HNF Problem Questions Flashcards

1
Q

This AWS service uses dedicated private network connections between your on-premise network or branch office sites and Amazon VPC

A

AWS Direct Connect

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the connectivity options that can be used to build hybrid cloud architecture? (Choose 2)

  • -Direct Connect
  • -Cloud9
  • -VPN
  • -Artifact
  • -CloudTrail
A

–Direct Connect

–VPN

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Using Amazon RDS falls under the shared responsibility model. Which of the following are customer responsibilities?
Choose 2

  • -managing the database settings
  • -installing the database software
  • -patching the database software
  • -performing backups
  • -building the relational database schema
A

–managing the database settings

–building the relational database schema

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What does the AWS Personal Health Dashboard provide? (choose 2)

  • -Personalized view of AWS service health
  • -published information about the current status and availability of all AWS services
  • -recommendations for Cost Optimization
  • -a dashboard detailing vulnerabilities in your applications
  • -detailed troubleshooting guidance to address AWS events impacting your resources
A

–Personalized view of AWS service health

–detailed troubleshooting guidance to address AWS events impacting your resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Based on the AWS Shared Responsibility Model, which of the following are the sole responsibility of AWS?
Choose 2

  • -installing software on EC2 instances
  • -monitoring network performance
  • -configuring Access Control Lists (ACLs)
  • -Creating hypervisors
  • -hardware maintenance
A

–Creating hypervisors

–hardware maintenance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the AWS service that provides a virtual network dedicated to your AWS account?

A

AWS VPC

virtual private cloud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Sarah has deployed an application in the Northern California (us-west-1) region. After examining the application’s traffic, she notices that about 30% of the traffic is coming from Asia. What can she do to reduce latency for the users in Asia?

  • -Replicate the current resources across multiple Availability Zones within the same region
  • -migrate the application to a hosting provider in Asia
  • -recreate the website content
  • -create a CDN using CloudFront, so that content is cached at Edge Locations close to and in Asia
A

–create a CDN using CloudFront, so that content is cached at Edge Locations close to and in Asia

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

NACL

A

Network Access Control List
an optional layer of security for your VPC that acts as firewall for controlling traffic in and out of one or more subnets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

File level storage that provides a scalable, elastic file system for Linux0based workloads for use with AWS Cloud services and on-premise resources

A

Amazon Elastic File Service

Amazon EFS cannot be used to store Amazon RDS DB instances

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What doe the AWS Personal Health Dashboard provide?
Choose 2?

  • -Recommendations for Cost Optimization
  • -Detailed troubleshooting guidance to address AWS events impacting your resources
  • -A dashboard detailing vulnerabilities in your applications
  • -Published information about the current status and availability of all AWS services
  • -Personalized view of AWS service health
A

–Detailed troubleshooting guidance to address AWS events impacting your resources

–Personalized view of AWS service health

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

This service allows you to run containerized applications on a cluster of EC2 instances?

A

ECS

Elastic Container Service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Two examples of AWS shared controls

  • -VPC Management
  • -data Center operations
  • -IAM management
  • -patch management
  • -configuration management
A

–patch management

–configuration management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

An AWS service that creates a template that contains a software configuration (for example, an operating system, an application server, and applications). This pre-configured template save time and avoids errors when configuring setting to create new instances

A

AMI

Amazon Machine Image

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Allows organizations to create and manage catalogs of IT services that are approved for use on AWS

A

AWS Service Catalog

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which statement best describes the operational excellence pillar of the AWS Well-Architected Framework?

  • -the ability of a system to recover gracefully from failure
  • -the ability to manage datacenter operations more efficiently
  • -the ability to monitor systems and improve supporting processes and procedures
  • -the efficient use of computing resources to meet requirements
A

–the ability to monitor systems and improve supporting processes and procedures

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is the AWS tool that enables you to use scripts to manage all AWS services and resources?

A

AWS CLI

Command Line Interface

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

A company has created a solution that helps AWS customers improve their architectures on AWS. Which AWS program may support this company?

  • -AWS Professional Services
  • -APN Technology Partners
  • -AWS TAM
  • -APN Consulting Partners
A

–APN Consulting Partners

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

what is AWS Config

A

it is a service that enables you to assess, audit, and evaluate the config of all your AWS resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Which AWS policy defines the prohibited uses of the AWS Cloud?

