AWS - Advanced SecurityWhich AWS resource is required to enable CloudTrail logging?AAn EC2 instance to process logsBAn S3 bucket to store logsCA Lambda function to generate logsDA VPC endpoint for log deliveryCheck Answer
Step-by-Step SolutionSolution:Step 1: Identify CloudTrail log storageCloudTrail delivers logs to an S3 bucket you specify for storage and analysis.Step 2: Understand other optionsEC2, Lambda, and VPC endpoints are not required to store CloudTrail logs.Final Answer:An S3 bucket to store logs -> Option BQuick Check:CloudTrail logs stored in S3 bucket = A [OK]Quick Trick: CloudTrail logs always go to S3 buckets [OK]Common Mistakes:Choosing EC2 or Lambda as log storageConfusing VPC endpoints with log storage
Master "Advanced Security" in AWS9 interactive learning modes - each teaches the same concept differentlyLearnWhyDeepVisualTryChallengeProjectRecallTime
More AWS Quizzes Advanced Security - AWS Shield for DDoS protection - Quiz 2easy Architecture Best Practices - Reliability pillar principles - Quiz 1easy CloudFormation - Resources section - Quiz 8hard CloudFormation - Updating and deleting stacks - Quiz 11easy EKS - EKS cluster creation - Quiz 6medium EKS - Node groups (managed, self-managed, Fargate) - Quiz 15hard Route 53 - Failover routing for disaster recovery - Quiz 13medium Serverless Architecture - Step Functions for workflows - Quiz 5medium Serverless Architecture - Step Functions for workflows - Quiz 12easy Serverless Architecture - Lambda with API Gateway pattern - Quiz 10hard