nerdexam
AmazonAmazon

DOP-C02 · Question #482

DOP-C02 Question #482: Real Exam Question with Answer & Explanation

Sign in or unlock DOP-C02 to reveal the answer and full explanation for question #482. The question stem and answer options stay visible for context.

Submitted by andreas_gr· Mar 6, 2026Monitoring and Logging

Question

A company uses Amazon Elastic Container Service (Amazon ECS) with an Amazon EC2 launch type. The company requires all log data to be centralized on Amazon CloudWatch. The company's ECS tasks include a LogConfiguration object that specifies a value of awslogs for the log driver name. The company's ECS tasks failed to deploy. An error message indicates that a missing permission causes the failure. The company confirmed that the IAM role used to launch container instances includes the logs:CreateLogGroup, logs:CreateLogStream, and logs:PutLogEvents permissions. Which solution will fix the problem?

Options

  • AAdd an IAM trust policy to the IAM role that establishes Amazon ECS as a trusted service.
  • BAdd the logs:PutDestination permission to the policy applied to the IAM role.
  • CRemove the logs:CreateLogStream permission from the policy applied to the IAM role.
  • DAdd an IAM trust policy to the IAM role that establishes CloudWatch as a trusted service.

Unlock DOP-C02 to see the answer

You've previewed enough free DOP-C02 questions. Unlock DOP-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#ECS#IAM Roles#CloudWatch Logs#Trust Policies
Full DOP-C02 PracticeBrowse All DOP-C02 Questions