Monitoring, Logging, & Auditing Flashcards

(22 cards)

1
Q

What is Amazon CloudWatch?

Amazon CloudWatch Overview

A

Used for performance monitoring, alarms, log collection & automated actions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are Use Cases/Benifits of Amazon CloudWatch?

Amazon CloudWatch Overview

A
  • Collect performance metrics from AWS & on-premises systems
  • Automate responses to operation changes
  • Improve operational performance & resource optimization
  • Derive actionable insights from logs
  • Get operational visibility & insight
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are Amazon CloudWatch Core Features?

Amazon CloudWatch Overview

A
  • CloudWatch Metrics: services send time-ordered data to it
  • CloudWatch Alarms: monitor metrics & initiate actions
  • CloudWatch Logs: centralized collection of zyztem & application logs
  • CloudWatch Events: stream of system events describing changes to AWS resources & can trigger actions
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are Amazon CloudWatch Metrics?

Amazon CloudWatch Overview

A
  • Metrics sent to it for many AWS services
  • EC2 metrics sent every 5 minutes by default (free)
  • Detailed EC2 monitoring sends every 1 minute (chargeable)
  • Unified CloudWatch Agent sends system-level metrics for EC2 & on-premises servers
  • System-level metrics include memory & disk usage
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are Amazon CloudWatch Custom Metrics?

Amazon CloudWatch Overview

A
  • Can publish custom metrics using CLI or API
  • Custom metrics are following resolutions:
    • Standard Resolution - data having one-minute granularity
    • High Resolution - data at one-second granularity
  • Standard resolution by default
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are Amazon CloudWatch Alarms types?

Amazon CloudWatch Overview

A
  • Metric Alarm - performs one/more actions based on single metric
  • Composite Alarm - uses rule expression & takes into account multiple alarms
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are Metric Alarm states?

Amazon CloudWatch Overview

A
  • OK - w/in threshold
  • ALARM - outside threshold
  • INSUFFICIENT_DATA - not enough data
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are Amazon CloudWatch Logs?

Amazon CloudWatch Logs

A
  • Gather application & system logs in CloudWatch
  • Defined expiration policies & KMS encryption
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Where dow Amazon CloudWatch Logs send to?

Amazon CloudWatch Logs

A
  • Amazon S3 (export)
  • Kinesis Data Streams
  • Kinesis Data Firehose

Unified CloudWatch Agent - installed on EC2 & on-premises servers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are other features of CloudWatch Logs?

A
  • AWS Lambda: requires permissions to Logs
  • Amazon Elasticsearch Service: Real-Time log processing w/ subscription logs
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Unified CloudWatch Agent

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is Unified CloudWatch Agent?

Unified CloudWatch Agent

A
  • Collect internal system-level metrics from EC2 instances across operating systems
  • Collect system-level metrics from on-premises servers
  • Retrieve custom metrics from applications/services using StatsD & collectd protocols
  • Collect logs from EC2 instances & on-premises servers (Windows/Linux)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What are features of Unified CloudWatch Agent?

Unified CloudWatch Agent

A
  • Must be installed on server
  • Can be installed on:
    • Amazon EC2 instance
    • On-premises servers
    • Linux, Windows Server, or MacOS
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is AWS CloudTrail?

AWS CloudTrail

A

Logs API Activity for auditing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What are features of AWS CloudTrail?

AWS CloudTrail

A
  • Default: management events logged & retained for 90 days
  • CloudTrail Trail logs any events to S3 for indefinite retention
  • Can be w/in Region or All Regions
  • CloudWatch Events can be triggered based on API calls in CloudTrail
  • Events can be streamed to CloudWatch Logs
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What are CloudTrail Types of Events?

AWS CloudTrail

A
  • Management Events - provide info a/b management operations performed on AWS account
  • Data Events - provide info a/b resource operations performed on/in resource
  • Insights Events - identify & respond to unusual activity associated w/ Write API calls by continuously analyzing CloudTrail management events
17
Q

What is AWS X-Ray?

Metric Analysis and Tracing

A
  • Visualize application components
  • Identify performance bottlenecks
  • Troubleshoot requests that made errors

Also:
- AWS services send trace data to X-Ray & it processes data to generate service map & searchable trace summaries

18
Q

What are characteristics of AWS X-Ray?

Metric Analysis and Tracing

A
  • Can be used w/ applications running on:
    • EC2
    • ECS
    • Lambda
    • Elastic Beanstalk
  • Must integregate its SDK w/ application & install its agent
  • Agent is software application that gathers raw segment data & relays it to its service
  • SDK captures metadata for requests made to MySQL & PostgreSQL databases & DynamoDB
  • Captures metadata for requests made to SQS & SNS
19
Q

What is Prometheus

Amazon Managed Service

Metric Analysis and Tracing

A

Open-source monitoring system & time series database

20
Q

What are features of Prometheus?

Amazon Managed Service

Metric Analysis and Tracing

A
  • Use its open-source query language (PromQL) to monitor & alert performance of containerized workloads
  • Automatically scales following of operation metrics as workloads grow/shrink:
    • Ingestion
    • Storage
    • Alerting
    • Querying
  • Integrated these for OpenTelemetry
    • Amazon EKS
    • Amazon ECS
    • AWS Distro
21
Q

What is Grafana?

Amazon Managed Service

Metric Analysis and Tracing

A

Open-source analytics & monitoring solution for databases

22
Q

What are features of Grafana?

Amazon Managed Service

Metric Analysis and Tracing

A
  • Highly scalably, highly available, & fully managed service
  • Provides interactive data visualization for your monitoring & operational data
  • Lets you visualize, analyze, & alarm on your metrics, logs, & traces collected from multiple data sources
  • Integrates w/ AWS SSO & SAML