Management and Governance
Amazon CloudWatch Logs
Amazon CloudWatch Logs centralizes application and service log streams with retention, query, subscription, and protection features. It supports request-level GenAI diagnosis when records contain safe correlation and version metadata.
Key points
- Retention is configured per log group
- Subscription filters stream matching records to supported destinations
- Data protection policies can detect and mask configured sensitive patterns
When to use it
- Record sanitized retrieval and model-stage timings
- Centralize agent tool errors for incident analysis
Exam tips
- Use Logs for event details and CloudWatch metrics for efficient alerting and aggregation
- Record hashes or identifiers instead of raw prompts where content is sensitive