CLF-C01 : AWS Certified Cloud Practitioner : Part 33
-
A user wants to move legacy applications to the AWS Cloud to reduce the total cost.
Which option is the MOST cost-effective according to best practices?
- Rewrite the legacy applications in an open-source language, such as Python.
- Right-size the Amazon EC2 instances to prevent over-provisioning in terms of compute and memory.
- Migrate relational databases to Amazon DynamoDB.
- Reserve a data center facility with an upfront payment, which provides an additional discount.
-
According to the AWS shared responsibility model, which task is the responsibility of AWS for workloads running on Amazon EC2?
- Updating the physical hardware
- Updating the operating system
- Updating the database engine
- Updating the user data
-
A user needs to identify underutilized Amazon Elastic Block Store (Amazon EBS) volumes to reduce costs.
Which AWS service or feature will meet this requirement?
- AWS CloudTrail
- AWS Budgets
- AWS Trusted Advisor
- AWS Personal Health Dashboard
-
Which AWS service will help a company identify the user who deleted an Amazon EC2 instance yesterday?
- Amazon CloudWatch
- AWS Trusted Advisor
- AWS CloudTrail
- Amazon Inspector
-
A company has existing software licenses that it wants to bring to AWS, but the licensing model requires licensing physical cores.
How can the company meet this requirement in the AWS Cloud?
- Launch an Amazon EC2 instance with default tenancy.
- Launch an Amazon EC2 instance on a Dedicated Host.
- Create an On-Demand Capacity Reservation.
- Purchase Dedicated Reserved Instances.
-
A company must keep records of all resource changes that are made through the AWS Management Console and AWS APIs.
Which AWS service should the company use to meet this requirement?
- Amazon CloudWatch
- AWS CloudTrail
- AWS X-Ray
- Amazon Inspector
-
A company requires an isolated environment within AWS for security purposes.
Which action can be taken to accomplish this?
- Create a separate Availability Zone to host the resources.
- Create a separate VPC to host the resources.
- Create a placement group to host the resources.
- Create an AWS Direct Connect connection between the company and AWS.
-
A company needs to monitor and forecast AWS costs and usage. The company also must set event-driven alert notifications that occur if spending limits are exceeded.
Which AWS service or tool should the company use to meet these requirements?
- AWS Budgets
- Amazon CloudWatch
- AWS Config
- AWS Service Catalog
-
Which of the following is a best practice for creating policies for IAM users?
- Start with a large set of permissions and remove the permissions that are not required.
- Use only Amazon managed policies.
- Start with a minimum set of permissions and grant additional permissions as necessary.
- Attach policies directly to each user individually.
-
A user with an AWS Basic Support plan has determined that illegal activities are being run on their AWS resources
What is the recommended method for the user to report the activity to AWS?
- Contact the AWS Concierge Support team.
- Contact an AWS technical account manager.
- Contact the AWS Abuse team.
- Contact the AWS Support team.
-
AWS can relieve a company’s IT staff of which of the following IT tasks? (Choose two.)
- Patching database software
- Storage capacity planning
- Creating database schemas
- Setting up access controls for data
- Writing application code
-
A company’s security team requires that all Amazon EC2 workloads use approved Amazon Machine Images (AMIs).
Which AWS service should the company use to verify that the EC2 instances are using approved AMIs?
- Amazon CloudWatch
- Amazon Inspector
- AWS Config
- AWS Trusted Advisor
-
Which of the following are benefits of using the AWS Cloud? (Choose two.)
- 100% fault tolerance
- Total control over underlying infrastructure
- Fast provisioning of IT resources
- Outsourcing all application coding to AWS
- Ability to go global quickly
-
Which of the following security-related aspects of running an Amazon Elastic Compute Cloud (Amazon EC2) instance is the responsibility of AWS?
- Security of private keys
- Hypervisor software updates
- Security updates to software running on the instance
- Policies controlling instance access
-
Which AWS service aggregates, organizes, and prioritizes security alerts and findings from multiple AWS services?
- Amazon Detective
- Amazon Inspector
- Amazon Macie
- AWS Security Hub
-
A developer has an AWS account and needs access to another account’s test database.
Which AWS service or feature can the developer use to gain access to the test database?
- Amazon Macie
- Security groups
- IAM roles
- AWS Trusted Advisor
-
Using Amazon Elastic Container Service (Amazon ECS) to break down a monolithic architecture into microservices is an example of:
- a loosely coupled architecture.
- a tightly coupled architecture.
- a stateless architecture.
- a stateful architecture.
-
Which service enables customers to audit API calls in their AWS accounts?
- AWS CloudTrail
- AWS Trusted Advisor
- Amazon Inspector
- AWS X-Ray
-
Which VPC component provides a layer of security at the subnet level?
- Security groups
- Network ACLs
- NAT gateways
- Route tables
-
Which benefit is available for Convertible Reserved Instances but NOT Standard Reserved Instances?
- The instances can be exchanged for instances of a different instance size.
- The instances can be exchanged for instances of a different instance family.
- The instances can be changed to a different Availability Zone.
- The instances can be changed to a different AWS Region.
Subscribe
0 Comments
Newest