Security - Encryption Flashcards

1
Q

What is AWS KMS?

A

HA, Managed key encryption service for key storage, management, auditing to encrypt data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are some feature of KMS?

A

regional based, keys can only be used in the region you create them
symmetric keys - single key for encrypting and decrypting
asymmetric - public & private key

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How is KMS configured?

A
Name & describe
Define administrative permissions
Define usage permissions
Encrypt things (S3) using KMS key
Objects will show what key was used to encrypt
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which AWS services are integrated with KMS?

A
EBS
S3
Redshift
Elastic Transcode
WorkMail
RDS
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is AWS Cloudtrail?

A

AWS CloudTrail is a web service that records AWS API calls for your account and delivers log files to you
sent to S3 bucket and you manage the retention
delivered every 5 minutes with 15 min delay
can be aggregated across regions and accounts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is AWS CloudWatch?

A

performance monitoring, resource utilization, operational performance, log aggregation, hooks to event triggers
real-time, metrics, alarms, notifications, custom metrics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly