S3 Flashcards

1
Q

S3 Soft bucket limit on accounts?

A

100

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

S3 Standard Reliability level?

A

Nine nines!

99.999999999%

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Is s3 a file system?

A

NO!

It’s a flat address space. And although you can create folders, it is not a file system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

S3 File size limit

A

5TB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

S3 Storage limit?

A

Unlimited

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Best s3 storage class for high frequency access?

A

Standard

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What does S3-I do that’s so special?

A

Automatically move less commonly used files to a cheaper storage class

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

S3 Glacier is best for storing

A

Archived data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

How to move items in and out of glacier?

A

SDK or CLI

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Quickest retrieve possible from glacier?

A

5 minutes - it’s also the most expensive

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Standard retrieval from glacier takes

A

3-5 hours

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Bulk retrieval from glacier takes

A

5-12 hours

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Glacier Deep Archive is best used for…

A

Files you need to retain, but will rarely ever look at.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Time it takes to get something from Glacier deep storage?

A

Up to 12 hours

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Negative effect of s3 versioning?

A

It can dramatically increase prices

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

When you delete a version item from s3, what happens?

A

A delete marker is added to the file, and the most recent version is deleted.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Can versioning of a s3 bucket be disabled?

A

No, only suspended.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Can a private s3 bucket be used for static website hosting?

A

No. It must be public apt available

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

If you switch encryption on, on an existing s3 bucket. Does it encrypt the items already in the bucket?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Advantage of encrypting s3 buckets with SSE-KMS

A

Better flexibility and management of the keys.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Advantage of SSE-S3 encryption

A

AWS handles all of it for you

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

What does s3 object lock do?

A

Prevents files being deleted

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

S3 Object Lock; governance mode. What does it do?

A

Prevents files being deleted for specified retention period.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

S3 Object Lock Compliance Mode. What does it do?

A

Prevents files being deleted by anyone. Not even root!

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

If an item has an s3 object has “legal hold” on it. Can it be deleted at the end of it’s retention period.

A

Nope!

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

Purpose of tags in s3?

A

They help with billing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

Transfer accelerator in s3 uses what AWS service to accelerate transfer speeds?

A

Cloud front

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

What do S3 events allow you to do?

A

Dispatch events to other AWS services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

With request or payed enabled. What does the s3 bucket owner have to pay for?

A

The storage

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

Can you have unauthenticated access to a requester pays s3 bucket?

A

Nope. As AWS won’t know who to charge.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
31
Q

True or false. To use object lock on an s3 bucket, versioning must be enabled?

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
32
Q

Can object lock be set on an existing s3 bucket?

A

Nope. Only on creation.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
33
Q

S3. Can you disable object lock on a bucket?

A

Nope.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
34
Q

True or false. S3 log bucket must be in the same region as the s3 bucket being logged.

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
35
Q

True or false. S3 log bucket must be in the same region as the s3 bucket being logged.

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
36
Q

In s3 logs. If certain information is not available. What character is shown in the data’s place?

A

-

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
37
Q

S3 object level logging uses what AWS service.

A

Cloud trail

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
38
Q

What s3 policies should you use for maximum security?

A

Of many of them as you can

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
39
Q

What does ACL stand for?

A

Access control list

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
40
Q

S3 multipart upload is recommended for all files over what size?

A

100mb

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
41
Q

Describe what s3 multipart upload does

A

Splits files into multiple parts, uploads them, and automatically reassembles them.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
42
Q

Advantages to s3 multipart upload?

A

Faster (as multiple files can be uploaded at once)
Protects from interruptions
Allows for upload management.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
43
Q

Does s3 copy to multiple regions by default?

A

No. Only multiple availability zones by default

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
44
Q

S3 Glacier, Expedited retrieval. What’s the file size limit?

A

250mb

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
45
Q

Glacier max archive size?

A

40tb

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
46
Q

Durability of S3 standard and Infrequent access storage classes.

A

99.999999999%

11 nines.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
47
Q

S3 standard, what’s the availability in percentage?

A

99.99%

Four nines

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
48
Q

S3 infrequent access availability in percent.

A

99.9%

Three nines.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
49
Q

Snowball device HD size?

A

50TB/80TB Dependant on Region

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
50
Q

True or false, all data transferred onto a snowball is auto encrypted?

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
51
Q

Snowball device onboard connection types

A

Rj45
SFP Copper
SFP Optical

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
52
Q

What standards do AWS conform too, to wipe data from snowballs after you have used them?

A

NIST

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
53
Q

Is snowball HIPAA compliant

A

Yes.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
54
Q

Can Snowball be used to retrieve data from AWS as well as deposit it?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
55
Q

If data retrieval from s3 over network will take longer than “x” use snowball

A

1 week

56
Q

Security features of a snowball device?

A

Dust and water resistant.

Tamper proof

It’s shipping crate can absorb substantial shock.

57
Q

Can snowballs be aggregated together for larger transfers?

A

Yes.

58
Q

AWS Storage Gateway. What is it?

A

Software, to act as a gateway between your onsite storage and S3.

59
Q

Storage gateway software comes packaged as?

A

A VM.

60
Q

What does VTL stand for?

A

Virtual tape library

61
Q

VTL Tape limit?

A

1500

62
Q

AWS Storage Gateway: File Option, explain

A

Allows you to store items as individual s3 objects.

63
Q

AWS Storage Gateway: Volumes, Explain.

A

Backup volumes.

64
Q

AWS Storage Gateway, Volumes.

It keeps all your data locally and asycronously copies it to s3.

True or false?

A

True.

65
Q

AWS Storage Gateway, Volumes.

Volume limit per gateway.

A

32 volumes.

66
Q

S3 request costs are priced per

A

1000

67
Q

True or false. S3 delete requests are free.

A

True.

68
Q

What do s3 batch operations allow for?

A

Batch operations on many buckets and objects at once.

69
Q

How are s3 batch operations priced?

A

Per batch job.

Per million operations performed.

70
Q

S3 charges for.

A

All requests (apart from delete)
Data transfer out
Storage

71
Q

Data transfer in s3 is free of charge. When.

A

Data is being transferred in.
Items are transferred to EC2 instances
Items are transferred to cloud flair.

72
Q

What is s3 glacier select?

A

A service for scanning and retrieving smaller parts of your glacier vaults.

73
Q

True or false. The actual replication process in s3 carries no cost. But the extra storage does.

A

True.

74
Q

All s3 storage classes are priced per

A

GB

75
Q

Multi region s3 buckets. Provide eventual consistency on deletes. True or false?

A

True

76
Q

In s3 what does read after write functionality allow you to do?

A

Immediately download the file you just uploaded.

77
Q

What does s3 file gateway do?

A

Allows you to store and access objects in s3 using using NFS and SMB file protocols.

78
Q

True or false. A successful response to a put request, is only triggered after the file has finished uploading?

A

True

79
Q

In S3. If you immediately update an object with a new version, then immediately try to access it. What might happen?

A

You may download the older version.

80
Q

True or false. S3 provides eventual consistency for overwrote PUTs and Deletes

A

True

81
Q

In a single pit request. What is maximum file size?

A

5gb

82
Q

True or false. VPC flow logs allow you to log s3 access info?

A

False

83
Q

Your two options for logging s3 access requests are.

A

S3 server logging

Cloudtrail

84
Q

Minimum and maximum file storage sizes in s3

A

0 bytes. 5 TB.

85
Q

In a version enabled bucket. What does deleting an object do?

A

Add the delete marker to the object.

86
Q

You wish to notify a group of users that an s3 file has finished uploading. How might you do this?

A

Use s3 event notifications.

These could write to SNS or a Lambda function which emailed relevant people.

87
Q

Cross region replication. Requires versioning to be switched on. On what buckets?

A

Destination and source.

88
Q

Can you create an s3 bucket, within an s3 bucket?

A

No

89
Q

What is the difference between an object and a file in s3?

A

Metadata.

90
Q

When creating a file in s3. Does the object owner have full control of it?

A

Yes

91
Q

What s3 storage options incur costs on data retrieval?

A

Glacier

Standard Infrequent Access

92
Q

Can you store objects smaller than 128kb in S3 standard IA storage class?

A

Yes. But it’s billed as if it were 128kb.

93
Q

How much data can you retrieve from glacier storage, for free, every month.

A

10gb

94
Q

To download an object from a request or pause object, you must include something in your request.

A

amz-request-payer

95
Q

True or false. Standard Infrequent Access Storage has a minimum 30 day stroage duration?

A

True

96
Q

Can a user upload more than 1000 parts as part of a multipart upload?

A

Yes. But it requires additional requests.

