For AWS environments it is a good idea to keep track of allocated IP addresses and DNS Route53 reservations.

If you whitelist IPs on the ALB or ELB regularly audit those IP addresses.

It is easy for an IP address to get abandoned and reallocated to third party that would now have access to your systems.

The same for DNS entries. If you retire a service but not remove the DNS from Route53, a third party could take over that IP and now your DNS is sent to a third party service. This is a common tactic for malicious and scam sites to use your company name to drive traffic to their site.

Regular audits and system offboarding processes will help take care of these issues and save you many headaches.

#aws #alb #elb #route53 #devops

プライベートホストゾーンのドメインに対してACMパブリック証明書を発行する
https://qiita.com/ike_s_muramatsu/items/49f34bf6d54c60f57ba0?utm_campaign=popular_items&utm_medium=feed&utm_source=popular_items

#qiita #AWS #dns #route53 #証明書 #acm

プライベートホストゾーンのドメインに対してACMパブリック証明書を発行する - Qiita

導入・背景 社内向けの管理画面や閉域網経由でのシステムをALB+ECSで構築するケースは多いと思います。 こういったシチュエーションにおいてもパブリックの証明書が使えると嬉しい場面はあるはずです。 「プライベートホストゾーンに登録したドメインだから、パブリック証明書は使え...

Qiita
AWS初心者がRoute53をタクシーの配車サービスに例えた話 - Qiita

はじめに こんにちは。Tsukasaです! 最近資格試験の勉強をしていたらRoute53がかなり高頻度で問題に出てきました。 Route53はあまり触ったこともないですし、何となくしかわかっていないので、また身の回りのものに例えて理解できたらと思います Route53と...

Qiita

AWS has 200+ services. Most companies use about 15. The same ones show up in every project: EC2, S3, Lambda, RDS, DynamoDB, API Gateway, CloudFront, SQS, SNS, CloudWatch.
That handles 80% of everything. Wrote a guide covering just the ones that matter.

#aws #cloud #infrastructure #EC2 #IAM #S3 #RDS #DynamoDB #Lambda #APIGateway #CloudFront #Route53 #SQS #SNS #CloudWatch #EKS #CDN

https://heyjoshlee.medium.com/the-80-20-of-aws-the-services-that-actually-matter-13509ff90115

The 80/20 of AWS (the services that actually matter)

AWS has over 200 services. That number is intimidating. You log into the console, see a wall of icons, and immediately feel like you need a…

Medium

anyone else using #Route53 #DNS having troubles? it's a coin flip whether my domain resolves every time i hit it with dig

EDIT: resolved. only impacted a subset of CloudFront distributions that had ALIAS records created with Route53 and we were one of them.

【AWS / Terraform】ECS環境を完全閉域化するためにやったこと(ALB / ECR / Direct Connect / Route 53)
https://qiita.com/hiyanger/items/0071db1bdd8533f3b38d?utm_campaign=popular_items&utm_medium=feed&utm_source=popular_items

#qiita #AWS #DirectConnect #route53 #ECS #terarform

【AWS / Terraform】ECS環境を完全閉域化するためにやったこと(ALB / ECR / Direct Connect / Route 53) - Qiita

完全閉域化されたECS環境をTerraformで作りましょう🏯 閉域化とはパブリックからのアクセスが完全にできない状態のことです。エンタープライズ系の案件だと、よくあるお話ではないでしょうか。実際に私が閉域化したときにやったことをすべて書きます。 ネットワーク系は図がないと...

Qiita
Amazon Route 53 推出奇怪的 Accelerated Recovery 功能

在「Amazon Route 53 launches Accelerated recovery for managing public DNS records」這邊的介紹文章看到 AWS 在 Amazon Route 53 上推出奇怪的功能 Accelerated Recovery。 開頭就講很白,在 us-east-1 出事後確保 60 分鐘的 RTO (recovery time objective),這個很明顯是針對前陣子 us-east-1 爆炸後推出來的新功能: Today, we’re announcing Amazon Route 53 Accelerated recovery for managing public DNS re...

Gea-Suan Lin's BLOG

Just dropped a new short 💖🔥

If Route 53 ever made you feel like it’s your first day in AWS… this one’s for you 😅

Q breaks down DNS like you’re a genius - not a confused intern.

Go watch👇
https://youtube.com/shorts/yCN-L2othkA

#YouTubeShorts #AWS #Route53 #AmazonQ #DevOps #Cloud

Forget the Docs - Amazon Q Actually Teaches You AWS DNS

YouTube

Summary of the Amazon DynamoDB Service Disruption in Northern Virginia (US-EAST-1) Region

https://aws.amazon.com/message/101925/

ps: More insides with internal architecture : "To explain this event, we need to share some details about the DynamoDB DNS management architecture. "

#AWS #DynamoDB #DNS #Route53

Summary of the Amazon DynamoDB Service Disruption in the Northern Virginia (US-EAST-1) Region

Amazon Web Services, Inc.
🚨BREAKING: Tech giant #Amazon is too cool for its own #DNS service, Route 53, when it comes to amazon.com. 🤯 Apparently, the secret to their success is #outsourcing their own tech—who knew? 🤡 Maybe next time they can try using Route 53 and avoid a meltdown faster than a McDonald's ice cream machine. 🍦🔧
https://www.dnscheck.co/blog/dns-monitoring/2025/10/21/aws-dog-food.html #Route53 #TechNews #IceCreamMeltdown #HackerNews #ngated
Amazon Isn't Eating Its Own DNS Dog Food | DNS Check

On October 19-20, 2025, Amazon Web Services (AWS) experienced a significant outage (AWS status) affecting its US-EAST-1 region in northern Virginia. The root...