AWS Solutions Architect - AWS Object Storage and CDN - S3, Glacier and CloudFront Flashcards

1
Q

True or False:

Termination Protection is turned on by default

A

False.

Termination Protection must be enabled, as it is not turned on by default.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

On an EBS-backed instance, the default action is for root EBS volume to be deleted when the instance in terminated

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

EBS Root Volumes of your DEFAULT AMI’s can be encrypted

A

False.
EBS Root Volumes of your DEFAULT AMI’s cannot be encrypted. You can use a third party tool (such as bit locker etc) to encrypt the root volume, or this can be done when creating AMIs in the AWS console or using the API

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Additional Volumes cannot be encrypted.

A

False.

Additional Volumes can be encrypted.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does EC2 stand for?

A

Elastic Compute Cloud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Which EC2 Option:

allows you to pay a fixed rate by the hour with no commitment?

A

On Demand

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which EC2 Option:
Provides you with a capacity reservation and offer a significant discount on hourly charge for an instance. 1 to 3 year terms ?

A

Reserved

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which EC2 Option:
enables you to bid whatever price you want for instance capacity, providing for even greater savings if your applications have flexible start and end times?

A

Spot

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which EC2 Option:

offers physical EC2 servers dedicated for your use?

A

Dedicated Hosts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which EC2 Option:
should be used by users that want the low cost and flexibility of Amazon EC2 without any up-front payment or long-term commitment?

A

On Demand

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Which EC2 Option:

should be used for applications with short term, spiky, or unpredictable workloads that cannot be interrupted?

A

On Demand

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which EC2 Option:

should be used for applications being developed or tested on Amazon EC2 for the first time?

A

On Demand

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Which EC2 Option:

should be used for applications with steady state or predictable usage?

A

Reserved

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which EC2 Option:

should be used for applications that require reserved capacity?

A

Reserved

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which EC2 Option:

should be used so users are able to make upfront payments to reduce their total computing costs even further?

A

Reserved

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Which EC2 Option:

should be used for applications with flexible start and end times?

A

Spot

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Which EC2 Option:

should be used for applications that are only feasible at very low compute prices?

A

Spot

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Which EC2 Option:

should be used by users with urgent computing needs for large amounts of capacity?

A

Spot

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Which EC2 Option:

is useful for regulatory requirements that may not support multi-tenant virtualization?

A

Dedicated Hosts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Which EC2 Option:

is great for licensing which does not support multi-tenancy or cloud deployments?

A

Dedicated Hosts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Which EC2 Option(s):

can be purchased On-demand (hourly)

A

On Demand and Dedicated Hosts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

Which EC2 Option:

can be purchased as a Reservation for up to 70% off the On-Demand price?

A

Dedicated Hosts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

If the Spot Instance is terminated by Amazon EC2, you are responsible to pay for the partial hour of usage.

A

False.
you will not be charged for the partial hour of usage if AWS terminates your ECS instance. You are responsible for the partial hour if YOU terminate it early.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

If you terminate a Spot instance yourself, you will be charged for any hour in which the instance ran

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

What is the result if the EC2 Spot price rises of above your submitted bid price?

A

Your instance will be terminated, and you will not be charged for the partial hour.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

Which EC2 Instance Type:

should be used as Fileservers / Data Warehousing / Hadoop?

A

Dense Storage (D2)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

Which EC2 Instance Type:

should be used for Memory Intensive Apps / DBs?

A

Memory Optimized (R4)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

Which EC2 Instance Type:

should be used as application servers

A

General Purpose (M4)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

Which EC2 Instance Type:

should be used for CPU intensive apps / DBs?

A

Compute Optimized (C4)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

Which EC2 Instance Type:

should be used for video encoding / 3D application streaming?

A

Graphics Intensive (G2)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
31
Q

Which EC2 Instance Type:

should be used for NoSQL DBs, Data Warehousing, etc.

A

High Speed Storage (I2)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
32
Q

Which EC2 Instance Type:

should be used for hardware acceleration for your code?

A

Field Programmable Gate Array (F1)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
33
Q

Which EC2 Instance Type:

should be used for Web servers / Small DBs?

A

Lowest Cost, General Purpose (T2)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
34
Q

Which EC2 Instance Type:

should be used for machine learning, Bit Coin Mining etc.?

A

Graphics/General Purpose GPU (P2)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
35
Q

Which EC2 Instance Type:

should be used for SAP HANA/Apache Spark etc.?

A

Memory Optimized (X1)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
36
Q

What is the mnemonic for the EC2 Instance Types, and what does each letter stand for?

A

Mnemonic: DR Mc GIFT PX

D - for Density
R - for RAM
M - main choice for general purpose
C - for Compute
G - for Graphics
I - for IOPs
F - for FPGA (Field Programmable Gate Arrays)
T - cheap general purpose (think T2 Micro)
P - Graphics (think Pics)
X - Extreme Memory
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
37
Q

What is the mnemonic for EC2 instance families?

A

Dr Mc Gift Px

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
38
Q

Which EC2 family does the “D” represent in the mnemonic?

A

Dr Mc Gift Px

D: Density

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
39
Q

Which EC2 family does the “R” represent in the mnemonic?

A

Dr Mc Gift Px

R: RAM

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
40
Q

Which EC2 family does the “M” represent in the mnemonic?

A

Dr Mc Gift Px

M: Main choice (general purpose)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
41
Q

Which EC2 family does the “C” represent in the mnemonic?

A

Dr Mc Gift Px

C: Compute

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
42
Q

Which EC2 family does the “G” represent in the mnemonic?

A

Dr Mc Gift Px

G: Graphics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
43
Q

Which EC2 family does the “I” represent in the mnemonic?

A

Dr Mc Gift Px

I: IOPS (I/O operations per second)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
44
Q

Which EC2 family does the “F” represent in the mnemonic?

A

Dr Mc Gift Px

F: FPGA (Field Programmable Gate Array)

NOT: Female Professional Golfers Association

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
45
Q

Which EC2 family does the “T” represent in the mnemonic?

A

Dr Mc Gift Px

T: T2 Micro (cheap general purpose)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
46
Q

Which EC2 family does the “P” represent in the mnemonic?

A

Dr Mc Gift Px

P: Graphics (think Pics)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
47
Q

Which EC2 family does the “X” represent in the mnemonic?

A

Dr Mc Gift Px

X: eXtreme Memory

48
Q

How many EBS Volume Types does AWS offer? Name them.

A

There are 5 Volume Types:

1) GP2 - General purpose SSD
2) IO1 - Provisioned IOPS SSD
3) ST1 - Throughput Optimized HDD (Magnetic Storage)
4) SC1 - Cold HDD
5) Magnetic (Standard)

49
Q

Which EBS Volume Type is best for general purpose, balancing both price and performance?

A

General Purpose SSD (GP2)

50
Q

Which EBS Volume Type provides a ratio of 3 IOPS per GB with up to 10,000 IOPS and the ability to burst up to 3000 IOPS for extended periods of time for volumes under 1GiB

A

General Purpose SSD (GP2)

51
Q

Which EBS Volume Type is designed for I/O intensive applications such as large relational or NoSQL DBs?

A

Provisioned IOPS SSD (I01)

52
Q

Which EBS Volume Type would you use should you require over 10,000 IOPS?

A

Provisioned IOPS SSD (I01)

53
Q

What is the maximum IOPS that can be provisioned by each IO1 EBS Volume?

A

20,000

54
Q

Which EBS Volume Type would be ideal for Big Data, data warehouses or log processing?

A

Throughput Optimized HDD (ST1)

55
Q

True or False:

ST1 EBS Volume Types are ideal for use as boot volumes?

A

False.

Throughput Optimized HDD (ST1) cannot be used as boot volumes.

56
Q

How many EBS Volume Types cannot be used as boot volumes? Name them.

A

Answer: 2

1) Throughput Optimized HDD (ST1)
2) Cold HDD (SC1)

57
Q

Which EBS Volume Type provides the lowest cost storage for infrequently accessed workloads?

A

Cold HDD (SC1)

58
Q

Which bootable EBS Volume Type has the lowest cost per GB?

A

Magnetic (Standard)

59
Q

True or False:
Magnetic EBS Volumes are ideal for workloads where data is accessed infrequently, and applications where the lowest storage cost is important.

A

True

60
Q

True of False:

ST1 and SC1 are basically the same thing, however, ST1 is bootable whereas SC1 is not

A

False

SC1 and Magnetic (Standard) are basically the same thing, but Magnetic is bootable, which SC1 is not.

61
Q

What does EBS stand for?

A

Elastic Block Storage

62
Q

True or False:

You can mount 1 EBS volume to multiple EC2 instances

A

False.

