Management and Governance
RecognitionAWS Config
Resource configuration inventory, history, relationships, and rule-based compliance evaluation for supported resources.
Key points
- Config evaluates state against rules and records changes; it does not block every noncompliant change by itself.
Best-known use cases
- Find when a security group changed or evaluate required configuration.
What candidates often confuse it with
- Config records/evaluates configuration; CloudTrail records API activity and Artifact supplies AWS compliance reports.
Key takeaway
Choose Config when the question is resource state, history, or compliance rules.
Related services
- AWS CloudTrail
- AWS Artifact
Relevant exam tasks
- D1.3