exam questions

Exam AWS Certified Security - Specialty All Questions

View all questions & answers for the AWS Certified Security - Specialty exam

Exam AWS Certified Security - Specialty topic 1 question 279 discussion

Exam question from Amazon's AWS Certified Security - Specialty
Question #: 279
Topic #: 1
[All AWS Certified Security - Specialty Questions]

A development team is using an AWS Key Management Service (AWS KMS) CMK to try to encrypt and decrypt a secure string parameter from AWS Systems
Manager Parameter Store. However, the development team receives an error message on each attempt.
Which issues that are related to the CMK could be reasons for the error? (Choose two.)

  • A. The CMK is used in the attempt does not exist.
  • B. The CMK is used in the attempt needs to be rotated.
  • C. The CMK is used in the attempt is using the CMK's key ID instead of the CMK ARN.
  • D. The CMK is used in the attempt is not enabled.
  • E. The CMK is used in the attempt is using an alias.
Show Suggested Answer Hide Answer
Suggested Answer: AD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
dumma
Highly Voted 3 years, 8 months ago
A and D
upvoted 16 times
...
Raphaello
Most Recent 1 year, 3 months ago
Selected Answer: AD
KMS key is either disabled, or does not exist. AD.
upvoted 1 times
...
Tofu13
2 years ago
Selected Answer: AD
Also worth mentioning that KMS key ID & ARN (C) and alias (E) are all valid methods to identify the key in question. https://docs.aws.amazon.com/kms/latest/developerguide/find-cmk-id-arn.html
upvoted 3 times
...
vikaswalajay
2 years, 8 months ago
Selected Answer: AD
full house
upvoted 2 times
...
sapien45
2 years, 9 months ago
Selected Answer: AD
Most of the Parameter Store failures related to KMS keys are caused by the following problems: The KMS key is not found.This typically happens when you use an incorrect identifier for the KMS key. The KMS key is not enabled. When this occurs, Parameter Store returns an InvalidKeyId exception with a detailed error message from AWS KMS.
upvoted 2 times
...
dcasabona
2 years, 10 months ago
Selected Answer: AD
I agree with A and D.
upvoted 1 times
...
kram123
2 years, 10 months ago
Answer is A & D
upvoted 2 times
...
ryuhei
2 years, 10 months ago
Selected Answer: AD
Answer:A&D
upvoted 2 times
...
guylee
3 years ago
Selected Answer: AD
A & D is the right answer
upvoted 2 times
...
haroldhil220
3 years ago
Selected Answer: AD
A and D
upvoted 2 times
...
Malluchan
3 years, 1 month ago
Selected Answer: AD
Answer is A & D
upvoted 1 times
...
w_a_r
3 years, 1 month ago
Selected Answer: AD
https://docs.aws.amazon.com/kms/latest/developerguide/services-parameter-store.html#parameter-store-cmk-fail Not Found(exist), Not Enabled
upvoted 1 times
...
RaySmith
3 years, 3 months ago
A and D is correct
upvoted 1 times
...
bananas
3 years, 4 months ago
A and D re gav gav!
upvoted 1 times
...
Radhaghosh
3 years, 4 months ago
Selected Answer: AD
A and D
upvoted 1 times
...
SaucyVip3r
3 years, 4 months ago
Selected Answer: AD
A and D
upvoted 1 times
...
MillarD
3 years, 4 months ago
Selected Answer: AD
Only disabled / deleted CMK would lead to error.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...