ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 375 - SCS-C01 discussion

Report
Export

You company has mandated that all data in AWS be encrypted at rest. How can you achieve this for EBS volumes? Choose 2 answers from the options given below Please select:

A.
Use Windows bit locker for EBS volumes on Windows instances
Answers
A.
Use Windows bit locker for EBS volumes on Windows instances
B.
Use TrueEncrypt for EBS volumes on Linux instances
Answers
B.
Use TrueEncrypt for EBS volumes on Linux instances
C.
Use AWS Systems Manager to encrypt the existing EBS volumes
Answers
C.
Use AWS Systems Manager to encrypt the existing EBS volumes
D.
Boot EBS volume can be encrypted during launch without using custom AMI
Answers
D.
Boot EBS volume can be encrypted during launch without using custom AMI
Suggested answer: A, B

Explanation:

EBS encryption can also be enabled when the volume is created and not for existing volumes. One can use existing tools for OS level encryption. Option C is incorrect.

AWS Systems Manager is a management service that helps you automatically collect software inventory, apply OS patches, create system images, and configure Windows and Linux operating systems. Option D is incorrect

You cannot choose to encrypt a non-encrypted boot volume on instance launch. To have encrypted boot volumes during launch , your custom AMI must have it's boot volume encrypted before launch. For more information on the Security Best practices, please visit the following URL:

.com/whit Security Practices.

The correct answers are: Use Windows bit locker for EBS volumes on Windows instances. Use TrueEncrypt for EBS volumes on Linux instances Submit your Feedback/Queries to our Experts

asked 16/09/2024
Adrien Gallais
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first