DCT Exam Review Flashcards

1
Q

A VPC peering connection is a networking connection between two ____ that enables you to _____ traffic between them using private IPv4 or IPv6 addresses.

A

A VPC peering connection is a networking connection between two VPCs that enables you to route traffic between them using private IPv4 or IPv6 addresses.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Amazon Elastic File System (Amazon EFS) provides a simple, _______, fully _______ elastic NFS file system for use with _____ services and on-premises resources.

A

Amazon Elastic File System (Amazon EFS) provides a simple, scalable, fully managed elastic NFS file system for use with Cloud services and on-premises resources.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are some use cases for DynamoDB?

Managing ___ session data

Storing __________ accessed data

Storing metadata for __ objects

A

Managing web session data

Storing infrequently accessed data

Storing metadata for S3 objects

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

You can create a VPC peering connection between your ______ or with a VPC in another AWS _______

A

You can create a VPC peering connection between your VPCs, or with a VPC in another AWS account.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Kinesis Firehose Destinations include:

Amazon S3

Amazon ________.

Amazon ___________

Splunk

A

Kinesis Firehose Destinations include:

Amazon S3

Amazon Redshift.

Amazon Elasticsearch

Splunk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

_______ per instance is an appropriate metric for auto-scaling with SQS.

A

Backlog per instance is an appropriate metric for auto-scaling with SQS.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Elasticsearch allows you to store, ______, and ________ huge volumes of data in near real-time and receive a response in _____________.

A

Elasticsearch allows you to store, search, and analyze huge volumes of data in near real-time and receive a response in milliseconds.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What happens when a load balancer determines that an instance is unhealthy?

A

What happens when a load balancer determines that an instance is unhealthy?

It stops routing requests to that instance.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Kinesis Data Firehose captures, _________, and _____ streaming data that you can deliver to destinations like S3 for later ________

A

Kinesis Data Firehose captures, transforms, and loads streaming data that you can deliver to destinations like S3 for later analysis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

EBS volumes cannot be shared by _______ instances

A

EBS volumes cannot be shared by multiple instances

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

User data can be used to perform common automated ___________ tasks and even run _____ after the instance starts

A

User data can be used to perform common automated configuration tasks and even run scripts after the instance starts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Kinesis Data Streams use cases include:

Real-time metrics and ________

Real-time data ________

Complex stream _________

A

Kinesis Data Streams use cases include:

Real-time metrics and reporting.

Real-time data analytics.

Complex stream processing.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

By default, security groups have no ________ rules

By default, a security group includes an ________ rule that ______ all ________ traffic

A

By default, security groups have no inbound rules.

By default, a security group includes an outbound rule that allows all outbound traffic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

When to use Elastic Network Interface (ENI):

This is the _____ adapter type for when you don’t have any _____-__________ requirements

Can be used with ___ instance types

A

When to use Elastic Network Interface (ENI):

This is the basic adapter type for when you don’t have any high-performance requirements

Can be used with all instance types

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

By default, the root volume for an EC2 backed by EBS is deleted when the instance terminates. You can change the default behavior by setting the _______________ attribute to _____ using a block device mapping.

A

By default, the root volume for an EC2 backed by EBS is deleted when the instance terminates. You can change the default behavior by setting the DeleteOnTermination attribute to false using a block device mapping.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Security groups are ________. If you send a request from your instance, the response traffic for that request is_______ regardless of _______ SG rules.

A

Security groups are stateful. If you send a request from your instance, the response traffic for that request is allowed regardless of inbound SG rules.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

You cannot create an ________ Read Replica from an __________ master DB instance.

A

You cannot create an encrypted Read Replica from an unencrypted master DB instance.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

File Gateway allows on-prem or EC2 instances to store objects in __ via ___ or ___ mount points

A

File Gateway allows on-prem or EC2 instances to store objects in S3 via NFS or SMB mount points

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Elastic Fabric Adapter (EFA) should be used with

_____-__________ Computing

Machine Learning use cases.

______ coupled applications.

Can be used with all _______ types.

A

When to use Elastic Fabric Adapter (EFA)

High-Performance Computing

Machine Learning use cases.

Tightly coupled applications.

Can be used with all instance types.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

You can change the security groups for an instance when the instance is in the _______ or ______

A

You can change the security groups for an instance when the instance is in the running or stopped

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

If you need SSL/TLS encryption in transit when connecting to a database from application servers, you should _________ the AWS-provided ____ _________. Use the __________ when connecting to the RDS DB instance.

A

If you need SSL/TLS encryption in transit when connecting to a database from application servers, you should Download the AWS-provided root certificates. Use the certificates when connecting to the RDS DB instance.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

When to use Enhanced Network Adapter (ENA)

Good for use cases that require higher __________ and lower inter-instance _______.

Supports ___ instance types only

A

When to use Enhanced Network Adapter (ENA)

Good for use cases that require higher bandwidth and lower inter-instance latency.

Supports HVM instance types only

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

Kinesis Video Streams Stores data for __ hours by default but can store for up to __ days.

A

Kinesis Video Streams Stores data for 24 hours by default but can store for up to 7 days.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

When using Volume Gateway Cached Mode, your primary data is stored in __ with frequently accessed data is _____ ______ on-prem

A

When using Volume Gateway Cached Mode, your primary data is stored in S3 with frequently accessed data is cached locally on-prem

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Amazon SQS is \_\_\_-based polling, not \_\_\_-based if you need \_\_\_**-**based polling, use \_\_\_
Amazon SQS is **pull**-based polling, not **push**-based if you need **push-**based polling, use **SNS**
26
AWS Security Token Service (AWS STS) is the service that you can use to create and provide users with **\_\_\_\_\_\_\_\_** credentials that can control access to your **\_\_\_\_\_\_\_\_**
AWS Security Token Service (AWS STS) is the service that you can use to create and provide users with **temporary** credentials that can control access to your **resources**
27
An S3 notification can be set up to notify you when objects are **\_\_\_\_\_\_\_** from Glacier to S3 standard.
An S3 notification can be set up to notify you when objects are **restored** from **Glacier** to S3.
28
Auto Scaling groups cannot launch instances in multiple **\_\_\_\_\_\_**
Auto Scaling groups cannot launch instances in multiple **Regions**
29
Between ECS and EKS, which is open source and which is AWS proprietary technology?
EKS is a managed version of the open-source tool Kubernetes. ## Footnote ECS is AWS' proprietary container management tool.
30
If you need to prevent users in specific countries from accessing your content, you can use the ___________ geo-restriction
If you need to prevent users in specific countries from accessing your content, you can use the **CloudFront** geo-restriction
31
**\_\_\_\_-\_\_\_\_\_** VPC peering connection is when the VPCs are in different **\_\_\_\_\_\_\_**
**Inter-region** VPC peering connection is when the VPCs are in different **regions**
32
Geolocation routing lets you choose the resources that serve your traffic based on the location that **\_\_\_** queries **\_\_\_\_\_\_\_\_** from
Geolocation routing lets you choose the resources that serve your traffic based on the location that **DNS** queries **originate** from
33
What state does an instance have to be in if you want to perform a hot, warm, or cold attach of an enhanced network interface? Hot attach = \_\_\_\_\_\_\_\_ Warm attach = \_\_\_\_\_\_\_\_ Cold attach = \_\_\_\_\_\_\_\_
What state does an instance have to be in if you want to perform a hot, warm, or cold attach of an enhanced network interface? ## Footnote Hot attach = Running Warm attach = Stopped Cold attach = Launching
34
What do you call it when you attach an enhanced network interface to an instance when it's running, stopped, or is being launched?
What do you call it when you attach an enhanced network interface to an instance when it's, when it's stopped or when the instance is being launched? ## Footnote **Instance is Running = Hot attach** **Instance is Stopped = Warm attach** **Instance is Launching = Cold attach**
35
Multiple Amazon EC2 instances can access an Amazon EFS file system \_\_\_\_\_\_\_\_\_\_\_\_\_, providing a common data source for workloads and applications running on ________ instances or servers.
**Multiple** Amazon EC2 instances can access an Amazon EFS file system **simultaneously**, providing a common data source for workloads and applications running on **multiple** instances or servers.
36
Scheduled Scaling is ideal for situations where you know ____ and how ____ you will need the additional capacity.
Scheduled Scaling is ideal for situations where you know **when** and how **long** you will need the additional capacity.
37
An Aurora global database consists of one primary AWS Region where your data is _______ and up to __ read-only, secondary AWS Regions
An Aurora global database consists of one primary AWS Region where your data is **mastered** and up to **5** read-only, secondary AWS Regions.
38
File gateway provides a ________ on-premises file server, which enables you to _____ and ______ files as objects in Amazon S3.
File gateway provides a **virtual** on-premises file server, which enables you to **store** and **retrieve** files as objects in Amazon S3.
39
A pre-signed URL is mainly used to ________ access
A pre-signed URL is mainly used to **restrict** access
40
