CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 114: AWS Certified Developer Associate(Old)

A development team has been using a builder server that is hosted on an Amazon EC2 instance to perform builds and deployments for the last 3 months. TheEC2 instance's instance profile uses an IAM role that contains the Administrator Access managed policy. The development team must replace that policy with a policy tha…

Nội dung câu hỏi

A development team has been using a builder server that is hosted on an Amazon EC2 instance to perform builds and deployments for the last 3 months. TheEC2 instance's instance profile uses an IAM role that contains the Administrator Access managed policy. The development team must replace that policy with a policy that provides only the required permissions. What is the FASTEST way to create a custom 1AM policy for the EC2 instance to meet this requirement?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Create a new IAM policy based on services that the build server deployed or updated in the last 3 months.
  2. B. Create a new IAM policy that includes all actions that AWS CloudTrail recorded for the IAM role in the last 3 months. — đáp án hiện tại
  3. C. Create a new permissions boundary policy that denies all access. Associate the permissions boundaries with the IAM role.
  4. D. Create a new IAM policy by using Amazon Athena to query an Amazon S3 bucket that contains AWS CloudTrail events that the IAM role performed in the last 3 months.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề