Practice Test Questions Flashcards
Which cloud computing model offers fundamental building blocks that can be rented?
Infrastructure as a Service (IaaS)
IaaS offers building blocks that can be rented. EC2 is an example of IaaS.
Which cloud computing model if often used by developers to develop software using web-based tools?
Platform as a Service (PaaS)
What deployment model allows companies to migrate and extend their on-premises VMware vSphere-based environments to AWS Cloud using Amazon EC2?
Hybrid deployments connect infrastructure and applications between cloud-based resources and existing resources that are not located in the cloud.
VMware Cloud on AWS is an example of a hybrid deployment, since it involves the on-premises environments of VMware and the cloud-based services of AWS.
A telecommunications company wants to develop a business case for moving its IT applications and infrastructure to AWS. The company’s leadership understands the agility value of the cloud, but the finance group is not interested in shifting capital expense to operating expense due to the company’s tax structure. What business case would satisfy everyone at the company?
Suggest that the company make Reserved Instance purchases and capitalize them.
Many companies capitalize Reserved Instance purchases, especially those with 3-year terms.
A distinct location within a geographic area designed to provide high availability to a specific geography is called a ___________.
A Region is a distinct location within a geographic area designed to provide high availability to a specific geography. Regions are a key concept in AWS’ Global Infrastructure — each is made up of 1 or more isolated (within that Region) Availability Zones. There are often multiple AWS Regions on each continent, such as North America.
What is the most efficient way for a customer to continuously monitor CloudTrail event logs, Amazon VPC Flow Logs, and DNS logs looking for unauthorized behavior?
GuardDuty is an intelligent threat detection system that uncovers unauthorized behavior.
note: While a CloudWatch alarm can be created to monitor logs, like VPC Flow Logs, it is not the most efficient way.
Which security service provides enhanced protections and 24/7 access to AWS experts for a fee when issues arise?
AWS Shield Advanced
AWS Shield Advanced provides enhanced protections and 24/7 access to AWS experts for a fee.
In Identity and Access Management (IAM), which term applies to a person or application that uses the AWS account root user, an IAM user, or an IAM role to sign in and make requests to AWS?
Principal
A principal is a person or application that uses the AWS account root user, an IAM user, or an IAM role to sign in and make requests to AWS.
You have a read-heavy application workload resulting in I/O-intensive Amazon RDS database queries. Which service is most suitable to improve performance?
ElastiCache
You can use ElastiCache to store the results of often-used queries, and this will allow quicker retrieval of this data.
What allows you to access AWS services from popular programming languages like Java, Python, and C#?
Software development kits
Software development kits (or SDKs) provide everything you need to develop and manage applications in AWS, including the programming language of your choice.
What AWS services gives you a personalized view of the performance and availability of the AWS services underlying your AWS resources, alerting you and providing remediation guidance when AWS is experiencing events that may affect you?
AWS Personal Health Dashboard
AWS Personal Health Dashboard gives you a personalized view of the performance and availability of the AWS services underlying your AWS resources.
What can help recommend changes to your environment based on some AWS best practices?
Trusted Advisor
Which services can host a MariaDB database?
RDS
RDS supports several popular database engines: Amazon Aurora, PostgreSQL, MySQL, MariaDB, Oracle Database, and SQL Server.
EC2
For complete control of a database, you can install the database software directly on an EC2 instance.
What is a relational database compatible with MySQL and PostgreSQL that was created by AWS?
Aurora
A company would like to implement a hybrid storage model where they connect on-premises data storage to storage in the AWS Cloud in order to move their backups to the cloud. What is the best and most efficient way to achieve this?
Storage Gateway
Storage Gateway is a hybrid storage service that allows you to connect on-premises and cloud data.
note: While Direct Connect supports a hybrid model, it’s not the best and most efficient solution.
How does S3 Transfer Acceleration help you get your data into S3 quicker?
By using AWS’ network of edge locations to upload to a location closest to you before taking the most optimal path within AWS’ network
S3 Transfer Acceleration uses AWS’ network of edge locations to ingest data, and then uses the most optimal path within its own network to reach S3. Although compression and splitting data up before upload can also help speed things up, these are not offered by Transfer Acceleration. AWS does not let you send in data on your own disks, and although Snowball does let you send data in without going across the internet, it is only useful when working with massive amounts of data.
A company would like to automate the configuration of its servers and deploy code to servers in the cloud and on-premises. Which service meets the requirement?
OpsWorks
OpsWorks allows you to use Chef or Puppet to automate the configuration of your servers and deploy code on-premises or the cloud.
A healthcare agency needs to store certain patient information for up to 10 years. To save cost, they want to archive this data to cheaper storage. The data needs to be retrieved within 12 hours. Which is the cheapest option?
Glacier Deep Archive
Glacier Deep Archive meets the requirement and is the cheapest option.
You have a short-term computing task to complete. It is essential that this task run uninterrupted from start to finish. Which is the best EC2 option for this task?
On-Demand Instance
No commitment
No upfront costs
highly flexible
suitable for short term projects
In the AWS Global Infrastructure, which components are physically separated and connected through low-latency links, enabling fault tolerance and high availability?
Availability Zones
Availability Zones (AZs) are connected among themselves in a single Region. They are physically separated, connected through low-latency links, fault tolerant, and allow high availability.
What can you use to resolve the connection between your on-premises VPN and your AWS virtual private cloud?
An Amazon VPC Site-to-Site VPN connection can link your data center (or network) to your Amazon Virtual Private Cloud (VPC). A customer gateway is an anchor on your side of that connection. It can be a physical or software appliance. The anchor on the AWS side of the VPN connection is called a virtual private gateway.
Amazon Route 53 is a highly available and scalable cloud Domain Name System (DNS) web service. It is designed to give developers and businesses an extremely reliable and cost-effective way to route end users to Internet applications by translating names like www.tutorialsdojo.com into the numeric IP addresses like 192.0.2.1 that computers use to connect to each other.
This service can also help you create a hybrid cloud architecture using the Amazon Route 53 Resolver, which provides recursive DNS for your Amazon VPC and on-premises networks over AWS Direct Connect or a VPN solution.
Which service is the most suitable one to use to store the results of I/O-intensive SQL database queries to improve application performance?
Amazon ElastiCache offers fully managed Redis and Memcached. Seamlessly deploy, run, and scale popular open source compatible in-memory data stores. With this service, you can build data-intensive apps or improve the performance of your existing apps by retrieving data from high throughput and low latency in-memory data stores.
Which service is capable of inspecting your AWS environment and making recommendations to lower expenditures, improve system performance and reliability, and close security gaps?
AWS Trusted Advisor is an online tool that provides you real-time guidance to help you provision your resources following AWS best practices. It inspects your AWS environment and makes recommendations for saving money, improving system performance and reliability, or closing security gaps.
Whether establishing new workflows, developing applications, or as part of ongoing improvement, take advantage of the recommendations provided by Trusted Advisor on a regular basis to help keep your solutions provisioned optimally.
What Amazon EC2 instance purchasing option can help you address compliance requirements and reduce costs by allowing you to use your existing server-bound software licenses?
An Amazon EC2 Dedicated Host is a physical server with EC2 instance capacity fully dedicated to your use. Dedicated Hosts can help you address compliance requirements and reduce costs by allowing you to use your existing server-bound software licenses.
Dedicated Hosts allow you to use your existing per-socket, per-core, or per-VM software licenses, including Microsoft Windows Server, Microsoft SQL Server, SUSE Linux Enterprise Server, Red Hat Enterprise Linux, or other software licenses that are bound to VMs, sockets, or physical cores, subject to your license terms.
Which type of Elastic Load Balancer supports path-based routing, host-based routing, and bi-directional communication channels using WebSockets?
Application Load Balancer – This is best suited for load balancing of HTTP and HTTPS traffic and provides advanced request routing targeted at the delivery of modern application architectures, including microservices and containers. Operating at the individual request level (Layer 7), Application Load Balancer routes traffic to targets within Amazon Virtual Private Cloud (Amazon VPC) based on the content of the request.
