Examtopics

AWS Certified DevOps Engineer - Professional
  • Topic 1 Question 298

    A company has a web application that is hosted on an Amazon Elastic Kubernetes Service (Amazon EKS) cluster. The EKS cluster runs on AWS Fargate that is available through an internet-facing Application Load Balancer.

    The application is experiencing stability issues that lead to longer response times. A DevOps engineer needs to configure observability in Amazon CloudWatch to troubleshoot the issue. The solution must provide only the minimum necessary permissions.

    Which combination of steps will meet these requirements?

    3 つ選択
    • Deploy the CloudWatch agent as a Kubernetes StatefulSet to the EKS cluster.

    • Deploy the AWS Distro for OpenTelemetry Collector as a Kubernetes DaemonSet to the EKS cluster.

    • Associate a Kubernetes service account with an IAM role by using IAM roles for service accounts in Amazon EKS. Use the CloudWatchAgentServerPolicy AWS managed policy.

    • Associate a Kubernetes service account with an IAM role by using IAM roles for service accounts in Amazon EKS. Use the CloudWatchAgentAdminPolicy AWS managed policy.

    • Configure an IAM OpenID Connect (OIDC) provider for the EKS cluster.

    • Enable EKS control plane logging for the EKS cluster.


    シャッフルモード