ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 190 - SCS-C01 discussion

Report
Export

AWS CloudTrail is being used to monitor API calls in an organization. An audit revealed that CloudTrail is failing to deliver events to Amazon S3 as expected. What initial actions should be taken to allow delivery of CloudTrail events to S3? (Select two.)

A.
Verify that the S3 bucket policy allow CloudTrail to write objects.
Answers
A.
Verify that the S3 bucket policy allow CloudTrail to write objects.
B.
Verify that the IAM role used by CloudTrail has access to write to Amazon CloudWatch Logs.
Answers
B.
Verify that the IAM role used by CloudTrail has access to write to Amazon CloudWatch Logs.
C.
Remove any lifecycle policies on the S3 bucket that are archiving objects to Amazon Glacier.
Answers
C.
Remove any lifecycle policies on the S3 bucket that are archiving objects to Amazon Glacier.
D.
Verify that the S3 bucket defined in CloudTrail exists.
Answers
D.
Verify that the S3 bucket defined in CloudTrail exists.
E.
Verify that the log file prefix defined in CloudTrail exists in the S3 bucket.
Answers
E.
Verify that the log file prefix defined in CloudTrail exists in the S3 bucket.
Suggested answer: B, D

Explanation:

https://docs.aws.amazon.com/awscloudtrail/latest/userguide/create-s3-bucket-policy-forcloudtrail.html

asked 16/09/2024
Nick Sheremet
24 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first