IAM & Orgs Section Quiz Flashcards

1
Q

Is there a limit to the number of IAM users in an AWS account?

A

5,000 per account

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Which of the following are features of IAM groups?

A

Admin groupings of IAM users

Can hold identity permissions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Within AWS policies, what is always a priority?

A

Explicit deny

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What two policies are assigned to an IAM role?

A

Permissions policy

Trust policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Which of the following are true for IAM roles?

A

Roles can be assumed

When assumed - temporary credentials are generated

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What three features are provided by AWS orgs?

A

Consolidated billing

AWS account restrictions using SCP

Account organization via OU’s

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What functionality is provided by CloudTrail?

A

Account wide Auditing and API logging

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Is it possible to restrict what the account root user can do?

A

If AWS orgs are used … but not the management account

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is role switching?

A

Assuming a role in another AWS account to access that account via the console UI

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are valid IAM policy types?

A

AWS managed policy

Customer managed policy

Inline policies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly