ExamGecko
Home / Amazon / CLF-C02 / List of questions
Ask Question

Amazon CLF-C02 Practice Test - Questions Answers, Page 11

List of questions

Question 101

Report
Export
Collapse

What is the total amount of storage offered by Amazon S3?

WOMB
WOMB
5 GB
5 GB
5 TB
5 TB
Unlimited
Unlimited
Suggested answer: D

Explanation:

Amazon S3 offers unlimited storage for any amount of data. You can store as many objects as you want, and each object can be as large as 5 terabytes. You pay only for the storage space that you actually use, and there are no minimum commitments or upfront fees. Amazon S3 also provides high durability, availability, scalability, and security for your data.

asked 16/09/2024
Roger Wehrli
35 questions

Question 102

Report
Export
Collapse

Which AWS network services or features allow Cl DR block notation when providing an IP address range?

(Select TWO.)

Security groups
Security groups
Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
Network access control list (network ACL)
Network access control list (network ACL)
AWS Budgets
AWS Budgets
Amazon Elastic Block Store (Amazon EBS)
Amazon Elastic Block Store (Amazon EBS)
Suggested answer: A, C

Explanation:

Security groups and network access control lists (network ACLs) are two AWS network services or features that allow CIDR block notation when providing an IP address range. Security groups act as a firewall for associated Amazon EC2 instances, controlling both inbound and outbound traffic at the instance level. Network ACLs act as a firewall for associated subnets, controlling both inbound and outbound traffic at the subnet level. Both security groups and network ACLs use CIDR block notation to specify the IP address ranges that are allowed or denied

asked 16/09/2024
Luca Arcuri
28 questions

Question 103

Report
Export
Collapse

A company has a workload that requires data to be collected, analyzed, and stored on premises. The company wants to extend the use of AWS services to run on premises with access to the company network and the company's VPC.

Which AWS service meets this requirement?

AWS Outposts
AWS Outposts
AWS Storage Gateway
AWS Storage Gateway
AWS Direct Connect
AWS Direct Connect
AWS Snowball
AWS Snowball
Suggested answer: A

Explanation:

AWS Outposts is an AWS service that meets the requirement of running AWS services on premises with access to the company network and the company's VPC. AWS Outposts is a fully managed service that extends AWS infrastructure, AWS services, APIs, and tools to virtually any datacenter, colocation space, or on-premises facility for a truly consistent hybrid experience. AWS Outposts is ideal for workloads that require low latency access to on-premises systems, local data processing, or local data storage2.

asked 16/09/2024
Zaneta Zagajewska
31 questions

Question 104

Report
Export
Collapse

A company wants to deploy and manage a Docker-based application on AWS.

Which solution meets these requirements with the LEAST amount of operational overhead?

An open-source Docker orchestrator on Amazon EC2 instances
An open-source Docker orchestrator on Amazon EC2 instances
AWS AppSync
AWS AppSync
Amazon Elastic Container Registry (Amazon ECR)
Amazon Elastic Container Registry (Amazon ECR)
Amazon Elastic Container Service (Amazon ECS)
Amazon Elastic Container Service (Amazon ECS)
Suggested answer: D

Explanation:

Amazon Elastic Container Service (Amazon ECS) is a solution that meets the requirements of deploying and managing a Docker-based application on AWS with the least amount of operational overhead. Amazon ECS is a fully managed container orchestration service that makes it easy to run, scale, and secure Docker container applications on AWS. Amazon ECS eliminates the need for you to install, operate, and scale your own cluster management infrastructure. With simple API calls, you can launch and stop container-enabled applications, query the complete state of your cluster, and access many familiar features like security groups, Elastic Load Balancing, EBS volumes, and IAM roles3.

asked 16/09/2024
gareth warner
21 questions

Question 105

Report
Export
Collapse

When designing AWS workloads to be operational even when there are component failures, what is an AWS best practice?

Perform quarterly disaster recovery tests.
Perform quarterly disaster recovery tests.
Place the main component on the us-east-1 Region.
Place the main component on the us-east-1 Region.
Design for automatic failover to healthy resources.
Design for automatic failover to healthy resources.
Design workloads to fit on a single Amazon EC2 instance.
Design workloads to fit on a single Amazon EC2 instance.
Suggested answer: C

Explanation:

Designing for automatic failover to healthy resources is an AWS best practice when designing AWS workloads to be operational even when there are component failures. This means that you should architect your system to handle the loss of one or more components without impacting the availability or performance of your application. You can use various AWS services and features to achieve this, such as Auto Scaling, Elastic Load Balancing, Amazon Route 53, Amazon CloudFormation, and AWS CloudFormation4.

asked 16/09/2024
max artusa
39 questions

Question 106

Report
Export
Collapse

Which AWS service provides highly durable object storage?