________ describes the ability to scale computing resources out or in easily, while only paying for the resources used.
Elasticity
What service allows you to connect a private cloud to a public cloud?
Direct Connect
Direct Connect is a dedicated physical network connection from your on-premises data center to AWS.
A company on the Business Support plan currently runs all their applications in a single Region. They have made the decision to expand to multiple Regions. What is the process to start deploying their applications to the new Regions?
Just start deploying the applications to the new Regions.
You are free to deploy your applications to new Regions. Don’t forget: CloudFormation can make the process of provisioning resources easier and repeatable.
A system’s ability to grow to accommodate an increase in demands is an example of which cloud concept?
Scalability
Scalability is the concept that describes a measurement of a system’s ability to grow to accommodate an increase in demand. Successful, growing, systems often see an increase in demand over time. A system that is scalable can adapt to meet this new level of demand.
________ is AWS’ managed DDoS protection service
AWS Shield
AWS Shield is AWS’ managed DDoS protection service at Layer 4.
_________ refers to the Identity and Access Management (IAM) resource objects that AWS uses for authentication.
Entities
IAM entities are the users (IAM users and federated users) and roles that are created and used for authentication.
You are using your corporate directory to grant your users access to AWS services. What is this called?
Federated access
Federated access is when you use an external directory, such as your corporate one, to grant users in that directory access to AWS resources.
A company has a large number of S3 buckets and needs to manage and automate tasks on these buckets at one time. Which AWS feature can do this?
Resource groups
You can use resource groups to organize your AWS resources. Resource groups make it easier to manage and automate tasks on large numbers of resources at one time. This guide shows you how to create and manage AWS resource groups.
__________ compute services is ideal if you need to run a simple website or a simple e-commerce application.
Lightsail is ideal for simple websites or simple e-commerce applications.
You’ve been tasked with assessing your AWS infrastructure in terms of cost optimization. Which of the following AWS services would help with this task?
Trusted Advisor
AWS Trusted Advisor is an online tool that provides you with real-time guidance to help you provision your resources following AWS best practices.
Using Infrastructure as Code (IaC) is related to which cloud concept?
Automation
Infrastructure as Code is a key implementation of automation in cloud - using Infrastructure as Code allows you to quickly and easily deploy and manage your environment without reliance on humans to complete all the tasks.
The load on your application fluctuates by day of the week. Wednesdays have the most traffic, and Saturdays have the least traffic. Which AWS service allows you to ensure you have the correct amount of compute capacity while also optimizing on a cost basis?
Auto Scaling
Auto Scaling allows you to add or remove EC2 instances based on conditions you specify. Auto Scaling events can be scheduled to meet predictable changes in the load on your application.
A company has developed a popular online multiplayer gaming application. How can the company enhance its players’ online experience and improve overall application availability and reduce in-game latency?
Global Accelerator
Global Accelerator can improve the experience by routing player traffic along with the private AWS global network to the fastest instance of your application. Player traffic is not negatively impacted by internet congestion and local outages.
With which AWS service, coupled with EC2, can you implement elasticity by adding and removing instances as needed?
Auto Scaling
Auto Scaling monitors your applications and automatically adjusts capacity to maintain steady, predictable performance.
A customer provisioned an on-demand EC2 instance using a Linux AMI. The instance ran for 10 hours, 3 minutes, and 7 seconds before the user terminated it. How much time will the customer be billed for?
10 hours, 3 minutes, and 7 seconds
You are billed down to the second for an EC2 instance.
When you pay a subscription fee to a hosting company to serve your website on an instance you manage, which cloud computing model are you using?
Infrastructure as a Service (IaaS)
IaaS offers building blocks that can be rented. When you pay a web hosting fee, you’re using IaaS.
When you access tools provided to build a storefront application that runs on another company’s server, which cloud computing model are you using?
Platform as a Service (PaaS)
PaaS is often used by developers to develop software using web-based tools.