CloudTrail Flashcards

1
Q

What is CloudTrail?

A

CloudTrail logs API and Console actions that impact AWS accounts, providing account traceability.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

How long are CloudTrail logs stored by default?

A

90 days. This is enabled by default and is free. If you want data from more than 90 days ago, or you want data to be stored outside of CloudTrail, you must create a trail.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How resilient is CloudTrail?

A

CloudTrail is region resilient. It is a regional service.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Where do Global Services log their events?

A

The us-east-1 region.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the default enabled/disabled states for Mangement Event and Data Event logging in CloudTrail?

A

Management Events: Enabled.

Data Events: Disabled.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Where are CloudTrail trails stored?

A

S3 or CloudWatch.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Is CloudTrail a realtime service?

A

No. There is a delay in logging data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly