516

AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

  • Upload
    others

  • View
    11

  • Download
    2

Embed Size (px)

Citation preview

Page 1: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based
Page 2: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

CopyrightNoticeAWSCertifiedSolutionsArchitectAssociatePracticeQuestionsCopyright©2018ShaunL.HummelAllRightsReserved.Nopartofthisworkmaybesold,reproducedortransmittedinanyformorbyanymeanswithoutwrittenpermissionfromtheauthor.

Page 3: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

DisclaimerThisbookwaswrittenasastudyguideforobtainingAWScertification.Whileeveryefforthasbeenmadetomakethisbookasaccurateaspossiblenowarrantyisimplied.Theauthorshallnotbeliableorresponsibleforanylossordamagearisingfromtheinformationcontainedinthisbook.

Page 4: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

AboutTheAuthorShaunHummelisaSeniorNetworkEngineerwith15yearsenterprisenetworkplanning,designandimplementationexperience.AuthorofAWSCertifiedSolutionsArchitectAssociate:ExamStudyNotes.

Page 5: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

ContentsIntroduction

1.0EC2Compute2.0VirtualPrivateCloud3.0StorageServices4.0SecurityArchitecture5.0DatabaseServices6.0FaultTolerantSystems7.0DeploymentandOrchestration8.0MonitoringServicesAnswerKey

Page 6: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

IntroductionTheskillsrequiredforinformationtechnologyarechangingrapidlywithcloudcomputingandnetworkprogrammability.Thevirtualizationofservers,applicationsandnetworkdevicesiscausinganoverlapofmanagementdomainsfornetwork,systemsandsecurityengineers.Thenetworkdevicesandapplicationsnowresideatnetworkserversasvirtualmachines(VM).Inadditionthereisashifttowardaninternet-basedconnectivitymodelthatischanginghowthenetworkismanaged.Theserver-centricarchitectureredefineshownetworkcapacityismanagedaswell.Therearenewervirtualizedmanagementsolutionshavebeendevelopedforintegratingphysicalandvirtualplatforms.Eachgroupmustdevelopnewskillsforvirtualization,server-basedtroubleshootingandcloudmanagement.Thevirtualizationofapplicationsanddevicesallowforanon-demandconnectivityandoperationalmodel.Itischaracterizedbyadynamic,elastic,scalablearchitecturethatishardwareindependent.ThenewnetworkingparadigmusesOpenAPIs,overlaysandSDNprogrammablenetworkdevices.Thevirtualizationoverlayabstractstheunderlyingnetworkinfrastructurefromtheapplicationlayer.Thevirtualizationarchitectureisnowenablingseamlessaccessandglobalconnectivityofenterpriseandclouddatacenterapplications.Theincreasingpopularityofcloudcomputingistheresultofanoperationalmodelthatnowhascompaniesmigratingdatacenterapplicationstocloudfacilities.Accordingtoastudyalmost70%ofallIPinternettrafficwillterminateatacloudfacilityby2018.AWScertificationhasbecomepopularasatrainingplatformforsystemsadministrators,engineersandarchitects.Candidatesmustanswertechnicalquestionsandhavetheskillsrequiredtoselect,deploy,integrateandmaintainAWScloudsolutions.Thestudyguideiscomprisedof300+practicequestions.AllquestionsarebasedonofficialAWScertificationguidelinesthatcoverallexamtopicsrequiredtopassAWSCertifiedSolutionsArchitectAssociateexam.

Page 7: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

AWSCertifiedSolutionsArchitect:AssociateExamReadeachquestioncarefullyandselectthecorrectanswer/sfromtheoptionsprovided.Useatexteditor(notepad)torecordyouranswersforeachquestion.EC2ComputeQuestion1:WhatthreeattributesareselectablewhencreatinganEBSvolumeforanEC2instance?

A. volumetypeB. IOPSC. regionD. CMKE. ELBF. EIP

Page 8: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:Youhavebeenaskedtomigratea10GBunencryptedEBSvolumetoanencryptedvolumeforsecuritypurposes.Whatarethreekeystepsrequiredaspartofthemigration?

A. pausetheunencryptedinstanceB. createanewencryptedvolumeofthesamesizeandavailabilityzoneC. createanewencryptedvolumeofthesamesizeinanyavailabilityzoneD. startconverterinstanceE. shutdownanddetachtheunencryptedinstance

Page 9: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:WhatisEC2instanceprotection?

A. preventsAutoScalingfromselectingspecificEC2instancetobereplacedwhenscalingin

B. preventsAutoScalingfromselectingspecificEC2instancetobereplacedwhenscalingout

C. preventsAutoScalingfromselectingspecificEC2instanceforterminationwhenscalingout

D. preventsAutoScalingfromselectingspecificEC2instanceforterminationwhenscalingin

E. preventsAutoScalingfromselectingspecificEC2instanceforterminationwhenpaused

F. preventsAutoScalingfromselectingspecificEC2instanceforterminationwhenstopped

Page 10: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

WhattwofeaturesaresupportedwithEBSvolumeSnapshotfeature?

A. EBSreplicationacrossregions

B. EBSmulti-zonereplication

C. EBSsingleregiononly

D. fullsnapshotdataonly

E. unencryptedsnapshotonly

Page 11: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

WhattworesourcetagsaresupportedforanEC2instance?

A. VPCendpoint

B. EIP

C. networkinterface

D. securitygroup

E. FlowLog

Page 12: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:

WhattwooptionsareavailabletoalerttenantswhenanEC2instanceisterminated?

A. SNS

B. CloudTrail

C. Lambdafunction

D. SQS

E. STS

Page 13: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

WhatclassofEC2instancetypeisrecommendedforrunningdataanalytics?

A. memoryoptimized

B. computeoptimized

C. storageoptimized

D. generalpurposeoptimized

Page 14: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:

WhatclassofEC2instancetypeisrecommendedfordatabaseservers?

A. memoryoptimized

B. computeoptimized

C. storageoptimized

D. generalpurposeoptimized

Page 15: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:

Whattwoattributesdistinguisheachpricingmodel?

A. reliability

B. amazonservice

C. discount

D. performance

E. redundancy

Page 16: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

WhatarethreestandardAWSpricingmodels?

A. elastic

B. spot

C. reserved

D. dynamic

E. demand

Page 17: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:HowisanEBSrootvolumecreatedwhenlaunchinganEC2instancefromanewEBS-backedAMI?

A. S3template

B. originalAMI

C. snapshot

D. instancestore

Page 18: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

WhatAmazonAWSsourcesareavailableforcreatinganEBS-BackedLinuxAMI?(selecttwo)

A. EC2instance

B. AmazonSMS

C. VMImport/Export

D. EBSSnapshot

E. S3bucket

Page 19: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

Whatisrequiredtopreventaninstancefrombeinglaunchedandincurringcosts?

A. stopinstance

B. terminateinstance

C. terminateAMIandde-registerinstance

D. stopandde-registerinstance

E. stop,deregisterAMIandterminateinstance

Page 20: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

WhatisanEBSSnapshot?

A. backupofanEBSrootvolumeandinstancedata

B. backupofanEC2instance

C. backupofconfigurationsettings

D. backupofinstancestore

Page 21: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

WhereareELBandAuto-Scalinggroupsdeployedasaunifiedsolutionforhorizontalscaling?

A. databaseinstances

B. allinstances

C. webserverinstances

D. defaultVPConly

Page 22: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:

WhatfeatureissupportedwhenattachingordetachinganEBSvolumefromanEC2instance?

A. EBSvolumecanbeattachedanddetachedtoanEC2instanceinthesameregion

B. EBSvolumecanbeattachedanddetachedtoanEC2instancethatiscross-region

C. EBSvolumecanonlybecopiedandattachedtoanEC2instancethatiscross-region

D. EBSvolumecanonlybeattachedanddetachedtoanEC2instanceinthesameAvailabilityZone

Page 23: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:

WhattwostatementscorrectlydescribehowtoaddormodifyIAMrolestoarunningEC2instance?

A. attachanIAMroletoanexistingEC2instancefromtheEC2consoleB. replaceanIAMroleattachedtoanexistingEC2instancefromtheEC2

consoleC. attachanIAMroletotheuseraccountandrelaunchtheEC2instanceD. addtheEC2instancetoagroupwheretheroleisamember

Page 24: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question18:WhatisthedefaultbehaviorforanEC2instancewhenterminated?(Selecttwo)

A. DeleteOnTerminationattributecannotbemodifiedB. EBSrootdevicevolumeandadditionalattachedvolumesaredeleted

immediatelyC. EBSdatavolumesthatyouattachatlaunchpersistD. EBSrootdevicevolumeisautomaticallydeletedwheninstance

terminates

Page 25: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question19:

HowdoyoulaunchanEC2instanceafteritisterminated?(Selecttwo)

A. launchanewinstanceusingthesameAMI

B. rebootinstancefromCLI

C. launchanewinstancefromaSnapshot

D. rebootinstancefrommanagementconsole

E. contactAWSsupporttoreset

Page 26: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question20:

WhatservicecanautomateEBSsnapshots(backups)forrestoringEBSvolumes?

A. CloudWatchevent

B. SNStopic

C. CloudTrail

D. AmazonInspector

E. CloudWatchalarm

Page 27: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question21:

WhatwillcauseAWStoterminateanEC2instanceonlaunch?(Selecttwo)

A. securitygrouperror

B. numberofEC2instancesonAWSaccountexceeded

C. EBSvolumelimitsexceeded

D. multipleIPaddressesassignedtoinstance

E. unsupportedinstancetypeassigned

Page 28: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question22:

YourecentlymadesomeconfigurationchangestoanEC2instance.YouthenlaunchedanewEC2instancefromthesameAMIhowevernoneofthesettingsweresaved.Whatisthecauseofthiserror?

A. didnotsaveconfigurationchangestoEC2instanceB. didnotsaveconfigurationchangestoAMIC. didnotcreatenewAMID. didnotrebootEC2instancetoenablechanges

Page 29: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question23:WhatstatementsarecorrectconcerningDisableApiTerminationattribute?(Selecttwo)

A. cannotenableterminationprotectionforSpotinstancesB. terminationprotectionisdisabledbydefaultforanEC2instanceC. terminationprotectionisenabledbydefaultforanEC2instanceD. canenableterminationprotectionforSpotinstancesE. DisableApiTerminationattributesupportedforEBS-backedinstances

only

Page 30: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question24:

WhatisrequiredtocopyanencryptedEBSsnapshotcross-account?(Selecttwo)A. copytheunencryptedEBSsnapshottoanS3bucketB. distributethecustomkeyfromCloudFrontC. sharethecustomkeyforthesnapshotwiththetargetaccountD. sharetheencryptedEBSsnapshotwiththetargetaccountE. sharetheencryptedEBSsnapshotspubliclyF. enablerootaccesssecurityonbothaccounts

Page 31: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question25:

WhatthreeservicesenableSingle-AZasadefault?

A. EC2

B. ELB

C. Auto-Scaling

D. DynamoDB

E. S3

Page 32: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question26:

WhatAWSserviceautomaticallypublishesaccesslogseveryfiveminutes?

A. VPCFlowLogs

B. ElasticLoadBalancer

C. CloudTrail

D. DNSRoute53

Page 33: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question27:

Youhavedevelopedaweb-basedapplicationforfilesharingthatwillallowcustomerstoaccessfiles.Thereareavarietyofsizesthatincludelarger.pdfandvideofiles.Whattwosolutionstackscouldtenantsuseforanonlinefilesharingservice?(Selecttwo)

A. EC2,ELB,Auto-Scaling,S3B. Route53,Auto-Scaling,DynamoDBC. EC2,Auto-Scaling,RDSD. CloudFront

Page 34: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question28:

WhatinfrastructureservicesareprovidedtoEC2instances?(Selectthree)

A. VPN

B. storage

C. compute

D. transport

E. security

F. support

Page 35: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question29:

WhatstepsarerequiredfromAWSconsoletocopyanEBS-backedAMIforadatabaseinstancecross-region?

A. createSnapshotofdatavolume,selectCopy,selectdestinationregionB. selectCopyEBS-backedAMIoptionanddestinationregionC. selectcopydatabasevolumeanddestinationregionD. createSnapshotofEBS-backedAMI,selectCopySnapshotoption,

selectdestinationregionE. createSnapshotofInstance-storeAMI,selectCopyAMIoption,select

destinationregion

Page 36: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question30:

Howiscapacity(compute,storageandnetworkspeed)managedandassignedtoEC2instances?

A. AMI

B. instancetype

C. IOPS

D. Auto-Scaling

Page 37: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question31:

WhatstoragetypeenablepermanentattachmentofvolumestoEC2instances?

A. S3

B. RDS

C. TDS

D. EBS

E. instancestore

Page 38: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question32:Whatistherecommendedmethodformigrating(copying)anEC2instancetoadifferentregion?

A. terminateinstance,selectregion,copyinstancetodestinationregionB. selectAMIassociatedwithEC2instanceanduseCopyAMIoptionC. stopinstanceandcopyAMItodestinationregionD. cross-regioncopyisnotcurrentlysupported

Page 39: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question33:

WhataretwoattributesthatdefineanEC2instancetype?

A. vCPU

B. licensetype

C. EBSvolumestorage

D. IPaddress

E. Auto-Scaling

Page 40: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question34:

HowisanAmazonElasticLoadBalancer(ELB)assigned?

A. perEC2instance

B. perAuto-Scalinggroup

C. persubnet

D. perVPC

Page 41: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question35:

WhatmethoddetectswhentoreplaceanEC2instancethatisassignedtoanAuto-Scalinggroup?

A. healthcheck

B. loadbalancingalgorithm

C. EC2healthcheck

D. notcurrentlysupported

E. dynamicpathdetection

F. Auto-Scaling

Page 42: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question36:

WhattwostatementscorrectlydescribeAuto-Scalinggroups?

A. horizontalscalingofcapacity

B. decreasenumberofinstancesonly

C. EC2instancesareassignedtoagroup

D. databaseinstancesonly

E. nosupportformultipleavailabilityzones

Page 43: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question37:

WhatisthedefaultmaximumnumberofElasticIPaddressesassignableperAmazonAWSregion?

A. 1

B. 100

C. 5

D. unlimited

Page 44: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question38:

HowaresnapshotsforanEBSvolumecreatedwhenitistherootdeviceforaninstance?

A. pauseinstance,unmountvolumeandsnapshot

B. terminateinstanceandsnapshot

C. unencryptvolumeandsnapshotdynamically

D. stopinstance,unmountvolumeandsnapshot

Page 45: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question39:

WhatcloudcomputecomponentsareconfiguredbytenantsandnotAmazonAWSsupportengineers?(Selectthree)

A. hypervisor

B. upstreamphysicalswitch

C. virtualappliances

D. guestoperatingsystem

E. applicationsanddatabases

F. RDS

Page 46: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question40:

WhatthreeattributesareusedtodefinealaunchconfigurationtemplateforanAuto-Scalinggroup?

A. instancetype

B. privateIPaddress

C. ElasticIP

D. securitygroup

E. AMI

Page 47: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question41:

WhatthreecharacteristicsorlimitationsdifferentiateEC2instancetypes?

A. VPConlyB. applicationtypeC. EBSvolumeonlyD. virtualizationtypeE. AWSserviceselected

Page 48: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question42:

SelecttwodifferencebetweenHVMandPVvirtualizationtypes?

A. HVMsupportsallcurrentgenerationinstancetypesB. HVMissimilartobaremetalhypervisorarchitectureC. PVprovidesbetterperformancethanHVMformostinstancetypes

D. HVMdoesn’tsupportenhancednetworkingE. HVMdoesn’tsupportcurrentgenerationinstancetypes

Page 49: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

VirtualPrivateCloud(VPC)Question1:Whataretheminimumcomponentsrequiredtoenableaweb-basedapplicationwithpublicwebserversandaprivatedatabasetier?(Selectthree)

A. InternetgatewayB. AssignEIPaddressingtodatabaseinstancesonprivatesubnetC. VirtualprivategatewayD. AssigndatabaseinstancestoprivatesubnetandprivateIPaddressingE. AssignEIPandprivateIPaddressingtowebserversonpublicsubnet

Page 50: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:

Refertothenetworkdrawing.Howarepacketsroutedfromprivatesubnettopublicsubnetforthefollowingweb-basedapplicationwithadatabasetier?

A. Internetgateway

B. customroutetable

C. 10.0.0.0/16

D. nat-instance-id

E. igw-id

F. addcustomroutetable

Page 51: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:

WhatVPCcomponentprovidesNetworkAddressTranslation?

A. NATinstance

B. NATgateway

C. virtualprivategateway

D. Internetgateway

E. ECS

Page 52: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

WhataretheadvantagesofNATgatewayoverNATinstance?(Selecttwo)

A. NATgatewayrequiresasingleEC2instance

B. NATgatewayisscalable

C. NATgatewaytranslatesfaster

D. NATgatewaysisamanagedservice

E. NATgatewayisLinux-based

Page 53: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

WhatisthemanagementresponsibilityoftenantsandnotAmazonAWS?

A. EC2instances

B. RDS

C. Beanstalk

D. NATinstance

Page 54: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:

Whattwofeaturesprovideanencrypted(VPN)connectionfromVPCtoanenterprisedatacenter?

A. Internetgateway

B. AmazonRDS

C. Virtualprivategateway

D. CSR1000Vrouter

E. NATgateway

Page 55: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

WhattwoattributesaresupportedwhenconfiguringanAmazonVirtualprivategateway(VPG)?

A. routepropagation

B. ElasticIP(EIP)

C. DHCP

D. publicIPv4address

E. publicsubnets

Page 56: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:

WhattwofeaturesareavailablewithAWSDirectConnectservice?

A. internetaccess

B. extendon-premisesVLANstocloud

C. bidirectionalforwardingdetection(BFD)

D. loadbalancingbetweenDirectConnectandVPNconnection

E. publicandprivateAWSservices

Page 57: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:

WhenisDirectConnectapreferredsolutionoverVPNIPsec?

A. fastandreliableconnection

B. redundancyisakeyrequirement

C. fastandeasytodeploy

D. layer3connectivity

E. layer2connectivity

Page 58: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

YouhavebeenaskedtosetupaVPCendpointconnectionbetweenVPCandS3bucketsforstoringbackupsandsnapshots.WhatAWScomponentsarecurrentlyrequiredwhenconfiguringaVPCendpoint?

A. Internetgateway

B. NATinstance

C. ElasticIP

D. privateIPaddress

Page 59: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:

WhataretheprimaryadvantagesofVPCendpoints?(Selecttwo)

A. reliability

B. cost

C. throughput

D. security

Page 60: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

WhataretheDHCPoptionattributesusedtoassignprivateDNSserverstoyourVPC?

A. dnsresolutionanddomainname

B. hostnamesandinternetdomain

C. domainserversanddomainname

D. domain-name-serversanddomain-name

Page 61: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

WhatDNSattributesareconfiguredwhenDefaultVPCoptionisselected?

A. DNSresolution:yes/DNShostnames:yes

B. DNSresolution:yes/DNShostnames:no

C. DNSresolution:no/DNShostnames:yes

D. DNSresolution:no/DNShostnames:no

Page 62: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

WhatconfigurationsettingsarerequiredfromtheremoteVPCinordertocreatecross-accountpeering?(Selectthree)

A. VPCID

B. accountusername

C. accountID

D. CMKkeys

E. VPCCIDRblock

F. volumetype

Page 63: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

WhatCIDRblockrangeissupportedforIPv4addressingandsubnettingwithinasingleVPC?

A. /16to/32

B. /16to/24

C. /16to/28

D. /16to/20

Page 64: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:WhatproblemiscausedbythefactthatVPCpeeringdoesnotpermittransitiverouting?

A. additionalVPCroutetablestomanageB. virtualprivategatewayisrequiredC. InternetgatewayisrequiredforeachVPCD. routingbetweenconnectedspokesthroughhubVPCiscomplexE. increasednumberofpeerlinksrequired

Page 65: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:

WhattwostatementscorrectlydescribesElasticLoadBalanceroperation?

A. spansmultipleregions

B. assignedperEC2instance

C. assignedpersubnet

D. assignedperAuto-Scalinggroup

E. nocross-regionsupport

Page 66: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question18:

WhataretwoadvantagesofElasticIP(EIP)overAWSpublicIPv4addresses?

A. EIPcanbereassigned

B. EIPisprivate

C. EIPisdynamic

D. EIPispersistent

E. EIPispublicandprivate

Page 67: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question19:

WhatAWSservicesaregloballymanaged?(Selectfour)

A. IAM

B. S3

C. CloudFront

D. Route53

E. DynamoDB

F. WAF

G. ELB

Page 68: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question20:

WhatmethodsareavailableforcreatingaVPC?(Selectthree)

A. AWSmanagementconsole

B. AWSmarketplace

C. VPCwizard

D. VPCconsole

E. DirectConnect

Page 69: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question21:WhattwodefaultsettingsareconfiguredfortenantsbyAWSwhenDefaultVPCoptionisselected?

A. createsasize/20defaultsubnetineachAvailabilityZoneB. createsanInternetgatewayC. createsamainroutetablewithlocalroute10.0.0.0/16D. createavirtualprivategatewayE. createasecuritygroupthatexplicitlydeniesalltraffic

Page 70: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question22:

WhatthreestatementscorrectlydescribesIPaddressallocationwithinaVPC?A. EC2instancemustbeterminatedtoreassignanIPaddressB. EC2instancethatispausedcanreassignIPaddressC. EC2instancethatisstoppedcanreassignIPaddressD. privateIPaddressesareallocatedfromapoolandcanbereassignedE. privateIPaddressescanbeassignedbytenantF. VPCsupportsdualstackmode(IPv4/IPv6)

Page 71: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question23:

WhataretwoadvantagesofselectingdefaulttenancyoptionforyourVPCwhencreatingit?

A. performanceandreliability

B. someAWSservicesdonotworkwithadedicatedtenancyVPC

C. tenantcanlaunchinstanceswithinVPCasdefaultordedicatedinstances

D. instancelaunchisfaster

Page 72: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question24:WhatisthepurposeofalocalroutewithinaVPCroutetable?

A. localrouteisderivedfromthedefaultVPCCIDRblock10.0.0.0/16B. communicatebetweeninstanceswithinthesamesubnetordifferent

subnetsC. usedtocommunicatebetweeninstanceswithinthesamesubnetD. defaultrouteforcommunicatingbetweenprivateandpublicsubnetsE. onlyinstalledinthemainroutetable

Page 73: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question25:

WhatisthedefaultbehaviorwhenaddinganewsubnettoyourVPC?(Selecttwo)

A. newsubnetisassociatedwiththemainroutetableB. newsubnetisassociatedwiththecustomroutetableC. newsubnetisassociatedwithanyselectedroutetableD. newsubnetisassignedtothedefaultsubnetE. newsubnetisassignedfromtheVPCCIDRblock

Page 74: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question26:YouhaveenabledAmazonRDSdatabaseservicesinVPC1foranapplicationthathaspublicwebserversinVPC2.HowdoyouconnectthewebserverstotheRDSdatabaseinstancesotheycancommunicateconsideringtheVPC'sareinthesameregion?

A. VPCendpointsB. VPNgatewayC. path-basedroutingD. VPCpeeringE. AWSNetworkLoadBalancer

Page 75: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question27:

WhatAWSservicesnowsupportVPCendpointsfeatureforoptimizingsecurity?(Selectthree)

A. Kinesis

B. DNSRoute53

C. S3

D. DynamoDB

E. RDS

Page 76: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question28:

WhatarethreecharacteristicsofanAmazonVirtualPrivateCloud?

A. publicandprivateIPaddressing

B. broadcasts

C. multipleprivateIPaddressespernetworkinterface

D. dedicatedsingletenanthardwareonly

E. persistentpublicIPaddresses

F. HSRP

Page 77: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question29:WhatisthedifferencebetweenVPCmainroutetableandcustomroutetable?

A. VPConlycreatesamainroutetablewhenstartedB. customroutetableisthedefaultC. customroutetableiscreatedforpublicsubnetsD. customroutetableiscreatedforprivatesubnetsE. mainroutetableiscreatedforpublicandprivatesubnets

Page 78: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question30:

WhatisthepurposeofthenativeVPCrouter?

A. routepacketsacrosstheinternet

B. routepacketsbetweenprivatecloudinstances

C. routepacketsbetweensubnets

D. routepacketsfrominstancestoS3storagevolumes

E. routepacketsacrossVPN

Page 79: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question31:

HowareprivateDNSserversassignedtoanAmazonVPC?

A. notsupported

B. selectnondefaultVPC

C. selectdefaultVPC

D. selectEC-2classic

Page 80: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question32:

WhataretwocharacteristicsofanAmazonsecuritygroup?

A. instancelevelpacketfiltering

B. denyrulesonly

C. permitrulesonly

D. subnetlevelpacketfiltering

E. inboundonly

Page 81: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question33:

WhatstatementistrueofNetworkAccessControlLists(ACL)operationwithinanAmazonVPC?

A. instanceandsubnetlevelpacketfiltering

B. subnetlevelpacketfiltering

C. inboundonly

D. onlyoneACLallowedperVPC

E. outboundonly

Page 82: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question34:

HowarepacketsforwardedbetweenpublicandprivatesubnetswithinVPC?

A. EIP

B. NAT

C. mainroutetable

D. VPN

Page 83: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question35:

WhattwostatementsaccuratelydescribeAmazonVPCarchitecture?

A. ElasticLoadBalancer(ELB)cannotspanmultipleavailabilityzones

B. VPCdoesnotsupportDMVPNconnection

C. VPCsubnetcannotspanmultipleavailabilityzones

D. VPCcannotspanmultipleregions

E. FlowlogsarenotsupportedwithinaVPC

Page 84: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question36:

WhatisarequirementforattachingEC2instancestoon-premisesclientsandapplications?

A. AmazonVirtualPrivateGateway(VPN)

B. AmazonInternetGateway

C. VPNConnection

D. ElasticLoadBalancer(ELB)

E. NAT

Page 85: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question37:

WhattwostatementscorrectlydescribeAmazonvirtualprivategateway?

A. assigntoprivatesubnetsonly

B. assigntopublicsubnetsonly

C. singlevirtualprivategatewayperVPC

D. multiplevirtualprivategatewaysperVPC

E. singlevirtualprivategatewayperregion

Page 86: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question38:

WhatisthemaximumaccessportspeedavailablewithAmazonDirectConnectservice?

A. 1Gbps

B. 10Gbps

C. 500Mbps

D. 100Gbps

E. 100Mbps

Page 87: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question39:

Refertothedrawing.YourcompanyhasaskedyoutoconfigureapeeringlinkbetweentwoVPCsthatarecurrentlynotconnectedorexchanginganypackets.WhatdestinationandtargetisconfiguredintheroutingtableofVPC1toenablepacketforwardingtoVPC2?

A.destination=172.16.0.0/16target=pcx-vpc2vpc1

B.destination=10.0.0.0/16target=pcx-vpc2

C.destination=172.16.0.0/16target=10.0.0.0/16

D.destination=172.16.0.0/16target=pcx-vpc1vpc2

E.defaultrouteonly

Page 88: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based
Page 89: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question40:

HowisroutingenabledbydefaultwithinaVPCforanEC2instance?

A. addadefaultroute

B. mainroutetable

C. customroutetable

D. mustbeconfiguredexplicitly

Page 90: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question41:

WhatthreefeaturesarenotsupportedwithVPCpeering?

A. overlappingCIDRblocks

B. IPv6addressing

C. Gateways

D. transitiverouting

E. RedShift

F. ElastiCache

Page 91: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question42:

WhatrouteisusedinaVPCroutingtableforpacketforwardingtoaGateway?

A. staticroute

B. 10.0.0.0/16

C. tenantconfigured

D. 0.0.0.0/0

E. 0.0.0.0/16

Page 92: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question43:Youareaskedtodeployawebapplicationcomprisedofmultiplepublicwebserverswithonlyprivateaddressingassigned.WhatAmazonAWSsolutionsenablesmultipleserversonaprivatesubnetwithonlyasingleEIPrequiredandAvailabilityZoneredundancy?

A. NATinstanceB. InternetgatewayC. virtualprivategatewayD. NATgatewayE. ElasticNetworkInterface(ENI)

Page 93: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question44:

WhatistheIPaddressingschemaassignedtoadefaultVPC?

A. 172.31.0.0/16CIDRblocksubnettedwith172.31.0.0/20

B. 172.16.0.0/16CIDRblocksubnettedwith172.16.0.0/24

C. 10.0.0.0/16CIDRblocksubnettedwith10.0.0.0/24

D. 172.16.0.0/24CIDRblocksubnettedwith172.31.0.0/18

Page 94: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question45:

WhatdefaultconfigurationandcomponentsareaddedbyAWSwhenDefaultVPCtypeisselected?(Selectthree)

A. Internetgateway

B. virtualprivategateway

C. NATinstance

D. securitygroup

E. DNS

Page 95: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question46:

Whatfeaturerequirestenantstodisablesource/destinationcheck?

A. ElasticIP(EIP)

B. datareplication

C. VPCpeering

D. NAT

E. Internetgateway

Page 96: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

StorageServicesQuestion1:

WhatAWSstoragesolutionallowsthousandsofEC2instancestosimultaneouslyupload,access,deleteandsharefiles?

A. EBS

B. S3

C. Glacier

D. EFS

Page 97: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:

WhatisrequiredforanEFSmounttarget?(Selecttwo)

A. EIP

B. DNSname

C. IPaddress

D. DHCP

E. IAMrole

Page 98: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:

Whatconnectivityfeaturesarerecommendedforcopyingon-premisesfilestoEFS?(Selecttwo)

A. VPNIPsec

B. InternetGateway

C. DirectConnect

D. FileSync

E. FTP

F. AWSStorageGateway

Page 99: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

WhatAWSservicesencryptsdataatrestbydefault?(Selecttwo)

A. S3

B. AWSStorageGateway

C. EBS

D. Glacier

E. RDS

Page 100: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

WhatfaulttolerantfeaturesdoesS3storageprovide?(Selectthree)

A. cross-regionreplication

B. versioningmustbedisabled

C. cross-regionasynchronousreplicationofobjects

D. synchronousreplicationofobjectswithinaregion

E. multipledestinationbuckets

Page 101: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:

Whatisthefastesttechniquefordeleting900objectsinanS3bucketwithasingleHTTPrequest?

A. Multi-PartDeleteAPI

B. Multi-ObjectDeleteAPI

C. 100objectsismaximumperrequest

D. Fast-DeleteAPI

Page 102: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

WhatsecuritycontrolstechniqueisrecommendedforS3cross-accountaccess?

A. IAMgroup

B. securitygroups

C. S3ACL

D. bucketpolicies

Page 103: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:

Whataretwoadvantagesofcross-regionreplicationofanS3bucket?

A. cost

B. securitycompliance

C. scalability

D. Beanstalksupport

E. minimizelatency

Page 104: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:

WhataretwoprimarydifferencebetweenAmazonS3StandardandS3/RRSstorageclasses?

A. AmazonStandarddoesnotreplicateatall

B. RRSprovideshigherdurability

C. RRSprovideshigheravailability

D. RRSdoesnotreplicateobjectsasmanytimes

E. applicationusageisdifferent

Page 105: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

WhattwofeaturesareenabledwithS3services?

A. storeobjectsofanysize

B. dynamicwebcontent

C. supportsProvisionedIOPS

D. storevirtuallyunlimitedamountsofdata

E. bucketnamesaregloballyunique

Page 106: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:

WhatnewfeaturewasrecentlyaddedtoSQSthatdefineshowmessagesareordered?

A. streams

B. SNS

C. FIFO

D. TLS

E. decoupling

Page 107: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

WhattwoAWSstoragetypesarepersistent?

A. ephemeral

B. S3

C. EBS

D. instancestore

E. SAML

Page 108: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

Selectthreeon-premisesbackupsolutionsusedforcopyingdatatoanAmazonAWSS3bucket?

A. AWSImport/Export

B. RDS

C. Snowball

D. AvailabilityZone(AZ)replication

E. AWSStorageGateway

Page 109: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

Youhave1TBofdataandwanttoarchivethedatathatwon'tbeaccessedthatoften.WhatAmazonAWSstoragesolutionisrecommended?

A. Glacier

B. EBS

C. ephemeral

D. CloudFront

Page 110: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

WhatarethreemethodsofaccessingDynamoDBforcustomizationpurposes?

A. CLI

B. AWSconsole

C. APIcall

D. vCenter

E. Beanstalk

Page 111: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:

WhataretwoprimarydifferencesbetweenGlacierandS3storageservices?

A. Glacierislowercost

B. S3islowercost

C. Glacierispreferredforfrequentdataaccesswithlowerlatency

D. S3ispreferredforfrequentdataaccesswithlowerlatency

E. S3supportslargerfilesize

Page 112: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:

WhatstatementcorrectlydescribestheoperationofAWSGlacierarchive?

A. archiveisagroupofvaults

B. archiveisanunencryptedvault

C. archivesupportsaggregatedfilesonly

D. maximumfilesizeis1TB

E. archivesupportssingleandaggregatedfiles

Page 113: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question18:WhatarethreeprimarydifferencesbetweenS3vsEBS?

A. S3isamulti-purposepublicinternet-basedstorageB. EBSisdirectlyassignedtoatenantVPCEC2instanceC. EBSandS3providepersistentstorageD. EBSsnapshotsaretypicallystoredonS3bucketsE. EBSandS3usebucketstomanagefilesF. EBSandS3arebasedonblocklevelstorage

Page 114: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question19:

Whaton-premisessolutionisavailablefromAmazonAWStominimizelatencyforalldata?

A. Gateway-VTL

B. Gateway-cachedvolumes

C. Gateway-storedvolumes

D. EBS

E. S3bucket

F. ElastiCache

Page 115: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question20:

WhatfeaturetransitionsS3storagetoStandard-IAforcostoptimization?

A. RRS/S3

B. Glaciervault

C. storageclassanalysis

D. path-basedrouting

Page 116: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question21:

HowdoesAWSuniquelyidentifyS3objects?

A. bucketname

B. version

C. key

D. objecttag

Page 117: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question22:

Whatistheadvantageofread-after-writeconsistencyforS3buckets?

A. nostalereadsforPUTofanynewobjectinallregions

B. higherthroughputforallrequests

C. stalereadsforPUTrequestsinsomeregions

D. nostalereadsforGETrequestsinasingleregions

Page 118: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question23:

WhatisthemaximumsinglefileobjectsizesupportedwithAmazonS3?

A. 5GB

B. 5TB

C. 1TB

D. 100GB

Page 119: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question24:

WhatsecurityproblemissolvedbyusingCross-OriginResourceSharing(CORS)?

A. enableHTTPrequestsfromwithinscriptstoadifferentdomain

B. enablesharingofweb-basedfilesbetweendifferentbuckets

C. providesecurityforthirdpartyobjectswithinAWS

D. permitssharingobjectsbetweenAWSservices

Page 120: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question25:

Whatisrecommendedformigrating40TBofdatafromon-premisestoS3whentheinternetlinkisoftenoverutilized?

A. AWSStoragegateway

B. AWSSnowball

C. AWSImport/Export

D. AWSElasticFileSystem

E. AWSElasticsearch

F. AWSMulti-PartUploadAPI

Page 121: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question26:

YourcompanyispublishinganonlinecatalogofbooksthatiscurrentlyusingDynamoDBforstoringtheinformationassociatedwitheachitem.Thereisarequirementtoaddimagesforeachbook.Whatsolutionismostcosteffectiveanddesignedforthatpurpose?

A. RedShiftB. EBSC. RDSD. S3E. Kinesis

Page 122: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question27:

Youhaveanapplicationthatcollectsmonitoringdatafrom10,000sensors(IoT)deployedintheUSA.Thedatapointsarecomprisedofvideoeventsforhomesecurityandenvironmentstatusalerts.TheapplicationwillbedeployedtoAWSwithEC2instancesasdatacollectors.WhatAWSstorageserviceispreferredforstoringvideofilesfromsensors?

A. RedShiftB. RDSC. S3D. DynamoDB

Page 123: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

SecurityArchitectureQuestion1:

WhatstatementscorrectlydescribesecuritygroupswithinaVPC?(Selectthree)

A. defaultsecuritygrouponlypermitinboundtraffic

B. securitygroupsarestatefulfirewalls

C. onlyallowrulesaresupported

D. allowanddenyrulesaresupported

E. securitygroupsareassociatedtonetworkinterfaces

Page 124: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:

Whatthreeitemsarerequiredtoconfigureasecuritygrouprule?

A. protocoltype

B. VPCname

C. portnumber

D. sourceIP

E. destinationIP

F. description

Page 125: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:

WhattwosourceIPaddresstypesarepermittedinasecuritygrouprule?

A. onlyCIDRblockswith/16subnetmask

B. sourceIPaddress0.0.0.0/0

C. singlesourceIPaddresswith/24subnetmask

D. securitygroupid

E. IPv6addresswith/64prefixlength

Page 126: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

WhatprotocolsmustbeenabledforremoteaccesstoLinux-basedandWindows-basedEC2instances?

A. SSH,ICMP,Telnet

B. SSH,HTTP,RDP

C. SSH,HTTP,SSL

D. SSH,RDP,ICMP

Page 127: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

DistinguishnetworkACLsfromsecuritygroupswithinaVPC?(Selectthree)

A. ACLfiltersatthesubnetlevel

B. ACLisbasedondenyrulesonly

C. ACLisappliedtoinstancesandsubnets

D. ACLisstateless

E. ACLsupportsanumberedlistforfiltering

Page 128: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:WhathappenstothesecuritypermissionsofatenantwhenanIAMroleisgranted?(Selecttwo)

A. tenantinheritsonlypermissionsassignedtotheIAMroletemporarilyB. addsecuritypermissionsoftheIAMroletoexistingpermissionsC. previoussecuritypermissionsarenolongerineffectD. previoussecuritypermissionsaredeletedunlessreconfiguredE. tenantinheritsonlyreadpermissionsassignedtotheIAMrole

Page 129: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

WhereareIAMpermissionsgrantedtoinvokeandexecuteaLambdafunctionforS3access?(Selecttwo)

A. S3bucket

B. EC2instance

C. Lambdafunction

D. IAMrole

E. eventmapping

Page 130: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:

YouhavesomedevelopersworkingoncodeforanapplicationandtheyrequiretemporaryaccesstoAWSclouduptoanhour.Whatistheeasiestweb-basedsolutionfromAWStoprovidesaccessandminimizesecurityexposure?

A. ACL

B. securitygroup

C. IAMgroup

D. STS

E. EFS

Page 131: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:

WhattwomethodsareusedtorequesttemporarycredentialsbasedonAWSSecurityTokenService(STS)?

A. WebIdentityFederation

B. LDAP

C. IAMidentity

D. dynamicACL

E. privatekeyrotation

Page 132: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

WhattwocomponentsarerequiredforenablingSAMLauthenticationrequeststoAWSIdentityandAccessManagement(IAM)?

A. accesskeys

B. sessiontoken

C. SSO

D. identityprovider(IdP)

E. SAMLproviderentity

Page 133: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:

WhataretworeasonsfordeployingOriginAccessIdentity(OAI)whenenablingCloudFront?

A. preventusersfromdeletingobjectsinS3bucketsB. mitigatedistributeddenialofserviceattacks(DDoS)C. preventusersfromaccessingobjectswithAmazonS3URLD. preventusersfromaccessingobjectswithCloudFrontURLE. replaceIAMforinternet-basedcustomerauthentication

Page 134: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

WhatsolutionsarerecommendedtomitigateDDoSattacks?(Selectthree)

A. host-basedfirewall

B. elasticloadbalancer

C. WAF

D. SSL/TLS

E. Bastionhost

F. NATgateway

Page 135: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

WhatfeaturesarerequiredtopreventusersfrombypassingAWSCloudFrontsecurity?(Selectthree)

A. Bastionhost

B. signedURL

C. IPwhitelist

D. signedcookies

E. originaccessidentity(OAI)

Page 136: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

Whatistheadvantageofresource-basedpoliciesforcross-accountaccess?

A. trustedaccountpermissionsarenotreplaced

B. trustedaccountpermissionsarereplaced

C. resource-basedpoliciesareeasiertodeploy

D. trustingaccountmanagesallpermissions

Page 137: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

SelectthreerequirementsforconfiguringaBastionhost?

A. EIP

B. SSHinboundpermission

C. defaultroute

D. CloudWatchlogsgroup

E. VPN

F. Auto-Scaling

Page 138: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:

WhatrulemustbeaddedtothesecuritygroupassignedtoamounttargetinstancethatenablesEFSaccessfromanEC2instance?

A. Type=EC2,protocol=IP,port=2049,source=remotesecuritygroupid

B. Type=EC2,protocol=EFS,port=2049,source=0.0.0.0/0C. Type=NFS,protocol=TCP,port=2049,source=remotesecurity

groupidD. Type=NFSv4,protocol=UDP,port=2049,source=remotesecurity

groupid

Page 139: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:

WhatstatementcorrectlydescribesIAMarchitecture?A. IAMsecurityisunifiedperregionandreplicatedbasedonrequirements

foranAWStenantaccountB. IAMsecurityisdefinedperregionforrolesonlyonanAWStenant

accountC. IAMsecurityisgloballyunifiedacrosstheAWScloudforanAWS

tenantaccountD. IAMsecurityisdefinedseparatelyperregionandcross-regionsecurity

enabledforanAWStenantaccount

Page 140: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question18:

Whataretwoadvantagesofcustomer-managedencryptionkeys(CMK)?

A. createandrotateencryptionkeys

B. AES-128cipherfordataatrest

C. auditencryptionkeys

D. encryptsdatain-transitforserver-sideencryptiononly

Page 141: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question19:

WhatfeatureisnotavailablewithAWSTrustedAdvisor?

A. costoptimization

B. infrastructurebestpractices

C. vulnerabilityassessment

D. monitorapplicationmetrics

Page 142: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question20:

WhatisrequiredtoPingfromasourceinstancetoadestinationinstance?A.NetworkACL:notrequiredSecurityGroup:allowICMPoutboundonsource/destinationEC2instancesB.NetworkACL:allowICMPinbound/outboundonsource/destinationsubnetsSecurityGroup:notrequiredC.NetworkACL:allowICMPinbound/outboundonsource/destinationsubnetsSecurityGroup:allowICMPoutboundonsourceEC2instanceSecurityGroup:allowICMPinboundondestinationEC2instanceD.NetworkACL:allowTCPinbound/outboundonsource/destinationsubnetsSecurityGroup:allowTCPandICMPinboundonsourceEC2instance

Page 143: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question21:

Whattwostepsarerequiredtograntcross-accountpermissionsbetweenAWSaccounts?

A. createanIAMuser

B. attachatrustpolicytoS3

C. createatransitivepolicy

D. attachatrustpolicytotherole

E. createanIAMrole

Page 144: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question22:YouhaveconfiguredasecuritygrouptoallowICMP,SSHandRDPinboundandassignedthesecuritygrouptoallinstancesinasubnet.ThereisnoaccesstoanyLinux-basedorWindows-basedinstancesandyoucannotPinganyinstances.ThenetworkACLforthesubnetisconfiguredtoallowallinboundtraffictothesubnet.Whatisthemostprobablecause?

A. on-premisesfirewallrulesB. securitygroupandnetworkACLoutboundrulesC. networkACLoutboundrulesD. securitygroupoutboundrulesE. Bastionhostrequired

Page 145: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question23:

WhatthreetechniquesprovideauthenticationsecurityonS3volumes?

A. bucketpolicies

B. networkACL

C. IdentityandAccessManagement(IAM)

D. encryption

E. AES256

Page 146: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question24:WhatstatementcorrectlydescribessupportforAWSencryptionofS3objects?

A. tenantsmanageencryptionforserver-sideencryptionofS3objectsB. Amazonmanagesencryptionforserver-sideencryptionofS3objectsC. client-sideencryptionofS3objectsisnotsupportedD. S3bucketsareencryptedonlyE. SSLisonlysupportedwithGlacierstorage

Page 147: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question25:

WhatauthenticationmethodprovidesFederatedSingleSign-On(SSO)forcloudapplications?

A. ADS

B. ISE

C. RADIUS

D. TACACS

E. SAML

Page 148: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question26:

BasedontheAmazonsecuritymodel,whatinfrastructureconfigurationandassociatedsecurityistheresponsibilityoftenantsandnotAmazonAWS?(Selecttwo)

A. dedicatedcloudserver

B. hypervisor

C. operatingsystemlevel

D. applicationlevel

E. upstreamphysicalswitch

Page 149: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question27:

WhatsecurityauthenticationisrequiredbeforeconfiguringormodifyingEC2instances?(Selectthree)

A. authenticationattheoperatingsystemlevel

B. EC2instanceauthenticationwithasymmetrickeys

C. authenticationattheapplicationlevel

D. Telnetusernameandpassword

E. SSH/RDPsessionconnection

Page 150: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question28:

WhatfeatureispartofAmazonTrustedAdvisor?

A. securitycompliance

B. troubleshootingtool

C. EC2configurationtool

D. securitycertificates

Page 151: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question29:

WhataretwobestpracticesforaccountmanagementwithinAmazonAWS?A. donotuserootaccountforcommonadministrativetasksB. createasingleAWSaccountwithmultipleIAMusersthathaveroot

privilegeC. createmultipleAWSaccountswithmultipleIAMusersperAWS

accountD. userootaccountforalladministrativetasksE. createmultiplerootuseraccountsforredundancy

Page 152: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question30:

WhatAWSfeatureisrecommendedforoptimizingdatasecurity?

A. Multi-factorauthentication

B. usernameandencryptedpassword

C. Two-factorauthentication

D. SAML

E. FederatedLDAP

Page 153: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question31:

WhatIAMclassenablesanEC2instancetoaccessafileobjectinanS3bucket?

A. user

B. root

C. role

D. group

Page 154: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question32:

Whatarethreerecommendedsolutionsthatprovideprotectionandmitigationfromdistributeddenialofservice(DDoS)attacks?

A. securitygroups

B. CloudWatch

C. encryption

D. WAF

E. datareplication

F. Auto-Scaling

Page 155: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question33:

WhatarethreerecommendedbestpracticeswhenconfiguringIdentityandAccessManagement(IAM)securityservices?

A. LockordeleteyourrootaccesskeyswhennotrequiredB. IAMgroupsarenotrecommendedforstoragesecurityC. createanIAMuserwithadministratorprivilegesD. shareyourpasswordand/oraccesskeyswithmembersofyourgroup

onlyE. deleteanyAWSaccountwheretheaccesskeysareunknown

Page 156: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question34:

WhattwofeaturescreatesecurityzonesbetweenEC2instanceswithinaVPC?

A. securitygroups

B. VirtualSecurityGateway

C. networkACL

D. WAF

Page 157: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question35:

WhatAWSserviceprovidesvulnerabilityassessmentservicestotenantswithinthecloud?

A. AmazonWAFB. AmazonInspectorC. AmazonCloudLogicD. AmazonTrustedAdvisor

Page 158: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question36:

WhataretwoprimarydifferencesbetweenADConnectorandSimpleADforclouddirectoryservices?

A. SimpleADrequiresanon-premisesADSdirectoryB. SimpleADisfullymanagedandsetupinminutesC. ADConnectorrequiresanon-premisesADSdirectoryD. SimpleADismorescalablethanADConnectorE. SimpleADprovidesenhancedintegrationwithIAM

Page 159: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

DatabaseServicesQuestion1:

Howisloadbalancingenabledformultipletaskstothesamecontainerinstance?

A. path-basedrouting

B. reverseproxy

C. NAT

D. dynamicportmapping

E. dynamiclisteners

Page 160: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:

WhatencryptionsupportisavailablefortenantsthataredeployingAWSDynamoDB?

A. server-sideencryption

B. client-sideencryption

C. client-sideandserver-sideencryption

D. encryptionnotsupported

E. blocklevelencryption

Page 161: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:

WhatarethreeprimaryreasonsfordeployingElastiCache?

A. datasecurity

B. managedservice

C. replicationwithRedis

D. durability

E. lowlatency

Page 162: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

Whatservicedoesnotsupportsessiondatapersistencestoretoenableweb-basedstatefulapplications?

A. RDS

B. Memcached

C. DynamoDB

D. Redis

E. RedShift

Page 163: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

HowdoesMemcachedimplementhorizontalscaling?

A. Auto-Scaling

B. databasestore

C. partitioning

D. EC2instances

E. S3bucket

Page 164: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:

WhattwooptionsareavailablefortenantstoaccessElastiCache?

A. VPCpeeringlink

B. EC2instances

C. EFSmount

D. cross-regionVPC

Page 165: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

Whattwostatementscorrectlydescribein-transitencryptionsupportonElastiCacheplatform?

A. notsupportedforElastiCacheplatform

B. supportedonRedisreplicationgroup

C. encryptscacheddataatrest

D. notsupportedonMemcachedcluster

E. IPsecmustbeenabledfirst

Page 166: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:

WhatAmazonAWSplatformisdesignedforcomplexanalyticsofavarietyoflargedatasetsbasedoncustomcode.Theapplicationsincludemachinelearninganddatatransformation?

A. EC2

B. Beanstalk

C. Redshift

D. EMR

Page 167: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:

WhataretwoprimaryadvantagesofDynamoDB?

A. SQLsupport

B. managedservice

C. performance

D. CloudFrontintegration

Page 168: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

WhattwofaulttolerantfeaturesdoesAmazonRDSsupport?

A. copysnapshottoadifferentregion

B. createreadreplicatoadifferentregion

C. copyunencryptedread-replicaonly

D. copyread/writereplicaandsnapshot

Page 169: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:

WhatmanagedservicesareincludedwithAmazonRDS?(selectfour)

A. assignnetworkcapacitytodatabaseinstances

B. installdatabasesoftware

C. performregularbackups

D. datareplicationacrossmultipleavailabilityzones

E. datareplicationacrosssingleavailabilityzoneonly

F. configuredatabase

G. performancetuning

Page 170: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

Whattwoconfigurationfeaturesarerequiredtocreateaprivatedatabaseinstance?

A. securitygroup

B. networkACL

C. CloudWatch

D. ElasticIP(EIP)

E. NondefaultVPC

F. DNS

Page 171: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

Whatstoragetypeisrecommendedforanonlinetransactionprocessing(OLTP)applicationdeployedtoMulti-AZRDSwithsignificantworkloads?

A. GeneralPurposeSSD

B. Magnetic

C. EBSvolumes

D. ProvisionedIOPS

Page 172: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

WhatfeaturesaresupportedwithAmazonRDS?(Selectthree)

A. horizontalscalingwithmultiplereadreplicas

B. elasticloadbalancingRDSreadreplicas

C. replicatereadreplicascross-region

D. automaticfailovertomasterdatabaseinstance

E. applicationloadbalancer(ALB)

Page 173: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

WhatarethreeadvantagesofstandbyreplicainaMulti-AZRDSdeployment?

A. faulttolerance

B. eliminateI/Ofreezes

C. horizontalscaling

D. verticalscaling

E. dataredundancy

Page 174: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:

WhatconsistencymodelisthedefaultusedbyDynamoDB?

A. stronglyconsistent

B. eventuallyconsistent

C. nodefaultmodel

D. casualconsistency

E. sequentialconsistency

Page 175: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:

WhatdoesRDSusefordatabaseandlogstorage?

A. EBS

B. S3

C. instancestore

D. localstore

E. SSD

Page 176: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question18:

WhatstatementscorrectlydescribesupportforMicrosoftSQLServerwithinAmazonVPC?(Selectthree)

A. read/writereplica

B. readreplicaonly

C. verticalscaling

D. nativeloadbalancing

E. EBSstorageonly

F. S3storageonly

Page 177: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question19:

SelecttwofeaturesavailablewithAmazonRDSforMySQL?

A. Auto-Scaling

B. readrequeststostandbyreplicas

C. real-timedatabasereplication

D. activereadrequestsonly

Page 178: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question20:

WhataretwocharacteristicsofAmazonRDS?

A. databasemanagedservice

B. NoSQLqueries

C. nativeloadbalancer

D. databasewritereplicas

E. automaticfailoverofreadreplica

Page 179: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question21:

WhatcachingenginesaresupportedwithAmazonElastiCache?(Selecttwo)

A. HAProxy

B. Route53

C. RedShift

D. Redis

E. Memcached

F. CloudFront

Page 180: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question22:

WhatarethreeprimarycharacteristicsofDynamoDB?

A. lessscalablethanRDS

B. staticcontent

C. storemetadataforS3objects

D. replicationtothreeAvailabilityZones

E. highread/writethroughput

Page 181: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question23:

WhatarethreeexamplesofusingLambdafunctionstomovedatabetweenAWSservices?

A. readdatadirectlyfromDynamoDBstreamstoRDSB. readdatafromKinesisstreamandwritedatatoDynamoDBC. readdatafromDynamoDBstreamtoFirehoseandwritetoS3D. readdatafromS3andwritemetadatatoDynamoDBE. readdatafromKinesisFirehosetoKinesisdatastream

Page 182: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question24:YouhaveenabledAmazonRDSdatabaseservicesinVPC1foranapplicationwithpublicwebserversinVPC2.HowdoyouconnectthewebserverstotheRDSdatabaseinstancesotheycancommunicateconsideringtheVPC'sareindifferentregions?

A. VPCendpointsB. VPNgatewayC. path-basedroutingD. publiclyaccessibledatabaseE. VPCpeering

Page 183: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question25:

YouhavearequirementtocreateanindextosearchcustomerobjectsstoredinS3buckets.ThesolutionshouldenableyoutocreateametadatasearchindexforeachobjectstoredtoanS3bucket.Selectthemostscalableandcosteffectivesolution?

A. RDS,ElastiCacheB. DynamoDB,LambdaC. RDS,EMR,ALBD. RedShift

Page 184: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question26:WhatarethreeadvantagesofusingDynamoDBoverS3forstoringIoTsensordatawherethereare100,000datapointsamplessentperminute?

A. S3mustcreateasinglefileforeacheventB. IoTcanwritedatadirectlytoDynamoDBC. DynamoDBprovidesfastread/writestoastructuredtableforqueriesD. DynamoDBisdesignedforfrequentaccessandfastlookupofsmall

recordsE. S3isdesignedforfrequentaccessandfastlookupofsmallerrecordsF. IoTcanwritedatadirectlytoS3

Page 185: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question27:

Yourcompanyisaproviderofonlinegamingthatcustomersaccesswithvariousnetworkaccessdevicesincludingmobilephones.Whatisadatawarehousingsolutionsforlargeamountsofinformationonplayerbehavior,statisticsandeventsforanalysisusingSQLtools?

A. RedShiftB. DynamoDBC. RDSD. DynamoDBE. Elasticsearch

Page 186: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question28:WhattwostatementsarecorrectwhencomparingElasticsearchandRedShiftasanalyticaltools?

A. ElasticsearchisatextsearchengineanddocumentindexingtoolB. RedShiftsupportscomplexSQL-basedquerieswithPetabytesizeddata

storeC. ElasticsearchsupportsSQLqueriesD. RedShiftprovidesonlybasicanalyticalservicesE. ElasticsearchdoesnotsupportJSONdatatype

Page 187: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question29:

Whathappenswhenreadorwriterequestsexceedcapacityunits(throughputcapacity)foraDynamoDBtableorindex?(Selecttwo)

A. DynamoDBautomaticallyincreasesread/writeunitsB. DynamoDBcanthrottlerequestssothatrequestsarenotexceededC. HTTP400codeisreturned(BadRequest)D. HTTP500codeisreturned(ServerError)E. DynamoDBautomaticallyincreasesread/writeunitsifprovisioned

throughputisenabled

Page 188: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question30:

WhatreadconsistencymethodprovideslowerlatencyforGetItemrequests?

A. stronglypersistentB. eventuallyconsistentC. stronglyconsistentD. writeconsistent

Page 189: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question31:

YoumustspecifystronglyconsistentreadandwritecapacityforyourDynamoDBdatabase.Youhavedeterminedreadcapacityof128Kbpsandwritecapacityof25Kbpsisrequiredforyourapplication.WhatisthereadandwritecapacityunitsrequiredforDynamoDBtable?

A. 32readunits,25writeunitsB. 1readunit,1writeunitC. 16readunits,2.5writeunitsD. 64readunits,10writeunits

Page 190: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question32:

WhatDynamoDBcapacitymanagementtechniqueisbasedonthetenantspecifyinganupperandlowerrangeforread/writecapacityunits?

A. demandB. provisionedthroughputC. reservedcapacityD. autoscalingE. generalpurpose

Page 191: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question33:

WhatisthemaximumvolumesizeofaMySQLRDSdatabase?

A. 6TBB. 3TBC. 16TBD. unlimited

Page 192: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question34:

WhatisthemaximumsizeofaDynamoDBrecord(item)?

A. 400KBB. 64KBC. 1KBD. 10KB

Page 193: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

FaultTolerantSystemsQuestion1:

WhattwofeaturesdescribeanApplicationLoadBalancer(ALB)?

A. dynamicportmapping

B. SSLlistener

C. layer7loadbalancer

D. backendserverauthentication

E. multi-regionforwarding

Page 194: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:

Whatenablesloadbalancingbetweenmultipleapplicationsperloadbalancer?

A. listeners

B. stickysessions

C. path-basedrouting

D. backendserverauthentication

Page 195: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:

WhatthreefeaturesarecharacteristicofClassicLoadBalancer?

A. dynamicportmapping

B. path-basedrouting

C. SSLlistener

D. backendserverauthentication

E. ECS

F. Layer4basedloadbalancer

Page 196: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

WhatsecurityfeatureisonlyavailablewithClassicLoadBalancer?

A. IAMrole

B. SAML

C. back-endserverauthentication

D. securitygroups

E. LDAP

Page 197: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

WhatisaprimarydifferencebetweenClassicandNetworkLoadBalancer?

A. IPaddresstarget

B. Auto-Scaling

C. protocoltarget

D. cross-zoneloadbalancing

E. listener

Page 198: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:

WhatarethefirsttwoconditionsusedbyAmazonAWSdefaultterminationpolicyforMulti-AZarchitecture?

A. unprotectedinstancewitholdestlaunchconfigurationB. AvailabilityZone(AZ)withthemostinstancesC. atleastoneinstancethatisnotprotectedfromscaleinD. unprotectedinstanceclosesttothenextbillinghourE. randomselectionofanyunprotectedinstance

Page 199: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

WhatfeatureisusedforhorizontalscalingofconsumerstoprocessdatarecordsfromaKinesisdatastream?

A. verticalscalingshards

B. Auto-Scaling

C. Lambda

D. ElasticLoadBalancer

Page 200: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:

WhatDNSrecordscanbeusedforpointingazoneapextoanElasticLoadBalancerorCloudFrontdistribution?(Selecttwo)

A. Alias

B. CNAME

C. MX

D. A

E. NameServer

Page 201: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:

WhatservicesareprimarilyprovidedbyDNSRoute53?(Selectthree)A. loadbalancingwebserverswithinaprivatesubnetB. resolvehostnamesandIPaddressesC. loadbalancingwebserverswithinapublicsubnetD. loadbalancingdatareplicationrequestsbetweenECScontainersE. resolvequeriesandrouteinternettraffictoAWSresourcesF. automatedhealthcheckstoEC2instances

Page 202: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

WhataretwofeaturesthatcorrectlydescribeAvailabilityZone(AZ)architecture?

A. multipleregionsperAZ

B. interconnectedwithprivateWANlinks

C. multipleAZperregion

D. interconnectedwithpublicWANlinks

E. dataauto-replicatedbetweenzonesindifferentregions

F. DirectConnectsupportsLayer2connectivitytoregion

Page 203: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:

HowisRoute53configuredforWarmStandbyfaulttolerance?(Selecttwo)

A. automatedhealthchecks

B. path-basedrouting

C. failoverrecords

D. Aliasrecords

Page 204: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

HowisDNSRoute53configuredforMulti-Sitefaulttolerance?(Selecttwo)

A. IPaddress

B. weightedrecords(non-zero)

C. healthchecks

D. Aliasrecords

E. zeroweightedrecords

Page 205: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

WhatisanAvailabilityZone?

A. datacenter

B. multipleVPCs

C. multipleregions

D. singleregion

E. multipleEC2serverinstances

Page 206: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

HowareDNSrecordsmanagedwithAmazonAWStoenablehighavailability?

A. Auto-Scaling

B. serverhealthchecks

C. reverseproxy

D. elasticloadbalancing

Page 207: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

WhatisthedifferencebetweenWarmStandbyandMulti-Sitefaulttolerance?(Selecttwo)

A. Multi-SiteenableslowerRTOandmostrecentRPOB. WarmStandbyenableslowerRTOandmostrecentRPOC. Multi-Siteprovidesactive/activeloadbalancingD. Multi-Siteprovidesactive/standbyloadbalancingE. DNSRoute53isnotrequiredforWarmStandby

Page 208: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:

WhatAWSbestpracticeisrecommendedforcreatingfaulttolerantsystems?

A. verticalscaling

B. ElasticIP(EIP)

C. securitygroups

D. horizontalscaling

E. RedShift

Page 209: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:

WhattwostatementscorrectlydescribeversioningforprotectingdataatrestonS3buckets?

A. enabledbydefault

B. overwritesmostcurrentfileversion

C. restoresdeletedfiles

D. savesmultipleversionsofasinglefile

E. disabledbydefault

Page 210: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question18:

WhattwomethodsarerecommendedbyAWSforprotectingEBSdataatrest?

A. replication

B. snapshots

C. encryption

D. VPN

Page 211: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question19:

YouhaveanElasticLoadBalancerassignedtoaVPCwithpublicandprivatesubnets.ELBisconfiguredtoloadbalancetraffictoagroupofEC2instancesassignedtoanAuto-Scalinggroup.Whatthreestatementsarecorrect?

A. ElasticLoadBalancerisassignedtoapublicsubnetB. networkACLisassignedtoElasticLoadBalancerC. securitygroupisassignedtoElasticLoadBalancerD. cross-zoneloadbalancingisnotsupportedE. ElasticLoadBalancerforwardstraffictoprimaryprivateIPaddress

(eth0interface)oneachinstance

Page 212: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

DeploymentandOrchestrationQuestion1:

WhatAmazonAWSserviceisavailableforcontainermanagement?

A. ECS

B. Docker

C. Kinesis

D. Lambda

Page 213: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:

WhatisassociatedwithMicroservices?(Selecttwo)

A. ApplicationLoadBalancer

B. Kinesis

C. RDS

D. DynamoDB

E. ECS

Page 214: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:

WheredoesAmazonretrievewebcontentwhenitisnotinthenearestCloudFrontedgelocation?

A. secondarylocation

B. fileserver

C. EBS

D. S3bucket

Page 215: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

WhattwofeaturesofanAPIGatewayminimizetheeffectsofpeaktrafficeventsandminimizelatency?

A. loadbalancing

B. firewalling

C. throttling

D. scaling

E. caching

Page 216: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

WhatthreecharacteristicsdifferentiateLambdafromtraditionalEC2deploymentorcontainerization?

A. LambdaisbasedonKinesisscripts

B. Lambdaisserverless

C. tenanthasownershipofEC2instances

D. tenanthasnocontrolofEC2instances

E. Lambdaisacode-basedservice

F. LambdasupportsonlyS3andGlacier

Page 217: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:

HowiscodeuploadedtoLambda?

A. Lambdainstance

B. Lambdacontainer

C. Lambdaentrypoint

D. Lambdafunction

E. LambdaAMI

Page 218: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

HowareLambdafunctionstriggered?

A. EC2instance

B. hypervisor

C. Kinesis

D. operatingsystem

E. eventsource

Page 219: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:WhatthreestatementscorrectlydescribestandardLambdaoperation?

A. Lambdafunctionisallocated500MBephemeraldiskspaceB. Lambdafunctionisallocated100MBEBSstorageC. LambdastorescodeinS3D. LambdastorescodeinaGlaciervaultE. LambdastorescodeincontainersF. maximumexecutiontimeis300seconds

Page 220: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:

WhatnetworkeventsarerestrictedbyLambda?(Selecttwo)

A. onlyinboundTCPnetworkconnectionsareblockedbyAWSLambda

B. allinboundnetworkconnectionsareblockedbyAWSLambda

C. allinboundandoutboundconnectionsareblocked

D. outboundconnectionssupportonlyTCP/IPsockets

E. outboundconnectionssupportonlySSLsockets

Page 221: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

HowisversioningsupportedwithLambda?(Selecttwo)

A. Lambdanativesupport

B. ECScontainer

C. notsupported

D. Aliases

E. replication

F. S3versioning

Page 222: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:

WhatisthedifferencebetweenStream-basedandAWSServiceswhenenablingLambda?

A. streamsmaintainseventsourcemappinginLambdaB. streamsmaintainseventsourcemappingineventsourceC. streamsmaintainseventsourcemappinginEC2instanceD. streamsmaintainseventsourcemappinginnotificationE. streamsmaintainseventsourcemappinginAPI

Page 223: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

Selecttwocustomoriginserversfromthefollowing?

A. S3bucket

B. S3object

C. EC2instance

D. ElasticLoadBalancer

E. APIgateway

Page 224: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

WhattwoattributesareonlyassociatedwithCloudFrontprivatecontent?

A. AmazonS3URL

B. signedcookies

C. webdistribution

D. signedURL

E. object

Page 225: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

HowareoriginserverslocatedwithinCloudFront(Selecttwo)

A. DNSrequest

B. distributionlist

C. webdistribution

D. RTMPprotocol

E. sourcemapping

Page 226: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

WhereareHTMLfilessourcedfromwhentheyarenotcachedataCloudFrontedgelocation?

A. S3object

B. originHTTPserver

C. S3bucket

D. nearestedgelocation

E. RTMPserver

F. failoveredgelocation

Page 227: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:

WhatisthecapacityofasingleKinesisshard?(Selecttwo)

A. 2000PUTrecordspersecond

B. 1MB/secdatainputand2MB/secdataoutput

C. 10MB/secdatainputand10MB/secdataoutput

D. 1000PUTrecordspersecond

E. unlimited

Page 228: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:

WhatAmazonAWSservicesupportsreal-timeprocessingofdatastreamfrommultipleconsumersandreplayofrecords?

A. DynamoDB

B. EMR

C. Kinesisdatastreams

D. SQS

E. RedShift

Page 229: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question18:Yourcompanyhasaskedyoutocaptureandforwardareal-timedatastreamonamassivescaledirectlytoRedShiftforanalysiswithBItools.WhatAWStoolismostappropriatethatprovidesthefeaturesetandcosteffective?

A. DynamoDBB. SQSC. ElasticMapReduceD. KinesisFirehoseE. SNSF. CloudFront

Page 230: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question19:

WhatfeaturepermitstenantstouseaprivatedomainnameinsteadofthedomainnamethatCloudFrontassignstoadistribution?

A. Route53

B. CNAMErecord

C. MXrecord

D. RTMP

E. SignedURL

Page 231: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question20:

WhatAmazonAWSserviceisavailabletoguaranteetheconsumingofauniquemessageonlyonce?

A. Beanstalk

B. SQL

C. Exchange

D. SQS

Page 232: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question21:

Whatisthefastestandeasiestmethodformigratinganon-premisesVMwarevirtualmachinetotheAWScloud?

A. AmazonMarketplace

B. AWSServerMigrationService

C. AWSStorageGateway

D. EC2Import/Export

Page 233: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question22:

Selectthestatelessprotocolfromthefollowing?

A. FTP

B. TCP

C. HTTP

D. SSH

Page 234: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question23:

WhatarethreevalidendpointsforanAPIgateway?

A. RESTfulAPI

B. Lambdafunction

C. AWSservice

D. webserver

E. HTTPmethod

Page 235: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question24:

Howisavolumeselected(identified)whenmakinganEBSSnapshot?

A. accountid

B. volumeid

C. tag

D. ARN

Page 236: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question25:

WhatdeploymentserviceenablestenantstoreplicateanexistingAWSstack?

A. Beanstalk

B. CloudFormation

C. RedShift

D. EMR

Page 237: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question26:

WhatthreeservicescaninvokeaLambdafunction?

A. SNStopic

B. CloudWatchevent

C. EC2instance

D. securitygroup

E. S3bucketnotification

Page 238: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question27:

WhattwoservicesenableautomaticpollingofastreamfornewrecordsonlyandforwardthemtoanAWSstorageservice?

A. SNS

B. Kinesis

C. Lambda

D. DynamoDB

Page 239: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question28:

YourcompanyisdeployingawebsitewithdynamiccontenttocustomersinUS,EUandAPACregionsoftheworld.Contentwillincludelivestreamingvideostocustomers.SSLcertificatesarerequiredforsecuritypurposes.SelecttheAWSservicedeliversallrequirementsandprovidesthelowestlatency?

A. DynamoDBB. CloudFrontC. S3D. Redis

Page 240: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question29:

WhataretheadvantagesofBeanstalk?(Selecttwo)

A. orchestrationanddeploymentabstraction

B. template-orienteddeploymentservice

C. easiestsolutionfordeveloperstodeploycloudapplications

D. doesnotsupportcloudcontainers

Page 241: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question30:

YouareanetworkanalystwithJSONscriptingexperienceandaskedtoselectanAWSsolutionthatenablesautomateddeploymentofcloudservices.ThetemplatedesignwouldincludeanondefaultVPCwithEC2instances,ELB,Auto-Scalingandactive/activefailover.WhatAWSsolutionisrecommended?

A. BeanstalkB. OpsWorksC. CloudTrailD. CloudFormation

Page 242: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question31:

SelecttwostatementsthatcorrectlydescribeOpsWorks?

A. Opsworksprovidesoperationalandconfigurationautomation

B. OpsWorksisalowercostalternativetoBeanStalk

C. OpsWorksisprimarilyamonitoringservice

D. Chefscripts(recipes)areakeyaspectofOpsWorks

Page 243: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question32:

YourcompanyhasdevelopedanIoTapplicationthatsendsTelemetrydatafrom100,000sensors.Thesensorssendadatapointof1KBatone-minuteintervalstoaDynamoDBcollectorformonitoringpurposes.WhatAWSstackwouldenableyoutostoredataforreal-timeprocessingandanalyticsusingBItools?

A. Sensors->KinesisStream->Firehose->DynamoDBB. Sensors->KinesisStream->Firehose->DynamoDB->S3C. Sensors->AWSIoT->Firehose->RedShiftD. Sensors->KinesisDataStreams->Firehose->RDS

Page 244: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question33:

YourcompanyhasanapplicationthatwasdevelopedandmigratedtoAWScloud.TheapplicationleveragessomeAWSservicesaspartofthearchitecture.ThestackincludesEC2instances,RDSdatabase,S3buckets,RedShiftandLambdafunctions.InadditionthereisIAMsecuritypermissionsconfiguredwithdefinedusers,groupsandroles.TheapplicationismonitoredwithCloudWatchandSTSwasrecentlyaddedforpermittingWebIdentityFederationsign-onfromGoogleaccounts.YouwantasolutionthatcanleveragetheexperienceofyouremployeeswithAWScloudinfrastructureaswell.WhatAWSservicecancreateatemplateofthedesignandconfigurationforeasierdeploymentoftheapplicationtomultipleregions?

A. SnowballB. OpsworksC. CloudFormationD. Beanstalk

Page 245: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

MonitoringServicesQuestion1:

WhatstatementcorrectlydescribesCloudWatchoperationwithinAWScloud?

A. logdataisstoredindefinitely

B. logdataisstoredfor15days

C. alarmhistoryisneverdeleted

D. ELBisnotsupported

Page 246: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:

WhataretwoAWSsubscriberendpointservicesthataresupportedwithSNS?

A. RDS

B. Kinesis

C. SQS

D. Lambda

E. EBS

F. ECS

Page 247: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:

WhatAWSservicesworkinconcerttointegratesecuritymonitoringandauditwithinaVPC?(Selectthree)

A. Syslog

B. CloudWatch

C. WAF

D. CloudTrail

E. VPCFlowLog

Page 248: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

HowisCloudWatchintegratedwithLambda?(Selecttwo)

A. tenantmustenableCloudWatchmonitoring

B. networkmetricssuchaslatencyarenotmonitored

C. LambdafunctionsareautomaticallymonitoredthroughLambdaservice

D. loggroupiscreatedforeacheventsource

E. loggroupiscreatedforeachfunction

Page 249: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

WhattwostatementscorrectlydescribeAWSmonitoringandauditoperations?A. CloudTrailcapturesAPIcalls,storestheminanS3bucketandgenerates

aCloudwatcheventB. CloudWatchalarmcansendamessagetoaLambdafunctionC. CloudWatchalarmcansendamessagetoanSNSTopicthattriggersan

eventforaLambdafunctionD. CloudTrailcapturesallAWSeventsandstorestheminalogfileE. VPClogsdonotsupporteventsforsecuritygroups

Page 250: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:

WhatisrequiredforremotemanagementaccesstoyourLinux-basedinstance?

A. ACL

B. Telnet

C. SSH

D. RDP

Page 251: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

WhataretwofeaturesofCloudWatchoperation?A. CloudWatchdoesnotsupportcustommetricsB. CloudWatchpermissionsaregrantedperfeatureandnotAWSresourceC. collectandmonitoroperatingsystemandapplicationgeneratedlogfilesD. AWSservicesautomaticallycreatelogsforCloudWatchE. CloudTrailgenerateslogsautomaticallywhenAWSaccountisactivated

Page 252: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:

YouareaskedtoselectanAWSsolutionthatwillcreatealogentryanytimeasnapshotofanRDSdatabaseinstanceanddeletestheoriginalinstance.SelecttheAWSservicethatwouldprovidethatfeature?

A. VPCFlowLogs

B. RDSAccessLogs

C. CloudWatch

D. CloudTrail

Page 253: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:

WhatisrequiredtoenableapplicationandoperatingsystemgeneratedlogsandpublishtoCloudWatchLogs?

A. Syslog

B. enableaccesslogs

C. IAMcross-accountenabled

D. CloudWatchLogAgent

Page 254: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

WhatisthepurposeofVPCFlowLogs?

A. captureVPCerrormessages

B. captureIPtrafficonnetworkinterfaces

C. monitornetworkperformance

D. monitornetflowdatafromsubnets

E. enableSyslogservicesforVPC

Page 255: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:

Selecttwocloudinfrastructureservicesand/orcomponentsincludedwithdefaultCloudWatchmonitoring?

A. SQSqueues

B. operatingsystemmetrics

C. hypervisormetrics

D. virtualappliances

E. applicationlevelmetrics

Page 256: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

WhatfeatureenablesCloudWatchtomanagecapacitydynamicallyforEC2instances?

A. replicationlag

B. Auto-Scaling

C. ElasticLoadBalancer

D. verticalscaling

Page 257: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

WhatAWSserviceisusedtomonitortenantremoteaccessandvarioussecurityerrorsincludingauthenticationretries?

A. SSH

B. Telnet

C. CloudFront

D. CloudWatch

Page 258: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

HowdoesAmazonAWSisolatemetricsfromdifferentapplicationsformonitoring,storeandreportingpurposes?

A. EC2instances

B. Beanstalk

C. CloudTrail

D. namespaces

E. Docker

Page 259: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

WhatAmazonAWSserviceprovidesaccounttransactionmonitoringandsecurityaudit?

A. CloudFront

B. CloudTrail

C. CloudWatch

D. securitygroup

Page 260: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:

WhattwostatementscorrectlydescribeCloudWatchmonitoringofdatabaseinstances?

A. metricsaresentautomaticallyfromDynamoDBandRDStoCloudWatch

B. alarmsmustbeconfiguredforDynamoDBandRDSwithinCloudWatchC. metricsarenotenabledautomaticallyforDynamoDBandRDSD. RDSdoesnotsupportmonitoringofoperatingsystemmetrics

Page 261: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:

WhatAWSservicecansendnotificationstocustomersmartphonesandmobileapplicationswithattachedvideoand/oralerts?

A. EMRB. LambdaC. SQSD. SNSE. CloudTrail

Page 262: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

***AnswerKey***EC2ComputeQuestion1:

WhatthreeattributesareselectablewhencreatinganEBSvolumeforanEC2instance?

A. volumetypeB. IOPSC. regionD. CMKE. ELBF. EIP

Answer(A,B,D)

Page 263: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:Youhavebeenaskedtomigratea10GBunencryptedEBSvolumetoanencryptedvolumeforsecuritypurposes.Whatarethreekeystepsrequiredaspartofthemigration?

A. pausetheunencryptedinstanceB. createanewencryptedvolumeofthesamesizeandavailabilityzoneC. createanewencryptedvolumeofthesamesizeinanyavailabilityzoneD. startconverterinstanceE. shutdownanddetachtheunencryptedinstance

Answer(B,D,E)

Page 264: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:WhatisEC2instanceprotection?

A. preventsAutoScalingfromselectingspecificEC2instancetobereplacedwhenscalingin

B. preventsAutoScalingfromselectingspecificEC2instancetobereplacedwhenscalingout

C. preventsAutoScalingfromselectingspecificEC2instanceforterminationwhenscalingout

D. preventsAutoScalingfromselectingspecificEC2instanceforterminationwhenscalingin

E. preventsAutoScalingfromselectingspecificEC2instanceforterminationwhenpaused

F. preventsAutoScalingfromselectingspecificEC2instanceforterminationwhenstopped

Answer(D)

Page 265: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

WhattwofeaturesaresupportedwithEBSvolumeSnapshotfeature?

A. EBSreplicationacrossregions

B. EBSmulti-zonereplication

C. EBSsingleregiononly

D. fullsnapshotdataonly

E. unencryptedsnapshotonlyAnswer(A,B)

Page 266: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

WhattworesourcetagsaresupportedforanEC2instance?

A. VPCendpoint

B. EIP

C. networkinterface

D. securitygroup

E. FlowLogAnswer(A,E)

Page 267: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:

WhattwooptionsareavailabletoalerttenantswhenanEC2instanceisterminated?

A. SNS

B. CloudTrail

C. Lambdafunction

D. SQS

E. STSAnswer(A,C)

Page 268: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

WhatclassofEC2instancetypeisrecommendedforrunningdataanalytics?

A. memoryoptimized

B. computeoptimized

C. storageoptimized

D. generalpurposeoptimized

Answer(B)

Page 269: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:

WhatclassofEC2instancetypeisrecommendedfordatabaseservers?

A. memoryoptimized

B. computeoptimized

C. storageoptimized

D. generalpurposeoptimizedAnswer(A)

Page 270: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:

Whattwoattributesdistinguisheachpricingmodel?

A. reliability

B. amazonservice

C. discount

D. performance

E. redundancyAnswer(A,C)

Page 271: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

WhatarethreestandardAWSpricingmodels?

A. elastic

B. spot

C. reserved

D. dynamic

E. demandAnswer(B,C,E)

Page 272: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:HowisanEBSrootvolumecreatedwhenlaunchinganEC2instancefromanewEBS-backedAMI?

A. S3template

B. originalAMI

C. snapshot

D. instancestore

Answer(C)

Page 273: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

WhatAmazonAWSsourcesareavailableforcreatinganEBS-BackedLinuxAMI?(selecttwo)

A. EC2instance

B. AmazonSMS

C. VMImport/Export

D. EBSSnapshot

E. S3bucketAnswer(A,D)

Page 274: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

Whatisrequiredtopreventaninstancefrombeinglaunchedandincurringcosts?

A. stopinstance

B. terminateinstance

C. terminateAMIandde-registerinstance

D. stopandde-registerinstance

E. stop,deregisterAMIandterminateinstanceAnswer(E)

Page 275: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

WhatisanEBSSnapshot?

A. backupofanEBSrootvolumeandinstancedata

B. backupofanEC2instance

C. backupofconfigurationsettings

D. backupofinstancestoreAnswer(A)

Page 276: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

WhereareELBandAuto-Scalinggroupsdeployedasaunifiedsolutionforhorizontalscaling?

A. databaseinstances

B. allinstances

C. webserverinstances

D. defaultVPConlyAnswer(C)

Page 277: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:WhatfeatureissupportedwhenattachingordetachinganEBSvolumefromanEC2instance?

A. EBSvolumecanbeattachedanddetachedtoanEC2instanceinthesameregion

B. EBSvolumecanbeattachedanddetachedtoanEC2instancethatiscross-region

C. EBSvolumecanonlybecopiedandattachedtoanEC2instancethatiscross-region

D. EBSvolumecanonlybeattachedanddetachedtoanEC2instanceinthesameAvailabilityZone

Answer(D)

Page 278: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:

WhattwostatementscorrectlydescribehowtoaddormodifyIAMrolestoarunningEC2instance?

A. attachanIAMroletoanexistingEC2instancefromtheEC2consoleB. replaceanIAMroleattachedtoanexistingEC2instancefromtheEC2

consoleC. attachanIAMroletotheuseraccountandrelaunchtheEC2instanceD. addtheEC2instancetoagroupwheretheroleisamember

Answer(A,B)

Page 279: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question18:WhatisthedefaultbehaviorforanEC2instancewhenterminated?(Selecttwo)

A. DeleteOnTerminationattributecannotbemodifiedB. EBSrootdevicevolumeandadditionalattachedvolumesaredeleted

immediatelyC. EBSdatavolumesthatyouattachatlaunchpersistD. EBSrootdevicevolumeisautomaticallydeletedwheninstance

terminatesAnswer(C,D)

Page 280: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question19:

HowdoyoulaunchanEC2instanceafteritisterminated?(Selecttwo)

A. launchanewinstanceusingthesameAMI

B. rebootinstancefromCLI

C. launchanewinstancefromaSnapshot

D. rebootinstancefrommanagementconsole

E. contactAWSsupporttoresetAnswer(A,C)

Page 281: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question20:

WhatservicecanautomateEBSsnapshots(backups)forrestoringEBSvolumes?

A. CloudWatchevent

B. SNStopic

C. CloudTrail

D. AmazonInspector

E. CloudWatchalarmAnswer(A)

Page 282: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question21:

WhatwillcauseAWStoterminateanEC2instanceonlaunch?(Selecttwo)

A. securitygrouperror

B. numberofEC2instancesonAWSaccountexceeded

C. EBSvolumelimitsexceeded

D. multipleIPaddressesassignedtoinstance

E. unsupportedinstancetypeassigned

Answer(B,C)

Page 283: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question22:YourecentlymadesomeconfigurationchangestoanEC2instance.YouthenlaunchedanewEC2instancefromthesameAMIhowevernoneofthesettingsweresaved.Whatisthecauseofthiserror?

A. didnotsaveconfigurationchangestoEC2instanceB. didnotsaveconfigurationchangestoAMIC. didnotcreatenewAMID. didnotrebootEC2instancetoenablechanges

Answer(C)

Page 284: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question23:WhatstatementsarecorrectconcerningDisableApiTerminationattribute?(Selecttwo)

A. cannotenableterminationprotectionforSpotinstancesB. terminationprotectionisdisabledbydefaultforanEC2instanceC. terminationprotectionisenabledbydefaultforanEC2instanceD. canenableterminationprotectionforSpotinstancesE. DisableApiTerminationattributesupportedforEBS-backedinstances

onlyAnswer(A,B)

Page 285: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question24:

WhatisrequiredtocopyanencryptedEBSsnapshotcross-account?(Selecttwo)A. copytheunencryptedEBSsnapshottoanS3bucketB. distributethecustomkeyfromCloudFrontC. sharethecustomkeyforthesnapshotwiththetargetaccountD. sharetheencryptedEBSsnapshotwiththetargetaccountE. sharetheencryptedEBSsnapshotspubliclyF. enablerootaccesssecurityonbothaccounts

Answer(C,D)

Page 286: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question25:

WhatthreeservicesenableSingle-AZasadefault?

A. EC2

B. ELB

C. Auto-Scaling

D. DynamoDB

E. S3

Answer(A,B,C)

Page 287: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question26:

WhatAWSserviceautomaticallypublishesaccesslogseveryfiveminutes?

A. VPCFlowLogs

B. ElasticLoadBalancer

C. CloudTrail

D. DNSRoute53Answer(B)

Page 288: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question27:

Youhavedevelopedaweb-basedapplicationforfilesharingthatwillallowcustomerstoaccessfiles.Thereareavarietyofsizesthatincludelarger.pdfandvideofiles.Whattwosolutionstackscouldtenantsuseforanonlinefilesharingservice?(Selecttwo)

A. EC2,ELB,Auto-Scaling,S3B. Route53,Auto-Scaling,DynamoDBC. EC2,Auto-Scaling,RDSD. CloudFront

Answer(A,D)

Page 289: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question28:

WhatinfrastructureservicesareprovidedtoEC2instances?(Selectthree)

A. VPN

B. storage

C. compute

D. transport

E. security

F. support

Answer(B,C,D)

Page 290: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question29:

WhatstepsarerequiredfromAWSconsoletocopyanEBS-backedAMIforadatabaseinstancecross-region?

A. createSnapshotofdatavolume,selectCopy,selectdestinationregionB. selectCopyEBS-backedAMIoptionanddestinationregionC. selectcopydatabasevolumeanddestinationregionD. createSnapshotofEBS-backedAMI,selectCopySnapshotoption,

selectdestinationregionE. createSnapshotofInstance-storeAMI,selectCopyAMIoption,select

destinationregionAnswer(D)

Page 291: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question30:

Howiscapacity(compute,storageandnetworkspeed)managedandassignedtoEC2instances?

A. AMI

B. instancetype

C. IOPS

D. Auto-ScalingAnswer(B)

Page 292: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question31:

WhatstoragetypeenablepermanentattachmentofvolumestoEC2instances?

A. S3

B. RDS

C. TDS

D. EBS

E. instancestoreAnswer(D)

Page 293: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question32:Whatistherecommendedmethodformigrating(copying)anEC2instancetoadifferentregion?

A. terminateinstance,selectregion,copyinstancetodestinationregionB. selectAMIassociatedwithEC2instanceanduseCopyAMIoptionC. stopinstanceandcopyAMItodestinationregionD. cross-regioncopyisnotcurrentlysupported

Answer(B)

Page 294: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question33:

WhataretwoattributesthatdefineanEC2instancetype?

A. vCPU

B. licensetype

C. EBSvolumestorage

D. IPaddress

E. Auto-ScalingAnswer(A,C)

Page 295: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question34:

HowisanAmazonElasticLoadBalancer(ELB)assigned?

A. perEC2instance

B. perAuto-Scalinggroup

C. persubnet

D. perVPCAnswer(A)

Page 296: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question35:

WhatmethoddetectswhentoreplaceanEC2instancethatisassignedtoanAuto-Scalinggroup?

A. healthcheck

B. loadbalancingalgorithm

C. EC2healthcheck

D. notcurrentlysupported

E. dynamicpathdetection

F. Auto-ScalingAnswer(A)

Page 297: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question36:

WhattwostatementscorrectlydescribeAuto-Scalinggroups?

A. horizontalscalingofcapacity

B. decreasenumberofinstancesonly

C. EC2instancesareassignedtoagroup

D. databaseinstancesonly

E. nosupportformultipleavailabilityzonesAnswer(A,C)

Page 298: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question37:

WhatisthedefaultmaximumnumberofElasticIPaddressesassignableperAmazonAWSregion?

A. 1

B. 100

C. 5

D. unlimitedAnswer(C)

Page 299: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question38:

HowaresnapshotsforanEBSvolumecreatedwhenitistherootdeviceforaninstance?

A. pauseinstance,unmountvolumeandsnapshot

B. terminateinstanceandsnapshot

C. unencryptvolumeandsnapshotdynamically

D. stopinstance,unmountvolumeandsnapshotAnswer(D)

Page 300: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question39:

WhatcloudcomputecomponentsareconfiguredbytenantsandnotAmazonAWSsupportengineers?(Selectthree)

A. hypervisor

B. upstreamphysicalswitch

C. virtualappliances

D. guestoperatingsystem

E. applicationsanddatabases

F. RDS

Answer(C,D,E)

Page 301: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question40:

WhatthreeattributesareusedtodefinealaunchconfigurationtemplateforanAuto-Scalinggroup?

A. instancetype

B. privateIPaddress

C. ElasticIP

D. securitygroup

E. AMIAnswer(A,D,E)

Page 302: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question41:

WhatthreecharacteristicsorlimitationsdifferentiateEC2instancetypes?

A. VPConlyB. applicationtypeC. EBSvolumeonlyD. virtualizationtypeE. AWSserviceselected

Answer(A,C,D)

Page 303: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question42:

SelecttwodifferencebetweenHVMandPVvirtualizationtypes?

A. HVMsupportsallcurrentgenerationinstancetypesB. HVMissimilartobaremetalhypervisorarchitectureC. PVprovidesbetterperformancethanHVMformostinstancetypesD. HVMdoesn’tsupportenhancednetworkingE. HVMdoesn’tsupportcurrentgenerationinstancetypes

Answer(A,B)

Page 304: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

VirtualPrivateCloud(VPC)Question1:Whataretheminimumcomponentsrequiredtoenableaweb-basedapplicationwithpublicwebserversandaprivatedatabasetier?(selectthree)

A. InternetgatewayB. AssignEIPaddressingtodatabaseinstancesonprivatesubnetC. VirtualprivategatewayD. AssigndatabaseinstancestoprivatesubnetandprivateIPaddressingE. AssignEIPandprivateIPaddressingtowebserversonpublicsubnet

Answer(A,D,E)

Page 305: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:

Refertothenetworkdrawing.Howarepacketsroutedfromprivatesubnettopublicsubnetforthefollowingweb-basedapplicationwithadatabasetier?

A. Internetgateway

B. customroutetable

C. 10.0.0.0/16

D. nat-instance-id

E. igw-id

F. addcustomroutetableAnswer(D)

Page 306: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:

WhatVPCcomponentprovidesNetworkAddressTranslation?

A. NATinstance

B. NATgateway

C. virtualprivategateway

D. Internetgateway

E. ECSAnswer(D)

Page 307: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

WhataretheadvantagesofNATgatewayoverNATinstance?(Selecttwo)

A. NATgatewayrequiresasingleEC2instance

B. NATgatewayisscalable

C. NATgatewaytranslatesfaster

D. NATgatewaysisamanagedservice

E. NATgatewayisLinux-basedAnswer(B,D)

Page 308: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

WhatisthemanagementresponsibilityoftenantsandnotAmazonAWS?

A. EC2instances

B. RDS

C. Beanstalk

D. NATinstanceAnswer(A,D)

Page 309: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:

Whattwofeaturesprovideanencrypted(VPN)connectionfromVPCtoanenterprisedatacenter?

A. Internetgateway

B. AmazonRDS

C. Virtualprivategateway

D. CSR1000Vrouter

E. NATgatewayAnswer(C,D)

Page 310: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

WhattwoattributesaresupportedwhenconfiguringanAmazonVirtualprivategateway(VPG)?

A. routepropagation

B. ElasticIP(EIP)

C. DHCP

D. publicIPv4address

E. publicsubnetsAnswer(A,C)

Page 311: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:

WhattwofeaturesareavailablewithAWSDirectConnectservice?

A. internetaccess

B. extendon-premisesVLANstocloud

C. bidirectionalforwardingdetection(BFD)

D. loadbalancingbetweenDirectConnectandVPNconnection

E. publicandprivateAWSservicesAnswer(C,E)

Page 312: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:

WhenisDirectConnectapreferredsolutionoverVPNIPsec?

A. fastandreliableconnection

B. redundancyisakeyrequirement

C. fastandeasytodeploy

D. layer3connectivity

E. layer2connectivityAnswer(A)

Page 313: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

YouhavebeenaskedtosetupaVPCendpointconnectionbetweenVPCandS3bucketsforstoringbackupsandsnapshots.WhatAWScomponentsarecurrentlyrequiredwhenconfiguringaVPCendpoint?

A. Internetgateway

B. NATinstance

C. ElasticIP

D. privateIPaddressAnswer(D)

Page 314: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:

WhataretheprimaryadvantagesofVPCendpoints?(Selecttwo)

A. reliability

B. cost

C. throughput

D. securityAnswer(B,D)

Page 315: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

WhataretheDHCPoptionattributesusedtoassignprivateDNSserverstoyourVPC?

A. dnsresolutionanddomainname

B. hostnamesandinternetdomain

C. domainserversanddomainname

D. domain-name-serversanddomain-nameAnswer(D)

Page 316: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

WhatDNSattributesareconfiguredwhenDefaultVPCoptionisselected?

A. DNSresolution:yes/DNShostnames:yes

B. DNSresolution:yes/DNShostnames:no

C. DNSresolution:no/DNShostnames:yes

D. DNSresolution:no/DNShostnames:noAnswer(A)

Page 317: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

WhatconfigurationsettingsarerequiredfromtheremoteVPCinordertocreatecross-accountpeering?(Selectthree)

A. VPCID

B. accountusername

C. accountID

D. CMKkeys

E. VPCCIDRblock

F. volumetype

Answer(A,C,E)

Page 318: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

WhatCIDRblockrangeissupportedforIPv4addressingandsubnettingwithinasingleVPC?

A. /16to/32

B. /16to/24

C. /16to/28

D. /16to/20Answer(C)

Page 319: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:WhatproblemiscausedbythefactthatVPCpeeringdoesnotpermittransitiverouting?

A. additionalVPCroutetablestomanageB. virtualprivategatewayisrequiredC. InternetgatewayisrequiredforeachVPCD. routingbetweenconnectedspokesthroughhubVPCiscomplexE. increasednumberofpeerlinksrequired

Answer(E)

Page 320: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:

WhattwostatementscorrectlydescribesElasticLoadBalanceroperation?

A. spansmultipleregions

B. assignedperEC2instance

C. assignedpersubnet

D. assignedperAuto-Scalinggroup

E. nocross-regionsupportAnswer(D,E)

Page 321: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question18:

WhataretwoadvantagesofElasticIP(EIP)overAWSpublicIPv4addresses?

A. EIPcanbereassigned

B. EIPisprivate

C. EIPisdynamic

D. EIPispersistent

E. EIPispublicandprivateAnswer(A,D)

Page 322: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question19:

WhatAWSservicesaregloballymanaged?(Selectfour)

A. IAM

B. S3

C. CloudFront

D. Route53

E. DynamoDB

F. WAF

G. ELB

Answer(A,C,D,F)

Page 323: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question20:

WhatmethodsareavailableforcreatingaVPC?(Selectthree)

A. AWSmanagementconsole

B. AWSmarketplace

C. VPCwizard

D. VPCconsole

E. DirectConnectAnswer(A,C,D)

Page 324: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question21:WhattwodefaultsettingsareconfiguredfortenantsbyAWSwhenDefaultVPCoptionisselected?

A. createsasize/20defaultsubnetineachAvailabilityZoneB. createsanInternetgatewayC. createsamainroutetablewithlocalroute10.0.0.0/16D. createavirtualprivategatewayE. createasecuritygroupthatexplicitlydeniesalltraffic

Answer(A,B)

Page 325: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question22:

WhatthreestatementscorrectlydescribesIPaddressallocationwithinaVPC?A. EC2instancemustbeterminatedtoreassignanIPaddressB. EC2instancethatispausedcanreassignIPaddressC. EC2instancethatisstoppedcanreassignIPaddressD. privateIPaddressesareallocatedfromapoolandcanbereassignedE. privateIPaddressescanbeassignedbytenantF. VPCsupportsdualstackmode(IPv4/IPv6)

Answer(A,E,F)

Page 326: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question23:

WhataretwoadvantagesofselectingdefaulttenancyoptionforyourVPCwhencreatingit?

A. performanceandreliability

B. someAWSservicesdonotworkwithadedicatedtenancyVPC

C. tenantcanlaunchinstanceswithinVPCasdefaultordedicatedinstances

D. instancelaunchisfasterAnswer(B,C)

Page 327: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question24:WhatisthepurposeofalocalroutewithinaVPCroutetable?

A. localrouteisderivedfromthedefaultVPCCIDRblock10.0.0.0/16B. communicatebetweeninstanceswithinthesamesubnetordifferent

subnetsC. usedtocommunicatebetweeninstanceswithinthesamesubnetD. defaultrouteforcommunicatingbetweenprivateandpublicsubnetsE. onlyinstalledinthemainroutetable

Answer(C)

Page 328: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question25:

WhatisthedefaultbehaviorwhenaddinganewsubnettoyourVPC?(Selecttwo)

A. newsubnetisassociatedwiththemainroutetableB. newsubnetisassociatedwiththecustomroutetableC. newsubnetisassociatedwithanyselectedroutetableD. newsubnetisassignedtothedefaultsubnetE. newsubnetisassignedfromtheVPCCIDRblock

Answer(A,E)

Page 329: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question26:YouhaveenabledAmazonRDSdatabaseservicesinVPC1foranapplicationthathaspublicwebserversinVPC2.HowdoyouconnectthewebserverstotheRDSdatabaseinstancesotheycancommunicateconsideringtheVPC'sareinthesameregion?

A. VPCendpointsB. VPNgatewayC. path-basedroutingD. VPCpeeringE. AWSNetworkLoadBalancer

Answer(D)

Page 330: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question27:

WhatAWSservicesnowsupportVPCendpointsfeatureforoptimizingsecurity?(Selectthree)

A. Kinesis

B. DNSRoute53

C. S3

D. DynamoDB

E. RDS

Answer(A,C,D)

Page 331: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question28:

WhatarethreecharacteristicsofanAmazonVirtualPrivateCloud?

A. publicandprivateIPaddressing

B. broadcasts

C. multipleprivateIPaddressespernetworkinterface

D. dedicatedsingletenanthardwareonly

E. persistentpublicIPaddresses

F. HSRPAnswer(A,C,E)

Page 332: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question29:WhatisthedifferencebetweenVPCmainroutetableandcustomroutetable?

A. VPConlycreatesamainroutetablewhenstartedB. customroutetableisthedefaultC. customroutetableiscreatedforpublicsubnetsD. customroutetableiscreatedforprivatesubnetsE. mainroutetableiscreatedforpublicandprivatesubnets

Answer(C)

Page 333: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question30:

WhatisthepurposeofthenativeVPCrouter?

A. routepacketsacrosstheinternet

B. routepacketsbetweenprivatecloudinstances

C. routepacketsbetweensubnets

D. routepacketsfrominstancestoS3storagevolumes

E. routepacketsacrossVPN

Answer(C)

Page 334: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question31:

HowareprivateDNSserversassignedtoanAmazonVPC?

A. notsupported

B. selectnondefaultVPC

C. selectdefaultVPC

D. selectEC-2classicAnswer(B)

Page 335: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question32:

WhataretwocharacteristicsofanAmazonsecuritygroup?

A. instancelevelpacketfiltering

B. denyrulesonly

C. permitrulesonly

D. subnetlevelpacketfiltering

E. inboundonlyAnswer(A,C)

Page 336: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question33:

WhatstatementistrueofNetworkAccessControlLists(ACL)operationwithinanAmazonVPC?

A. instanceandsubnetlevelpacketfiltering

B. subnetlevelpacketfiltering

C. inboundonly

D. onlyoneACLallowedperVPC

E. outboundonlyAnswer(B)

Page 337: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question34:

HowarepacketsforwardedbetweenpublicandprivatesubnetswithinVPC?

A. EIP

B. NAT

C. mainroutetable

D. VPNAnswer(B)

Page 338: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question35:

WhattwostatementsaccuratelydescribeAmazonVPCarchitecture?

A. ElasticLoadBalancer(ELB)cannotspanmultipleavailabilityzones

B. VPCdoesnotsupportDMVPNconnection

C. VPCsubnetcannotspanmultipleavailabilityzones

D. VPCcannotspanmultipleregions

E. FlowlogsarenotsupportedwithinaVPCAnswer(C,D)

Page 339: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question36:

WhatisarequirementforattachingEC2instancestoon-premisesclientsandapplications?

A. AmazonVirtualPrivateGateway(VPN)

B. AmazonInternetGateway

C. VPNConnection

D. ElasticLoadBalancer(ELB)

E. NATAnswer(B)

Page 340: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question37:

WhattwostatementscorrectlydescribeAmazonvirtualprivategateway?

A. assigntoprivatesubnetsonly

B. assigntopublicsubnetsonly

C. singlevirtualprivategatewayperVPC

D. multiplevirtualprivategatewaysperVPC

E. singlevirtualprivategatewayperregion

Answer(A,C)

Page 341: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question38:

WhatisthemaximumaccessportspeedavailablewithAmazonDirectConnectservice?

A. 1Gbps

B. 10Gbps

C. 500Mbps

D. 100Gbps

E. 100MbpsAnswer(B)

Page 342: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question39:

Refertothedrawing.YourcompanyhasaskedyoutoconfigureapeeringlinkbetweentwoVPCsthatarecurrentlynotconnectedorexchanginganypackets.WhatdestinationandtargetisconfiguredintheroutingtableofVPC1toenablepacketforwardingtoVPC2?

A.destination=172.16.0.0/16target=pcx-vpc2vpc1

B.destination=10.0.0.0/16target=pcx-vpc2

C.destination=172.16.0.0/16target=10.0.0.0/16

D.destination=172.16.0.0/16target=pcx-vpc1vpc2

E.defaultrouteonly

Page 343: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Answer(D)

Page 344: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question40:

HowisroutingenabledbydefaultwithinaVPCforanEC2instance?

A. addadefaultroute

B. mainroutetable

C. customroutetable

D. mustbeconfiguredexplicitlyAnswer(B)

Page 345: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question41:

WhatthreefeaturesarenotsupportedwithVPCpeering?

A. overlappingCIDRblocks

B. IPv6addressing

C. Gateways

D. transitiverouting

E. RedShift

F. ElastiCacheAnswer(A,C,D)

Page 346: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question42:

WhatrouteisusedinaVPCroutingtableforpacketforwardingtoaGateway?

A. staticroute

B. 10.0.0.0/16

C. tenantconfigured

D. 0.0.0.0/0

E. 0.0.0.0/16Answer(D)

Page 347: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question43:Youareaskedtodeployawebapplicationcomprisedofmultiplepublicwebserverswithonlyprivateaddressingassigned.WhatAmazonAWSsolutionsenablesmultipleserversonaprivatesubnetwithonlyasingleEIPrequiredandAvailabilityZoneredundancy?

A. NATinstanceB. InternetgatewayC. virtualprivategatewayD. NATgatewayE. ElasticNetworkInterface(ENI)

Answer(D)

Page 348: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question44:

WhatistheIPaddressingschemaassignedtoadefaultVPC?

A. 172.31.0.0/16CIDRblocksubnettedwith172.31.0.0/20

B. 172.16.0.0/16CIDRblocksubnettedwith172.16.0.0/24

C. 10.0.0.0/16CIDRblocksubnettedwith10.0.0.0/24

D. 172.16.0.0/24CIDRblocksubnettedwith172.31.0.0/18Answer(A)

Page 349: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question45:

WhatdefaultconfigurationandcomponentsareaddedbyAWSwhenDefaultVPCtypeisselected?(Selectthree)

A. Internetgateway

B. virtualprivategateway

C. NATinstance

D. securitygroup

E. DNSAnswer(A,D,E)

Page 350: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question46:

Whatfeaturerequirestenantstodisablesource/destinationcheck?

A. ElasticIP(EIP)

B. datareplication

C. VPCpeering

D. NAT

E. InternetgatewayAnswer(D)

Page 351: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

StorageServicesQuestion1:

WhatAWSstoragesolutionallowsthousandsofEC2instancestosimultaneouslyupload,access,deleteandsharefiles?

A. EBS

B. S3

C. Glacier

D. EFSAnswer(D)

Page 352: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:

WhatisrequiredforanEFSmounttarget?(Selecttwo)

A. EIP

B. DNSname

C. IPaddress

D. DHCP

E. IAMrole

Answer(B,C)

Page 353: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:

Whatconnectivityfeaturesarerecommendedforcopyingon-premisesfilestoEFS?(Selecttwo)

A. VPNIPsec

B. InternetGateway

C. DirectConnect

D. FileSync

E. FTP

F. AWSStorageGatewayAnswer(C,D)

Page 354: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

WhatAWSservicesencryptsdataatrestbydefault?(Selecttwo)

A. S3

B. AWSStorageGateway

C. EBS

D. Glacier

E. RDSAnswer(B,D)

Page 355: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

WhatfaulttolerantfeaturesdoesS3storageprovide?(Selectthree)

A. cross-regionreplication

B. versioningmustbedisabled

C. cross-regionasynchronousreplicationofobjects

D. synchronousreplicationofobjectswithinaregion

E. multipledestinationbucketsAnswer(A,C,D)

Page 356: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:

Whatisthefastesttechniquefordeleting900objectsinanS3bucketwithasingleHTTPrequest?

A. Multi-PartDeleteAPI

B. Multi-ObjectDeleteAPI

C. 100objectsismaximumperrequest

D. Fast-DeleteAPIAnswer(B)

Page 357: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

WhatsecuritycontrolstechniqueisrecommendedforS3cross-accountaccess?

A. IAMgroup

B. securitygroups

C. S3ACL

D. bucketpoliciesAnswer(D)

Page 358: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:

Whataretwoadvantagesofcross-regionreplicationofanS3bucket?

A. cost

B. securitycompliance

C. scalability

D. Beanstalksupport

E. minimizelatencyAnswer(B,E)

Page 359: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:

WhataretwoprimarydifferencebetweenAmazonS3StandardandS3/RRSstorageclasses?

A. AmazonStandarddoesnotreplicateatall

B. RRSprovideshigherdurability

C. RRSprovideshigheravailability

D. RRSdoesnotreplicateobjectsasmanytimes

E. applicationusageisdifferentAnswer(D,E)

Page 360: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

WhattwofeaturesareenabledwithS3services?

A. storeobjectsofanysize

B. dynamicwebcontent

C. supportsProvisionedIOPS

D. storevirtuallyunlimitedamountsofdata

E. bucketnamesaregloballyuniqueAnswer(D,E)

Page 361: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:

WhatnewfeaturewasrecentlyaddedtoSQSthatdefineshowmessagesareordered?

A. streams

B. SNS

C. FIFO

D. TLS

E. decouplingAnswer(C)

Page 362: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

WhattwoAWSstoragetypesarepersistent?

A. ephemeral

B. S3

C. EBS

D. instancestore

E. SAMLAnswer(B,C)

Page 363: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

Selectthreeon-premisesbackupsolutionsusedforcopyingdatatoanAmazonAWSS3bucket?

A. AWSImport/Export

B. RDS

C. Snowball

D. AvailabilityZone(AZ)replication

E. AWSStorageGatewayAnswer(A,C,E)

Page 364: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

Youhave1TBofdataandwanttoarchivethedatathatwon'tbeaccessedthatoften.WhatAmazonAWSstoragesolutionisrecommended?

A. Glacier

B. EBS

C. ephemeral

D. CloudFrontAnswer(A)

Page 365: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

WhatarethreemethodsofaccessingDynamoDBforcustomizationpurposes?

A. CLI

B. AWSconsole

C. APIcall

D. vCenter

E. BeanstalkAnswer(A,B,C)

Page 366: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:

WhataretwoprimarydifferencesbetweenGlacierandS3storageservices?

A. Glacierislowercost

B. S3islowercost

C. Glacierispreferredforfrequentdataaccesswithlowerlatency

D. S3ispreferredforfrequentdataaccesswithlowerlatency

E. S3supportslargerfilesizeAnswer(A,D)

Page 367: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:

WhatstatementcorrectlydescribestheoperationofAWSGlacierarchive?

A. archiveisagroupofvaults

B. archiveisanunencryptedvault

C. archivesupportsaggregatedfilesonly

D. maximumfilesizeis1TB

E. archivesupportssingleandaggregatedfilesAnswer(E)

Page 368: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question18:WhatarethreeprimarydifferencesbetweenS3vsEBS?

A. S3isamulti-purposepublicinternet-basedstorageB. EBSisdirectlyassignedtoatenantVPCEC2instanceC. EBSandS3providepersistentstorageD. EBSsnapshotsaretypicallystoredonS3bucketsE. EBSandS3usebucketstomanagefilesF. EBSandS3arebasedonblocklevelstorage

Answer(A,B,D)

Page 369: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question19:

Whaton-premisessolutionisavailablefromAmazonAWStominimizelatencyforalldata?

A. Gateway-VTL

B. Gateway-cachedvolumes

C. Gateway-storedvolumes

D. EBS

E. S3bucket

F. ElastiCacheAnswer(C)

Page 370: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question20:

WhatfeaturetransitionsS3storagetoStandard-IAforcostoptimization?

A. RRS/S3

B. Glaciervault

C. storageclassanalysis

D. path-basedroutingAnswer(C)

Page 371: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question21:

HowdoesAWSuniquelyidentifyS3objects?

A. bucketname

B. version

C. key

D. objecttagAnswer(C)

Page 372: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question22:

Whatistheadvantageofread-after-writeconsistencyforS3buckets?

A. nostalereadsforPUTofanynewobjectinallregions

B. higherthroughputforallrequests

C. stalereadsforPUTrequestsinsomeregions

D. nostalereadsforGETrequestsinasingleregionsAnswer(A)

Page 373: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question23:

WhatisthemaximumsinglefileobjectsizesupportedwithAmazonS3?

A. 5GB

B. 5TB

C. 1TB

D. 100GBAnswer(B)

Page 374: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question24:

WhatsecurityproblemissolvedbyusingCross-OriginResourceSharing(CORS)?

A. enableHTTPrequestsfromwithinscriptstoadifferentdomain

B. enablesharingofweb-basedfilesbetweendifferentbuckets

C. providesecurityforthirdpartyobjectswithinAWS

D. permitssharingobjectsbetweenAWSservices

Answer(A)

Page 375: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question25:

Whatisrecommendedformigrating40TBofdatafromon-premisestoS3whentheinternetlinkisoftenoverutilized?

A. AWSStoragegateway

B. AWSSnowball

C. AWSImport/Export

D. AWSElasticFileSystem

E. AWSElasticsearch

F. AWSMulti-PartUploadAPIAnswer(B)

Page 376: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question26:

YourcompanyispublishinganonlinecatalogofbooksthatiscurrentlyusingDynamoDBforstoringtheinformationassociatedwitheachitem.Thereisarequirementtoaddimagesforeachbook.Whatsolutionismostcosteffectiveanddesignedforthatpurpose?

A. RedShiftB. EBSC. RDSD. S3E. Kinesis

Answer(D)

Page 377: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question27:

Youhaveanapplicationthatcollectsmonitoringdatafrom10,000sensors(IoT)deployedintheUSA.Thedatapointsarecomprisedofvideoeventsforhomesecurityandenvironmentstatusalerts.TheapplicationwillbedeployedtoAWSwithEC2instancesasdatacollectors.WhatAWSstorageserviceispreferredforstoringvideofilesfromsensors?

A. RedShiftB. RDSC. S3D. DynamoDB

Answer(C)

Page 378: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

SecurityArchitectureQuestion1:

WhatstatementscorrectlydescribesecuritygroupswithinaVPC?(Selectthree)

A. defaultsecuritygrouponlypermitinboundtraffic

B. securitygroupsarestatefulfirewalls

C. onlyallowrulesaresupported

D. allowanddenyrulesaresupported

E. securitygroupsareassociatedtonetworkinterfacesAnswer(B,C,E)

Page 379: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:

Whatthreeitemsarerequiredtoconfigureasecuritygrouprule?

A. protocoltype

B. VPCname

C. portnumber

D. sourceIP

E. destinationIP

F. descriptionAnswer(A,C,D)

Page 380: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:

WhattwosourceIPaddresstypesarepermittedinasecuritygrouprule?

A. onlyCIDRblockswith/16subnetmask

B. sourceIPaddress0.0.0.0/0

C. singlesourceIPaddresswith/24subnetmask

D. securitygroupid

E. IPv6addresswith/64prefixlengthAnswer(B,D)

Page 381: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

WhatprotocolsmustbeenabledforremoteaccesstoLinux-basedandWindows-basedEC2instances?

A. SSH,ICMP,Telnet

B. SSH,HTTP,RDP

C. SSH,HTTP,SSL

D. SSH,RDP,ICMPAnswer(D)

Page 382: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

DistinguishnetworkACLsfromsecuritygroupswithinaVPC?(Selectthree)

A. ACLfiltersatthesubnetlevel

B. ACLisbasedondenyrulesonly

C. ACLisappliedtoinstancesandsubnets

D. ACLisstateless

E. ACLsupportsanumberedlistforfilteringAnswer(A,D,E)

Page 383: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:WhathappenstothesecuritypermissionsofatenantwhenanIAMroleisgranted?(Selecttwo)

A. tenantinheritsonlypermissionsassignedtotheIAMroletemporarilyB. addsecuritypermissionsoftheIAMroletoexistingpermissionsC. previoussecuritypermissionsarenolongerineffectD. previoussecuritypermissionsaredeletedunlessreconfiguredE. tenantinheritsonlyreadpermissionsassignedtotheIAMrole

Answer(A,C)

Page 384: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

WhereareIAMpermissionsgrantedtoinvokeandexecuteaLambdafunctionforS3access?(Selecttwo)

A.S3bucket

B. EC2instance

C. Lambdafunction

D. IAMrole

E. eventmappingAnswer(A,D)

Page 385: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:

YouhavesomedevelopersworkingoncodeforanapplicationandtheyrequiretemporaryaccesstoAWSclouduptoanhour.Whatistheeasiestweb-basedsolutionfromAWStoprovidesaccessandminimizesecurityexposure?

A. ACL

B. securitygroup

C. IAMgroup

D. STS

E. EFS

Answer(D)

Page 386: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:

WhattwomethodsareusedtorequesttemporarycredentialsbasedonAWSSecurityTokenService(STS)?

A. WebIdentityFederation

B. LDAP

C. IAMidentity

D. dynamicACL

E. privatekeyrotationAnswer(A,C)

Page 387: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

WhattwocomponentsarerequiredforenablingSAMLauthenticationrequeststoAWSIdentityandAccessManagement(IAM)?

A. accesskeys

B. sessiontoken

C. SSO

D. identityprovider(IdP)

E. SAMLproviderentityAnswer(D,E)

Page 388: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:

WhataretworeasonsfordeployingOriginAccessIdentity(OAI)whenenablingCloudFront?

A. preventusersfromdeletingobjectsinS3bucketsB. mitigatedistributeddenialofserviceattacks(DDoS)C. preventusersfromaccessingobjectswithAmazonS3URLD. preventusersfromaccessingobjectswithCloudFrontURLE. replaceIAMforinternet-basedcustomerauthentication

Answer(B,C)

Page 389: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

WhatsolutionsarerecommendedtomitigateDDoSattacks?(Selectthree)

A. host-basedfirewall

B. elasticloadbalancer

C. WAF

D. SSL/TLS

E. Bastionhost

F. NATgatewayAnswer(B,C,E)

Page 390: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

WhatfeaturesarerequiredtopreventusersfrombypassingAWSCloudFrontsecurity?(Selectthree)

A. Bastionhost

B. signedURL

C. IPwhitelist

D. signedcookies

E. originaccessidentity(OAI)Answer(B,D,E)

Page 391: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

Whatistheadvantageofresource-basedpoliciesforcross-accountaccess?

A. trustedaccountpermissionsarenotreplaced

B. trustedaccountpermissionsarereplaced

C. resource-basedpoliciesareeasiertodeploy

D. trustingaccountmanagesallpermissions

Answer(A)

Page 392: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

SelectthreerequirementsforconfiguringaBastionhost?

A. EIP

B. SSHinboundpermission

C. defaultroute

D. CloudWatchlogsgroup

E. VPN

F. Auto-ScalingAnswer(A,B,D)

Page 393: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:

WhatrulemustbeaddedtothesecuritygroupassignedtoamounttargetinstancethatenablesEFSaccessfromanEC2instance?

A. Type=EC2,protocol=IP,port=2049,source=remotesecuritygroupid

B. Type=EC2,protocol=EFS,port=2049,source=0.0.0.0/0C. Type=NFS,protocol=TCP,port=2049,source=remotesecurity

groupidD. Type=NFSv4,protocol=UDP,port=2049,source=remotesecurity

groupidAnswer(C)

Page 394: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:WhatstatementcorrectlydescribesIAMarchitecture?

A. IAMsecurityisunifiedperregionandreplicatedbasedonrequirementsforanAWStenantaccount

B. IAMsecurityisdefinedperregionforrolesonlyonanAWStenantaccount

C. IAMsecurityisgloballyunifiedacrosstheAWScloudforanAWStenantaccount

D. IAMsecurityisdefinedseparatelyperregionandcross-regionsecurityenabledforanAWStenantaccount

Answer(C)

Page 395: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question18:

Whataretwoadvantagesofcustomer-managedencryptionkeys(CMK)?

A. createandrotateencryptionkeys

B. AES-128cipherfordataatrest

C. auditencryptionkeys

D. encryptsdatain-transitforserver-sideencryptiononlyAnswer(A,C)

Page 396: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question19:

WhatfeatureisnotavailablewithAWSTrustedAdvisor?

A. costoptimization

B. infrastructurebestpractices

C. vulnerabilityassessment

D. monitorapplicationmetricsAnswer(C)

Page 397: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question20:

WhatisrequiredtoPingfromasourceinstancetoadestinationinstance?A.NetworkACL:notrequiredSecurityGroup:allowICMPoutboundonsource/destinationEC2instancesB.NetworkACL:allowICMPinbound/outboundonsource/destinationsubnetsSecurityGroup:notrequiredC.NetworkACL:allowICMPinbound/outboundonsource/destinationsubnetsSecurityGroup:allowICMPoutboundonsourceEC2instanceSecurityGroup:allowICMPinboundondestinationEC2instanceD.NetworkACL:allowTCPinbound/outboundonsource/destinationsubnetsSecurityGroup:allowTCPandICMPinboundonsourceEC2instanceAnswer(C)

Page 398: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question21:

Whattwostepsarerequiredtograntcross-accountpermissionsbetweenAWSaccounts?

A. createanIAMuser

B. attachatrustpolicytoS3

C. createatransitivepolicy

D. attachatrustpolicytotherole

E. createanIAMrole

Answer(D,E)

Page 399: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question22:YouhaveconfiguredasecuritygrouptoallowICMP,SSHandRDPinboundandassignedthesecuritygrouptoallinstancesinasubnet.ThereisnoaccesstoanyLinux-basedorWindows-basedinstancesandyoucannotPinganyinstances.ThenetworkACLforthesubnetisconfiguredtoallowallinboundtraffictothesubnet.Whatisthemostprobablecause?

A. on-premisesfirewallrulesB. securitygroupandnetworkACLoutboundrulesC. networkACLoutboundrulesD. securitygroupoutboundrulesE. Bastionhostrequired

Answer(C)

Page 400: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question23:

WhatthreetechniquesprovideauthenticationsecurityonS3volumes?

A. bucketpolicies

B. networkACL

C. IdentityandAccessManagement(IAM)

D. encryption

E. AES256Answer(A,B,C)

Page 401: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question24:WhatstatementcorrectlydescribessupportforAWSencryptionofS3objects?

A. tenantsmanageencryptionforserver-sideencryptionofS3objectsB. Amazonmanagesencryptionforserver-sideencryptionofS3objectsC. client-sideencryptionofS3objectsisnotsupportedD. S3bucketsareencryptedonlyE. SSLisonlysupportedwithGlacierstorage

Answer(B)

Page 402: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question25:

WhatauthenticationmethodprovidesFederatedSingleSign-On(SSO)forcloudapplications?

A. ADS

B. ISE

C. RADIUS

D. TACACS

E. SAMLAnswer(E)

Page 403: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question26:

BasedontheAmazonsecuritymodel,whatinfrastructureconfigurationandassociatedsecurityistheresponsibilityoftenantsandnotAmazonAWS?(Selecttwo)

A. dedicatedcloudserver

B. hypervisor

C. operatingsystemlevel

D. applicationlevel

E. upstreamphysicalswitchAnswer(C,D)

Page 404: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question27:

WhatsecurityauthenticationisrequiredbeforeconfiguringormodifyingEC2instances?(Selectthree)

A. authenticationattheoperatingsystemlevel

B. EC2instanceauthenticationwithasymmetrickeys

C. authenticationattheapplicationlevel

D. Telnetusernameandpassword

E. SSH/RDPsessionconnectionAnswer(A,B,E)

Page 405: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question28:

WhatfeatureispartofAmazonTrustedAdvisor?

A. securitycompliance

B. troubleshootingtool

C. EC2configurationtool

D. securitycertificatesAnswer(A)

Page 406: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question29:

WhataretwobestpracticesforaccountmanagementwithinAmazonAWS?A. donotuserootaccountforcommonadministrativetasksB. createasingleAWSaccountwithmultipleIAMusersthathaveroot

privilegeC. createmultipleAWSaccountswithmultipleIAMusersperAWS

accountD. userootaccountforalladministrativetasksE. createmultiplerootuseraccountsforredundancy

Answer(A,C)

Page 407: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question30:

WhatAWSfeatureisrecommendedforoptimizingdatasecurity?

A. Multi-factorauthentication

B. usernameandencryptedpassword

C. Two-factorauthentication

D. SAML

E. FederatedLDAPAnswer(A)

Page 408: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question31:

WhatIAMclassenablesanEC2instancetoaccessafileobjectinanS3bucket?

A. user

B. root

C. role

D. groupAnswer(C)

Page 409: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question32:

Whatarethreerecommendedsolutionsthatprovideprotectionandmitigationfromdistributeddenialofservice(DDoS)attacks?

A. securitygroups

B. CloudWatch

C. encryption

D. WAF

E. datareplication

F. Auto-ScalingAnswer(A,B,D)

Page 410: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question33:

WhatarethreerecommendedbestpracticeswhenconfiguringIdentityandAccessManagement(IAM)securityservices?

A. LockordeleteyourrootaccesskeyswhennotrequiredB. IAMgroupsarenotrecommendedforstoragesecurityC. createanIAMuserwithadministratorprivilegesD. shareyourpasswordand/oraccesskeyswithmembersofyourgroup

onlyE. deleteanyAWSaccountwheretheaccesskeysareunknown

Answer(A,C,E)

Page 411: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question34:

WhattwofeaturescreatesecurityzonesbetweenEC2instanceswithinaVPC?

A. securitygroups

B. VirtualSecurityGateway

C. networkACL

D. WAF

Answer(A,B)

Page 412: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question35:

WhatAWSserviceprovidesvulnerabilityassessmentservicestotenantswithinthecloud?

A. AmazonWAFB. AmazonInspectorC. AmazonCloudLogicD. AmazonTrustedAdvisor

Answer(B)

Page 413: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question36:

WhataretwoprimarydifferencesbetweenADConnectorandSimpleADforclouddirectoryservices?

A. SimpleADrequiresanon-premisesADSdirectoryB. SimpleADisfullymanagedandsetupinminutesC. ADConnectorrequiresanon-premisesADSdirectoryD. SimpleADismorescalablethanADConnectorE. SimpleADprovidesenhancedintegrationwithIAM

Answer(B,C)

Page 414: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

DatabaseServicesQuestion1:

Howisloadbalancingenabledformultipletaskstothesamecontainerinstance?

A. path-basedrouting

B. reverseproxy

C. NAT

D. dynamicportmapping

E. dynamiclistenersAnswer(D)

Page 415: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:

WhatencryptionsupportisavailablefortenantsthataredeployingAWSDynamoDB?

A. server-sideencryption

B. client-sideencryption

C. client-sideandserver-sideencryption

D. encryptionnotsupported

E. blocklevelencryption

Answer(B)

Page 416: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:

WhatarethreeprimaryreasonsfordeployingElastiCache?

A. datasecurity

B. managedservice

C. replicationwithRedis

D. durability

E. lowlatency

Answer(B,C,E)

Page 417: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

Whatservicedoesnotsupportsessiondatapersistencestoretoenableweb-basedstatefulapplications?

A. RDS

B. Memcached

C. DynamoDB

D. Redis

E. RedShift

Answer(B)

Page 418: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

HowdoesMemcachedimplementhorizontalscaling?

A. Auto-Scaling

B. databasestore

C. partitioning

D. EC2instances

E. S3bucketAnswer(C)

Page 419: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:

WhattwooptionsareavailablefortenantstoaccessElastiCache?

A. VPCpeeringlink

B. EC2instances

C. EFSmount

D. cross-regionVPCAnswer(A,B)

Page 420: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

Whattwostatementscorrectlydescribein-transitencryptionsupportonElastiCacheplatform?

A. notsupportedforElastiCacheplatform

B. supportedonRedisreplicationgroup

C. encryptscacheddataatrest

D. notsupportedonMemcachedcluster

E. IPsecmustbeenabledfirstAnswer(B,D)

Page 421: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:

WhatAmazonAWSplatformisdesignedforcomplexanalyticsofavarietyoflargedatasetsbasedoncustomcode.Theapplicationsincludemachinelearninganddatatransformation?

A. EC2

B. Beanstalk

C. Redshift

D. EMRAnswer(D)

Page 422: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:

WhataretwoprimaryadvantagesofDynamoDB?

A. SQLsupport

B. managedservice

C. performance

D. CloudFrontintegrationAnswer(B,C)

Page 423: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

WhattwofaulttolerantfeaturesdoesAmazonRDSsupport?

A. copysnapshottoadifferentregion

B. createreadreplicatoadifferentregion

C. copyunencryptedread-replicaonly

D. copyread/writereplicaandsnapshotAnswer(A,B)

Page 424: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:

WhatmanagedservicesareincludedwithAmazonRDS?(selectfour)

A. assignnetworkcapacitytodatabaseinstances

B. installdatabasesoftware

C. performregularbackups

D. datareplicationacrossmultipleavailabilityzones

E. datareplicationacrosssingleavailabilityzoneonly

F. configuredatabase

G. performancetuningAnswer(A,B,C,D)

Page 425: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

Whattwoconfigurationfeaturesarerequiredtocreateaprivatedatabaseinstance?

A. securitygroup

B. networkACL

C. CloudWatch

D. ElasticIP(EIP)

E. NondefaultVPC

F. DNSAnswer(A,F)

Page 426: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

Whatstoragetypeisrecommendedforanonlinetransactionprocessing(OLTP)applicationdeployedtoMulti-AZRDSwithsignificantworkloads?

A. GeneralPurposeSSD

B. Magnetic

C. EBSvolumes

D. ProvisionedIOPSAnswer(D)

Page 427: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

WhatfeaturesaresupportedwithAmazonRDS?(Selectthree)

A. horizontalscalingwithmultiplereadreplicas

B. elasticloadbalancingRDSreadreplicas

C. replicatereadreplicascross-region

D. automaticfailovertomasterdatabaseinstance

E. applicationloadbalancer(ALB)Answer(A,C,E)

Page 428: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

WhatarethreeadvantagesofstandbyreplicainaMulti-AZRDSdeployment?

A. faulttolerance

B. eliminateI/Ofreezes

C. horizontalscaling

D. verticalscaling

E. dataredundancyAnswer(A,B,E)

Page 429: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:

WhatconsistencymodelisthedefaultusedbyDynamoDB?

A. stronglyconsistent

B. eventuallyconsistent

C. nodefaultmodel

D. casualconsistency

E. sequentialconsistency

Answer(B)

Page 430: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:

WhatdoesRDSusefordatabaseandlogstorage?

A. EBS

B. S3

C. instancestore

D. localstore

E. SSDAnswer(A)

Page 431: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question18:

WhatstatementscorrectlydescribesupportforMicrosoftSQLServerwithinAmazonVPC?(Selectthree)

A. read/writereplica

B. readreplicaonly

C. verticalscaling

D. nativeloadbalancing

E. EBSstorageonly

F. S3storageonly

Answer(B,C,D)

Page 432: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question19:

SelecttwofeaturesavailablewithAmazonRDSforMySQL?

A. Auto-Scaling

B. readrequeststostandbyreplicas

C. real-timedatabasereplication

D. activereadrequestsonlyAnswer(B,C)

Page 433: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question20:

WhataretwocharacteristicsofAmazonRDS?

A. databasemanagedservice

B. NoSQLqueries

C. nativeloadbalancer

D. databasewritereplicas

E. automaticfailoverofreadreplicaAnswer(A,C)

Page 434: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question21:

WhatcachingenginesaresupportedwithAmazonElastiCache?(Selecttwo)

A. HAProxy

B. Route53

C. RedShift

D. Redis

E. Memcached

F. CloudFrontAnswer(D,E)

Page 435: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question22:

WhatarethreeprimarycharacteristicsofDynamoDB?

A. lessscalablethanRDS

B. staticcontent

C. storemetadataforS3objects

D. replicationtothreeAvailabilityZones

E. highread/writethroughput

Answer(C,D,E)

Page 436: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question23:

WhatarethreeexamplesofusingLambdafunctionstomovedatabetweenAWSservices?

A. readdatadirectlyfromDynamoDBstreamstoRDSB. readdatafromKinesisstreamandwritedatatoDynamoDBC. readdatafromDynamoDBstreamtoFirehoseandwritetoS3D. readdatafromS3andwritemetadatatoDynamoDBE. readdatafromKinesisFirehosetoKinesisdatastream

Answer(B,C,D)

Page 437: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question24:YouhaveenabledAmazonRDSdatabaseservicesinVPC1foranapplicationwithpublicwebserversinVPC2.HowdoyouconnectthewebserverstotheRDSdatabaseinstancesotheycancommunicateconsideringtheVPC'sareindifferentregions?

A. VPCendpointsB. VPNgatewayC. path-basedroutingD. publiclyaccessibledatabaseE. VPCpeering

Answer(D)

Page 438: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question25:

YouhavearequirementtocreateanindextosearchcustomerobjectsstoredinS3buckets.ThesolutionshouldenableyoutocreateametadatasearchindexforeachobjectstoredtoanS3bucket.Selectthemostscalableandcosteffectivesolution?

A. RDS,ElastiCacheB. DynamoDB,LambdaC. RDS,EMR,ALBD. RedShift

Answer(B)

Page 439: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question26:WhatarethreeadvantagesofusingDynamoDBoverS3forstoringIoTsensordatawherethereare100,000datapointsamplessentperminute?

A. S3mustcreateasinglefileforeacheventB. IoTcanwritedatadirectlytoDynamoDBC. DynamoDBprovidesfastread/writestoastructuredtableforqueriesD. DynamoDBisdesignedforfrequentaccessandfastlookupofsmall

recordsE. S3isdesignedforfrequentaccessandfastlookupofsmallerrecordsF. IoTcanwritedatadirectlytoS3

Answer(B,C,D)

Page 440: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question27:

Yourcompanyisaproviderofonlinegamingthatcustomersaccesswithvariousnetworkaccessdevicesincludingmobilephones.Whatisadatawarehousingsolutionsforlargeamountsofinformationonplayerbehavior,statisticsandeventsforanalysisusingSQLtools?

A. RedShiftB. DynamoDBC. RDSD. DynamoDBE. Elasticsearch

Answer(A)

Page 441: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question28:WhattwostatementsarecorrectwhencomparingElasticsearchandRedShiftasanalyticaltools?

A. ElasticsearchisatextsearchengineanddocumentindexingtoolB. RedShiftsupportscomplexSQL-basedquerieswithPetabytesizeddata

storeC. ElasticsearchsupportsSQLqueriesD. RedShiftprovidesonlybasicanalyticalservicesE. ElasticsearchdoesnotsupportJSONdatatype

Answer(A,B)

Page 442: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question29:

Whathappenswhenreadorwriterequestsexceedcapacityunits(throughputcapacity)foraDynamoDBtableorindex?(Selecttwo)

A. DynamoDBautomaticallyincreasesread/writeunitsB. DynamoDBcanthrottlerequestssothatrequestsarenotexceededC. HTTP400codeisreturned(BadRequest)D. HTTP500codeisreturned(ServerError)E. DynamoDBautomaticallyincreasesread/writeunitsifprovisioned

throughputisenabledAnswer(B,C)

Page 443: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question30:

WhatreadconsistencymethodprovideslowerlatencyforGetItemrequests?

A. stronglypersistentB. eventuallyconsistentC. stronglyconsistentD. writeconsistent

Answer(B)

Page 444: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question31:

YoumustspecifystronglyconsistentreadandwritecapacityforyourDynamoDBdatabase.Youhavedeterminedreadcapacityof128Kbpsandwritecapacityof25Kbpsisrequiredforyourapplication.WhatisthereadandwritecapacityunitsrequiredforDynamoDBtable?

A. 32readunits,25writeunitsB. 1readunit,1writeunitC. 16readunits,2.5writeunitsD. 64readunits,10writeunits

Answer(A)

Page 445: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question32:

WhatDynamoDBcapacitymanagementtechniqueisbasedonthetenantspecifyinganupperandlowerrangeforread/writecapacityunits?

A. demandB. provisionedthroughputC. reservedcapacityD. autoscalingE. generalpurpose

Answer(D)

Page 446: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question33:

WhatisthemaximumvolumesizeofaMySQLRDSdatabase?

A. 6TBB. 3TBC. 16TBD. unlimited

Answer(C)

Page 447: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question34:

WhatisthemaximumsizeofaDynamoDBrecord(item)?

A. 400KBB. 64KBC. 1KBD. 10KB

Answer(A)

Page 448: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

FaultTolerantSystemsQuestion1:

WhattwofeaturesdescribeanApplicationLoadBalancer(ALB)?

A. dynamicportmapping

B. SSLlistener

C. layer7loadbalancer

D. backendserverauthentication

E. multi-regionforwardingAnswer(A,C)

Page 449: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:

Whatenablesloadbalancingbetweenmultipleapplicationsperloadbalancer?

A. listeners

B. stickysessions

C. path-basedrouting

D. backendserverauthentication

Answer(C)

Page 450: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:

WhatthreefeaturesarecharacteristicofClassicLoadBalancer?

A. dynamicportmapping

B. path-basedrouting

C. SSLlistener

D. backendserverauthentication

E. ECS

F. Layer4basedloadbalancerAnswer(C,D,F)

Page 451: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

WhatsecurityfeatureisonlyavailablewithClassicLoadBalancer?

A. IAMrole

B. SAML

C. back-endserverauthentication

D. securitygroups

E. LDAPAnswer(C)

Page 452: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

WhatisaprimarydifferencebetweenClassicandNetworkLoadBalancer?

A. IPaddresstarget

B. Auto-Scaling

C. protocoltarget

D. cross-zoneloadbalancing

E. listenerAnswer(A)

Page 453: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:WhatarethefirsttwoconditionsusedbyAmazonAWSdefaultterminationpolicyforMulti-AZarchitecture?

A. unprotectedinstancewitholdestlaunchconfigurationB. AvailabilityZone(AZ)withthemostinstancesC. atleastoneinstancethatisnotprotectedfromscaleinD. unprotectedinstanceclosesttothenextbillinghourE. randomselectionofanyunprotectedinstance

Answer(B,C)

Page 454: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

WhatfeatureisusedforhorizontalscalingofconsumerstoprocessdatarecordsfromaKinesisdatastream?

A. verticalscalingshards

B. Auto-Scaling

C. Lambda

D. ElasticLoadBalancerAnswer(B)

Page 455: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:

WhatDNSrecordscanbeusedforpointingazoneapextoanElasticLoadBalancerorCloudFrontdistribution?(Selecttwo)

A. Alias

B. CNAME

C. MX

D. A

E. NameServerAnswer(A,D)

Page 456: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:WhatservicesareprimarilyprovidedbyDNSRoute53?(Selectthree)

A. loadbalancingwebserverswithinaprivatesubnetB. resolvehostnamesandIPaddressesC. loadbalancingwebserverswithinapublicsubnetD. loadbalancingdatareplicationrequestsbetweenECScontainersE. resolvequeriesandrouteinternettraffictoAWSresourcesF. automatedhealthcheckstoEC2instances

Answer(B,E,F)

Page 457: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

WhataretwofeaturesthatcorrectlydescribeAvailabilityZone(AZ)architecture?

A. multipleregionsperAZ

B. interconnectedwithprivateWANlinks

C. multipleAZperregion

D. interconnectedwithpublicWANlinks

E. dataauto-replicatedbetweenzonesindifferentregions

F. DirectConnectsupportsLayer2connectivitytoregionAnswer(B,C)

Page 458: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:

HowisRoute53configuredforWarmStandbyfaulttolerance?(Selecttwo)

A. automatedhealthchecks

B. path-basedrouting

C. failoverrecords

D. AliasrecordsAnswer(A,C)

Page 459: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

HowisDNSRoute53configuredforMulti-Sitefaulttolerance?(Selecttwo)

A. IPaddress

B. weightedrecords(non-zero)

C. healthchecks

D. Aliasrecords

E. zeroweightedrecords

Answer(B,C)

Page 460: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

WhatisanAvailabilityZone?

A. datacenter

B. multipleVPCs

C. multipleregions

D. singleregion

E. multipleEC2serverinstancesAnswer(A)

Page 461: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

HowareDNSrecordsmanagedwithAmazonAWStoenablehighavailability?

A. Auto-Scaling

B. serverhealthchecks

C. reverseproxy

D. elasticloadbalancingAnswer(C)

Page 462: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

WhatisthedifferencebetweenWarmStandbyandMulti-Sitefaulttolerance?(Selecttwo)

A. Multi-SiteenableslowerRTOandmostrecentRPOB. WarmStandbyenableslowerRTOandmostrecentRPOC. Multi-Siteprovidesactive/activeloadbalancingD. Multi-Siteprovidesactive/standbyloadbalancingE. DNSRoute53isnotrequiredforWarmStandby

Answer(A,C)

Page 463: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:

WhatAWSbestpracticeisrecommendedforcreatingfaulttolerantsystems?

A. verticalscaling

B. ElasticIP(EIP)

C. securitygroups

D. horizontalscaling

E. RedShiftAnswer(D)

Page 464: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:

WhattwostatementscorrectlydescribeversioningforprotectingdataatrestonS3buckets?

A. enabledbydefault

B. overwritesmostcurrentfileversion

C. restoresdeletedfiles

D. savesmultipleversionsofasinglefile

E. disabledbydefaultAnswer(C,E)

Page 465: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question18:

WhattwomethodsarerecommendedbyAWSforprotectingEBSdataatrest?

A. replication

B. snapshots

C. encryption

D. VPNAnswer(B,C)

Page 466: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question19:YouhaveanElasticLoadBalancerassignedtoaVPCwithpublicandprivatesubnets.ELBisconfiguredtoloadbalancetraffictoagroupofEC2instancesassignedtoanAuto-Scalinggroup.Whatthreestatementsarecorrect?

A. ElasticLoadBalancerisassignedtoapublicsubnetB. networkACLisassignedtoElasticLoadBalancerC. securitygroupisassignedtoElasticLoadBalancerD. cross-zoneloadbalancingisnotsupportedE. ElasticLoadBalancerforwardstraffictoprimaryprivateIPaddress

(eth0interface)oneachinstanceAnswer(A,C,E)

Page 467: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

DeploymentQuestion1:

WhatAmazonAWSserviceisavailableforcontainermanagement?

A. ECS

B. Docker

C. Kinesis

D. LambdaAnswer(A)

Page 468: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:

WhatisassociatedwithMicroservices?(Selecttwo)

A. ApplicationLoadBalancer

B. Kinesis

C. RDS

D. DynamoDB

E. ECSAnswer(A,E)

Page 469: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:

WheredoesAmazonretrievewebcontentwhenitisnotinthenearestCloudFrontedgelocation?

A. secondarylocation

B. fileserver

C. EBS

D. S3bucketAnswer(D)

Page 470: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

WhattwofeaturesofanAPIGatewayminimizetheeffectsofpeaktrafficeventsandminimizelatency?

A.loadbalancing

B. firewalling

C. throttling

D. scaling

E. caching

Answer(C,E)

Page 471: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

WhatthreecharacteristicsdifferentiateLambdafromtraditionalEC2deploymentorcontainerization?

A. LambdaisbasedonKinesisscripts

B. Lambdaisserverless

C. tenanthasownershipofEC2instances

D. tenanthasnocontrolofEC2instances

E. Lambdaisacode-basedservice

F. LambdasupportsonlyS3andGlacierAnswer(B,D,E)

Page 472: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:

HowiscodeuploadedtoLambda?

A. Lambdainstance

B. Lambdacontainer

C. Lambdaentrypoint

D. Lambdafunction

E. LambdaAMIAnswer(D)

Page 473: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

HowareLambdafunctionstriggered?

A. EC2instance

B. hypervisor

C. Kinesis

D. operatingsystem

E. eventsourceAnswer(E)

Page 474: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:WhatthreestatementscorrectlydescribestandardLambdaoperation?

A. Lambdafunctionisallocated500MBephemeraldiskspaceB. Lambdafunctionisallocated100MBEBSstorageC. LambdastorescodeinS3D. LambdastorescodeinaGlaciervaultE. LambdastorescodeincontainersF. maximumexecutiontimeis300seconds

Answer(A,C,F)

Page 475: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:WhatnetworkeventsarerestrictedbyLambda?(Selecttwo)

A. onlyinboundTCPnetworkconnectionsareblockedbyAWSLambdaB. allinboundnetworkconnectionsareblockedbyAWSLambdaC. allinboundandoutboundconnectionsareblockedD. outboundconnectionssupportonlyTCP/IPsocketsE. outboundconnectionssupportonlySSLsockets

Answer(B,D)

Page 476: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

HowisversioningsupportedwithLambda?(Selecttwo)

A. Lambdanativesupport

B. ECScontainer

C. notsupported

D. Aliases

E. replication

F. S3versioningAnswer(A,D)

Page 477: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:WhatisthedifferencebetweenStream-basedandAWSServiceswhenenablingLambda?

A. streamsmaintainseventsourcemappinginLambdaB. streamsmaintainseventsourcemappingineventsourceC. streamsmaintainseventsourcemappinginEC2instanceD. streamsmaintainseventsourcemappinginnotificationE. streamsmaintainseventsourcemappinginAPI

Answer(A)

Page 478: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

Selecttwocustomoriginserversfromthefollowing?

A. S3bucket

B. S3object

C. EC2instance

D. ElasticLoadBalancer

E. APIgatewayAnswer(C,D)

Page 479: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

WhattwoattributesareonlyassociatedwithCloudFrontprivatecontent?

A. AmazonS3URL

B. signedcookies

C. webdistribution

D. signedURL

E. objectAnswer(B,D)

Page 480: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

HowareoriginserverslocatedwithinCloudFront(Selecttwo)

A. DNSrequest

B. distributionlist

C. webdistribution

D. RTMPprotocol

E. sourcemappingAnswer(A,C)

Page 481: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

WhereareHTMLfilessourcedfromwhentheyarenotcachedataCloudFrontedgelocation?

A. S3object

B. originHTTPserver

C. S3bucket

D. nearestedgelocation

E. RTMPserver

F. failoveredgelocationAnswer(B)

Page 482: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:

WhatisthecapacityofasingleKinesisshard?(Selecttwo)

A. 2000PUTrecordspersecond

B. 1MB/secdatainputand2MB/secdataoutput

C. 10MB/secdatainputand10MB/secdataoutput

D. 1000PUTrecordspersecond

E. unlimitedAnswer(B,D)

Page 483: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:

WhatAmazonAWSservicesupportsreal-timeprocessingofdatastreamfrommultipleconsumersandreplayofrecords?

A. DynamoDB

B. EMR

C. Kinesisdatastreams

D. SQS

E. RedShiftAnswer(C)

Page 484: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question18:Yourcompanyhasaskedyoutocaptureandforwardareal-timedatastreamonamassivescaledirectlytoRedShiftforanalysiswithBItools.WhatAWStoolismostappropriatethatprovidesthefeaturesetandcosteffective?

A. DynamoDBB. SQSC. ElasticMapReduceD. KinesisFirehoseE. SNSF. CloudFront

Answer(D)

Page 485: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question19:

WhatfeaturepermitstenantstouseaprivatedomainnameinsteadofthedomainnamethatCloudFrontassignstoadistribution?

A. Route53

B. CNAMErecord

C. MXrecord

D. RTMP

E. SignedURLAnswer(B)

Page 486: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question20:

WhatAmazonAWSserviceisavailabletoguaranteetheconsumingofauniquemessageonlyonce?

A. Beanstalk

B. SQL

C. Exchange

D. SQSAnswer(D)

Page 487: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question21:

Whatisthefastestandeasiestmethodformigratinganon-premisesVMwarevirtualmachinetotheAWScloud?

A. AmazonMarketplace

B. AWSServerMigrationService

C. AWSStorageGateway

D. EC2Import/ExportAnswer(B)

Page 488: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question22:

Selectthestatelessprotocolfromthefollowing?

A. FTP

B. TCP

C. HTTP

D. SSHAnswer(C)

Page 489: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question23:

WhatarethreevalidendpointsforanAPIgateway?

A. RESTfulAPI

B. Lambdafunction

C. AWSservice

D. webserver

E. HTTPmethod

Answer(B,C,D)

Page 490: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question24:

Howisavolumeselected(identified)whenmakinganEBSSnapshot?

A. accountid

B. volumeid

C. tag

D. ARNAnswer(D)

Page 491: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question25:

WhatdeploymentserviceenablestenantstoreplicateanexistingAWSstack?

A. Beanstalk

B. CloudFormation

C. RedShift

D. EMR

Answer(B)

Page 492: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question26:

WhatthreeservicescaninvokeaLambdafunction?

A. SNStopic

B. CloudWatchevent

C. EC2instance

D. securitygroup

E. S3bucketnotificationAnswer(A,B,E)

Page 493: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question27:

WhattwoservicesenableautomaticpollingofastreamfornewrecordsonlyandforwardthemtoanAWSstorageservice?

A. SNS

B. Kinesis

C. Lambda

D. DynamoDBAnswer(B,C)

Page 494: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question28:YourcompanyisdeployingawebsitewithdynamiccontenttocustomersinUS,EUandAPACregionsoftheworld.Contentwillincludelivestreamingvideostocustomers.SSLcertificatesarerequiredforsecuritypurposes.SelecttheAWSservicedeliversallrequirementsandprovidesthelowestlatency?

A. DynamoDBB. CloudFrontC. S3D. Redis

Answer(B)

Page 495: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question29:

WhataretheadvantagesofBeanstalk?(Selecttwo)

A. orchestrationanddeploymentabstraction

B. template-orienteddeploymentservice

C. easiestsolutionfordeveloperstodeploycloudapplications

D. doesnotsupportcloudcontainersAnswer(A,C)

Page 496: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question30:YouareanetworkanalystwithJSONscriptingexperienceandaskedtoselectanAWSsolutionthatenablesautomateddeploymentofcloudservices.ThetemplatedesignwouldincludeanondefaultVPCwithEC2instances,ELB,Auto-Scalingandactive/activefailover.WhatAWSsolutionisrecommended?

A. BeanstalkB. OpsWorksC. CloudTrailD. CloudFormation

Answer(D)

Page 497: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question31:

SelecttwostatementsthatcorrectlydescribeOpsWorks?

A. Opsworksprovidesoperationalandconfigurationautomation

B. OpsWorksisalowercostalternativetoBeanStalk

C. OpsWorksisprimarilyamonitoringservice

D. Chefscripts(recipes)areakeyaspectofOpsWorksAnswer(A,D)

Page 498: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question32:

YourcompanyhasdevelopedanIoTapplicationthatsendsTelemetrydatafrom100,000sensors.Thesensorssendadatapointof1KBatone-minuteintervalstoaDynamoDBcollectorformonitoringpurposes.WhatAWSstackwouldenableyoutostoredataforreal-timeprocessingandanalyticsusingBItools?

A. Sensors->KinesisStream->Firehose->DynamoDBB. Sensors->KinesisStream->Firehose->DynamoDB->S3C. Sensors->AWSIoT->Firehose->RedShiftD. Sensors->KinesisDataStreams->Firehose->RDS

Answer(C)

Page 499: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question33:

YourcompanyhasanapplicationthatwasdevelopedandmigratedtoAWScloud.TheapplicationleveragessomeAWSservicesaspartofthearchitecture.ThestackincludesEC2instances,RDSdatabase,S3buckets,RedShiftandLambdafunctions.InadditionthereisIAMsecuritypermissionsconfiguredwithdefinedusers,groupsandroles.TheapplicationismonitoredwithCloudWatchandSTSwasrecentlyaddedforpermittingWebIdentityFederationsign-onfromGoogleaccounts.YouwantasolutionthatcanleveragetheexperienceofyouremployeeswithAWScloudinfrastructureaswell.WhatAWSservicecancreateatemplateofthedesignandconfigurationforeasierdeploymentoftheapplicationtomultipleregions?

A. SnowballB. OpsworksC. CloudFormationD. Beanstalk

Answer(C)

Page 500: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

MonitoringServicesQuestion1:

WhatstatementcorrectlydescribesCloudWatchoperationwithinAWScloud?

A. logdataisstoredindefinitely

B. logdataisstoredfor15days

C. alarmhistoryisneverdeleted

D. ELBisnotsupportedAnswer(A)

Page 501: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question2:

WhataretwoAWSsubscriberendpointservicesthataresupportedwithSNS?

A. RDS

B. Kinesis

C. SQS

D. Lambda

E. EBS

F. ECSAnswer(C,D)

Page 502: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question3:

WhatAWSservicesworkinconcerttointegratesecuritymonitoringandauditwithinaVPC?(Selectthree)

A. Syslog

B. CloudWatch

C. WAF

D. CloudTrail

E. VPCFlowLogAnswer(B,D,E)

Page 503: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question4:

HowisCloudWatchintegratedwithLambda?(Selecttwo)

A. tenantmustenableCloudWatchmonitoring

B. networkmetricssuchaslatencyarenotmonitored

C. LambdafunctionsareautomaticallymonitoredthroughLambdaservice

D. loggroupiscreatedforeacheventsource

E. loggroupiscreatedforeachfunctionAnswer(C,E)

Page 504: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question5:

WhattwostatementscorrectlydescribeAWSmonitoringandauditoperations?A. CloudTrailcapturesAPIcalls,storestheminanS3bucketandgenerates

aCloudwatcheventB. CloudWatchalarmcansendamessagetoaLambdafunctionC. CloudWatchalarmcansendamessagetoanSNSTopicthattriggersan

eventforaLambdafunctionD. CloudTrailcapturesallAWSeventsandstorestheminalogfileE. VPClogsdonotsupporteventsforsecuritygroups

Answer(A,C)

Page 505: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question6:

WhatisrequiredforremotemanagementaccesstoyourLinux-basedinstance?

A. ACL

B. Telnet

C. SSH

D. RDPAnswer(C)

Page 506: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question7:

WhataretwofeaturesofCloudWatchoperation?A. CloudWatchdoesnotsupportcustommetricsB. CloudWatchpermissionsaregrantedperfeatureandnotAWSresourceC. collectandmonitoroperatingsystemandapplicationgeneratedlogfilesD. AWSservicesautomaticallycreatelogsforCloudWatchE. CloudTrailgenerateslogsautomaticallywhenAWSaccountisactivated

Answer(B,C)

Page 507: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question8:

YouareaskedtoselectanAWSsolutionthatwillcreatealogentryanytimeasnapshotofanRDSdatabaseinstanceanddeletestheoriginalinstance.SelecttheAWSservicethatwouldprovidethatfeature?

A. VPCFlowLogs

B. RDSAccessLogs

C. CloudWatch

D. CloudTrailAnswer(D)

Page 508: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question9:

WhatisrequiredtoenableapplicationandoperatingsystemgeneratedlogsandpublishtoCloudWatchLogs?

A. Syslog

B. enableaccesslogs

C. IAMcross-accountenabled

D. CloudWatchLogAgentAnswer(D)

Page 509: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question10:

WhatisthepurposeofVPCFlowLogs?

A. captureVPCerrormessages

B. captureIPtrafficonnetworkinterfaces

C. monitornetworkperformance

D. monitornetflowdatafromsubnets

E. enableSyslogservicesforVPCAnswer(B)

Page 510: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question11:

Selecttwocloudinfrastructureservicesand/orcomponentsincludedwithdefaultCloudWatchmonitoring?

A. SQSqueues

B. operatingsystemmetrics

C. hypervisormetrics

D. virtualappliances

E. applicationlevelmetricsAnswer(A,C)

Page 511: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question12:

WhatfeatureenablesCloudWatchtomanagecapacitydynamicallyforEC2instances?

A. replicationlag

B. Auto-Scaling

C. ElasticLoadBalancer

D. verticalscalingAnswer(B)

Page 512: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question13:

WhatAWSserviceisusedtomonitortenantremoteaccessandvarioussecurityerrorsincludingauthenticationretries?

A. SSH

B. Telnet

C. CloudFront

D. CloudWatchAnswer(D)

Page 513: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question14:

HowdoesAmazonAWSisolatemetricsfromdifferentapplicationsformonitoring,storeandreportingpurposes?

A. EC2instances

B. Beanstalk

C. CloudTrail

D. namespaces

E. DockerAnswer(D)

Page 514: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question15:

WhatAmazonAWSserviceprovidesaccounttransactionmonitoringandsecurityaudit?

A. CloudFront

B. CloudTrail

C. CloudWatch

D. securitygroupAnswer(B)

Page 515: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question16:

WhattwostatementscorrectlydescribeCloudWatchmonitoringofdatabaseinstances?

A. metricsaresentautomaticallyfromDynamoDBandRDStoCloudWatch

B. alarmsmustbeconfiguredforDynamoDBandRDSwithinCloudWatchC. metricsarenotenabledautomaticallyforDynamoDBandRDSD. RDSdoesnotsupportmonitoringofoperatingsystemmetrics

Answer(A,B)

Page 516: AWS Certified Solutions Architect: Associate Exam Practice … · 2018-07-28 · AWS cloud solutions. The study guide is comprised of 300+ practice questions. All questions are based

Question17:WhatAWSservicecansendnotificationstocustomersmartphonesandmobileapplicationswithattachedvideoand/oralerts?

A. EMRB. LambdaC. SQSD. SNSE. CloudTrail

Answer(D)AmazonBooks•AWSCertifiedSolutionsArchitectAssociateExam:StudyNotes•AWSCertifiedSolutionsArchitectAssociateExam:CertificationPracticeQuestions(fullanswerkeyversion)