ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 220 - SAP-C01 discussion

Report
Export

A company has multiple AWS accounts and manages these accounts which AWS Organizations. A developer was given IAM user credentials to access AWS resources. The developer should have readonly access to all Amazon S3 buckets in the account. However, when the developer tries to access the S3 buckets from the console, they receive an access denied error message with no bucket listed. A solution architect reviews the permissions and finds that the developer’s IAM user is listed as having read-only access to all S3 buckets in the account. Which additional steps should the solutions architect take to troubleshoot the issue? (Choose two.)

A.
Check the bucket policies for all S3 buckets.
Answers
A.
Check the bucket policies for all S3 buckets.
B.
Check the ACLs for all S3 buckets.
Answers
B.
Check the ACLs for all S3 buckets.
C.
Check the SCPs set at the organizational units (OUs).
Answers
C.
Check the SCPs set at the organizational units (OUs).
D.
Check for the permissions boundaries set for the IAM user.
Answers
D.
Check for the permissions boundaries set for the IAM user.
E.
Check if an appropriate IAM role is attached to the IAM user.
Answers
E.
Check if an appropriate IAM role is attached to the IAM user.
Suggested answer: D, E
asked 16/09/2024
Vinayaka G D
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first