Services and more Flashcards

1
Q

What is the usable HDD Storage for:

  1. Snowcone
  2. Snowball
  3. Snowmobile
A
  1. Snowcone: 8 TB
  2. Snowball: 80 TB
  3. Snowmobile: 100 PB
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Explain Route 53 Simple routing policy

A

Use for a single resource that performs a given function for your domain, for example, a web server that serves content for the example.com website. You can use simple routing to create records in a private hosted zone.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Explain Route 53 Failover routing policy

A

Use when you want to configure active-passive failover. You can use failover routing to create records in a private hosted zone.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Explain Route 53 Geolocation routing policy

A

Use when you want to route traffic based on the location of your users. You can use geolocation routing to create records in a private hosted zone.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Explain Route 53 Geoproximity routing policy

A

Use when you want to route traffic based on the location of your resources and, optionally, shift traffic from resources in one location to resources in another.

(Uses bias to set a weight)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Explain Route 53 Latency routing policy

A

Use when you have resources in multiple AWS Regions and you want to route traffic to the region that provides the best latency. You can use latency routing to create records in a private hosted zone.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Explain Route 53 IP-based routing policy

A

Use when you want to route traffic based on the location of your users, and have the IP addresses that the traffic originates from.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Explain Route 53 Multivalue routing policy

A

Use when you want Route 53 to respond to DNS queries with up to eight healthy records selected at random. You can use multivalue answer routing to create records in a private hosted zone.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Explain Route 53 Weighted routing policy

A

Use to route traffic to multiple resources in proportions that you specify. You can use weighted routing to create records in a private hosted zone.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Explain CIDR range 192.168.10.255/32

A

/32 means that that the IP range selected only a single IP address 192.168.10.255

+0.0.0.0
addresses: 1 = 2 to the 0

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Explain CIDR range 192.168.10.255/31

A

/31 means that that the IP range selected only 2 IP addresses 192.168.10.254 and 192.168.10.255

+0.0.0.1
addresses: 2 = 2 to the first

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Explain CIDR range 192.168.10.255/30

A

/30 means that that the IP range selected only 4 IP addresses 192.168.10.252, 192.168.10.253, 192.168.10.254 and 192.168.10.255

+0.0.0.3
addresses: 4 = 2 to the second

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Explain CIDR range 192.168.10.255/24

A

/24 means that that the IP range selected only 4 IP addresses 192.168.10.0 to 192.168.10.255

+0.0.0.255
addresses: 256 = 2 to the eight

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is AWS Proton?

A

AWS Proton allows you to deploy any serverless or container-based application with increased efficiency, consistency, and control

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Is it possible to assign an Elastic IP to an Application Load Balancer?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Name 3 types of Network Adapters

A
  1. ENI - basic type
  2. ENA - for enhanced networking, high bandwidth and low latency
  3. EFA (fabric adapter) - for high performance computing
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Can an ASG with predictive scaling policy contains instances of different types and sizes?

A

No. Predictive scaling assumes that your Auto Scaling group is homogenous, which means that all EC2 instances are of equal capacity.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Using the default settings, which will be the first instance that will be terminated when the scale-in policy triggers?

A

The EC2 instance launched from the oldest launch configuration

19
Q

In Auto Scaling, the following statements are correct regarding the cooldown period.

A
  1. It ensures that the Auto Scaling group does not launch or terminate additional EC2 instances before the previous scaling activity takes effect.
  2. Its default value is 300 seconds.
  3. It is a configurable setting for your Auto Scaling group.
20
Q

What can you do to create an asynchronous copy of a S3 bucket?

A

Enable Replication. Either Cross-Region Replication (CRR) or Same-Region Replication (SRR). Buckets can be in different AWS accounts. Ensure versioning is enabled and to give S3 proper IAM permissions.

21
Q

What are use-cases for using S3 Pre-Signed URLs?

A
  1. Give someone temporary access to a file in a private bucket.
  2. Allow only logged in users to download premium content.
  3. Allow a user to upload a file to a bucket for temporary time.
22
Q

A company is hosting a static website on S3. The assets are hosted from a different S3 bucket. The website is not displaying the images. What can be the cause?

A

CORS is probably not enabled on the assets bucket, so the CORS headers are not sent as a response to the preflight request.

23
Q

Which service can be used to perform a lift-and-shift migration to the cloud?

A

AWS Application Migration Service (AWS MGN) is the primary migration service recommended for lift-and-shift migrations to AWS

24
Q

What’s the difference between Amazon S3 server access logs and CloudTrail Logs?

