A company needs to track the activity in its AWS accounts, and needs to know when an API call is made against its AWS resources. Which AWS tool or service can be used to meet these requirements?
"CloudTrail enables auditing, security monitoring, and operational troubleshooting by tracking user activity and API usage. CloudTrail logs, continuously monitors, and retains account activity related to actions across your AWS infrastructure, giving you control over storage, analysis, and remediation actions."
Reference: https://aws.amazon.com/cloudtrail/faqs/
A. CloudWatch - primarily for monitoring and managing resources but not API calls directly
B. Amazon Inspector - A security assessment service that helps improve the security and compliance of applications deployed on AWS not for tracking API usage
C. Enables customers to audit API calls in their AWS accounts by capturing and logging those calls. . It provides visibility into user and resource activity
D. Manages permissions and identities, but does not record or log activity.
"CloudTrail enables auditing, security monitoring, and operational troubleshooting by tracking user activity and API usage. CloudTrail logs, continuously monitors, and retains account activity related to actions across your AWS infrastructure, giving you control over storage, analysis, and remediation actions."
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
isaphiltrick
Highly Voted 1 year agoTaku2023
Highly Voted 7 months, 2 weeks agotastatura
Most Recent 3 weeks, 4 days agoAmin_013
4 months agoRuffyit
9 months agotheopiumbird
10 months, 1 week ago790052
9 months, 1 week agoasdfcdsxdfc
11 months, 4 weeks ago