exam questions

Exam AWS Certified Solutions Architect - Professional All Questions

View all questions & answers for the AWS Certified Solutions Architect - Professional exam

Exam AWS Certified Solutions Architect - Professional topic 1 question 218 discussion

AWS Direct Connect itself has NO specific resources for you to control access to. Therefore, there are no AWS Direct Connect Amazon Resource Names (ARNs) for you to use in an Identity and Access Management (IAM) policy.
With that in mind, how is it possible to write a policy to control access to AWS Direct Connect actions?

  • A. You can leave the resource name field blank.
  • B. You can choose the name of the AWS Direct Connection as the resource.
  • C. You can use an asterisk (*) as the resource.
  • D. You can create a name for the resource.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️
AWS Direct Connect itself has no specific resources for you to control access to. Therefore, there are no AWS Direct Connect ARNs for you to use in an IAM policy. You use an asterisk (*) as the resource when writing a policy to control access to AWS Direct Connect actions.
Reference:
http://docs.aws.amazon.com/directconnect/latest/UserGuide/using_iam.html

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
amog
Highly Voted 3 years, 7 months ago
Answer is C But now DirectConnect has provide ARNs https://docs.aws.amazon.com/directconnect/latest/UserGuide/security_iam_service-with-iam.html
upvoted 10 times
...
amministrazione
Most Recent 8 months, 3 weeks ago
C. You can use an asterisk (*) as the resource.
upvoted 1 times
...
Sizuma
2 years, 8 months ago
AWS Direct Connect itself has no specific resources for you to control access to. Therefore, there are no AWS Direct Connect ARNs for you to use in an IAM policy. You use an asterisk (*) as the resource when writing a policy to control access to AWS Direct Connect actions. c is right
upvoted 1 times
...
hilft
2 years, 9 months ago
Outdated. Just in case, memorize with keyword (*)
upvoted 1 times
...
kmaiti
3 years, 7 months ago
Question is bit old. Now it's possible to use direct connect arn as stated here : https://docs.aws.amazon.com/directconnect/latest/UserGuide/security_iam_service-with-iam.html This fine grained control. If this doesn't fulfill the requirement then star(*) can be used. For the sake of the question, C is correct choice here.
upvoted 3 times
01037
3 years, 6 months ago
Yes you are right
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago