| Both sides previous revisionPrevious revisionNext revision | Previous revision |
| aws [2026/01/05 14:13] – phong2018 | aws [2026/02/22 23:55] (current) – removed phong2018 |
|---|
| ====== AWS (Amazon Web Services) ====== | |
| |
| **What it is:** Amazon’s *cloud* /klaʊd/ (đám mây) platform. | |
| |
| **What it’s for:** Build and run systems without managing physical hardware; many services are *managed* /ˈmænɪdʒd/ (được nhà cung cấp vận hành hộ). | |
| |
| |
| ===== Keyword Tree (click to open each child page) ===== | |
| |
| ==== 1) Global Infrastructure ==== | |
| * [[aws:global:region|Region]] | |
| * [[aws:global:regional-vs-global-services|Regional vs Global Services]] | |
| * [[aws:global:availability-zone|Availability Zone (AZ)]] | |
| * [[aws:global:multi-az|Multi-AZ]] | |
| * [[aws:global:fault-isolation|Fault Isolation]] | |
| * [[aws:global:edge-location|Edge Location]] | |
| * [[aws:global:cloudfront|CloudFront (CDN)]] | |
| |
| ==== 2) Security, Identity & Access ==== | |
| * [[aws:security:iam|IAM (Identity and Access Management)]] | |
| * [[aws:security:iam:user|IAM User]] | |
| * [[aws:security:iam:group|IAM Group]] | |
| * [[aws:security:iam:role|IAM Role]] | |
| * [[aws:security:iam:policy|IAM Policy]] | |
| * [[aws:security:iam:sts|STS (Security Token Service)]] | |
| * [[aws:security:iam:assume-role|AssumeRole]] | |
| * [[aws:security:iam:permission-boundary|Permission Boundary]] | |
| * [[aws:security:iam:least-privilege|Least Privilege]] | |
| * [[aws:security:mfa|MFA (Multi-Factor Authentication)]] | |
| * [[aws:security:kms|KMS (Key Management Service)]] | |
| * [[aws:security:kms:cmk|Customer Managed Key (CMK)]] | |
| * [[aws:security:kms:key-policy|Key Policy]] | |
| * [[aws:security:secrets-manager|Secrets Manager]] | |
| * [[aws:security:secrets-manager:rotation|Secret Rotation]] | |
| * [[aws:security:ssm-parameter-store|SSM Parameter Store]] | |
| * [[aws:security:cloudtrail|CloudTrail (Audit Logs)]] | |
| |
| ==== 3) Networking ==== | |
| * [[aws:network:vpc|VPC (Virtual Private Cloud)]] | |
| * [[aws:network:subnet|Subnet]] | |
| * [[aws:network:public-subnet|Public Subnet]] | |
| * [[aws:network:private-subnet|Private Subnet]] | |
| * [[aws:network:route-table|Route Table]] | |
| * [[aws:network:internet-gateway|Internet Gateway (IGW)]] | |
| * [[aws:network:nat-gateway|NAT Gateway]] | |
| * [[aws:network:security-group|Security Group]] | |
| * [[aws:network:nacl|Network ACL (NACL)]] | |
| * [[aws:network:vpc-endpoint|VPC Endpoint]] | |
| * [[aws:network:route53|Route 53 (DNS)]] | |
| * [[aws:network:route53:routing-policies|Routing Policies]] | |
| * [[aws:network:elb|Elastic Load Balancing (ELB)]] | |
| * [[aws:network:elb:alb|Application Load Balancer (ALB)]] | |
| * [[aws:network:elb:nlb|Network Load Balancer (NLB)]] | |
| * [[aws:network:elb:health-check|Health Check]] | |
| |
| ==== 4) Compute ==== | |
| * [[aws:compute:ec2|EC2 (Elastic Compute Cloud)]] | |
| * [[aws:compute:ec2:instance-type|Instance Type]] | |
| * [[aws:compute:ec2:ami|AMI (Amazon Machine Image)]] | |
| * [[aws:compute:ec2:key-pair|Key Pair]] | |
| * [[aws:compute:ec2:user-data|User Data]] | |
| * [[aws:compute:ec2:instance-profile|Instance Profile]] | |
| * [[aws:compute:auto-scaling|Auto Scaling]] | |
| * [[aws:compute:auto-scaling:asg|Auto Scaling Group (ASG)]] | |
| * [[aws:compute:auto-scaling:scaling-policy|Scaling Policy]] | |
| * [[aws:compute:lambda|Lambda]] | |
| * [[aws:compute:lambda:triggers|Triggers]] | |
| * [[aws:compute:lambda:concurrency|Concurrency]] | |
| * [[aws:compute:api-gateway|API Gateway]] | |
| * [[aws:compute:step-functions|Step Functions]] | |
| |
| ==== 5) Storage ==== | |
| * [[aws:storage:s3|S3 (Simple Storage Service)]] | |
| * [[aws:storage:s3:bucket|Bucket]] | |
| * [[aws:storage:s3:object|Object]] | |
| * [[aws:storage:s3:storage-classes|Storage Classes]] | |
| * [[aws:storage:s3:versioning|Versioning]] | |
| * [[aws:storage:s3:lifecycle|Lifecycle Rules]] | |
| * [[aws:storage:s3:encryption|Encryption (SSE-S3, SSE-KMS)]] | |
| * [[aws:storage:s3:bucket-policy|Bucket Policy]] | |
| * [[aws:storage:s3:pre-signed-url|Pre-signed URL]] | |
| * [[aws:storage:ebs|EBS (Elastic Block Store)]] | |
| * [[aws:storage:ebs:snapshot|Snapshot]] | |
| * [[aws:storage:ebs:volume-types|Volume Types (gp3, io2, st1, sc1)]] | |
| * [[aws:storage:efs|EFS (Elastic File System)]] | |
| * [[aws:storage:glacier|S3 Glacier]] | |
| |
| ==== 6) Database ==== | |
| * [[aws:database:rds|RDS (Relational Database Service)]] | |
| * [[aws:database:rds:multi-az|Multi-AZ]] | |
| * [[aws:database:rds:read-replica|Read Replica]] | |
| * [[aws:database:rds:backup|Automated Backups]] | |
| * [[aws:database:aurora|Aurora]] | |
| * [[aws:database:aurora:cluster|Aurora Cluster]] | |
| * [[aws:database:aurora:replicas|Aurora Replicas]] | |
| * [[aws:database:dynamodb|DynamoDB]] | |
| * [[aws:database:dynamodb:partition-key|Partition Key]] | |
| * [[aws:database:dynamodb:sort-key|Sort Key]] | |
| * [[aws:database:dynamodb:gsi|Global Secondary Index (GSI)]] | |
| * [[aws:database:dynamodb:lsi|Local Secondary Index (LSI)]] | |
| * [[aws:database:dynamodb:streams|DynamoDB Streams]] | |
| * [[aws:database:elasticache|ElastiCache]] | |
| * [[aws:database:elasticache:redis|Redis]] | |
| * [[aws:database:elasticache:memcached|Memcached]] | |
| |
| ==== 7) Containers ==== | |
| * [[aws:containers:ecr|ECR (Elastic Container Registry)]] | |
| * [[aws:containers:ecs|ECS (Elastic Container Service)]] | |
| * [[aws:containers:ecs:task-definition|Task Definition]] | |
| * [[aws:containers:ecs:service|Service]] | |
| * [[aws:containers:ecs:cluster|Cluster]] | |
| * [[aws:containers:eks|EKS (Elastic Kubernetes Service)]] | |
| * [[aws:containers:eks:cluster|Cluster]] | |
| * [[aws:containers:eks:nodegroup|Node Group]] | |
| * [[aws:containers:eks:pod|Pod]] | |
| * [[aws:containers:eks:service-account|Service Account]] | |
| * [[aws:containers:eks:irsa|IRSA (IAM Roles for Service Accounts)]] | |
| * [[aws:containers:eks:oidc|OIDC Provider]] | |
| * [[aws:containers:fargate|Fargate]] | |
| |
| ==== 8) Management & Monitoring ==== | |
| * [[aws:ops:cloudwatch|CloudWatch]] | |
| * [[aws:ops:cloudwatch:logs|Logs]] | |
| * [[aws:ops:cloudwatch:metrics|Metrics]] | |
| * [[aws:ops:cloudwatch:alarms|Alarms]] | |
| * [[aws:ops:cloudformation|CloudFormation]] | |
| * [[aws:ops:cloudformation:stack|Stack]] | |
| * [[aws:ops:cloudformation:change-set|Change Set]] | |
| * [[aws:ops:ssm|Systems Manager (SSM)]] | |
| * [[aws:ops:ssm:session-manager|Session Manager]] | |
| * [[aws:ops:ssm:patch-manager|Patch Manager]] | |
| * [[aws:ops:ssm:run-command|Run Command]] | |
| * [[aws:ops:trusted-advisor|Trusted Advisor]] | |
| |
| ==== 9) Cost & Billing ==== | |
| * [[aws:cost:pricing|Pricing Models]] | |
| * [[aws:cost:on-demand|On-Demand]] | |
| * [[aws:cost:reserved-instances|Reserved Instances]] | |
| * [[aws:cost:savings-plans|Savings Plans]] | |
| * [[aws:cost:spot|Spot Instances]] | |
| * [[aws:cost:free-tier|Free Tier]] | |
| * [[aws:cost:budgets|Budgets]] | |
| * [[aws:cost:cost-explorer|Cost Explorer]] | |
| * [[aws:cost:cost-allocation-tags|Cost Allocation Tags]] | |
| |
| ==== 10) DevTools & CI/CD ==== | |
| * [[aws:devtools:codecommit|CodeCommit]] | |
| * [[aws:devtools:codebuild|CodeBuild]] | |
| * [[aws:devtools:codepipeline|CodePipeline]] | |
| * [[aws:devtools:codedeploy|CodeDeploy]] | |
| |
| ===== 11) Analytics & Streaming ===== | |
| * [[aws:analytics:start|Analytics & Streaming]] | |
| * [[aws:analytics:kinesis-data-streams|Kinesis Data Streams]] | |
| * [[aws:analytics:kinesis-data-streams:shard|Shard]] | |
| * [[aws:analytics:kinesis-data-streams:consumer|Consumer]] | |
| * [[aws:analytics:kinesis-data-streams:enhanced-fanout|Enhanced Fan-Out]] | |
| * [[aws:analytics:kinesis-data-analytics|Kinesis Data Analytics]] | |
| * [[aws:analytics:kinesis-data-analytics:stream-processing|Stream Processing]] | |
| * [[aws:analytics:kinesis-data-analytics:windowing|Windowing]] | |
| * [[aws:analytics:kinesis-data-firehose|Kinesis Data Firehose]] | |
| * [[aws:analytics:athena|Athena]] | |
| * [[aws:analytics:glue-data-catalog|Glue (Data Catalog)]] | |
| * [[aws:analytics:redshift|Redshift]] | |
| * [[aws:analytics:quicksight|QuickSight]] | |
| * [[aws:analytics:opensearch|OpenSearch (search/analytics)]] | |
| |
| |
| ===== Hard Words (mini glossary) ===== | |
| * *cloud* /klaʊd/: đám mây (hạ tầng qua Internet) | |
| * *managed* /ˈmænɪdʒd/: được vận hành hộ | |
| * *scalability* /ˌskeɪləˈbɪləti/: khả năng mở rộng | |
| * *availability* /əˌveɪləˈbɪləti/: tính sẵn sàng | |
| * *identity* /aɪˈdentəti/: danh tính | |
| * *authorization* /ˌɔːθərəˈzeɪʃn/: cấp quyền | |
| * *authentication* /ɔːˌθentɪˈkeɪʃn/: xác thực | |
| * *encryption* /ɪnˈkrɪpʃən/: mã hóa | |
| * *throughput* /ˈθruːpʊt/: thông lượng | |
| * *latency* /ˈleɪtənsi/: độ trễ | |
| * *durability* /ˌdʊrəˈbɪləti/: độ bền dữ liệu | |
| * *orchestrate* /ˈɔːrkəstreɪt/: điều phối | |
| * *serverless* /ˈsɝːvərləs/: không quản lý server | |
| |