ExamGecko
Home Home / Amazon / CLF-C02

Amazon CLF-C02 Practice Test - Questions Answers

Question list
Search
Search

List of questions

Search

Related questions











According to the AWS shared responsibility model, which of the following are AWS responsibilities?

(Select TWO.)

A.
Network infrastructure and virtualization of infrastructure
A.
Network infrastructure and virtualization of infrastructure
Most voted
Answers (4)
Most voted
B.
Security of application data
B.
Security of application data
Answers
C.
Guest operating systems
C.
Guest operating systems
Answers
D.
Physical security of hardware
D.
Physical security of hardware
Most voted
Answers (4)
Most voted
E.
Credentials and policies
E.
Credentials and policies
Answers
Suggested answer: A, D

Explanation:

The correct answers are A and D because network infrastructure and virtualization of infrastructure and physical security of hardware are AWS responsibilities according to the AWS shared responsibility model. The AWS shared responsibility model is a framework that defines the division of responsibilities between AWS and the customer for security and compliance. AWS is responsible for the security of the cloud, which includes the global infrastructure, such as the regions, availability zones, and edge locations; the hardware, software, networking, and facilities that run the AWS services; and the virtualization layer that separates the customer instances and storage. The customer is responsible for the security in the cloud, which includes the customer data, the guest operating systems, the applications, the identity and access management, the firewall configuration, and the encryption. The other options are incorrect because they are not AWS responsibilities according to the AWS shared responsibility model. Security of application data, guest operating systems, and credentials and policies are customer responsibilities according to the AWS shared responsibility model. Reference: [AWS Shared Responsibility Model]

Which options does AWS make available for customers who want to learn about security in the cloud in an instructor-led setting? (Select TWO.)

A.
AWS Trusted Advisor
A.
AWS Trusted Advisor
Answers
B.
AWS Online Tech Talks
B.
AWS Online Tech Talks
Most voted
Answers (3)
Most voted
C.
AWS Blog
C.
AWS Blog
Answers
D.
AWS Forums
D.
AWS Forums
Answers
E.
AWS Classroom Training
E.
AWS Classroom Training
Most voted
Answers (2)
Most voted
Suggested answer: B, E

Explanation:

The correct answers are B and E because AWS Online Tech Talks and AWS Classroom Training are options that AWS makes available for customers who want to learn about security in the cloud in an instructor-led setting. AWS Online Tech Talks are live, online presentations that cover a broad range of topics at varying technical levels. AWS Online Tech Talks are delivered by AWS experts and feature live Q&A sessions with the audience. AWS Classroom Training are in-person or virtual courses that are led by accredited AWS instructors. AWS Classroom Training offer hands-on labs, exercises, and best practices to help customers gain confidence and skills on AWS. The other options are incorrect because they are not options that AWS makes available for customers who want to learn about security in the cloud in an instructor-led setting. AWS Trusted Advisor is an AWS service that provides real-time guidance to help customers follow AWS best practices for security, performance, cost optimization, and fault tolerance. AWS Blog is an AWS resource that provides news, announcements, and insights from AWS experts and customers. AWS Forums are AWS resources that enable customers to interact with other AWS users and get feedback and support. Reference: AWS Online Tech Talks, AWS Classroom Training

A company is using a third-party service to back up 10 TB of data to a tape library. The on-premises backup server is running out of space. The company wants to use AWS services for the backups without changing its existing backup workflows.

Which AWS service should the company use to meet these requirements?

A.
Amazon Elastic Block Store (Amazon EBS)
A.
Amazon Elastic Block Store (Amazon EBS)
Answers
B.
AWS Storage Gateway
B.
AWS Storage Gateway
Most voted
Answers (4)
Most voted
C.
Amazon Elastic Container Service (Amazon ECS)
C.
Amazon Elastic Container Service (Amazon ECS)
Answers
D.
AWS Lambda
D.
AWS Lambda
Answers
Suggested answer: B

Explanation:

The correct answer is B because AWS Storage Gateway is a service that should be used by the company to meet the requirements. AWS Storage Gateway is a service that connects on-premises software applications with cloud-based storage. AWS Storage Gateway supports three types of gateways: file gateway, volume gateway, and tape gateway. The tape gateway type enables users to back up and archive data to virtual tapes in AWS without changing their existing backup workflows.

Users can use their existing backup applications and tape libraries to store data on virtual tapes in Amazon S3 or Amazon S3 Glacier. The other options are incorrect because they are not services that should be used by the company to meet the requirements. Amazon Elastic Block Store (Amazon EBS) is a service that provides block-level storage volumes for Amazon EC2 instances. Amazon Elastic Container Service (Amazon ECS) is a service that enables users to run, scale, and secure containerized applications on AWS. AWS Lambda is a service that enables users to run code without provisioning or managing servers. Reference: AWS Storage Gateway FAQs

Which AWS Support plan provides customers with access to an AWS technical account manager (TAM)?

A.
AWS Basic Support
A.
AWS Basic Support
Answers
B.
AWS Developer Support
B.
AWS Developer Support
Answers
C.
AWS Business Support
C.
AWS Business Support
Answers
D.
AWS Enterprise Support
D.
AWS Enterprise Support
Most voted
Answers (3)
Most voted
Suggested answer: D

Explanation:

The correct answer is D because AWS Enterprise Support is the support plan that provides customers with access to an AWS technical account manager (TAM). AWS Enterprise Support is the highest level of support plan offered by AWS, and it provides customers with the most comprehensive and personalized support experience. An AWS TAM is a dedicated technical resource who works closely with customers to understand their business and technical needs, provide proactive guidance, and coordinate support across AWS teams. The other options are incorrect because they are not support plans that provide customers with access to an AWS TAM. AWS Basic Support is the default and free support plan that provides customers with access to online documentation, forums, and account information. AWS Developer Support is the lowest level of paid support plan that provides customers with access to technical support during business hours, general guidance, and best practice recommendations. AWS Business Support is the intermediate level of paid support plan that provides customers with access to technical support 24/7, system health checks, architectural guidance, and case management. Reference: AWS Support Plans

A company is designing a web application that will run on Amazon EC2 instances.

Which AWS services and features will improve availability and reduce the impact of failures for this application?

(Select TWO.)

A.
Amazon EC2 Auto Scaling for the EC2 instances
A.
Amazon EC2 Auto Scaling for the EC2 instances
Most voted
Answers (4)
Most voted
B.
VPC subnet ACLs to check the health of a service
B.
VPC subnet ACLs to check the health of a service
Answers
C.
Resources that are distributed across multiple Availability Zones
C.
Resources that are distributed across multiple Availability Zones
Most voted
Answers (4)
Most voted
D.
Configuration of AWS Server Migration Service (AWS SMS) to move the EC2 instances to a different AWS Region
D.
Configuration of AWS Server Migration Service (AWS SMS) to move the EC2 instances to a different AWS Region
Answers
E.
Resources that are distributed across multiple AWS points of presence
E.
Resources that are distributed across multiple AWS points of presence
Answers
Suggested answer: A, C

Explanation:

The correct answers are A and C because Amazon EC2 Auto Scaling and resources that are distributed across multiple Availability Zones are AWS services and features that will improve availability and reduce the impact of failures for the web application. Amazon EC2 Auto Scaling is a service that enables users to automatically adjust the number of Amazon EC2 instances in response to changes in demand or performance. Amazon EC2 Auto Scaling helps users to maintain optimal availability and performance of their applications by adding or removing instances as needed.

Resources that are distributed across multiple Availability Zones are AWS features that enable users to increase the fault tolerance and resilience of their applications. Availability Zones are isolated locations within an AWS Region that have independent power, cooling, and networking. Users can launch their resources, such as Amazon EC2 instances, in multiple Availability Zones to protect their applications from the failure of a single location. The other options are incorrect because they are not AWS services and features that will improve availability and reduce the impact of failures for the web application. VPC subnet ACLs are AWS features that enable users to control the inbound and outbound traffic to and from their subnets within a VPC. VPC subnet ACLs do not check the health of a service, but rather filter the network traffic based on rules. Configuration of AWS Server Migration Service (AWS SMS) is an AWS service that enables users to migrate their on-premises servers to AWS.

Configuration of AWS SMS does not help to move the Amazon EC2 instances to a different AWS Region, but rather to migrate the servers from the source environment to AWS. Resources that are distributed across multiple AWS points of presence are AWS features that enable users to deliver content to their end users with low latency and high performance. AWS points of presence are edge locations that are part of the AWS Global Infrastructure. Users can use services such as Amazon CloudFront and AWS Global Accelerator to distribute their content across multiple AWS points of presence. Reference: Amazon EC2 Auto Scaling, [Regions, Availability Zones, and Local Zones]

An Availability Zone consists of:

A.
one or more data centers in a single location.
A.
one or more data centers in a single location.
Most voted
Answers (3)
Most voted
B.
two or more data centers in multiple locations.
B.
two or more data centers in multiple locations.
Answers
C.
one or more physical hosts in a single data center.
C.
one or more physical hosts in a single data center.
Answers
D.
two or more physical hosts in multiple data centers.
D.
two or more physical hosts in multiple data centers.
Answers
Suggested answer: A

Explanation:

The correct answer is A because an Availability Zone consists of one or more data centers in a single location. An Availability Zone is an isolated location within an AWS Region that has independent power, cooling, and networking. Each Availability Zone has one or more data centers that host the physical servers and storage devices that run the AWS services. The other options are incorrect because they are not accurate descriptions of an Availability Zone. Two or more data centers in multiple locations are not an Availability Zone, but rather multiple Availability Zones within an AWS Region. One or more physical hosts in a single data center are not an Availability Zone, but rather the components of a data center within an Availability Zone. Two or more physical hosts in multiple data centers are not an Availability Zone, but rather the components of multiple data centers within one or more Availability Zones. Reference: [Regions, Availability Zones, and Local Zones]

A company wants to ensure that two Amazon EC2 instances are in separate data centers with minimal communication latency between the data centers.

How can the company meet this requirement?

A.
Place the EC2 instances in two separate AWS Regions connected with a VPC peering connection.
A.
Place the EC2 instances in two separate AWS Regions connected with a VPC peering connection.
Answers
B.
Place the EC2 instances in two separate Availability Zones within the same AWS Region.
B.
Place the EC2 instances in two separate Availability Zones within the same AWS Region.
Most voted
Answers (3)
Most voted
C.
Place one EC2 instance on premises and the other in an AWS Region. Then connect them by using an AWS VPN connection.
C.
Place one EC2 instance on premises and the other in an AWS Region. Then connect them by using an AWS VPN connection.
Answers
D.
Place both EC2 instances in a placement group for dedicated bandwidth.
D.
Place both EC2 instances in a placement group for dedicated bandwidth.
Answers
Suggested answer: B

Explanation:

The correct answer is B because placing the EC2 instances in two separate Availability Zones within the same AWS Region is the best way to meet the requirement. Availability Zones are isolated locations within an AWS Region that have independent power, cooling, and networking. Users can launch their resources, such as Amazon EC2 instances, in multiple Availability Zones to increase the fault tolerance and resilience of their applications. Availability Zones within the same AWS Region are connected with low-latency, high-throughput, and highly redundant networking. The other options are incorrect because they are not the best ways to meet the requirement. Placing the EC2 instances in two separate AWS Regions connected with a VPC peering connection is not the best way to meet the requirement because AWS Regions are geographically dispersed and may have higher communication latency between them than Availability Zones within the same AWS Region. VPC peering connection is a networking connection between two VPCs that enables users to route traffic between them using private IP addresses. Placing one EC2 instance on premises and the other in an AWS Region, and then connecting them by using an AWS VPN connection is not the best way to meet the requirement because on-premises and AWS Region are geographically dispersed and may have higher communication latency between them than Availability Zones within the same AWS Region.

AWS VPN connection is a secure and encrypted connection between a user's network and their VPC.

Placing both EC2 instances in a placement group for dedicated bandwidth is not the best way to meet the requirement because a placement group is a logical grouping of instances within a single Availability Zone that enables users to launch instances with specific performance characteristics. A placement group does not ensure that the instances are in separate data centers, and it does not provide low-latency communication between instances in different Availability Zones. Reference:

[Regions, Availability Zones, and Local Zones], [VPC Peering], [AWS VPN], [Placement Groups]

A company wants to host its relational databases on AWS. The databases have predefined schemas that the company needs to replicate on AWS.

Which AWS services could the company use for the databases? (Select TWO.)

