1/6
Looks like no tags are added yet.
Name | Mastery | Learn | Test | Matching | Spaced | Call with Kai |
|---|
No analytics yet
Send a link to your students to track their progress
AWS Shared Responsibility Model ch 'Security OF the Cloud' te 'Security IN the Cloud' da fundamental Vaddhe farak ki Hunda Aah?
Eh model clearly define krda Aah ki AWS 'Security OF the Cloud' (matlab physical infrastructure te hardware) manage krda Aah. Jabki customer 'Security IN the Cloud' (matlab operating system, data, te configurations) layi responsible Hunda Aah.
IaaS (jive EC2) de context ch AWS actually Kinne specific components layi strictly responsible Hunda Aah?
IaaS naal AWS facilities (data centers), physical hardware, global infrastructure (Regions, AZs), storage, networking hardware, te hypervisor (jo hardware nu VMs ch carve up krda Aah) layi responsible hundi Aah.
Scenario: Tuhada EC2 instance hack ho gaya kyuki Operating System te latest security patch install Ni c. Shared Responsibility Model de according isdi fault kisdi Aah?
Eh purely tuhadi fault Aah. AWS physical servers te hypervisor manage krda Aah, par Operating System te us toh upar di har cheez (jive OS patching, firewall configuration, te application code) customer di 'Security IN the Cloud' responsibility de under aandi Aah.
Security OF the Cloud ki Hunda Aah?
Eh Shared Responsibility Model da oh hissa Hunda Aah jis layi purely AWS responsible hundi Aah, jive ki saara physical global infrastructure te compute/storage di underlying provisioning.
Client-side data encryption te SSL certificates model de Kinne half ch aande Aah?
Eh dono customer di responsibility de under aande Aah. Agar tuhadi application apna data encrypt krdi Aah ya server-to-server communications layi SSL certificates use krda Aah, taan tuhade usnu manually implement te secure krde ho.
Tricky Keywords: "Customer Data", "IAM", "VPC Network Configs", "Hypervisor". Inha cho Kinne element purely AWS di responsibility Aah?
Inha cho sirf 'Hypervisor' AWS di responsibility (Security OF the Cloud) Aah kyuki eh physical hardware nu virtual machines ch divide krda Aah. Baaki teeno (Customer Data, IAM, VPC Configs) purely customer di responsibility (Security IN the Cloud) Hunde Aah.
Security IN the Cloud ki Hunda Aah?
Eh customer di responsibility hundi Aah, jisdeh ch operating system, network/firewall configs, identity and access management (IAM), customer data protection, te data backup manage krna shamil Hunda Aah.