ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 287 - SCS-C01 discussion

Report
Export


A company has external vendors that must deliver files to the company. These vendors have crossaccount that gives them permission to upload objects to one of the company's S3 buckets. What combination of steps must the vendor follow to successfully deliver a file to the company?

Select 2 answers from the options given below

Please select:

A.
Attach an IAM role to the bucket that grants the bucket owner full permissions to the object
Answers
A.
Attach an IAM role to the bucket that grants the bucket owner full permissions to the object
B.
Add a grant to the objects ACL giving full permissions to bucket owner.
Answers
B.
Add a grant to the objects ACL giving full permissions to bucket owner.
C.
Encrypt the object with a KMS key controlled by the company.
Answers
C.
Encrypt the object with a KMS key controlled by the company.
D.
Add a bucket policy to the bucket that grants the bucket owner full permissions to the object
Answers
D.
Add a bucket policy to the bucket that grants the bucket owner full permissions to the object
E.
Upload the file to the company's S3 bucket
Answers
E.
Upload the file to the company's S3 bucket
Suggested answer: B, E

Explanation:

This scenario is given in the AWS Documentation

A bucket owner can enable other AWS accounts to upload objects. These objects are owned by the accounts that created them. The bucket owner does not own objects that were not created by the bucket owner. Therefore, for the bucket owner to grant access to these objects, the object owner must first grant permission to the bucket owner using an object ACL. The bucket owner can then delegate those permissions via a bucket policy. In this example, the bucket owner delegates permission to users in its own account.

Option A and D are invalid because bucket ACL's are used to give grants to bucket

Option C is not required since encryption is not part of the requirement For more information on this scenario please see the below Link:

https://docs.aws.amazon.com/AmazonS3/latest/dev/example-walkthroushs-manaeing-accessexample3.htmllThe correct answers are: Add a grant to the objects ACL giving full permissions to bucket owner.,Upload the file to the company's S3 bucketSubmit your Feedback/Queries to our Experts

asked 16/09/2024
Oktorio Rizki Prasetya
46 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first