A.
Amazon Aurora
A.
Amazon Aurora
Most voted
Answers (3)
Most voted
B.
Amazon RDS
B.
Amazon RDS
Most voted
Answers (3)
Most voted
C.
Amazon DocumentDB (with MongoDB compatibility)
C.
Amazon DocumentDB (with MongoDB compatibility)
Answers
D.
Amazon Neptune
D.
Amazon Neptune
Answers
E.
Amazon DynamoDB
E.
Amazon DynamoDB
Answers
Suggested answer: A, B

Explanation:

: The correct answers are A and B because Amazon Aurora and Amazon RDS are AWS services that the company could use for the relational databases. Amazon Aurora is a relational database that is compatible with MySQL and PostgreSQL. Amazon Aurora is a fully managed, scalable, and highperformance service that offers up to five times the throughput of standard MySQL and up to three times the throughput of standard PostgreSQL. Amazon RDS is a service that enables users to set up, operate, and scale relational databases in the cloud. Amazon RDS supports six popular database engines: MySQL, PostgreSQL, Oracle, SQL Server, MariaDB, and Amazon Aurora. The other options are incorrect because they are not AWS services that the company could use for the relational databases. Amazon DocumentDB (with MongoDB compatibility) is a document database that is compatible with MongoDB. Amazon Neptune is a graph database that supports property graph and RDF models. Amazon DynamoDB is a key-value and document database. Reference: Amazon Aurora, Amazon RDS

Which of the following are benefits that a company receives when it moves an on-premises production workload to AWS? (Select TWO.)

A.
AWS trains the company's staff on the use of all the AWS services.
A.
AWS trains the company's staff on the use of all the AWS services.
Answers
B.
AWS manages all security in the cloud.
B.
AWS manages all security in the cloud.
Answers
C.
AWS offers free support from technical account managers (TAMs).
C.
AWS offers free support from technical account managers (TAMs).
Answers
D.
AWS offers high availability.
D.
AWS offers high availability.
Most voted
Answers (3)
Most voted
E.
AWS provides economies of scale.
E.
AWS provides economies of scale.
Most voted
Answers (3)
Most voted
Suggested answer: D, E

Explanation:

The correct answers are D and E because AWS offers high availability and AWS provides economies of scale are benefits that a company receives when it moves an on-premises production workload to AWS. High availability means that AWS has a global infrastructure that allows customers to deploy their applications and data across multiple regions and availability zones. This increases the fault tolerance and resilience of their applications and reduces the impact of failures. Economies of scale means that AWS can achieve lower variable costs than customers can get on their own. This allows customers to pay only for the resources they use and scale up or down as needed. The other options are incorrect because they are not benefits that a company receives when it moves an on-premises production workload to AWS. AWS trains the company's staff on the use of all the AWS services is not a benefit that a company receives when it moves an on-premises production workload to AWS. AWS does provide various learning resources and training courses for customers, but it does not train the company's staff on the use of all the AWS services. AWS manages all security in the cloud is not a benefit that a company receives when it moves an on-premises production workload to AWS. AWS is responsible for the security of the cloud, but the customer is responsible for the security in the cloud. AWS offers free support from technical account managers (TAMs) is not a benefit that a company receives when it moves an on-premises production workload to AWS. AWS does offer support from TAMs, but only for customers who have the AWS Enterprise Support plan, which is not free.

Reference: What is Cloud Computing?, [AWS Shared Responsibility Model], [AWS Support Plans]

A company needs a content delivery network that provides secure delivery of data, videos, applications, and APIs to users globally with low latency and high transfer speeds.

Which AWS service meets these requirements?

A.
Amazon CloudFront
A.
Amazon CloudFront
Most voted
Answers (3)
Most voted
B.
Elastic Load Balancing
B.
Elastic Load Balancing
Answers
C.
Amazon S3
C.
Amazon S3
Answers
D.
Amazon Elastic Transcoder
D.
Amazon Elastic Transcoder
Answers
Suggested answer: A

Explanation:

The correct answer is A because Amazon CloudFront is an AWS service that provides secure delivery of data, videos, applications, and APIs to users globally with low latency and high transfer speeds.

Amazon CloudFront is a fast content delivery network (CDN) that integrates with other AWS services, such as Amazon S3, Amazon EC2, AWS Lambda, and AWS Shield. Amazon CloudFront delivers content through a worldwide network of edge locations that are located close to the end users. The other options are incorrect because they are not AWS services that provide secure delivery of data, videos, applications, and APIs to users globally with low latency and high transfer speeds. Elastic Load Balancing is an AWS service that distributes incoming traffic across multiple targets, such as Amazon EC2 instances, containers, and IP addresses. Amazon S3 is an AWS service that provides object storage for data of any size and type. Amazon Elastic Transcoder is an AWS service that converts media files from their original source format into different formats that will play on various devices. Reference: Amazon CloudFront FAQs

Total 789 questions
Go to page: of 79