S18:AWS Monitoring & Audit: CloudWatch, CloudTrail & Config Flashcards

1
Q

We’d like to have CloudWatch Metrics for EC2 at a 1 minute rate. What should we do?

A

enable detailed monitoring

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

High Resolution Custom Metrics can have a minimum resolution of

A

1 sec

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Your CloudWatch alarm is triggered and controls an ASG. The alarm should trigger 1 instance being deleted from your ASG, but your ASG has already 2 instances running and the minimum capacity is 2. What will happen?

A

The alarm will remain in “ALARM” state but never decrease the number of intances in my ASG.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

An Alarm on a High Resolution Metric can be triggered as often as

A

10 sec

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

You have made a configuration change and would like to evaluate the impact of it on the performance of your application. Which service do you use?

A

CouldWatch is used to monitor the applications performance / metrics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Someone has terminated an EC2 instance in your account last week, which was hosting a critical database. You would like to understand who did it and when, how can you achieve that?

A

Look at CloudTrail

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

You would like to ensure that over time, none of your EC2 instances expose the port 84 as it is known to have vulnerabilities with the OS you are using. What can you do to monitor this?

A

Setup Config Rules

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

You would like to evaluate the compliance of your resource’s configurations over time. Which technology do you choose?

A

Config

How well did you know this?
1
Not at all
2
3
4
5
Perfectly