A company is planning to store data on Amazon RDS DB instances. The company must encrypt the data at rest. What should a solutions architect do to meet this requirement?
A.
Create an encryption key, and store the key in AWS Secrets Manager. Use the key to encrypt the DB instances.
B.
Generate a certificate in AWS Certificate Manager (ACM). Enable SSL/TLS on the DB instances by using the certificate.
C.
Create a customer master key (CMK) in AWS Key Management Service (AWS KMS). Enable encryption for the DB instances.
D.
Generate a certificate in AWS Identity and Access Management (IAM). Enable SSL/TLS on the DB instances by using the certificate.
Amazon RDS automatically integrates with AWS Key Management Service (AWS KMS) for key management.
https://docs.aws.amazon.com/AmazonRDS/latest/UserGuide/Overview.Encryption.Keys.html
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
rodriiviru
2 years, 8 months agosivasumanth
2 years, 8 months agoCurious76
2 years, 9 months ago