S3 Object Lock Flashcards

1
Q

What does S3 Object Lock do AND Why is it useful?

A
  1. Protects Objects in S3 from being OVERWRITTEN or DELETED for a either a fixed OR indefinite amount of time.
  2. Create storage using Write Once Read Many (WORM) Model. It is good for regulatory requirements
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the Storage Model associated with S3 Object Lock?

A

Write Once Read Many

{W.O.R.M.}

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What does WORM stand for?

A

Write Once Read Many

{A compliant form of Storage}

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the TWO modes of S3 Object Lock? AND What is the main difference between the two?

A

Governance Mode and Compliance Mode

  1. Governance Mode: you CANNOT overwrite or delete an Object version or alter it’s lock settings unless you have SPECIAL PERMISSIONS.
  2. Compliance Mode: NO user, not even ROOT-USER can overwrite or delete an object or update its lock settings.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Define and Compare

Retention Period vs. Legal Hold

A

Retention Period: a fixed amount of time

Legal Hold: can be freely placed or removed by anyone with the ‘S3:PUTObjectLegalHold’ permission.

Both protect an object version from being overwritten/deleted.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is S3 Glacier Vault Lock?

A

S3 Object Lock for Vaults in Glacier.

Easily deploy and enforce compliance controls for S3 Glacier Vaults with a Vault Lock Policy.

Specify Controls (Like WORM) in a vault lock policy and lock from future edits.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the best way to put an object lock on all objects in an S3 bucket?

A

S3 Object Locks can be configured to be bucket wide.

One Object Lock on at the Bucket Level.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

S3 Glacier Vault Lock, Once the policy is initially locked can it be changed?

A

NO

How well did you know this?
1
Not at all
2
3
4
5
Perfectly