Skip to content

INFRASTRUCTURE EVIDENCE

AWS Add cloud infrastructure context to evidence.

EC2, ECS, EKS and RDS metadata explain where production runs in AWS. AutoObserve maps cloud resource relationships onto telemetry identity — without replacing CloudWatch or your existing observability stack.

Evidence
Resource metadata · Cloud context
Source
AWS API / CloudTrail
Enables
Infrastructure relationships
Status
Preview

Read integration docs

AWS

  1. Resource metadata

  2. AutoObserve

  3. Infrastructure context

  4. Investigation

WHY THIS INTEGRATION MATTERS

Cloud context grounds telemetry in infrastructure reality.

When checkout-api degrades, knowing the RDS instance, security group and region matters. AWS infrastructure evidence adds that layer to connected investigations.

  • Resource relationships

    Map services to EC2, ECS tasks, EKS pods and backing stores.

  • Cloud identity

    Enrich telemetry with account, region and resource identifiers.

  • Infrastructure change

    Correlate CloudTrail events with production behaviour.

  • Blast-radius reasoning

    Understand shared infrastructure dependencies during incidents.

EVIDENCE RECEIVED

Resource metadata and cloud context from AWS

AWS API metadata becomes infrastructure evidence — linked to service identity and runtime topology.

  • Resource metadata
  • Cloud context
  1. Discover

    Inventory EC2, ECS, EKS and RDS resources in scope.

  2. Map

    Link cloud resources to Kubernetes and telemetry identity.

  3. Correlate

    Join infrastructure context with metrics, logs and traces.

  4. Investigate

    Start incidents with cloud relationships already resolved.

HOW AUTOOBSERVE USES THIS EVIDENCE

Evidence becomes infrastructure investigation context.

AWS is not replaced — it is connected. AutoObserve treats cloud metadata as one evidence class alongside telemetry and runtime.

Provides

  1. Resource metadata
  2. Cloud context

AutoObserve creates

  1. Infrastructure relationships
  2. Cloud identity
  3. Resource topology
  4. Change correlation

AWS is where it runs. AutoObserve is how you connect it.

CONNECT AWS INFRASTRUCTURE

Ingest cloud metadata alongside telemetry.

API polling, CloudTrail and Kubernetes paths feed the same evidence model — scoped to the accounts and regions you operate.

Poll EC2, ECS, EKS and RDS metadata for connected context.

  1. AWS APIs

  2. AutoObserve connector

  3. AutoObserve

QUICK START

Connect AWS infrastructure evidence

Configure account access and resource scope, then verify checkout-api resolves to cloud context.

  1. Configure AWS access

    Grant read-only IAM permissions for target accounts and regions.

    Integrations reference →

  2. Link EKS runtime

    Connect EKS clusters for combined cloud and Kubernetes context.

    Deploy on Kubernetes →

  3. Verify infrastructure context

    Confirm checkout-api resolves to region and backing resources.

    Architecture overview →

WHAT SUCCESS LOOKS LIKE

Cloud context resolved. Infrastructure ready.

Success means services map to AWS resources — not merely that API credentials are configured.

  • Resources discovered

    checkout-api backing stores appear in infrastructure context.

  • Region resolved

    Production region appears on service identity.

  • Cross-signal correlation

    Cloud metadata aligns with telemetry during incidents.

REAL INCIDENT

Same checkout spike — service identity in focus.

The canonical checkout-api degradation with identity context highlighted — the resource linkage that grounds telemetry in AWS infrastructure.

  1. Metric

    14:31:00

    Checkout latency +184%

Walk through the evidence chain · 1/6

Evidence step 1 of 6

TROUBLESHOOTING

Common AWS integration failures

  • Problem

    No resources discovered

    Likely cause

    IAM policy missing ec2:Describe*, eks:Describe* or scoped regions.

    Resolution

    Verify read-only IAM policy covers target accounts, regions and services.

    Verify

    checkout-api backing resources appear within one sync window.

  • Problem

    Resources present but not linked to services

    Likely cause

    Tag or naming convention does not match telemetry identity.

    Resolution

    Align resource tags with service.name and Kubernetes labels.

    Verify

    RDS instance links to checkout-api in investigation context.

  • Problem

    Stale infrastructure metadata

    Likely cause

    API rate limits or overly broad inventory scope.

    Resolution

    Narrow scope to production accounts and reduce poll frequency.

    Verify

    Resource state matches production during incident window.

PRODUCTION INTELLIGENCE

How AWS contributes to production understanding

Cloud infrastructure evidence enables resource relationship reasoning inside connected production intelligence.

EvidenceEnables
Resource metadataInfrastructure relationships
Cloud contextRegion and account scope
CloudTrail eventsInfrastructure change correlation

DESIGN PARTNERS

Validate this evidence source with your production stack.

Design partners connect real evidence sources and validate investigation workflows before GA — with direct engineering access.