Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Amazon Exam SOA-C02 Topic 2 Question 95 Discussion

Actual exam question for Amazon's SOA-C02 exam
Question #: 95
Topic #: 2
[All SOA-C02 Questions]

A SysOps administrator needs to control access to groups of Amazon EC2 instances using AWS Systems Manager Session Manager. Specific tags on the EC2 instances have already been added.

Which additional actions should the administrator take to control access? (Choose two.)

Show Suggested Answer Hide Answer
Suggested Answer: D

AWS Global Accelerator and Amazon CloudFront are separate services that use the AWS global network and its edge locations around the world. CloudFront improves performance for both cacheable content (such as images and videos) and dynamic content (such as API acceleration and dynamic site delivery). Global Accelerator improves performance for a wide range of applications over TCP or UDP by proxying packets at the edge to applications running in one or more AWS Regions. Global Accelerator is a good fit for non-HTTP use cases, such as gaming (UDP), IoT (MQTT), or Voice over IP, as well as for HTTP use cases that specifically require static IP addresses or deterministic, fast regional failover. Both services integrate with AWS Shield for DDoS protection.

https://medium.com/awesome-cloud/aws-difference-between-application-load-balancer-and-network-load-balancer-cb8b6cd296a4 https://aws.amazon.com/global-accelerator/faqs/?nc1=h_ls


Contribute your Thoughts:

Felicidad
16 days ago
Hmm, options A and E sound like the winners to me. Though I do wonder if the exam writer has a sense of humor - maybe they'll throw in a trick question about launching the EC2 instances into low Earth orbit.
upvoted 0 times
...
Helene
19 days ago
A service account? What is this, Active Directory? We're in the cloud, baby! A and E are the way to go.
upvoted 0 times
...
Pete
25 days ago
Creating a placement group? Really? That's not going to help with access control. I'm sticking with A and E.
upvoted 0 times
Darrin
8 days ago
Definitely not creating a placement group. A and E are the actions needed for access control.
upvoted 0 times
...
Samira
9 days ago
You're right, A and E are the way to go for controlling access to EC2 instances.
upvoted 0 times
...
Lucille
21 days ago
A and E are the correct choices. Placement groups are not related to access control.
upvoted 0 times
...
...
Hyun
1 months ago
I'm not sure about option B - attaching an IAM role to the instances themselves seems like overkill for this use case. Let's go with A and E.
upvoted 0 times
Lewis
1 months ago
A) Attach an IAM policy to the users or groups that require access to the EC2 instances.
upvoted 0 times
...
...
Walker
1 months ago
I also think creating an IAM policy that grants access based on specific tags is important.
upvoted 0 times
...
Bernadine
2 months ago
I agree with Ty. It's a good way to control access to the EC2 instances.
upvoted 0 times
...
Ty
2 months ago
I think we should attach an IAM policy to the users or groups.
upvoted 0 times
...
Deangelo
2 months ago
I believe we should also create an IAM policy that grants access to EC2 instances with a specific tag.
upvoted 0 times
...
James
2 months ago
Options A and E look like the right choices here. Attaching an IAM policy to users/groups and using a tag-based condition in the policy should give us the access control we need.
upvoted 0 times
Rashad
6 days ago
User 4: Exactly, those two actions should help us control access to the EC2 instances effectively.
upvoted 0 times
...
Selma
6 days ago
User 3: So, we need to attach an IAM role and create an IAM policy with a tag-based condition for access control.
upvoted 0 times
...
Loreen
9 days ago
User 2: Yes, that sounds like a good idea. We can also create an IAM policy with a tag-based condition for access control.
upvoted 0 times
...
Gayla
1 months ago
User 1: I think we should attach an IAM policy to the users or groups that need access.
upvoted 0 times
...
...
Daniela
2 months ago
I agree with Deangelo. That's one of the actions we should take. What's the other one?
upvoted 0 times
...
Deangelo
2 months ago
I think we should attach an IAM policy to the users or groups that need access.
upvoted 0 times
...

Save Cancel