A

AWS Acceptable Use Policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

A company has an AWS Enterprise Support plan. They want quick and efficient guidance with their billing and account inquiries. Which of the following should the company use?

  • -AWS Operations Support
  • -AWS Personal Health Dashboard
  • -AWS Direct Connect
  • -AWS Support Concierge
A

–AWS Support Concierge

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

What is Cloud9

A

a cloud-based IDE that runs within your browser

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

The principle “design for failure and nothing will fail” is very important when designing your AWS Cloud architecture. Which of the following would help adhere to this principle? (Choose TWO)

Availability Zones
Elastic Load Balancing
Vertical Scaling
Multi-Factor Identification

A

Availability Zones

Elastic Load Balancing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

In you on-premises environment, you can create as many virtual servers as you need from a single template. What can you to perform the same in AWS?

  • -EBS Snapshot
  • -AMI
  • -IAM
  • -An internal gateway
A

AMI

Amazon Machine Image

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

Which AWS security feature is associated with an EC2 instance and functions to filter incoming traffic requests?

A

Security Groups

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

Which two of the following can help protect you EC2 instances from DDoS attacks

  • -CloudHSM
  • -AWS Batch
  • -Network Access Control Limits
  • -IAM
  • -Security Groups
A

–Network Access Control Limits

–Security Groups

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

Where can you store files in AWS?
Choose 2

  • -EMR
  • -ECS
  • -SNS
  • -EBS
  • -EFS
A

–EBS
Elastic Block Store
–EFS
Elastic File System

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

What are the amazon RDS features that can be used improve the availability of your database?
Choose 2

  • -Read Replicas
  • -Multi-AZ Deployment
  • -Edge Locations
  • -Automatic patching
  • -AWS Regions
A

–Read Replicas

–Multi-AZ Deployment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

How are AWS customers billed for Linux-based EC2 usage

A

instances are billed in 1 sec increments with a minimum of 1 minute

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

Which service can be described as a global content delivery network (CDN) service:

A

Amazon CloudFront

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

a compute service that allows you to run hundreds of thousands of batch computing jobs on AWS

A

AWS Batch

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
31
Q

What are the change management tools that helps AWS customers audit an dmonitor all resource change in their AWS environment?
Choose 2

  • -AWS CloudTrail
  • -Amazon Comprehend
  • -AWS Transit Gateway
  • -AWS Config
  • -AWS X-Ray
A

–AWS CloudTrail

–AWS Config

Config and CloudTrail are change management tools that help audit and monitor resource and config change

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
32
Q

What is AWS CloudHSM

A

it is a cloud-based hardware security module and enables you to easily generate and use your own encryption keys on the AWS Cloud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
33
Q

Which two statements are true

  • -The Amazon Simple Email Service is responsible for sending email notifications when usage approaches a service limit
  • -there are no service limits on AWS
  • -you can contact AWS support to increase the service limits
  • -each IAM user has the same service limits
  • -you can use the AWS Trusted Advisory to monitor your service limits
A

–you can contact AWS support to increase the service limits

–you can use the AWS Trusted Advisory to monitor your service limits

34
Q

Amazon Service that helps you analyze vast amounts of data by distrusting the computational work across across a cluster of virtual servers running in the AWS Cloud

A

AWS EMR

35
Q

Which of the following AWS services is designed with native Multi-AZ fault tolerance in mind?
Choose 2

  • -Snowball
  • -EBS
  • -DynnamoDB
  • -Redshift
  • -S3
A

–DynnamoDB

–S3

EBS volume data is replicated across multiple servers within the same availabity zone

36
Q

A company has developed an eCommerce web application in AWS. What should they do to ensure that the application has the highest level of availability?

A

Deploy the application across multiple Region and Availability Zones

37
Q

What does ElasticCache provide?

  • -an online software store that allows Customers to launch pre-configured software with just a few clicks
  • -domain name system in the cloud
  • -an Ehcache compatible in-memory data store
  • -in-memory chaching for read-heavy applications
A

–in-memory chaching for read-heavy applications

38
Q

Which of the following are examples of AWS-Managed Services, where AWS is responsible for the operational and maintenance burdens of running the service? (Choose TWO)

  • -Amazon Elastic MapReduce
  • -DynamoDB
  • -VPC
  • -IAM
  • -Elastic Compute Cloud
A
  • -Amazon Elastic MapReduce

- -DynamoDB

39
Q

A cost-effective solution for storing images or videos (compared to S3). A block level storage that can be used as a disk drive for EC2 or RDS instances.

