Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Amazon Web Services AWS Certified Security – Specialty SCS-C03 Question # 45 Topic 5 Discussion

Amazon Web Services AWS Certified Security – Specialty SCS-C03 Question # 45 Topic 5 Discussion

SCS-C03 Exam Topic 5 Question 45 Discussion:
Question #: 45
Topic #: 5

A company’s web application runs on Amazon EC2 instances behind an Application Load Balancer (ALB) in an Auto Scaling group. An AWS WAF web ACL is associated with the ALB. Instance logs are lost after reboots. The operations team suspects malicious activity targeting a specific PHP file.

Which set of actions will identify the suspect attacker’s IP address for future occurrences?


A.

Configure VPC Flow Logs and search for PHP file activity.


B.

Install the CloudWatch agent on the ALB and export application logs.


C.

Export ALB access logs to Amazon OpenSearch Service and search them.


D.

Configure the web ACL to send logs to Amazon Kinesis Data Firehose. Deliver logs to Amazon S3 and query them with Amazon Athena.


Get Premium SCS-C03 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.