exam questions

Exam AWS Certified Solutions Architect - Associate SAA-C02 All Questions

View all questions & answers for the AWS Certified Solutions Architect - Associate SAA-C02 exam

Exam AWS Certified Solutions Architect - Associate SAA-C02 topic 1 question 492 discussion

An online photo-sharing company stores its photos in an Amazon S3 bucket that exists in the us-west-1 Region. The company needs to store a copy of all existing and new photos in another geographical location.
Which solution will meet this requirement with the LEAST operational effort?

  • A. Create a second S3 bucket in us-east-1. Enable S3 Cross-Region Replication from the existing S3 bucket to the second S3 bucket.
  • B. Create a cross-origin resource sharing (CORS) configuration of the existing S3 bucket. Specify us-east-1 in the CORS rule's AllowedOrigin element.
  • C. Create a second S3 bucket in us-east-1 across multiple Availability Zones. Create an S3 Lifecycle management rule to save photos into the second S3 bucket.
  • D. Create a second S3 bucket in us-east-1 to store the replicated photos. Configure S3 event notifications on object creation and update events that invoke an AWS Lambda function to copy photos from the existing S3 bucket to the second S3 bucket.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Mallikarjun05
Highly Voted 3 years, 6 months ago
Given options are wrong. It should be A. Enable CloudTrail log file validation. B. Install the CloudTrail Processing Library. C. Enable logging of Insights events in CloudTrail. D. Enable custom logging from the on-premises resources. E. Create an AWS Config rule to monitor whether CloudTrail is configured to use server-side encryption with AWS KMS managed encryption keys (SSE-KMS). Answer: A, C
upvoted 52 times
rav009
3 years, 5 months ago
I think A, E
upvoted 5 times
...
Venki_dev
3 years, 1 month ago
A and E should be answers. https://docs.aws.amazon.com/awscloudtrail/latest/userguide/data-protection.html The following security best practices also address data protection in CloudTrail: Encrypting CloudTrail log files with AWS KMS–managed keys (SSE-KMS) Amazon S3 bucket policy for CloudTrail Validating CloudTrail log file integrity Sharing CloudTrail log files between AWS accounts
upvoted 6 times
th3cookie
2 years, 9 months ago
Cloudtrail is already configured to use SSE-KMS by default (it's in the link you posted). It's not wrong to create a config rule to see if this state changes, but in my opinion, A and C make the most sense. C is more right to me because the purpose of log insights is directly to determine if there is unusual activity, which is great for auditing purposes.
upvoted 3 times
...
...
...
CobraBoy
Highly Voted 3 years, 7 months ago
A, https://aws.amazon.com/blogs/storage/replicating-existing-objects-between-s3-buckets/
upvoted 24 times
...
Vazghavalamudan
Most Recent 2 years, 8 months ago
moderator don't block comments
upvoted 1 times
...
Vazghavalamudan
2 years, 8 months ago
total waste, not expecting dumps but atleast there should be logic with Q&A, why we are paying money for this, someone help this is total waste of money purchasing this.
upvoted 1 times
...
avvv
2 years, 9 months ago
Answer are wrong
upvoted 1 times
...
queen101
2 years, 9 months ago
A and B
upvoted 1 times
...
wie
3 years ago
question and answers are irrelevant
upvoted 2 times
...
deepu32412
3 years, 1 month ago
Selected Answer: B
Given options are wrong. It should be A. Enable CloudTrail log file validation. B. Install the CloudTrail Processing Library. C. Enable logging of Insights events in CloudTrail. D. Enable custom logging from the on-premises resources. E. Create an AWS Config rule to monitor whether CloudTrail is configured to use server-side encryption with AWS KMS managed encryption keys (SSE-KMS).
upvoted 6 times
...
Swap859
3 years, 2 months ago
A solution architect at a company is designing the architecture for a two-tiered web application. The web application is composed of an internet facing application load balancer that forwards traffic to an auto scaling group of amazon EC2 instances. The EC2 instances must be able to access a database that runs on Amazon RDS. The company has requested a defence-in-depth approach to the network layout. The company does not want to rely solely on security groups or network ACLs. Only the minimum resources that are necessary should be routable from the internet. Which network design should the solutions architect recommend to meet these requirements? Place the ALB, EC2 instances and RDS database in private subnets. Place the ALB in public subnets. Place the EC2 instances and RDS database in private subnets Place the ALB and EC2 instances in public subnets. Place the RDS database in private subnets Place the ALB outside the VPC. Place the EC2 instances and RDS database in private subnets
upvoted 1 times
...
rocky48
3 years, 3 months ago
I don't understand How "A" is the right answer, when the questions says "Choose Two" not "One" correct answer ??? Is it A + B ?
upvoted 2 times
rocky48
3 years, 3 months ago
The answer options posted for the question are incorrect. Moderators need to look into this question. I feel the options should be :- A. Create an AWS Config rule to monitor whether CloudTrail is configured to use server-side encryption with AWS KMS managed encryption keys (SSE-KMS) B. Install the CloudTrail Processing Library C. Enable custom logging from the on-premises resources D. Enable CloudTrail log tile validation E. Enable logging of insights events in CloudTrail Possible Answer : A & E (Choose 2 answers)
upvoted 1 times
...
egmiranda
3 years, 1 month ago
the correct question, "An online photo-sharing company stores...." ask for only one solution (the LEAST operational effor): A
upvoted 2 times
...
...
a5220150
3 years, 4 months ago
Selected Answer: A
The correct question: An online photo-sharing company stores its photos in an Amazon S3 bucket that exists in the us-west-1 Region. The company needs to store a copy of all existing and new photos in another geographical location. Which solution will meet this requirement with the LEAST operational effort?
upvoted 19 times
sayed
3 years, 3 months ago
The company needs to store a copy of all existing and new photos in another geographical location. Cross region replication will not replicate existing photos?? do you have any ideas what is the correct answer
upvoted 1 times
...
...
Big_Chief
3 years, 4 months ago
None of these options is correct
upvoted 1 times
...
weilun_tann
3 years, 4 months ago
A - Cross-region replication can be used to meet compliance requirements where data needs to be stored at a minimum distance apart (something that the default multi-AZ bucket cannot accomplish) https://docs.aws.amazon.com/AmazonS3/latest/userguide/replication.html
upvoted 2 times
...
aprendiendo
3 years, 4 months ago
La respuesta es la A y C
upvoted 1 times
...
Guha
3 years, 4 months ago
These answers are wrong have a look at Question #226
upvoted 1 times
...
monazir
3 years, 5 months ago
Selected Answer: A
is A and B
upvoted 1 times
...
monazir
3 years, 5 months ago
Selected Answer: B
answer is A and B
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago