Q1. Please select the Amazon EC2 resource which cannot be tagged.A. images (AM|s, kernels, RAM disks)B. Amazon EBS volumesC. Elastic IP addressesD. VPCsView AnswerAnswer: CQ2. An application hosted at the EC2 instance receives an HTTP request from ELB. The same request has an X-Forvvarded-For header, which has three IP addresses. Which system's IP will be a part of this header?A.…
Q1. In Amazon EC2, if your EBS volume stays in the detaching state, you can force the detachment by clicking .A. Force DetachB. Detach InstanceC. AttachVoIumeD. Attachlnstance View AnswerAnswer: AExplanation:If your volume stays in the detaching state, you can force the detachment by clicking Force Detach. Reference: http://docs.amazonwebservices.com/AWSEC2/latest/UserGuide/ebs-detaching-volume.htmlQ2. Any person or application that interacts with AWS requires security credentials. AWS uses…
Q1. A read only news reporting site with a combined web and application tier and a database tier that receives large and unpredictable traffic demands must be able to respond to these traffic fluctuations automatically. What AWS services should be used meet these requirements?A. Stateless instances for the web and application tier synchronized using Elasticache Memcached in an autoscaimg group…
Q1. In DynamoDB, could you use IAM to grant access to Amazon DynamoDB resources and API actions?A. In DynamoDB there is no need to grant accessB. Depended to the type of accessC. NoD. Yes View AnswerAnswer: DExplanation:Amazon DynamoDB integrates with AWS Identity and Access Management (IAM). You can use AWS IAM to grant access to Amazon DynamoDB resources and API actions.…
Q1. A user has configured ELB with two EBS backed EC2 instances. The user is trying to understand the DNS access and IP support for ELB. Which of the below mentioned statements may not help the user understand the IP mechanism supported by ELB?A. The client can connect over IPV4 or IPV6 using DualstackB. Communication between the load balancer and…
Q1. Company B is launching a new game app for mobile devices. Users will log into the game using their existing social media account to streamline data capture. Company B would like to directly save player data and scoring information from the mobile app to a DynamoDS table named Score DataWhen a user saves their game the progress data will…
Q1. Which of the following features are provided by Amazon EC2?A. Exadata Database Machine, Optimized Storage Management, Flashback Technology, and Data WarehousingB. Instances, Amazon Machine Images (AMIs), Key Pairs, Amazon EBS Volumes, Firewall, Elastic IP address, Tags, and Virtual Private Clouds (VPCs)C. Real Application Clusters (RAC), Elasticache Machine Images (EMIs), Data Warehousing, Flashback Technology, Dynamic IP addressD. Exadata Database Machine,…
Q1. Because of the extensibility limitations of striped storage attached to Windows Sewer, Amazon RDS does not currently support increasing storage on a _ DB Instance.A. SQL SewerB. MySQLC. Oracle View AnswerAnswer: AQ2. In Amazon EC2, how many Elastic IP addresses can you have by default?A. 10B. 2C. 5D. 20View AnswerAnswer: C Explanation:The number of Elastic IP addresses you can have in…
Q1. Having set up a website to automatically be redirected to a backup website if it fails, you realize that there are different types of failovers that are possible. You need all your resources to be available the majority of the time. Using Amazon Route 53 which configuration would best suit this requirement?A. Active-active failover.B. None. Route 53 can't failover.C.…
Q1. Your team has a tomcat-based Java application you need to deploy into development, test and production environments. After some research, you opt to use Elastic Beanstalk due to its tight integration with your developer tools and RDS due to its ease of management. Your QA team lead points out that you need to roll a sanitized set of production…
Q1. A, _ is an indMdual, system, or application that interacts with AWS programmatically.A. userB. AWS AccountC. GroupD. Role View AnswerAnswer: AQ2. Which of the following statements is true of tagging an Amazon EC2 resource?A. You don't need to specify the resource identifier while terminating a resource.B. You can terminate, stop, or delete a resource based solely on its tags.C. You…
Q1. You are designing an SSUTLS solution that requires HTIPS clients to be authenticated by the Web server using client certificate authentication. The solution must be resilient.Which of the following options would you consider for configuring the web server infrastructure? (Choose 2 answers)A. Configure ELB with TCP listeners on TCP/4d3. And place the Web servers behind it.B. Configure your Web…
Q1. A user has launched one EC2 instance in the US West region. The user wants to access the RDS instance launched in the US East region from that EC2 instance. How can the user configure the access for that EC2 instance?A. Configure the IP range of the US West region instance as the ingress security rule of RDSB. It…
Q1. A company wants to review the security requirements of Glacier. Which of the below mentioned statements is true with respect to the AWS Glacier data security?A. All data stored on Glacier is protected with AES-256 serverside encryption.B. All data stored on Glacier is protected with AES-128 serverside encryption.C. The user can set the serverside encryption flag to encrypt the…
Q1. Amazon RDS automated backups and DB Snapshots are currently supported for only the _ _ storage engineA. MyISAMB. InnoDB View AnswerAnswer: BQ2. Can resource record sets in a hosted zone have a different domain suffix (for example, www.bIog. acme.com and www.acme.ca)?A. Yes, it can have for a maximum of three different TLDs.B. YesC. Yes, it can have depending on the…
Q1. After deciding that EMR will be useful in analysing vast amounts of data for a gaming website that you are architecting you have just deployed an Amazon EMR Cluster and wish to monitor the cluster performance. Which of the following tools cannot be used to monitor the cluster performance?A. KinesisB. GangliaC. C|oudWatch MetricsD. Hadoop Web Interfaces View AnswerAnswer: AExplanation:Amazon EMR…
Q1. Can we attach an EBS volume to more than one EC2 instance at the same time?A. Yes.B. NoC. Only EC2-optimized EBS volumes.D. Only in read mode.View AnswerAnswer: AQ2. Will my standby RDS instance be in the same Availability Zone as my primary?A. Only for Oracle RDS typesB. YesC. Only if configured at launchD. NoView AnswerAnswer: DQ3. True or False:…
Q1. Your company has an on-premises multi-tier PHP web application, which recently experienced downtime due to a large burst In web traffic due to a company announcement Over the coming days, you are expecting similar announcements to drive similar unpredictable bursts, and are looking to find ways to quickly improve your infrastructures ability to handle unexpected increases in traffic.The application…
Q1. A user comes to you and wants access to Amazon CIoudWatch but only wants to monitor a specific LoadBaIancer. Is it possible to give him access to a specific set of instances or a specific LoadBaIancer?A. No because you can't use IAM to control access to CIoudWatch data for specific resources.B. Yes. You can use IAM to control access…
Q1. True or False: Manually created DB Snapshots are deleted after the DB Instance is deleted.A. TRUEB. FALSEView AnswerAnswer: AQ2. How many types of block devices does Amazon EC2 support?A. 4B. 5C. 2D. 1View AnswerAnswer: CExplanation:Amazon EC2 supports 2 types of block devices. Reference:http://docs.amazonwebservices.com/AWSEC2/latest/UserGuide/block-device-mapping-concepts.htmlQ3. You need to set up security for your VPC and you know that Amazon VPC provides…
Q1. Your company has multiple IT departments, each with their own VPC. Some VPCs are located within the same AWS account, and others in a different AWS account. You want to peer together all VPCs to enable the IT departments to have full access to each others' resources. There are certain limitations placed on VPC peering. Which of the following…
Q1. Your fortune 500 company has under taken a TCO analysis evaluating the use of Amazon 53 versus acquiring more hardware The outcome was that ail employees would be granted access to use Amazon 53 for storage of their personal documents.Which of the following will you need to consider so you can set up a solution that incorporates single sign-on…
Q1. While creating a network in the VPC, which of the following is true of a NAT device?A. You have to administer the NAT Gateway Service provided by AWS.B. You can choose to use any of the three kinds of NAT devices offered by AWS for special purposes.C. You can use a NAT device to enable instances in a private…
Q1. Name the disk storage supported by Amazon Elastic Compute Cloud (EC2).A. None of theseB. Amazon AppStream storeC. Amazon SNS storeD. Amazon Instance Store View AnswerAnswer: DExplanation:Amazon EC2 supports the following storage options: Amazon Elastic Block Store (Amazon EBS) Amazon EC2 Instance Store Amazon Simple Storage Service (Amazon S3)Reference: http://docs.amazonwebservices.com/AWSEC2/latest/UserGuide/Storage.htmlQ2. In Amazon EC2 Container Service, are other container types supported?A. Yes,…
Q1. Your company policies require encryption of sensitive data at rest. You are considering the possible options for protecting data while storing it at rest on an EBS data volume, attached to an EC2 instance. Which of these options would allow you to encrypt your data at rest? (Choose 3 answers)A. Implement third party volume encryption toolsB. Do nothing as…
Q1. You are implementing a URL whitelisting system for a company that wants to restrict outbound HTTP'S connections to specific domains from their EC2-hosted applications you deploy a single EC2 instance running proxy software and configure It to accept traffic from all subnets and EC2 instances in the VPC. You configure the proxy to only pass through traffic to domains…
Q1. What is the Reduced Redundancy option in Amazon 53?A. Less redundancy for a lower cost.B. It doesn't exist in Amazon 53, but in Amazon EBS.C. It allows you to destroy any copy of your files outside a specific jurisdiction.D. It doesn't exist at all View AnswerAnswer: AQ2. An existing client comes to you and says that he has heard that…
Q1. You are designing a photo sharing mobile app the application will store all pictures in a single Amazon 53 bucket.Users will upload pictures from their mobile device directly to Amazon 53 and will be able to view and download their own pictures directly from Amazon 53.You want to configure security to handle potentially millions of users in the most…
Q1. Making your snapshot public shares all snapshot data with everyone. Can the snapshots with AWS Market place product codes be made public?A. NoB. Yes View AnswerAnswer: BQ2. If I want to run a database in an Amazon instance, which is the most recommended Amazon storage opHon?A. Amazon Instance StorageB. Amazon EBSC. You can't run a database inside an Amazon instance.D.…
Q1. You are designing an SSUTLS solution that requires HTIPS clients to be authenticated by the Web server using client certificate authentication. The solution must be resilient.Which of the following options would you consider for configuring the web server infrastructure? (Choose 2 answers)A. Configure ELB with TCP listeners on TCP/4d3. And place the Web servers behind it.B. Configure your Web…
Q1. Do you need to shutdown your EC2 instance when you create a snapshot of EBS volumes that serve as root devices?A. No, you only need to shutdown an instance before deleting it.B. YesC. No, the snapshot would turn off your instance automatically.D. NoView AnswerAnswer: B Explanation:Yes, to create a snapshot for Amazon EBS volumes that serve as root devices, you…
Q1. How many relational database engines does RDS currently support?A. Three: MySQL, Oracle and Microsoft SQL Sewer.B. Just two: MySQL and Oracle.C. Five: MySQL, PostgreSQL, MongoDB, Cassandra and SQLite.D. Just one: MySQL. View AnswerAnswer: AQ2. After deciding that EMR will be useful in analysing vast amounts of data for a gaming website that you are architecting you have just deployed an…
Q1. While creating a network in the VPC, which of the following is true of a NAT device?A. You have to administer the NAT Gateway Service provided by AWS.B. You can choose to use any of the three kinds of NAT devices offered by AWS for special purposes.C. You can use a NAT device to enable instances in a private…
Q1. You want to use AWS Import/Export to send data from your S3 bucket to several of your branch offices. What should you do if you want to send 10 storage units to AWS?A. Make sure your disks are encrypted prior to shipping.B. Make sure you format your disks prior to shipping.C. Make sure your disks are 1TB or more.D.…
Q1. A user is running a batch process which runs for 1 hour every day. Which of the below mentioned options is the right instance type and costing model in this case if the user performs the same task for the whole year?A. EBS backed instance with on-demand instance pricing.B. EBS backed instance with heavy utilized reserved instance pricing.C. EBS…
Q1. Having just set up your first Amazon Virtual Private Cloud (Amazon VPC) network, which defined a default network interface, you decide that you need to create and attach an additional network interface, known as an elastic network interface (ENI) to one of your instances. Which of the following statements is true regarding attaching network interfaces to your instances in…
Q1. A group can contain many users. Can a user belong to multiple groups?A. Yes alwaysB. NoC. Yes but only if they are using two factor authenticationD. Yes but only in VPC View AnswerAnswer: AQ2. You are architecting a highly-scalable and reliable web application which will have a huge amount of content .You have decided to use Cloudfront as you know…
Q1. Amazon SWF is designed to help usersA. Design graphical user interface interactionsB. Manage user identification and authorizationC. Store Web contentD. Coordinate synchronous and asynchronous tasks which are distributed and fault tolerant. View AnswerAnswer: DQ2. What is the maximum key length of a tag'?A. 512 Unicode charactersB. 64 Unicode charactersC. 256 Unicode charactersD. 128 Unicode characters View AnswerAnswer: DQ3. What is the…
Q1. You need to measure the performance of your EBS volumes as they seem to be under performing. You have come up with a measurement of 1,024 KB I/O but your colleague tells you that EBS volume performance is measured in IOPS. How many IOPS is equal to 1,024 KB I/O?A. 16B. 256C. 8D. 4View AnswerAnswer: D Explanation:Several factors can affect…
Q1. Disabling automated backups _ disable the point-in-time recovery.A. if configured to canB. will neverC. will View AnswerAnswer: CQ2. In Amazon AWS, which of the following statements is true of key pairs?A. Key pairs are used only for Amazon SDKs.B. Key pairs are used only for Amazon EC2 and Amazon CIoudFront.C. Key pairs are used only for Elastic Load Balancing and…
Q1. After moving an E-Commerce website for a client from a dedicated server to AWS you have also set up auto scaling to perform health checks on the instances in your group and replace instances that fail these checks. Your client has come to you with his own health check system that he wants you to use as it has…
Q1. You are building a system to distribute confidential documents to employees. Using CIoudFront, what method could be used to serve content that is stored in S3, but not publically accessible from S3 directly?A. Add the CIoudFront account security group "amazon-cf/amazon-cf-sg" to the appropriate S3 bucket policy.B. Create a S3 bucket policy that lists the C|oudFront distribution ID as the…
Q1. You have been doing a lot of testing of your VPC Network by deliberately failing EC2 instances to test whether instances are failing over properly. Your customer who will be paying the AWS bill for all this asks you if he being charged for all these instances. You try to explain to him how the billing works on EC2…
Q1. You are designing an intrusion detection prevention (IDS/IPS) solution for a customer web application in a single VPC. You are considering the options for implementing IOS IPS protection for traffic coming from the Internet.Which of the following options would you consider? (Choose 2 answers)A. Implement IDS/IPS agents on each Instance running In VPCB. Configure an instance in each subnet…
Q1. In Amazon EC2, while sharing an Amazon EBS snapshot, can the snapshots with AWS IV|arketpIace product codes be public?A. Yes, but only for US-based providers.B. Yes, they can be public.C. No, they cannot be made public.D. Yes, they are automatically made public by the system. View AnswerAnswer: CExplanation:Snapshots with AWS Marketplace product codes can't be made public. Reference:http://docs.amazonwebservices.com/AWSEC2/latest/UserGuide/ebs-modifying-snapshot-permissions.ht mlQ2. An…
Q1. A user is currently building a website which will require a large number of instances in six months, when a demonstration of the new site will be given upon launch.Which of the below mentioned options allows the user to procure the resources beforehand so that they need not worry about infrastructure availability during the demonstration?A. Procure all the instances…
Q1. In Amazon EC2, partial instance-hours are billed .A. per second used in the hourB. per minute usedC. by combining partial segments into full hoursD. as full hours View AnswerAnswer: DExplanation:Partial instance-hours are billed to the next hour. Reference: http://aws.amazon.com/ec2/faqs/Q2. Amazon RDS automated backups and DB Snapshots are currently supported for only the _ _ storage engineA. InnoDBB. MyISAMView AnswerAnswer: AQ3.…
Q1. In Amazon Elastic Compute Cloud, which ofthe following is used for communication between instances in the same network (EC2-Classic or a VPC)?A. Private IP addressesB. Elastic IP addressesC. Static IP addressesD. Public IP addresses View AnswerAnswer: AExplanation:A private IP address is an IP address that's not reachable over the Internet. You can use private IP addresses for communication between instances…
Q1. Once again your customers are concerned about the security of their sensitive data and with their latest enquiry ask about what happens to old storage devices on AWS. What would be the best answer to this QUESTION ?A. AWS reformats the disks and uses them again.B. AWS uses the techniques detailed in DoD 5220.22-M to destroy data as part…
Q1. If I write the below command, what does it do? ec2-run ami-e3a5408a -n 20 -g appserverA. Start twenty instances as members of appserver group.B. Creates 20 rules in the security group named appserverC. Terminate twenty instances as members of appserver group.D. Start 20 security groups View AnswerAnswer: AQ2. A user is planning a highly available application deployment with EC2. Which…
Q1. My Read Replica appears "stuck" after a MuIti-AZ failover and is unable to obtain or apply updates from the source DB Instance. What do I do?A. You will need to delete the Read Replica and create a new one to rep lace it.B. You will need to disassociate the DB Engine and re associate it.C. The instance should be…
Q1. Amazon S3 allows you to set per-file permissions to grant read and/or write access. However you have decided that you want an entire bucket with 100 files already in it to be accessible to the public. You don't want to go through 100 files indMdually and set permissions. What would be the best way to do this?A. Move the…
Q1. A web-startup runs its very successful social news application on Amazon EC2 with an Elastic Load Balancer, an Auto-Scaling group of Java/Tomcat application-servers, and DynamoDB as data store. The main web-application best runs on m2 x large instances since it is highly memory- bound Each new deployment requires semi-automated creation and testing of a new AM for the…
Q1. For each DB Instance class, what is the maximum size of associated storage capacity?A. 5GBB. 1 TBC. 2TBD. 500GBView AnswerAnswer: BQ2. You have set up an Elastic Load Balancer (ELB) with the usual default settings, which route each request independently to the application instance with the smallest load. However, someone has asked you to bind a user's session to…
Q1. What happens to the 1/0 operations while you take a database snapshot?A. 1/0 operations to the database are suspended for a few minutes while the backup is in progress.B. 1/0 operations to the database are sent to a Replica (if available) for a few minutes while the backup is in progress.C. 1/0 operations will be functioning normallyD. 1/0 operations…