AWS Certified CloudOps Engineer Associate SOA-C03 Practice Question

Your company runs an Amazon EKS cluster in private subnets with no outbound internet access. You need to forward Prometheus metrics from the cluster to an existing Amazon Managed Service for Prometheus (AMP) workspace in the same AWS account and Region. Traffic must stay within the VPC and the solution should impose minimal operational overhead. Which approach meets these requirements?

  • Deploy a NAT gateway in the private subnet so Prometheus can reach the public AMP endpoint over the internet.

  • Create interface VPC endpoints for com.amazonaws..aps-workspaces (and optionally com.amazonaws..aps), enable private DNS, and update the Prometheus remote_write URL to use the workspace endpoint.

  • Enable VPC Flow Logs and configure the CloudWatch agent to forward the metrics to the AMP workspace.

  • Push metrics to Amazon CloudWatch and configure a CloudWatch metric stream to forward them to the AMP workspace.

AWS Certified CloudOps Engineer Associate SOA-C03
Monitoring, Logging, Analysis, Remediation, and Performance Optimization
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot