ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 87 - DVA-C01 discussion

Report
Export

A deployment package uses the AWS CLI to copy files into any S3 bucket in the account, using access keys stored in environment variables. The package is running on EC2 instances, and the instances have been modified to run with an assumed IAM role and a more restrictive policy that allows access to only one bucket.

After the change, the Developer logs into the host and still has the ability to write into all of the S3 buckets in that account. What is the MOST likely cause of this situation?

A.
An IAM inline policy is being used on the IAM role
Answers
A.
An IAM inline policy is being used on the IAM role
B.
An IAM managed policy is being used on the IAM role
Answers
B.
An IAM managed policy is being used on the IAM role
C.
The AWS CLI is corrupt and needs to be reinstalled
Answers
C.
The AWS CLI is corrupt and needs to be reinstalled
D.
The AWS credential provider looks for instance profile credentials last
Answers
D.
The AWS credential provider looks for instance profile credentials last
Suggested answer: B

Explanation:

https://docs.aws.amazon.com/sdk-for-java/v1/developer-guide/credentials.html

asked 16/09/2024
Rajeev Parameswaran
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first