S3 Flashcards

1
Q

Is S3 object or block based storage?

A

Object

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the S3 availability SLA

A

99.9

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the guarantee durability of S3

A

99.999999999%

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the S3 tiers?

A

S3S3 - IAS3 One Zone -IAGlacier

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What storage solution would you use for data archive?

A

Glacier

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the proper format for a s3bucket name?

A

Https://s3-region.amazonaws/bucketname

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the S3 object permissions?

A

OwnerAccountsPublic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

How to control access to buckets?

A

ACLbucket policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

You’ve enabled bucket cross-region replication. There are existing files there and you add some new files. When you check the destination, only the new files are present. Why?

A

Existing files on sources are not replicated after replication is enabled. Only new or changed files will be present at the destination

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

You manually copy over items from one bucket to another. Items at the source were publically available, but are not at the destination. Why?

A

The object is copied but not permissions.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

You’ve deleted an object in your source bucket. You observe this activity replicated to the destination bucket. You then go into versioning and delete the deletion marker. Will this change be replicated?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

True or false: You can replicate buckets in the same region

A

false

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

You delete an object in a bucket. Will that deletion marker in versioning be replicated?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

True or false. A new bucket is publically available and permissions are wide open.

A

false

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is an S3 lifecycle policy?

A

A mechanism to transition data to tiered storage.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is the max file min file size eligible for transition?

A

128Kb

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Do you need versioning enabled to use a lifecycle policy?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Can lifecycle policies capture versions also?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

You have just setup a lifecycle policy. You notice not all files were transitioned to the next tier. Why?

A

The files creation date must be older than 30 days and the file larger than 128KB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

What is cloudfront?

A

It is a CDN content delivery network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

What does a CDN do?

A

It stores and delivers data to users based on geographic location to ensure reduced latency

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

What is an edge location?

A

A location where content will be cached?

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

Does an edge location have to be in a defined region?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

What is an origin?

A

Data source, S3 bucket EC2 instance or ELB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

What is a distribution?

A

A collection of edge locations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

What are the types of distributions?

A

Web and RTMP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

Are edge location read only?

A

No, you can write and it will replicate to origin

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

What determines a time data will live in the edge location?

A

TTL

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

Can you clear data from edge cache?

A

Yes, but at a cost

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

How do you secure S3 buckets?

A

Bucket policies and S3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
31
Q

You want to ensure auditing of your buckets are enabled but are concerned the logs will take up to much space. Can the logs be redirected to another bucket?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
32
Q

What are the three types of server-side encryption at rest?

A

S3 managed keys - SS3-S3AWS Key mgmt - SSE-KMSserver-side encryption with customer-provided keys - SSE-CClient-side encryption

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
33
Q

What encryption does S3 manage keys - SS3-S3use?

A

AES256

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
34
Q

You need to ensure encryption is enabled on your S3 bucket. Governance has indicated its required to capture an audit trail of all encrypts and decrypts with the key. What type of encryption would you recomend

A

AWS Key mgmt - SSE-KMS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
35
Q

You need to ensure encryption is enabled on your S3 bucket. Governance has indicated its required to capture an audit trail of all encrypts and decrypts with the key. What type of encryption would you recommend

A

AWS Key mgmt - SSE-KMS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
36
Q

You need to ensure encryption is enabled on your S3 bucket. You want to use an existing key What type of encryption would you recommend

A

AWS Key mgmt - SSE-KMS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
37
Q

You need to ensure encryption is enabled on your S3 bucket. You want to manage the keys yourself. What type of encryption would you recommend

A

server side encryption with customer provided keys - SSE-C

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
38
Q

What is client side encryption?

A

Data is encrypted then uploaded to S3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
39
Q

What is AWS storage GW?

A

a software service connects on-prem storage to AWS cloud storage

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
40
Q

What are the five types of storage gateways?

A

File gateway (NFS)Volume gateway (iSCSI)-stored volumes-cached volumesVTL gateway (VTL)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
41
Q

What type of storage gateway would you use for file storage?

A

File gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
42
Q

What type of storage gateway would you use for installing an OS?

A

Volume gateway (iSCSI)

43
Q

What are the two types of volume gateways?

A

stored volumes and cached volumes

44
Q

You need to a storage gateway that will ensure all data that may be required is readily available. Which would you choose?

A

stored volumes

45
Q

You need a storage gateway but have limited disk space on-prem, but need to ensure any frequently requested data is readily available. Which storage gateway should you use?

A

cached volumes

46
Q

What is the ma size for cached volume gateway storage?

A

32 TB

47
Q

When would you use file gateway

A

flat files

48
Q

What would you use volume gateway for?

A

block based storage

49
Q

What is snowball?

A

AMS import export service

50
Q

What are the three types of snowballs?

A

snowballsnowball edgesnowmobile

51
Q

What are the characteristics of the snowball service?

A

Disk appliance80 TB max

52
Q

What are the security features of a snowball?

A

256 bit encrypt.TPM ensures security and chain of custody

53
Q

What are the characteristics of snowball edge

A

100 TBContains compute as well as storage

54
Q

What are the use cases for snowball edge

A

import/exporttemp storage or support workloads in remote sites

55
Q

What are the characteristics of snowmobile?

A

45 foot container100 PB storage

56
Q

What is S3 acceleration?

A

Leverages cloudfront edge locations to accelerate S3 uploads. Distinct URL

57
Q

Describe the S3 consistency model

A

Read after write consistency for PUTS of new objectsEventual consistency for overwrite PUTS and DELETES

58
Q

What are the core fundamentals of S3?

A

key (name)Value (data)version ID (metadata)MetadataSubresources - ACL and torrent

59
Q

What is s3 versoning?

A

stores all versions of an object ( including writes and deletes)

60
Q

You’ve enabled versioning. Can it be disabled?

A

No. only suspended

61
Q

What can versioning integrate with to provide enhanced data protection?

A

lifecycle rules

62
Q

You have an S3 bucket and want to provide an additional layer of protection from accidental deletion?

A

MFA delete

63
Q

True or False.Newly created buckets are private

A

True

64
Q

What type of in transit encryption does S3 use?

A

SSL/TLS

65
Q

What are the characteristics of the file gateway service?

A

VM deployed onsiteFiles stored as objects in S3 bucketsperms are stored in the S3 user-metadata of the objectObjects can be managed like any other S3 object

66
Q

What are the characteristics of the stored volume volume gateway service?

A

VM deployed onsiteOnprem virtual disk that backs up to AWSpresents an application with disk volumesISCSI block-based storageUses on-prem storagecan be synchronously backed up with snapshot and stored on EBS

67
Q

What is the max size of store volumes?

A

16 TB

68
Q

Which storage gateway service retains 100% of all data onsite?

A

Stored volume gateway

69
Q

What are the characteristics of cached volume gateway service?

A

caches frequently accessed data on-siteminimizes on-prem storageMax 32 TBiSCSIStored in S3

70
Q

What are the characteristics of tape gateway

A

leverage existing tape backuppreconfigured media changer and tape drives

71
Q

Can you install a DB in S3?

A

No. Its object based not block based

72
Q

What is the S3 bucket url format?

A

region.amazonaws.com/bucket name

73
Q

S3 min and max files size?

A

0-5TB

74
Q

What is the consistency of puts for S3

A

read after write consistency

75
Q

What is the consistency for overwrite of PUTS and deletes for S3?

A

Eventual consistency

76
Q

What serivce will provide an HTTP 200 status code and when?

A

S3 when uploading files

77
Q

What are the attributes of S3 versioning?

A

Stores all versionsgreat for backupsversioning cannot be disabled, only suspendedIntegrates with lifecycle rulesMFA delete provides and additional layer of security

78
Q

What is required to enable cross region replication?

A

versioning on both sidesunique regions

79
Q

When performing cross region replication are delete markers replicated?

A

yes

80
Q

When performing cross region replication are existing files in the bucket previous to configuration replicated?

A

no

81
Q

Will deleted individual version or delete markers be replicated?

A

No

82
Q

Are delete markers replicated

A

yes

83
Q

Can you configure multiple bucket replication?

A

no

84
Q

What are the two types of cloudfront distributions?

A

Web and RTMP

85
Q

What is RTMP used for

A

media streaming

86
Q

What type of locations cache content in cloudfront

A

Edge locations

87
Q

What are the key components of cloud front?

A

Edge locationsOriginDistributions

88
Q

S3 EC2 instances, ELB or R53 can all be what in relation to Cloudfront?

A

Origins

89
Q

What is a distribution made up of?

A

Edge locations

90
Q

Are Edge locations writable?

A

Yes

91
Q

What happens whe an item is written to an edge location?

A

It is sent to the origin

92
Q

Objects in the distribution are cahce for the life of what?

A

TTL

93
Q

Will you be charged to clear objects in a cloudfront distribution?

A

Yes

94
Q

By default all buckets are public?

A

No

95
Q

What can you use to secure buckets?

A

Bucket policies and ACLs

96
Q

What service utilizes the edge network to accelerate uploads to S3?

A

S3 transfer acceleration

97
Q

Can you have two buckets with the same name?

A

No. S3 is a universal namespace and names must be globally unique

98
Q

What does read after write consistency mean?

A

The file is available immediately after writing

99
Q

What S3 classes changes a retrieval fee?

A

S3 IA

100
Q

What S3 class is lowest cost and does not have redundancy?

A

S3 one zone - IA

101
Q

How is S3 date encrypted in transit?

A

SSL/TLS

102
Q

What snowball version has compute services?

A

Snowball edge

103
Q

What aws service would be best for a static website?

A

S3