A collection of AWS CloudFormation templates and bootstrap shell scripts accumulated while standing up EC2/VPC infrastructure, a remote-access (Guacamole) host, and a security-instrumented Data Lake.
Archival / personal lab scripts (~2020). Many templates are environment- and account-specific — read and adapt before deploying. Treat as reference, not a turnkey stack.
| Path | Purpose |
|---|---|
0-CloudFormation-EC2LBRDS.sh |
Deploy an EC2 + Load Balancer + RDS stack. |
1-Create-EC2-Guac.* |
CloudFormation + script to create an EC2 host running Apache Guacamole (browser-based RDP/SSH gateway). |
1-CreateRole.sh, *-Policy.json |
IAM role and custom policy creation. |
2-Create-VPC.sh, 2-VPC-template*.json |
VPC networking templates. |
3-Create-EC2.sh, 3-EC2-template.json |
Generic EC2 provisioning. |
DEMO/ |
Step-numbered walkthrough (IAM → VPC → EC2) for demos. |
DataLake/ |
Data Lake build: Glue, DynamoDB, KMS CMK, secure S3 bucket, plus AWS Config compliance rules (CloudTrail enabled, encrypted volumes, root-MFA, EIP attached) and Inspector/CloudWatch Logs setup. |
s3/ |
CloudFormer template + Guacamole DB bootstrap SQL. |
The shell scripts wrap aws cloudformation deploy / create-stack. Configure
the AWS CLI first:
aws configure # credentials + default region
./2-Create-VPC.sh # example: create the VPC
./1-Create-EC2-Guac.sh # example: create the Guacamole hostInspect each template's parameters before deploying — AMI IDs, key pair names, and CIDRs are hard-coded for the original account/region.