SOA-C02 Monitoring, Logging, and Remediation Practice Question
A company uses AWS CloudFormation to deploy a multi-tier application. The stack includes an Application Load Balancer, Auto Scaling group, and RDS database. The SysOps administrator receives a notification that a stack update has failed. The administrator wants to investigate the failure and understand which resource caused the issue. The stack is in the UPDATE_ROLLBACK_IN_PROGRESS state. What should the administrator do to identify the failed resource?
⚠ Common exam trap
A common mix-up: candidates assume the failure is due to a template syntax error (Option A) or that application logs (Option B) would reveal the issue, when in fact CloudFormation events are the authoritative source for resource-level failure details during stack operations.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
View the stack events in the CloudFormation console to see which resource failed and the error message.
When a CloudFormation stack update fails and enters UPDATE_ROLLBACK_IN_PROGRESS, the most direct way to identify the failed resource is to view the stack events in the CloudFormation console. Each event includes a status reason field that contains the specific error message and the logical resource ID of the resource that caused the failure, allowing the administrator to pinpoint the issue without additional investigation.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Review the stack's template in the CloudFormation console to check for syntax errors.
Why it's wrong here
CloudFormation validates the template syntax during the initial validation and change set creation, so a syntax error would prevent an update from starting at all. Because the update is already underway and failing, the cause is a resource-level runtime error such as a missing IAM permission or an EC2 dependency failure. Inspecting the template in the console would only reveal the template structure, not the per-resource status messages that identify the true failure.
- ✗
Check the CloudWatch Logs for the EC2 instances in the Auto Scaling group.
Why it's wrong here
Instance logs in CloudWatch Logs capture application output and operating system messages from within the EC2 instances, which are unrelated to CloudFormation's resource orchestration. A stack update failure is recorded in the CloudFormation event stream with the specific resource status and error response from the underlying AWS service. Unless the application itself is crashing after a successful deployment, instance logs will not show the reason for the failed stack update.
- ✗
Manually re-run the update with the same parameters to see if the error recurs.
Why it's wrong here
Re-running the update with identical parameters will reproduce the same failure without yielding any new diagnostic data, since CloudFormation will stop at the same resource and generate the same error message. It also risks additional cost, resource consumption, and could lead to state inconsistencies if partial updates are not cleaned up. The proper first step is to examine stack events to understand the root cause before attempting any corrective action.
- ✓
View the stack events in the CloudFormation console to see which resource failed and the error message.
Why this is correct
The CloudFormation console's stack events tab displays a chronological list of every resource operation with its status and a status reason field containing the exact AWS SDK error, such as 'Resource creation cancelled' or 'The requested configuration is currently not supported.' This provides the precise failing resource and the underlying API error, which is the definitive information needed to troubleshoot an update failure. You can also retrieve the same data programmatically with the DescribeStackEvents API.
Go deeper
Related to this question
About these practice questions
One of 1,169 original SOA-C02 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This SOA-C02 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SOA-C02 exam.