Digital : Cloud – Amazon Web Services Intermediate iON LX SP Assessment

25 questions out of 25.

What

What is a benefit of Amazon EC2 compared to traditional servers?

  1. You can scale elastically within minutes
  2. You can use specialized hardware
  3. You have more control over the operating system
  4. You get more compute power in the cloud

What is the advantage of having multiple regions around the world?

  1. All of the above
  2. Low Latency
  3. Global Footprint
  4. High Availability

What is the purpose of an Auto Scaling Group (ASG) in AWS?

  1. To automatically scale EC2 instances based on demand
  2. To distribute incoming traffi c across multiple EC2 instances
  3. To provide secure access to the backend database
  4. To manage DNS records for high availability

Which

Which of the following are true for CloudFront? (Select 3)

  1. CloudFront can serve both static and dynamic content
  2. CloudFront can serve both compressed and uncompressed files
  3. CloudFront can stream content using RTMP(real time messaging protocol)
  4. CloudFront cannot serve content from a non AWS origin server

Which of the following AWS service quickly provides a business case to make AWS planning and migration decisions?

  1. AWS Migration Evaluator
  2. AWS Budgets
  3. AWS Cost Explorer
  4. AWS Migration service

Which of the following Disaster Recovery Strategy approach ensures that there is a scaled down, but fully functional, copy of your production environmentin another Region?

  1. Warm standby
  2. Pilot light
  3. Backup & restore
  4. Multi-site active/active

Which of the following AWS service is used to easily and effi ciently run hundreds of thousands of batch computing jobs on AWS?

  1. AWS Batch
  2. AWS Lambda
  3. Lambda
  4. SQS

Which AWS service allows you to use your own encryption keys to encrypt data at rest?

  1. EBS
  2. Instance store
  3. EFS
  4. S3

Which of these services are services increase the scalability? (select 2)

  1. SQS
  2. Auto scaling
  3. EC2
  4. Cloudwatch

Which AWS service can be used to provision, manage, and deploy public and private SSL/TLS certifi cates for use with AWS services?

  1. AWS Certificate Manager
  2. AWS Key Management Service
  3. CloudHSM
  4. AWS Certificate

Which type of Elastic Load Balancer can direct traffic based on the domain name?

  1. Application load balancer
  2. Classic load balancer
  3. Network load balancer
  4. Amazon EC2 load balancer

Which statement about “Regions” is not correct?

  1. A Region is a single data center & AWS operates multiple regions across the entire world.
  2. A Region is a combination of data center & AWS operates multiple regions across the entire world.
  3. A Region is a combination of availability zones & AWS operates multiple regions across the entire world.
  4. All of the above

Which statement about Availability Zones (AZs) is CORRECT?

  1. AZs belongs to regions and contains one or more data centers each.
  2. AZs are alternatives to regions and contains one or more data centers each.
  3. AZs is a synonym for regions and every AZ contains one or more data centers each.
  4. None of the above

Which load balancer type supports forwarding traffic based on IP addresses and ports?

  1. Network Load Balancer
  2. Classic Load Balancer
  3. Application Load Balancer
  4. All of the above

Which AWS database service offers seamless horizontal scaling?

  1. Amazon DynamoDB
  2. Amazon RDS
  3. Amazon Redshift
  4. Database on Amazon EC2

Which AWS pricing feature can be used to take advantage of volume pricing discounts across multiple accounts?

  1. Consolidated billing
  2. Pricing Calculator
  3. Enterprise agreement
  4. Cost Explorer

Which of the following is true with regards to serving private content through CloudFront? (select 3)

  1. Signed URLs can be created to access objects from CloudFront edge locations
  2. Access to S3 URLs can be removed therefore allowing access only through CloudFront URLs
  3. Make the S3 private and create Origin Access Identity to access objects in the bucket
  4. Mark the S3 bucket allow access to CloudFront by means of roles

Which of the following is NOT a payment option for Amazon EC2 reserved instances?

  1. All at the end
  2. No Upfront
  3. All Upfront
  4. partial Upfront

Which of the following service is a fully managed continuous integration service that compiles source code, runs tests, and produces software packagesthat are ready to deploy?

  1. AWS CodeBuild
  2. AWS CodeDeploy
  3. AWS CodePipeline
  4. AWS CodeCommit

Which of the following methods is NOT a way to transfer data into Amazon S3?

  1. AWS Storage Gateway
  2. AWS Snowball
  3. AWS Direct Connect
  4. AWS DataSync

Which of the following is a content delivery network (CDN) that delivers your content through a worldwide network of data centers called edge locations?

  1. AWS CloudFront
  2. S3 Transfer Accelerator
  3. AWS Global Accelerator
  4. Route 53

Which of the following AWS service lets you use Chef and Puppet to automate how servers are configured, deployed, and managed across your AmazonEC2 instances or on-premises compute environments.

  1. AWS OpsWork
  2. AWS CodeArtifact
  3. AWS CodeDeploy
  4. AWS CodeConfig

Which storage device is physically attached to the Amazon EC2 host servers?

  1. Instance store volume
  2. Amazon elastic block store(EBS)
  3. Amazon machine image(AMI)
  4. Elastic network adapter

With

With regards to expiration time in CloudFront, which of the following is true? (select 2)

  1. After expiration, the object is served from the origin instead of the edge location
  2. An expiration time can be set to determine how often to check for an updated version of the file
  3. By default, each object expires after being in an edge location after 24 hours
  4. An object in an edge location is never deleted before its expiration time even if it is infrequently accessed

With default settings, what will happen to a root EBS volume when the Amazon EC2 instance is terminated?

  1. it will be deleted
  2. it will be retained
  3. A snapshot will be retained
  4. An AMI will be created

*** Other ***

An access key ID and secret access key is associated with which IAM entity?

  1. User
  2. Group
  3. Role
  4. Policy

For what are you charged while using CloudFront? (select 3)

  1. Data transfer
  2. http/https requests
  3. Invalidation requests
  4. Machine hours

___________ is used to meet your governance, compliance, and auditing needs for your AWS accounts.

  1. CloudTrial
  2. CloudWatch
  3. AWS Health Dashboard
  4. Cloud Formation

How many Internet gateways can be attached to your custom VPC?

  1. 1
  2. 2
  3. 3
  4. 1 per availability zone

You want to explicitly “deny” certain traffi c to the instance running in your VPC. How do you achieve this?

  1. Using a Network ACL
  2. Using a security group
  3. Adding an entry in the route table
  4. By putting the instance in a private subnet

If you want to analyze, investigate, and quickly identify the root cause of security fi ndings or suspicious activities, which of the following service would youuse?

  1. Amazon Detective
  2. Amazon Inspector
  3. AWS Abuse
  4. Amazon Macie

How can you add an extra level of security to your root account?

  1. By adding multi-factor authentication(MFA)
  2. By adding acess key ID and secret access key
  3. By setting a strong password
  4. By deleting the root account

A company is looking for a computing solution that gives them control over the operating system and instance type. They’re looking for a service that onlycharges for what they use. Which of the following would you recommend they use?

  1. EC2
  2. Amazon Fargate
  3. Docker Container Image
  4. Lambda

In which AWS service you don’t have to take tension about managing the servers, managing infrastructure, and provision to run the code?

  1. AWS Lambda
  2. AWS S3
  3. AWS EC2
  4. AWS Load Balancer

____________ is a networking service that helps you improve the availability, performance, and security of your applications with local or global users.

  1. AWS Global Accelerator
  2. S3 Transfer Accelerator
  3. AWS CloudFront
  4. Global DNS