A

Amazon EBS

40
Q
Which service is used to ensure that message between software components are not lost if one or more components fail?
\_\_Amazon SES
--Amazon Connect
--Amazon SQS
--AWS Direct Connect
A

Amazon SQS

Simple Queue Service

41
Q

What does Network ACLs do?

A

it is used to control traffic at the subnet level

42
Q

You want to run a questionnaire for only one day (without interruption), Amazon EC2 purchase option should you use?

A

On-Demand instances

43
Q

Which of the following does not belong to the AWS cloud computing models?

  • -PaaS
  • -NaaS
  • -IaaS
  • -SaaS
A

NaaS

Network as a Service

44
Q

Which statement is true regarding the AWS Shared Responsibility Model?

–Security of the IaaS services is the responsibility of AWS
–Patching the guest OS is always the responsibility of AWS
__Security of the managed services is the responsibility of the customer
–Responsibilities vary depending on the service used

A

–Responsibilities vary depending on the service used

45
Q

What is the AWS service that enables AWS architects to manage infrastructure as code?

  • -CloudFormation
  • -SES
  • -Config
  • -EMR
A

CloudFormation

46
Q

A company is deploying a new two-tier web application in AWS. Where should the most frequently accessed data be stored so that the application’s response time is optimal?

  • -AWS Storage Gateway
  • -AWS OpsWorks
  • -Amazon EBS volume
  • -Amazon ElasticCache
A

Amazon ElasticCache

47
Q

When can penetration testing be performed with EC2 instances

A

penetration testing can be performed by the customer on their own instance without prior authorization from AWS

48
Q

Which of the following AWS services is free to use?

  • -Route53
  • -CloudWatch
  • -AutoScaling
  • -EC2
A

AutoScaling

49
Q

According to the AWS Shared responsibility model, which of the following are the responsibility of the customer?
Choose 2

  • -protecting the confidentiality of data in transit in S3
  • -managing environmental events of AWS data centers
  • -controlling physical access to AWS regions
  • -ensuring that the underlying EC2 host is configured properly
  • -patching applications installed on EC2
A

–protecting the confidentiality of data in transit in S3

–patching applications installed on EC2

50
Q

What should you do in order to keep the data on EBS volumes safe?
Choose 2

  • -store a backup daily in an external drive
  • -create EBS snapshots
  • -prevent any unauthorized access to AWS data centers
  • -regularly update firmware on EBS devices
  • -ensure that EBS data is encrypted at rest
A

–create EBS snapshots

–ensure that EBS data is encrypted at rest

51
Q

Provides software solutions that are either hosted on, or integrated with, the AWS platform

A

APN Technology Partners

52
Q

What is the primary storage service used by Amazon RDS database instance?

A

Amazon EBS

53
Q

You have AWS Basic support, and you have discovered that some AWS resources are being used maliciously, and those resources could potentially compromise your data. What should you do?

A

Contact the AWS Abuse Team

54
Q

Under the Shared Responsibility Model, which of the following controls do customers fully inherit from AWS?
Choose 2

  • -environmental controls
  • -database controls
  • -awareness and training
  • -physical controls
  • -patch management controls
A

–environmental controls

–physical controls

55
Q

​ A company is introducing a new product to their customers, and is expecting a surge in traffic to their web application. As part of their Enterprise Support plan, which of the following provides the company with architectural and scaling guidance?

A

Infrastructure Event Management

56
Q

Which of the following procedures will help reduce your S3 cost?

  • -use the right combination of storage classes based on different use cases
  • use the import/export feature to move old files automatically to Amazon Glacier
  • -move all the data stored in S3 standard to EBS
  • -pick the right Availability Zone for your S3 bucket
A

–use the right combination of storage classes based on different use cases

57
Q

Shares a collection of offerings to help you achieve specific outcomes related to enterprise could adoption

A

AWS Professional Services

58
Q

Under the shared responsibility model, which of the following is the AWS’ responsibility

  • -server-side encryption
  • -client-side encryption
  • -configuring infrastructure services
  • -filtering traffic with Security Groups
A

–configuring infrastructure services

59
Q

A developer is planning to build a two-tier web application that has MySQL database layer. Which of the following AWS database services would provide automated backups for the applications?

