Personal Tech Blog | hidekazu-konishi.com
Here I plan to share my technical knowledge and experience, and my interests in the subject. Note: this tech blog is a space for sharing my personal views and ideas, and it does not represent the opinions of any company or organization I am affiliated with.The main purpose of this blog is to deepen my own technical skills and knowledge, to create an archive where I can record and reflect on what I have learned and experienced, and to share information.
My interests span Amazon Web Services (AWS), AI-augmented development, AI agent engineering, cloud architecture, and related topics including DevOps, MLOps, AIOps, and Generative AI.
The articles are based on my personal learning and practical experience. Of course, I am not perfect, so there may be errors or inadequacies in the articles. I hope you will enjoy this technical blog with that in mind. Thank you in advance.
Your search query is processed entirely in your browser and never sent to a server.
Personal Tech Blog Entries
First Published:
Last Updated:
- AWS Elastic Load Balancing Decision Guide - Choosing and Operating Application, Network, and Gateway Load Balancers
- AWS Hybrid Connectivity Decision Guide - Direct Connect, Site-to-Site VPN, and Resilient On-Premises Integration
- Amazon Route 53 DNS Architecture Guide - Routing Policies, Resolver, Private Hosted Zones, and Hybrid DNS
- AWS Messaging and Event Routing Decision Guide - Choosing Between SQS, SNS, EventBridge, and Kinesis
- Amazon API Gateway Decision Guide - REST, HTTP, and WebSocket APIs and Integration Patterns
- AWS Lambda Concurrency and Scaling Guide - Reserved and Provisioned Concurrency, Throttling, and Event Source Scaling
- Amazon EKS Networking Deep Dive - VPC CNI, IP Address Management, Security Groups for Pods, and Pod Connectivity
- Amazon DynamoDB Capacity and Global Tables Guide - Capacity Modes, Auto Scaling, Warm Throughput, and Multi-Region Design
- Amazon RDS and Aurora High Availability Guide - Multi-AZ, Read Replicas, RDS Proxy, and Global Database Failover
- AWS Disaster Recovery Strategies Guide - Backup and Restore, Pilot Light, Warm Standby, and Multi-Site Active-Active
- Amazon S3 Security and Access Control Guide - Bucket Policies, IAM, Access Points, Block Public Access, and Encryption
- AWS Secrets Manager and Parameter Store Decision Guide - Storing, Rotating, and Accessing Secrets and Configuration
- Claude Code Skills Complete Guide - Creating, Testing, and Distributing Agent Skills
- Agent Skills Security Vetting Guide - Static Inspection of SKILL.md and Malicious Skill Patterns
- Claude Code Plugins Complete Guide - Bundling Skills, Hooks, Agents, and MCP Servers for Team Distribution
- Claude Code Compaction and Long-Session Operations Guide - Managing Context Across Long and Multi-Session Work
- Anthropic Claude Model Migration Guide - Upgrading Prompts and Workloads Across Model Generations
- MCP Server Testing and Debugging Guide - Inspector, Integration Tests, Transports, and CI Regression
- AWS VPC Connectivity Decision Guide - VPC Peering, Transit Gateway, PrivateLink, VPC Lattice, and Cloud WAN
- AWS Step Functions JSONata and Variables Practical Guide - Modern Workflow Authoring Beyond JSONPath
- AWS VPC Network Troubleshooting Guide - Decision Trees for Security Groups, NACLs, Route Tables, and Flow Logs
- Amazon CloudFront Origin Architecture Guide - Origin Access Control, Origin Shield, Failover, and VPC Origins
- Amazon Bedrock AgentCore Policy Implementation Guide - Cedar-Based Agent Authorization and Default-Deny Design
- Amazon Bedrock AgentCore Evaluations Practical Guide - Built-In Evaluators and CI/CD Regression Testing for AI Agents
- Claude Code Extension Layer Decision Guide - Choosing Among Skills, Subagents, Hooks, and Plugins
- Strands Agents Multi-Agent Pattern Selection Guide - Agents-as-Tools, Swarm, Graph, and Workflow
- AI Agent Memory Design Guide - Working, Long-Term, and Procedural Memory with Forgetting and Staleness Management
- MCP Tool Poisoning Defense Guide - Client-Side Defense in Depth for AI Agents
- Amazon S3 Vectors Design Decision Guide - When to Use It, When Not to, and Tiered Designs with Amazon OpenSearch Service
- AWS Lambda Durable Functions Practical Guide - Checkpoint and Replay Determinism and When to Use Step Functions Instead
- Amazon Aurora DSQL Design Decision Guide - Distributed SQL Between Amazon DynamoDB and Aurora PostgreSQL
- Cost-Optimization Guide to Rolling Out Claude Code and Claude Desktop Across Your Organization - Choosing Delivery Models and Finding Break-Even
- Practical Guide to Deploying Claude Code and Claude Desktop Behind a Corporate Proxy - Domains, MSIX, NTLM/Kerberos, and VPN Coexistence
- Claude Code on Pay-As-You-Go API Billing - Anthropic API, Amazon Bedrock, and Google Cloud Vertex AI
- Claude Code Subagents and Multi-Agent Orchestration Guide - Delegation, Parallel Fan-Out, and Custom Agent Definitions
- Claude Code Hooks Complete Guide - Deterministic Enforcement Across the Tool Lifecycle
- Claude Agent SDK Complete Guide - Building Custom Agents Beyond the CLI
- Anthropic Claude API Prompt Caching and Token Efficiency Guide - Cache Breakpoints, Batch Processing, and Context Engineering
- Claude Code in CI/CD and Headless Automation - Running the Agent Unattended in Pipelines
- AWS History and Timeline regarding Amazon VPC - Overview, Functions, Features, Summary of Updates, and Introduction
- AWS History and Timeline regarding Amazon CloudWatch - Overview, Functions, Features, Summary of Updates, and Introduction
- AWS History and Timeline regarding Elastic Load Balancing - Overview, Load Balancer Types, Features, Summary of Updates, and Introduction to ELB
- AWS History and Timeline regarding Amazon Aurora - Overview, Engines, Features, Summary of Updates, and Introduction
- AWS History and Timeline regarding Amazon SNS - Overview, Functions, Features, Summary of Updates, and Introduction to Amazon Simple Notification Service
- AWS History and Timeline regarding AWS CloudTrail - Overview, Functions, Features, Summary of Updates, and Introduction
- AWS History and Timeline regarding Amazon SageMaker - Overview, Functions, Features, Summary of Updates, and Introduction
- AWS History and Timeline regarding AWS Organizations - Overview, Functions, Features, Summary of Updates, and Introduction
- Claude Code Operator's Handbook
- AWS History and Timeline regarding Amazon Bedrock - Overview, Functions, Features, Summary of Updates, and Introduction
- Amazon Bedrock Glossary - A Reference for AI Engineers and Architects
- AWS History and Timeline regarding AWS Identity and Access Management - Overview, Functions, Features, Summary of Updates, and Introduction to IAM
- AI Agent Engineering Glossary - Memory, Tools, Orchestration, and Protocols Explained
- AWS History and Timeline regarding Amazon EC2 - Overview, Functions, Features, Summary of Updates, and Introduction
- AWS IAM Glossary - Principal, Permission Boundary, SCP, RCP, ABAC, and Cedar Explained
- Amazon Bedrock AgentCore Master Index - A Hub for AgentCore Articles and Decision Patterns
- AWS History and Timeline regarding Amazon DynamoDB - Overview, Functions, Features, Summary of Updates, and Introduction
- AWS History and Timeline regarding Amazon CloudFront - Overview, Functions, Features, Summary of Updates, and Introduction
