HNF Problem Questions Flashcards
This AWS service uses dedicated private network connections between your on-premise network or branch office sites and Amazon VPC
AWS Direct Connect
What are the connectivity options that can be used to build hybrid cloud architecture? (Choose 2)
- -Direct Connect
- -Cloud9
- -VPN
- -Artifact
- -CloudTrail
–Direct Connect
–VPN
Using Amazon RDS falls under the shared responsibility model. Which of the following are customer responsibilities?
Choose 2
- -managing the database settings
- -installing the database software
- -patching the database software
- -performing backups
- -building the relational database schema
–managing the database settings
–building the relational database schema
What does the AWS Personal Health Dashboard provide? (choose 2)
- -Personalized view of AWS service health
- -published information about the current status and availability of all AWS services
- -recommendations for Cost Optimization
- -a dashboard detailing vulnerabilities in your applications
- -detailed troubleshooting guidance to address AWS events impacting your resources
–Personalized view of AWS service health
–detailed troubleshooting guidance to address AWS events impacting your resources
Based on the AWS Shared Responsibility Model, which of the following are the sole responsibility of AWS?
Choose 2
- -installing software on EC2 instances
- -monitoring network performance
- -configuring Access Control Lists (ACLs)
- -Creating hypervisors
- -hardware maintenance
–Creating hypervisors
–hardware maintenance
What is the AWS service that provides a virtual network dedicated to your AWS account?
AWS VPC
virtual private cloud
Sarah has deployed an application in the Northern California (us-west-1) region. After examining the application’s traffic, she notices that about 30% of the traffic is coming from Asia. What can she do to reduce latency for the users in Asia?
- -Replicate the current resources across multiple Availability Zones within the same region
- -migrate the application to a hosting provider in Asia
- -recreate the website content
- -create a CDN using CloudFront, so that content is cached at Edge Locations close to and in Asia
–create a CDN using CloudFront, so that content is cached at Edge Locations close to and in Asia
NACL
Network Access Control List
an optional layer of security for your VPC that acts as firewall for controlling traffic in and out of one or more subnets
File level storage that provides a scalable, elastic file system for Linux0based workloads for use with AWS Cloud services and on-premise resources
Amazon Elastic File Service
Amazon EFS cannot be used to store Amazon RDS DB instances
What doe the AWS Personal Health Dashboard provide?
Choose 2?
- -Recommendations for Cost Optimization
- -Detailed troubleshooting guidance to address AWS events impacting your resources
- -A dashboard detailing vulnerabilities in your applications
- -Published information about the current status and availability of all AWS services
- -Personalized view of AWS service health
–Detailed troubleshooting guidance to address AWS events impacting your resources
–Personalized view of AWS service health
This service allows you to run containerized applications on a cluster of EC2 instances?
ECS
Elastic Container Service
Two examples of AWS shared controls
- -VPC Management
- -data Center operations
- -IAM management
- -patch management
- -configuration management
–patch management
–configuration management
An AWS service that creates a template that contains a software configuration (for example, an operating system, an application server, and applications). This pre-configured template save time and avoids errors when configuring setting to create new instances
AMI
Amazon Machine Image
Allows organizations to create and manage catalogs of IT services that are approved for use on AWS
AWS Service Catalog
Which statement best describes the operational excellence pillar of the AWS Well-Architected Framework?
- -the ability of a system to recover gracefully from failure
- -the ability to manage datacenter operations more efficiently
- -the ability to monitor systems and improve supporting processes and procedures
- -the efficient use of computing resources to meet requirements
–the ability to monitor systems and improve supporting processes and procedures
What is the AWS tool that enables you to use scripts to manage all AWS services and resources?
AWS CLI
Command Line Interface
A company has created a solution that helps AWS customers improve their architectures on AWS. Which AWS program may support this company?
- -AWS Professional Services
- -APN Technology Partners
- -AWS TAM
- -APN Consulting Partners
–APN Consulting Partners
what is AWS Config
it is a service that enables you to assess, audit, and evaluate the config of all your AWS resources
Which AWS policy defines the prohibited uses of the AWS Cloud?
AWS Acceptable Use Policy
A company has an AWS Enterprise Support plan. They want quick and efficient guidance with their billing and account inquiries. Which of the following should the company use?
- -AWS Operations Support
- -AWS Personal Health Dashboard
- -AWS Direct Connect
- -AWS Support Concierge
–AWS Support Concierge
What is Cloud9
a cloud-based IDE that runs within your browser
The principle “design for failure and nothing will fail” is very important when designing your AWS Cloud architecture. Which of the following would help adhere to this principle? (Choose TWO)
Availability Zones
Elastic Load Balancing
Vertical Scaling
Multi-Factor Identification
Availability Zones
Elastic Load Balancing
In you on-premises environment, you can create as many virtual servers as you need from a single template. What can you to perform the same in AWS?
- -EBS Snapshot
- -AMI
- -IAM
- -An internal gateway
AMI
Amazon Machine Image
Which AWS security feature is associated with an EC2 instance and functions to filter incoming traffic requests?
Security Groups
Which two of the following can help protect you EC2 instances from DDoS attacks
- -CloudHSM
- -AWS Batch
- -Network Access Control Limits
- -IAM
- -Security Groups
–Network Access Control Limits
–Security Groups
Where can you store files in AWS?
Choose 2
- -EMR
- -ECS
- -SNS
- -EBS
- -EFS
–EBS
Elastic Block Store
–EFS
Elastic File System
What are the amazon RDS features that can be used improve the availability of your database?
Choose 2
- -Read Replicas
- -Multi-AZ Deployment
- -Edge Locations
- -Automatic patching
- -AWS Regions
–Read Replicas
–Multi-AZ Deployment
How are AWS customers billed for Linux-based EC2 usage
instances are billed in 1 sec increments with a minimum of 1 minute
Which service can be described as a global content delivery network (CDN) service:
Amazon CloudFront
a compute service that allows you to run hundreds of thousands of batch computing jobs on AWS
AWS Batch
What are the change management tools that helps AWS customers audit an dmonitor all resource change in their AWS environment?
Choose 2
- -AWS CloudTrail
- -Amazon Comprehend
- -AWS Transit Gateway
- -AWS Config
- -AWS X-Ray
–AWS CloudTrail
–AWS Config
Config and CloudTrail are change management tools that help audit and monitor resource and config change
What is AWS CloudHSM
it is a cloud-based hardware security module and enables you to easily generate and use your own encryption keys on the AWS Cloud