You cannot mount 1 EBS volume to multiple EC2 instances. Instead use EFS.

63
Q

True or False:

1 EC2 instance can have multiple security groups

A

True

64
Q

True or False:

AMIs are virtual firewalls

A

False

AMIs are Amazon Machine Images. Security Groups are virtual firewalls

65
Q

True or False:

Any modifications to a Security Groups require 24 hours to propagate to all servers.

A

False.

Changes to security groups are immediate.

66
Q

True or False:

Security Group Rules are stateful, which means an outbound rule must be provided to allow traffic traffic back out again

A

False.

Security Group Rules are stateful, but traffic is automatically allowed back out again. No outbound rules are required

67
Q

True or False:

Security Groups can be used to deny inbound traffic access to certain ports

A

False.

Security Groups can only allow. All inbound traffic is denied by default.

68
Q

True or False:

A Security Group can have only a single EC2 instance.

A

False.

You can have any number of EC2 instances within a security group.

69
Q

True or False:

You cannot block specific IP addresses using Security Groups.

A

True.

Instead, use Network Access Control Lists.

70
Q

What is the maximum S3 file size?

A

5 TB

71
Q

What is the S3 storage maximum?

A

S3 storage is unlimited, but you will pay by the GB

72
Q

S3 is a global namespace. How does this affect naming convention?

A

Bucket names must be unique globally

73
Q

what is the S3 URL naming convention?

A

https: s3-[region].amazonaws.com/[bucket]

e. g., https://s3-aws-west-2.amazonaws.com/acloudguru

74
Q

If an S3 upload is successful, what HTTP code will you receive?

A

200

75
Q

What is S3 data consistency model for new PUTS?

A

read after write (immediate after 1 ms)

76
Q

What is the S3 data consistency model for overwrite PUTS and DELETEs?

A

eventual consistency

77
Q

What are the 5 (+2 children) components of S3 Key Value objects?

A
  1. Key
  2. Value
  3. Version ID
  4. Metadata
  5. Subresources
    a. Access Control Lists (ACLs)
    b. torrent
78
Q

What percentage availability is S3 Standard designed for?

A

99.99%

79
Q

Amazon guarantees 99.99% S3 availability.

A

False. AWS guarantees 99.9%

80
Q

What is the x9 SLA guarantee for S3 information durability?

A

11 x 9s (99.999999999%)

81
Q

What 2 ways can you use to secure your S3 data?

A
  1. Access Control Lists (ACLs)

2. Bucket Policies

82
Q

What are the properties of S3 standard storage class?

A

11 x 9s SLA. Stored Redundantly across multiple facilities. Can concurrently lose up to 2 facilities (AZs).

(durable, immediately available, frequently accessed)

83
Q

What are the S3 storage classes?

A
  1. S3 standard
  2. S3 - IA (infrequent access)
  3. S3 One Zone IA
  4. Glacier
84
Q

What are the properties of the S3 IA storage class?

A

For Infrequently Accessed data that requires instant access. Lower fee than S3 standard, but will require a retrieval fee.

(durable, immediately available, infrequently accessed)

85
Q

What are the properties of the S3 One Zone IA storage class?

A

Like S3 IA (Infrequently Accessed) data that doesn’t require multiple AZ data resilience. Is stored in a single Availability Zone (AZ). Lower fee than IA.

(cheaper than IA but one availability zone)

86
Q

What the properties of the S3 Glacier storage class?

A

Glacier is the lowest cost storage tier, used for archival only. Standard, Expedited or Bulk.

(archived data, 3-5 hour wait before accessing)

Standard retrieval requires 3-5 hours
Expedited: within a few minutes (highest fee)
Bulk: 5-12 hours

87
Q

What percentage availability is S3 Standard IA designed for?

A

99.9%

88
Q

What percentage availability is S3 One Zone IA designed for?

A

99.5%

89
Q

What percentage availability is S3 Glacier designed for?

A

N/A

90
Q

Which S3 storage classes charge a retrieval fee?

A

All but S3 Standard:

  • S3 Standard - IA
  • S3 One Zone - IA
  • S3 Glacier
91
Q

How many S3 charges are there and what are they?

A

5 S3 Charges:

  1. Storage
  2. Requests
  3. Storage Mgmt Pricing
  4. Data Transfer Pricing
  5. Transfer Acceleration
92
Q

What is S3 Transfer Acceleration?

A

S3 Transfer Acceleration leverages Amazon’s CloudFront globally distributed edge locations to easily, quickly and securely transfer data over long distances between end users and an S3 bucket.

93
Q

S3 comprises block-based storage

A

False. S3 is object based, i.e., allows you to upload files up to 5 TB

94
Q

Read the S3 FAQ before taking the exam

A

https://aws.amazon.com/s3/faqs/

95
Q

True or False: By default, S3 buckets and all objects uploaded to are private

A

True. Objects have to be made public. From inside the S3 bucket, select the file and choose Actions > Make Public.

Ensure you’ve previously unchecked all boxes under “Edit public access settings” at the bucket level.

96
Q

What are the three S3 Server Side Encryption (SSE) types?

A
  1. SSE-S3 with Amazon S3 Managed Keys
  2. SSE-KMS with Amazon Key Management Service (KMS)
  3. SSE-C using Customer Provided Keys
97
Q

What keyword must be typed to complete updating S3 Public Access Settings?

A

confirm

98
Q

How do you restore a deleted S3 object?

A

Delete the Delete Marker

99
Q

True or False: Once enabled, S3 versioning cannot be suspended, only disabled.

A

False. Once enabled S3 versioning cannot be disabled, only suspended.

100
Q

S3 Versioning’s MFA Delete capability can be used to provide an additional layer of security

A

True.

101
Q

What is the aws CLI command to copy S3 files

A

aws s3 cp –recursive s3://[source] s3://[destination]

102
Q

True or False: S3 replication replicates delete markers on files deleted from a source bucket.

A

False. S3 object deletes are not replicated.

103
Q

True or False: All existing files in the source S3 Bucket are automatically replicated upon activation of replication on a destination S3 Bucket.

A

False

104
Q

True or False: Daisy chaining can be used to replicate an S3 Bucket across multiple buckets

A

False. You cannot replicate across multiple buckets or use daisy chaining (at this time; maybe subject to change)

105
Q

True or False: S3 Lifecycle Management only pertains to current S3 object versions

A

False. S3 Lifecycle Management can be enabled for both current and previous versions

106
Q

What is a CloudFront Edge Location?

A

A location where content will be cached. Separate from a Region or AZ. Both Read/Write.

(Currently over 50 Edge Locations)

107
Q

What is the term for a CloudFront CDN collection of Edge Locations?

A

A Distribution

108
Q

What are the two type of CloudFront Distributions, and why is each used?

A
  1. Web Distribution - used for web sites

2. Real-Time Messaging Protocol (RTMP) - used for media streaming

109
Q

What are the 3 CloudFront components?

A
  1. Edge Locations
  2. Origin
  3. Distribution
110
Q

How long are CloudFront objects cached?

A

For the life of the specified Time-to-Live (TTL)

111
Q

True of False: You can clear cached CloudFront objects, but you will be charged

A

True

112
Q

What are the AWS S3 options for Encryption?

A

In transit: SSL/Transport Layer Security (TLS)

At Rest:

  • Server Side Encryption:
    • SSE-S3: S3 Managed Keys (most common)
      • Advanced Encryption Standard (AES) 256-bit
    • SSE-KMS: AWS Key Mgmt Service, Managed Keys
    • SSE-C: Customer-provided Keys
  • Client Side Encryption
113
Q

What is AWS Storage Gateway?

A

A service that connects an on-premise software appliance with cloud-based storage seamlessly

114
Q

What are the types of Storage Gateways?

A

4 Types:
1. File Gateway ((new!) NFS flat files. No on-prem)

Volumes Gateway (iSCSI block based)

2) Stored Volumes (entire dataset on-prem)
3) Cached Volumes (only recently accessed on-prem)
  1. Tape Gateway (VTL uses popular backup apps like NetBackup, Backup Exec, Veeam, etc.)
115
Q

What is an AWS snowball?

A

a secure petabyte-scale data transport appliance to transfer data into/out of AWS

116
Q

compare and contrast the types of snowballs

A
  1. Snowball: 80 TB capacity
  2. Snowball Edge: 100 TB capacity + compute capability + Lambda. (A mini AWS Data center in a box)
  3. Snowmobile (18-wheeler container) 100 Petabyte or Exabyte level data transfer/storage to AWS. Secure, fast, cost effective. Can transfer an entire DC in 6 months.
117
Q

What is A Cloud Guru’s recommended website to calculate IP address ranges?

A

CIDR.xyz