exam questions

Exam AWS-SysOps All Questions

View all questions & answers for the AWS-SysOps exam

Exam AWS-SysOps topic 1 question 912 discussion

Exam question from Amazon's AWS-SysOps
Question #: 912
Topic #: 1
[All AWS-SysOps Questions]

A company uses LDAP-based credentials and has a Security Assertion Markup Language (SAML) 2.0 identity provider. A SysOps administrator has configured various federated roles in a new AWS account to provide AWS Management Console access for groups of users that use the existing LDAP-based credentials.
Several groups want to use the AWS CLI on their workstations to automate daily tasks. To enable them to do so, the SysOps administrator has created an application that authenticates a user and generates a SAML assertion
Which API call should be used to retrieve credentials for federated programmatic access?

  • A. sts:AssumeRole
  • B. sts:AssumeRoleWithSAML
  • C. sts:AssumeRoleWithWebIdentity
  • D. sts:GetFederationToken
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️
Reference:
https://docs.aws.amazon.com/IAM/latest/UserGuide/id_roles_providers_enable-console-saml.html

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
albert_kuo
9 months, 1 week ago
Selected Answer: B
The sts:AssumeRoleWithSAML call allows the user to assume a role in AWS, and the response contains temporary credentials that can be used to make API calls to AWS services.
upvoted 2 times
...
TroyMcLure
2 years, 5 months ago
Correct Answer: B
upvoted 2 times
...
Drey
2 years, 6 months ago
B. https://docs.aws.amazon.com/STS/latest/APIReference/API_AssumeRoleWithSAML.html
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago