Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Amazon Exam DOP-C02 Topic 4 Question 43 Discussion

Actual exam question for Amazon's DOP-C02 exam
Question #: 43
Topic #: 4
[All DOP-C02 Questions]

A company uses AWS WAF to protect its cloud infrastructure. A DevOps engineer needs to give an operations team the ability to analyze log messages from AWS WAR. The operations team needs to be able to create alarms for specific patterns in the log output.

Which solution will meet these requirements with the LEAST operational overhead?

Show Suggested Answer Hide Answer
Suggested Answer: A

Step 2: Creating CloudWatch Metric Filters CloudWatch metric filters can be used to search for specific patterns in log data. The operations team can create filters for certain log patterns and set up alarms based on these filters.

Action: Instruct the operations team to create CloudWatch metric filters to detect patterns in the WAF log output.

Why: Metric filters allow the team to trigger alarms based on specific patterns without needing to manually search through logs.

This corresponds to Option A: Create an Amazon CloudWatch Logs log group. Configure the appropriate AWS WAF web ACL to send log messages to the log group. Instruct the operations team to create CloudWatch metric filters.

Contribute your Thoughts:

Emile
10 hours ago
True, but setting up CloudWatch Logs seems simpler for the operations team.
upvoted 0 times
...
Karina
3 days ago
But wouldn't option D also work well with Athena queries?
upvoted 0 times
...
Venita
3 days ago
Haha, I'm just glad we don't have to deal with the headache of S3 and Lambda. That would be way too much work.
upvoted 0 times
...
Eun
8 days ago
I agree with Emile, sending logs to CloudWatch Logs seems efficient.
upvoted 0 times
...
Corrinne
19 days ago
I agree, CloudWatch Logs is the way to go. The operations team can just create metric filters and alarms - super straightforward.
upvoted 0 times
Leah
4 days ago
User 1: CloudWatch Logs is definitely the best option. The operations team can easily create metric filters and alarms.
upvoted 0 times
...
...
Stephaine
1 months ago
CloudWatch Logs seems like the easiest option here. No need to deal with setting up a whole OpenSearch cluster or writing complex Athena queries.
upvoted 0 times
Kattie
19 days ago
A: CloudWatch Logs will definitely make it easier for the operations team to analyze the log messages.
upvoted 0 times
...
Sharee
21 days ago
B: Yeah, setting up an OpenSearch cluster sounds like a lot of work.
upvoted 0 times
...
Wynell
24 days ago
A: I agree, CloudWatch Logs does seem like the simplest option.
upvoted 0 times
...
...
Emile
1 months ago
I think option A is the best choice.
upvoted 0 times
...

Save Cancel