'connect.amazonaws.com' GROUP BY eventName, recipientaccountid, awsRegion ãããã®ã€ã³ã¹ã¿ã³ã¹ãåé€ãããŠãŒã¶ãŒãç¹å®ããã«ã¯ã以äžã®ã¯ãšãªãå®è¡ããŸãã useridentity.arn ãã³ããŒããŠãããŸãã SELECT useridentity.arn, recipientaccountid, sourceipaddress, eventtime, awsRegion, eventName, requestParameters FROM cloudtrail_logs Where eventname = 'DeleteInstance' AND eventsource = 'connect.amazonaws.com' ãããã®åé€ãè¡ã£ããŠãŒã¶ãŒã®ã¢ã¯ãã£ããã£ã確èªããã«ã¯ã以äžã®ã¯ãšãªãå®è¡ããŸãã SELECT eventName, recipientaccountid, sourceipaddress, eventtime, awsRegion FROM cloudtrail_logs Where useridentity.arn = 'ENTERTHEUSERARN' AND eventsource = 'connect.amazonaws.com' äžèšã®äŸã®æé ã§ãã¢ã«ãŠã³ãã»ãªãŒãžã§ã³å
šäœã® Amazon Connect ã«é¢ãã CloudTrail ãã°ãã¯ãšãªã§ããŸãããAmazon Connect ã®ãã°ãã¡ã€ã«ã®ãšã³ããªã®è©³çްã«ã€ããŠã¯ãAWS CloudTrail ããã¥ã¡ã³ãã®ã AWS CloudTrail ã䜿çšã㊠Amazon Connect API åŒã³åºãããã°èšé²ãã ããã芧ãã ããã ã¯ãªãŒã³ã¢ãã æ€èšŒã®çºã ãã«ããã°ã®æé ã«åŸã£ãŠããå Žåã¯ãè«æ±ãç¶ç¶ããªãããã«ã¢ã«ãŠã³ããã¯ãªãŒã³ã¢ããããŠãã ãããããã§ãªãå Žåã¯ãã¯ãªãŒã³ã¢ãããå®è¡ããªãã§ãã ãããã¯ãªãŒã³ã¢ããããã«ã¯ã以äžã®æé ã«åŸã£ãŠãã ããã ãã®æŒç¿ã®äžç°ãšã㊠CloudTrail ã®çµç¹ã®èšŒè·¡ãäœæããå Žåã¯ã CloudTrail ã³ã³ãœãŒã« ã«ç§»åããäœæãã蚌跡ãéžæã㊠åé€ ãéžæããŸãã S3 ã³ã³ãœãŒã« ã«ç§»åããŸãããã¹ãŠã®ã¢ã«ãŠã³ãã® CloudTrail ãã°ãä¿åããããã«äœæãã S3 ãã±ããã åé€ ããŸãã çµè« ãã®ããã°èšäºã§ã¯ãçµç¹ã®èšŒè·¡ã䜿çšããŠè€æ°ã®ã¢ã«ãŠã³ããšãªãŒãžã§ã³ã«ããã Amazon Connect ã«é¢ããã¢ã¯ãã£ããã£ãã¯ãšãªããæ¹æ³ã玹ä»ããŸãããAmazon Connect ã®è©³çްã«ã€ããŠã¯ã Amazon Connect ã®ããã¥ã¡ã³ã ãã芧ãã ããã èè
ã«ã€ã㊠Pranjal Gururani Pranjal Gururani ã¯ãã·ã¢ãã«ãæ ç¹ãšãã AWS ã®ãœãªã¥ãŒã·ã§ã³ã¢ãŒããã¯ãã§ããPranjal ã¯ããŸããŸãªã客æ§ãšããžãã¹äžã®èª²é¡ã«å¯ŸåŠããã¯ã©ãŠããœãªã¥ãŒã·ã§ã³ãæ§ç¯ããŠããŸãããã€ãã³ã°ãã«ã€ãã¯ãã¹ã«ã€ãã€ãã³ã°ã楜ãã¿ãäœæã«ã¯å®¶æãšéããæéãæ¥œããã§ããŸãã Guy Bachar Guy Bachar ã¯ããã¥ãŒãšãŒã¯ãæ ç¹ãšãã AWS ã®ãœãªã¥ãŒã·ã§ã³ã¢ãŒããã¯ãã§ãã圌ã¯ã°ãªãŒã³ãã£ãŒã«ãã®ã客æ§ã® AWS ã䜿çšããã¯ã©ãŠããžã®ç§»è¡ãæ¯æŽããŠããŸããIDãã»ãã¥ãªãã£ããŠããã¡ã€ãã³ãã¥ãã±ãŒã·ã§ã³ã«æ
ç±ã泚ãã§ããŸãã 翻蚳ã¯ãã¯ãã«ã«ã¢ã«ãŠã³ããããŒãžã£ãŒé«æ©ãæ
åœããŸãããåæã¯ ãã¡ã ã§ãã