Kinesis Data Streams enables you to build custom applications that process or analyze streaming data for ________ needs
Kinesis Data Streams enables you to build custom applications that **process** or **analyze** streaming data for **specialized** needs
41
Attaching a second network interface to an instance cannot be used as a method to **\_\_\_\_\_\_\_** or **\_\_\_\_\_\_\_** the network bandwidth
Attaching a second network interface to an instance cannot be used as a method to **increase** or **double** the network bandwidth.
42
Amazon Elastic File System (Amazon EFS) is built to **\_\_\_\_** and **\_\_\_\_\_** automatically as you **\_\_\_** and **\_\_\_** files, eliminating the need to provision and manage capacity to accommodate growth.
Amazon Elastic File System (Amazon EFS) is built to **grow** and **shrink** automatically as you **add** and **remove** files, eliminating the need to provision and manage capacity to accommodate growth.
43
Enhanced networking provides higher **\_\_\_\_\_\_\_\_\_\_**, higher \_\_\_\_\_\_\_**-\_\_\_-**\_\_\_\_\_\_ (PPS) performance, and consistently lower inter-instance latencies than Elastic Network Interfaces.
Enhanced networking provides higher **bandwidth**, higher **packet-per-second** (PPS) performance, and consistently lower inter-instance latencies than Elastic Network Interfaces.
44
How can you save money on unused EC2 Reserved Instances?
Sell the reserved instances on the Reserved Instance Marketplace.
45
Which service can terminate and replace instances reported as unhealthy by the load balancer?
EC2 Auto Scaling
46
Amazon RDS **\_\_\_\_\_** an SSL certificate and **\_\_\_\_\_\_\_** the certificate on the DB instance when Amazon RDS ________ the instance.
Amazon RDS **creates** an SSL certificate and **installs** the certificate on the DB instance when Amazon RDS **provisions** the instance.
47
If you want to modify permissions to an SQS Queue, you'll have to edit the \_\_\_\_\_\_\_\_**-**\_\_\_\_\_\_ policy that's ________ to the SQS queue
If you want to modify permissions to an SQS Queue you'll have to edit the **resource-based** policy that's **attached** to the SQS queue
48
With Elastic Beanstalk, you can quickly **\_\_\_\_\_** and **\_\_\_\_\_** applications in the AWS Cloud without learning about the **\_\_\_\_\_\_\_\_\_\_\_** that runs those applications.
With Elastic Beanstalk, you can quickly **deploy** and **manage** applications in the AWS Cloud without learning about the **infrastructure** that runs those applications.
49
The instance launched from the **\_\_\_\_\_\_\_** launch configuration will be terminated first if you have triggered a scale-in.
The instance launched from the **oldest** launch configuration will be terminated first if you have triggered a scale-in.
50
You can move a network interface from 1 instance to another if the instances are in different ______ but in the same AZ and VPC
You can move a network interface from 1 instance to another if the instances are in different **subnets** but in the same AZ and VPC
51
When using VPC peering, you can not have overlapping **\_\_\_\_** **\_\_\_\_\_**
When using VPC peering, you can not have overlapping **CIDR** **blocks**
52
When you reboot an instance, it remains on the same physical host, so your instance keeps its public **\_\_\_** name, **\_\_\_\_\_\_** IP address, and any data on its **\_\_\_\_\_\_\_ \_\_\_\_\_** volumes.
When you reboot an instance, it remains on the same physical host, so your instance keeps its public **DNS** name, **private** IP address, and any data on its **instance store** volumes.
53
Amazon Kinesis makes it easy to **\_\_\_\_\_\_**, **\_\_\_\_\_\_\_**, and **\_\_\_\_\_\_\_\_** real-time, streaming data to get timely insights that allow you to **\_\_\_\_\_** quickly to new information.
Amazon Kinesis makes it easy to **collect**, **process**, and **analyze** real-time, streaming data to get timely insights that allow you to **react** quickly to new information.
54
Elastic Fabric Adapter (EFA) enables customers to run applications requiring **\_\_\_\_** levels of **\_\_\_\_-\_\_\_\_** communications at scale on AWS.
Elastic Fabric Adapter (EFA) enables customers to run applications requiring **high** levels of **node-node** communications at scale on AWS.
55
You can detach secondary network interfaces when the instance is **\_\_\_\_\_\_\_** or **\_\_\_\_\_\_\_**. However, you can't detach the **\_\_\_\_\_\_\_** network interface in those same states.
You can detach secondary network interfaces when the instance is **running** or **stopped**. However, you can't detach the **primary** network interface in those states.
56
NACL rules are evaluated by rule number from **\_\_\_\_\_\_** to **\_\_\_\_\_\_** and executed immediately when a **\_\_\_\_\_\_\_\_** rule is found.
NACL rules are evaluated by rule number from **lowest** to **highest** and executed immediately when a **matching** rule is found.
57
You cannot enable __________ after the initial _______ of the master DB instance.
You cannot enable **encryption** after the initial **launch** of the master DB instance.
58
Your AWS account has default **\_\_\_\_\_**, formerly referred to as **\_\_\_\_\_\_**, for each AWS service.
Your AWS account has default **quotas**, formerly referred to as **limits**, for each AWS service.
59
Network ACLs are **\_\_\_\_\_\_\_\_\_**, which means that responses to allowed **\_\_\_\_\_\_\_\_** traffic are subject to the rules for **\_\_\_\_\_\_\_\_\_** traffic and **\_\_\_\_\_-\_\_\_\_**
Network ACLs are **stateless**, which means that responses to allowed **inbound** traffic are subject to the rules for **outbound** traffic and **vice-versa.**
60
Volume Gateway is meant for Asynchronous _________ of on-prem data to **\_\_**
Volume Gateway is meant for Asynchronous **replication** of on-prem data to **S3**
61
DynamoDB is highly scalable and supports **\_\_\_\_\_\_** read units per second and **\_\_\_\_\_** write units per second.
DynamoDB is highly scalable and supports **24,000** read units per second and **3,300** write units per second.
62
CloudFront is not used to create **\_\_\_\_** __________ for your application, it is used to ________ access to media content.
CloudFront is not used to create **High Availability** for your application, it is used to **accelerate** access to media content.
63
Kinesis Data Firehose is the easiest way to load **\_\_\_\_\_\_\_\_** data into data **\_\_\_\_\_** and **\_\_\_\_\_\_\_\_** tools
Kinesis Data Firehose is the easiest way to load **streaming** data into data **stores** and **analytics** tools
64
A pre-signed URL from S3 gives you more **control** over access to your content one example is that you can specify the __ \_\_\_\_\_\_\_\_ or range of __ \_\_\_\_\_\_\_\_ of the users who can ______ your content.
A pre-signed URL from S3 gives you more **control** over access to your content one example is that you can specify the **IP** **address** or range of **IP addresses** of the users who can **access** your content.
65
Simple and Step Scaling policies are more suitable for situations where the load is \_\_\_\_\_\_\_\_\_\_.
Simple and Step Scaling policies are more suitable for situations where the load is **unpredictable**.
66
Kinesis Data Streams enables real-time processing of streaming **\_\_\_ \_\_\_\_\_**
Kinesis Data Streams enables real-time processing of streaming **big data**.
67
Kinesis Video Streams make it easy to securely stream video from **\_\_\_\_\_\_\_\_** devices to AWS for **\_\_\_\_\_\_\_\_**, machine learning (ML), and **\_\_\_\_\_\_\_\_\_**
Kinesis Video Streams make it easy to securely stream video from **connected** devices to AWS for **analytics**, machine learning (ML), and **processing**
68
A launch template is similar to a launch configuration in that it specifies instance **\_\_\_\_\_\_\_\_\_\_\_** information for EC2 instances.
A launch template is similar to a launch configuration in that it specifies instance **configuration** information for EC2 instances.
69
An advantage of using a launch template instead of a launch configuration is that you can have multiple **\_\_\_\_\_\_\_** of a launch template.
An advantage of using a launch template instead of a launch configuration is that you can have multiple **versions** of a launch template.
70
A launch configuration is an **\_\_\_\_\_\_\_\_\_** configuration template that an **\_\_\_\_** uses to launch EC2 instances.
A launch configuration is an **instance** configuration template that an **ASG's** uses to launch EC2 instances.
71
AWS Import/Export allows you to **\_\_\_\_** your portable storage devices to AWS to be uploaded to the **\_\_\_\_\_\_**
AWS Import/Export allows you to **mail** your portable storage devices to AWS to be uploaded to the **cloud**
72
When failing over, Amazon RDS simply flips the **\_\_\_\_\_** record for your DB instance to point to the **\_\_\_\_\_\_**, which is promoted to become the new **\_\_\_\_\_\_\_**.
When failing over, Amazon RDS simply flips the **CNAME** record for your DB instance to point to the **standby**, which is promoted to become the new **primary**.
73
Amazon RDS automatically provisions and maintains a __________ standby replica in a different Availability Zone.
Amazon RDS automatically provisions and maintains a **synchronous** standby replica in a different Availability Zone.
74
FIFO queues support up to ____ messages per second per API method
FIFO queues support up to 3,000 messages per second per API method
75
Amazon Kinesis Data Analytics, the easiest way to process streaming data in real-time with standard **\_\_\_**
Amazon Kinesis Data Analytics, the easiest way to process streaming data in real-time with standard **SQL**