exam questions

Exam AWS Certified Cloud Practitioner All Questions

View all questions & answers for the AWS Certified Cloud Practitioner exam

Exam AWS Certified Cloud Practitioner topic 1 question 27 discussion

Exam question from Amazon's AWS Certified Cloud Practitioner
Question #: 27
Topic #: 1
[All AWS Certified Cloud Practitioner Questions]

A user needs to determine whether an Amazon EC2 instance's security groups were modified in the last month.
How can the user see if a change was made?

  • A. Use Amazon EC2 to see if the security group was changed.
  • B. Use AWS Identity and Access Management (IAM) to see which user or role changed the security group.
  • C. Use AWS CloudTrail to see if the security group was changed.
  • D. Use Amazon CloudWatch to see if the security group was changed.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
41km
Highly Voted 2 years, 8 months ago
Selected Answer: C
CloudTrail is the correct answer: https://aws.amazon.com/cloudtrail/features/ "CloudTrail records user activity and API calls across AWS services as events. CloudTrail events help you answer the questions of "who did what, where, and when?""
upvoted 22 times
...
Cloudalina
Highly Voted 2 years, 2 months ago
C. Use AWS CloudTrail to see if the security group was changed. AWS CloudTrail provides a history of events for an AWS account, including API calls made to EC2 and changes made to security groups. By using CloudTrail, the user can determine whether a change was made to the security groups of an EC2 instance in the last month. CloudTrail logs can be searched and filtered to identify security group-related events, including changes to the rules, additions or removal of security groups, and modifications to existing security groups. Option A is not the recommended way to see if the security group was changed, as EC2 provides limited access to its own logs and events. Option B is not directly relevant, as IAM is not used to track changes to security groups. Option D is also not the recommended way to see if the security group was changed, as CloudWatch is primarily used for monitoring and alerting on performance metrics, rather than tracking configuration changes.
upvoted 10 times
...
sonaljain
Most Recent 4 months, 1 week ago
Selected Answer: C
Use AWS CloudTrail to see if the security group was changed.
upvoted 1 times
...
RangilaThakur
1 year, 3 months ago
Selected Answer: C
CloudTrail to track user activity.
upvoted 1 times
...
techandra
1 year, 5 months ago
Selected Answer: C
Use AWS CloudTrail to see if the security group was changed
upvoted 1 times
...
Pranava_GCP
1 year, 8 months ago
Selected Answer: C
C. Use AWS CloudTrail to see if the security group was changed.
upvoted 2 times
...
amitpandharikar
1 year, 9 months ago
Selected Answer: C
NAAAAA
upvoted 1 times
...
man5484
1 year, 10 months ago
Selected Answer: C
AWS CloudTrail is a service that provides a detailed audit trail of events and actions taken within an AWS account. It captures and logs API activity, including changes made to resources like security groups. By enabling CloudTrail and reviewing its logs, the user can track and identify any modifications made to the EC2 instance's security groups. CloudTrail records information such as the identity of the user or role making the changes, the time of the change, and the details of the modification. This allows users to gain visibility into the actions performed on their resources and supports security analysis, resource change tracking, and compliance auditing.
upvoted 2 times
...
STOPITALREADY
1 year, 10 months ago
C. Use AWS CloudTrail
upvoted 1 times
...
ESAJRR
1 year, 10 months ago
Selected Answer: C
C. Use AWS CloudTrail to see if the security group was changed.
upvoted 1 times
...
Warsame21
1 year, 10 months ago
C. Use AWS CloudTrail to see if the security group was changed.
upvoted 1 times
...
GorioDeCavite
1 year, 11 months ago
i think its C
upvoted 1 times
...
julianorr
1 year, 11 months ago
Selected Answer: C
Todo rastreamento de atividades dos usuários pode ser feito pelo CloudTrail.
upvoted 1 times
...
Rama_K
2 years ago
C AWS cloud trail
upvoted 1 times
...
Guru4Cloud
2 years, 1 month ago
Selected Answer: C
CloudTrail is the correct answer: https://aws.amazon.com/cloudtrail/features/ "CloudTrail records user activity and API calls across AWS services as events. CloudTrail events help you answer the questions of "who did what, where, and when?"
upvoted 1 times
...
elidiojose
2 years, 1 month ago
Selected Answer: C
C. AWS Cloud tral.
upvoted 1 times
...
Amycert
2 years, 2 months ago
Selected Answer: C
aws cloudtrail
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago