Services Flashcards

1
Q

How are Linux EC2 instances billed?

A

billed per second.
1 minute minimum

https://aws.amazon.com/blogs/aws/new-per-second-billing-for-ec2-instances-and-ebs-volumes/

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is Amazon Macie?

A

a fully managed data security and data privacy service that uses machine learning and pattern matching to discover and protect your sensitive data in AWS.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is AWS Glue?

A

AWS Glue is a fully managed extract, transform, and load (ETL) service that makes it easy for customers to prepare and load their data for analytics. AWS Glue job is meant to be used for batch ETL data processing.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is Amazon Polly?

A

Amazon Polly is a service that turns text into lifelike speech

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is AWS Secrets Manager?

A

AWS Secrets Manager helps you protect secrets needed to access your applications, services, and IT resources. The service enables you to easily rotate, manage, and retrieve database credentials, API keys, and other secrets throughout their lifecycle.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the AWS Marketplace?

A

AWS Marketplace is a digital catalog with thousands of software listings from independent software vendors that make it easy to find, test, buy, and deploy software that runs on AWS. The AWS Marketplace enables qualified partners to market and sell their software to AWS Customers.

AWS Marketplace offers two ways for sellers to deliver software to customers: Amazon Machine Image (AMI) and Software as a Service (SaaS).

https://aws.amazon.com/partners/aws-marketplace/

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

AWS CloudFormation

A

…provides a common language to model and provision AWS and third-party application resources in your cloud environment.

…allows you to use programming languages or a simple text file to model and provision, in an automated and secure manner, all the resources needed for your applications across all Regions and accounts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

AWS Database Migration Service

A

AWS DMS helps users migrate databases to AWS quickly and securely. The source database remains
fully operational during the migration, minimizing downtime to applications that rely on the database. AWS DMS can migrate data to and from most widely used commercial and open-source databases.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Amazon VPC

A

Amazon Virtual Private Cloud lets users provision a logically isolated section of the AWS Cloud where users can launch AWS resources in a virtual network that they define.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Amazon CloudFront

A

To deliver content to users with lower latency, Amazon CloudFront uses a global network of points of
presence (edge locations and regional edge caches) worldwide

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

AWS CloudTrail

A

AWS CloudTrail helps users enable governance, compliance, and operational and risk auditing of their
AWS accounts. Actions taken by a user, role, or an AWS service are recorded as events in CloudTrail. Events include actions taken in the AWS Management Console, AWS Command Line Interface (CLI), and AWS SDKs and APIs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

AWS OpsWorks

A

AWS OpsWorks is a configuration management service that provides managed instances of Chef and Puppet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

AWS CodeDeploy

A

AWS CodeDeploy is a service that automates code deployments to any instance, including EC2 instances and instances running on premises

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

AWS Trusted Advisor

A

AWS Trusted Advisor is an online tool that provides you real-time guidance to help you provision your resources following AWS best practices on cost optimization, security, fault tolerance, service limits, and performance improvement.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Storage Classes

A
S3 Standards
S3 Intelligent-Tiering
S3 Standard-IA
S3 One Zone-IA
S3 Glacier
S3 Glacier Deep Archive
S3 Outposts
https://aws.amazon.com/s3/storage-classes/
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

AWS Budgets

A

AWS Budgets gives the ability to set custom budgets that alert you when your costs or usage exceed (or are forecasted to exceed) your budgeted amount. You can also use AWS Budgets to set reservation utilization or coverage targets and receive alerts when your utilization drops below the threshold you define.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

List AWS Support Plans

A

Developer
Business
Enterprise

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

What is available with the Developer Support Plan

A
  • Trusted Advisor 7 core checks
  • email Tech support during business hours
  • response < 24 hrs or <12 hrs for system impaired
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

What is available with the Business Support Plan

A

Developer support plan plus,
+ Trusted Advisor full set of checks
+ email, phone, & chat 24x7 support
+ response general < 24hr, system impaired < 12 hrs, production system impaired < 4 hrs, production down < 1 hr

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

What is available with Enterprise Support Plan

A
Business support plan plus,
\+ response Business-critical system down < 15 min
\+ Technical Account Manager
\+ online self-paced labs
\+ Concierge Support team
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Vertical Scaling

A

Vertical Scaling is adding more resources (like CPU, RAM) to a single node or machine. Example- Resizing an instance of EC2.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

Horizontal Scaling

A

A “horizontally scalable” system is one that can increase capacity by adding more computers to the system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

Cost Explorer

A

AWS Cost Explorer has an easy-to-use interface that lets you visualize, understand, and manage your AWS costs and usage over time. AWS Cost Explorer includes a default report that helps you visualize the costs and usage associated with your top five cost-accruing AWS services, and gives you a detailed breakdown of all services in the table view.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

