ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 222 - SAA-C03 discussion

Report
Export

What should a solutions architect do to ensure that all objects uploaded to an Amazon S3 bucket are encrypted?

A.
Update the bucket policy to deny if the PutObject does not have an s3 x-amz-acl header set
Answers
A.
Update the bucket policy to deny if the PutObject does not have an s3 x-amz-acl header set
B.
Update the bucket policy to deny if the PutObject does not have an s3:x-amz-aci header set to private.
Answers
B.
Update the bucket policy to deny if the PutObject does not have an s3:x-amz-aci header set to private.
C.
Update the bucket policy to deny if the PutObject does not have an aws SecureTransport header set to true
Answers
C.
Update the bucket policy to deny if the PutObject does not have an aws SecureTransport header set to true
D.
Update the bucket policy to deny if the PutObject does not have an x-amz-server-sideencryption header set.
Answers
D.
Update the bucket policy to deny if the PutObject does not have an x-amz-server-sideencryption header set.
Suggested answer: D

Explanation:

https://aws.amazon.com/blogs/security/how-to-prevent-uploads-of-unencrypted-objects-toamazons3/#:~:text=Solution%20overview,console%2C%20CLI%2C%20or%20SDK.&text=To%20encrypt%20an%20object%20at,S3%2C%20or% 20SSE%2DKMS.

asked 16/09/2024
Phillip Doman
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first