ACG/DCT Exam Review Flashcards

1
Q

Route 53 Geolocation Routing Policy uses your geographic location to route you to the _____ region.

A

Route 53 Geolocation Routing Policy uses your geographic location to route you to the closest region.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

To remove the Spot Instances, the appropriate steps are to _____ the Spot request and then to _______ the Spot Instances.

A

To remove the Spot Instances, the appropriate steps are to cancel the Spot request and then to terminate the Spot Instances.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

A CNAME record can point to ___ DNS record hosted ________

A

A CNAME record can point to any DNS record hosted anywhere

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

AWS X-Ray lets you analyze and _____ serverless applications

A

AWS X-Ray lets you analyze and debug serverless applications

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

A Throughput Optimized HDD EBS volume is an HDD-backed storage device that is limited to ____ IOPS for each volume

A

A Throughput Optimized HDD EBS volume is an HDD-backed storage device that is limited to 500 IOPS for each volume

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Tape Gateway emulates ________ tape libraries, removes the cost and complexity of managing physical ______________, and provides more ________ than physical tapes.

A

Tape Gateway emulates physical tape libraries, removes the cost and complexity of managing physical infrastructure, and provides more durability than physical tapes.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

All EBS types and all instance families support _________, but there is no direct way to change the _________ state of a volume once it’s been launched.

A

All EBS types and all instance families support encryption, but there is no direct way to change the encryption state of a volume once its been launched.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

POSIX permissions allows you to ______ access from hosts by _____ and _____.

A

POSIX permissions allows you to restrict access from hosts by user and group.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Amazon Neptune offers a fully-managed _____ database

A

Amazon Neptune offers a fully-managed Graph database

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Amazon Kinesis Data Analytics is the easiest way to _______ streaming data in real-time with standard ___

A

Amazon Kinesis Data Analytics is the easiest way to process streaming data in real-time with standard SQL

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

The key difference between a pre-signed URL and a pre-signed Cookie is that pre-signed URLs are meant to share ___ file while pre-signed cookies grant access to ________ restricted files

A

The key difference between a pre-signed URL and a pre-signed Cookie is that pre-signed URLs are meant to share one file while pre-signed cookies grant access to multiple restricted files

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

You can create an _____ record at the top of a zone apex, but you cannot with a _____ ​record

A

You can create an Alias record at the top of a zone apex, but you cannot with a CNAME record

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

A VPC automatically comes with a default network ACL which ____ all inbound/outbound traffic. A _______ NACL _____ all traffic both inbound and outbound by default.

A

A VPC automatically comes with a default network ACL which allows all inbound/outbound traffic. A custom NACL denies all traffic both inbound and outbound by default.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Amazon Redshift Spectrum allows you to directly run ___ queries against exabytes of unstructured data in __. No loading or ____________ of data is required.

A

Amazon Redshift Spectrum allows you to directly run SQL queries against exabytes of unstructured data in S3. No loading or transformation of data is required.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

The Pilot Light is a cost-effective disaster recovery strategy that ________ an existing application hosting environment in another AWS ______.

A

The Pilot Light is a cost-effective disaster recovery strategy that recreates an existing application hosting environment in another AWS Region.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Pilot Light saves cost by _________ ___ most or all resources and only uses the resources during tests or when DR failover is necessary. RPO is about 10 minutes, and RTO could be _____

A

Pilot Light saves cost by turning off most or all resources and only uses the resources during tests or when DR failover is necessary. RPO is about 10 minutes, and RTO could be hours

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

AWS Global Accelerator is used for ________ users of applications to local points of presence worldwide. It is not used for ________ content

A

AWS Global Accelerator is used for directing users of applications to local points of presence worldwide. It is not used for accessing content

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

An Alias record can only point to Cloudfront, Elastic _______, ELB, S3 _______, or another record in the same _____ zone

A

An Alias record can only point to Cloudfront, Elastic Beanstalk, ELB, S3 website or another record in the same hosted zone

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Cloudfront Signed URLs provide more ________ over access to your content

A

Cloudfront Signed URLs provide more control over access to your content

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

AWS _________ Application Model (AWS SAM) is an AWS CloudFormation extension used to package, test, and deploy _________ applications.

A

AWS Serverless Application Model (AWS SAM) is an AWS CloudFormation extension used to package, test, and deploy serverless applications.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

A launch configuration is an instance configuration template that an Auto Scaling group uses to launch ____

A

A launch configuration is an instance configuration template that an Auto Scaling group uses to launch EC2

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

Amazon S3 Select is designed to help ______ and process data within an S3 _____

A

Amazon S3 Select is designed to help analyze and process data within an S3 object

23
Q

CloudFront is designed to handle _____ protocols, meanwhile, Global Accelerator is best used for both HTTP and non-HTTP protocols such as ____ and ___

A

CloudFront is designed to handle HTTP protocols, meanwhile, Global Accelerator is best used for both HTTP and non-HTTP protocols such as TCP and UDP

24
Q

When Amazon ECS uses Fargate for computing, it incurs no ____ when the application is ____.

A

When Amazon ECS uses Fargate for computing, it incurs no costs when the application is idle.

25
Q

An alias with an A and AAAA type record set can be used to _____ a DNS name to a _____ ________

A

An alias with an A and AAAA type record set can be used to point a DNS name to a Load Balancer

26
Q

Amazon Lex is a service for building ____________ interfaces into any application using voice and text.

A

Amazon Lex is a service for building conversational interfaces into any application using voice and text.

27
Q

A CNAME record _______ be pointed at a domain zone ____ record like dctlabs.com

A

A CNAME record cannot be pointed at a domain zone apex record like dctlabs.com

28
Q

When you place DB instances in a _______ subnet, you add a layer of security.

A

When you place DB instances in a private subnet, you add a layer of security.

29
Q

Each NACL includes a rule whose rule number is an asterisk. This rule ensures that it’s ______ if a packet doesn’t match any of the other numbered rules. You can’t ______ or remove this rule.

A

Each NACL includes a rule whose rule number is an asterisk. This rule ensures that it’s denied if a packet doesn’t match any of the other numbered rules. You can’t modify or remove this rule.

30
Q

The way you add instances in private subnets to a public-facing ELB is to add _____ subnets in the same AZs as the ______ subnets to the ELB

A

The way you add instances in private subnets to a public-facing ELB is to add public subnets in the same AZs as the private subnets to the ELB

31
Q

An A record simply points a name to an _________.

A

An A record simply points a name to an IP address.

32
Q

Elasticache and DynamoDB can both be used to store ______ data.

A

Elasticache and DynamoDB can both be used to store session data.

33
Q

Aurora Serverless incurs no compute costs when it is _____.

A

Aurora Serverless incurs no compute costs when it is idle.

34
Q

You can add or remove rules from the _______ network ACL.

A

You can add or remove rules from the default network ACL.

35
Q

A General Purpose SSD EBS volume is limited to __,____ IOPS for each volume

A

A General Purpose SSD EBS volume is limited to 16,000 IOPS for each volume

36
Q

You can assign up to _____ security groups to an instance.

A

You can assign up to five security groups to an instance.

37
Q

CloudFront uses Edge Locations to _____ content, while Global Accelerator uses Edge Locations to ____ an optimal pathway to the _______ regional endpoint.

A

CloudFront uses Edge Locations to cache content, while Global Accelerator uses Edge Locations to find an optimal pathway to the nearest regional endpoint.

38
Q

Cloudfront Signed URLs can specify the beginning and expiration ____ and ____ for access, along with specific IPs or range or IPs

A

Cloudfront Signed URLs can specify the beginning and expiration date and time for access, along with specific IPs or range or IPs

39
Q

Amazon Elasticsearch is a fully managed service that makes it easy for you to search, analyze and _______ data in ____-____

A

Amazon Elasticsearch is a fully managed service that makes it easy for you to search, analyze, and visualize data in real-time

40
Q

To prevent direct connectivity to the EC2 instances from the internet, you can deploy your EC2 instances in a _______ subnet and have the ELB in a _______ subnet.

A

To prevent direct connectivity to the EC2 instances from the internet, you can deploy your EC2 instances in a private subnet and have the ELB in a public subnet.

41
Q

You can specify the instance store volumes for your instance only when you ______ an instance.

A

You can specify the instance store volumes for your instance only when you launch an instance.

42
Q

Origin access identity applies to _______ origins

A

Origin access identity applies to S3-bucket origins

43
Q

You can associate an AWS Direct Connect gateway with a ______ gateway when you have multiple VPCs in the same _______ or a _______ private gateway.

A

You can associate an AWS Direct Connect gateway with a transit gateway when you have multiple VPCs in the same regionor avirtual private gateway.

44
Q

You do not attach NAT gateways to VPCs; you add them to _______ subnets.

A

You do not attach NAT gateways to VPCs; you add them to public subnets.

45
Q

Route 53 Geoproximity Routing Policy routes you to the nearest resource ______ a region.

A

Route 53 Geoproximity Routing Policy route you to the nearest resource within a region.

46
Q

If your object size exceeds ___ MB, you should consider using _______ uploads instead of uploading the object in a single operation

A

If your object size exceeds 100 MB, you should consider using multipart uploads instead of uploading the object in a single operation

47
Q

Amazon GuardDuty continuously monitors your AWS accounts and workloads for __________ activity and delivers detailed security findings for visibility and __________.

A

Amazon GuardDuty continuously monitors your AWS accounts and workloads for malicious activity and delivers detailed security findings for visibility and remediation.

48
Q

EMR utilizes a hosted Hadoop framework running on Amazon ___ and ___.

A

EMR utilizes a hosted Hadoop framework running on Amazon EC2 and S3.

49
Q

A Provisioned IOPS SSD EBS volume provides up to __,____ IOPS for each volume.

A

A Provisioned IOPS SSD EBS volume provides up to 64,000 IOPS for each volume.

50
Q

EFS Security Groups act as a ________, and the rules you add define the ______ flow.

A

EFS Security Groups act as a firewall, and the rules you add define the traffic flow.

51
Q

Route 53 charges for queries with _____ records but not for _____ Records

A

Route 53 charges for queries with CNAME records but not for Alias Records

52
Q

S3 Transfer Acceleration is used to accelerate object ______ to S3 over ____ distances

A

S3 Transfer Acceleration is used to accelerate object uploads to S3 over long distances

53
Q

AWS Transit Gateway ______ your VPCs and on-premises networks through a central hub like a cloud ______

A

AWS Transit Gateway connects your VPCs and on-premises networks through a central hub like a cloud router

54
Q

AWS Transit Gateway puts an end to complex ________ connections since it acts as a cloud router for each new connection

A

AWS Transit Gateway puts an end to complex peering connections since it acts as a cloud router for each new connection