What metrics can be monitored through CloudWatch without being charged in AWS? You can now use Amazon CloudWatch to monitor your EC2 instances at no additional charge. CPU load, disk I/O, and network I/O metrics are collected at five minute intervals and stored for two weeks.

Which types of monitoring can be provided by Amazon CloudWatch? CloudWatch collects monitoring and operational data in the form of logs, metrics, and events, and visualizes it using automated dashboards so you can get a unified view of your AWS resources, applications, and services that run in AWS and on-premises.

What data does CloudWatch monitor by default? By default, Amazon EC2 sends metric data to CloudWatch in 5-minute periods. To send metric data for your instance to CloudWatch in 1-minute periods, you can enable detailed monitoring on the instance. For more information, see Enable or turn off detailed monitoring for your instances.

Which type of monitoring sends metrics to CloudWatch every five minutes? The Amazon EC2 metrics are time-stamped data points that contain different sets of information, originating from EC2 or other AWS services. For basic monitoring, EC2 collects metrics every minute, aggregates collected metrics, and publishes metrics into CloudWatch every 5 minutes.

What is CloudWatch vs CloudTrail? The Difference between CloudWatch and CloudTrail

CloudWatch focuses on the activity of AWS services and resources, reporting on their health and performance. On the other hand, CloudTrail is a log of all actions that have taken place inside your AWS environment.

What is AWS GuardDuty?

Amazon GuardDuty is a threat detection service that continuously monitors for malicious activity and unauthorized behavior to protect your AWS accounts, workloads, and data stored in Amazon S3. With GuardDuty, you now have an intelligent and cost-effective option for continuous threat detection in AWS.

Can you lose the public IP address associated with your EC2 instance?

You cannot manually associate or disassociate a public IP (IPv4) address from your instance. Instead, in certain cases, we release the public IP address from your instance, or assign it a new one: We release your instance’s public IP address when it is stopped, hibernated, or terminated.

Can you recover lost private key?

Amazon EC2 doesn’t keep a copy of your private key; therefore, if you lose a private key, there is no way to recover it. If you lose the private key for an instance store-backed instance, you can’t access the instance; you should terminate the instance and launch another instance using a new key pair.

How long CloudWatch logs are stored?

You can store your log data in CloudWatch Logs for as long as you want. By default, CloudWatch Logs will store your log data indefinitely. You can change the retention for each Log Group at any time.

Which statement is true for AWS Lambda?

AWS Lambda is a serverless compute service that runs your code in response to events and automatically manages the underlying compute resources for you. You can use AWS Lambda to extend other AWS services with custom logic, or create your own back end services that operate at AWS scale, performance, and security.

Can we monitor Web server activity using CloudWatch?

You can use Amazon CloudWatch to collect and track metrics, collect and monitor log files, set alarms, and automatically react to changes in your Amazon Web Services resources. You can use Amazon CloudWatch to gain system-wide visibility into resource utilization, application performance, and operational health.

What are the three components of EC2 Auto Scaling?

This service is made up of three components: a launch template to know what to scale, scaling policies that define when to scale, and an ASG that decides where to launch the EC2 instances. Adding EC2 Auto Scaling to your cat photo application is important for high availability and scalability.

How do I know if CloudWatch is enabled?

Using AWS Console

04 Select the EC2 instance that you want to examine. 05 Select the Description tab from the dashboard bottom panel. 06 Verify the Monitoring attribute value to determine the level of CloudWatch monitoring enabled for the instance.

What is the default filename extension for CloudTrail logs?

Currently, this is json. gz , which is a JSON text file in compressed gzip format.

What is the purpose of CloudTrail?

Track user activity and API usage

AWS CloudTrail is a service that enables governance, compliance, operational auditing, and risk auditing of your AWS account. With CloudTrail, you can log, continuously monitor, and retain account activity related to actions across your AWS infrastructure.

What is the difference between AWS config and CloudTrail?

Config is focused on the configuration of your AWS resources and reports with detailed snapshots on how your resources have changed. CloudTrail focuses on the events, or API calls, that drive those changes. It focuses on the user, application, and activity performed on the system.

Is AWS CloudWatch region specific?

Metrics are stored separately in Regions, but you can use CloudWatch cross-Region functionality to aggregate statistics from different Regions.

Is AWS GuardDuty an antivirus?

Your understanding is correct where GuardDuty is like an antivirus for the whole AWS account while WAF is a specialized firewall for web traffic for a configured web application.

Is AWS public IP free?

The public IP address assigned to the instance is a dynamic IPv4 IP address from Amazon’s pool of public IP addresses. The dynamic IPv4 IP address is free to use, but as soon as the instance is stopped or terminated, the address is automatically released back into the pool and you’re unable to reuse it.

Does AWS block IP addresses?

To allow or block specific IP addresses for your EC2 instances, use a network Access Control List (ACL) or security group rules in your VPC. Network ACLs and security group rules act as firewalls allowing or blocking IP addresses from accessing your resources.

Does reboot change IP EC2?

Rebooting an Amazon EC2 instance will not change the IP of the machine. If you perform a Stop and start, the public IP of the machine will change. However if you want to retain the same public IP you can use a EIP. Also note that if you perform a stop and start, your instance will be moved to another healthy hardware.

What is CloudWatch custom metrics?

Amazon CloudWatch is a web service that enables you to monitor, manage, and publish various metrics, as well as configure alarm actions based on data from metrics. You can define custom metrics for your own use, and Elastic Beanstalk will push those metrics to Amazon CloudWatch.

What happens if I forget my private key?

This is done by using the private key to generate a public key, through which the other party can access the data and take part in the transaction. For example, if you lose or forget your key, you’re locked out.

What is the proper flow for sending logs to Amazon CloudWatch logs?

Open the Amazon VPC console at https://console.aws.amazon.com/vpc/ . In the navigation pane, choose Your VPCs or choose Subnets. Select the checkbox for one or more VPCs or subnets and then choose Actions, Create flow log. For Filter, specify the type of traffic to log.

