Incorrect Questions PT1 Flashcards

Correct your answer of Udemy AWS practice tests.

1
Q

Your EC2 Instances come with a monitoring feature that only offers basic metrics. Which service should you enable to get access to more metrics?

A

CloudWatch with detailed monitoring.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

SS-KMS

A

Server-Side Encryption using AWS Key Management Service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Server-Side Encryption Technology that offers additional auditing eatures

A

Server-Side Encryption using AWS Key Management Service, Managed Keys - SSE-KMS.
Gives separate permissions for use of an envelope key.
Can also get an audit trail to show when your keys were used and who used the keys.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the two files you need to upload to S3 to start a static website?

A

Index.html and Error.html

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

By default, what do VPC NACLs and Security Groups do with inbound traffic?

A

In a default configuration, Security Groups allow only outbound traffic and block all incoming traffic. You need to enable inbound traffic specifying the protocol, port and source. In a VPC the default NACL is set to allow all inbound and outbound traffic. If you deploy a custom NACL, then all inbound and outbound traffic is blocked

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Which AWS service can be used to generate historical configuration change records for your AWS resources which can then be used for auditing your workloads on the AWS platform

A

AWS Config

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

AWS Config

A

AWS Config is a managed service that provides AWS resource inventory information and enables you to record configuration change history to enable security and governance requirements. With AWS Config, you can discover both existing and deleted resources at any point in time.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

CloudTrail

A

Service that provides governance, compliance, operational auditing and risk auditing of AWS account.

  • Continuously monitor and retain account activity.
  • Event History helps with Security analysis, resource change tracking and troubleshooting.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Lightsail

A

Launch a virtual private server with preconfigured components including VM, SSD-Based storage, data transfer, DNS management and static IP for a fixed montly price without having to design individually.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are the Reserved Instance Contract Lengths

A

1 Year

3 Years

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are the Amazon Support Plans

A
  • Basic
  • Developer
  • Business
  • Enterprise
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What are the Amazon Support Plan Pricing models per month?

A
  • Basic - Included
  • Developer - $29+
  • Business - $100+
  • Enterprise - $15k+
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is the maximum size of a signle Amazon Glacier Archive?

A

40 TB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

For AWS Enterprise customers, any questions about billing and overall AWS account can be directed to which AWS support personnel?

A

AWS Concierge

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

AWS Trusted Advisor

A

Inspects your AWS environment and alerts you to opportunities to save money, improve system availability and performance, or help close security gaps.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

AWS Support Concierge Service

A
  • Included with Enterprise Support Plan.
  • 24x7 access to AWS billing and account inquires.
  • Guidance and best practices for billing allocation, reporting, consolidation of accounts, and root-level account security.
  • Access to Enterprise account specialists for payment inquiries, training on specific cost reporting, assistance with service limits, and facilitating bulk purchaces.
17
Q

Name 3 Alarm States for Cloudwatch

A

OK
Alarm
Insufficient_Data

18
Q

Redshift

A

Designed specifically for Data Warehousing and Business Intelligence applications.

19
Q

Name what CloudWatch monitors without customization

A

CPU
Disk
Networking
Status

20
Q

Name something that requires a custom CloudWatch metric

A

Memory - Cloudwatch works on the Hypervisor level and does not monitor memory utilization.

21
Q

What is Amazon responsible for RDS?

A
  • Ensuring database infrastructure
  • Patching DB instances
  • Storing data
22
Q

How can you prevent the failure of a Zen Hypervisor in the AWS environment?

A

You can’t. It is Amazon’s responsibility as part of the shared responsibility model. They are responsible for the underlying hosts running the Xen Hypervisors.

23
Q

What are Convertible Reserved Instances (RI)?

A

The ability to change a Reserved Instance with different configuration, operating system and tenancy as long as the target instance is of equal of higher value.

24
Q

What is the default maximum number of linked accounts you can have under a paying account for Consolidated Billing?

A

20

This can be increased by placing a support request with AWS.

25
Q

What is the response time for a critical business failure for AWS Enterprise Support Plan?

A

15 minutes

26
Q

Which Database engines are available on Amazon RDS?

A
Microsoft SQL
Aurora
Oracle
MySQL
ProgreSQL
MariaDB
27
Q

What is a policy in Amazon IAM?

A

Policies enable you to assign permissions to users, groups and roles.

28
Q

How many Elastic IP Addresses can you have per region by default?

A

5

This can be raised by AWS Support.

29
Q

As an enterprise organization, which AWS Service can you use that can provision a simle and efficient means to make controlled changes to your infrastructure?

A

AWS Managed Service

30
Q

Which AWS service can you use to migrate an existing database to AWS?

A

DMS (Database Migration Service)

31
Q

Name a load balancer that allows the use of a Static Elastic IP Address

A

Network Load Balancer

32
Q

Name two options that are available to grant permissions in Amazon S3, both at the bucket level and individual file level.

A

Bucket - Bucket Policies

File - Access Control Lists

33
Q

Which AWS Service stores objects as a collection in an archive file format like tar or zip file?

A

Amazon Glacier

34
Q

In most cases what is the minimum number of Availability Zones per region?

A

2

35
Q

Which five categorise does Amazon Trusted Advisor report on to showcase if your workloads have been designed, deployed and are running in accordance with best practices?

A
Cost Optimization
Service Limits
Security
Fault Tolerance
Performance
36
Q

Which tools can you use to consolidate multiple AWS Accounts so that you can centrally manage them?

A

AWS Organizations

37
Q

What type of routing policy can help route people based on location?

A

Geolocation Routing