Summary – Parsing Logs and Events with AWS Native Tools – SCS-C02 Study Guide

Summary

In this chapter, you learned how to review and analyze many log files using native tools found in AWS.

You also had a brief overview of how costs can affect your decisions when choosing the correct storage solution for your long-term log storage for your account and your organization. This overview was presented through the different tiers of storage available in the S3 service and their durability and reliability ratings.

Next, you explored how to move logs out of CloudWatch Logs using subscription filters. You learned that combining CloudWatch subscription filters with the Kinesis Data Firehose service allows you to take incoming logs to CloudWatch Logs and push them into an S3 bucket where they could be stored at lower costs and then be queried by the Amazon Athena service.

You also examined how you could use Kinesis Data Firehose to stream the logs to Amazon OpenSearch, the fast search engine with custom visualizations based on Elasticsearch.

The next chapter marks the beginning of the next section on Infrastructure Security. In Chapter 10, Configuring Infrastructure Security, you will start with configuring infrastructure security. This includes the steps to set up a Virtual Private Cloud (VPC), security groups, and Network Access Control Lists (NACLs).

Further Reading

For additional information on the AWS shared responsibility model and the underlying foundation of AWS security, please look at the following resources:

Exam Readiness Drill – Chapter Review Questions

Apart from a solid understanding of key concepts, being able to think quickly under time pressure is a skill that will help you ace your certification exam. That is why working on these skills early on in your learning journey is key.

Chapter review questions are designed to improve your test-taking skills progressively with each chapter you learn and review your understanding of key concepts in the chapter at the same time. You’ll find these at the end of each chapter.

How To Access These Resources

To learn how to access these resources, head over to the chapter titled Chapter 21, Accessing the Online Practice Resources.

To open the Chapter Review Questions for this chapter, perform the following steps:

  1. Click the link – https://packt.link/SCSC02E2_CH09

Alternatively, you can scan the following QR code (Figure 9.17):

Figure 9.17: QR code that opens Chapter Review Questions for logged-in users

  • Once you log in, you’ll see a page similar to the one shown in Figure 9.18:

Figure 9.18: Chapter Review Questions for Chapter 9

  • Once ready, start the following practice drills, re-attempting the quiz multiple times.

Exam Readiness Drill

For the first three attempts, don’t worry about the time limit.

ATTEMPT 1

The first time, aim for at least 40%. Look at the answers you got wrong and read the relevant sections in the chapter again to fix your learning gaps.

ATTEMPT 2

The second time, aim for at least 60%. Look at the answers you got wrong and read the relevant sections in the chapter again to fix any remaining learning gaps.

ATTEMPT 3

The third time, aim for at least 75%. Once you score 75% or more, you start working on your timing.

Tip

You may take more than three attempts to reach 75%. That’s okay. Just review the relevant sections in the chapter till you get there.

Working On Timing

Target: Your aim is to keep the score the same while trying to answer these questions as quickly as possible. Here’s an example of how your next attempts should look like:

AttemptScoreTime Taken
Attempt 577%21 mins 30 seconds
Attempt 678%18 mins 34 seconds
Attempt 776%14 mins 44 seconds

Table 9.1: Sample timing practice drills on the online platform

Note

The time limits shown in the above table are just examples. Set your own time limits with each attempt based on the time limit of the quiz on the website.

With each new attempt, your score should stay above 75% while your time taken to complete should decrease. Repeat as many attempts as you want till you feel confident dealing with the time pressure.