List of questions
Related questions
Question 797 - SAA-C03 discussion
A company uses Amazon EC2 instances and stores data on Amazon Elastic Block Store (Amazon EBS) volumes. The company must ensure that all data is encrypted at rest by using AWS Key Management Service (AWS KMS). The company must be able to control rotation of the encryption keys.
Which solution will meet these requirements with the LEAST operational overhead?
A.
Create a customer managed key Use the key to encrypt the EBS volumes.
B.
Use an AWS managed key to encrypt the EBS volumes. Use the key to configure automatic key rotation.
C.
Create an external KMS key with imported key material. Use the key to encrypt the EBS volumes.
D.
Use an AWS owned key to encrypt the EBS volumes.
Your answer:
0 comments
Sorted by
Leave a comment first