ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 121 - SAA-C03 discussion

Report
Export

A company is running an online transaction processing (OLTP) workload on AWS. This workload uses an unencrypted Amazon RDS DB instance in a Multi-AZ deployment. Daily database snapshots are taken from this instance. What should a solutions architect do to ensure the database and snapshots are always encrypted moving forward?

A.
Encrypt a copy of the latest DB snapshot. Replace existing DB instance by restoring the encrypted snapshot
Answers
A.
Encrypt a copy of the latest DB snapshot. Replace existing DB instance by restoring the encrypted snapshot
B.
Create a new encrypted Amazon Elastic Block Store (Amazon EBS) volume and copy the snapshots to it Enable encryption on the DB instance
Answers
B.
Create a new encrypted Amazon Elastic Block Store (Amazon EBS) volume and copy the snapshots to it Enable encryption on the DB instance
C.
Copy the snapshots and enable encryption using AWS Key Management Service (AWS KMS) Restore encrypted snapshot to an existing DB instance
Answers
C.
Copy the snapshots and enable encryption using AWS Key Management Service (AWS KMS) Restore encrypted snapshot to an existing DB instance
D.
Copy the snapshots to an Amazon S3 bucket that is encrypted using server-side encryption with AWS Key Management Service (AWS KMS) managed keys (SSE-KMS)
Answers
D.
Copy the snapshots to an Amazon S3 bucket that is encrypted using server-side encryption with AWS Key Management Service (AWS KMS) managed keys (SSE-KMS)
Suggested answer: A

Explanation:

https://docs.aws.amazon.com/AmazonRDS/latest/UserGuide/USER_RestoreFromSnapshot.html#US ER_RestoreFromSnapshot.CON Under "Encrypt unencrypted resources" - https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/ EBSEncryption.html

asked 16/09/2024
Vishal Gandhi
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first