  • -Aurora
  • DocumentDB
  • DynamoDB
  • a MySQL database installed on an EC2 instance
A

Aurora

60
Q

What is the AWS service that provides you the highest level of control over the underlying virtual infrastructure?

  • -RDS
  • -Redshift
  • -DynamoDB
  • -EC2
A

EC2

61
Q

What isAWS VPN

A

a virtual private network allows you to establish a secure and private tunnel from your network or device to the AWS global network

62
Q

Name 3 Amazon messaging services

A

MQ
SQS
SNS

63
Q

An EC2 instance purchasing options supports the Bring Your Own License model for almost every BYOL scenario?

A

Dedicated Hosts

64
Q

Which of two following will impact the price paid for an EC2 instance?

  • -the availability zone where the instance is provisioned
  • -number of private IPs
  • -Instance type
  • -Number of buckets
  • -Storage capacity
A

–Instance type

–Storage capacity

65
Q

A company is planning to host an educational website on AWS. Their video courses will be streamed all around the world. Which of the following AWS services will help achieve high transfer speeds?

A

CloudFronot

66
Q

A Japanese company hosts their applications on Amazon EC2 instances in the Tokyo Region. The company has opened new branches in the United States, and the US users are complaining of high latency. What can the company do to reduce latency for the users in the US while reducing costs?

A

deploying a new Amazon EC2 instances in a region located in the US

67
Q

Enables you to monitor and collect log file from your EC2 instances?

A

CloudWatch Logs

68
Q

A global company with a large number of AWS accounts is seeking a way in which they can centrally manage billing and security policies across all accounts. Which AWS Service will assist them in meeting these goals?

A

AWS Organizations

69
Q

What is the AWS service that enables you to manage all of your AWS accounts for a single mast account?

A

AWS Organizations

70
Q

What does AWS provide to deploy popular technologies - such as IBM MQ - on AWS with the least amount of effort and time?

A

AWS Quick Start reference deployments

71
Q

What does Amazon CloudFront use to distribute content to global users with low latency?

A

AWS Edge Locations

72
Q

Which service allows customers to manage their agreements with AWS?

A

AWS Artifact

73
Q

Professional services firms that help customers design, architect, build, migrate, and manage their workloads and applications on AWS

A

APN Consulting Partners

74
Q

A company has decided to migrate its Oracle database to AWS. Which AWS service can help achieve this without negatively impacting the functionality of the source database?

A

AWS Database Migration Service

75
Q

helps developers analyze and debug production, distributed applications, such as those built using a microservices architecture.

You can understand how your application and its underlying services are performing to identify and troubleshoot the root cause of performance issues and errors

A

AWS X-Ray

76
Q

What is the AWS feature that provides an additional level of security above the default authentication mechanism of usernames and passwords?

A

AWS MFA

Multi-Factor Authentication

77
Q

What is the AWS data warehouse service that supports a high level of query performance on large amounts of datasets?

  • -DynamoDB
  • -Kinesis
  • –RDS
  • -Redshift
A

Redshift

it is petabyte-scale data warehouse that allows for complex analytic querries

78
Q

Using Ec2 falls under which of the following cloud computing models?

  • -SaaS
  • -IaaS
  • -IaaS & SaaS
  • -PaaS
A

IaaS

79
Q

In order to implement best practices when dealing with a “Single Point of Failure,” you should attempt to build as much automation as possible in both detecting and reacting to failure. Which of the following AWS services would help? (Choose TWO)

  • -EC2
  • -ECR
  • -ELB
  • -Auto Scaling
  • -Athena
A
  • -ELB

- -Auto Scaling

80
Q

What is the advantage of the AWS-recommended practice of “decoupling” applications?

A

Reduces inter-dependencies so that failures do not impact other components of the application

81
Q

What are 2 AWS services/features that can help you maintain a highly available and fault-tolerant architecture in AWS?

  • -AWS Direct Connect
  • -ELB
  • -EC2 Auto Scaling
  • -network ACLs
  • -CloudFormation
A

–ELB

–EC2 Auto Scaling