Aireddy Questions Flashcards

1
Q

How many cloudformation stacks can a single cloudformation template create?

A

unlimited

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

8.7 hours downtime per year is

A

99.9% uptime

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

5.26 minutes downtime per year is

A

99.999% uptime

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is more expensive and complicated, high availability or fault tolerance?

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

The effect of an IAM statement is to either ___ or ___?

A

ALLOW or DENY

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What type of IAM policy grants access and is assigned on each account individually?

A

Inline policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What type of IAM policy is applied to all users at once?

A

managed policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the max amount of IAM users per account?

A

5000

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

An IAM user can be a member of how many groups?

A

10

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

TRUE OR FALSE: GROUPS ARE NOT A TRUE IDENTITY THEY CAN’T BE REFERENCED AS A PRINCIPAL IN A POLICY

A

TRUE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

____ limit what the account, including root can do inside that account. They don’t grant permissions themselves, just act as a barrier.

A

SCP’s

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

CloudTrail is enabled by default to retain for ___ days without cost or the need of S3?

A

90 days

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Is CloudTrail real time?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

in S3, use a ____ policy when you want to manage permissions in one place (IAM) and have access to the accounts accessing the bucket

A

Identity Policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

in S3, use a _____ policy if you need to grant anonymous or cross-account access to the bucket

A

bucket (or resource) policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Question concerning web hosting and providing a maintenance or status page out of band

A

Use R53 and a different S3 bucket

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

EBS volumes are created in the ___ and isolated to the __ they were created in

A

AZ and isolated

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

EBS volumes are resilient to an AZ failure?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Can you create a presigned URL for an object you have do not have access too?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

If use case mentions Legacy software licensed using a mac address, you can:

A

associate the mac address to a secondary ENI

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

What is the most performant EC2 Placement Group?

A

Cluster

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

What type of placement group Provides the highest level of availability and resilience?

A

Spread

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

Are spread placement groups supported for dedicated hosts?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

What supports EC2, EKS, Lambda, HTTPS, HTTP/2 and websockets, ALB or ELB?

A

ALB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

What AWS service automatically discover, classify, and protect your sensitive data?

A

Macie

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

What does SWF stand for?

A

Simple Workflow Service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

SCPs do not affect any _______ role. these type of roles enable other AWS services to integrate with AWS Organizations and can’t be restricted by SCPs.

A

service-linked

28
Q

Is RedShift OLTP or OLAP based DB?

A

OLAP

29
Q

What is a petabyte scale data warehouse service?

A

RedShift

30
Q

True/False: RedShift is serverless

A

False

31
Q

EBS volume type for infrequent access?

A

Cold HDD (sc1)

32
Q

EBS volume type that provides the highest performance SSD volume for mission-critical low-latency or high-throughput workloads?

A

Provisioned IOPS (io1)

33
Q

EBS volume type that provides low-cost magnetic storage that defines performance in terms of throughput rather than IOPS.

A

Throughput Optimized HDD ( st1 )

34
Q

________ is a natural language processing (NLP) service that uses machine learning to find insights and relationships in text.

A

Amazon Comprehend

35
Q

______ is a service for building conversational interfaces using voice and text

A

Amazon Lex

36
Q

Alexa is powered by

A

Lex

37
Q

________ is a service that turns text into lifelike speech, enabling you to create applications that talk and build entirely new categories of speech-enabled products.

A

Amazon Polly

38
Q

What allows you to Quickly build custom machine learning models to detect objects and scenes unique to your business?

A

Rekognition

39
Q

______ provides high-quality and affordable speech-to-text transcription for a wide range of use cases.

A

Amazon Transcribe

40
Q

______ users are users (or applications) who do not have AWS accounts.

A

Federated

41
Q

Does Storage Gateway stored volume mode extend the on-premises capacity into AWS?

A

No, Stored Gateway mode ALL stored on-premises

42
Q

What protocols does storage gateway volume stored present to clients?

A

iSCSI, NFS and SMB

43
Q

Where does the data live when using storage gateway volume cached mode?

A

in AWS

44
Q

Does using storage gateway volume cached mode utilize a Storage Gateway Endpoint?

A

Yes

45
Q

Does using storage gateway volume stored mode utilize a Storage Gateway Endpoint?

A

Yes

46
Q

If you want to extend your on-premises storage capacity, which storage gateway mode would you use, volume cached or volume stored?

A

volume cached

47
Q

_____ bridges on-premises file storage and s3

A

storage gateway file gateway

48
Q

What types of protocols can you mount a storage gateway file gateway?

A

NFS or SMB

49
Q

Does file gateway allow for file locking?

A

No

50
Q

What virtualization platforms are supported by SMS?

A

VMWare, Hyper-V and AzureVM

51
Q

Is SMS agent based or agentless?

A

Agentless

52
Q

What is a hardware VPN connection from your on-premises network equipment on a remote network to AWS managed network equipment attached to your Amazon Virtual Private Cloud (Amazon VPC)?

A

AWS Managed VPN

53
Q

What is a hub-and-spoke model for connecting multiple remote branch offices to an Amazon VPC?

A

AWS VPN Cloudhub

54
Q

What is a VPN connection from your equipment on a remote network to a user-managed software VPN appliance running inside your Amazon VPC?

A

Software VPN

55
Q

An _______ endpoint is an elastic network interface with a private IP address that serves as an entry point for traffic destined to services powered by AWS PrivateLink.

A

interface

56
Q

A _____ endpoint is a gateway that is a target for a specified route in your route table. This type of endpoint is used for traffic destined to a supported AWS service, such as Amazon S3 or Amazon DynamoDB.

A

gateway

57
Q

Which Kinesis service is zero admin and provides latency of 60 seconds or higher?

A

Firehose

58
Q

Which Kinesis service is sub 1 second latency?

A

Streams

59
Q

Which Kinesis service allows for choice of stream processing frameworks?

A

Streams

60
Q

Which Kinesis service allows for use of existing AWS analytics tools like S3, redshift, and ES (elasticsearch)?

A

Firehose

61
Q

Which Elisticache service allows for backup/restore, scaling via read replicas, persitence and advanced data structures?

A

Redis

62
Q

Which Elisticache service is a simple key value storage, is non-persistant, supports multi-threaded ops but does not support backup/restore?

A

memcached

63
Q

What feature of cloudformation would you use to extend its functionality or integrate it with other system?

A

Custom resources

64
Q

_____ helps developers analyze and debug production, distributed applications, such as those built using a microservices architecture.

A

AWS X-Ray

65
Q

______ is a serverless, interactive query service to query data and analyze big data in Amazon S3 using standard SQL

A

Amazon Athena