ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 323 - SCS-C02 discussion

Report
Export

AWS CloudTrail is being used to monitor API calls in an organization. An audit revealed that CloudTrail is failing to deliver events to Amazon S3 as expected.

What initial actions should be taken to allow delivery of CloudTrail events to S3? (Select TWO.)

A.
Verify thattheS3 bucket policy allows CloudTrail to write objects.
Answers
A.
Verify thattheS3 bucket policy allows CloudTrail to write objects.
B.
Verify thatthe1AM role used by CloudTrail has access to write to Amazon CloudWatch Logs.
Answers
B.
Verify thatthe1AM role used by CloudTrail has access to write to Amazon CloudWatch Logs.
C.
Remove any lifecycle policies on the S3 bucket that are archiving objects to S3 Glacier Flexible Retrieval.
Answers
C.
Remove any lifecycle policies on the S3 bucket that are archiving objects to S3 Glacier Flexible Retrieval.
D.
Verify thattheS3 bucket defined in CloudTrail exists.
Answers
D.
Verify thattheS3 bucket defined in CloudTrail exists.
E.
Verify that the log file prefix defined in CloudTrail exists in the S3 bucket.
Answers
E.
Verify that the log file prefix defined in CloudTrail exists in the S3 bucket.
Suggested answer: A, D

Explanation:

To resolve CloudTrail's failure to deliver events to S3, verifying the S3 bucket policy for CloudTrail's write permissions (A) and ensuring the existence of the specified S3 bucket (D) are critical initial steps. These actions ensure that CloudTrail has the necessary permissions and a valid destination for log file delivery, addressing common configuration issues that can interrupt event logging.

asked 16/09/2024
mohamed mamdouh
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first