exam questions

Exam AWS Certified SysOps Administrator - Associate All Questions

View all questions & answers for the AWS Certified SysOps Administrator - Associate exam

Exam AWS Certified SysOps Administrator - Associate topic 1 question 379 discussion

A SysOps administrator configured VPC flow logs by using the default format. The SysOps administrator specified Amazon CloudWatch Logs as the destination. This solution has worked successfully for several months. However, because of additional troubleshooting requirements, the SysOps administrator needs to include the tcp-flags field on the flow logs.

What should the SysOps administrator do to meet this requirement?

  • A. Create a new flow log. Include the tcp-flags field in the custom log format. Delete the original flow log.
  • B. In the CloudWatch Logs log group, modify the filter to include the tcp-flags field and the type field.
  • C. In CloudWatch Metrics, modify the metric configuration to include the tcp-flags field.
  • D. Modify the existing flow log. Include the tcp-flags field and the type field in the custom log format. Save the configuration.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Tapkar
Highly Voted 1 year, 2 months ago
Answer is A. tcp-flags are not included into default format. If you want to have tcp-flags, you should use custom log format. You can't modify existing flow log. https://docs.aws.amazon.com/vpc/latest/userguide/flow-logs.html
upvoted 9 times
...
joshnort
Most Recent 6 months, 3 weeks ago
Selected Answer: A
A: Create a new flow log. Include the tcp-flags field in the custom log format. Delete the original flow log. "After you create a flow log, you cannot change its configuration or the flow log record format. For example, you can't associate a different IAM role with the flow log, or add or remove fields in the flow log record. Instead, you can delete the flow log and create a new one with the required configuration." https://docs.aws.amazon.com/vpc/latest/userguide/flow-logs.html#flow-logs-limitations
upvoted 3 times
...
r2c3po
10 months ago
Selected Answer: A
A. Create a new flow log. Include the tcp-flags field in the custom log format. Delete the original flow log. This way, you can create a new flow log with the desired log format, including the tcp-flags field, and then switch to using the new flow log configuration.
upvoted 2 times
...
Globus777
12 months ago
Answer is A.
upvoted 2 times
...
xSohox
1 year, 2 months ago
Selected Answer: A
https://docs.aws.amazon.com/vpc/latest/userguide/flow-logs.html#flow-logs-limitations
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago