SOA-C02 Deployment, Provisioning, and Automation Practice Question
A company uses AWS CloudFormation with nested stacks. The parent stack creates a child stack that launches an Auto Scaling group. The child stack fails to create, and the parent stack rolls back. The administrator wants to debug the child stack. What is the most efficient way to view the child stack's events?
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Navigate to the child stack in the AWS CloudFormation console and view its events.
After a nested stack fails, it remains in a FAILED state and is visible in the AWS CloudFormation console. You can navigate directly to the child stack to view its events and identify the cause of failure. Option B is incorrect because rerunning the parent stack with a different name would create a new child stack, not help debug the original failed child stack. Option C is incorrect because CloudWatch Logs are not automatically enabled for CloudFormation stacks; you would need to configure logging. Option D is incorrect because the parent stack's events only show aggregated status or a failure message for the child stack, not the detailed events inside the child stack.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Navigate to the child stack in the AWS CloudFormation console and view its events.
Why this is correct
The child stack persists after rollback, because CloudFormation leaves it in a terminal state for inspection. Its Events tab lists every resource created or attempted within the child, including the exact failure reason (e.g., an EC2 instance's user-data script exit code, an IAM permission denial, or a resource creation timeout). This is the authoritative source of diagnostic information because the parent stack only sees the child as an atomic resource.
- ✗
Rerun the parent stack with a different name to see the child stack creation.
Why it's wrong here
Rerunning the parent stack under a different name initiates a fresh deployment of a new nested stack, which does not share the failed stack's lifecycle or event history. It also obscures the original failure because any new error will be unique to the re-run's context and may not reproduce the root cause (e.g., if the failure was due to a race condition or an already-deleted resource). The correct action is to inspect the existing child stack's events via the console or DescribeStackEvents, not to pollute the environment with duplicate stacks.
- ✗
Check the CloudWatch Logs for the parent stack.
Why it's wrong here
CloudFormation has no native integration to push stack or resource events to CloudWatch Logs; there is no log group created for a stack by default. While you can add custom logging to individual resources (such as a Lambda function that writes to CloudWatch), the CloudFormation service itself never writes stack lifecycle events there. Therefore, CloudWatch Logs would contain no relevant entries for diagnosing a nested stack failure, making this a dead end.
- ✗
View the parent stack's events in the AWS Management Console.
Why it's wrong here
The parent stack's Events tab only shows the nested stack as a single AWS::CloudFormation::Stack resource, with transitions like 'CREATE_IN_PROGRESS' and 'CREATE_FAILED'. This aggregation hides the underlying resource-level failure details, so the event will not tell you which specific resource inside the child failed or why (e.g., a security group rule or an EBS volume attachment). You must navigate to the child stack's own Events tab to see the granular resource-by-resource status and the precise error messages.
Go deeper
Related to this question
About these practice questions
One of 1,169 original SOA-C02 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This SOA-C02 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SOA-C02 exam.