What are some advantages of Cloud Computing

A

+Trade capital expense for variable expense
+Benefit from massive economies of scale
+Stop guessing at capacity
+Increase speed and agility
+Stop spending money running and maintaining data centers
+Go global in minutes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

AWS Artifact

A

AWS Artifact is your central resource for compliance-related information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

EFS

A

Elastic File System is a network storage that can be concurrently-accessible for up to thousands of Amazon EC2 instances across multiple Availability zones.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

AWS CloudHSM

A

AWS CloudHSM is a cloud-based Hardware Security Module (HSM) that enables you to easily generate and use your encryption keys on the AWS Cloud.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

Network Load Balancer

A

distributes TCP/UDP & TLS traffic, does not scale resources.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

Auto Scaling

A

Auto Scaling automatically adds or removes EC2 instances based on demand. It helps you ensure that you have the correct number of Amazon EC2 instances available to handle the load for your application.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

Amazon Inspector

A

inspects EC2 instances for security issues such as operating system patches, known vulnerabilities, and common issues.
https://aws.amazon.com/inspector/

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
31
Q

AWS Systems Manager

A

Systems Manager allows you to group resources, like Amazon EC2 instances, Amazon EKS clusters, Amazon S3 buckets, or Amazon RDS instances, by application, view operational data for monitoring and troubleshooting, implement pre-approved change work flows, and audit operational changes for your groups of resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
32
Q

AWS X-Ray

A

You can use AWS X-Ray to analyze and debug serverless and distributed applications such as those built using a microservices architecture.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
33
Q

AWS Elastic Beanstalk

A

AWS Elastic Beanstalk is an easy-to-use service for deploying and scaling web applications and services

you retain full control over the AWS resources powering your application and can access the underlying resources at any time.

There is no additional charge for Elastic Beanstalk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
34
Q

AWS Storage Gateway

A

AWS Storage Gateway is a hybrid cloud storage service that connects your existing on-premises environments with the AWS Cloud.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
35
Q

AWS Direct Connect

A

a physical dedicated private connection from a remote network to your VPC.

takes a month to establish

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
36
Q

AWS Service Health Dashboard

A

AWS Service Health Dashboard publishes most up-to-the-minute information on the status and availability of all AWS services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
37
Q

EFS stands for

A

Elastic File System

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
38
Q

Where can an EFS be used?

A

AWS Cloud Services

On premises

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
39
Q

How large can EFS storage scale?

A

can easily scale to petabytes of data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
40
Q

Where can an EFS be mounted?

A

EFS file system can be mounted on instances across multiple Availability Zones.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
41
Q

Where can an EBS be mounted?

A

EBS volume can be mounted to a single instance in the same Availability Zone.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
42
Q

Which AWS Support plans provide access to guidance, configuration, and troubleshooting of AWS interoperability with third-party software?

A

Business and Enterprise

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
43
Q

Which service allows you to automate the evaluation of recorded configurations against desired configurations.?

A

AWS Config

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
44
Q

Which service continuously monitors and records your AWS resource configurations?

A

AWS Config

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
45
Q

Which service enables governance, compliance, operational auditing, and risk auditing of your AWS account?

A

AWS CloudTrail

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
46
Q

Which service can log, continuously monitor, and retain account activity related to actions across your AWS infrastructure?

A

AWS CloudTrail

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
47
Q

Which service provides event history of your AWS account activity, including actions taken through the AWS Management Console, AWS SDKs, command-line tools, and other AWS services.

A

CloudTrail

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
48
Q

Which service provides data and actionable insights to monitor applications, respond to system-wide performance changes, optimize resource utilization, and get a unified view of operational health.

A

CloudWatch

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
49
Q

Which service provides real-time guidance to help you provision your resources following AWS best practices on cost optimization, security, fault tolerance, service limits, and performance improvement.

A

AWS Trusted Advisor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
50
Q

Which service monitors malicious activity and unauthorized behavior to protect your AWS account?

A

GuardDuty

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
51
Q

Which service analyzes billions of events across your AWS accounts from AWS CloudTrail (AWS user and API activity in your accounts), Amazon VPC Flow Logs (network traffic data), and DNS Logs (name query patterns).

A

GuardDuty

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
52
Q

Note differences between Dedicated Hosts and Dedicated Instances.

A

Host provides visibility of sockets, cores, and host ids
Host provides visibility and control over how instances are physically placed in a server

https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/dedicated-hosts-overview.html

53
Q

Which storage type is located on disks that are physically attached to the host computer.

