MUST KNOW Questions Flashcards

passing SA FIRST TIME UP!

1
Q

_____ CAN BE USED TO STORE THE PENDING DATABASE WRITES, AND THESE WRITES CAN THEN BE ADDED TO THE DATABASE

A

SQS FIFO

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

___ALLOWS YOU TO SCALE YOUR APP IN RESPONSE TO PREDICTABLE LOAD CHANGES

A

SCHEDULE SCALING

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

____USED FOR APPLICATIONS THAT REQUIRE HIGH I INPUT/OUTPUTS OPEREATIONS PER SEC AND IS MAINLY USED FOR RDS

A

EBS PROVISIONED IOPS SSD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

____SUPPORTS THE DEPLOYMENT OF WEB APPLICATIONS FROM DOCKER CONTAINERS

A

ELASTIC BEANSTALK

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

____INSTANCES ARE NORMALLY USED IN BATCH PROCESSING JOBS

A

SPOT INSTANCES

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

____HELPS IN HORIZONTAL SCALING OF AWS RESOURCES

A

SQS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

_____ROUTING LETS YOU CHOOSE THE RESOURCES THAT SERVE YOUR TRAFFIC BASED ON THE GEOGRAPHIC LOCATION OF YOUR USERS

A

GEOLOCATION ROUTING

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

_____ESTABLISHES COMMUNICATION ACROSS BOTH ENVIRONMENTS OVER THE INTERNET

A

VIRTUAL PRIVATE CONNECTION

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

_____SERVERLESS COMPONENT FOR MANAGING ACCESS TO APIs

A

API GATEWAY

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

____CAN BE USED TO MANAGE CONTAINERS

A

ECS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

PROVIDE CONTENT ACCESS TO CERTAIN USERS WHO PAID A FEE

A

CLOUDFRONT SIGNED URLS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

STORING S3 BUCKETS IN A DIFFERENT GEO LOCATION IS KNOWN AS

A

CROSS-REGION REPLICATION

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

S3 __________ TO HIGH REQUEST RATES

A

AUTOMATICALLY SCALES

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

USED TO DECOUPLE SYSTEMS, CAN STORE REQUESTS TO PROCESS VIDEOS TO BE PICKED UP BY THE WORKER PROCESSES

A

AMAZON SQS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

______ VOLUMES PROVIDE LOW-COST MAGNETIC STORAGE THAT DEFINES PERFORMANCES IN TERMS OF THROUGHPUT

A

COLD HDD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

____ENABLES CUSTOMERS TO IMPORT VIRUTAL MACHINE IMAGES IN ORDER TO CREATE AMAZON EC2 INSTANCES

A

VM IMPORT/EXPORT

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

______DATABASES ARE BETTER FOR PRODUCTION ENVIRONMENTS RATHER THAN DEVELOPMENT ENVIRONMENTS

A

MULTI-AZ DATABASES

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

{TERM LINK} HIGH AVAILABILITY

A

REPLICATE INTO ANOTHER AVAILABILITY ZONE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

____MONITORS THE HEALTH AND PERFORMANCE OF YOUR WEB APPLICATION, WEB SERVERS AND OTHER RESOURCES.

A

ROUTE 53 HEALTH CHECKS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

HEALTH CHECK MONITORS:

A
  • HEALTH OF SPECIFIED RESOURCE
  • STATUS OF OTHER HEALTH CHECKS
  • STATUS OF AN AMAZON CLOUDWATCH ALARM
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

PREREQUISITE FOR INSTANCES TO BE ACCESSED FROM THE INTERNET

A

INTERNET GATEWAY MUST BE ATTACHED TO THE VPC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

BOTH ______ AND ______ ARE COMPLETE SERVERLESS OFFERINGS FROM AWS WHICH YOU DONT NEED TO MAINTAIN SERVERS AND APPLICATIONS HAVE AUTOMATED HIGH AVAILABILITY

A

S3 AND DYNAMODB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

____data encryption at rest—that is, Amazon S3 encrypts your data at the object level as it writes it to disks in its data centers and decrypts it for you when you access it.

A

SERVER SIDE ENCRYPTION

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

SERVER SIDE ENCRYPTION THAT PROVIDES YOU WITH AN AUDIT TRAIL OF KEYS USED AND BY WHOM

A

SSE-KMS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

YOU, THE CUSTOMER, MANAGE THE ENCRYPTION KEYS

A

SSE-C

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

THE KEY IS ENCRYPTED WITH A MASTER KEY THAT IS REGULARLY ROTATED, USES 256-BIT AES TO ENCRYPT DATA

A

SSE-S3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

BY DEFAULT_______ OF AN EC2 INSTANCE IS RELEASED AFTER THE INSTANCE IS STOPPED AND STARTED

A

PUBLIC IP ADDRESS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

_______ IS A PERFECT STORAGE SOLUTION FOR AUDIO AND TEXT FILES

A

AMAZON S3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

WHAT AWS FEATURE ALLOWS YOU TO MODEL YOUR APPLICATION AS A STACK

A

AWS OPSWORKS

30
Q

____ PROVIDE ENHANCED PERFORMANCE AND DURABILITY FOR DATABASE INSTANCES

A

AWS RDS READ REPLICA

31
Q

WHICH SSD WORKS WITH DATABASES SUCH AS MONGODB, CASSANDRA, MYSQL, MICROSOFTSQLSERVER, MYSQL

A

PROVISIONED IOPS SSD

32
Q

ARE READ REPLICAS REPLICATED “ASYNCHRONOUSLY” OR “SYNCHRONOUSLY”?

A

ASYNCHRONOUSLY

33
Q

READ REPLICAS HAVE TWO CAVEATS

A

SUBJECT TO REPLICATION LAG AND MIGHT BE MISSING SOME OF THE LATEST TRANSACTIONS

34
Q

____WEB SERVICE THAT MAKES IT EASY TO SET UP MANAGE AND SCALE A DISTRIBUTED IN-MEMORY DATA STORE OR CACHE ENVIRONMENT IN THE CLOUD

A

ELASTIC CACHE

35
Q

S3 FOLLOW AN ___ ____ MODEL. HENCE, FOR OBJECT UPDATES MADE TO THE SAME KEY, THERE CAN BE A SLIGHT DELAY WHEN THE UPDATED OBJECT IS PROVIDED BACK TO THE USER

A

EVENTUAL CONSISTENCY MODEL

36
Q

_____ USES MULTI-FACTOR AUTHENTICATION, CAN BE USED TO PROVIDE AN ADDITIONAL LAYER OF SECURITY.

A

MFA DELETE CAPABILITY

37
Q

MANUAL SNAPSHOTS ACCRUE STORAGE CHARGES, SO YOU SHOULD DELETE THEM IF….

A

YOU NO LONGER NEED THEM

38
Q

SNAPSHOTS ARE DEFINED AS

A

INCREMENTAL BACKUPS

39
Q

______IS A DROP-IN REPLACEMENT FOR MYSQL AND POSTGRESQL

A

AURORA

40
Q

APPS > ______ > INTERNET, AWS, VPCs

A

API GATEWAY

41
Q

USED TO ROUTE TRAFFIC TO MULTIPLE RESOURCES IN PROPORTIONS THAT YOU SPECIFY

A

WEIGHTED ROUTING POLICY

42
Q

USE WHEN YOU WANT TO ROUTE TRAFFIC BASED ON THE LOCATION OF YOUR USERS

A

GEOLOCATION

43
Q

USE WHEN YOU WANT TO CONFIGURE ACTIVE-PASSIVE FAIL OVER

A

FAIL OVER ROUTING POLICY

44
Q

IS USED TO CREATE AND PROVIDE TRUSTED USERS WITH TEMPORARY SECURITY CREDENTIALS THAT CAN CONTROL ACCESS TO YOUR AWS RESOURCES

A

AWS STS

45
Q

SSD USED FOR MISSION CRITICAL LOW LATENCY OR HIGH THROUGHPUT WORKLOADS?

A

PROVISONED IOPS SSD

46
Q

ALL OBJECTS BY DEFAULT ARE PUBLIC OR PRIVATE?

A

PRIVATE

47
Q

THREE WAYS AN OBJECT OWNER CAN SHARE OBJECTS

A
  • CREATING A PRE-SIGNED URL
  • USING SECURITY CREDENTIALS
  • GRANT TIME-LIMITED PERMISSION TO DOWNLOAD OBJECTS
48
Q

YOU CAN LAUNCH UP TO HOW MANY NUMBER OF SECURITY GROUPS TO AN INSTANCE?

