AWS Regions in Greater China aim to help customers expand online business and deploy Enterprise Applications specifically for China users. Your cloud-based applications can be deployed inside of China with the same APIs, protocols, and standards used on other AWS global regions. In this session, we will cover AWS Greater China Regions’ updates in the last year, and the business & technical best practices on AWS Greater China Regions. We will also provide you the guide to access to them.
AWS Serverless per startup: come innovare senza preoccuparsi dei server
Expand-Your-Business-to-China-AWS-GCR-Regions
1. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
JiaWoei Ling
General Manager
GCR Global Accounts and Territory Business Development
Overview and Services update of AWS China
Regions
2. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
Availability
Zone B
Availability
Zone A
Beijing Region
Availability
Zone C
Availability
Zone B
Ningxia Region
Availability
Zone A
Availability
Zone C
Availability
Zone B
Hong Kong SAR Region
Availability
Zone A
AWS China (Ningxia)
Region operated by
NWCD launched in 2017
AWS China (Beijing)
Region operated by Sinnet
launched in 2014
3
AWS Hong Kong SAR
Region launched in Apr.
2019
AWS China Regions- Beijing & Ningxia& Hong Kong
Mainland China
• Worldwide standards: Redundancy and high availability
• Connecting with major Tier 1 carriers and small ISPs by BGP
• 2 Availability Zones (AZs) on AWS China (Beijing) Region operated by Sinnet
• 3 Availability Zones (AZs) on AWS China (Ningxia) Region operated by NWCD
Hong Kong
• 3 Availability Zones (AZs) on AWS Hong Kong Region
3. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
AWS in China
AWS provides its industry-
leading technology, guidance,
and expertise to NWCD and
Sinnet
NWCD and Sinnet operate and provide
AWS Cloud services to China customers
NWCD/ Sinnet Specific
• Accounts System
• Billing
• VAT Invoice (Fapiao)
• Support charges
4. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
• A state-issued ICP (Internet Content Provider) number is required to publish your web applications
in China.
• ICP filing is for non-commercial websites which are purely informational and are not involved in
direct sales. These numbers follow the format 京ICP备1234****号 (in this example, “京” represents
Beijing, “备” represents Filing, “号” represents Number)
• ICP Filing request can be submitted on AWS China websites
ICP Filing
Get an EIP or Fixed
EIPs of ELB
The Top level domain
name
Business license and a
contact person
MIIT
(Ministry of Industry and Information Technology)
Up to 20 business days
5. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
Account Registration of AWS China Regions
• AWS China accounts are separated from other AWS global regions
Separated console, IAM and authentication stack
Different endpoints
• Access the AWS China site to apply for an AWS China account, using the
following information:
Scanned copy of your Chinese subsidiary’s business license
A corporate Email address for registration
A China located contact person’s information, incl. Chinese name, mobile phone
number, scanned copy of personal ID
6. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
How AWS China Regions Support Your China Expansion
Better User Experience to your Mainland China’s clients
• Closer to your clients locating within Mainland China with simpler network environment
Fully compliant with China’s legal and regulatory requirements
• Data Residency
• Compliance certifications
• ICP Filing support
The same user experience as other AWS Regions to you
• The same graphic UI, API, SDK, CLI as other AWS regions.
• AMIs and data are easy to be migrated to AWS China regions from other AWS regions.
• Compatibility of international 3rd party products and services.
Various options of network connectivity between AWS China Regions and other AWS Regions
• Stable& Compliant cross-border connectivity e.g. CT CN2, CMI Direct Connect and etc.
Extensive options of your China landing partners
• 1000+ international and domestic technical& consulting partners are available to support your China expansion on AWS China Regions.
7. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
Available Services on AWS China Regions
• Consistent GUI with
other AWS global
regions
• All core services,
including Compute,
Storage, Network, etc.,
are available from both
AWS China Regions
• AWS makes migrating
from global AWS
Regions to AWS China
Regions simple
8. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
New Service Launches in 2018 & 2019
Amazon Kinesis
Data Firehose
AWS Step Functions
C5 instance R5 instance
Amazon Aurora
AWS Directory
Service
AWS Server
Migration Service
AWS Snowball
Amazon GameLiftAWS Deep
Learning AMIs
AWS CodeBuild AWS CodeDeploy
AWS Database
Migration Service
Amazon Polly
Amazon CloudFrontAmazon VPC
PrivateLink
AWS Elemental
MediaConvert
Amazon S3 Glacier
Deep Archive
AWS ParallelCluster
AWS Direct Connect
SH and SZ POP
26 26
20
40
21
0
10
20
30
40
50
2018 Q1 2018 Q2 2018 Q3 2018 Q4 2019 Q1
New Services& Features on AWS China Regions in 2018& 2019
AWS Key Management
Service
11. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
AWS Gateway to China (Coming Soon)
• AWS Gateway to China aims to provide an one-stop service to customers
outside of China to leverage AWS China regions.
• Customers have direct access to the AWS China team, AWS China account
registration, and FAQs (e.g. ICP filing, differences between AWS China
regions and other AWS regions).
• Technical best practices on AWS China regions will be shown on the page.
• Customers can submit general questions or account registration requests,
and get connection with AWS China team directly.
12. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
AWS EdStart Program
AWS EdStart, the AWS educational technology (EdTech) startup accelerator, is designed to help entrepreneurs build the next
generation of online learning, analytics, and campus management solutions on the AWS Cloud. The program is designed to
enable EdTech startups to move faster with specially tailored benefits.
AWS EdStart Benefits
Community
• Community Meetups
• Live Events & Pitch
Days
• Mentorship
• Monthly Newsletter
Technical Assistance
• Technical Support
• Customized Trainings
• Monthly Webinars
• Startup Kits
• Marketing Opportunities
Financial
• AWS Promotional
Credits
• Applicant organization must have been founded within the past five years
• Applicant organization’s annual revenues not to exceed $10M USD
• Application must demonstrate an innovative solution for students, teachers, or administrators that addresses a current or
future challenge
• Applicant organization must have a mission to solve problems within the field of education
• Applicant organization must currently be working with education stakeholders to ensure validity
Application Criteria
Learn more and apply today at https://www.amazonaws.cn/edstart/ or
Contact us at awsedstart-gcr@amazon.com or clairezh@amazon.com
13. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
AWS Joint Innovation Centers (JICs)
Incubator for Startups
To provide startups with cloud-
centric technology and
business development
environment as well as funding
sources by leveraging
government resources and
AWS Activate Program.
Accelerator for Enterprise
Transformation
To create a mechanism to enable
enterprises to:
• Upgrade existing IT
infrastructure
• Optimize business operation
• Facilitate flexible manufacture
International Startup
Program
To equip the international
startups with comprehensive
resources in areas of:
• Cloud computing
• Office space
• Mentors
• VC connections and go-to-
market partners
Cloud Innovation School
• Helps top universities to
provide students and
educators with the resources
needed to accelerate cloud-
related learning
• Develop cloud talents from
university students and
nurture new startups
4 Pillars of JIC
15. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
Optimization & Automation
Agreement
BI
System
2017 2018
Landing
Zone
Supply
Chain
2019
Mobile
Services
SAP/
Development
Environment
Production
Environment
Drill
Phase 1
Drill
Phase 2
ALL IN
DR Drill
Project
Launch
Massive Migration of Swire – Journey to ‘ALL IN AWS’
20+
Backbones
600+
Servers
300T
Storage
Data
3 Data
Centers
20000+
Users
100+
Network
Services
16. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
Massive Migration of Swire – Outcome of ‘ALL IN AWS’
AWS Architecture Diagram of Swire Coca-Cola
Faster response to business requirements
Faster Adoption of New Services
Flexible Expansion and Allocation of
Resources
Reduce Operational Complexity and Risk
Clear Cost Analysis and Optimization
23. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
Starts with China Accounts and IAM Users
Root User or Account
Users IAM Users
AWS Organization
Bill Consolidation
IAM
Cross-Account Role
Bill Consolidation
In Global Regions
• In Ningxia or Beijing Region, there is
no concept of "root" or "account"
user or credentials. All users are
IAM users, including the user who
created the account.
