A company uses AWS Secrets Manager to store a set of sensitive API keys that an AWS Lambda function uses. When the Lambda function is invoked the Lambda function retrieves the API keys and makes an API call to an external service. The Secrets Manager secret is encrypted with the default AWS Key Management Service (AWS KMS) key.
A DevOps engineer needs to update the infrastructure to ensure that only the Lambda function’s execution role can access the values in Secrets Manager. The solution must apply the principle of least privilege.
Which combination of steps will meet these requirements? (Choose two.)
thanhnv142
Highly Voted 1 year, 2 months agoheff_bezos
Most Recent 7 months, 1 week agojamesf
9 months, 1 week ago4555894
1 year, 1 month agohotblooded
1 year, 2 months agozolthar_z
1 year, 5 months agoradev
1 year, 5 months agohotblooded
1 year, 2 months agohotblooded
1 year, 2 months agovandergun
1 year, 5 months ago