exam questions

Exam AWS Certified Security - Specialty SCS-C02 All Questions

View all questions & answers for the AWS Certified Security - Specialty SCS-C02 exam

Exam AWS Certified Security - Specialty SCS-C02 topic 1 question 146 discussion

A company uses AWS Organizations and has Amazon Elastic Kubernetes Service (Amazon EKS) clusters in many AWS accounts. A security engineer integrates Amazon EKS with AWS CloudTrail. The CloudTrail trails are stored in an Amazon S3 bucket in each account to monitor API calls. The security engineer observes that CloudTrail logs are not displaying Kubernetes pod creation events.

What should the security engineer do to view the Kubernetes events from Amazon CloudWatch?

  • A. Configure the EKS clusters to use private S3 VPC endpoints. Configure the S3 buckets for logging.
  • B. Enable Kubernetes API server component logs for each cluster.
  • C. Enable cross-origin resource sharing (CORS) in the S3 bucket that is used for logging.
  • D. Configure CloudWatch. View the events in the CloudWatch console.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Certified101
6 months, 2 weeks ago
Selected Answer: B
The correct answer is B. The security engineer should enable Kubernetes API server component logs for each cluster. This is because the API server component logs contain details about the Kubernetes events such as pod creation, which are not included in the AWS CloudTrail logs. Once these logs are enabled, they can be viewed from Amazon CloudWatch.
upvoted 4 times
...
Zek
6 months, 3 weeks ago
Will go with B https://www.examtopics.com/discussions/amazon/view/88358-exam-aws-certified-security-specialty-topic-1-question-405/
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...