DCT Exam Review Flashcards

1
Q

A VPC peering connection is a networking connection between two ____ that enables you to _____ traffic between them using private IPv4 or IPv6 addresses.

A

A VPC peering connection is a networking connection between two VPCs that enables you to route traffic between them using private IPv4 or IPv6 addresses.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Amazon Elastic File System (Amazon EFS) provides a simple, _______, fully _______ elastic NFS file system for use with _____ services and on-premises resources.

A

Amazon Elastic File System (Amazon EFS) provides a simple, scalable, fully managed elastic NFS file system for use with Cloud services and on-premises resources.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are some use cases for DynamoDB?

Managing ___ session data

Storing __________ accessed data

Storing metadata for __ objects

A

Managing web session data

Storing infrequently accessed data

Storing metadata for S3 objects

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

You can create a VPC peering connection between your ______ or with a VPC in another AWS _______

A

You can create a VPC peering connection between your VPCs, or with a VPC in another AWS account.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Kinesis Firehose Destinations include:

Amazon S3

Amazon ________.

Amazon ___________

Splunk

A

Kinesis Firehose Destinations include:

Amazon S3

Amazon Redshift.

Amazon Elasticsearch

Splunk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

_______ per instance is an appropriate metric for auto-scaling with SQS.

A

Backlog per instance is an appropriate metric for auto-scaling with SQS.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Elasticsearch allows you to store, ______, and ________ huge volumes of data in near real-time and receive a response in _____________.

A

Elasticsearch allows you to store, search, and analyze huge volumes of data in near real-time and receive a response in milliseconds.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What happens when a load balancer determines that an instance is unhealthy?

A

What happens when a load balancer determines that an instance is unhealthy?

It stops routing requests to that instance.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Kinesis Data Firehose captures, _________, and _____ streaming data that you can deliver to destinations like S3 for later ________

A

Kinesis Data Firehose captures, transforms, and loads streaming data that you can deliver to destinations like S3 for later analysis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

EBS volumes cannot be shared by _______ instances

A

EBS volumes cannot be shared by multiple instances

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

User data can be used to perform common automated ___________ tasks and even run _____ after the instance starts

A

User data can be used to perform common automated configuration tasks and even run scripts after the instance starts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Kinesis Data Streams use cases include:

Real-time metrics and ________

Real-time data ________

Complex stream _________

A

Kinesis Data Streams use cases include:

Real-time metrics and reporting.

Real-time data analytics.

Complex stream processing.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

By default, security groups have no ________ rules

By default, a security group includes an ________ rule that ______ all ________ traffic

A

By default, security groups have no inbound rules.

By default, a security group includes an outbound rule that allows all outbound traffic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

When to use Elastic Network Interface (ENI):

This is the _____ adapter type for when you don’t have any _____-__________ requirements

Can be used with ___ instance types

A

When to use Elastic Network Interface (ENI):

This is the basic adapter type for when you don’t have any high-performance requirements

Can be used with all instance types

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

By default, the root volume for an EC2 backed by EBS is deleted when the instance terminates. You can change the default behavior by setting the _______________ attribute to _____ using a block device mapping.

A

By default, the root volume for an EC2 backed by EBS is deleted when the instance terminates. You can change the default behavior by setting the DeleteOnTermination attribute to false using a block device mapping.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Security groups are ________. If you send a request from your instance, the response traffic for that request is_______ regardless of _______ SG rules.

A

Security groups are stateful. If you send a request from your instance, the response traffic for that request is allowed regardless of inbound SG rules.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

You cannot create an ________ Read Replica from an __________ master DB instance.

A

You cannot create an encrypted Read Replica from an unencrypted master DB instance.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

File Gateway allows on-prem or EC2 instances to store objects in __ via ___ or ___ mount points

A

File Gateway allows on-prem or EC2 instances to store objects in S3 via NFS or SMB mount points

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Elastic Fabric Adapter (EFA) should be used with

_____-__________ Computing

Machine Learning use cases.

______ coupled applications.

Can be used with all _______ types.

A

When to use Elastic Fabric Adapter (EFA)

High-Performance Computing

Machine Learning use cases.

Tightly coupled applications.

Can be used with all instance types.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

You can change the security groups for an instance when the instance is in the _______ or ______

A

You can change the security groups for an instance when the instance is in the running or stopped

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

If you need SSL/TLS encryption in transit when connecting to a database from application servers, you should _________ the AWS-provided ____ _________. Use the __________ when connecting to the RDS DB instance.

A

If you need SSL/TLS encryption in transit when connecting to a database from application servers, you should Download the AWS-provided root certificates. Use the certificates when connecting to the RDS DB instance.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

When to use Enhanced Network Adapter (ENA)

Good for use cases that require higher __________ and lower inter-instance _______.

Supports ___ instance types only

A

When to use Enhanced Network Adapter (ENA)

Good for use cases that require higher bandwidth and lower inter-instance latency.

Supports HVM instance types only

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

Kinesis Video Streams Stores data for __ hours by default but can store for up to __ days.

A

Kinesis Video Streams Stores data for 24 hours by default but can store for up to 7 days.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

When using Volume Gateway Cached Mode, your primary data is stored in __ with frequently accessed data is _____ ______ on-prem

A

When using Volume Gateway Cached Mode, your primary data is stored in S3 with frequently accessed data is cached locally on-prem

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

Amazon SQS is ___-based polling, not ___-based if you need ___-based polling, use ___

A

Amazon SQS is pull-based polling, not push-based if you need push-based polling, use SNS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

AWS Security Token Service (AWS STS) is the service that you can use to create and provide users with ________ credentials that can control access to your ________

A

AWS Security Token Service (AWS STS) is the service that you can use to create and provide users with temporary credentials that can control access to your resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

An S3 notification can be set up to notify you when objects are _______ from Glacier to S3 standard.

A

An S3 notification can be set up to notify you when objects are restored from Glacier to S3.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

Auto Scaling groups cannot launch instances in multiple ______

A

Auto Scaling groups cannot launch instances in multiple Regions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

Between ECS and EKS, which is open source and which is AWS proprietary technology?

A

EKS is a managed version of the open-source tool Kubernetes.

ECS is AWS’ proprietary container management tool.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

If you need to prevent users in specific countries from accessing your content, you can use the ___________ geo-restriction

A

If you need to prevent users in specific countries from accessing your content, you can use the CloudFront geo-restriction

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
31
Q

____-_____ VPC peering connection is when the VPCs are in different _______

A

Inter-region VPC peering connection is when the VPCs are in different regions

32
Q

Geolocation routing lets you choose the resources that serve your traffic based on the location that ___ queries ________ from

A

Geolocation routing lets you choose the resources that serve your traffic based on the location that DNS queries originate from

33
Q

What state does an instance have to be in if you want to perform a hot, warm, or cold attach of an enhanced network interface?

Hot attach = ________

Warm attach = ________

Cold attach = ________

A

What state does an instance have to be in if you want to perform a hot, warm, or cold attach of an enhanced network interface?

Hot attach = Running

Warm attach = Stopped

Cold attach = Launching

34
Q

What do you call it when you attach an enhanced network interface to an instance when it’s running, stopped, or is being launched?

A

What do you call it when you attach an enhanced network interface to an instance when it’s, when it’s stopped or when the instance is being launched?

Instance is Running = Hot attach

Instance is Stopped = Warm attach

Instance is Launching = Cold attach

35
Q

Multiple Amazon EC2 instances can access an Amazon EFS file system _____________, providing a common data source for workloads and applications running on ________ instances or servers.

A

Multiple Amazon EC2 instances can access an Amazon EFS file system simultaneously, providing a common data source for workloads and applications running on multiple instances or servers.

36
Q

Scheduled Scaling is ideal for situations where you know ____ and how ____ you will need the additional capacity.

A

Scheduled Scaling is ideal for situations where you know when and how long you will need the additional capacity.

37
Q

An Aurora global database consists of one primary AWS Region where your data is _______ and up to __ read-only, secondary AWS Regions

A

An Aurora global database consists of one primary AWS Region where your data is mastered and up to 5 read-only, secondary AWS Regions.

38
Q

File gateway provides a ________ on-premises file server, which enables you to _____ and ______ files as objects in Amazon S3.

A

File gateway provides a virtual on-premises file server, which enables you to store and retrieve files as objects in Amazon S3.

39
Q

A pre-signed URL is mainly used to ________ access

A

A pre-signed URL is mainly used to restrict access

40
Q

Kinesis Data Streams enables you to build custom applications that process or analyze streaming data for ________ needs

A

Kinesis Data Streams enables you to build custom applications that process or analyze streaming data for specialized needs

41
Q

Attaching a second network interface to an instance cannot be used as a method to _______ or _______ the network bandwidth

A

Attaching a second network interface to an instance cannot be used as a method to increase or double the network bandwidth.

42
Q

Amazon Elastic File System (Amazon EFS) is built to ____ and _____ automatically as you ___ and ___ files, eliminating the need to provision and manage capacity to accommodate growth.

A

Amazon Elastic File System (Amazon EFS) is built to grow and shrink automatically as you add and remove files, eliminating the need to provision and manage capacity to accommodate growth.

43
Q

Enhanced networking provides higher __________, higher _______-___-______ (PPS) performance, and consistently lower inter-instance latencies than Elastic Network Interfaces.

A

Enhanced networking provides higher bandwidth, higher packet-per-second (PPS) performance, and consistently lower inter-instance latencies than Elastic Network Interfaces.

44
Q

How can you save money on unused EC2 Reserved Instances?

A

Sell the reserved instances on the Reserved Instance Marketplace.

45
Q

Which service can terminate and replace instances reported as unhealthy by the load balancer?

A

EC2 Auto Scaling

46
Q

Amazon RDS _____ an SSL certificate and _______ the certificate on the DB instance when Amazon RDS ________ the instance.

A

Amazon RDS creates an SSL certificate and installs the certificate on the DB instance when Amazon RDS provisions the instance.

47
Q

If you want to modify permissions to an SQS Queue, you’ll have to edit the ________-______ policy that’s ________ to the SQS queue

A

If you want to modify permissions to an SQS Queue you’ll have to edit the resource-based policy that’s attached to the SQS queue

48
Q

With Elastic Beanstalk, you can quickly _____ and _____ applications in the AWS Cloud without learning about the ___________ that runs those applications.

A

With Elastic Beanstalk, you can quickly deploy and manage applications in the AWS Cloud without learning about the infrastructure that runs those applications.

49
Q

The instance launched from the _______ launch configuration will be terminated first if you have triggered a scale-in.

A

The instance launched from the oldest launch configuration will be terminated first if you have triggered a scale-in.

50
Q

You can move a network interface from 1 instance to another if the instances are in different ______ but in the same AZ and VPC

A

You can move a network interface from 1 instance to another if the instances are in different subnets but in the same AZ and VPC

51
Q

When using VPC peering, you can not have overlapping ____ _____

A

When using VPC peering, you can not have overlapping CIDR blocks

52
Q

When you reboot an instance, it remains on the same physical host, so your instance keeps its public ___ name, ______ IP address, and any data on its _______ _____ volumes.

A

When you reboot an instance, it remains on the same physical host, so your instance keeps its public DNS name, private IP address, and any data on its instance store volumes.

53
Q

Amazon Kinesis makes it easy to ______, _______, and ________ real-time, streaming data to get timely insights that allow you to _____ quickly to new information.

A

Amazon Kinesis makes it easy to collect, process, and analyze real-time, streaming data to get timely insights that allow you to react quickly to new information.

54
Q

Elastic Fabric Adapter (EFA) enables customers to run applications requiring ____ levels of ____-____ communications at scale on AWS.

A

Elastic Fabric Adapter (EFA) enables customers to run applications requiring high levels of node-node communications at scale on AWS.

55
Q

You can detach secondary network interfaces when the instance is _______ or _______. However, you can’t detach the _______ network interface in those same states.

A

You can detach secondary network interfaces when the instance is running or stopped. However, you can’t detach the primary network interface in those states.

56
Q

NACL rules are evaluated by rule number from ______ to ______ and executed immediately when a ________ rule is found.

A

NACL rules are evaluated by rule number from lowest to highest and executed immediately when a matching rule is found.

57
Q

You cannot enable __________ after the initial _______ of the master DB instance.

A

You cannot enable encryption after the initial launch of the master DB instance.

58
Q

Your AWS account has default _____, formerly referred to as ______, for each AWS service.

A

Your AWS account has default quotas, formerly referred to as limits, for each AWS service.

59
Q

Network ACLs are _________, which means that responses to allowed ________ traffic are subject to the rules for _________ traffic and _____-____

A

Network ACLs are stateless, which means that responses to allowed inbound traffic are subject to the rules for outbound traffic and vice-versa.

60
Q

Volume Gateway is meant for Asynchronous _________ of on-prem data to __

A

Volume Gateway is meant for Asynchronous replication of on-prem data to S3

61
Q

DynamoDB is highly scalable and supports ______ read units per second and _____ write units per second.

A

DynamoDB is highly scalable and supports 24,000 read units per second and 3,300 write units per second.

62
Q

CloudFront is not used to create ____ __________ for your application, it is used to ________ access to media content.

A

CloudFront is not used to create High Availability for your application, it is used to accelerate access to media content.

63
Q

Kinesis Data Firehose is the easiest way to load ________ data into data _____ and ________ tools

A

Kinesis Data Firehose is the easiest way to load streaming data into data stores and analytics tools

64
Q

A pre-signed URL from S3 gives you more control over access to your content one example is that you can specify the __ ________ or range of __ ________ of the users who can ______ your content.

A

A pre-signed URL from S3 gives you more control over access to your content one example is that you can specify the IP address or range of IP addresses of the users who can access your content.

65
Q

Simple and Step Scaling policies are more suitable for situations where the load is __________.

A

Simple and Step Scaling policies are more suitable for situations where the load is unpredictable.

66
Q

Kinesis Data Streams enables real-time processing of streaming ___ _____

A

Kinesis Data Streams enables real-time processing of streaming big data.

67
Q

Kinesis Video Streams make it easy to securely stream video from ________ devices to AWS for ________, machine learning (ML), and _________

A

Kinesis Video Streams make it easy to securely stream video from connected devices to AWS for analytics, machine learning (ML), and processing

68
Q

A launch template is similar to a launch configuration in that it specifies instance ___________ information for EC2 instances.

A

A launch template is similar to a launch configuration in that it specifies instance configuration information for EC2 instances.

69
Q

An advantage of using a launch template instead of a launch configuration is that you can have multiple _______ of a launch template.

A

An advantage of using a launch template instead of a launch configuration is that you can have multiple versions of a launch template.

70
Q

A launch configuration is an _________ configuration template that an ____ uses to launch EC2 instances.

A

A launch configuration is an instance configuration template that an ASG’s uses to launch EC2 instances.

71
Q

AWS Import/Export allows you to ____ your portable storage devices to AWS to be uploaded to the ______

A

AWS Import/Export allows you to mail your portable storage devices to AWS to be uploaded to the cloud

72
Q

When failing over, Amazon RDS simply flips the _____ record for your DB instance to point to the ______, which is promoted to become the new _______.

A

When failing over, Amazon RDS simply flips the CNAME record for your DB instance to point to the standby, which is promoted to become the new primary.

73
Q

Amazon RDS automatically provisions and maintains a __________ standby replica in a different Availability Zone.

A

Amazon RDS automatically provisions and maintains a synchronous standby replica in a different Availability Zone.

74
Q

FIFO queues support up to ____ messages per second per API method

A

FIFO queues support up to 3,000 messages per second per API method

75
Q

Amazon Kinesis Data Analytics, the easiest way to process streaming data in real-time with standard ___

A

Amazon Kinesis Data Analytics, the easiest way to process streaming data in real-time with standard SQL