List of questions
Related questions
Question 294 - SAA-C03 discussion
A company is deploying a new application on Amazon EC2 instances. The application writes data to Amazon Elastic Block Store (Amazon EBS) volumes. The company needs to ensure that all data that is written to the EBS volumes is encrypted at rest.
Which solution wil meet this requirement?
A.
Create an IAM role that specifies EBS encryption. Attach the role to the EC2 instances.
B.
Create the EBS volumes as encrypted volumes Attach the EBS volumes to the EC2 instances.
C.
Create an EC2 instance tag that has a key of Encrypt and a value of True. Tag all instances that require encryption at the ESS level.
D.
Create an AWS Key Management Service (AWS KMS) key policy that enforces EBS encryption in the account Ensure that the key policy is active.
Your answer:
0 comments
Sorted by
Leave a comment first