A

AWS CloudTrail logs provide a record of actions taken by a user, role, or an AWS service in Amazon S3, while Amazon S3 server access logs provide detailed records for the requests that are made to an S3 bucket.

25
Q

What’s the difference between the Personal Health Dashboard and the Service Health Dashboard?

A

The Personal Health Dashboard shows the health of the services used in your account while the Service Health Dashboard shows the health of the services within AWS for all customers.

26
Q

Which service can be used to extract text from PDF documents saved on S3?

A

Amazon Textract

27
Q

What is AWS Trusted Advisor?

A

AWS Trusted Advisor is an online tool that provides you with real-time guidance to help you provision your resources following AWS best practices. It inspects your AWS environment and makes recommendations for saving money, improving system performance and reliability, or closing security gaps.

28
Q

You need to create a subnet that can contain 64 instances in the range 10.0.0.0. How do you define the CIDR?

A

10.0.0.0/25 = 128 addresses - 5 = 123, leaves enough room for 64 instances.

10.0.0.0/26 would give us 64 addresses, but since AWS preserves 5 of them, it’s not enough to hold 64 instances.

29
Q

What’s the difference between VPC Endpoint types Interface Endpoint (PrivateLink) and Gateway Endpoint?

A

Gateway Endpoints can only be used for S3 and DynamoDB.
Gateway Endpoints are easy to use as it’s just a change in the route table.

Interface Endpoints provision an ENI (private IP address) as entry point and support most AWS services.

30
Q

What do you need to create a VPN from your on-premise site to AWS?

A
  1. Define Customer Gateways in AWS (Referring to the gateway on your on-premise site)
  2. Define a Virtual Private Gateway in AWS (Referring to the VPC in AWS)
  3. Then connect both Site-to-Site VPN Connections
31
Q

How can we establish a high resilient private connection from an on-premise data center to a AWS?

A

Setup 2 (multiple) Direct Connect locations. The downside is that direct connect can take months to setup and is expansive.

32
Q

How can we establish a maximum resilient private connection from an on-premise data center to a AWS?

A

Setup 2 (multiple) Direct Connect locations with multiple connections. The downside is that direct connect can take months to setup and is expansive.

33
Q

What can we use as a backup connection from our on premise data center to AWS if we already have Direct Connect?

A

Use a Site-to-Site VPN connection as a backup. This is using the public internet so the stability should be more reliable than a private connection.

34
Q

What is the minimum storage duration of Amazon S3 Standard-IA and One Zone IA?

A

30 days

35
Q

What is the minimum storage duration of Amazon S3 Glacier Deep Archive

A

180 days

36
Q

What are the benefits of using IAM database authentication?

A

– Network traffic to and from the database is encrypted using Secure Sockets Layer (SSL).

– You can use IAM to centrally manage access to your database resources, instead of managing access individually on each DB instance.

– For applications running on Amazon EC2, you can use profile credentials specific to your EC2 instance to access your database instead of a password, for greater security

37
Q

Amazon Athena supports a wide variety of data formats like CSV, JSON, .. Which format can give better query performance?

A

Apache Parquet

38
Q

How can you invoke a Lambda function from Amazon Aurora?

A

You can invoke an AWS Lambda function from an Amazon Aurora MySQL-Compatible Edition DB cluster with a native function or a stored procedure.

39
Q

How can we store objects in S3 using a WORM model?

A

With S3 Object Lock, you can store objects using a write-once-read-many (WORM) model

40
Q

A simplified alternative to SQS?

A

Amazon Simple Workflow (SWF) is a web service that makes it easy to coordinate work across distributed application components.

41
Q

What is AWS Control Tower?

A

AWS Control Tower provides a single location to easily set up your new well-architected multi-account environment and govern your AWS workloads with rules for security, operations, and internal compliance.

42
Q

What is the minimum and maximum retention period for an SQS message?

A

In Amazon SQS, you can configure the message retention period to a value from 1 minute to 14 days. The default is 4 days. Once the message retention limit is reached, your messages are automatically deleted.

43
Q

IAM database authentication is supported for?

A

MySQL and PostgreSQL database engines

44
Q

Explain the Lambda Limits?

A

Function memory allocation : 128 MB to 10,240 MB, in 1-MB increments.
Function timeout : 900 seconds (15 minutes)
Package size : 50mb zipped, 250mb unzipped
Function layers : 5 layers
Function burst concurrency : 500 - 3000 (varies per Region)