A

Instance Store

54
Q

Which storage type is good option when you need storage with very low latency, but you don’t need the data to persist when the instance terminates

A

Instance Store

55
Q

Which service provides a highly available, durable, secure, fully managed pub/sub messaging service that enables you to decouple microservices, distributed systems, and serverless applications.

A

Amazon Simple Notification Service (SNS)

56
Q

With this service, you can send, store, and receive messages between software components at any volume, without losing messages or requiring other services to be available.

A

Amazon Simple Queue Service (SQS)

57
Q

Which service is a fully managed message queuing service that enables you to decouple and scale microservices, distributed systems, and serverless applications.

A

Amazon Simple Queue Service (SQS)

58
Q

Which service automates application deployments to Amazon EC2 instances, on-premises instances, serverless Lambda functions, or Amazon ECS services?

A

CodeDeploy

59
Q

Which organization is a global team of experts that can help you realize your desired business outcomes when using the AWS Cloud.

A

AWS Professional Services

60
Q

a solution that helps customers more quickly set up a secure, multi-account AWS environment based on AWS best practices.

A

AWS Landing Zone

61
Q

This service lets you coordinate multiple AWS services into serverless workflows.

A

AWS Step Function

62
Q

These are Compute Serverless Services

A

Lambda

Fargate

63
Q

Serverless services for Application Integration

A
Eventbridge
Step Functions
SQS
SNS
API Gateway
AppSync
64
Q

Serverless data storage

A

S3
DynamoDB
Aurora
RDS Proxy

65
Q

Hows long does it take to setup an AWS Direct Connection?

A

at least 1 month

66
Q

What 2 purposes does an internet gateway serve?

A

+ provide a target in your VPC route tables for internet-routable traffic.
+ perform network address translation for instances.

67
Q

On the OSI internet model what is available on layer 7?

A

The application layer, which includes HTTP and HTTPS requests.

68
Q

The transport layer includes these protocols

A

TCP, UDP

69
Q

In the OSI model what is layer 4?

A

The transport layer (TCP, UDP)

70
Q

In the OSI model what is layer 3?

A

The network layer.

This layer decides which physical path data will take when it moves on the network.

71
Q

AWS Shield offers protection at which network layer

A

Layer 3, the network layer
&
Layer 4, The transport layer

72
Q

Which is considered the transport layer

A

Layer 4

73
Q

What percent of durability does Amazon S3 offer?

A

99.999999999% (11 9’s)

74
Q

What is the cost for transferring data between AWS services within a region?

A

data transfer between AWS services within the same region is not charged

75
Q

What is the max % discount of a Reserved EC2 instance vs an on-demand EC2 instance?

A

75%

76
Q

What is the max % discount of a Spot EC2 instance vs an on-demand EC2 instance?

A

90%

77
Q

AWS Budgets gives you the ability to set reservation alerts for which services?

A
EC2, 
RDS, 
Redshift, 
ElastiCache, 
Elasticsearch
78
Q

Which service allows you to set reservation utilization or coverage targets and receive alerts when your utilization drops below the threshold you define.

A

AWS Budgets

79
Q

Which service provides an estimate of usage charges for AWS services?

A

Simple Monthly Calculator

80
Q

Infastructure as a Service (IaaS) provides access to

A

networking features, computers, and data storage space.

81
Q

Platform as a Service (PaaS) example

A

AWS Beanstalk

82
Q

AWS will provide Interoperability and configuration guidance and troubleshooting for 3rd party software for which support plan(s)

A

Business & Enterprise

83
Q

two types of VPC endpoints

A

interface endpoints

gateway endpoints

84
Q

define an interface endpoint

A

an elastic network interface with a private IP address from the IP address range of your subnet that serves as an entry point for traffic destined to a supported service.

85
Q

define a gateway endpoint

A

a gateway that you specify as a target for a route in your route table for traffic destined to a supported AWS service.

86
Q

Which AWS services support VPC gateway endpoints?

A

Amazon S3

DynamoDB

87
Q

Which layers does AWS Shield Advanced includes intelligent DDoS attack detection and mitigation for?

A
Layer 3 (Network)
Layer 4 (Transport)
Layer 7 (Application)
88
Q

AWS Shield Advanced provides expanded DDoS attack protection for web applications running on which resources?

A
EC2
ELB
CloudFront
Route53
Global Accelerator
89
Q

Which support plan(s) offer a response to an impaired system of 12 hrs

A

Developer
Business
Enterprise

90
Q

Which support plan(s) offer a response time of 15 min for business-critical system down?

A

Enterprise

91
Q

Which support plan(s) offer a response time of 4 hrs for an impaired production system.

A

Business

Enterprise

92
Q

Which support plan(s) offer AWS Support API?

A

Business

Enterprise

93
Q

Which support plan(s) offer Infrastructure Event Managment

A

Business - for fee

Enterprise - for free

94
Q

What are the available EC2 instance types?

A

On-demand
Reserved
Spot Instances
Dedicated Hosts

95
Q

Which type of EC2 instance offers up to 75% savings over on-demand instances?

A

Reserved Instances

96
Q

Which type of EC2 instance offers up to 90% savings over on-demand instances?

A

Spot Instances

97
Q

This type of EC2 instances is most useful for workloads that are resilient to failure. Such as, Batch jobs, data analysis, image processing, distributed workloads, workloads with flexible start/stop times.

A

EC2 Spot Instances

98
Q

What are examples of workloads that are resilient to failure?

A
Batch jobs, 
data analysis, 
image processing, 
distributed workloads, 
workloads with flexible start/stop times.
99
Q

Which type of EC2 instance is a physical server?

A

Dedicated Host

100
Q

When is an EC2 dedicated host useful?

A

address compliance issues

utilize existing server-bound software license

101
Q

Which type of EC2 instance utilizes hardware dedicated to your account alone, but may share the hardware with other instance in your account

A

Dedicated Instance

102
Q

What is meant by a services elasticity?

A

The ability of the service to scale up and down based on demand

103
Q

What are the 3 types of Elastic Load Balancers and what Layer do they support?

A
  • Application LB (HTTP - Layer 7)
  • Network LB (TCP - Layer 4)
  • Classic LB (old)
104
Q

Which AWS service is a fully-managed petabyte-scale cloud-based data warehouse product designed for large scale data set storage and analysis?

A

Redshift

105
Q

Which service automatically assesses applications for exposure, vulnerabilities, and deviations from best practices?

A

Amazon Inspector

106
Q

____________ is an automated security assessment service that helps improve the security and compliance of applications deployed on your Amazon EC2 instances.

A

Amazon Inspector

107
Q

____________ is a threat detection service that monitors malicious activity and unauthorized behavior to protect your AWS account.

A

Amazon GuardDuty

108
Q

Which service analyzes billions of events across your AWS accounts from AWS CloudTrail, Amazon VPC Flow Logs, and DNS Logs?

A

Amazon GuardDuty

109
Q

___________ is a managed Distributed Denial of Service (DDoS) protection service that safeguards applications running on AWS.

A

AWS Shield

110
Q

________________ provides a unified user interface so you can view operational data from multiple AWS services and allows you to automate operational tasks across your AWS resources

A

AWS Systems Manager

111
Q

Which service gives you visibility and control of your infrastructure on AWS?

A

AWS Systems Manager

112
Q

Sort in order of size:
Data centers,
Regions,
Availability Zones

A

Regions - consists of multiple isolated AZs
AZ - is a group of Data Centers
Data Centers

113
Q

What is AWS Wavelength?

A

AWS infrastructure deployments that embed AWS compute and storage services at the edge of the 5G networks.

114
Q

How many Regions, Availability Zones and Points of Presence exist?

A

24 Regions,
77 AZs,
220+ Points of Presence

115
Q

These services support reservations:

A
EC2,
DynamoDB,
ElastiCache,
RDS,
Redshift
116
Q

________ provides an event history of your AWS account activity, including actions taken through the AWS Management Console, AWS SDKs, command-line tools, and other AWS services.

A

CloudTrail

117
Q

Which service enables you to assess, audit, and evaluate the configurations of your AWS resources?

A

AWS Config

118
Q

_________ provides data and actionable insights to monitor applications, respond to system-wide performance changes, optimize resource utilization, and get a unified view of operational health.

A

CloudWatch

119
Q

_________ is an online tool that provides you real-time guidance to help you provision your resources following AWS best practices on cost optimization, security, fault tolerance, service limits and performance improvement.

A

AWS Trusted Advisor

120
Q

Which service includes performance monitoring, events, and alerts;

A

CloudWatch.

121
Q

Which service provides account-specific activity and audit?

A

CloudTrail

122
Q

Which service provides resource-specific change history, audit, and compliance?

A

Config

123
Q

Which services have encryption enabled by default?

A

Cloudtrail Logs
Storage Gateway
S3 Glacier

124
Q

Use ________________ to store, rotate, monitor, and control access to secrets such as database credentials, API keys, and OAuth tokens.

A

Secrets Manager

125
Q

What does the Network ACL (NACL) protect?

A

a VPC subnet

126
Q

What does a Security group protect

A

ENI or EC2

127
Q

This firewall can have Allow and Deny rules

A

Network ACL

128
Q

This firewall for EC2s can only have Allow rules

A

Security Group

129
Q

A Network ACL can have (Allow/Deny/Both) rules

A

Both, Allow and Deny