A financial services company needs to establish a continuous governance and compliance strategy for its Amazon EC2 instance fleet. The operations team has two key requirements: first, they must automatically detect and report when any instance's resource configurations deviate from internal security standards; second, they must orchestrate and execute software patching across the entire fleet during specific, low-traffic time windows.
Which of the following AWS services should be selected to implement this solution? (Select TWO.)
- AWS ConfigCevap
- AWS Systems ManagerCevap
- CAWS CloudFormation
- DAWS Elastic Beanstalk
- EAWS CloudTrail
Cevap
AWS Config and AWS Systems Manager are the correct choices.
AWS Config and AWS Systems Manager satisfy the requirements. AWS Config allows the continuous auditing and compliance monitoring of resource configurations. AWS Systems Manager, via Patch Manager and Maintenance Windows, automates the patching of operating systems during low-traffic windows.
Adım Adım Çözüm
Anahtar Kavram
Selecting appropriate AWS management and governance tools based on operational compliance and patching requirements.