ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 26 - SOA-C02 discussion

Report
Export

A large company is using AWS Organizations to manage its multi-account AWS environment. According to company policy, all users should have read-level access to a particular Amazon S3 bucket in a central account. The S3 bucket data should not be available outside the organization. A SysOps administrator must set up the permissions and add a bucket policy to the S3 bucket. Which parameters should be specified to accomplish this in the MOST efficient manner?

A.
Specify "*" as the principal and PrincipalOrgId as a condition.
Answers
A.
Specify "*" as the principal and PrincipalOrgId as a condition.
B.
Specify all account numbers as the principal.
Answers
B.
Specify all account numbers as the principal.
C.
Specify PrincipalOrgId as the principal.
Answers
C.
Specify PrincipalOrgId as the principal.
D.
Specify the organization's master account as the principal.
Answers
D.
Specify the organization's master account as the principal.
Suggested answer: A

Explanation:

Reference: https://aws.amazon.com/blogs/security/iam-share-aws-resources-groups-aws-accounts-aws-organizations/

asked 16/09/2024
Avion Bryant
46 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first