Each request contains a maximum of 1000 parts.

97
Q

Can an object be uploaded to s3 via multipart upload if it is less than 5mb?

A

Only if it’s the last part.

98
Q

When uploading an object to the s3 console, can you set logging?

A

Nope

99
Q

Can s3 uploads resume of failure?

A

Yes

100
Q

When a user initiated a multipart upload. How does s3 track all the parts?

A

She returns a response with an upload ID for each initiation

101
Q

Is it required to send both the access key and the secret access key in the REST request to amazon s3?

A

Yes

102
Q

When accessing an s3 bucket by rest. What must be included in the request?

A

AWS access key is
Signature
Timestamp
Date

103
Q

In amazon s3 bucket policies. What do you use to grant cross account access?

A

Canonical user ids.

104
Q

Data in transit to s3 can be secured using?

A

SSL

105
Q

Is life cycle configuration possible on s3 buckets with MFA

A

Nope

106
Q

Regardless of if versioning is enabled or not. All objects in an s3 bucket have a version ID. Yes or no?

A

Yes

107
Q

A user has set an expiration rule for objects on an s3 bucket. Can there be a delay between an objects deleted day and the expiration rule date?

A

Yes. It’s added to a queue and happens eventually.

108
Q

S3 bucket versioning. What are the three possible states?

A

Versioning enables
Unversioned
Versioning suspended

109
Q

You have an unversioned bucket with objects in it. You switch on versioning.

What will the version ID be for existing objects?

A

Null

110
Q

A user has created objects using s3. The objects are moved to glacier at five days, and at 10 days are deleted.

On day 7, the user decides to temp restore the files for five days. What happens on day 10?

A

Everything is deleted. Including the temp restored files.

111
Q

How does s3 ensure high availability and durability?

A

When you upload, behind the scene, s3 copies the file to multiple psychical locations.

112
Q

You enable cross region replication on an existing s3 bucket. Are the existing objects replicated to another region?

A

No. Only new objects.

113
Q

To request the retrieval of an item from glacier. You must create a…

A

Job

114
Q

You send items to glacier in one of two ways.

A

API

Life cycle policies

115
Q

What’s more durable. EBS or s3?

A

S3

116
Q

For traffic encryption between onsite infrastructure and s3 use what service?

A

Amazon Managed VPN

117
Q

Does S3 have a rest API?

A

Yes

118
Q

What’s the difference between compliance mode and governance mode?

A

Compliance mode prevents objects being updated or deleted.

Governance mode prevents deletion.

119
Q

Are legal holds configured at bucket level or object level?

A

Object level

120
Q

Can you configure object lock settings via batch operations?

A

No

121
Q

At what level can you apply ACLs to S3

A

Object and bucket

122
Q

When providing your own encryption key for s3. Is it possible to have different encryption keys for different versions of the same object?

A

Yes

123
Q

You back up your database to EBS. If doing so, amazon also recommends you back the database to …

A

S3

124
Q

Can s3 automatically rotate a user provided encryption key?

A

No it mist be done manually be the client

125
Q

You want to save money on multi part uploads. How to do this?

A

Create a life cycle policy to automatically delete failed multipart uploads

126
Q

You should use multipart uploads if a file is bigger than

A

100mb

127
Q

You don’t know the size of a file that’s being uploaded to s3. Should you use multipart upload?

A

Yes

128
Q

Offload All Assets to S3. Is this a key concept of high performance architecture

A

You bet your sorry ass it is!

129
Q

S3 objects are immutable. What does this mean?

A

The only way to change a single byte, is to replace the whole object.

130
Q

Does an s3 legal hold have a retention period?

A

No it’s indefinite. Until it is removed.

131
Q

Describe an s3 legal hold

A

Prevents an object being overwritten or deleted, for as long as the lock is on the object.

132
Q

You need to audit the encryption status, and the replication details of objects in an s3 bucket. How to do this?

A

S3 Inventory

133
Q

How can you query S3 inventory?

A

Athena

134
Q

What does s3 inventory do?

A

Allow you to export inventory reports of all items in a bucket.

135
Q

Does s3 allow you to upload an already encrypted object?

A

Yes

136
Q

To reduce latency to s3 users in different geographical locations use…

A

CRR - across Region Replication

137
Q

You need to transfer large amounts of content to s3. You can’t use snowball and you don’t have a dedicated connection. What could you use?

A

S3 and transfer acceleration.