Examtopics

AWS Certified SysOps Administrator - Associate
  • Topic 1 Question 266

    A company has turned on server access logging for all of its existing Amazon S3 buckets. The company wants to implement a solution to monitor the logging settings for new and existing S3 buckets. The solution must remediate any S3 buckets that do not have logging turned on.

    What should a SysOps administrator do to meet these requirements in the MOST operationally efficient way?

    • Track the logging information by using AWS CloudTrail. Launch an AWS Lambda function for remediation.

    • Configure automatic remediation in AWS Config by using the s3-bucket-logging-enabled rule.

    • Configure AWS Trusted Advisor to monitor the logging configuration and to turn on access logging if necessary.

    • Track the logging information by using Amazon CloudWatch metrics. Launch an AWS Lambda function for remediation.


    シャッフルモード