ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 242 - SCS-C01 discussion

Report
Export

Your company has an EC2 Instance that is hosted in an AWS VPC. There is a requirement to ensure that logs files from the EC2 Instance are stored accordingly. The access should also be limited for the destination of the log files. How can this be accomplished? Choose 2 answers from the options given below. Each answer forms part of the solution Please select:

A.
Stream the log files to a separate Cloudtrail trail
Answers
A.
Stream the log files to a separate Cloudtrail trail
B.
Stream the log files to a separate Cloudwatch Log group
Answers
B.
Stream the log files to a separate Cloudwatch Log group
C.
Create an IAM policy that gives the desired level of access to the Cloudtrail trail
Answers
C.
Create an IAM policy that gives the desired level of access to the Cloudtrail trail
D.
Create an IAM policy that gives the desired level of access to the Cloudwatch Log group
Answers
D.
Create an IAM policy that gives the desired level of access to the Cloudwatch Log group
Suggested answer: B, D

Explanation:

You can create a Log group and send all logs from the EC2 Instance to that group. You can then limit the access to the Log groups via an IAM policy. Option A is invalid because Cloudtrail is used to record API activity and not for storing log files Option C is invalid because Cloudtrail is the wrong service to be used for this requirement For more information on Log Groups and Log Streams, please visit the following URL:

* https://docs.aws.amazon.com/AmazonCloudWatch/latest/logs/Workinj

For more information on Access to Cloudwatch logs, please visit the following URL:

* https://docs.aws.amazon.com/AmazonCloudWatch/latest/logs/auth-and-access-control-cwl.htmlThe correct answers are: Stream the log files to a separate Cloudwatch Log group. Create an IAMpolicy that gives the desired level of access to the Cloudwatch Log groupSubmit your Feedback/Queries to our Experts

asked 16/09/2024
Todd Hekkema
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first