ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 6 - SOA-C02 discussion

Report
Export

A company using AWS Organizations requires that no Amazon S3 buckets in its production accounts should ever be deleted. What is the SIMPLEST approach the SysOps administrator can take to ensure S3 buckets in those accounts can never be deleted?

A.
Set up MFA Delete on all the S3 buckets to prevent the buckets from being deleted.
Answers
A.
Set up MFA Delete on all the S3 buckets to prevent the buckets from being deleted.
B.
Use service control policies to deny the s3:DeleteBucket action on all buckets in production accounts.
Answers
B.
Use service control policies to deny the s3:DeleteBucket action on all buckets in production accounts.
C.
Create an IAM group that has an IAM policy to deny the s3:DeleteBucket action on all buckets in production accounts.
Answers
C.
Create an IAM group that has an IAM policy to deny the s3:DeleteBucket action on all buckets in production accounts.
D.
Use AWS Shield to deny the s3:DeleteBucket action on the AWS account instead of all S3 buckets.
Answers
D.
Use AWS Shield to deny the s3:DeleteBucket action on the AWS account instead of all S3 buckets.
Suggested answer: B
asked 16/09/2024
Jorge Diaz
35 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first