Things to Study Flashcards

1
Q

What is Storage Gateway?

A

Hybrid cloud storage that connects to existing on-premises storage.
3 Types - File, Tape, and Volume Gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the types of Storage Gateway?

A

File Gateway, Tape Gateway, Volume Gateway.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is WAF?

A

Web app firewall that protects apps against common exploits.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What does WAF do?

A

Blocks requests except ones you allow and can check for presence of SQL code (SQL injections).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is AWS Direct Connect?

A

Establishes a dedicated connection from on-prem to AWS.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is AWS Virtual Private Network (VPN)?

A

Establishes a secure connection between on-premises networks, remote offices, client devices, and the AWS global network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the components of AWS VPN?

A

Comprised of Site-to-Site and Client VPN.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is Site-to-Site VPN?

A

A resource in a VPC can’t talk to your own network. Set up a Site-to-Site VPN to let stuff in your VPC talk to your existing network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is AWS Virtual Private Cloud (VPC)?

A

Logically isolated section of the cloud where you can launch resources in a virtual network you define.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are the components of a VPC?

A

Subnet, Route Table, Internet Gateway, VPC Endpoint, VPC Peering.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is VPC Peering?

A

Connects two VPCs privately.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is Transit Gateway?

A

Connects VPC and on-prem network through a central Hub.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is an Internet Gateway?

A

VPC component that allows internet connection between your VPC and the internet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is a VPC Endpoint?

A

Privately connects your VPC to AWS services without requiring an internet gateway.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What are the types of VPC Endpoints?

A

Interface Endpoint - Private IP address that lets you connect VPC to some services (including SQS)
Gateway Endpoint - (S3, DynamoDB)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is Virtual MFA?

A

Like Authy - lets you use MFA without a physical device.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

What is a U2F Security Key?

A

Device you plug into USB port - what AWS uses.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

What is the Well-Architected Framework?

A

OSRPCS: Operational Excellence, Security, Reliability, Performance efficiency, Cost optimization, Sustainability.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

What is AWS Systems Manager Session Manager?

A

Fully managed service - interactive browser-based shell and CLI experience.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

What can AWS Organizations do?

A

Centrally manage billing, share access across AWS accounts, automate account creation, govern access across services.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

What is AWS Systems Manager?

A

View operational data from multiple services and manage resources. Can view ON-Prem & Cloud data in ONE PLACE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

What does AWS Compute Optimizer do?

A

Recommends optimal AWS resources for workloads.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

What is AWS Global Accelerator?

A

Improves availability and performance of apps with local or global users.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

What is AWS Shield Advanced?

A

Provides real-time reports into attacks on the network layer, transport layer, and application layer.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
What is Elastic Beanstalk?
Easy to use service for deploying web apps and services associated with various programming languages.
26
What does CloudWatch do?
Resource performance monitoring, events, alerts (billing Alerts).
27
What is CloudTrail?
Account specific activity & Audit.
28
What does AWS Config do?
Resource specific change history, audit, compliance.
29
What is Guard Duty?
Threat detection that monitors malicious activity and unauthorized behavior to protect AWS account.
30
What is Instance Store?
Temporary block-level storage for an instance, ideal for temporary storage of frequently changing info.
31
What does Systems Manager do?
Manage and operate resources at scale, central place to view and manage AWS resources. Can view ON-Prem & Cloud data in ONE PLACE.
32
What are Read Replicas?
Allow you to create read-only copies of RDS databases for better read performance.
33
What does Compute Optimizer do?
Helps identify optimal resource configuration.
34
What is the difference between Service Health and Account Health?
Service Health is general status; Account Health is a personalized view of your services.
35
What is an AMI?
Provides info required to launch an instance.
36
What is Cost Explorer?
Visualize and manage AWS costs and usage over time. Looks backward and also helps forecast!
37
What is AWS Pricing Calculator?
Explore AWS services & create an estimate for cost of your use cases. No forecasting. This is the same as TCO
38
What is Cost & Usage Report?
Most in-depth look at costs; cannot forecast.
39
What is MQ?
Managed message broker service that lets you do on-prem messaging.
40
What is DynamoDB?
Key-value, document database that is fully managed and multi-region. THis is the flagship AWS product. It is SCHEMALESS.
41
What is EFS?
Regional service storing data across multiple AZs, accessible by EC2 instances.
42
What is Trusted Advisor
Trusted Advisor * Real-time guidance to help provision resources following best practices * Cost Optimization, Performance, Security, Fault Tolerance, Service Limits * Optimal Provisioning * Cost optimization, security, fault tolerance, service limits * Can check EBS and find volumes that are under-utilized
43
44
45
What is Kendra?
A document search service that extracts answers from a document and is good for an internal wiki.
46
What does Personalize do?
Builds apps with real-time personalized recommendations.
47
What is Texttract?
Extracts text, handwriting, and data from scanned documents using AI/ML.
48
What is SageMaker?
A fully managed service to build Machine Learning Models. Developers can create/build ML models using SageMaker.
49
What is a model in the context of SageMaker?
A model predicts results based on inputs.
50
What tasks can be done in SageMaker?
Building, labeling, fine-tuning, and training models.
51
What does Rekognition do?
Finds objects, people, text, etc., in images and video, including facial analysis.
52
What are some use cases of Rekognition?
Content moderation, celebrity recognition, and text grabbing.
53
What is Artifact?
A service to create compliance reports.
54
What does GuardDuty do?
Analyzes logs to find bad behavior (i.e., threats).
55
What is Inspector?
An assessment service that helps improve security and compliance of apps deployed in AWS.
56
What does Config do?
Tracks configuration changes.
57
What is Macie?
Finds sensitive data (i.e., PII) in S3.
58
What does CloudTrail do?
Tracks API calls.
59
What is AWS Security Hub?
Gathers security findings.
60
What does Detective do?
Finds the root cause of security issues.
61
What is AWS Abuse?
Reports AWS resources used for abusive behavior.
62
What is CodeBuild?
Compiles source code, runs tests, and produces packages ready to be deployed.
63
What are the benefits of CodeBuild?
Fully managed, serverless, scalable, available, secure, and pay-as-you-go pricing.
64
What is CodePipeline?
The basis for CI/CD and an orchestration layer to take code from CodeCommit, put it in CodeBuild, then CodeDeploy, and run it in Elastic Beanstalk.
65
What is CodeArtifact?
An artifact management system for software development to store and retrieve software package dependencies.
66
What does AWS X-Ray do?
Provides visual analysis of applications, showing all services, bottlenecks, and dependencies in a microservice architecture.
67
What is Kinesis?
A service for real-time big data streaming to collect, process, and analyze real-time streaming data at any scale.
68
What is S3 Transfer Acceleration?
Allows uploading/downloading to an edge location for S3 buckets, which then loads it into the right region.