Aws Cloud Trail FAQs Flashcards ionicons-v5-c

No, nothing is required to begin viewing your account activity. You can visit the AWS CloudTrail console or AWS CLI and begin viewing up to the past 90 days of account activity.

Q: If I am a new AWS customer or existing AWS customer and don’t have CloudTrail setup, do I need to enable or setup anything to view my account activity?

Yes, you can visit the CloudTrail console or use the CloudTrail API/CLI and begin viewing the past 90 days of account activity.

Q: Can I use the lookup-events CLI command even if I don’t have a trail configured?

There is no cost for viewing or searching account activity with CloudTrail Event History.

Q: Is there any cost associated with CloudTrail Event History being enabled on my account upon creation?

Typically, it will take less than 30 seconds to replicate the trail configuration to all regions.

Q: How long will it take for CloudTrail to replicate the trail configuration to all regions?

Typically, CloudTrail delivers an event within 15 minutes of the API call.

Q: How long does it take CloudTrail to deliver an event for an API call?

Yes. You can turn on Amazon SNS notifications so that you can take immediate action on delivery of new log files.

Q: Can I be notified when new log files are delivered to my Amazon S3 bucket?

In this release, CloudTrail Insights tracks unusual activity for write management APIs.

Q: What kinds of events does CloudTrail Insights monitor?

You can use the log file integrity validation as an aid in your IT security and auditing processes.

Q: What is the benefit of CloudTrail log file integrity validation?

Yes. CloudTrail will deliver the digest files across all regions and multiple accounts into the same Amazon S3 bucket.

Q: I aggregate all my log files across all regions and multiple accounts into one single Amazon S3 bucket. Will the digest files be delivered to the same Amazon S3 bucket?

You need aws-java-sdk version 1.9.3 and Java 1.7 or higher.

Q: What software do I need to start using the CloudTrail Processing Library?

No. The first copy of management events is delivered free of charge in each region.

Q: If I have only one trail with management Events, and apply it to all regions, will I incur charges?

Yes. You will only be charged for the data events. The first copy of management events is delivered free of charge.

Q: If I enable data events on an existing trail with free management events, will I get charged?

No. Turning on CloudTrail has no impact on performance of your AWS resources or API call latency.

Q: Will turning on CloudTrail impact the performance of my AWS resources, or increase API call latency?