A company is migrating its on-premises applications to AWS and wants to maintain the same level of monitoring for its Linux-based EC2 instances. They currently use Nagios for monitoring. They want a managed AWS service that can monitor instance health, system metrics, and application logs. Which solution should they use?
The CloudWatch agent runs on each instance to collect system metrics and application logs, then ships them to CloudWatch. This delivers the managed monitoring service the company requires, replacing Nagios without self-managed infrastructure, and satisfies the instance health, metrics and logs monitoring requirement.
Why this answer
The CloudWatch agent is the managed AWS solution for collecting guest-level system metrics (memory, disk, swap) and application/system logs from EC2 instances and delivering them to CloudWatch. It replaces the need for a self-managed Nagios server by providing native metric and log ingestion, alarms, and dashboards. Installing it on each instance satisfies the requirement for instance health, system metrics, and application logs in a managed service.
Exam trap
The trap is confusing AWS monitoring services: CloudTrail (API audit), Config (configuration compliance), and Systems Manager Inventory (metadata) are often mistaken for a metrics/logs monitoring solution, but only the CloudWatch agent collects guest OS metrics and application logs.
How to eliminate wrong answers
Option B is wrong because CloudTrail records API activity and management events, not guest OS metrics or application log files, so it cannot replace Nagios-style monitoring. Option C is wrong because Systems Manager Inventory collects configuration metadata (installed applications, OS details) rather than real-time system metrics and application logs. Option D is wrong because AWS Config tracks resource configuration changes and compliance, not runtime health metrics or log content.