Amazon S3
Amazon S3
Amazon Elastic File System (Amazon EFS)
Amazon Elastic File System (Amazon EFS)
Amazon Elastic Block Store (Amazon EBS)
Amazon Elastic Block Store (Amazon EBS)
Amazon FSx
Amazon FSx
Suggested answer: A

Explanation:

Amazon S3 is the AWS service that provides highly durable object storage. Amazon S3 is designed to provide 99.999999999% durability of objects over a given year. This means that you can store your data with high confidence that it will not be lost. Amazon S3 also provides high availability, scalability, security, and performance for your data. You can use Amazon S3 to store and retrieve any amount of data, at any time, from anywhere on the web5.

asked 16/09/2024
Dasaret Tillman
40 questions

Question 107

Report
Export
Collapse

Which pillar of the AWS Well-Architected Framework includes a design principle about measuring the overall efficiency of workloads in terms of business value?

Operational excellence
Operational excellence
Security
Security
Reliability
Reliability
Cost optimization
Cost optimization
Suggested answer: A

Explanation:

The operational excellence pillar of the AWS Well-Architected Framework includes a design principle about measuring the overall efficiency of workloads in terms of business value. This principle states that you should monitor and measure key performance indicators (KPIs) and set targets and thresholds that align with your business goals. You should also use feedback loops to continuously improve your processes and procedures1.

asked 16/09/2024
Sébastien PIERRE
48 questions

Question 108

Report
Export
Collapse

Who enables encryption of data at rest for Amazon Elastic Block Store (Amazon EBS)?

AWS Support
AWS Support
AWS customers
AWS customers
AWS Key Management Service (AWS KMS)
AWS Key Management Service (AWS KMS)
AWS Trusted Advisor
AWS Trusted Advisor
Suggested answer: B

Explanation:

AWS customers are responsible for enabling encryption of data at rest for Amazon Elastic Block Store (Amazon EBS). Amazon EBS encryption offers a simple encryption solution for your EBS volumes that does not require you to build, maintain, and secure your own key management infrastructure. You can encrypt both the boot and data volumes of your EC2 instances. You can use AWS Key Management Service (AWS KMS) customer master keys (CMKs) or your own CMKs to encrypt your volumes2.

asked 16/09/2024
Scott Lerch
27 questions

Question 109

Report
Export
Collapse

Who is responsible for decommissioning end-of-life underlying storage devices that are used to host data on AWS?

Customer
Customer
AWS
AWS
Account creator
Account creator
Auditing team
Auditing team
Suggested answer: B

Explanation:

AWS is responsible for decommissioning end-of-life underlying storage devices that are used to host data on AWS. AWS follows strict and audited data destruction processes to ensure that customer data is not exposed to unauthorized individuals or devices when an AWS storage device reaches the end of its useful life. AWS uses techniques detailed in DoD 5220.22-M ("National Industrial Security Program Operating Manual") or NIST 800-88 ("Guidelines for Media Sanitization") to destroy data as part of the decommissioning process3.

asked 16/09/2024
Eric Tegels
44 questions

Question 110

Report
Export
Collapse

A company wants to manage access and permissions for its third-party software as a service (SaaS) applications. The company wants to use a portal where end users can access assigned AWS accounts and AWS Cloud applications.

Which AWS service should the company use to meet these requirements?

Amazon Cognito
Amazon Cognito
AWS 1AM Identity Center (AWS Single Sign-On)
AWS 1AM Identity Center (AWS Single Sign-On)
AWS Identity and Access Management (1AM)
AWS Identity and Access Management (1AM)
AWS Directory Service for Microsoft Active Directory
AWS Directory Service for Microsoft Active Directory
Suggested answer: B

Explanation:

AWS IAM Identity Center (AWS Single Sign-On) is the AWS service that the company should use to meet the requirements of managing access and permissions for its third-party SaaS applications.

AWS Single Sign-On is a cloud-based service that makes it easy to centrally manage single sign-on (SSO) access to multiple AWS accounts and business applications. You can use AWS Single Sign-On to enable your users to sign in to a user portal with their existing corporate credentials and access all of their assigned accounts and applications from one place4.

asked 16/09/2024
Kristian Michael Matias
44 questions
Total 798 questions
Go to page: of 80

Related questions