Other Advance Flashcards

1
Q

What is organization Root in aws organization?

A

A root is a top-level parent node in the hierarchy of an organization that can contain organizational units (OUs) and accounts. The root contains every AWS account in the organization.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is organization unit in aws organization?

A

An organizational unit (OU) is a logical grouping of accounts in your organization, created using AWS Organizations. OUs enable you to organize your accounts into a hierarchy and make it easier for you to apply management controls.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

In AWS organization can we have iam users in all member accounts?

A

it’s recommended to have only one aws account dedicated for uses and use role to access resources on other aws accounts.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is management account in aws organization?

A

AWS account which create the aws organization is called management account

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is Role switch in AWS Organization?

A

Role switch allow you to switch access between aws accounts with in aws organization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Do we need to create role manually to perform role switch in existing aws accounts?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Do we need to create role manually to perform role switch for new aws accounts?

A

No it will be created by aws

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is Resource Access Manager?

A

RAM share AWS resources between AWS Accounts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Can we share all aws services using RAM?

A

No only supported service can be shared using RAM

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

RAM is a free service?

A

Yea

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Does AWS rotate AZ names ?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

us-east-1a in my account is same as us-east1a in your account?

A

No AWS rotate AZ names…accounts will have different AZ location for same name

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

If AWS rotate AZ Names what gives you consistent AZ reference?

A

AZ ID is consistent across multiple aws accounts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

In RAM who share the resources?

A

Owner account

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

In RAM who has full ownership of resources?

A

Owner account

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

In AWS RAM what are principals?

A

Principals are the AWS accounts whom we can share the resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

If we share resources using RAM to a AWS account inside ORGANIZATION do we need to accept manually?

A

accepted automatically with in the organization.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

If we share resources using RAM to a AWS account outside ORGANIZATION do we need to accept manually?

A

Manual acceptance is required for non organization AWS accounts or sharing is disabled with AWS organization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Using RAM can we share VPC With other AWS accounts?

A

Yes

20
Q

If we Shared VPC using RAM can a VPC owner modify resources created by other aws accounts?

A

No

21
Q

Who is the owner of resources created in shared VPC using RAM?

A

Aws accounts which created the resources are the owner

22
Q

If we Shared VPC using RAM can a VPC owner access resources created by other aws accounts?

A

No

23
Q

In AWS RAM can you see what resources are shared with other AWS accounts?

A

No

24
Q

In RAM can participate account see resources available in other participants accounts?

A

No

25
Q

In RAM can RAM owner account see resources launched in participating accounts?

A

No

26
Q

Where does workspace store identity?

A

Directory service

27
Q

Which service in aws provide desktop as a service?

A

Amazon Workspace

28
Q

Amazon workspace is similar to ?

A

Citrix/Remote Desktop hosted in AWS

29
Q

Amazon workspace support which OS?

A

Windows & Linux

30
Q

Does AWS workspace support customer image for Remote Desktop?

A

Yes

31
Q

What are the pricing options available for Workspace?

A

Hourly & Monthly

32
Q

Do we have any other hidden cost for workspace?

A

Yes base infrastructure cost

33
Q

What is the requirement to implement workspace?

A

We need directory service like Simple AD or AD or AD connector for authentication and user management

34
Q

Where does Workspace networking operates?

A

Workspace use ENI in a VPC

35
Q

How does workspace connect to on premise infrastructure?

A

Workspace use VPN or Direct Connect to access on premise infrastructure

36
Q

Can windows workplace access FSx and EC2 windows resources?

A

Yes

37
Q

Where does workspace store data?

A

EBS

38
Q

How workspace encrypted data at rest?

A

KMS

39
Q

Where does workspace store user identities?

A

Directory service

40
Q

Is Work space is HA?

A

No

41
Q

Does AZ failure affect workspace?

A

Yes

42
Q

Workspace runs in which VPC?

A

AWS Managed VPC

43
Q

Customer connect aws workspace using?

A

Workspace client app

44
Q

Does workspace gets injected to customer managed VPC?

A

Yes

45
Q

How workspace connect with internet ?

A

It use NAT Gateway to connect internet

46
Q

What is authentication and streaming gateway in workspace?

A

It runs workspace in aws managed VPC and validate identity with Directory service and inject workspace to customers managed VPC and stream it to clients using workspace client app