Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Amazon Web Services AWS Certified DevOps Engineer - Professional DOP-C02 Question # 90 Topic 10 Discussion

Amazon Web Services AWS Certified DevOps Engineer - Professional DOP-C02 Question # 90 Topic 10 Discussion

DOP-C02 Exam Topic 10 Question 90 Discussion:
Question #: 90
Topic #: 10

A company uses Amazon Elastic Container Service (Amazon ECS) with an Amazon EC2 launch type. The company requires all log data to be centralized on Amazon CloudWatch. The company ' s ECS tasks include a LogConfiguration object that specifies a value of awslogs for the log driver name.

The company ' s ECS tasks failed to deploy. An error message indicates that a missing permission causes the failure. The company confirmed that the IAM role used to launch container instances includes the logs:CreateLogGroup, logs:CreateLogStream, and logs:PutLogEvents permissions.

Which solution will fix the problem?


A.

Add an IAM trust policy to the IAM role that establishes Amazon ECS as a trusted service.


B.

Add the logs:PutDestination permission to the policy applied to the IAM role.


C.

Remove the logs:CreateLogStream permission from the policy applied to the IAM role.


D.

Add an IAM trust policy to the IAM role that establishes CloudWatch as a trusted service.


Get Premium DOP-C02 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.