Examtopics

AWS Certified Security - Specialty
  • Topic 1 Question 270

    A company’s security policy requires all Amazon EC2 instances to use the Amazon Time Sync Service. AWS CloudTrail trails are enabled in all of the company’s AWS accounts. VPC flow logs are enabled for all VPCs.

    A security engineer must identify any EC2 instances that attempt to use Network Time Protocol (NTP) servers on the internet.

    Which solution will meet these requirements?

    • Monitor CloudTrail logs for API calls to non-standard time servers.

    • Monitor CloudTrail logs for API calls to the Amazon Time Sync Service.

    • Monitor VPC flow logs for traffic to non-standard time servers.

    • Monitor VPC flow logs for traffic to the Amazon Time Sync Service.


    シャッフルモード