CloudTrail Flashcards

1
Q

What does cloud trail do?

A

Records and tracks all API requests within your AWS account.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Cloud trail requests can be initiated from.

A

SDKs
AWS CLI
AWS Mangement Console
AWS Services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How often are cloud trail logs created?

A

Every five minutes.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Where are cloud trail logs stored?

A

S3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

If you want to monitor cloud trail logs automatically. What service will help you do this?

A

Cloud watch Logs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What format are log files?

A

JSON

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How long does it take for cloud trail logs to appear in S3?

A

Up to an hour.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are the steps to merge cloudtrails from multiple accounts, into one?

A
  1. Create a role in the primary account
  2. Attatch a cross account read only role
  3. Assign a user in the secondary account with the correct policy
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is the purpose of cloud trail digest files?

A

They help you verify your logs and make sure they have not been tampered with.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How often are cloud trail digest files created?

A

Hourly.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Cloud trail digest logs are signed with a private key pair. True or false?

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

If you enable cloud trail for all regions. And AWS adds a region. Is this new region automatically included?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly