ExamGecko
Home Home / Amazon / CLF-C01

Amazon CLF-C01 Practice Test - Questions Answers, Page 83

Question list
Search
Search

Related questions











An application runs on multiple Amazon EC2 instances that access a shared file system simultaneously. Which AWS storage service should be used?

A.
Amazon EBS
A.
Amazon EBS
Answers
B.
Amazon EFS
B.
Amazon EFS
Answers
C.
Amazon S3
C.
Amazon S3
Answers
D.
AWS Artifact
D.
AWS Artifact
Answers
Suggested answer: B

Explanation:

traditional file permissions model, file locking capabilities, and hierarchical directory structure via the NFSv4 protocol. Amazon EC2 instances can access your file sys tem across AZs, regions, and VPCs, while on-premises servers can Amazon EFS provides secure access for thousands of connections for Amazon EC2 instances and onpremises servers, as well as AWS compute services, including ECS, EKS, AWS Fargate, and AWS Lambda, simultaneously using a access using AWS Direct Connect or AWS VPN.

Which AWS service gives users the ability to provision a dedicated and private network connection from their internal network to AWS?

A.
AWS CIoudHSM
A.
AWS CIoudHSM
Answers
B.
AWS Direct Connect
B.
AWS Direct Connect
Answers
C.
AWS VPN
C.
AWS VPN
Answers
D.
Amazon Connect
D.
Amazon Connect
Answers
Suggested answer: B

Explanation:

Explanation:

AWS Direct Connect lets you establish a dedicated network connection between your network and one of the AWS Direct Connect locations. Using industry standard 802.1q VLANs, this dedicated connection can be partitioned into multiple virtual interfaces. This allows you to use the same connection to access public resources such as objects stored in Amazon S3 using public IP address space, and private resources such as Amazon EC2 instances running within an Amazon Virtual Private Cloud (VPC) using private IP space, while maintaining network separation between the public and private environments. Virtual interfaces can be reconfigured at any time to meet your changing needs.

A company acquired another corporation. The company now has two AWS accounts.

Which AWS service or tool can the company use to consolidate the billing for these two accounts?

A.
AWS Systems Manager
A.
AWS Systems Manager
Answers
B.
AWS Organizations
B.
AWS Organizations
Answers
C.
AWS License Manager
C.
AWS License Manager
Answers
D.
Cost Explorer
D.
Cost Explorer
Answers
Suggested answer: B

Which action will help increase security in the AWS Cloud?

A.
Enable programmatic access for all IAM users.
A.
Enable programmatic access for all IAM users.
Answers
B.
Use IAM users instead of IAM roles to delegate permissions.
B.
Use IAM users instead of IAM roles to delegate permissions.
Answers
C.
Rotate access keys on a reoccurring basis.
C.
Rotate access keys on a reoccurring basis.
Answers
D.
Use inline policies instead of customer managed policies.
D.
Use inline policies instead of customer managed policies.
Answers
Suggested answer: C

Explanation:

Explanation: https://docs.aws.amazon.com/IAM/latest/UserGuide/best-practices.html

Where possible, we recommend relying on temporary credentials instead of creating long-term credentials such as access keys. However, for scenarios in which you need IAM users with programmatic access and long-term credentials, we recommend that you rotate access keys. Regularly rotating long-term credentials helps you familiarize yourself with the process. This is useful in case you are ever in a situation where you must rotate credentials, such as when an employee leaves your company. We recommend that you use IAM access last used information to rotate and remove access keys safely.

A company needs to organize its resources and track AWS costs on a detailed level. The company needs to categorize costs by business department, environment, and application. Which solution will meet these requirements?

A.
Access the AWS Cost Management console to organize resources, set an AWS budget, and receive notifications of unintentional usage
A.
Access the AWS Cost Management console to organize resources, set an AWS budget, and receive notifications of unintentional usage
Answers
B.
Use tags to organize the resources. Activate cost allocation tags to track AWS costs on a detailed level.
B.
Use tags to organize the resources. Activate cost allocation tags to track AWS costs on a detailed level.
Answers
C.
Create Amazon CloudWatch dashboards to visually organize and track costs individually.
C.
Create Amazon CloudWatch dashboards to visually organize and track costs individually.
Answers
D.
Access the AWS Billing and Cost Management dashboard to organize and track resource consumption on a detailed level.
D.
Access the AWS Billing and Cost Management dashboard to organize and track resource consumption on a detailed level.
Answers
Suggested answer: A

Which AWS service helps users audit API activity across their AWS account?

A.
AWS CloudTrail
A.
AWS CloudTrail
Answers
B.
Amazon Inspector
B.
Amazon Inspector
Answers
C.
AWSWAF
C.
AWSWAF
Answers
D.
AWS Config
D.
AWS Config
Answers
Suggested answer: A

What is the security best practice concerning sensitive data stored in Amazon S3?

A.
Enable cross-Region replication on the S3 bucket.
A.
Enable cross-Region replication on the S3 bucket.
Answers
B.
Enable S3 server-side encryption on the S3 bucket.
B.
Enable S3 server-side encryption on the S3 bucket.
Answers
C.
Configure AWS WAF to prevent unauthorized access to the S3 bucket.
C.
Configure AWS WAF to prevent unauthorized access to the S3 bucket.
Answers
D.
Configure Amazon GuardDuty to prevent unauthorized access to the S3 bucket.
D.
Configure Amazon GuardDuty to prevent unauthorized access to the S3 bucket.
Answers
Suggested answer: B

Which of the following are economic benefits of using the AWS Cloud? (Select TWO.)

A.
Consumption-based pricing
A.
Consumption-based pricing
Answers
B.
Perpetual licenses
B.
Perpetual licenses
Answers
C.
Economies of scale
C.
Economies of scale
Answers
D.
AWS Enterprise Support at no additional cost
D.
AWS Enterprise Support at no additional cost
Answers
E.
Bring-your-own-hardware model
E.
Bring-your-own-hardware model
Answers
Suggested answer: A, C

What is a benefit of using AWS serverless computing?

A.
Application deployment and management are not required.
A.
Application deployment and management are not required.
Answers
B.
Application security will be fully managed by AWS.
B.
Application security will be fully managed by AWS.
Answers
C.
Monitoring and logging are not needed.
C.
Monitoring and logging are not needed.
Answers
D.
Management of infrastructure is offloaded to AWS.
D.
Management of infrastructure is offloaded to AWS.
Answers
Suggested answer: A

According to the AWS shared responsibility model, the customer is responsible for applying the latest security updates and patches for which of the following?

A.
Amazon DynamoDB
A.
Amazon DynamoDB
Answers
B.
Amazon EC2 instances
B.
Amazon EC2 instances
Answers
C.
Amazon RDS instances
C.
Amazon RDS instances
Answers
D.
Amazon S3
D.
Amazon S3
Answers
Suggested answer: B
Total 944 questions
Go to page: of 95