A

5

49
Q

COMPUTE SERVICE THAT RUNS BACKEND CODE

A

AWS LAMBDA

50
Q

AWS LAMBDA RUNS BACKEND CODE TO RESPOND TO EVENTS SUCH AS:

A
  • OBJECT UPLOADS TO AMAZON S3
  • UPDATES TO DYNAMO DB TABLES
  • DATA IN KINESES STREAMS
  • IN-APP ACTIVITY
51
Q

AWS LAMBDA PROVIDES REAL TIME METRICS AND LOG TO….

A

AMAZON CLOUDWATCH

52
Q

THIS STORAGE CLASS IS USED FOR LONG-TERM STORAGE, BACKUPS, AND AS A DATA STORE FOR DISASTER RECOVERY FILES. ALSO, USED FOR DATA THAT IS ACCESSED LESS FREQUENTLY

A

S3 INFREQUENT ACCESS

53
Q

MANAGED SERVICE THAT MAKES IT EASY FOR YOU TO RUN KUBERNETES ON AWS WITHOUT NEEDING TO INSTALL AND OPERATE YOUR OWN KUBERNETES CLUSTERS

A

AWS EKS (ELASTIC CONTAINER SERVICE FOR KUBERNETES)

54
Q

BY DEFAULT EBS VOLUMES ARE REPLICATED WITHIN THEIR

A

AZ

55
Q

____IS A FEATURE THAT ENABLES YOU TO CAPTURE INFORMATION ABOUT THE IP TRAFFIC GOING TO AND FROM NETWORK INTERFACES IN YOUR VPC

A

VPC FLOW LOGS

56
Q

TO ENABLE ACCESS TO CLUSTERS FROM SQL CLIENT TOOLS YOU MODIFY

A

VPC SECURITY GROUPS

57
Q

____ _____ ENABLES INSTANCES IN A PRIVAET SUBNET TO CONNECT TO THE INTERNET OR OTHER AWS SERVICES, BUT IT PREVENTS THE INTERNET FROM INITIATING CONNECTIONS WITH THOSE INSTANCES

A

NAT GATEWAY

58
Q

YOU CAN ONLY USE _______ TO CONTROL THE TRAFFIC TO AND FROM THE SUBNET IN WHICH THE NAT GATEWAY IS LOCATED

A

NACL

59
Q

WHAT ARE THE SOURCE PORTS FOR NAT GATEWAY

A

PORTS 1024 - 65535

60
Q

___ ___ ENABLES YOU TO PRIVATELY CONNECT YOUR VPC TO SUPPORTED AWS SERVICES.

A

VPC ENDPOINT

61
Q

USING THIS FEATURE, TRAFFIC BETWEEN YOUR VP AND OTHER SERVICES DOES NOT LEAVE THE AMAZON NETWORK

A

VPC ENDPOINT

62
Q

_____ ARE DESIGNED IN SUCH A WAY SO THAT YOUR APPLICATIONS CAN SECURELY MAKE API REQUESTS FROM YOUR INSTANCES

A

IAM ROLES

63
Q

CLOUD FORMATION MAPPING:

A

MAPS KEY VALUE PAIRS

64
Q

CLOUDBASED HARDWARE SECURITY MODULE USED FOR ENCRYPTION OF DATA AT REST ON EBS VOLUMES

A

HSM MODULE

65
Q

NOSQL DB, FULLY MANAGED BY AWS, SCALES BASED ON DEMAND

A

DYNAMODB

66
Q

MYSQL DATABASE

A

AURORA

67
Q

IF YOU DISABLE AUTOMATED BACKUPS FOR RDS YOU ARE DISABLING

A

POINT-IN-TIME RECOVERY

68
Q

INFRASTRUCTURE AS CODE

A

CLOUDFORMATION

69
Q

RECOMMENDED FOR APPLICATIONS THAT BENEFIT FROM LOW NETWORK LATENCY, HIGH NETWORK THROUGHPUT AND IF MAJORITY OF TRAFFIC IS BETWEEN THE INSTANCES IN THE GROUP

A

CLUSTER PLACEMENT GROUPS

70
Q

THE______ FEATURE MAKES IT EASY TO ELASTICALLY SCALE OUT BEYOND THE CAPACITY CONSTRAINTS OF A SINGLE DB INSTANCE FOR READ-HEAVY DATABASE WORKLOADS, CREATE A _______ TO INCREASE AGGREGATE READ THROUGHPUT

A

READ REPLICA