ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 527 - CLF-C02 discussion

Report
Export

A company wants to grant users in one AWS account access to resources in another AWS account. The users do not currently have permission to access the resources.

Which AWS service will meet this requirement?

A.
IAM group
Answers
A.
IAM group
B.
IAM role
Answers
B.
IAM role
C.
IAM tag
Answers
C.
IAM tag
D.
IAM Access Analyzer
Answers
D.
IAM Access Analyzer
Suggested answer: B

Explanation:

IAM roles are a way to delegate access to resources in different AWS accounts. IAM roles allow users to assume a set of permissions for a limited time without having to create or share long-term credentials. IAM roles can be used to grant cross-account access by creating a trust relationship between the accounts and specifying the permissions that the role can perform. Users can then switch to the role and access the resources in the other account using temporary security credentials provided by the role.Reference:Cross account resource access in IAM,IAM tutorial: Delegate access across AWS accounts using IAM roles,How to Enable Cross-Account Access to the AWS Management Console

asked 16/09/2024
Deshawn Sharpe
35 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first