A media company is serving video files stored in Amazon S3 using Amazon CloudFront. The development team needs access to the logs to diagnose faults and perform service monitoring. The log files from CloudFront may contain sensitive information about users.
The company uses a log processing service to remove sensitive information before making the logs available to the development team. The company has the following requirements for the unprocessed logs:
✑ The logs must be encrypted at rest and must be accessible by the log processing service only.
✑ Only the data protection team can control access to the unprocessed log files.
✑ AWS CloudFormation templates must be stored in AWS CodeCommit.
✑ AWS CodePipeline must be triggered on commit to perform updates made to CloudFormation templates.
CloudFront is already writing the unprocessed logs to an Amazon S3 bucket, and the log processing service is operating against this S3 bucket.
Which combination of steps should a solutions architect take to meet the company's requirements? (Choose two.)
Mrflip
Highly Voted 3 years, 8 months agoLCC92
3 years, 7 months agoSD13
Highly Voted 3 years, 8 months agopablobairat
3 years, 7 months agobobsmith2000
3 years agokiwtirApp
Most Recent 1 year, 7 months agoryu10_09
3 years, 6 months agobobsmith2000
3 years agostudent22
3 years, 7 months agoandylogan
3 years, 7 months agoKopa
3 years, 7 months agotgv
3 years, 7 months agoblackgamer
3 years, 7 months agoblackgamer
3 years, 7 months agodenccc
3 years, 7 months agoWhyIronMan
3 years, 7 months agoWaiweng
3 years, 7 months agoDashL
3 years, 7 months agoss160700
3 years, 7 months agobobsmith2000
3 years ago[Removed]
3 years, 7 months agoCarisB
3 years, 8 months agoPupu86
3 years, 8 months agoM_Asep
3 years, 8 months ago