Stephane PE #6 Flashcards

1
Q

EC2 + DDB table + same AWS acct =

A

IAM service role + IAM role

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

EC2 + EBS maxing out + licensing =

A

GP2 to IO1

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

OTL + unpredictable spikes =

A

Aurora

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Rabbit MQ + quick migration =

A

MQ

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

On prem + small traffic + quick turn around + cost =

A

Site to site VPN

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

On prem + python + migrate =

A

Spot instance + spot block

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Monolith app + failure AZ + cost =

A

EC2 instance role +
Elastic IP +
ASG min=1, max=1, desired=1

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

S3 + SQS + prem members =

A

2 SQS stan queues

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

ETL + S3 + Redshift + serverless =

A

Glue

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Root + CloudTrail + new dev accounts not mod =

A

SCP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Multi AZ + RDS MySQL DB + sched maintenance =

A

Downtime until upgrade complete

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

RDS PostgreSQL + analytics + slowdown + cost =

A

Read replica + same region

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

RDS MySQL DB + DB analytics + cost optimal =

A

Read replica + point read replica

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

RDS + Multi AZ + on prem =

A

RDS + OS updates +
RDS auto standby failover standby

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Cloudfront + restricted content =

A

Signed URLs + signed cookies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Caching + multi threading + RDB =

A

Elastic Memcached

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Caching layer replication + archival support =

A

Elastic redis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Json + on prem + S3 =

A

On prem file gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

EC2 + low latency + Key Char Instance store vol =

A

AMI + instance store vol not preserved
Can’t detach from 1 instan and attach to diff instan

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

EC2 + incorrectly config + True root EBS =

A

DeleteOnTermination + False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

EC2 + RDS MySQL DB + maintenance =

A

ASG + 2 EC2 + 2 AZ

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

EC2 + EBS + heavy I/O =

A

RAID 0 +I/O performance more important than fault

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

EC2 + same AZ + EBS =

A

Prov IOPS SSD EBS vol

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

ECS cluster + EC2 + storage under 1 TB =

A

EFS Prov

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

EC2 + 2 Private subnets + patch + 3rd party software + 2 NAT gateways + HA =

A

2 NAT gateways + N1 public subnet + N2 public subnet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

EC2 + private subnet + VPC + S3 + DDB table + private access =

A

Sep gateway endpt

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

EC2 + DDB table + same AWS acct =

A

IAM service role + IAM role

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

EC2 + EBS maxing out + licensing =

A

GP2 to IO1

29
Q

EC2 + on prem + minimize hardware failures =

A

Partition

30
Q

EC2 + CRM + ELB +Not =

A

2 instances zone A + 2 instances zone B

*Config not allowed for ELB also- can’t distrib incoming traffic for targets deployed in diff regions

31
Q

EC2 + ALB + attack =

A

WAF + rate based rule

32
Q

EC2 + single tenant + comply + cost =

A

Dedicated Insta

33
Q

EC2 + custom script =

A

Custom scripts + user data

34
Q

EC2 + unauthorized =

A

GuardDuty

35
Q

EC2 + ASG + TLS termination =

A

NLB public

*ALB = also supports TLS offloading + CLB = SSL offloading

36
Q

EC2 + ASG + 2 AZ =

A

New insta to replace terminated insta +
Rebalance doesn’t compromise performance

37
Q

EC2 + EFS =

A

IAM policy to control access + mount files
VPC security

38
Q

S3 + all objects uploaded encrypted =

A

-side-encrypyt

39
Q

S3 + SSE + AES 256 + no managed encrypt keys + cost =

A

SSE-S3

40
Q

S3 + RDS PostgreSQL + index =

A

App transverse S3 + RDS

41
Q

S3 + Redshift + after 30 d “not hot” + SQL query + Cost =

A

Cold data Athena + S3 Stan IA after 30 d

42
Q

S3 + EC2 + Analysis =

A

S3 Event Noti + SQS

43
Q

S3 + big data analysis =

A

EMR + Glue

44
Q

S3 encrypt + default data at rest + in transit =

A

Glacier

45
Q

S3 + cloudfront =

A

OAI

46
Q

EC2 + ASG + TLS termination =

A

NLB public

*ALB = also supports TLS offloading + CLB = SSL offloading

47
Q

Bastion host sol + HA =

A

NLB public

48
Q

Custom domain + private hosted zones R53 + VPC =

A

Dnssupport + Dnshostnames

49
Q

Sync trans + 3 tier + traffic spikes =

A

Horizontal + ASG + ALB

50
Q

POSIX + achieved =

A

EFS IA

51
Q

VPC + on prem + DC =

A

2 Sep DC

52
Q

S3 + encrypt + Proprietary encrypt algo =

A

Client side encrypt

53
Q

Windows + on prem =

A

FSX windows

54
Q

20 PB + shortest time + remote location =

A

Snowmobile

55
Q

S3 + freq access & sit idle + cost =

A

S3 Intell-Tier

56
Q

Real time + high latency + serverless =

A

KDS + Fargate

57
Q

SQS Que + saves time & costs + high throu + resp msg =

A

SQS temp

58
Q

EC2 + HPC =

A

Cluster + Fab

59
Q

Org + Firewall =

A

WAF + VPC security + Shield Adv

60
Q

Active directory + on prem + Microsoft =

A

Microsoft AD

61
Q

DDB major spikes + decouple + middleware =

A

SQS

62
Q

Lambda + S3 + 15m fail =

A

Lambda timed out

63
Q

2 insta + 2 AZ + EC2 public subnets + public IP addresses =

A

EC2 private IP

64
Q

EC2 + multi AZ + HA + EBS =

A

EBS +EC2 + config S3

65
Q

EC2 same instan ECS + Mircro service =

A

ALB + dynamic port map

66
Q

IAM user + S3 write & read + minimal changes =

A

Change group + attach policy

67
Q

Spot blocks =

A

allow 1-6 hrs no interruption

68
Q

Spot instan =

A

spare EC2 cap saves 90% off On-Demand + interrupt w 2m notification

69
Q

Spot fleet =

A

set of spot instan & on demand instan to meet target cap