fastapi.md

Migrate AWS EC2 app: FastAPI

Summary

Move FastAPI compute from AWS EC2 app to Ample, one component at a time. Destination verified on Ample: the app built, started and answered on its public HTTPS URL with encrypted configuration delivered. Source procedure: Collect the process environment from the instance (systemd unit or process manager config) into an env file kept out of the repository. Not migrated automatically: Cron jobs, local files on the instance disk, security-group networking and IAM instance roles are not migrated; use managed databases, buckets and encrypted env instead. Cutover: Add the custom domain with ample domain add, update DNS from the instance or load balancer, keep the instance until verified, then stop it. Rollback: keep the source untouched until you confirm; nothing at the source is changed or deleted by this guide.

Infrastructure requirements

Prerequisites

Exact tested configuration

Steps

  1. Inventory the source. List what AWS EC2 app provides beyond the component you are moving. Out of scope here: Cron jobs, local files on the instance disk, security-group networking and IAM instance roles are not migrated; use managed databases, buckets and encrypted env instead.

  2. Source step 1. Collect the process environment from the instance (systemd unit or process manager config) into an env file kept out of the repository.

  3. Source step 2. Replace the instance's process manager with the repository's start command; Ample supervises the process and restarts it.

  4. Source step 3. Inventory what else runs on the instance: databases, cron, reverse proxy rules, local files.

  5. Deploy on Ample in parallel. pip install into .ample/python from requirements.txt, then uvicorn from run.py reading PORT on the python-3.12 template. Pass the exported variables with --env; keep the source running.

    ample deploy . --name <app-name> --public --start "python3 run.py" --env-file .env.production
    
  6. Validate before cutover. Run the app's own checks and, for data, compare counts and checksums; the example checks are the pattern self-tests (/p/configuration-secrets, /p/relational-records).

  7. Cut over. Add the custom domain with ample domain add, update DNS from the instance or load balancer, keep the instance until verified, then stop it.

  8. Rollback. Point DNS or configuration back to the source. The source was never modified; deletion is a separate, user-executed step after validation.

Tested examples

Success checks

Limitations

Cost estimate

Estimated 10.00 USD per month (size prices from pricing.toml at build revision a1b8c38919e59cd035ebabaced73cf84ece24371).

Verification evidence

Last verified: 2026-09-21T01:14:18Z

Execution binding

No execution binding. This recipe is documentation only; nothing is executed automatically.