Posts

Amazon S3 Metadata and annotations are now available in AWS GovCloud (US) Regions - devamazonaws.blogspot.com

Amazon S3 Metadata and annotations are now available in AWS GovCloud (US-East) and AWS GovCloud (US-West) Regions, giving you the easiest and fastest way to discover, understand, and enrich your S3 data. S3 Metadata automatically captures system-defined details like object size and source, and stores them in Amazon S3 Tables, optimized for near real-time tabular queries that simplify business analytics and real-time inference applications. Annotations extend S3 Metadata so you can attach rich business context directly to your objects in JSON, XML, or YAML, with up to 1 GB per object. This gives your AI agents and analytics tools the context they need to find and use the right data without building or maintaining separate metadata systems. Annotations share the same durability and consistency properties as the object, move with the object during copy and replication operations, and are removed when the object is deleted. This makes it easy to keep context current as your data evolves....

Amazon WorkSpaces now supports Nested Virtualization - devamazonaws.blogspot.com

AWS announces availability of nested virtualization for Amazon WorkSpaces Personal and Amazon WorkSpaces Core Managed Bundles. With nested virtualization enabled, developers can run Docker Desktop, WSL2, and other hypervisor-dependent tools directly on their Windows WorkSpaces, and KVM-based workloads, Android emulators, and nested containers on their Linux WorkSpaces — without needing separate physical hardware or workaround environments. Nested virtualization is supported on license-included (public and custom) bundles, Bring Your Own License (BYOL) bundles, and Bring Your Own Protocol (BYOP) bundles running Windows Server 2019, Windows Server 2022, Windows Server 2025, Windows 11, Ubuntu 22.04, Ubuntu 24.04, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9, Rocky 8, or Rocky 9 with DCV protocol. Power (4 vCPU) or higher is recommended. Nested virtualization is not supported on GPU bundles, the PCoIP protocol, or Amazon WorkSpaces based on Windows Server 2016, Windows 10,...

[MS] What's a PFN? - devamazonaws.blogspot.com

What's a PFN? MSIX introduced Package identity in Windows 8. While the familiar package identity "5-tuple" was functional, it wasn't especially convenient to pass through APIs or embed in resources such as files, registry keys, URLs, or XML documents. To address this, Windows defined an opaque string representation known as a Package Moniker . Windows called a related identifier derived from a package's Name and Publisher the Package Family Moniker . These were commonly abbreviated as PM and PFM . As development progressed, Windows quite sensibly required new APIs to pass through API Design Review. The review team (then and now) consists of very senior developers from across Windows, pooling their collective experience to help ensure APIs are polished before they're released into the wild. Eventually, the Package API came before the review team. The review team spent quite a bit of time questioning the terms Package Moniker and Package Family M...

[MS] Apple Silicon and Xcode 27 images available in pay-as-you-go (preview) - devamazonaws.blogspot.com

Image
Apple developers can now build and test their applications natively on Apple Silicon in Azure Pipelines. New arm64 macOS agents are available in public preview through the pay-as-you-go GitHub-hosted Agents pool. Starting with Apple Silicon, Azure Pipelines is bringing over some of the agent sizes already available in GitHub Actions. The preview includes the following macOS images: Operating system Hardware specification VM image labels Pool macOS 26 Standard macos-26-arm64 , xcode-27 GitHub-hosted Agents macOS 26 XLarge macos-26-arm64-xl , xcode-27-xlarge GitHub-hosted Agents Running workloads directly on Apple Silicon avoids the overhead and compatibility limitations of emulating arm64 on Intel hardware. It also lets teams validate applications against the same architecture used by current Apple devices and development machines. Pay-as-you-go pricing The new agents use pay-as-you-go pricing with the rate tied to the size of th...

Amazon MSK now supports configuring custom domain names for MSK Provisioned clusters - devamazonaws.blogspot.com

You can now easily configure custom domain names on Amazon MSK Provisioned clusters, on either ZooKeeper or KRaft mode for metadata management. This capability helps client applications maintain the same connection endpoints, simplifying cluster migrations, disaster recovery failovers, and scaling operations without reconfiguration. Previously, customers configured custom domain names manually on each broker. Additionally, on KRaft-based clusters, customers could not configure custom domain names. With this launch, you can now easily define a custom domain once at the cluster level, and Amazon MSK automatically applies it to every broker in the cluster, eliminating the need to configure each broker individually. The configuration persists through scaling operations and works identically on both ZooKeeper and KRaft-based clusters. This is particularly useful for customers who route traffic through Network Load Balancers, require persistent endpoints across cluster operations, or must ...

Amazon Quick now supports approval policies for sharing - devamazonaws.blogspot.com

Amazon Quick now offers approval policies, giving administrators governance controls over how assets are shared within their organization. With approval policies, administrators can require designated approvers to review and approve share requests before access is granted, helping organizations ensure that sharing of sensitive assets is deliberate, compliant, and auditable. Administrators can create approval policies scoped to specific asset types, including knowledge bases, spaces, and custom chat agents. When a user submits a share request for an asset covered by a policy, it is routed to the assigned approver group for review. Approvers can evaluate the asset directly before approving or denying the request, and all workflow events are captured in AWS CloudTrail for full auditability. For custom chat agents, approvers can review and act on the entire dependency package in a single request. This feature is available for Professional and Enterprise plans, in all AWS Regions where ...

AWS Client VPN now supports CLI, administration controls, and faster connections - devamazonaws.blogspot.com

AWS Client VPN introduces a rebuilt AWS VPN Client v6.0.x which offers new features like command-line interface (CLI) support, enterprise administrative controls, and faster connection establishment time, making it easier you to automate VPN connectivity and centralize device management across your organization. The AWS VPN Client CLI provides full feature parity with the GUI. You can now script VPN connections into your automation workflows and infrastructure-as-code deployments. Previously, integrating VPN connectivity into automated environments required third-party tooling or manual intervention. This feature eliminates that by supporting background CLI operations. Previously, you had to distribute VPN profiles among all users in your organization, which could be managed by any user without permissions. Now, with administration controls on AWS client, you can centralize VPN policy enforcement by scoping profiles to specific users, manage global profiles available to all users on ...