AWS Solutions Architect Associate

0.0(0)
studied byStudied by 0 people
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
Card Sorting

1/163

encourage image

There's no tags or description

Looks like no tags are added yet.

Study Analytics
Name
Mastery
Learn
Test
Matching
Spaced

No study sessions yet.

164 Terms

1
New cards

Which AWS service is effectively a NAS in the cloud, allowing you to connect it to multiple EC2 instances at once?

A. EBS

B. EFS

C. SQS

D. SNS

B

2
New cards

What AWS Service would you use primarily for data warehousing?

A. RDS

B. DMS

C. Dynamodb

D. Redshift

D

3
New cards

Your digital media agency needs to convert its media files to formats that can be viewed on a variety of devices. Which AWS devices should you use to meet this need?

A. Elastic Transcoder

B. SQS

C. Appstream

D. SWF

A

4
New cards

You need to implement an automated service that will scan your AWS environment with the goal of both improving security and reducing costs. Which service should you use?

A. Config Rules

B. Service Catalog

C. Trusted Advisor

D. CloudTrail

C

5
New cards

What is the fundamental difference between Elastic Beanstalk & CloudFormation?

A. There is no difference between the two. Elastic Beanstalk was simply the code name used internally for CloudFormation, prior to the product being released.

B. Elastic Beanstalk automatically handles the deployment of your code -- from capacity provisioning, load balancing, auto-scaling to application health monitoring -- based on the code you upload to it, whereas CloudFormation is an automated provisioning engine designed to deploy entire cloud environments via a JSON script.

C. Elastic Beanstalk automatically handles the deployment of your code -- from capacity provisioning, load balancing, auto-scaling to application health monitoring -- based on the code you upload to it, whereas CloudFormation is a security service designed to harden your cloud against an attack such as a DDoS.

D. Elastic Beanstalk is a monitoring tool used to view the performance of your AWS resources, whereas CloudFormation is an automated provisioning engine designed to deploy entire cloud environments via a JSON script.

B

6
New cards

Which AWS service allows you to run code without having to worry about provisioning any underlying resources (such as virtual machines, databases etc.)

A. Lambda

B. DynamoDB

C. EC2

D. EC2 Container Service

A

7
New cards

Which AWS service offers durable storage for flat files?

A. SQS

B. S3

C. Kinesis

D. CloudFront Edge Locations

B

8
New cards

Which AWS service is a Content Delivery Network?

A. CloudPush

B. CloudFront

C. CloudFormation

D. CloudStream

B

9
New cards

An AWS VPC is a component of which group of AWS services?

A. Global Infrastructure

B. Compute Services

C. Database Services

D. Networking Services

D

10
New cards

Which statement best describes Availability Zones?

A. A content distribution network used to distribute content to users

B. Distinct locations from within an AWS region that are engineered to be isolated from failures

C. Two zones containing compute resources that are designed to automatically maintain synchronized copies of each other's data

D. Restricted areas designed specifically for the creation of Virtual Private Clouds

B

11
New cards

Which AWS service is specifically designed to assist you in processing large data sets?

A. ElastiCache

B. Big Data Processing

C. EC2

D. EMR

D

12
New cards

You need to supply auditors with logs showing which Users provisioned given resources on your AWS infrastructure. Which service would best satisfy this need?

A. CloudTrail

B. Opsworks

C. CloudFormation

D. CloudWatch

A

13
New cards

Which of the following is Amazon's No-SQL database service?

A. RDS

B. ElastiCache

C. DynamoDB

D. Redshift

C

14
New cards

What is an AWS Region?

A. A region is a collection of Edge Locations available in specific countries.

B. A region is a geographical area divided into Availability Zones. Each region contains at least two Availability Zones.

C. A region is an independent data center, located in different countries around the globe.

D. A region is a subset of AWS technologies. For example, the Compute region consists of EC2, ECS, Lambda, etc.

B

15
New cards

Which AWS service is specifically designed to automatically provision the resources required to host the code a developer uploads during the Development process?

A. CloudFormation

B. CloudTrail

C. Elastic Beanstalk

D. CloudFormer

C

16
New cards

You need a configuration management service that will allow your system administrators to use Chef to configure and operate your web applications. Which AWS service would best suit your needs?

A. Trusted Advisor

B. OpsWorks

C. CloudWatch

D. CloudTrail

B

17
New cards

You need a service that will aggregate your data from multiple data sources (S3, DynamoDB, RDS, etc.) and provide business intelligence based on this data. Which AWS service should you use?

A. CloudViewer

B. Quick Sight

C. Spice

D. CloudOracle

B

18
New cards

What is an Amazon VPC?

A. Virtual Public Cloud

B. Virtual Private Cloud

C. Virtual Public Compute

D. Virtual Private Compute

B

19
New cards

Which of the following services connects an on-premise software appliance (or virtual machine) with cloud based storage?

A. Snowball

B. S3

C. Glacier

D. Storage Gateway

D

20
New cards

Amazon's highly scalable DNS service is known as

A. Route53

B. CloudTrail

C. Elastic Map Reduce

D. Directory Service

A

21
New cards

What does an AWS Region consist of?

A. A collection of data centers that is spread evenly around a specific continent.

B. A collection of databases that can only be accessed from a specific geographic region.

C. A distinct location within a geographic area designed to provide high availability to a specific geography.

D. A console that gives you a quick, global picture of your cloud computing environment.

C

22
New cards

Which AWS service offers the following database engines: SQL, MySQL, MariaDB, PostgreSQL, Aurora, and Oracle?

A. DynamoDB

B. Kinesis

C. Relational Database Service (RDS)

D. Redshift

C

23
New cards

Which of the following is a petabyte-scale data transfer solution?

A. SQS

B. Avalanche

C. Snowball

D. SWF

C

24
New cards

You need to add new users to your AWS account and set password rotation policies for these new users. Which AWS service should you use to do so?

A. Directory Service

B. Key Management Service

C. IAM

D. Inspector

C

25
New cards

Which AWS service would be the best choice for long term data archival?

A. Glacier

B. CloudFront

C. S3

D. EFS

A

26
New cards

Which database service would you use to migrate a database from Oracle to MySQL?

A. Redshift

B. ElastiCache

C. RDS

D. DMS

D

27
New cards

You need to monitor the performance of your EC2 instances (including metrics such as CPU Utilization, Disk IO, etc.) Which service would best meet this requirement?

A. CloudWatch

B. CloudMonitor

C. CloudTrail

D. CloudAudit

A

28
New cards

Which AWS service is used for collating large amounts of data streamed from multiple sources?

A. Kinesis

B. CloudCapture

C. SQS

D. CloudFront

A

29
New cards

Your system administrators need to receive notification of specified events affecting your AWS environment (such as alarms, etc.) Which service should you enable?

A. Cognito

B. Mobile hub

C. Device Farm

D. SNS

D

30
New cards

Your company is interested in implementing a VDI solution to replace their local desktop environment. Which AWS service should you consider?

A. WorkSpaces

B. WorkMail

C. WorkDocs

D. IoT

A

31
New cards

When creating a new security group, all inbound traffic is allowed by default.

A. False

B. True

A

32
New cards

Which statement best describes IAM?

A. IAM stands for Improvised Application Management, and it allows you to deploy and manage applications in the AWS Cloud.

B. IAM allows you to manage users, groups, roles, and their corresponding level of access to the AWS Platform.

C. IAM allows you to manage permissions for AWS resources only.

D. IAM allows you to manage users' passwords only. AWS staff must create new users for your organization. This is done by raising a ticket.

B

33
New cards

Every user you create in the IAM systems starts with ______.

A. Full Permissions

B. No Permissions

C. Partial Permissions

B

34
New cards

Power User Access allows _____.

A. Access to all AWS services except the management of groups and users within IAM.

B. Users to inspect the source code of the AWS platform.

C. Read Only access to all AWS services and resources.

D. Full Access to all AWS services and resources.

A

35
New cards

Using SAML (Security Assertion Markup Language 2.0), you can give your federated users single sign-on (SSO) access to the AWS Management Console.

A. True

B. False

A

36
New cards

When you create a new user, that user _____.

A. Will be able to log in to the console anywhere in the world, using their access key ID and secret access key.

B. Will be able to log in to the console only after multi-factor authentication is enabled on their account.

C. Will be able to interact with AWS using their access key ID and secret access key using the API, CLI, or the AWS SDKs.

D. WIll only be able to log in to the console in the region in which that user was created.

C

37
New cards

In what language are policy documents written?

A. JSON

B. Python

C. Node.js

D. Java

A

38
New cards

What is an additional way to secure the AWS accounts of both the root account and the new users alike?

A. Store the access key id and secret access key of all users in a publicly accessible plain text document on S3 of which only you and members of your organization know the address to.

B. Configure the AWS Console so that you can only log in to it from your internal network IP address range.

C. Configure the AWS Console so that you can only log in to it from a specific IP Address range.

D. Implement Multi-Factor Authentication for all accounts.

D

39
New cards

You are a developer at a fast growing start up. Until now, you have used the root account to log in to the AWS console. However, as you have taken on more staff, you will now need to stop sharing the root account to prevent accidental damage to your AWS infrastructure. What should you do so that everyone can access the AWS resources they need to do their jobs? (Choose 2)

A. Create an addition AWS root account for each new user.

B. Create a customized sign in link such as "yourcompany-signin.aws.amazon.com/console" for your new users to use to sign in with.

C. Give your users the root account credentials so that they can also sign in.

D. Create individual user accounts with minimum necessary rights and tell the staff to log in to the console using the credentials provided.

B, D

40
New cards

Which of the following is not a feature of IAM?

A. IAM integrates with existing active directory account allowing single sign-on.

B. IAM offers fine-grained access control to AWS resources.

C. IAM allows you to setup biometric authentication, so that no passwords are required.

D. IAM offers centralized control of your AWS account.

C

41
New cards

What level of access does the "root" account have?

A. No Access

B. Power User Access

C. Read Only Access

D. Administrator Access

D

42
New cards

You are a solutions architect working for a large engineering company who are moving from a legacy infrastructure to AWS. You have configured the company's first AWS account and you have set up IAM. Your company is based in Andorra, but there will be a small subsidiary operating out of South Korea, so that office will need its own AWS environment. Which of the following statements is true?

A. You will then need to configure Users and Policy Documents for each region respectively.

B. You will need to configure your users regionally, however your policy documents are global.

C. You will need to configure Users and Policy Documents only once, as these are applied globally.

D. You will need to configure your policy documents regionally, however your users are global.

C

43
New cards

What is the default level of access a newly created IAM User is granted?

A. Administrator access to all AWS services.

B. Power user access to all AWS services.

C. Read only access to all AWS services.

D. No access to any AWS services.

D

44
New cards

A new employee has just started work, and it is your job to give her administrator access to the AWS console. You have given her a user name, an access key ID, a secret access key, and you have generated a password for her. She is now able to log in to the AWS console, but she is unable to interact with any AWS services. What should you do next?

A. Grant her Administrator access by adding her to the Administrators' group.

B. Require multi-factor authentication for her user account.

C. Ensure she is logging in to the AWS console from your corporate network and not the normal internet.

D. Tell her to log out and try logging back in again.

A

45
New cards

To save administration headaches, Amazon recommends that you leave all security groups in web facing subnets open on port 22 to 0.0.0.0/0 CIDR. That way, you can connect wherever you are in the world.

A. False

B. True

A

46
New cards

You have a client who is considering a move to AWS. In establishing a new account, what is the first thing the company should do?

A. Set up an account via SNS (Simple Notification Service)

B. Set up an account using their company email address.

C. Set up an account via SQS (Simple Queue Service).

D. Set up an account using Cloud Search.

B

47
New cards

You are a security administrator working for a hotel chain. You have a new member of staff who has started as a systems administrator, and she will need full access to the AWS console. You have created the user account and generated the access key id and the secret access key. You have moved this user into the group where the other administrators are, and you have provided the new user with their secret access key and their access key id. However, when she tries to log in to the AWS console, she cannot. Why might that be?

A. You cannot log in to the AWS console using the Access Key ID / Secret Access Key pair. Instead, you must generate a password for the user, and supply the user with this password and your organization's unique AWS console login URL.

B. You have not yet activated multi-factor authentication for the user, so by default they will not be able to log in.

C. You have not applied the "log in from console" policy document to the user. You must apply this first so that they can log in.

D. Your user is trying to log in from the AWS console from outside the corporate network. This is not possible.

A

48
New cards

Which of the following is not a component of IAM?

A. Groups

B. Organizational Units

C. Users

D. Roles

B

49
New cards

A __________ is a document that provides a formal statement of one or more permissions.

A. Group

B. Role

C. User

D. Policy

D

50
New cards

You have created a new AWS account for your company, and you have also configured multi-factor authentication on the root account. You are about to create your new users. What strategy should you consider in order to ensure that there is good security on this account.

A. Restrict login to the corporate network only.

B. Give all users the same password so that if they forget their password they can just ask their co-workers.

C. Require users to only be able to log in using biometric authentication.

D. Enact a strong password policy: user passwords must be changed every 45 days, with each password containing a combination of capital letters, lower case letters, numbers, and special symbols.

D

51
New cards

In S3 the durability of my files is...

A. 99.99%

B. 99.90%

C. 99.999999999%

D. 100%

B

52
New cards

What is the availability of S3-RRS?

A. 99.99%

B. 99.90%

C. 100%

D. 99%

A

53
New cards

You have been asked by your company to create an S3 bucket with the name "acloudguru1234" in the EU West region. What would the URL for this bucket be?

A. https://s3-us-east-1.amazonaws.com/acloudguru1234

B. https://s3-eu-west-1-amazonaws.com/acloudguru1234

C. https://s3-acloudguru1234.amazonaws.com/

D. https://s3.acloudguru1234.amazonaws.com/eu-west-1

B

54
New cards

You work for a busy digital marketing company who currently store their data on premise. They are looking to migrate to AWS S3 and to store their data in buckets. Each bucket will be named after their individual customers, followed by a random series of letters and numbers. Once written to S3 the data is rarely changed, as it has already been sent to the end customer for them to use as they see fit. However on some occasions, customers may need certain files updated quickly, and this may be for work that has been done months or even years ago. You would need to be able to access this data immediately to make changes in that case, but you must also keep your storage costs extremely low. The data is not easily reproducible if lost. Which S3 storage class should you choose to minimize costs and to maximize retrieval times?

A. S3 - IA

B. Glacier

C. S3 - RRS

D. S3

A

55
New cards

You work for a major news network in Europe. They have just released a new mobile app that allows users to post their photos of newsworthy events in real time. Your organization expects this app to grow very quickly, essentially doubling its user base each month. The app uses S3 to store the images, and you are expecting sudden and sizable increases in traffic to S3 when a major news event takes place (as users will be uploading large amounts of content.) You need to keep your storage costs to a minimum, and it does not matter if some objects are lost. With these factors in mind, which storage media should you use to keep costs as low as possible?

A. S3 - Reduced Redundancy Storage (RRS)

B. Glacier

C. S3 - Provisioned IOPS

D. S3 - Infrequently Accessed Storage

D

56
New cards

You have uploaded a file to S3. Which HTTP code would indicate that the upload was successful?

A. HTTP 404

B. HTTP 307

C. HTTP 501

D. HTTP 200

D

57
New cards

What does S3 stand for?

A. Simple SQL Service

B. Simple Serial Sequence

C. Simple Storage Service

D. Straight Storage Service

C

58
New cards

You work for a health insurance company that amasses a large number of patients' health records. Each record will be used once when assessing a customer, and will then need to be securely stored for a period of 7 years. In some rare cases, you may need to retrieve this data within 24 hours of a claim being lodged. Given these requirements, which type of AWS storage would deliver the least expensive solution?