• There can be multiple account under
same legal entity for different purpose.
The administrator can use cross-
account assume role to mange them
In China Region Technical
Suggestions:
• Bill consolidation is supported within
China regions, including Ningxia and
Beijing, for multiple accounts.
IAM
• The only difference of IAM is China IAM
ARN using aws-cn as partition for
resources. For example, arn:aws-
cn:iam::123456789012:user/div/su
bdiv/Zhang
24. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
Endpoint
Access
CLI and
SDK
China
Region
Code
Network
Prepare Your Construction Tools
• Use CLI & SDK directly, no
China specific ones.
• http://aws.amazon.com
/cli
• https://aws.amazon.co
m/tools
26. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
Endpoint
Access
CLI and
SDK
China
Region
Code
Network
Prepare Your Construction Tools
• In Ningxia or Beijing Region,
the service endpoint ends
with amazonaws.com.cn,
such as xxx.cn-north-
1.amazonaws.com.cn
• API access supports
signature version 4 signing
only.
27. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
Endpoint
Access
CLI and
SDK
China
Region
Code
Network
Prepare Your Construction Tools
• Different Scenarios:
• Data Transfer:
Optimized Internet
Routes for EC2
between
Beijing/Ningxia
Regions and global
regions
(US/EU/Singapore/Tok
yo)
• App host outside
China for users
inside China: partner’s
acceleration solution
• Your own backbone
connection: China
Mobile International
solutions.
29. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
AWS Direct Peering with China ISPs
• Optimized Internet Routes between
Beijing/Ningxia regions and global regions (US/EU/Singapore/Tokyo)
Ningxia/Beijing
Region
China ISP Network
for Internet
Many Other
ISP Networks
for Internet
Regions in
US/EU/
Singapore/
Tokyo
30. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
Optimized Internet Routes by Carriers
AWS Sydney Region
Customer A
Web Server
China User
Customer N
Web Server
China Telecom Global
Sydney Cloud Platform
IPSec VPN
<5ms,
direct connection
VPN
connection
VPN
gatewayCustomer A
Virtual
Firewall
CTG VPN
gateway
VPN
connection
VPN
gateway
Customer N
Virtual
Firewall
CTG VPN
gateway
Example:
China Telecom Global (CTG) CN2 network
< 1% Packet Drop
CTG Public IP
Mainland
China
31. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
Dedicated Links via Direct Connect
VPC in
Ningxia/Beijing
Regions
MPLS
/ SD-WAN
VPC in
Sydney Region
VPC in
Singapore Region
Direct Connect
Gateway
Direct Connect
Location in HK
VPC in
Oregon Region
Customer’s Own Private WAN
Provided by SPs
Example:
China Mobile International
can provision the link in 1 week
33. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
Leverage CloudFront in China
Network Acceleration(TCP Optimization)
• Use SSL connection on CloudFront for security
Use Amazon CloudWatch to log CloudFront Access Log
• Encrypted and Secured
Mitigate Source Failure
• Shield Standard on CloudFront for DDoS Protection
Cache and Content Delivery
• Fast broadcast and secure the content
Low Latency and High Speed
• Location Based Services and Control
34. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
Key Management Service in China
KMS in Beijing & Ningxia Region complies with Chinese regulations
Amazon
RDS
Amazon
DynamoDB
Amazon
Aurora
Amazon
S3
AWS
CloudTrail
AWS
EBS
37. AWS 中国(宁夏)区域由西云数据运营
AWS 中国(北京)区域由光环新网运营
AWS China FAQ:
http://www.amazonaws.cn/about-aws/china/faqs/
Feature Variations in China regions vs Other Global Regions
https://docs.amazonaws.cn/en_us/aws/latest/userguide/services.html
Regional Service Table in China:
https://www.amazonaws.cn/en/about-aws/regional-product-services/
Request an AWS China Account:
https://www.amazonaws.cn/sign-up/
Service Health Dashboard in China:
http://status.amazonaws.cn/