Pre-Winter Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

Amazon Web Services AWS Certified DevOps Engineer - Professional DOP-C02 Question # 40 Topic 5 Discussion

Amazon Web Services AWS Certified DevOps Engineer - Professional DOP-C02 Question # 40 Topic 5 Discussion

DOP-C02 Exam Topic 5 Question 40 Discussion:
Question #: 40
Topic #: 5

A company uses Amazon Elastic Container Service (Amazon ECS) with an Amazon EC2 launch type. The company requires all log data to be centralized on Amazon CloudWatch. The company's ECS tasks include a LogConfiguration object that specifies a value of awslogs for the log driver name.

The company's ECS tasks failed to deploy. An error message indicates that a missing permission causes the failure. The company confirmed that the IAM role used to launch container instances includes the logs:CreateLogGroup, logs:CreateLogStream, and logs:PutLogEvents permissions.

Which solution will fix the problem?


A.

Add an IAM trust policy to the IAM role that establishes Amazon ECS as a trusted service.


B.

Add the logs:PutDestination permission to the policy applied to the IAM role.


C.

Remove the logs:CreateLogStream permission from the policy applied to the IAM role.


D.

Add an IAM trust policy to the IAM role that establishes CloudWatch as a trusted service.


Get Premium DOP-C02 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.