A. S3

B. S3 - RRS

C. Glacier

D. S3 - IA

C

59
New cards

Your digital marketing company currently stores their data on premise, but they are considering migrating their data storage to S3. Each bucket will be named after an individual customer, followed by a random series of letters and numbers. Once written to S3, the customer data is rarely changed. However, on occasion, customers may need immediate access to certain files, which are not easily reproducible if lost. Which S3 storage class should you choose to minimize costs and to expedite a quick retrieval of your customers' data?

A. S3 - RRS

B. Glacier

C. S3 - IA

D. S3

C

60
New cards

You run a popular photo sharing website that depends on S3 to store content. Paid advertising is your primary source of revenue. However, you have discovered that other websites are linking directly to the images in your buckets, not to the HTML pages that serve the content. This means that people are not seeing the paid advertising, and you are paying AWS unnecessarily to serve content directly from S3. How might you resolve this issue?

A. Use security groups to blacklist the IP addresses of the sites that link directly to your S3 bucket.

B. Use EBS rather than S3 to store the content.

C. Use CloudFront to serve the static content.

D. Remove the ability for images to be served publicly to the site and then use signed URLs with expiry dates.

D

61
New cards

How many S3 buckets can I have per account by default?

A. 50

B. 20

C. 100

D. 10

C

62
New cards

The difference between S3 and EBS is that EBS is object based where as S3 is block based.

A. False

B. True

A

63
New cards

What is the minimum file size that I can store on S3?

A. 0 bytes

B. 1KB

C. 1 byte

D. 1MB

A

64
New cards

What is AWS Storage Gateway?

A. It's an on-premise virtual appliance that can be used to cache S3 locally at a customers site.

B. It allows large scale import/exports in to the AWS cloud without the use of an internet connection.

C. It allows a direct MPLS connection in to AWS.

D. None of the above.

A

65
New cards

What does RRS stand for when talking about S3?

A. Redundancy Removal System

B. Relational Rights Storage

C. Regional Rights Standard

D. Reduced Redundancy Storage

D

66
New cards

You need to use an Object based storage solution to store your critical, non replaceable data in a cost effective way. This data will be frequently updated and will need some form of version control enabled on it. Which S3 storage solution should you use?

A. S3

B. S3 - IA (Infrequently Accessed Storage)

C. S3 - RRS (Reduced Redundancy Storage)

D. Glacier

A

67
New cards

One of your users is trying to upload a 7.5GB file to S3. However they keep getting the following error message - "Your proposed upload exceeds the maximum allowed object size". What is a possible solution for this?

A. Design your application to use the multi-part upload API for all objects.

B. Design your application to use large object upload API for this object.

C. Raise a ticket with AWS to increase your maximum object size.

D. Log in to the S3 console, click on the bucket and then click properties. You can then increase your maximum object size to 1TB.

A

68
New cards

S3 has what consistency model for PUTS of new objects?

A. Read after Write consistency

B. Write after Read consistency

C. Eventual consistency

D. Usual consistency

A

69
New cards

What is the availability of objects stored in S3?

A. 100%

B. 99.99%

C. 99%

D. 99.90%

B

70
New cards

S3 has eventual consistency for which HTTP Methods?

A. PUTS of new objects and DELETES

B. Overwrite PUTS and DELETES

C. PUTS of new objects and UPDATES

D. UPDATES and DELETES

B

71
New cards

You work for manufacturing company who operate a hybrid infrastructure with systems located both in a local Datacenter and in AWS, connected via Direct Connect. Currently, all on premise servers are backed up to a local NAS, but your CTO wants you decide on the best way to store copies of these backups in AWS. He has asked for you to provide a service which maintains maximum durability. On demand access to the files is required, but minimize cost reduce cost. Choose the best option from the following which meets the brief.

A. Copy the files from the NAS to an S3 bucket with the Reduced Redundancy Storage class.

B. Copy the files from the NAS to an S3 bucket with the One Zone-IA class.

C. Copy the files from the NAS to an S3 bucket configured as Standard class.

D. Copy the files to an EC2 instance with a large EBS volume attached.

B

72
New cards

What is the durability on RRS?

A. 99%

B. 99.99%

C. 100%

D. 99.90%

B

73
New cards

You are a solutions architect who works with a large digital media company. The company has decided that they want to operate within the Japanese region and they need a bucket called "testbucket" set up immediately to test their web application on. You log in to the AWS console and try to create this bucket in the Japanese region however you are told that the bucket name is already taken. What should you do to resolve this?

A. Bucketnames are global, not regional. This is a popular bucket name and is already taken. You should choose another bucket name.

B. Run a WHO IS request on the bucket name and get the registered owners email address. Contact the owner and ask if you can purchase the rights to the bucket.

C. Raise a ticket with AWS and ask them to release the name "testbucket" to you.

D. Change your region to Korea and then create the bucket "testbucket".

A

74
New cards

You run a meme creation website that stores the original images in S3 and each meme's meta data in DynamoDB. You need to decide upon a low-cost storage option for the memes, themselves. If a meme object is lost, a Lambda function will automatically recreate it using the original file from S3 and the metadata from DynamoDB. Which storage solution should you use to store the non-critical, easily reproducible memes in the most cost effective way?

A. Glacier

B. S3

C. S3 - IA

D. S3 - RRS

D

75
New cards

What is Amazon Glacier?

A. A highly secure firewall designed to keep everything out.

B. A tool that allows to "freeze" an EBS volume.

C. An AWS service designed for long term data archival.

D. It is a tool used to resurrect deleted EC2 snapshots.

C

76
New cards

Can you attach an EBS volume to more than one EC2 instance at the same time?

A. Yes

B. No

C. If that EC2 volume is part of an AMI

D. Depends on which region

B

77
New cards

To help you manage your Amazon EC2 instances you can assign your own metadata in the form of

A. Wildcards

B. Certificates

C. Tags

D. Notes

C

78
New cards

EBS Snapshots are backed up to S3 in what manner?

A. Incrementally

B. Exponentially

C. Decreasingly

D. EBS Snapshots are not stored in S3

A

79
New cards

Which AWS CLI command should I use to create a snapshot of an EBS volume?

A. aws ec2 create-snapshot

B. aws ec2 fresh-snapshot

C. aws ec2 new-snapshot

D. aws ec2 deploy-snapshot

A

80
New cards

What is the underlying Hypervisor for EC2?

A. ESX

B. Xen

C. OVM

D. Hyper-V

B

81
New cards

To retrieve instance metadata or userdata you will need to use the following IP Address;

A. http://127.0.0.1

B. http://192.168.0.254

C. http://10.0.0.1

D. http://169.254.169.254

D

82
New cards

If an Amazon EBS volume is an additional partition (ie not the root volume), can I detach it without stopping the instance?

A. No, you will need to stop the instance.

B. Yes, although it may take some time.

B

83
New cards

Can I move a reserved instance from one region to another?

A. Yes

B. No

C. Only in the US

D. Depends on the region

B

84
New cards

You can add multiple volumes to an EC2 instance and then create your own RAID 5/RAID 10/RAID 0 configurations using those volumes.

A. True

B. False

A

85
New cards

When creating a new security group, all in bound traffic is allowed by default.

A. False

B. True

A

86
New cards

You need to know both the private IP address and public IP address of your EC2 instance. You should ________.

A. Run IPCONFIG (Windows) or IFCONFIG (Linux).

B. Retrieve the instance Userdata from http://169.254.169.254/latest/meta-data/.

C. Use the following command: AWS EC2 DisplayIP.

D. Retrieve the instance Metadata from http://169.254.169.254/latest/meta-data/.

D

87
New cards

In order to enable encryption at rest using EC2 and Elastic Block Store you must ________.

A. Configure encryption when creating the EBS volume

B. Configure encryption using the appropriate Operating Systems file system

C. Configure encryption using X.509 certificates

D. Mount the EBS volume in to S3 and then encrypt the bucket using a bucket policy.

A

88
New cards

Amazon's EBS volumes are ________.

A. Object based storage

B. Block based storage

C. Encrypted by default

D. Not suitable for databases

B

89
New cards

Placement Groups can be created across 2 or more Availability Zones.

A. True

B. False

A

90
New cards

I can use the AWS Console to add a role to an EC2 instance after that instance has been created and powered-up.

A. False

B. True

B

91
New cards

You have developed a new web application in us-west-2 that requires six Amazon Elastic Compute Cloud (EC2) instances running at all times. You have three availability zones available in that region (us-west-2a, us-west-2b, and us-west-2c). You need 100 percent fault tolerance if any single Availability Zone in us-west-2 becomes unavailable. How would you do this, each answer has 2 answers, select the answer with BOTH correct answers.

A. Answer 1 - Us-west-2a with two EC2 instances, us-west-2b with two EC2 instances, and us-west-2c with two EC2 instances. Answer 2 - Us-west-2a with six EC2 instances, us-west-2b with six EC2 instances, and us-west-2c with no EC2 instances

B. Answer 1 - Us-west-2a with six EC2 instances, us-west-2b with six EC2 instances, and us-west-2c with no EC2 instances. Answer 2 - Us-west-2a with three EC2 instances, us-west-2b with three EC2 instances, and us-west-2c with three EC2 instances.

C. Answer 1 - Us-west-2a with three EC2 instances, us-west-2b with three EC2 instances, and us-west-2c with no EC2 instances. Answer 2 - Us-west-2a with three EC2 instances, us-west-2b with three EC2 instances, and us-west-2c with three EC2 instances.

D. Answer 1 - Us-west-2a with three EC2 instances, us-west-2b with three EC2 instances, and us-west-2c with three EC2 instances. Answer 2 - Us-west-2a with four EC2 instances, us-west-2b with two EC2 instances, and us-west-2c with two EC2 instances.

B

92
New cards

Can I delete a snapshot of an EBS Volume that is used as the root device of a registered AMI?

A. No

B. Yes

C. Only using the AWS API.

D. Only via the Command Line.

A

93
New cards

The use of a placement group is ideal ________.

A. Your fleet of EC2 Instances requires low latency and high network throughput across multiple availability zones.

B. When you need to deploy EC2 instances that require high disk IO.

C. When you need to deploy EC2 instances that require high disk IO.

D. Your fleet of EC2 instances requires high network throughput and low latency within a single availability zone.

D

94
New cards

I can change the permissions to a role, even if that role is already assigned to an existing EC2 instance, and these changes will take effect immediately.

A. True

B. False

A

95
New cards

Will an Amazon EBS root volume persist independently from the life of the terminated EC2 instance to which it was previously attached? In other words, if I terminated an EC2 instance, would that EBS root volume persist?

A. No

B. Only if I specify (using either the AWS Console or the CLI) that it should do so.

C. Yes

D. It depends on the region in which the EC2 instance is provisioned.

B

96
New cards

Individual instances are provisioned ________.

A. In Regions

B. In Availability Zones

C. Globally

B

97
New cards

Is it possible to perform actions on an existing Amazon EBS Snapshot?

A. It depends on the region.

B. No.

C. EBS does not have snapshot functionality.

D. Yes, through the AWS APIs, CLI, and AWS Console.

D

98
New cards

Can a placement group be deployed across multiple Availability Zones?

A. Yes

B. No

C. Only in us-east-1

D. Yes, but only using the AWS API

A

99
New cards

Which of the following statements are true about containers on AWS? (Choose 5)

A. ECS allows you to control the scheduling and placement of your containers and tasks.

B. You can use the ECS Agent without needing to use ECS.

C. To use private images in ECS, you must refer to Docker images from ECR.

D. You can install and manage Kubernetes on AWS, yourself.

E. ECR can be used to store Docker images.

F. To be able to use ECS, you must use the ECS Agent.

G. You must use ECS to manage running Docker containers in AWS.

H. You can have AWS manage Kubernetes for you.

A, D, E, F, H

100
New cards

Route53 is Amazon's DNS Service.

A. True

B. False

A