ExamGecko
Home Home / Amazon / CLF-C01

Amazon CLF-C01 Practice Test - Questions Answers, Page 36

Question list
Search
Search

List of questions

Search

Related questions











Which AWS service gives users the ability to develop loosely coupled microservices and improve service-to-service communication?

A.
AWS Service Catalog
A.
AWS Service Catalog
Answers
B.
AWS Direct Connect
B.
AWS Direct Connect
Answers
C.
Amazon EventBridge (Amazon CloudWatch Events)
C.
Amazon EventBridge (Amazon CloudWatch Events)
Answers
D.
Amazon CloudWatch Logs
D.
Amazon CloudWatch Logs
Answers
Suggested answer: A

Which action will provide documentation to help a company evaluate whether its use of the AWS Cloud is compliant with local regulatory standards?

A.
Running Amazon GuardDuty
A.
Running Amazon GuardDuty
Answers
B.
Using AWS Artifact
B.
Using AWS Artifact
Answers
C.
Creating an AWS Support ticket
C.
Creating an AWS Support ticket
Answers
D.
Evaluating AWS CloudTrail logs
D.
Evaluating AWS CloudTrail logs
Answers
Suggested answer: B

A company is investigating the possibility of keeping some services in its on-premises data center and having some resources in the AWS Cloud. The company currently accesses AWS over the public internet. Which AWS service or feature will facilitate private connectivity between the on-premises servers and the AWS resources?

A.
NAT gateway
A.
NAT gateway
Answers
B.
AWS Direct Connect
B.
AWS Direct Connect
Answers
C.
Amazon S3 Transfer Acceleration
C.
Amazon S3 Transfer Acceleration
Answers
D.
AWS WAF
D.
AWS WAF
Answers
Suggested answer: A

Which AWS service has a feature to analyze real-time data as the data is streamed into AWS data storage systems?

A.
Amazon Simple Queue Service (Amazon SQS)
A.
Amazon Simple Queue Service (Amazon SQS)
Answers
B.
Amazon Kinesis
B.
Amazon Kinesis
Answers
C.
Amazon Athena
C.
Amazon Athena
Answers
D.
Amazon S3
D.
Amazon S3
Answers
Suggested answer: B

Explanation:

Explanation:

Amazon Kinesis makes it easy to collect, process, and analyze real-time, streaming data so you can get timely insights and react quickly to new information. Amazon Kinesis offers key capabilities to cost-effectively process streaming data at any scale, along with the flexibility to choose the tools that best suit the requirements of your application. With Amazon Kinesis, you can ingest real-time data such as video, audio, application logs, website clickstreams, and IoT telemetry data for machine learning, analytics, and other applications. Amazon Kinesis enables you to process and analyze data as it arrives and respond instantly instead of having to wait until all your data is collected before the processing can begin.

A developer needs to access AWS resources from the AWS CLI.

Which feature in AWS Identity and Access Management (IAM) can the developer use for authentication?

A.
IAM access keys
A.
IAM access keys
Answers
B.
IAM policy
B.
IAM policy
Answers
C.
IAM role
C.
IAM role
Answers
D.
Account password policy
D.
Account password policy
Answers
Suggested answer: A

A company is moving its development and test environments to AWS to increase agility and reduce cost Because these are not production workloads and the servers are not fully utilized and acceptable. What is the MOST cost-effective Amazon EC2 pricing model that will meet these requirements?

A.
Reserved Instances
A.
Reserved Instances
Answers
B.
On-Demand Instances
B.
On-Demand Instances
Answers
C.
Spot Instances
C.
Spot Instances
Answers
D.
Dedicated Hosts
D.
Dedicated Hosts
Answers
Suggested answer: B

Explanation:

Explanation:

On-demand - The Most Flexible. As the name implies, on-demand is the most flexible, pay-as-you-go pricing option. With on-demand instances, you pay for compute capacity on an hourly or per second basis and only pay for the EC2 instances you actually use.

A company is connecting multiple VPCs and on-premises networks. The company needs to use an AWS service as a cloud router to simplify peering relationships. Which AWS service can the company use to meet this requirement?

A.
AWS Direct Connect
A.
AWS Direct Connect
Answers
B.
AWS Transit Gateway
B.
AWS Transit Gateway
Answers
C.
Amazon Connect
C.
Amazon Connect
Answers
D.
Amazon Route 53
D.
Amazon Route 53
Answers
Suggested answer: B

A company is using on-premises Microsoft Active Directory federation to manage user identities and groups.

What AWS Identity and Access Management (IAM) setting maps the permissions for AWS services to the Active Directory user attributes?

A.
IAM users
A.
IAM users
Answers
B.
IAM access keys
B.
IAM access keys
Answers
C.
IAM roles
C.
IAM roles
Answers
D.
IAM groups
D.
IAM groups
Answers
Suggested answer: C

Explanation:

Explanation:

How to Connect Your On-Premises Active Directory to AWS Using AD Connector Assign users to roles Now that AD Connector is configured and youíve created a role, your next job is to assign users or groups to those IAM roles. Role mapping is what governs what resources a user has access to within AWS. To do this youíll need to: Open the Directory Service console, and click the link to Manage Access.

Click Create New Role.

Click Use Existing Role. Note: If you’ve already assigned Active Directory users or groups to a role, you will be able to modify their membership by clicking the link for the role in the Directory Service console.

Select a role from the list, and then click Next Step.

Type the name of an Active Directory user or group in the search field.

Click Next Step.

Click Create Role Assignments.

When youíre finished you should see the name of the user or group along with the corresponding Id for that object, as shown in the previous image.

The next time the user signs in to the AWS Management Console from the custom sign-in page, they will be signed in under the EC2ReadOnly security role.

Seamlessly join an instance to an Active Directory domain

Another advantage to using AD Connector is the ability to seamlessly join Windows (EC2) instances to your Active Directory domain. You may have read about this feature in the AWS Blog earlier this year. Itís what allows you to join a Windows Server to the domain while the instance is being provisioned instead of using a script or doing it manually. This section of this blog post will explain the steps necessary to enable this feature in your environment and how the service works.

Step 1: Create a role

Until recently you had to manually create an IAM policy to allow an EC2 instance to access the SSM, an AWS service that allows you to configure Windows instances while theyíre running and on first launch. Now, thereís a managed policy called AmazonEC2RoleforSSM that you can use instead. The role you are about to create will be assigned to an EC2 instance when itís provisioned, which will grant it permission to access the SSM service.

To create the role:

Open the IAM console.

Click Roles in the navigation pane.

Click Create Role.

Type a name for your role in the Role Name field.

Under AWS Service Roles, select Amazon EC2 and then click Select.

On the Attach Policy page, select AmazonEC2RoleforSSM and then click Next Step. On the Review page, click Create Role.

Which AWS Support solution provides additional AWS technical support for critical customer events, such as new product launches?

A.
AWS Personal Health Dashboard
A.
AWS Personal Health Dashboard
Answers
B.
Infrastructure event management
B.
Infrastructure event management
Answers
C.
Management business reviews
C.
Management business reviews
Answers
D.
AWS Developer Support
D.
AWS Developer Support
Answers
Suggested answer: B

Which documentation does AWS Artifact provide?

A.
Amazon EC2 terms and conditions
A.
Amazon EC2 terms and conditions
Answers
B.
AWS ISO certifications
B.
AWS ISO certifications
Answers
C.
A history of a company's AWS spending
C.
A history of a company's AWS spending
Answers
D.
A list of previous-generation Amazon EC2 instance types
D.
A list of previous-generation Amazon EC2 instance types
Answers
Suggested answer: A

Explanation:

Explanation:

Total 944 questions
Go to page: of 95