ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 307 - DVA-C01 discussion

Report
Export


A company has 25:000 employees and is growing The company is creating an application that will be accessible to its employees only A developer is using Amazon S3 to store images and Amazon RDS to store application dat a. The company requires that all employee information remain in the legacy Security Assertion Markup Language (SAML) employee directory only and is not interested in mirroring any employee information on AWS. How can the developer provide authorized access for the employees who will be using this application so each employee can access their own application data only?

A.
Use Amazon VPC and keep all resources inside the VPC. and use a VPC link for the S3 bucket with the bucket policy.
Answers
A.
Use Amazon VPC and keep all resources inside the VPC. and use a VPC link for the S3 bucket with the bucket policy.
B.
Use Amazon Cognito user pools, federate with the SAML provider and use user pool groups with an IAM policy
Answers
B.
Use Amazon Cognito user pools, federate with the SAML provider and use user pool groups with an IAM policy
C.
Use an Amazon Cognito identity pool, federate with the SAML provider, and use an IAM condition key with a value for the cognito-identity.amazonaws com sub variable to grant access to the employees.
Answers
C.
Use an Amazon Cognito identity pool, federate with the SAML provider, and use an IAM condition key with a value for the cognito-identity.amazonaws com sub variable to grant access to the employees.
D.
Create a unique IAM role for each employee and have each employee assume the role to access the application so they can access their personal data only.
Answers
D.
Create a unique IAM role for each employee and have each employee assume the role to access the application so they can access their personal data only.
Suggested answer: B
asked 16/09/2024
hajar mechrany
30 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first