Domain 1: Cloud Concepts Flashcards

1
Q

You suspect that one of the AWS services your company is using has gone down. How can you check on the status of this service?

A

AWS Personal Health Dashboard

AWS Personal Health Dashboard provides alerts and remediation guidance when AWS is experiencing events that may impact you. While the Service Health Dashboard displays the general status of AWS services, Personal Health Dashboard gives you a personalized view into the performance and availability of the AWS services underlying your AWS resources.

The dashboard displays relevant and timely information to help you manage events in progress, and provides proactive notifications to help you plan for scheduled activities. With Personal Health Dashboard, alerts are triggered by changes in the health of AWS resources, giving you event visibility and guidance to help quickly diagnose and resolve issues. https://aws.amazon.com/premiumsupport/technology/personal-health-dashboard/

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

A small company wants to deploy a new system in the AWS cloud but does not have anyone with the required AWS skill set to perform the deployment. Which AWS service can help with this?

A

AWS Partner Network (APN) Technology Partners

APN Technology Partners provide hardware, connectivity services, or software solutions that are either hosted on, or integrated with, the AWS Cloud. Technology Partner products are often delivered as components to broader AWS customer solutions. They can be delivered globally by Consulting Partners through AWS Marketplace, bundled solutions, or directly from APN Technology Partners.

The AWS Partner Network (APN) is the global partner program for technology and consulting businesses that leverage Amazon Web Services to build solutions and services for customers. The APN helps companies build, market, and sell their AWS offerings by providing valuable business, technical, and marketing support. https://aws.amazon.com/partners/

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

You want to define a virtual network in an AWS account to be able to launch resources in that virtual network. What do you need to configure?

A

VPC

Amazon Virtual Private Cloud (Amazon VPC) lets you provision a logically isolated section of the AWS Cloud where you can launch AWS resources in a virtual network that you define. You have complete control over your virtual networking environment, including the selection of your own IP address range, creation of subnets, and configuration of route tables and network gateways. You can use both IPv4 and IPv6 in your VPC for secure and easy access to resources and applications. https://aws.amazon.com/vpc/

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

In AWS Global Infrastructure, which component has one or more discrete data centers with redundant power, networking, and connectivity?

A

Availability Zone

An Availability Zone (AZ) is one or more discrete data centers with redundant power, networking, and connectivity in an AWS Region. Availability Zones allow you to operate production applications and databases that are more highly available, fault-tolerant, and scalable than would be possible from a single data center. All Availability Zones in an AWS Region are interconnected with high-bandwidth, low-latency networking, over fully redundant, dedicated metro fiber providing high-throughput, low-latency networking between Availability Zones. https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/using-regions-availability-zones.html

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Which AWS service can help you optimize your AWS environment by giving recommendations to reduce cost, increase performance, and improve security?

A

AWS Trusted Advisor

AWS Trusted Advisor is an online tool that provides you real-time guidance to help you provision your resources following AWS best practices. Trusted Advisor checks help optimize your AWS infrastructure, increase security and performance, reduce your overall costs, and monitor service limits. Whether establishing new workflows, developing applications, or as part of ongoing improvement, take advantage of the recommendations provided by Trusted Advisor on a regular basis to help keep your solutions provisioned optimally. https://aws.amazon.com/premiumsupport/technology/trusted-advisor/

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

A new web application is getting much more traffic than expected. You decide to add another EC2 instance to share the load. Which AWS principle does this represent?

A

Horizontal Scaling

Horizontal Scaling is the act of changing the number of nodes in a computing system without changing the size of any individual node. So, with horizontal scaling, we would add instances.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

During Disaster Recovery exercises, you need to re-route traffic from EC2 instances to instances in another region. With which service can you do this?

A

Route 53

Route 53 can be used for Disaster Recovery by simply shifting traffic to the new region. Amazon Route 53 is a highly available and scalable cloud Domain Name System (DNS) web service. It is designed to give developers and businesses an extremely reliable and cost-effective way to route end users to Internet applications by translating names like www.example.com into the numeric IP addresses like 192.0.2.1 that computers use to connect to each other. Amazon Route 53 is fully compliant with IPv6 as well.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

When configuring an Application Load Balancer, what step will you take to ensure a highly available architecture?

Configure the Load Balancer to serve traffic to multiple Availability Zones.

Set up multiple Edge Locations for your load balancer.

Set up more than one ALB.

Set up cross-region Load Balancing.

A

Configure the Load Balancer to serve traffic to multiple Availability Zones.

You would set up the load balancer to deliver traffic across multiple availability zones. https://docs.aws.amazon.com/elasticloadbalancing/latest/classic/enable-disable-az.html

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which is a core design principle for deploying resources in AWS?

Use a tight coupling of your resources and applications.

Plan ahead for hardware capacity.

Estimate your S3 storage needs up front.

Deploy in Multiple Availability Zones.

A

Deploy in Multiple Availability Zones.

Deploying in Multiple Availability zones will protect against downtime should an Availability Zone be lost.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which valuable AWS design principle can be a valuable feature when deploying applications?

Tight Coupling

Regional Coupling

Loose Coupling

Hardware Coupling

A

Loose Coupling

Implement loosely coupled dependencies: Dependencies such as queuing systems, streaming systems, workflows, and load balancers are loosely coupled. Loose coupling helps isolate the behavior of a component from other components that depend on it, increasing resiliency and agility https://d1.awsstatic.com/whitepapers/architecture/AWS_Well-Architected_Framework.pdf

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

An application that experiences highly variable traffic throughout the day has been configured in AWS. The capacity configured to serve this application adjusts to demands throughout the day. Which AWS principle does this describe?

A

Elasticity

The ability to acquire resources as you need them and release resources when you no longer need them. In the cloud, you want to do this automatically. https://wa.aws.amazon.com/wat.concept.elasticity.en.html

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which statement is true regarding the AWS Global Infrastructure?

Availability Zones contain Edge Locations

Edge Locations contain Regions

Each AWS Availability Zone contains multiple regions.

Each AWS Region consists of multiple, isolated, and physically separate AZ’s within a geographic area.

A

Each AWS Region consists of multiple, isolated, and physically separate AZ’s within a geographic area.

AWS has the concept of a Region, which is a physical location around the world where we cluster data centers. We call each group of logical data centers an Availability Zone. Each AWS Region consists of multiple, isolated, and physically separate AZ’s within a geographic area. Unlike other cloud providers, who often define a region as a single data center, the multiple AZ design of every AWS Region offers advantages for customers. Each AZ has independent power, cooling, and physical security and is connected via redundant, ultra-low-latency networks. AWS customers focused on high availability can design their applications to run in multiple AZ’s to achieve even greater fault-tolerance. AWS infrastructure Regions meet the highest levels of security, compliance, and data protection.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

You want to define a virtual network in an AWS account to be able to launch resources in that virtual network. What do you need to configure?

A

VPC

Amazon Virtual Private Cloud (Amazon VPC) lets you provision a logically isolated section of the AWS Cloud where you can launch AWS resources in a virtual network that you define. You have complete control over your virtual networking environment, including the selection of your own IP address range, creation of subnets, and configuration of route tables and network gateways. You can use both IPv4 and IPv6 in your VPC for secure and easy access to resources and applications. https://aws.amazon.com/vpc/

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

You are reviewing the AWS Shared Responsibility model to present an overview to management on what your company is responsible for in AWS. Which option is a customer responsibility?

Networking

Edge Locations

Availability Zones

Customer Data

A

Customer Data

Customers are responsible for the storage and securing of their own data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

A video production company uploads large video files to S3 buckets using multipart upload. To which AWS Cloud best practice does this adhere?

A

Think Parallel

Multipart uploads use multi-threading to upload large files to S3 buckets in parallel (the parts of the file are uploaded in parallel). Reference: Architecting in the Cloud.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

A company is contemplating a move to the AWS Cloud. What benefits can be gained from such a move?

All encryption is handled by AWS.

There is no need to patch guest operating systems.

The company can focus on its business rather than managing a data center.

The worry of long term cost is eliminated.

A

The company can focus on its business rather than managing a data center.

The AWS Cloud consists of data centers. But those data centers are the sole responsibility of AWS. This frees the customer up to focus on their business.

17
Q

Your company is moving to the AWS Cloud and is reviewing the shared responsibility model. Which item is entirely the responsibility of AWS?

Storing CloudFormation Templates in another region for Disaster Recovery.

Physical and Environmental Controls

Implementing IAM Groups

Patching of the guest OS

A

Physical and Environmental Controls

AWS is responsible for protecting the physical infrastructure and environmental controls that run all of the services offered in the AWS Cloud. This infrastructure is composed of the hardware, software, networking, and facilities that run AWS Cloud services.

18
Q

You have recently started using AWS and now need to launch a large number of instances in your VPC. You learn that this number exceeds the service limits for instances in a VPC. What can you do?

A

Contact AWS and request a service limit increase.

Use the Limits page in the Amazon EC2 console to request an increase in the limits for resources provided by Amazon EC2 or Amazon VPC on a per-Region basis.

https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/ec2-resource-limits.html

19
Q

You are gathering information to present to management on a potential move to the AWS cloud. Which items are part of the 6 advantages of cloud computing?

Increase speed and agility

Trade capital expense for variable expense

Benefit from small economies of scale

Easily predict capacity

A

Increase speed and agility

Correct: Increase speed and agility – In a cloud computing environment, new IT resources are only a click away, which means that you reduce the time to make those resources available to your developers from weeks to just minutes. This results in a dramatic increase in agility for the organization since the cost and time it takes to experiment and develop is significantly lower.

Trade capital expense for variable expense

Correct: Rather than investing in data centers and server you may never use, you only pay for the computing resources you actually consume. https://docs.aws.amazon.com/whitepapers/latest/aws-overview/six-advantages-of-cloud-computing.html

20
Q

Which AWS service can you use to connect your AWS cloud with an on-premises data center?

IAM

Internet Gateway

Virtual Private Gateway

VPC Peering

A

Virtual Private Gateway

A virtual private gateway is a logical, fully redundant distributed edge routing function that sits at the edge of your VPC. As it is capable of terminating VPN connections from your on-prem or customer environments, the VPG is the VPN concentrator on the Amazon side of the Site-to-Site VPN connection.

21
Q

An on-premises application requires a consistent, high-speed connection to the AWS Cloud environment that is better than an internet-based connection. Which AWS service can provide this connection?

VPC Peering

Direct Connect

STS

AWS VPN

A

Direct Connect

AWS Direct Connect is a cloud service solution that makes it easy to establish a dedicated network connection from your premises to AWS. AWS Direct Connect lets you establish a dedicated network connection between your network and one of the AWS Direct Connect locations. https://aws.amazon.com/directconnect/

22
Q

You suspect that one of the AWS services your company is using has gone down. How can you check on the status of this service?

A

AWS Personal Health Dashboard

AWS Personal Health Dashboard provides alerts and remediation guidance when AWS is experiencing events that may impact you. While the Service Health Dashboard displays the general status of AWS services, Personal Health Dashboard gives you a personalized view into the performance and availability of the AWS services underlying your AWS resources.

The dashboard displays relevant and timely information to help you manage events in progress, and provides proactive notifications to help you plan for scheduled activities. With Personal Health Dashboard, alerts are triggered by changes in the health of AWS resources, giving you event visibility and guidance to help quickly diagnose and resolve issues. https://aws.amazon.com/premiumsupport/technology/personal-health-dashboard/

23
Q

Which statement below is one of the 6 advantages of cloud computing?

Benefit from increased speed and agility.

Easily guess capacity.

Benefit from minor economies of scale.

Trade variable expense for capital expense.

A

Benefit from increased speed and agility.

Increase speed and agility – In a cloud computing environment, new IT resources are only a click away, which means that you reduce the time to make those resources available to your developers from weeks to just minutes. This results in a dramatic increase in agility for the organization since the cost and time it takes to experiment and develop is significantly lower.

24
Q

After creating an EC2 instance to host an application, the traffic to the site far exceeds what was expected. You decide to move to a larger instance type. What AWS principle does this represent?

Horizontal Scaling

Elasticity

Vertical Scaling

Durability

A

Vertical Scaling

Vertical Scaling is increasing the size and computing power of a single instance or node without increasing the number of nodes or instances.

25
Q

Which of the following is an AWS Global Service?

VPC

IAM

Amazon RDS

EC2

A

IAM

Identity and Access Management is a Global service.

26
Q

During Disaster Recovery exercises, you need to re-route traffic from EC2 instances to instances in another region. With which service can you do this?

A

Route 53

Route 53 can be used for Disaster Recovery by simply shifting traffic to the new region. Amazon Route 53 is a highly available and scalable cloud Domain Name System (DNS) web service. It is designed to give developers and businesses an extremely reliable and cost-effective way to route end users to Internet applications by translating names like www.example.com into the numeric IP addresses like 192.0.2.1 that computers use to connect to each other. Amazon Route 53 is fully compliant with IPv6 as well.

27
Q

Which AWS service can you use to connect your AWS cloud with an on-premises data center?

IAM

VPC Peering

Internet Gateway

Virtual Private Gateway

A

Virtual Private Gateway

A virtual private gateway is a logical, fully redundant distributed edge routing function that sits at the edge of your VPC. As it is capable of terminating VPN connections from your on-prem or customer environments, the VPG is the VPN concentrator on the Amazon side of the Site-to-Site VPN connection.

28
Q

A video production company uploads large video files to S3 buckets using multipart upload. To which AWS Cloud best practice does this adhere?

Implement Elasticity

Think Parallel

Decouple your components

Design for Failure

A

Think Parallel

Multipart uploads use multi-threading to upload large files to S3 buckets in parallel (the parts of the file are uploaded in parallel). Reference: Architecting in the Cloud.

29
Q

A small company wants to deploy a new system in the AWS cloud but does not have anyone with the required AWS skill set to perform the deployment. Which AWS service can help with this?

AWS Partner Network (APN) Technology Partners

Trusted Advisor

AWS Partner Network (APN) Consulting Partners

AWS CloudFormation

A

AWS Partner Network (APN) Consulting Partners

APN Consulting Partners are professional services firms that help customers of all types and sizes design, architect, build, migrate, and manage their workloads and applications on AWS, accelerating their journey to the cloud. APN Consulting Partners often implement Technology Partner solutions in addition to the professional services they offer. https://aws.amazon.com/partners/

30
Q

Your company has decided to use Amazon WorkSpaces. They can use Amazon WorkSpaces to provision either Windows or Linux desktops in just a few minutes. What type of solution is this?]]

PaaS

DaaS

IaaS

SaaS

A

DaaS

Amazon WorkSpaces provides a Desktop as a Service (DaaS) solution. https://aws.amazon.com/workspaces/?workspaces-blogs.sort-by=item.additionalFields.createdDate&workspaces-blogs.sort-order=desc

31
Q

Your company would like to begin using auto-scaling to add servers when CPU utilization reaches a certain threshold (say 70%). Which service can you use to trigger actions when CPU utilization crosses the threshold?

A

CloudWatch Alarms

A CloudWatch alarm can be set up to monitor CPU utilization and trigger further action. Further action could be an Auto Scaling Group adding another EC2 instance and/or using SNS to notify team members of the occurrence.

32
Q

When an administrator is looking to deploy a shared file across Linux-based workloads which will require up to petabytes of data stores, what is the best suited file storage option to use?

A

Amazon EFS

Amazon Elastic File Storage is the best suited storage option for the described scenario. It is designed for shared file access and scaling to petabyte data store.