List of questions
Related questions
Question 918 - SAA-C03 discussion
A company wants to provide a third-party system that runs in a private data center with access to its AWS account. The company wants to call AWS APIs directly from the third-party system. The company has an existing process for managing digital certificates. The company does not want to use SAML or OpenID Connect (OIDC) capabilities and does not want to store long-term AWS credentials.
Which solution will meet these requirements?
Configure mutual TLS to allow authentication of the client and server sides of the communication channel.
Configure AWS Signature Version 4 to authenticate incoming HTTPS requests to AWS APIs
Configure Kerberos to exchange tickets for assertions that can be validated by AWS APIs
Configure AWS Identity and Access Management (IAM) Roles Anywhere to exchange X.509 certificates for AWS credentials to interact with AWS APIs.
0 comments
Leave a comment first