ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 292 - CLF-C02 discussion

Report
Export

Which AWS service or feature enables users to encrypt data at rest in Amazon S3?

A.
1AM policies
Answers
A.
1AM policies
B.
Server-side encryption
Answers
B.
Server-side encryption
C.
Amazon GuardDuty
Answers
C.
Amazon GuardDuty
D.
Client-side encryption
Answers
D.
Client-side encryption
Suggested answer: B

Explanation:

Server-side encryption is an encryption option that Amazon S3 provides to encrypt data at rest in Amazon S3. With server-side encryption, Amazon S3 encrypts an object before saving it to disk in its data centers and decrypts it when you download the objects. You have three server-side encryption options to choose from: SSE-S3, SSE-C, and SSE-KMS. SSE-S3 uses keys that are managed by Amazon S3. SSE-C allows you to manage your own encryption keys. SSE-KMS uses keys that are managed by AWS Key Management Service (AWS KMS)5.

asked 16/09/2024
Tristan Zerner
45 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first