- AWS Networking Glossary - VPC, Transit Gateway, PrivateLink, and VPC Lattice Explained
- AWS History and Timeline regarding Amazon EKS - Overview, Functions, Features, Summary of Updates, and Introduction
- AWS Lambda Master Index - A Hub for Lambda Articles
- AWS History and Timeline regarding Amazon API Gateway - Overview, Functions, Features, Summary of Updates, and Introduction
- AWS Database Glossary - RDS, Aurora, DynamoDB, DocumentDB, and Neptune Explained
- AWS Observability Glossary - CloudWatch, X-Ray, Application Signals, and OpenTelemetry Explained
- MCP Server Implementation Reference - Anthropic, OpenAI, Google, Cloudflare, and AWS
- IAM Policy Evaluation Logic Step-by-Step - Explicit Deny, SCP, RCP, Resource Policy, Identity Policy, Permission Boundary, and Session Policy
- HTTP Security Headers Complete Reference - CSP, HSTS, COOP, COEP, Permissions Policy
- AWS Generative AI History and Timeline - From SageMaker JumpStart to Bedrock AgentCore
- Anthropic Claude Model Release Timeline - Model Family Tree, Capability Evolution, and Platform Availability
- Cryptography Glossary for Engineers - AES, RSA, ECDSA, HKDF, Envelope Encryption, and TLS Explained
- AWS History and Timeline regarding AWS CloudFormation - Overview, Functions, Features, Summary of Updates, and Introduction
- Amazon DynamoDB Master Index - A Hub for DynamoDB Design, Key Modeling, and Capacity Planning Articles
- AWS History and Timeline regarding Amazon RDS - Overview, Engines, Features, Summary of Updates, and Introduction
- AI Agent Defense in Depth Model (AIDDM) - WAF, Guardrails, Reasoning Sandbox, and Output Filter
- IAM Anti-Patterns - Real-World Mistakes and Their Root Causes
- Amazon Bedrock Model Catalog 2026
- Claude Code Features and Settings Reference 2026
- AWS History and Timeline regarding Amazon ECS - Overview, Functions, Features, Summary of Updates, and Introduction
- AWS Service Quotas - A Practical Cheat Sheet for Major AWS Services
- AWS Verified Permissions and Cedar Policy Language Complete Guide
- MCP Server Ecosystem Reference 2026
- AWS VPC Lattice Complete Guide - Service-to-Service Networking Across VPCs and Accounts
- AWS Postmortem Case Studies - Design Lessons from AWS Public RCAs
- Regex Master Course - Interactive Recipes by Job Function
- Practical Git Techniques - Rebase, Worktree, Hooks, and Partial Clone for Mid-Level Engineers
- DynamoDB Key Design Dictionary: PK/SK, GSI/LSI Selection, Hot Partition Avoidance, and Re-Keying Patterns
- Code Review Checklist and Anti-Pattern Catalog: A Reviewer's Reference for Modern and AI-Augmented Codebases
- Indie Dev Guide: From Domain Acquisition to Live Site with AWS Route 53, S3, CloudFront, and ACM
- AWS Well-Architected - Practical Self-Audit Checklist by Pillar
- Route 53 Health Check and Failover - Common Pitfalls and Designs
- AWS Lambda Cold Start Mitigation Guide - Provisioned Concurrency, SnapStart, and Code-Level Techniques
- VSCode Extensions and Keybindings - Complete Guide by Use Case
- AWS Multi-Account Operational Patterns - Control Tower, Organizations, SCPs
- Software Design Principles in Practice - SOLID, DDD, Clean Architecture
- Web Performance Checklist for Core Web Vitals - LCP, INP, and CLS
- Architecture Decision Records: Templates and Operational Patterns for Teams That Actually Maintain Them
- AWS Tagging Strategy: Complete Guide for Operations, Automation, and Security
- VPC Design Review Checklist - CIDR, Subnets, Transit Gateway
- Amazon S3 Object Key Design Best Practices - Performance and Partitioning
- PWA Advanced Implementation Guide - Service Worker Cache Strategies, Push, and Background Sync
- Diagram Notation Selection — C4 vs PlantUML vs Mermaid
