> ## Documentation Index
> Fetch the complete documentation index at: https://cloud-architect.ipoint-labs.com/llms.txt
> Use this file to discover all available pages before exploring further.

# EC2 Events Configuring CloudTrail Logs Challenge

> Hands-on lab · 45m

Launch this lab in the IP Lab Portal, then follow the steps below in the AWS console.

<a className="ip-lab-portal-btn" href="https://labs.intellectualpoint.com/labs/ec2-events-configuring-cloudtrail-logs-challenge" target="_blank" rel="noreferrer">
  Open IP Lab Portal
</a>

## Overview

### Prerequisites

1. Good knowledge of AWS service

* Simple Storage Service (S3)
* Elastic Compute (EC2)
* CloudTrail

1. Laptop/Desktop
2. Internet Browser
3. Internet connection

### Challenge Instructions

1. **Region** : Make Sure To Use **Us-East-1** Region To Create All The Resources.
2. You Will Be Provided With The Requirements Of The Challenge. If You Are New To AWS Cloud, We Recommend You Go Through Our Hands-On Labs Before Taking This Challenge.
3. **Challenge Duration**: 45 Min

### How to submit the challenge

1. After Building The Infrastructure, Click On The **Validation** Button, To Validate If You Have Built The Required Infrastructure And Completed The Challenge Successfully.
2. Validation Status:

   * **Success** - You Have Completed The Challenge Successfully.
   * **Failed** - You Have Failed To Complete The Challenge.
3. Once You Have Successfully Validated The Challenge, Click On **End lab** Button To End The Challenge.

### Launching Challenge Environment

1. To Launch The Challenge Environment, Click On The **Launch lab** Button.
2. Please Wait Until The Cloud Environment Is Provisioned. It Will Take Less Than A Minute To Provision.
3. Once The Challenge Is Started, You Will Be Provided With **IAM User Name**, **Password**, **Access** **Key**, And **Secret** **Access** **Key**.

<Note>
  You Can Only Start One Challenge At Any Given Time
</Note>

## Lab guide

### Sign in to AWS Management Console

1. Click On The **Open console** Button, And You Will Get Redirected To AWS Console In A New Browser Tab.
2. On The AWS Sign-In Page, Leave The Account ID As Default. Never Edit/Remove The 12 Digit Account ID Present In The AWS Console. Otherwise, You Cannot Proceed With The Challenge.
3. Now Copy Your **User Name** And **Password** In The Lab Console To The **IAM Username And Password** In AWS Console And Click On The **Sign In** Button.
4. Once Signed In To The AWS Management Console, Make The Default AWS Region As **US East (N. Virginia) Us-East-1.**

### Cloud Challenge Details

In This Challenge, Your AWS CloudTrail Skills Are Put To The Test. You'll Be Given A Requirement And You Have To Reach It Using Your Knowledge Of Elastic Compute (EC2) And Simple Storage Services (S3) Which Will Be Used In This Challenge. This Challenge Will Help You Understand The Real-Time Scenarios.

### Architecture diagram

### <img src="https://mintcdn.com/ip-cloud-architect-pathway/OagrkbHBQ8SYHp5M/images/labs/ec2-events-configuring-cloudtrail-logs-challenge/001.png?fit=max&auto=format&n=OagrkbHBQ8SYHp5M&q=85&s=65873ad8a9de5224c3a56691818a0d46" alt="" width="753" height="746" data-path="images/labs/ec2-events-configuring-cloudtrail-logs-challenge/001.png" />

**A Company XYZ Wants To Allow AWS CloudTrail To Access Your Log Files Through Both Amazon S3 And Amazon EC2. The Below Are The Tasks That Need To Be Performed By You In Order To Create The Stack.**

1. Create CloudTrail And S3 Bucket.
2. Browse And Check The **Records** In S3 Bucket.
3. Create An EC2 Instance With Below Configurations:

* Amazon Machine Image (AMI): Amazon Linux 2023 kernel-6.1 AMI
* Instance Type As t2.micro

1. Check The **Log Files** Created By The EC2 Instance in the S3 bucket.
2. **Connect** To An EC2 Instance.
3. Verify For A Log File **After Linking** To The EC2 Instance.
4. Click On The **Validate** To Complete The Challenge.
5. **Delete** The Resources After Validation.

### End lab

1. Sign Out Of The AWS Account.
2. You Have Successfully Completed The Challenge.
3. Click On **End lab** Button in the IP Lab Portal And Wait Till The Process Gets Completed.

## What gets checked

When you press **Check my work**, the platform verifies each of these:

* **Check Cloudtrail logs** — Check whether cloudtrail log is created or not
* **Launch an EC2 Instance** — Check whether an EC2 Instance is launched or not.
* **Validate EC2 Instance Type t2.micro** — Check whether the EC2 instance type is t2.micro.
* **Launch EC2 AMI type Amazon Linux** — Check whether the EC2 instance is launched using an Amazon AMI.

## Related help

* [FAQs and Troubleshooting](/aws-cp/support/faqs-and-troubleshooting)
