aws Flashcards
Which AWS compute service is Serverless?
AWS Lambda
A company needs to consolidated billing from all of its AWS accounts for easier payment and reporting. Which aws service will meet this requirement?
AWS Organizations
For users with AWS enterprise support, how does AWS help with infrastructure event management?
AWS helps users plan for large scale events such as product launches and marketing events
What does the AWS total cost of (TCO) calculator provide?
Est savings when migrating to the aws cloud
A customer has a fault tolerant application running on an EC2 instance which frequently writes to persistent storage which aws pricing model will provide the lowest costs for computing resources?
Reserved Instances
A user wants to implement loose coupling in their application architecture which aws service meets this requirement?
Amazon SQS
A company is looking for help in designing a new cloud content-management app using aws best practices. which of the following can provide guidance?
use the AWS well-architected tool
Which AWS service helps customers collect, process, and analyze real-time streaming data from sources such as operating logs, financial transactions, and social media feeds?
Amazon Kinesis
Which AWS services will support data replication across regions(select two)?
Amazon S3 (i think) Amazon Relational Database Service
Which of the aws database service that provides virtually umlimited throughput and storage?
Amazon DynamoDB
A user wants the ability to easily scale compute resources in and out, while only paying for the resources used. Which AWS cloud architecture principle is this?
Elastcity
a company needs to view a graphical description of its aws expenses and service usage over time. What aws service will provide this info?
AWS cost explorer
Benefits of using aws cloud?
Increased agility
ability to deploy globally in minutes
A company wants to align costs related to info tech to the seasonal nature of the business, and pay for services as they are consumed rather than paying for servers upfront.
which is the most cost-effective pricing mode?
reserved?
A company wants to build and replicate its aws infrastructure in multiple aws regions. Which aws service provides the capability for the customer to use templates to describe and then automatically provision the infrastructure resources?
AWS CloudFormation
Under the shared responsibility model which of the following are responsibilities of AWS?
Securing physical infrastructure
A user has petabytes of data to migrate to aws. WHich aws service is most cost-effective and Faster than transferring data over the internet?
AWS Snowball
Which aws service makes it easy to create and manage keys and control the use of encryption across a wide range of aws services and in your applications?
AWS KMS (key management services)
makes it easy for you to create and manage keys and control the use of encryption across a wide range of AWS services and in your applications. AWS KMS is a secure and resilient service that uses FIPS 140-2 validated hardware security modules to protect your keys
AWS and identity and Acess Management best practice helps protect an aws account?
use aws multi-factor auth to protect the aws account root user. (I think)
AWS IAM
AWS Identity and Access Management (IAM) is a web service that helps you securely control access to AWS resources. You use IAM to control who is authenticated (signed in) and authorized (has permissions) to use resources.
aws EC2
Amazon Elastic Compute Cloud (Amazon EC2) is a web service that provides secure, resizable compute capacity in the cloud. It is designed to make web-scale cloud computing easier for developers.
AWS Lambda
AWS Lambda is an event-driven, serverless computing platform provided by Amazon as a part of the Amazon Web Services. It is a computing service that runs code in response to events and automatically manages the computing resources required by that code.
AWS RDS
Amazon Relational Database Service is a distributed relational database service by Amazon Web Services. It is a web service running “in the cloud” designed to simplify the setup, operation, and scaling of a relational database for use in applications
AWS ECS
Elastic Container Service (Amazon ECS) is a highly scalable, high-performance container orchestration service that supports Docker containers and allows you to easily run and scale containerized applications on AWS
aws organizations
is an account management service that lets you consolidate multiple AWS accounts into an organization that you create and centrally manage.
aws billing and cost management
The bills page gives you access to the most up-to-date information on your costs and usage, including your monthly bill and a detailed breakdown of the AWS services
AWS trusted advisor
AWS Trusted Advisor is your customized cloud expert! It helps you to observe best practices for the use of AWS by inspecting your AWS environment with an eye toward saving money, improving system performance and reliability, and closing security gaps
aws config
aWS Config is a service that enables you to assess, audit, and evaluate the configurations of your AWS resources. Config continuously monitors and records your AWS resource configurations and allows you to automate the evaluation of recorded configurations against desired configurations.
aws cloudwatch
Amazon CloudWatch is a monitoring and management service that provides data and actionable insights for AWS, hybrid, and on-premises applications and infrastructure resources. With CloudWatch, you can collect and access all your performance and operational data in form of logs and metrics from a single platform.
aws cloudtrail
AWS CloudTrail is a service that enables governance, compliance, operational auditing, and risk auditing of your AWS account. … CloudTrail provides event history of your AWS account activity, including actions taken through the AWS Management Console, AWS SDKs, command line tools, and other AWS services.
aws sqs
Amazon Simple Queue Service (SQS) is a fully managed message queuing service that enables you to decouple and scale microservices, distributed systems, and serverless applications. … Get started with SQS in minutes using the AWS console, Command Line Interface or SDK of your choice, and three simple commands.
aws ebs
Amazon Elastic Block Store is a cloud-based block storage system provided by Amazon Web Services (AWS) that is best used for storing persistent data. … Amazon EBS enables you to keep data persistently on a file system, even after you shut down your EC2 instance.
aws macie
Amazon Macie is a security service that uses machine learning to automatically discover, classify, and protect sensitive data in AWS. … Today, Amazon Macie is available to protect data stored in Amazon S3, with support for additional AWS data stores coming later this year.
aws emr
Amazon Elastic MapReduce (EMR) is an Amazon Web Services (AWS) tool for big data processing and analysis. … MapReduce is a software framework that allows developers to write programs that process massive amounts of unstructured data in parallel across a distributed cluster of processors or stand-alone computers.
Amazon Redshift
Amazon Redshift is a fully managed, petabyte-scale data warehouse service in the cloud. … The first step to create a data warehouse is to launch a set of nodes, called an Amazon Redshift cluster. After you provision your cluster, you can upload your data set and then perform data analysis queries.
aws athena
Amazon Athena is a service that enables a data analyst to perform interactive queries in the Amazon Web Services public cloud on data stored in Amazon Simple Storage Service (S3). Because Athena is a serverless query service, an analyst doesn’t need to manage any underlying compute infrastructure to use it.
aws elastic file system
Amazon Elastic File System is a cloud storage service provided by Amazon Web Services designed to provide scalable, elastic, concurrent with some restrictions, and encrypted file storage for use with both AWS cloud services and on-premises resources
aws block store
AWS Elastic Block Storage (EBS): Amazon EBS provides raw storage – just like a hard disk – which you can attach to your Elastic Cloud Compute (EC2) instances. Once attached, you create a file system and get immediate access to your storage. … Volumes allow up to 32 TB of storage
Aws storage gateway
AWS Storage Gateway is a hybrid cloud storage service that gives you on-premises access to virtually unlimited cloud storage. … Your applications connect to the service through a virtual machine or hardware gateway appliance using standard storage protocols, such as NFS, SMB, and iSCSI.
Amazon Elasticsearch Service
Amazon Elasticsearch Service is a fully managed service that makes it easy for you to deploy, secure, and operate Elasticsearch at scale with zero down time. … Amazon Elasticsearch Service lets you pay only for what you use – there are no upfront costs or usage requirements
AWS batch
AWS Batch enables developers, scientists, and engineers to easily and efficiently run hundreds of thousands of batch computing jobs on AWS. … AWS Batch plans, schedules, and executes your batch computing workloads across the full range of AWS compute services and features, such as Amazon EC2 and Spot Instances
aws shield
AWS Shield is a managed Distributed Denial of Service (DDoS) protection service that safeguards applications running on AWS. … AWS Shield Standard defends against most common, frequently occurring network and transport layer DDoS attacks that target your web site or applications
aws secrets manager
AWS Secrets Manager helps you protect secrets needed to access your applications, services, and IT resources. The service enables you to easily rotate, manage, and retrieve database credentials, API keys, and other secrets throughout their lifecycle
AWS WAF
AWS WAF is a web application firewall that helps protect your web applications from common web exploits that could affect application availability, compromise security, or consume excessive resources. … AWS WAF pricing is based on how many rules you deploy and how many web requests your web application receives
Users are reporting latency With on-premises architecture you notify your admin to launch another server to balance the load. How can this be automated using aws
enable an AWS CloudWatch alarm to trigger a scaling policy
which service sends notifications or automatically makes changes to the resources being monitored based on rules you establish
Aws cloudwatch
Which method would you use to access aws services through an easy-to-use graphical inerface?
aws management console
what is elastic load balancing
automatically distributing traffic across multiple tragets
which of the following aws concepts refers to best practices developed through lessons learned by working with customers
well-architected framework
which part of aws infrastructure support increased resilience?
multiple availability zones within a region
three cases for amazon cloudfront
security and encryption
static asset caching
live on-demand video streaming
cloudfront aws
Amazon CloudFront is a fast content delivery network (CDN) service that securely delivers data, videos, applications, and APIs to customers globally with low latency, high transfer speeds, all within a developer-friendly environment
which service provides persistent block storage volumes for use with amazon ec2 instances
Amazon EBS
What is amazon route 53
a cloud serivice solution that establishes private connectivity between aws and your data center, office, or colocation environment
aws cloud map
AWS Cloud Map is a cloud resource discovery service. … Cloud Map allows you to register any application resources, such as databases, queues, microservices, and other cloud resources, with custom names.
distribute a newsletter, pushed out to admins by email. which is the best solution
create a topic in amazon simple notification service that admins can subscribe to.
amazon simple notification service (SNS)
Amazon Simple Notification Service (SNS) is a highly available, durable, secure, fully managed pub/sub messaging service that enables you to decouple microservices, distributed systems, and serverless applications. … Additionally, SNS can be used to fan out notifications to end users using mobile push, SMS, and email.
Provides recommendations for security optimization for your infrastructure
aws trusted advisor
Customize each departments access to aws. which option is the most appropriate?
create an IAM group for each department and assign IAM users to the groups.
Which component of aws global infrastructure supports the caching of content for faster access?
edge locations.
Aws NACL
Network access control lists. It’s a security layer for your cox that controls traffic in and out of one or more subnets