- Comparing Terraform, AWS CDK, AWS SAM, and CloudFormation - A Practitioner's Guide to Mental Models, State Management, and Migration
- Incident Triage Flowcharts - Network, DB, and Application Layer
- Self-Hosted Static Site Analytics - A Privacy-First Implementation Guide
- Claude Code Harness and Environment Engineering: Designing the Frontline Where Local AI Agents Actually Live
- Claude Code Getting Started - Why Knowing About Local AI Agents Changes Everything
- CloudWatch Logs Insights Query Cookbook: Practical Recipes for Incident Investigation, Cost Analysis, and Security Audits
- Amazon DynamoDB Single Table Design Complete Guide - Access-Pattern-Driven Data Modeling Patterns
- AWS IAM Identity Center Complete Setup Guide - Multi-Account SSO Design Patterns from Organization Structure to ABAC
- MCP Server on AWS Lambda Complete Guide - Building Model Context Protocol Servers with Streamable HTTP and OAuth 2.1
- Amazon Bedrock AgentCore Production Operations Guide - Observability, Cost Optimization, and Disaster Recovery
- Amazon Cognito Federation Complete Implementation Guide - Google, Apple, Microsoft, OIDC, and SAML
- AWS PrivateLink and VPC Endpoints Complete Guide - Interface, Gateway, and Resource Endpoint
- AWS WAF for Generative AI - Prompt Injection Defense Implementation Patterns
- CloudFront KeyValueStore and Edge Functions Cookbook: A/B Testing, Geo Routing, Feature Flags, and Token Validation
- EventBridge Pipes Event-Driven Architecture Implementation Patterns
- AWS Step Functions Distributed Map - Practical Patterns and Pitfalls for Large-Scale Parallel Workloads
- Enterprise AI Agent Environment Design Notes Part 3: Cloud Selection, Cost, and Operations
- Enterprise AI Agent Environment Design Notes Part 2: Implementing SharePoint ACL and Permission Controls
- Enterprise AI Agent Environment Design Notes Part 1: Comparing the Three Major Clouds and Designing Your Architecture
- Amazon Bedrock AgentCore Implementation Guide Part 4: Multi-Agent Orchestration
- Amazon Bedrock AgentCore Implementation Guide Part 3: Building a 4-Stack CDK Architecture with an Observability Pipeline
- Amazon Bedrock AgentCore Implementation Guide Part 2: Multi-Layer Security with Identity, Gateway, and Policy
- Amazon Bedrock AgentCore Implementation Guide Part 1: Runtime, Memory, and Code Interpreter Patterns
- Beyond Self-Disruption: The Paradigm Shift Software Engineers Need in the AI Era
- Amazon Bedrock AgentCore Beginner's Guide - AI Agent Development from Basics with Detailed Term Explanations
- Japan AWS Top Engineer and Japan All AWS Certifications Engineer: Special Award for 6 Consecutive Years and The 6 Growth Principles
- Using Claude 3.7 Sonnet Vision Capabilities on Amazon Bedrock to Verify, Regenerate, and Automate Image Generation with Stable Diffusion 3.5 Large
- Using Amazon Bedrock for titling, commenting, and OCR (Optical Character Recognition) with Claude 3.7 Sonnet
- Validating and Regenerating Videos Using Amazon Nova Pro Vision Model on Amazon Bedrock (Amazon Nova Reel Edition)
- Amazon Bedrock Models as of 2024 - An Analysis of the Comprehensive Model Catalog
- Using Amazon Bedrock for titling, commenting, and OCR (Optical Character Recognition) with Amazon Nova Pro
- Using Amazon Nova Pro Vision Capabilities on Amazon Bedrock to Verify, Regenerate, and Automate Image Generation with Amazon Nova Canvas
- AI and Machine Learning Glossary for AWS - Knowledge Gained While Studying for AWS Certified AI Practitioner and AWS Certified Machine Learning Engineer - Associate
- Evaluating OCR Accuracy of Claude on Amazon Bedrock and Amazon Textract Using Similarity Metrics
- How to Add an Approval Flow to AWS Step Functions Workflow (AWS CodePipeline and Amazon EventBridge Edition)
- How to Add an Approval Flow to AWS Step Functions Workflow (AWS Systems Manager Automation and Amazon EventBridge Edition)
- How to Add an Approval Flow to AWS Step Functions Workflow (AWS Systems Manager Automation Edition)
- Using Claude 3.5 Sonnet Vision Capabilities on Amazon Bedrock to Verify, Regenerate, and Automate Image Generation with Amazon Titan Image Generator G1
- Using Amazon Bedrock to repeatedly generate images with Stable Diffusion XL via Claude 3.5 Sonnet until requirements are met
- Using Amazon Bedrock for titling, commenting, and OCR (Optical Character Recognition) with Claude 3.5 Sonnet
- AWS History and Timeline regarding Amazon Cognito - Overview, Functions, Features, Summary of Updates, and Introduction
- AWS History and Timeline regarding AWS Lambda - Overview, Functions, Features, Summary of Updates, and Introduction
- AWS CloudFormation Templates and AWS Lambda Custom Resources for Associating AWS Certificate Manager, Lambda@Edge, and AWS WAF with a Website on Amazon S3 and Amazon CloudFront Cross-Region
- Deploy AWS Cloudformation Stack Cross-Region with AWS Lambda Custom Resources
- Using Amazon Textract for OCR(Optical Character Recognition)
- AWS History and Timeline regarding Amazon Simple Queue Service - Overview, Functions, Features, Summary of Updates, and Introduction to SQS
- Using Amazon Bedrock for titling, commenting, and OCR (Optical Character Recognition) with Claude 3 Haiku
- Using Amazon Bedrock for titling, commenting, and OCR (Optical Character Recognition) with Claude 3 Opus
- Using Amazon Bedrock for titling, commenting, and OCR (Optical Character Recognition) with Claude 3 Sonnet
- Setting up DKIM, SPF, DMARC with Amazon SES and Amazon Route 53 - An Overview of DMARC Parameters and Configuration Examples
- Summary of AWS Application Migration Service (AWS MGN) Architecture and Lifecycle Relationships, Usage Notes - Including Differences from AWS Server Migration Service (AWS SMS)
- Basic Information about Amazon Bedrock with API Examples - Model Features, Pricing, How to Use, Explanation of Tokens and Inference Parameters
- Summary of Differences and Commonalities in AWS Database Services using the Quorum Model - Comparison Charts of Amazon Aurora, Amazon DocumentDB, and Amazon Neptune
- AWS Amplify Features Focusing on Static Website Hosting - Relationship and Differences between AWS Amplify Hosting and AWS Amplify CLI
- Host a Static Website configured with Amazon S3 and Amazon CloudFront using AWS Amplify CLI
- Host a Static Website using AWS Amplify Hosting in the AWS Amplify Console
- Reasons for Continually Obtaining All AWS Certifications, Study Methods, and Levels of Difficulty
- Summary of AWS CloudFormation StackSets Focusing on the Relationship between the Management Console and API, Account Filter, and the Role of Parameters
- AWS History and Timeline regarding AWS Key Management Service - Overview, Functions, Features, Summary of Updates, and Introduction to KMS
- AWS History and Timeline regarding Amazon EventBridge - Overview, Functions, Features, Summary of Updates, and Introduction
- AWS History and Timeline regarding Amazon Route 53 - Overview, Functions, Features, Summary of Updates, and Introduction
- AWS History and Timeline regarding AWS Systems Manager - Overview, Functions, Features, Summary of Updates, and Introduction to SSM
- AWS History and Timeline regarding Amazon S3 - Focusing on the evolution of features, roles, and prices beyond mere storage
- How to create a PWA(Progressive Web Apps) compatible website on AWS and use Lighthouse Report Viewer
- AWS History and Timeline - Almost All AWS Services List, Announcements, General Availability(GA)
Written by Hidekazu Konishi